Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 28-08-2023 Exécuté par hadri (administrateur) sur HADRIEN-PERSO (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X570DD_D570DD) (08-09-2023 17:39:05) Exécuté depuis C:\Users\hadri\OneDrive\Bureau\FRST64.exe Profils chargés: hadri Plate-forme: Microsoft Windows 11 Famille Version 22H2 22621.2134 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOSD.exe (C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.230.0.10\OverwolfHelper.exe (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.230.0.10\OverwolfHelper64.exe (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.230.0.10\OverwolfBrowser.exe <4> (C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Users\hadri\AppData\Local\Overwolf\ProcessCache\0.230.0.10\cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj\curseforge.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\WindowsApps\MicrosoftTeams_23216.906.2347.2954_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\116.0.1938.69\msedgewebview2.exe <12> (C:\Riot Games\Riot Client\RiotClientServices.exe ->) () [Fichier non signé] C:\Riot Games\Riot Client\RiotClientCrashHandler.exe (Discord Inc. -> Discord Inc.) C:\Users\hadri\AppData\Local\Discord\app-1.0.9017\Discord.exe <6> (DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (DriverStore\FileRepository\u0372326.inf_amd64_b91ab8cfa797c6df\B372145\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0372326.inf_amd64_b91ab8cfa797c6df\B372145\atieclxx.exe (explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <46> (explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2306.15.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <14> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Riot Games\Riot Client\RiotClientServices.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler64.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0372326.inf_amd64_b91ab8cfa797c6df\B372145\atiesrxx.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkRemote\AsusLinkRemote.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkNear\AsusLinkNear.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe (services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_a5d3270da26fb113\ICEsoundService64.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvam.inf_amd64_61df758291bf519e\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Qualcomm Atheros, Inc. -> ) C:\Windows\System32\drivers\QcomWlanSrvx64.exe (services.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc32.exe (sihost.exe ->) (649690DD-9BE8-48E7-8019-88DCA877AF4E -> McAfee, LLC) C:\Program Files\WindowsApps\5a894077.mcafeesecurity_2.1.68.0_x64__wafk5atnkzcwy\Win32\mcafee-security-ft.exe (svchost.exe ->) (649690DD-9BE8-48E7-8019-88DCA877AF4E -> McAfee LLC) C:\Program Files\WindowsApps\5a894077.mcafeesecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsTerminal_1.17.11461.0_x64__8wekyb3d8bbwe\OpenConsole.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsTerminal_1.17.11461.0_x64__8wekyb3d8bbwe\WindowsTerminal.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.7272.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.823.7272.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.23500.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics) C:\Program Files (x86)\Samsung\Portable_SSD\SamsungPortableSSDMon_1.0.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [cAudioFilterAgent] => "C:\Program Files (x86)\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe" (Pas de fichier) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3088752 2023-05-03] (Riot Games, Inc. -> Riot Games, Inc.) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [Discord] => C:\Users\hadri\AppData\Local\Discord\Update.exe [1525016 2023-04-26] (Discord Inc. -> GitHub) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1785864 2023-08-03] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4374376 2023-07-28] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [Medal] => C:\Users\hadri\AppData\Local\Medal\update.exe [2046856 2023-08-17] (Ferox Games B.V. -> ) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize (Pas de fichier) <==== ATTENTION HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37097936 2023-09-08] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [70911416 2023-09-08] (Riot Games, Inc. -> Riot Games, Inc.) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [GoogleChromeAutoLaunch_31F81451B74472225749D5B44B827872] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 [3219744 2023-09-04] (Google LLC -> Google LLC) HKU\S-1-5-21-3737595318-1768736423-1757966457-1001\...\Run: [MicrosoftEdgeAutoLaunch_451E6E55F3848201C523A485947F2230] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4108328 2023-08-31] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\116.0.5845.180\Installer\chrmstp.exe [2023-09-08] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\116.0.22136.97\Installer\chrmstp.exe [2023-09-01] (Avast Software s.r.o. -> AVAST Software) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\hadri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2021-12-26] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {21EEC585-8C6F-4AB2-8633-3D5A41CD8C91} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusHotkey.exe [291408 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {66452192-C910-43EB-BC6E-7D7A83E92866} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusUpdateChecker.exe [797776 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {48DA1681-7AC1-4DB9-8148-07CD7AA4B412} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4082808 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {870CEF84-9F54-4C9C-A21F-5A0D4FFFD664} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3353896 2023-08-21] (Avast Software s.r.o. -> AVAST Software) Task: {E5A409DC-B98A-46BA-80C1-D353900B495A} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3353896 2023-08-21] (Avast Software s.r.o. -> AVAST Software) Task: {1DC2F905-DD93-4509-9CEF-61A82A6DCDEC} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-06-15] (Avast Software s.r.o. -> AVAST Software) Task: {1A650E0E-E1D3-4627-93CA-B269374D7485} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-06-15] (Avast Software s.r.o. -> AVAST Software) Task: {52F16E48-FD31-48B8-8C82-AAFE314AC219} - System32\Tasks\GoogleUpdateTaskMachineCore{A15E79F2-D7D8-4184-A47B-F6BC4607E819} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-06-04] (Google LLC -> Google LLC) Task: {949ADBA4-8AD1-4EF5-940A-BFF62F1F72EE} - System32\Tasks\GoogleUpdateTaskMachineUA{D64ECD91-75DD-4900-871A-2C414154C705} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-06-04] (Google LLC -> Google LLC) Task: {CBA6B22C-5837-4A3B-A69B-6942D01766EB} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {A89BC51D-86F2-4160-9759-556755F4FED9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26913464 2023-08-23] (Microsoft Corporation -> Microsoft Corporation) Task: {9FD790A4-9ED3-402A-A5AD-CB53F991D5A0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-09-01] (Microsoft Corporation -> Microsoft Corporation) Task: {DE9227A2-C7DC-4376-AE2E-D3FAA7D01399} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158872 2023-09-01] (Microsoft Corporation -> Microsoft Corporation) Task: {B1BB391E-C4E9-4E06-B37C-8FA3D688A8C3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [167864 2023-08-02] (Microsoft Corporation -> Microsoft Corporation) Task: {AF56A035-884D-45B6-9BE4-FB08781879E9} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => "C:\Program Files\WindowsApps\22094synapticsincorporate.smartaudio2_1.1.50.0_x86__qt57b6kdvhcfw\SAII\SACpl.exe" /c /delay:45 (Pas de fichier) Task: {45CF73C8-9A94-47C5-8E45-347738A58FC5} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {6DAE252E-FC03-4984-B7BE-AE0CF242C09E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {BA928038-04BD-44A3-8B6E-EFA204A50CC0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C348CD97-C9BE-466C-B728-4C7B60AE02F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {75556276-1CAE-4CBA-BD27-FB2CC3175FA8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4E3A0A2C-16F9-4093-91D3-C009B5CA0738} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {21BFC521-324E-4FBD-AAFD-02CC88D55559} - System32\Tasks\MyASUS Update Messenger => C:\Users\hadri\AppData\Local\MyASUS Update Messenger\UpdateMessenger.exe [13339504 2023-07-21] (SweetLabs Inc -> SweetLabs, Inc) Task: {46781F54-81E5-4F3C-B9D5-D3A030BC9A5F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {C5494CBA-8B15-4092-80CB-BEE0AC176C31} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation) Task: {DF27C663-E94F-4568-8BD0-8B70A5F2FC9C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BE026865-9EF8-4BFF-8F89-0D1A21E46447} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DB22AF39-C879-4CD4-81C0-F325602B99DD} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A0367217-DEA3-4838-88C1-E3B799FD1A7E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3BC2A4C1-55C5-4551-A2A5-5857D8394477} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4BC5DDED-4C96-445C-BD99-7F588468EFD0} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E92BA144-C287-4631-A6C1-1826FB7E7A4D} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8F16AEAB-5937-4E27-B70A-3DCA86EBC0AB} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3737595318-1768736423-1757966457-500 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier) Task: {BFC647F7-1DEB-40B0-9E8E-DB3C017D61DD} - System32\Tasks\Opera scheduled Autoupdate 1689340528 => C:\Users\hadri\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) Task: {C3A52962-CB51-4651-A651-CB507FD6EFB9} - System32\Tasks\Opera scheduled Autoupdate 1690809449 => C:\Users\hadri\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) Task: {3A5B437A-77CF-4136-A6FE-112EE472287E} - System32\Tasks\Opera scheduled Autoupdate 1692019932 => C:\Users\hadri\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) Task: {0A5A33D1-4EB7-4F6C-BA4E-DE96FF80665E} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641416 2023-08-03] (Overwolf Ltd -> Overwolf LTD) Task: {A07330F9-B922-469F-9FE7-C23D8317EF34} - System32\Tasks\Samsung_PSSD_Registration_Plus => C:\Program Files (x86)\Samsung\Portable_SSD\SamsungPortableSSDMon_1.0.exe [869224 2023-06-04] (Samsung Electronics Co., Ltd. -> Samsung Electronics) Task: {3338CE68-CFE9-4006-8F6E-53A01EAF6856} - System32\Tasks\SFjK\Dxq2mSc => "C:\Users\hadri\AppData\Roaming\F62A39B97FA32E4E\srvrast.exe" -> "C:\Users\hadri\AppData\Roaming\F62A39B97FA32E4E\srvrast.chm" <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{da87167c-f5ed-46d5-b0a8-42eba6e6665f}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{fd902ee8-6582-4672-816e-0d4bf68b1113}: [DhcpNameServer] 40.53.1.12 Edge: ======= Edge Profile: C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-08] Edge HomePage: Default -> hxxp://asus17win10.msn.com/?pc=ASTE Edge DefaultSearchURL: Default -> hxxps://www.bing.com/search?PC=U523&q={searchTerms} Edge Extension: (Google Traduction) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2023-07-14] Edge Extension: (RoPro - Améliorez votre expérience Roblox) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\adbacgifemdbhdkfppmeilbgppmhaobf [2023-07-14] Edge Extension: (Microsoft Rewards) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bnplfnhcidhhdapmblniehfaaompjlck [2023-06-04] Edge Extension: (Téléchargeur vidéo par ODM) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dghgahobnabjdjkmlebkkoabogenjjpo [2023-07-14] Edge Extension: (Project Naptha) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eckaechjaiiiffijigiigbhbfhelljmi [2023-07-14] Edge Extension: (Google Docs hors connexion) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-28] Edge Extension: (Shimeji Browser Extension) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gohjpllcolmccldfdggmamodembldgpc [2023-07-14] Edge Extension: (BTRoblox - Making Roblox Better) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2023-07-14] Edge Extension: (Video Downloader Plus) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2023-07-14] Edge Extension: (Traducteur - Traduction Web, Dictionnaire) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ibppednjgooiepmkgdcoppnmbhmieefh [2023-07-18] Edge Extension: (Touch VPN - Secure and unlimited VPN proxy) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ighhnpmaabelnfcbbkijikgghajbiaml [2023-07-14] Edge Extension: (Roblox+) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jfbnmfgkohlfclfnplnlenbalpppohkm [2023-07-14] Edge Extension: (Edge relevant text changes) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-08] Edge Extension: (ZenMate VPN Gratuit – Meilleur VPN pour Edge) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kepdippgcikacmcdaijnponnfgljfbea [2023-07-14] Edge Extension: (Hoxx VPN Proxy) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nbcojefnccbanplpoffopkoepjmhgdgh [2023-08-31] Edge Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2023-09-08] Edge Extension: (Microsoft Rewards) - C:\Users\hadri\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nlbmdekgjkajiobkcbpolefohlelfhfe [2023-07-14] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-08-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-08-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1631.4\npAvastBrowserUpdate3.dll [2023-06-15] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1631.4\npAvastBrowserUpdate3.dll [2023-06-15] (Avast Software s.r.o. -> AVAST Software) Chrome: ======= CHR Profile: C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default [2023-09-08] CHR HomePage: Default -> hxxps://www.roblox.com/home CHR StartupUrls: Default -> "hxxps://www.google.it/" CHR Extension: (Google Traduction) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2023-06-04] CHR Extension: (RoPro - Améliorez votre expérience Roblox) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\adbacgifemdbhdkfppmeilbgppmhaobf [2023-06-04] CHR Extension: (Touch VPN - VPN et proxy gratuit) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2023-06-04] CHR Extension: (Slate) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmhmcmgkegfffbbfobhjpdbimgmoohap [2023-06-04] CHR Extension: (Microsoft Bing Search with Rewards) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbgcedjacmlbgleddnoacbnijgmiolem [2023-07-30] CHR Extension: (VPN Gratuit ZenMate - Free VPN pour Chrome) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2023-06-04] CHR Extension: (Google Docs hors connexion) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-27] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-09-08] CHR Extension: (Hola VPN - The Website Unblocker) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2023-09-08] CHR Extension: (Shimeji Browser Extension) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\gohjpllcolmccldfdggmamodembldgpc [2023-06-14] CHR Extension: (BTRoblox - Making Roblox Better) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2023-06-16] CHR Extension: (Video Downloader Plus) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2023-06-04] CHR Extension: (Traducteur - Traduction Web, Dictionnaire) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\ibppednjgooiepmkgdcoppnmbhmieefh [2023-07-18] CHR Extension: (Roblox+) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfbnmfgkohlfclfnplnlenbalpppohkm [2023-07-03] CHR Extension: (Violentmonkey) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\jinjaccalgkegednnccohejagnlnfdag [2023-08-24] CHR Extension: (Project Naptha) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\molncoemjfmpgdkbdlbjmhlcgniigdnf [2023-06-04] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-04] CHR Extension: (ODM - Téléchargeur de vidéos) - C:\Users\hadri\AppData\Local\Google\Chrome\User Data\Default\Extensions\opjjpmhoiojifppkkcdabiobhakljdgm [2023-08-24] CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp] Opera: ======= OPR Profile: C:\Users\hadri\AppData\Roaming\Opera Software\Opera Stable [2023-08-14] OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={searchTerms}&sourceid=opera&ie={inputEncoding}&oe={outputEncoding} OPR DefaultSearchKeyword: Opera Stable -> g OPR Extension: (Rich Hints Agent) - C:\Users\hadri\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-07-14] OPR Extension: (Opera Wallet) - C:\Users\hadri\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-07-14] OPR Extension: (Aria) - C:\Users\hadri\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-07-31] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\AsusAppService\AsusAppService.exe [1177208 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSLinkNear; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkNear\AsusLinkNear.exe [1630288 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSLinkRemote; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSLinkRemote\AsusLinkRemote.exe [772688 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusOptimization.exe [473168 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSoftwareManager\AsusSoftwareManager.exe [1111120 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSwitch\AsusSwitch.exe [641104 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4082808 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [832632 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-06-15] (Avast Software s.r.o. -> AVAST Software) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2023-06-15] (Avast Software s.r.o. -> AVAST Software) S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\116.0.22136.97\elevation_service.exe [1837960 2023-08-21] (Avast Software s.r.o. -> AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15044872 2023-08-07] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11817440 2023-08-19] (Microsoft Corporation -> Microsoft Corporation) R2 CxAudioSvc; C:\WINDOWS\CxSvc\CxAudioSvc.exe [77216 2020-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.) R2 CxUIUSvc; C:\WINDOWS\System32\CxUIUSvc32.exe [114968 2020-11-09] (Synaptics Incorporated -> Conexant Systems, Inc.