Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 28-08-2023 Exécuté par jmmou (administrateur) sur LAPTOP-1QDU1ESV (LENOVO 81WF) (07-09-2023 16:09:59) Exécuté depuis D:\JM\PC\Farbar Recovery Scan Tool\FRST64.exe Profils chargés: jmmou Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3324 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantage-(DeviceSettingsSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantage-(GenericMessagingAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantage-(LenovoBoostAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantage-(LenovoBoostSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantage-(VantageCoreAddin).exe (C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ai.exe (DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxEMN.exe (DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\LenovoUtilityService.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\FnHotkeyCapsLKNumLK.exe (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\LenovoUtilityService.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\FnHotkeyUtility.exe (explorer.exe ->) (Adobe Systems, Incorporated) [Fichier non signé] C:\Program Files (x86)\Adobe\Photoshop 7.0\Photoshop.exe (explorer.exe ->) (CERTIF_NICOLAS_COOLMAN -> Nicolas Coolman) [Fichier non signé] D:\JM\PC\Nettoyage PC\ZHPCleaner - décontamination\ZHPCleaner.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE (explorer.exe ->) (Safer-Networking Ltd.) [Fichier non signé] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (LNBITSSvc.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\AutoModeDetect.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <18> (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7208949846a9b9dc\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_21306a77b30fd6e0\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9cf4db1a1fd1b22d\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_4b31d9b38e2bb506\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_b117548b2e075ba1\aesm_service.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_86dc7f4c001ddecd\RstMwService.exe (services.exe ->) (Intel(R) Trust Services -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe (services.exe ->) (IObit Information Technology -> IObit) [Fichier non signé] C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\LenovoUtilityService.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe (services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe (services.exe ->) (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\dgnsvc.exe (services.exe ->) (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (Safer Networking Ltd. -> Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2334.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5180.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Flexera Software LLC -> Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\agent.exe (svchost.exe ->) (Flexera Software LLC -> Flexera Software LLC.) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe\Translator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1076016 2020-04-05] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1068560 2019-08-18] (Heidi Computers Ltd -> The Eraser Project) HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> ) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe [35760 2009-12-22] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [948672 2009-12-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59240 2012-02-20] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2012-04-18] (Apple Inc.) [Fichier non signé] HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.) HKLM-x32\...\Run: [DNS7reminder] => C:\Program Files (x86)\Nuance\NaturallySpeaking15\Ereg\Ereg.exe [3146120 2016-05-06] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.) HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 HKU\S-1-5-21-636869981-3757955158-3835871884-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.) HKU\S-1-5-21-636869981-3757955158-3835871884-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [41584544 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-636869981-3757955158-3835871884-1001\...\Run: [SpybotSD TeaTimer] => C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) [Fichier non signé] HKU\S-1-5-21-636869981-3757955158-3835871884-1001\...\Run: [LenovoVantage] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoCompanionAppAddin\1.0.0.35\LenovoVantage.exe [23976 2023-06-14] (Lenovo -> Lenovo) HKU\S-1-5-21-636869981-3757955158-3835871884-1001\...