Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2023 Exécuté par André (administrateur) sur DESKTOP-JEF9I22 (Micro-Star International Co., Ltd. MS-7B48) (16-10-2023 09:04:28) Exécuté depuis C:\Users\André\Desktop\FRST64.exe Profils chargés: André Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3570 (X64) Langue: Français (Canada) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\cmw_srv.exe ->) (Pango LLC -> Pango Inc.) C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\hsscp.exe (C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\cmw_srv.exe ->) (Pango LLC -> Pango Inc.) C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\x64\hydra.exe (C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe (C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Game Highlights\MSI_Companion_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Super Charger\MSI_Super_Charger_Service.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdig.inf_amd64_97c24e8dfa98e686\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Pango LLC -> Pango Inc.) C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\cmw_srv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe <2> (services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe (services.exe ->) (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Windows\System32\RAPID\SamsungRapidSvc.exe (services.exe ->) (Schneider Electric -> Schneider Electric) [Fichier non signé] C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe (services.exe ->) (Schneider Electric -> Schneider Electric) [Fichier non signé] C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3562_none_7e0523f67c93b82a\TiWorker.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\True Color\New\MSI.True Color.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe [1910072 2023-07-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [SamsungRapidApp] => C:\Program Files (x86)\Samsung\RAPID\CacheFilter\SamsungRapidApp.exe [219024 2023-06-12] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [Display] => C:\Program Files (x86)\APC\PowerChute Personal Edition\DataCollectionLauncher.exe [480176 2019-06-07] (Schneider Electric -> Schneider Electric) [Fichier non signé] HKU\S-1-5-21-405166168-1803356904-1335224830-1000\...\Run: [MicrosoftEdgeAutoLaunch_9BCF00EAFEB94AA80A104E6B2BACDB61] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4131264 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-405166168-1803356904-1335224830-1000\...\Policies\Explorer: [NoThumbnailCache] 1 ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {F5B87A57-1195-4A19-BE8D-34B27AE37210} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {B919650F-6D4A-4507-94C3-719DD64E8C26} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "2ca1535f-19dd-4ba9-b271-e66ec27a7315" --version "6.16.10662" --silent Task: {1F51D4FC-E86B-4860-ACC8-13B8E3FE4A60} - System32\Tasks\CCleanerSkipUAC - André => C:\Program Files\CCleaner\CCleaner.exe [35675552 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {FE9D0B95-747F-469F-BD86-46BC13F09F29} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2064744 2021-01-19] (Intel(R) Production Software -> Intel Corporation) Task: {0F866049-8D4E-4F9C-9279-160310EEBD7F} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4850904 2023-05-24] (Intel Corporation -> Intel Corporation) Task: {E8C2A68C-8792-4FD2-972D-1905CF345D72} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4850904 2023-05-24] (Intel Corporation -> Intel Corporation) Task: {7CBD9771-9EC5-4C88-9168-9E13F317F712} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Pas de fichier) Task: {CF42619A-E8E7-48B2-A792-E9438A427B6F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A5D5C897-4404-499B-ABDC-E775B84C6DF0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7FB2C389-138C-4816-8E35-FC0F1679268D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {86466354-9CC5-45C9-9F8C-97F47CDE67AD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {820A7682-030D-4903-9801-F4B02F4C12D1} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718240 2023-10-11] (Mozilla Corporation -> Mozilla Foundation) Task: {FF2E9158-2798-47ED-9D0D-31B4CF87F03C} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [2651752 2023-09-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {9A20626E-4448-46D8-BE89-47347526ABF6} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] () [Fichier non signé] Task: {B5CF5115-E2ED-4559-A735-EBE4BC53E2C9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2023-09-12] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {DA267028-7350-42A8-9769-0797FE23E92A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-09-12] (Nvidia Corporation -> NVIDIA Corporation) Task: {A166FE49-4F23-4DF3-A64E-5A770C6665F1} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7DB6CD92-0675-411E-97CF-92193E48A475} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B4FA2DBA-C769-4D27-94AD-31F0C0EA3E28} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {24F4DFE0-C14D-42D2-B074-FBB840C415FB} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A52346C0-C4B1-455F-A706-162C0CD7F53F} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4C239A6D-0263-488B-BE0D-703585C0B5C3} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7ED38644-5D23-4DC4-9D4B-5774D398140C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-09-12] (NVIDIA Corporation -> NVIDIA Corporation) Task: {03BA8ECA-CF0C-4D10-A1F6-F9B2CA7BE723} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [138741312 2023-09-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) Task: {F4683B22-E5FE-42F8-B129-2123F759D0F1} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\Windows\System32\Wscript.exe [170496 2023-10-10] (Microsoft Windows -> Microsoft Corporation) -> //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 209.15.165.152 209.15.165.153 Tcpip\..\Interfaces\{70225da5-3cf0-4e97-b9fb-4bde94b81969}: [DhcpNameServer] 209.15.165.152 209.15.165.153 Tcpip\..\Interfaces\{a0ed4a13-8c6f-45a4-bd9f-9dab749eb678}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{dcaa57c9-013a-4e15-b9b3-b3a448a85aaa}: [DhcpNameServer] 209.15.165.152 209.15.165.153 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge DefaultProfile: Profile 1 Edge Profile: C:\Users\André\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2023-10-16] Edge Extension: (Google Documents hors connexion) - C:\Users\André\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-30] Edge Extension: (Edge relevant text changes) - C:\Users\André\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-30] FireFox: ======== FF DefaultProfile: siijl57w.default FF ProfilePath: C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\siijl57w.default [2023-10-10] FF ProfilePath: C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\u13cg6vt.default-release [2023-10-16] FF Homepage: Mozilla\Firefox\Profiles\u13cg6vt.default-release -> hxxps://www.google.ca/ FF Extension: (TrafficLight) - C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\u13cg6vt.default-release\Extensions\trafficlight@bitdefender.com.xpi [2023-10-05] FF Extension: (uBlock Origin) - C:\Users\André\AppData\Roaming\Mozilla\Firefox\Profiles\u13cg6vt.default-release\Extensions\uBlock0@raymondhill.net.xpi [2023-10-14] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 APC Data Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\dataserv.exe [14256 2019-06-07] (Schneider Electric -> Schneider Electric) [Fichier non signé] R2 APC UPS Service; C:\Program Files (x86)\APC\PowerChute Personal Edition\mainserv.exe [4261808 2019-06-07] (Schneider Electric -> Schneider Electric) [Fichier non signé] S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1074080 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [761408 2023-09-08] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-05-01] (Epic Games Inc. -> Epic Games, Inc.) R2 hshld_12.4.1; C:\Program Files (x86)\Hotspot Shield\12.4.1\bin\cmw_srv.exe [258576 2023-10-02] (Pango LLC -> Pango Inc.) R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [92768 2023-05-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [74336 2023-05-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [150176 2022-08-04] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_Companion_Service; C:\Program Files (x86)\MSI\MSI Center\Game Highlights\MSI_Companion_Service.exe [140528 2022-05-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Super_Charger_Service; C:\Program Files (x86)\MSI\MSI Center\Super Charger\MSI_Super_Charger_Service.exe [37104 2022-05-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36880 2023-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [37616 2022-04-28] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [427072 2023-09-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 SamsungRapidSvc; C:\Windows\System32\RAPID\SamsungRapidSvc.exe [189840 2023-06-12] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) S4 bdredline_agent; "C:\Program Files\Bitdefender Agent\redline\bdredline.exe" [X] R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdig.inf_amd64_97c24e8dfa98e686\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvmdig.inf_amd64_97c24e8dfa98e686\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem S2 ProductAgentService; "C:\Program Files\Bitdefender Agent\ProductAgentService.