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2023-08-07] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [943528 2023-08-07] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-05-01] (Epic Games Inc. -> Epic Games, Inc.) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641416 2023-08-03] (Overwolf Ltd -> Overwolf LTD) R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [188736 2021-07-20] (Qualcomm Atheros, Inc. -> ) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [11023152 2023-05-03] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-31] (Microsoft Windows Publisher -> Microsoft Corporation) S4 mccspsvc; "C:\Program Files\Common Files\McAfee\CSP\3.1.160.0\\McCSPServiceHost.exe" [X] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_61df758291bf519e\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvam.inf_amd64_61df758291bf519e\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0372326.inf_amd64_b91ab8cfa797c6df\B372145\amdkmdag.sys [80507248 2021-10-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [127936 2019-04-19] (Alcorlink Corp. -> ) R3 AsusPTPDrv; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_314b5cb6bf57f471\AsusPTPFilter.sys [116712 2021-12-02] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSSystemAnalysis\AsusSAIO.sys [49208 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_32ddcc2f81113491\ASUSOptimization\AsusWmiAcpi.sys [48760 2023-07-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [532480 2023-05-29] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2023-05-29] (Microsoft Corporation) [Fichier non signé] S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2022-02-05] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2022-02-05] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) R3 rawaccel; C:\WINDOWS\system32\drivers\rawaccel.sys [50176 2021-09-24] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [189152 2023-04-17] (Oracle Corporation -> Oracle and/or its affiliates) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [22676992 2023-05-03] (Riot Games, Inc. -> Riot Games, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55872 2023-08-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [574872 2023-08-31] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-31] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-08 17:41 - 2023-09-08 17:41 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2023-09-08 17:38 - 2023-09-08 17:39 - 000000000 ____D C:\FRST 2023-09-08 17:37 - 2023-09-08 17:37 - 002382336 _____ (Farbar) C:\Users\hadri\Downloads\FRST64.exe 2023-09-08 17:04 - 2023-09-08 17:04 - 000809500 _____ C:\WINDOWS\system32\perfh00C.dat 2023-09-08 17:04 - 2023-09-08 17:04 - 000156952 _____ C:\WINDOWS\system32\perfc00C.dat 2023-09-08 16:37 - 2023-09-08 16:37 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2023-09-08 13:33 - 2023-09-08 13:33 - 002377303 _____ C:\Users\hadri\Downloads\Fluxus (3).zip 2023-09-02 18:33 - 2023-09-02 18:33 - 000000000 ____D C:\Users\hadri\AppData\Roaming\ParadoxInteractive 2023-09-02 17:33 - 2023-09-02 18:30 - 3015664716 _____ C:\Users\hadri\Downloads\Magicka 2.zip 2023-09-02 16:45 - 2023-09-02 16:45 - 008383096 _____ (Chromstera Premium Solutions) C:\Users\hadri\Downloads\Setup (1).exe 2023-09-02 16:37 - 2023-09-02 16:37 - 001914120 _____ () C:\Users\hadri\Downloads\Krnl (1).exe 2023-09-02 11:14 - 2023-09-02 11:14 - 000000000 ____D C:\Users\hadri\AppData\Local\Maine 2023-09-02 10:33 - 2023-09-02 10:43 - 1320186920 _____ C:\Users\hadri\Downloads\Grounded (v1.2.3.4126) By STG GEGE.rar 2023-09-02 08:49 - 2023-09-02 08:49 - 000000072 _____ C:\Users\hadri\Downloads\Balanced Craftwars Overhaul GUI - KILL AURA & MORE!.txt 2023-09-02 08:45 - 2023-09-02 08:45 - 000000128 _____ C:\Users\hadri\Downloads\Balanced Craftwars Overhaul GOD MODE ITEM.txt 2023-09-02 08:45 - 2023-09-02 08:45 - 000000120 _____ C:\Users\hadri\Downloads\Balanced Craftwars Overhaul MULTIHACK REVIVAL.txt 2023-09-01 16:32 - 2023-09-01 16:33 - 008383088 _____ (Chromstera Premium Solutions) C:\Users\hadri\Downloads\Setup.exe 2023-08-28 16:14 - 2023-08-28 16:15 - 688772989 _____ () C:\Users\hadri\Downloads\Gang Beasts.exe 2023-08-28 15:13 - 2023-08-28 15:14 - 1110943283 _____ C:\Users\hadri\Downloads\The Binding of Isaac Rebirth.zip 2023-08-27 10:48 - 2023-08-27 10:48 - 000000195 _____ C:\Users\hadri\Downloads\040.txt 2023-08-27 10:47 - 2023-08-27 10:47 - 000000104 _____ C:\Users\hadri\Downloads\Murim Cultivation ITEMS FARM - WHEAT DUPLICATION FARM.txt 2023-08-26 10:49 - 2023-08-26 10:49 - 003500976 _____ (Opera Software) C:\Users\hadri\Downloads\OperaGXSetup (1).exe 2023-08-23 18:30 - 2023-08-23 18:30 - 000000000 ____D C:\Users\hadri\OneDrive\Documents\Flibook 2023-08-23 18:28 - 2023-08-23 18:28 - 000262060 _____ C:\Users\hadri\Downloads\sphere-bait.aep 2023-08-23 18:24 - 2023-08-23 18:24 - 000020160 _____ C:\Users\hadri\Downloads\13784977469.rbxm 2023-08-23 16:40 - 2023-08-23 16:46 - 000000000 ____D C:\Users\hadri\AppData\Roaming\voice-changer-native-client 2023-08-23 16:40 - 2023-08-23 16:40 - 092874134 _____ C:\Users\hadri\Downloads\DIO_E260.zip 2023-08-23 16:33 - 2023-08-23 16:33 - 000000000 ____D C:\Users\hadri\AppData\Roaming\Python 2023-08-23 16:33 - 2023-08-23 16:33 - 000000000 ____D C:\Users\hadri\AppData\Local\pip 2023-08-23 16:30 - 2023-08-23 16:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 3.11 2023-08-23 16:30 - 2023-08-23 16:31 - 000000000 ____D C:\Program Files\Python311 2023-08-23 16:30 - 2023-08-23 16:30 - 000000000 ____D C:\Users\hadri\AppData\Local\Package Cache 2023-08-23 16:29 - 2023-08-23 16:29 - 025426160 _____ (Python Software Foundation) C:\Users\hadri\Downloads\python-3.11.4-amd64 (1).exe 2023-08-23 16:21 - 2023-08-23 16:21 - 000000000 ____D C:\Users\hadri\AppData\Local\numba 2023-08-23 16:19 - 2023-08-23 16:19 - 025426160 _____ (Python Software Foundation) C:\Users\hadri\Downloads\python-3.11.4-amd64.exe 2023-08-23 16:09 - 2023-08-23 16:13 - 3240864272 _____ C:\Users\hadri\Downloads\MMVCServerSIO_win_onnxgpu-cuda_v.1.5.3.12a.zip 2023-08-23 14:26 - 2023-08-23 14:26 - 000116248 _____ C:\Users\hadri\Downloads\baseplate_and_lighting_CT3.rbxl 2023-08-21 17:55 - 2023-08-21 17:56 - 000005533 _____ C:\Users\hadri\Downloads\ROBLOX ALMOST UNDETECTABLE WALKSPEED SPOOFER.txt 2023-08-21 17:49 - 2023-08-21 17:49 - 000003335 _____ C:\Users\hadri\Downloads\Peroxide MOB ESP.txt 2023-08-20 13:05 - 2023-08-20 13:05 - 002937344 _____ C:\Users\hadri\Downloads\AutoHotkey_2.0.5_setup.exe 2023-08-17 22:18 - 2023-08-24 17:36 - 000000000 ____D C:\Users\hadri\AppData\Local\Medal 2023-08-17 22:12 - 2023-08-17 22:12 - 144124296 _____ (Medal B.V.) C:\Users\hadri\Downloads\MedalSetup (2).exe 2023-08-16 22:03 - 2023-08-16 22:03 - 000783175 _____ C:\Users\hadri\Downloads\AutoClicker (2).exe 2023-08-16 21:33 - 2023-08-16 21:33 - 000835863 _____ C:\Users\hadri\Downloads\8ad270dc83df59b16d5261c8940d57ff.mp4 2023-08-16 19:53 - 2023-08-16 19:53 - 000016462 _____ C:\Users\hadri\Downloads\x64.CursorFix (1).rar 2023-08-15 20:13 - 2023-08-15 20:13 - 000000111 _____ C:\Users\hadri\Downloads\Sakura Stand AUTO KILL - BOX AUTO FARM - AUTO SELL ITEMS - NPC TELEPORTS & MORE! (1).txt 2023-08-15 20:02 - 2023-08-15 20:02 - 000000099 _____ C:\Users\hadri\Downloads\Sakura Stand ITEM FARM - MOB FARM & ITEM ESP (1).txt 2023-08-15 19:58 - 2023-08-15 19:58 - 000000111 _____ C:\Users\hadri\Downloads\Sakura Stand AUTO KILL - BOX AUTO FARM - AUTO SELL ITEMS - NPC TELEPORTS & MORE!.txt 2023-08-15 19:53 - 2023-08-15 19:53 - 000000099 _____ C:\Users\hadri\Downloads\Sakura Stand ITEM FARM - MOB FARM & ITEM ESP.txt 2023-08-15 18:19 - 2023-08-15 18:19 - 000016462 _____ C:\Users\hadri\Downloads\x64.CursorFix.rar 2023-08-15 17:55 - 2023-08-15 17:55 - 002377303 _____ C:\Users\hadri\Downloads\Fluxus (2).zip 2023-08-15 17:54 - 2023-08-15 17:54 - 012191450 _____ C:\Users\hadri\Downloads\Non confirmé 730284.crdownload 2023-08-15 17:54 - 2023-08-15 17:54 - 012191450 _____ C:\Users\hadri\Downloads\Fluxus Download - Linkvertise Downloader (2).zip 2023-08-15 17:49 - 2023-08-15 17:49 - 000000090 _____ C:\Users\hadri\Downloads\ArdourBall2.export 2023-08-15 17:48 - 2023-08-15 17:48 - 000000184 _____ C:\Users\hadri\Downloads\lft2.txt 2023-08-15 17:47 - 2023-08-15 17:47 - 052162723 _____ C:\Users\hadri\Downloads\Roblox_2023.07.03_-_11.48.28.02.mp4 2023-08-15 13:05 - 2023-08-15 13:05 - 000000032 _____ C:\Users\hadri\Downloads\Souhub.txt 2023-08-14 19:01 - 2023-08-14 19:01 - 002299225 _____ C:\Users\hadri\Downloads\trim.2851D5CB-370A-4338-AD7D-121A1A341797.mov 2023-08-14 18:59 - 2023-08-14 18:59 - 002004605 _____ C:\Users\hadri\Downloads\trim.9CF6CDDE-0D24-42D3-9D42-0A7E463FC5CA.mov 2023-08-14 18:57 - 2023-08-14 18:57 - 000718070 _____ C:\Users\hadri\Downloads\vegan_teacher.mov 2023-08-14 18:57 - 2023-08-14 18:57 - 000293018 _____ C:\Users\hadri\Downloads\trim.2A7E9472-D1D0-44C9-8592-68245A9FA0CA.mov 2023-08-14 18:56 - 2023-08-14 18:56 - 000485868 _____ C:\Users\hadri\Downloads\SPOILER_gogo_gadget.mp4 2023-08-14 18:56 - 2023-08-14 18:56 - 000295578 _____ C:\Users\hadri\Downloads\bob_the_necromancer.mov 2023-08-14 15:43 - 2023-08-14 15:43 - 000047958 _____ C:\Users\hadri\Downloads\KILLAURA.txt 2023-08-14 15:42 - 2023-08-14 15:42 - 000039019 _____ C:\Users\hadri\Downloads\BAREBONES AUTOPARRY.txt 2023-08-14 15:39 - 2023-08-14 15:39 - 000000093 _____ C:\Users\hadri\Downloads\ZO SAMURAI AUTO PARRY.txt 2023-08-14 15:32 - 2023-08-14 15:32 - 000004224 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1692019932 2023-08-14 15:31 - 2023-08-14 15:31 - 012075396 _____ C:\Users\hadri\Downloads\Vega X (2).zip 2023-08-14 15:31 - 2023-08-14 15:31 - 004018880 _____ (DT001) C:\Users\hadri\AppData\Local\setup54821.exe 2023-08-14 15:31 - 2023-08-14 15:31 - 000000000 ____D C:\Users\hadri\AppData\Local\DT001 2023-08-14 15:30 - 2023-08-14 15:31 - 009832864 _____ C:\Users\hadri\Downloads\Vega X_54821.exe 2023-08-14 15:24 - 2023-08-14 15:24 - 000000091 _____ C:\Users\hadri\Downloads\Zo - ZoSorry FREE GUI.txt 2023-08-13 19:57 - 2023-08-13 19:57 - 000728058 _____ C:\Users\hadri\Downloads\trim.F7BDDAE5-0F3C-449F-B9F1-3FA1A58648D3.mov 2023-08-13 19:52 - 2023-08-13 19:52 - 002584317 _____ C:\Users\hadri\Downloads\received_1381412482620895.mov 2023-08-12 21:54 - 2023-08-12 21:54 - 000000000 ____D C:\Users\hadri\AppData\LocalLow\Mobius Digital 2023-08-12 21:46 - 2023-08-12 21:49 - 3788806676 _____ C:\Users\hadri\Downloads\Outer Wilds By STG GEGE.rar 2023-08-12 15:37 - 2023-08-12 15:37 - 000000000 ____D C:\Users\hadri\AppData\Roaming\CreamAPI 2023-08-12 15:36 - 2023-08-12 15:36 - 092293679 _____ C:\Users\hadri\Downloads\Stick Fight The Game.zip 2023-08-12 15:11 - 2023-08-12 15:12 - 139059975 _____ C:\Users\hadri\Downloads\PICO PARK.zip 2023-08-11 17:49 - 2023-08-11 17:53 - 000000000 ___HD C:\$WinREAgent 2023-08-10 20:21 - 2023-08-10 20:21 - 000000000 ____D C:\Program Files (x86)\Microsoft XNA 2023-08-10 20:18 - 2023-08-10 20:19 - 557136223 _____ C:\Users\hadri\Downloads\Terraria (1).zip 2023-08-10 20:10 - 2023-08-10 20:11 - 557136223 _____ C:\Users\hadri\Downloads\Terraria.zip ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-09-08 17:38 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-09-08 17:27 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-09-08 17:27 - 2023-06-04 14:49 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-09-08 17:27 - 2023-06-04 14:15 - 000038192 _____ C:\WINDOWS\system32\InstallUtil.InstallLog 2023-09-08 17:27 - 2023-06-04 13:57 - 000000000 ____D C:\WINDOWS\CxSvc 2023-09-08 17:17 - 2023-06-04 14:19 - 000000000 ____D C:\Program Files (x86)\Google 2023-09-08 17:05 - 2023-07-31 21:02 - 000000000 ___HD C:\Users\hadri\Downloads\.opera 2023-09-08 17:05 - 2023-07-31 21:02 - 000000000 ___HD C:\Users\hadri\.opera 2023-09-08 17:04 - 2023-06-04 14:48 - 000000000 ____D C:\WINDOWS\INF 2023-09-08 17:04 - 2023-06-04 14:12 - 001804066 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-09-08 17:03 - 2023-06-04 14:07 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2023-09-08 17:01 - 2023-06-12 16:43 - 000000000 ____D C:\Users\hadri\AppData\Local\MyASUS Update Messenger 2023-09-08 17:01 - 2023-06-08 16:56 - 000000000 ____D C:\Program Files (x86)\Steam 2023-09-08 17:00 - 2023-06-07 13:31 - 000000000 ____D C:\Users\hadri\AppData\Local\Overwolf 2023-09-08 17:00 - 2023-06-04 15:08 - 000000000 ____D C:\Users\hadri\AppData\Roaming\discord 2023-09-08 17:00 - 2023-06-04 15:08 - 000000000 ____D C:\Users\hadri\AppData\Local\Discord 2023-09-08 17:00 - 2020-01-04 05:20 - 000000000 ____D C:\ProgramData\NVIDIA 2023-09-08 16:59 - 2023-06-04 15:06 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2023-09-08 16:56 - 2023-06-04 14:06 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-09-08 16:56 - 2023-05-29 20:21 - 000012288 ___SH C:\DumpStack.log.tmp 2023-09-08 16:41 - 2023-06-04 14:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-09-08 16:37 - 2023-06-04 13:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-09-08 16:36 - 2023-06-04 14:04 - 000000000 ____D C:\Users\hadri 2023-09-08 15:50 - 2023-06-10 18:43 - 000000000 ____D C:\Users\hadri\AppData\Local\CrashDumps 2023-09-08 14:14 - 2023-06-17 19:54 - 000000000 ____D C:\Program