\Run: [MicrosoftEdgeAutoLaunch_CF4BBA239A5B8CC95AB2BCEA608C06B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4108328 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\ssj2mPC: C:\Windows\System32\spool\prtprocs\x64\ssj2mpc.dll [41984 2013-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) HKLM\...\Print\Monitors\ssj2m Langmon: C:\Windows\system32\ssj2mlm.dll [34304 2013-05-29] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2021-04-07] ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Fichier non signé] GroupPolicy-Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {F0233FE2-AFC4-4067-B981-1567FBA7518C} - System32\Tasks\ASC4_AutoCare => C:\Program Files (x86)\IObit\Advanced SystemCare 4\AutoCare.exe [1437072 2011-05-12] (IObit Information Technology -> IObit) [Fichier non signé] Task: {0A990277-62A5-4CD1-AE2F-401CFE13EF8A} - System32\Tasks\ASC4_AutoSweep => C:\Program Files (x86)\IObit\Advanced SystemCare 4\AutoSweep.exe [759184 2011-05-12] (IObit Information Technology -> IObit) [Fichier non signé] Task: {ABEB1894-79D3-45D9-953A-FCB726F68041} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {EA789662-EB52-43D8-AD31-8E14B92A08F3} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "97740ca3-cca6-48ef-8c9d-d6a445b0e445" --version "6.15.10623" --silent Task: {0E90BE96-21BD-46D2-9FA2-FBCAC0884643} - System32\Tasks\CCleanerSkipUAC - jmmou => C:\Program Files\CCleaner\CCleaner.exe [34687904 2023-08-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {9A571F57-0682-42DC-9698-000F3691E3FC} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /c (Pas de fichier) Task: {CE055C83-F3F1-4A28-8AD4-FFA198EB25C4} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /ua /installsource scheduler (Pas de fichier) Task: {17797F8A-1BA2-4561-9C5C-A3316DCE3D1A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {6642DEB6-9DD6-4E60-9BA4-2C6D816F4B16} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService Task: {C5EF52B1-3C94-44BD-8B8A-6C9B89F51E3A} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\Windows\System32\reg.exe [77312 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {97C384E3-8031-43C8-97CB-D9C45820128A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\66a6a472-8e6f-4af5-b19b-7c8ea97d1d69 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {17808AD5-DBD4-4341-A8F1-F6D513C86E1E} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\aae36b3b-8071-40f3-ab50-c311b66b112e => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {E205BC2F-E940-4BE3-9086-E78710BE5EAF} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\cdc3ee6e-9000-42e0-83f6-ca281447de6f => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {66BF0248-35BF-4503-B82D-0F85712EC04F} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f28b5f8c-b085-47c8-8189-3b81199d9f5b => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {84B53451-47EC-457A-BA8F-AB1FA05CC2C2} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService Task: {A3A7021C-8F3C-4EF9-BC75-7E4CDC41809C} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {A7365839-973D-46F0-ABBB-796387F0CFFE} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {3F9DE63C-F57C-4FC2-8D14-2D11F5DEF70A} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {BCA06606-8360-4E25-BE41-67B6F392DF08} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {410FC359-A8D6-49C1-9BA7-0AEBE5A7825D} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {42473D0C-251F-436F-B5FF-E9D264221858} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {FC5302C2-624C-4445-945D-669A9FF9DEE7} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.SScan => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {13A75248-F4D9-4BBC-89FF-250BCEE3A4F1} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {FC2B5F6A-ADD9-43BC-9156-E473FF728722} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {A01F7B9D-9900-472B-8217-E7146E94C981} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {62A8A7AF-32DF-48AE-86CC-14D9163689BF} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {1EF74117-1C2F-4F60-B121-91BED8987FE8} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe [30040 2023-07-14] (Lenovo -> Lenovo) Task: {4910440A-32DB-4D55-867C-BCF13348FE2A} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.6.15.0\ScheduleEventAction.exe VantageTelemetryAddinTask (Pas de fichier) Task: {ECA97DFD-CA35-48C5-856B-9A409D5E6F59} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe [5307536 2023-08-09] (Microsoft Windows -> Microsoft Corporation) Task: {15EBCD2E-F64A-41E2-ADAF-1295F79025CD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {8C5177F9-8A99-485F-9312-ED46DE13AAAE} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {908932C0-7E9E-4E4F-A9C8-FA6AF4997963} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-09-06] (Microsoft