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 hsstap; C:\Windows\System32\drivers\hsstap.sys [39424 2020-09-29] (Microsoft Windows Hardware Compatibility Publisher -> Pango) R3 MpKsl2fa4e6c5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A940F9B3-EDBC-48D3-9CDF-D21AB994B2BE}\MpKslDrv.sys [263560 2023-10-15] (Microsoft Windows -> Microsoft Corporation) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) S3 MYFAULT; C:\Windows\system32\drivers\myfault.sys [21904 2023-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Sysinternals) R1 npcap; C:\Windows\system32\DRIVERS\npcap.sys [77776 2023-09-27] (Nmap Software LLC -> Insecure.Com LLC.) S4 npcap_wifi; C:\Windows\system32\DRIVERS\npcap.sys [77776 2023-09-27] (Nmap Software LLC -> Insecure.Com LLC.) R3 NTIOLib_CC_Clock; C:\Program Files (x86)\MSI\MSI Center\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [28480 2022-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_CC_CPU; C:\Program Files (x86)\MSI\MSI Center\Super Charger\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-09-12] (Nvidia Corporation -> NVIDIA Corporation) R1 pango_netfilter2; C:\Windows\System32\drivers\pango_netfilter2.sys [89088 2023-10-02] (Microsoft Windows Hardware Compatibility Publisher -> Pango Inc) U5 PROCMON24; C:\Windows\System32\Drivers\PROCMON24.sys [80408 2023-10-03] (Microsoft Windows Hardware Compatibility Publisher -> Sysinternals - www.sysinternals.com) R0 SamsungRapidDiskFltr; C:\Windows\System32\DRIVERS\SamsungRapidDiskFltr.sys [254816 2023-06-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R0 SamsungRapidFSFltr; C:\Windows\System32\DRIVERS\SamsungRapidFSFltr.sys [120664 2023-06-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55856 2023-10-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [572712 2023-10-04] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105872 2023-10-04] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-10-16 09:04 - 2023-10-16 09:04 - 000022931 _____ C:\Users\André\Desktop\FRST.txt 2023-10-16 06:48 - 2023-10-16 09:03 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-10-14 21:09 - 2023-10-16 09:04 - 000000000 ____D C:\FRST 2023-10-14 21:09 - 2023-10-14 06:22 - 002383360 _____ (Farbar) C:\Users\André\Desktop\FRST64.exe 2023-10-14 13:17 - 2023-10-14 13:17 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2023-10-12 06:10 - 2023-10-12 06:10 - 000000000 ____D C:\Users\André\AppData\LocalLow\Adobe 2023-10-11 22:57 - 2023-10-15 07:16 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-10-11 22:57 - 2023-10-15 07:16 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-10-11 08:55 - 2023-10-14 04:44 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-10-10 20:47 - 2023-10-10 20:47 - 000000000 ___HD C:\$WinREAgent 2023-10-10 08:32 - 2023-10-10 08:32 - 000001242 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk 2023-10-10 08:32 - 2023-10-10 08:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield 2023-10-10 08:32 - 2023-10-10 08:32 - 000000000 ____D C:\Program Files (x86)\Hotspot Shield 2023-10-06 13:45 - 2023-10-06 13:45 - 000000112 ___SH C:\bootTel.dat 2023-10-05 21:19 - 2023-10-11 09:10 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-10-05 21:19 - 2023-10-08 21:30 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2023-10-05 21:19 - 2023-10-05 21:19 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk 2023-10-05 21:19 - 2023-10-05 21:19 - 000000000 ____D C:\Users\André\AppData\Roaming\Mozilla 2023-10-05 10:37 - 2023-10-05 10:37 - 000000318 _____ C:\Windows\system32\httpproxy.json 2023-10-05 07:01 - 2023-10-05 07:01 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\HTML Help 2023-10-04 06:48 - 2023-10-04 06:48 - 000000000 ____D C:\ProgramData\PLUG 2023-10-03 21:36 - 2023-10-03 21:36 - 000000000 ____D C:\Program Files\RUXIM 2023-10-03 17:42 - 2023-10-03 17:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\APC 2023-10-03 17:41 - 2023-10-03 17:41 - 000000000 ____D C:\Program Files (x86)\APC 2023-10-03 11:11 - 2023-10-15 16:09 - 000000000 ____D C:\Users\André\AppData\Roaming\ZHP 2023-10-02 23:40 - 2023-10-14 22:34 - 080740352 _____ C:\Windows\system32\config\SOFTWARE 2023-10-02 23:37 - 2023-10-02 23:40 - 000000000 ____D C:\Windows\Microsoft Antimalware 2023-10-02 17:33 - 2023-10-02 17:33 - 000003834 _____ C:\Windows\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2023-10-02 17:27 - 2023-10-02 17:27 - 000003762 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2023-10-02 17:27 - 2023-10-02 17:27 - 000003528 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2023-10-02 17:27 - 2023-07-13 17:59 - 000047240 _____ C:\Windows\system32\Drivers\semav6msr64.sys 2023-10-02 17:26 - 2023-10-03 18:58 - 000002738 _____ C:\Windows\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2023-10-01 23:05 - 2023-10-02 13:38 - 000000000 ____D C:\Windows\Minidump 2023-09-30 23:04 - 2023-09-30 23:04 - 000003460 _____ C:\Windows\system32\Tasks\npcapwatchdog 2023-09-30 23:03 - 2023-09-30 23:03 - 000000000 ____D C:\Windows\SysWOW64\Npcap 2023-09-30 23:03 - 2023-09-30 23:03 - 000000000 ____D C:\Windows\system32\Npcap 2023-09-30 23:00 - 2023-09-30 23:00 - 000001589 _____ C:\Users\André\Desktop\Wireshark.lnk 2023-09-30 22:59 - 2023-09-30 23:04 - 000000000 ____D C:\Program Files\Npcap 2023-09-30 16:25 - 2023-09-30 16:25 - 000000000 ____D C:\Users\Public\Documents\sun 2023-09-30 11:04 - 2023-09-30 11:20 - 000000000 ____D C:\Users\André\AppData\Roaming\CC 2023-09-30 06:35 - 2023-09-30 06:35 - 000000000 ____D C:\Windows\system32\RAPID 2023-09-30 06:35 - 2023-06-16 02:45 - 000254816 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\SamsungRapidDiskFltr.sys 2023-09-30 06:30 - 2023-10-07 08:51 - 000000000 ____D C:\Users\André\AppData\Roaming\Samsung Magician 2023-09-30 06:30 - 2023-09-30 06:35 - 000000000 ____D C:\Program Files (x86)\Samsung 2023-09-30 06:30 - 2023-09-30 06:31 - 000002592 _____ C:\Windows\system32\Tasks\SamsungMagician 2023-09-30 06:30 - 2023-09-30 06:30 - 000001293 _____ C:\Users\Public\Desktop\Samsung Magician.lnk 2023-09-30 06:30 - 2023-09-30 06:30 - 000000000 ____D C:\ProgramData\Samsung 2023-09-30 06:30 - 2023-09-30 06:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician 2023-09-30 05:30 - 2023-09-30 05:30 - 000000000 ____D C:\ProgramData\Piriform 2023-09-30 05:10 - 2023-09-30 05:10 - 000001197 _____ C:\Users\Public\Desktop\LibreOffice 7.6.lnk 2023-09-30 05:10 - 2023-09-30 05:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.6 2023-09-30 05:10 - 2023-09-30 05:10 - 000000000 ____D C:\Program Files\LibreOffice 2023-09-30 04:55 - 2023-09-30 04:55 - 000000000 ____D C:\Users\André\AppData\Roaming\NVIDIA 2023-09-29 22:45 - 2023-09-29 22:45 - 000000000 ____D C:\Users\André\AppData\Roaming\Netease 2023-09-29 22:34 - 2023-09-30 06:23 - 000001443 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2023-09-29 22:34 - 2023-09-29 22:34 - 000000000 ____D C:\Users\André\ansel 2023-09-29 22:32 - 2023-09-30 06:23 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:23 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:22 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-30 06:22 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2023-09-29 22:32 - 2023-09-29 22:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2023-09-29 22:32 - 2023-09-12 20:12 - 002904632 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2023-09-29 22:32 - 2023-09-12 20:12 - 002234920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2023-09-29 22:32 - 2023-09-12 20:12 - 001297464 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2023-09-29 22:32 - 2023-09-12 20:12 - 000086568 _____ C:\Windows\system32\FvSDK_x64.dll 2023-09-29 22:32 - 2023-09-12 20:12 - 000075304 _____ C:\Windows\SysWOW64\FvSDK_x86.dll 2023-09-29 22:31 - 2023-09-30 06:23 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2023-09-29 22:31 - 2023-09-29 22:31 - 000000000 ____D C:\Windows\system32\lxss 2023-09-29 22:29 - 2023-09-12 20:12 - 000060112 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2023-09-29 22:29 - 2023-09-12 20:12 - 000059928 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2023-09-29 22:28 - 2023-09-13 18:17 - 001487376 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2023-09-29 22:28 - 2023-09-13 18:17 - 001227296 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2023-09-29 22:28 - 2023-09-13 18:17 - 000848984 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2023-09-29 22:28 - 2023-09-13 18:17 - 000848984 _____ C:\Windows\system32\vulkaninfo.exe 2023-09-29 22:28 - 2023-09-13 18:17 - 000713808 