Files (x86)\d50178d802ce11ee8dcf806e6f6e6963edcf817dabb29e938ce095a4c2bddd7f 2023-09-08 12:03 - 2020-08-27 10:54 - 000000000 ____D C:\Users\hadri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2023-09-08 12:03 - 2020-08-27 10:53 - 000000252 _____ C:\Users\hadri\AppData\LocalLow\rbxcsettings.rbx 2023-09-08 11:54 - 2023-06-04 14:15 - 000000000 ____D C:\Users\hadri\AppData\Local\D3DSCache 2023-09-05 21:26 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-09-04 18:34 - 2023-06-04 14:49 - 000000000 ___HD C:\Program Files\WindowsApps 2023-09-03 16:57 - 2023-08-06 11:10 - 000000000 ____D C:\Users\hadri\AppData\Roaming\Krnl 2023-09-02 18:43 - 2023-06-04 13:56 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-09-01 21:04 - 2023-06-04 15:48 - 000000000 ____D C:\Users\hadri\AppData\Local\Roblox 2023-09-01 09:47 - 2023-06-04 15:56 - 002807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000493056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000247288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2023-09-01 09:47 - 2023-06-04 15:56 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2023-09-01 09:47 - 2023-06-04 15:56 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2023-09-01 09:46 - 2019-06-29 11:54 - 000000000 ____D C:\Program Files\Microsoft Office 2023-09-01 09:37 - 2023-06-15 21:56 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk 2023-08-31 10:31 - 2019-06-29 11:49 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-08-28 15:14 - 2022-11-10 21:02 - 000000000 ____D C:\STG Games 2023-08-27 12:36 - 2023-06-06 18:30 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-08-23 16:30 - 2020-01-04 05:20 - 000000000 ____D C:\ProgramData\Package Cache 2023-08-19 15:27 - 2023-06-18 13:47 - 000000000 ____D C:\Users\hadri\AppData\Roaming\Medal 2023-08-19 15:27 - 2022-08-20 15:15 - 000000000 ____D C:\Users\hadri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Medal B.V 2023-08-17 22:19 - 2023-06-18 13:48 - 000000000 ____D C:\Users\hadri\AppData\Local\Ferox_Games_B.V 2023-08-17 22:19 - 2023-06-04 14:21 - 000000000 ____D C:\Users\hadri\OneDrive\Documents\Medal 2023-08-17 22:19 - 2022-08-20 15:17 - 000000000 ____D C:\Medal 2023-08-17 22:18 - 2023-06-18 13:47 - 000001277 _____ C:\Users\hadri\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Medal.lnk 2023-08-17 22:18 - 2023-06-04 15:08 - 000000000 ____D C:\Users\hadri\AppData\Local\SquirrelTemp 2023-08-17 08:03 - 2023-06-07 13:32 - 000000000 ____D C:\Program Files (x86)\Overwolf 2023-08-15 10:53 - 2023-06-04 14:15 - 000000000 ____D C:\Users\hadri\AppData\Local\NVIDIA Corporation 2023-08-14 15:31 - 2023-07-14 15:15 - 000000045 _____ C:\Users\hadri\AppData\Local\link.txt 2023-08-14 15:31 - 2023-07-14 15:15 - 000000000 ____D C:\Users\hadri\AppData\Local\Adaware 2023-08-12 13:10 - 2023-06-04 14:49 - 000000000 ____D C:\ProgramData\USOPrivate 2023-08-12 00:32 - 2023-06-04 13:56 - 000295624 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\UUS 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SystemResources 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\SystemApps 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\setup 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\id-ID 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-08-12 00:31 - 2023-06-04 14:49 - 000000000 ____D C:\WINDOWS\appcompat 2023-08-11 18:14 - 2023-06-06 18:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-08-11 18:10 - 2023-06-06 18:27 - 175983240 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-08-11 18:10 - 2023-06-04 14:46 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-08-11 18:02 - 2023-06-04 13:58 - 003210752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-08-10 20:22 - 2023-06-04 14:19 - 000000000 ____D C:\Users\hadri\OneDrive\Documents\My Games ==================== Fichiers à la racine de certains dossiers ======== 2023-06-08 16:50 - 2023-06-08 16:50 - 004140544 _____ (Piriform Software Ltd) C:\Users\hadri\AppData\Roaming\HZ23hIoD.exe 2023-07-14 15:15 - 2023-08-14 15:31 - 000000045 _____ () C:\Users\hadri\AppData\Local\link.txt 2023-07-14 15:14 - 2023-07-31 15:16 - 003295384 _____ (DT001) C:\Users\hadri\AppData\Local\setup30928.exe 2023-08-14 15:31 - 2023-08-14 15:31 - 004018880 _____ (DT001) C:\Users\hadri\AppData\Local\setup54821.exe 2023-07-31 16:27 - 2023-07-31 16:27 - 003295384 _____ (DT001) C:\Users\hadri\AppData\Local\setup98430.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================