Corporation -> Microsoft Corporation) Task: {4B4D2DF0-DFF0-4581-A667-41907DF15078} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-09-06] (Microsoft Corporation -> Microsoft Corporation) Task: {1C6D197E-AFF3-4917-A0A5-930A33B81271} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [167864 2023-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {BA9AD988-26B1-4C76-BBDA-1CF1EF118930} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {69CBC323-BA01-43F5-ABBD-A4EB84BFCAAD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2EB69EFF-ECB9-4E84-97B4-A968A8E86F98} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {948B25C9-FA27-4ED0-9145-0296648ACF4D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {49E1A8FF-D3B2-41E1-B031-4EF53D195EC1} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675232 2023-09-01] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {3366FB82-37F9-49C1-98FE-27A0FCBE5E16} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [722336 2023-09-01] (Mozilla Corporation -> Mozilla Foundation) Task: {EB097344-4802-4DB0-9D64-9F1D5F7204D5} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-636869981-3757955158-3835871884-500 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{bf563ada-e7b3-498f-b540-f7c74e7bb4d9}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{bf563ada-e7b3-498f-b540-f7c74e7bb4d9}: [DhcpNameServer] 192.168.1.1 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\jmmou\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-07] Edge Extension: (Google Docs hors connexion) - C:\Users\jmmou\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-07] Edge Extension: (Edge relevant text changes) - C:\Users\jmmou\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-10] FireFox: ======== FF DefaultProfile: 2j4zwf3b.default FF ProfilePath: C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\2j4zwf3b.default [2021-01-21] FF ProfilePath: C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release [2023-09-07] FF DownloadDir: D:\Bureau D\Téléchargement FF Homepage: Mozilla\Firefox\Profiles\172sg82j.default-release -> hxxps://laposte.net/accueil FF Notifications: Mozilla\Firefox\Profiles\172sg82j.default-release -> hxxps://assiste.com FF NewTabOverride: Mozilla\Firefox\Profiles\172sg82j.default-release -> Enabled: newtaboverride@agenedia.com FF NewTabOverride: Mozilla\Firefox\Profiles\172sg82j.default-release -> Enabled: jid1-MnnxcxisBPnSXQ@jetpack FF Extension: (Abstract – Soft) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\abstract-soft-colorway@mozilla.org.xpi [2023-03-18] FF Extension: (Custom Google Visited Link Color) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\custom-link-color@iBoonie.xpi [2021-01-21] FF Extension: (Traduisez des sites web dans votre navigateur sans avoir recours au cloud.) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\firefox-translations-addon@mozilla.org.xpi [2023-08-27] FF Extension: (SaveFrom.net Helper) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\helper@savefrom.net.xpi [2023-06-12] FF Extension: (Privacy Badger) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2023-06-29] FF Extension: (New Tab Override) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\newtaboverride@agenedia.com.xpi [2021-05-26] FF Extension: (Video DownloadHelper) - C:\Users\jmmou\AppData\Roaming\Mozilla\Firefox\Profiles\172sg82j.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2023-08-25] FF Extension: (SaveFrom.net Helper) - C:\Program Files\Mozilla Firefox\distribution\extensions\helper@savefrom.net.xpi [2021-02-05] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\x64\npDgnRia2_x64.dll [2017-02-13] (Nuance Communications, Inc. -> Nuance Communications, Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1187.1\npCCleanerBrowserUpdate3.dll [Pas de fichier] FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1187.1\npCCleanerBrowserUpdate3.dll [Pas de fichier] FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2022-10-25] (VideoLAN -> VideoLAN) FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\npDgnRia2.dll [2017-02-13] (Nuance Communications, Inc. -> Nuance Communications, Inc.) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdvancedSystemCareService; C:\Program Files (x86)\IObit\Advanced SystemCare 4\ASCService.exe [352656 2011-05-12] (IObit Information Technology -> IObit) [Fichier non signé] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11817440 2023-08-19] (Microsoft Corporation -> Microsoft Corporation) R2 DolbyDAXAPI; C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [1928648 2020-05-19] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [166288 2017-02-13] (Nuance Communications, Inc. -> Nuance Communications, Inc.) R2 FMAPOService; C:\Windows\System32\FMService64.exe [364928 2020-06-16] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [84616 2013-06-28] (Canon Inc. -> ) R2 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) R2 LenovoFnAndFunctionKeys; C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_ec25230d3e6604c8\LenovoUtilityService.exe [279280 2023-05-08] (Lenovo -> Lenovo(beijing) Limited) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\LenovoVantageService.exe [34176 2023-07-14] (Lenovo -> Lenovo) R2 LITSSVC; C:\Windows\System32\LNBITSSvc.exe [1820080 2021-02-06] (Lenovo -> Lenovo(beijing) Limited) R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd. -> Safer Networking Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) S2 ccleaner; "C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe" /svc [X] S3 ccleanerm; "C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe" /medsvc [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2021-09-17] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [154112 2021-10-22] (Microsoft Corporation) [Fichier non signé] R3 iaLPSS2_GPIO2_ICL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_icl.inf_amd64_90beccc7e046abab\iaLPSS2_GPIO2_ICL.sys [132872 2020-08-25] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_ICL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_icl.inf_amd64_c8c0638291b9b209\iaLPSS2_I2C_ICL.sys [200456 2020-04-28] (Intel Corporation -> Intel Corporation) S3 LenovoDiagnosticsDriver; C:\ProgramData\Lenovo\Vantage\Addins\LenovoHardwareScanAddin\3.0.0.24\LenovoDiagnosticsDriver.sys [53240 2023-06-15] (Lenovo -> Lenovo Group Limited (R)) R3 MpKsldea79620; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A04200D1-4452-42F8-9AE7-87C66A4AFD86}\MpKslDrv.sys [222464 2023-09-07] (Microsoft Windows -> Microsoft Corporation) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2019-07-16] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55872 2023-08-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\Windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [574872 2023-08-31] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-31] (Microsoft Windows -> Microsoft Corporation) S1 netfilter2; system32\drivers\netfilter2.sys [X] S3 RHDISK_AMD64; \??\E:\_rohos\RHDISK_AMD64.SYS [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-07 09:01 - 2023-09-07 16:10 - 000000000 ____D C:\FRST 2023-09-07 08:28 - 2023-09-07 08:28 - 000018822 _____ C:\Users\jmmou\Desktop\ZHPCleaner (S).html 2023-09-07 08:28 - 2023-09-07 08:28 - 000009626 _____ C:\Users\jmmou\Desktop\ZHPCleaner (S).txt 2023-09-07 08:15 - 2023-09-07 15:02 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\ZHP 2023-09-07 08:15 - 2023-09-07 08:15 - 000000886 _____ C:\Users\jmmou\Desktop\ZHPCleaner.lnk 2023-09-04 14:25 - 2023-09-04 14:25 - 000002122 _____ C:\Users\jmmou\Desktop\3D Driving-School Demo.lnk 2023-09-04 14:25 - 2023-09-04 14:25 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\3D Driving-School Demo 2023-09-04 14:25 - 2023-09-04 14:25 - 000000000 ____D C:\Program Files (x86)\3D Driving-School Demo 2023-09-01 17:09 - 2023-09-01 17:09 - 000000000 ____D C:\ProgramData\IObit 2023-09-01 10:24 - 2023-09-01 10:24 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\Document Building Blocks 2023-09-01 07:35 - 2023-09-07 10:58 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-08-31 20:17 - 2023-08-31 20:17 - 000001206 _____ C:\Users\Public\Desktop\DroidKit.lnk 2023-08-31 20:17 - 2023-08-31 20:17 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\iMobie 2023-08-31 20:17 - 2023-08-31 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie 2023-08-31 20:12 - 2023-08-31 20:12 - 000000000 ____D C:\Program Files (x86)\iMobie 2023-08-31 19:50 - 2023-08-31 19:50 - 000000000 ____D C:\Users\jmmou\Desktop\Cohérence cardiaque 2023-08-29 08:57 - 2023-08-29 10:23 - 000000000 ____D C:\Users\jmmou\Documents\Shutter Encoder 2023-08-29 08:57 - 2023-08-29 08:57 - 000000948 _____ C:\Users\Public\Desktop\Shutter Encoder.lnk 2023-08-29 08:57 - 2023-08-29 08:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shutter Encoder 2023-08-29 08:57 - 2023-08-29 08:57 - 000000000 ____D C:\Program Files\Shutter Encoder 2023-08-29 07:36 - 2023-08-29 07:36 - 000000000 ____D C:\Users\jmmou\Documents\Freemake 2023-08-29 07:36 - 2023-08-29 07:36 - 000000000 ____D C:\ProgramData\Freemake 2023-08-29 07:35 - 2023-08-29 08:57 - 000000000 ____D C:\Program Files (x86)\Freemake 2023-08-28 10:04 - 2023-08-28 10:04 - 000000000 ____D