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-09-29 22:28 - 2023-09-13 18:17 - 000713808 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2023-09-29 22:28 - 2023-09-13 18:17 - 000653392 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2023-09-29 22:28 - 2023-09-13 18:17 - 000653392 _____ C:\Windows\system32\vulkan-1.dll 2023-09-29 22:28 - 2023-09-13 18:17 - 000637008 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2023-09-29 22:28 - 2023-09-13 18:17 - 000637008 _____ C:\Windows\SysWOW64\vulkan-1.dll 2023-09-29 22:28 - 2023-09-13 18:13 - 001537648 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2023-09-29 22:28 - 2023-09-13 18:13 - 001195656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2023-09-29 22:28 - 2023-09-13 18:13 - 000939144 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2023-09-29 22:28 - 2023-09-13 18:13 - 000778376 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2023-09-29 22:28 - 2023-09-13 18:13 - 000669320 _____ C:\Windows\system32\nvofapi64.dll 2023-09-29 22:28 - 2023-09-13 18:13 - 000504456 _____ C:\Windows\SysWOW64\nvofapi.dll 2023-09-29 22:28 - 2023-09-13 18:12 - 002168352 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2023-09-29 22:28 - 2023-09-13 18:12 - 001621624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2023-09-29 22:28 - 2023-09-13 18:12 - 000992904 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2023-09-29 22:28 - 2023-09-13 18:12 - 000768648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2023-09-29 22:28 - 2023-09-13 18:11 - 014520432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2023-09-29 22:28 - 2023-09-13 18:11 - 012066312 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2023-09-29 22:28 - 2023-09-13 18:11 - 003482640 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2023-09-29 22:28 - 2023-09-13 18:11 - 000459912 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2023-09-29 22:28 - 2023-09-13 18:10 - 006190624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2023-09-29 22:28 - 2023-09-13 18:10 - 005845128 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2023-09-29 22:28 - 2023-09-13 18:10 - 005550096 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll 2023-09-29 22:28 - 2023-09-13 18:10 - 000853104 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2023-09-29 22:28 - 2023-09-12 20:12 - 000108122 _____ C:\Windows\system32\nvinfo.pb 2023-09-29 22:22 - 2023-10-14 22:43 - 000000000 ____D C:\Program Files\CCleaner 2023-09-29 22:22 - 2023-10-14 22:38 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update 2023-09-29 22:22 - 2023-10-04 07:13 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2023-09-29 22:22 - 2023-10-03 21:40 - 000002252 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - André 2023-09-29 22:22 - 2023-10-03 18:57 - 000003106 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2023-09-29 22:22 - 2023-09-29 22:22 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2023-09-29 22:22 - 2023-09-29 22:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2023-09-29 20:43 - 2023-10-14 04:44 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2023-09-29 20:43 - 2023-09-29 20:43 - 000000000 ____D C:\Users\André\AppData\Roaming\Thunderbird 2023-09-29 20:42 - 2023-10-10 17:34 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2023-09-29 20:42 - 2023-09-29 20:42 - 000000945 _____ C:\Users\Public\Desktop\Thunderbird.lnk 2023-09-29 20:26 - 2023-09-29 20:26 - 000000000 ____D C:\ProgramData\Blizzard Entertainment 2023-09-29 20:24 - 2023-09-29 20:26 - 000000000 ____D C:\Users\André\AppData\Roaming\Battle.net 2023-09-29 20:24 - 2023-09-29 20:24 - 000000942 _____ C:\Users\Public\Desktop\Battle.net.lnk 2023-09-29 20:24 - 2023-09-29 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net 2023-09-29 20:23 - 2023-09-30 09:49 - 000000000 ____D C:\Program Files (x86)\Battle.net 2023-09-29 20:13 - 2023-09-29 20:13 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\InputMethod 2023-09-29 20:13 - 2023-09-29 20:13 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\IME 2023-09-29 19:02 - 2023-09-29 19:02 - 000000000 ____D C:\ProgramData\Hotspot Shield 2023-09-29 19:02 - 2023-09-29 19:02 - 000000000 ____D C:\Program Files\HotspotShield TAP-Windows 2023-09-29 19:01 - 2023-09-29 19:01 - 000016059 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2023-09-29 18:54 - 2023-09-29 18:54 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-09-29 18:50 - 2023-10-15 20:59 - 000000000 ____D C:\Windows\system32\MRT 2023-09-29 18:49 - 2023-09-29 18:49 - 000000000 ____D C:\Windows\system32\elambkup 2023-09-29 18:49 - 2023-09-29 18:49 - 000000000 ____D C:\Users\André\AppData\Roaming\Bitdefender Security App 2023-09-29 18:42 - 2023-10-11 09:19 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-09-29 18:42 - 2023-09-29 18:42 - 000002046 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigation privée de Firefox.lnk 2023-09-29 18:28 - 2023-09-29 18:28 - 000002685 _____ C:\Users\Public\Desktop\Intel(R) Extreme Tuning Utility.lnk 2023-09-29 18:28 - 2023-09-29 18:28 - 000000000 ____D C:\Windows\system32\Tasks\Intel 2023-09-29 18:28 - 2023-09-29 18:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2023-09-29 18:27 - 2023-10-02 17:26 - 000000000 ____D C:\ProgramData\Intel 2023-09-29 18:27 - 2023-09-29 18:27 - 000000000 ____D C:\Users\André\Intel 2023-09-29 18:26 - 2023-10-02 19:36 - 000000000 ____D C:\Program Files (x86)\Intel 2023-09-29 18:26 - 2023-09-29 18:26 - 000000000 ___HD C:\Program Files (x86)\Temp 2023-09-29 18:26 - 2023-07-27 01:18 - 006524800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2023-09-29 18:25 - 2023-09-29 18:26 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2023-09-29 18:25 - 2023-09-29 18:26 - 000000000 ____D C:\Program Files (x86)\Realtek 2023-09-29 18:25 - 2019-11-25 23:12 - 001160488 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys 2023-09-29 18:23 - 2023-10-02 06:02 - 000000000 ____D C:\Windows\Panther 2023-09-29 18:20 - 2023-10-02 17:29 - 000000000 ____D C:\Program Files\Intel 2023-09-29 18:15 - 2023-09-29 18:15 - 000003176 _____ C:\Windows\system32\Tasks\MSI Task Host - LEDKeeper2_Host 2023-09-29 18:13 - 2022-05-16 17:23 - 000013576 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll 2023-09-29 18:12 - 2023-10-14 22:35 - 000000000 ____D C:\MSI 2023-09-29 18:12 - 2023-10-11 20:04 - 000000000 ____D C:\ProgramData\Package Cache 2023-09-29 18:12 - 2023-09-29 18:16 - 000000000 ____D C:\ProgramData\MSI 2023-09-29 18:12 - 2023-09-29 18:15 - 000000000 ____D C:\Program Files (x86)\MSI 2023-09-29 18:09 - 2023-10-16 07:30 - 000000000 ____D C:\ProgramData\NVIDIA 2023-09-29 18:09 - 2023-10-07 10:52 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2023-09-29 18:09 - 2023-09-30 06:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2023-09-29 18:09 - 2023-09-29 22:31 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2023-09-29 18:09 - 2023-09-13 18:09 - 007858776 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2023-09-29 18:09 - 2023-09-13 18:09 - 006738544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2023-09-29 18:09 - 2023-09-12 20:12 - 000121880 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2023-09-29 17:46 - 2023-09-29 17:46 - 000000000 ____D C:\Users\André\AppData\Roaming\LibreOffice 2023-09-29 17:44 - 2023-10-11 09:22 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\Spelling 2023-09-29 17:44 - 2023-09-29 17:44 - 000000789 _____ C:\Users\André\Desktop\NoTrace.lnk 2023-09-29 17:43 - 2023-09-29 19:36 - 000000000 ____D C:\ProgramData\Battle.net 2023-09-29 17:41 - 2023-09-29 17:42 - 000000000 ____D C:\ProgramData\Epic 2023-09-29 17:41 - 2023-09-29 17:42 - 000000000 ____D C:\Program Files (x86)\Epic Games 2023-09-29 17:41 - 2023-09-29 17:41 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2023-09-29 17:41 - 2023-09-29 17:41 - 000001258 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk 2023-09-29 17:40 - 2023-10-10 08:39 - 000000000 ____D C:\Program Files (x86)\Steam 2023-09-29 17:40 - 2023-09-29 17:40 - 000001323 _____ C:\Users\André\Desktop\Ubisoft Connect.lnk 2023-09-29 17:40 - 2023-09-29 17:40 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk 2023-09-29 17:40 - 2023-09-29 17:40 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2023-09-29 17:40 - 2023-09-29 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2023-09-29 17:40 - 2023-09-29 17:40 - 000000000 ____D C:\Program Files (x86)\Ubisoft 2023-09-29 17:34 - 2023-10-14 20:45 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\MMC 2023-09-29 17:30 - 2023-10-14 22:41 - 001678018 _____ C:\Windows\system32\PerfStringBackup.INI 2023-09-29 17:29 - 2023-09-29 17:29 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2023-09-29 17:28 - 2023-10-14 17:53 - 000000000 ____D C:\ProgramData\Packages 2023-09-29 17:28 - 2023-10-13 20:04 - 000000000 ____D C:\Users\André 2023-09-29 17:28 - 2023-10-13 19:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-09-29 17:28 - 