C:\Windows\LastGood.Tmp 2023-08-27 09:21 - 2023-08-27 09:21 - 000000000 ____D C:\Program Files (x86)\FreeVPN 2023-08-25 15:53 - 2023-08-25 16:01 - 000001478 _____ C:\Users\jmmou\Desktop\Mettre en veille.lnk 2023-08-13 09:20 - 2023-08-13 09:20 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\PowerPoint 2023-08-10 14:22 - 2023-08-10 16:59 - 000000045 _____ C:\Users\jmmou\Desktop\Vidéos en cours.txt 2023-08-09 18:44 - 2023-08-09 18:44 - 000000000 ___HD C:\$WinREAgent ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-07 15:46 - 2021-01-21 16:56 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\Word 2023-09-07 15:29 - 2021-02-26 11:31 - 000000000 ____D C:\Temp 2023-09-07 15:27 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-09-07 14:46 - 2020-05-06 20:33 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-09-07 12:41 - 2022-02-11 17:39 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-09-07 11:03 - 2020-12-11 12:21 - 000757852 _____ C:\Windows\system32\perfh00C.dat 2023-09-07 11:03 - 2020-12-11 12:21 - 000142606 _____ C:\Windows\system32\perfc00C.dat 2023-09-07 11:03 - 2020-05-06 20:41 - 001681370 _____ C:\Windows\system32\PerfStringBackup.INI 2023-09-07 11:03 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2023-09-07 10:59 - 2020-12-11 03:28 - 000000000 ____D C:\Program Files\Microsoft Office 2023-09-07 10:59 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-09-07 10:59 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2023-09-07 10:58 - 2022-09-22 17:05 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2023-09-07 10:58 - 2021-12-28 15:10 - 000000000 ____D C:\Program Files\CCleaner 2023-09-07 10:58 - 2021-01-21 17:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-09-07 10:58 - 2021-01-21 12:40 - 000000000 __SHD C:\Users\jmmou\IntelGraphicsProfiles 2023-09-07 10:58 - 2020-12-11 03:35 - 000000000 ___HD C:\Intel 2023-09-07 10:58 - 2020-05-06 20:33 - 000008192 ___SH C:\DumpStack.log.tmp 2023-09-07 10:58 - 2020-05-06 20:33 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-09-07 10:58 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2023-09-07 10:58 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI 2023-09-07 08:16 - 2021-01-21 17:30 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-09-06 07:47 - 2021-12-28 15:10 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update 2023-09-04 14:59 - 2023-08-06 15:34 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\deluge 2023-09-04 08:08 - 2021-01-22 14:20 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\MPC-HC 2023-09-02 11:14 - 2021-02-05 18:06 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-08-31 10:07 - 2020-05-06 20:33 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-08-29 07:30 - 2021-01-22 14:21 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\vlc 2023-08-28 10:06 - 2021-04-14 10:50 - 000000000 ____D C:\ProgramData\CanonIJPLM 2023-08-25 15:51 - 2021-01-22 14:54 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\WhatsApp 2023-08-25 15:19 - 2021-01-21 12:21 - 000000000 ___SD C:\Users\jmmou\AppData\Roaming\Microsoft\Credentials 2023-08-25 09:18 - 2021-01-21 16:56 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\Office 2023-08-22 08:26 - 2021-04-15 21:23 - 000000000 ____D C:\Users\jmmou\AppData\Roaming\Microsoft\Excel 2023-08-21 19:46 - 2022-09-22 17:05 - 000003474 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2023-08-14 19:03 - 2020-05-06 20:33 - 000439128 _____ C:\Windows\system32\FNTCACHE.DAT 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2023-08-14 19:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat 2023-08-10 10:06 - 2023-07-17 18:34 - 000000000 ____D C:\Users\jmmou\Desktop\Captvty 2023-08-09 18:54 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2023-08-09 18:50 - 2020-05-06 20:36 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2023-08-09 17:23 - 2021-01-21 14:53 - 000000000 ____D C:\Windows\system32\MRT 2023-08-09 17:20 - 2021-01-21 14:53 - 175983240 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe ==================== Fichiers à la racine de certains dossiers ======== 2021-03-23 16:19 - 2023-07-11 17:09 - 000001195 _____ () C:\Users\jmmou\AppData\Roaming\SAS7_000.DAT 2021-04-06 16:51 - 2021-04-06 17:32 - 000000240 _____ () C:\Users\jmmou\AppData\Roaming\settings.xml 2022-01-16 13:56 - 2022-01-16 17:37 - 000000016 _____ () C:\Users\jmmou\AppData\Roaming\ymddefault.ini 2023-09-07 08:29 - 2023-09-07 08:29 - 000004978 _____ () C:\Users\jmmou\AppData\Local\recently-used.xbel 2021-01-22 15:53 - 2021-01-22 15:53 - 000000017 _____ () C:\Users\jmmou\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================