2023-09-29 18:32 - 000000000 ___SD C:\Users\André\AppData\Roaming\Microsoft\Protect 2023-09-29 17:28 - 2023-09-29 17:28 - 000000020 ___SH C:\Users\André\ntuser.ini 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Voisinage réseau 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Voisinage d'impression 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Modèles 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Mes documents 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Menu Démarrer 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Documents\Mes vidéos 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Documents\Mes images 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\Documents\Ma musique 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 _SHDL C:\Users\André\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ___SD C:\Users\André\AppData\Roaming\Microsoft\SystemCertificates 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ___SD C:\Users\André\AppData\Roaming\Microsoft\Crypto 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ___SD C:\Users\André\AppData\Roaming\Microsoft\Credentials 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ___RD C:\Users\André\3D Objects 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\Windows 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\Vault 2023-09-29 17:28 - 2023-09-29 17:28 - 000000000 ____D C:\Users\André\AppData\Roaming\Microsoft\Network 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Public\Documents\Mes images 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Modèles 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Mes documents 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Documents\Mes images 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\ProgramData\Modèles 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\ProgramData\Bureau 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Program Files\Fichiers communs 2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 _SHDL C:\Documents and Settings 2023-09-29 17:24 - 2023-10-15 23:12 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-09-29 17:24 - 2023-10-14 22:35 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-09-29 17:24 - 2023-10-10 20:57 - 000423128 _____ C:\Windows\system32\FNTCACHE.DAT 2023-09-29 17:24 - 2023-10-04 19:04 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-09-29 17:24 - 2023-10-03 18:58 - 000003678 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-09-29 17:24 - 2023-10-03 18:58 - 000003454 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-09-29 17:24 - 2023-09-29 17:24 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2023-09-29 17:24 - 2023-09-29 17:24 - 000000000 ____D C:\Windows\ServiceProfiles 2023-09-27 11:05 - 2023-09-27 11:05 - 000077776 _____ (Insecure.Com LLC.) C:\Windows\system32\Drivers\npcap.sys 2023-09-26 16:15 - 2023-09-26 16:15 - 000491392 _____ C:\Windows\system32\wpcap.dll 2023-09-26 16:15 - 2023-09-26 16:15 - 000420224 _____ C:\Windows\SysWOW64\wpcap.dll 2023-09-26 16:15 - 2023-09-26 16:15 - 000266624 _____ (Insecure.Com LLC.) C:\Windows\system32\WlanHelper.exe 2023-09-26 16:15 - 2023-09-26 16:15 - 000220032 _____ (Insecure.Com LLC.) C:\Windows\system32\Packet.dll 2023-09-26 16:15 - 2023-09-26 16:15 - 000216448 _____ (Insecure.Com LLC.) C:\Windows\SysWOW64\WlanHelper.exe 2023-09-26 16:15 - 2023-09-26 16:15 - 000156544 _____ (Insecure.Com LLC.) C:\Windows\system32\NpcapHelper.exe 2023-09-26 16:15 - 2023-09-26 16:15 - 000129920 _____ (Insecure.Com LLC.) C:\Windows\SysWOW64\NpcapHelper.exe 2023-09-26 16:14 - 2023-09-26 16:14 - 000174464 _____ (Insecure.Com LLC.) C:\Windows\SysWOW64\Packet.dll ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-10-15 22:41 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\LiveKernelReports 2023-10-15 22:41 - 2019-12-07 05:13 - 000000000 ____D C:\Windows\INF 2023-10-15 13:26 - 2019-12-07 05:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-10-15 13:26 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\AppReadiness 2023-10-14 22:41 - 2019-12-07 11:06 - 000751988 _____ C:\Windows\system32\perfh00C.dat 2023-10-14 22:41 - 2019-12-07 11:06 - 000139702 _____ C:\Windows\system32\perfc00C.dat 2023-10-14 22:34 - 2019-12-07 05:03 - 000524288 _____ C:\Windows\system32\config\BBI 2023-10-14 13:45 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\NDF 2023-10-11 09:45 - 2019-12-07 05:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2023-10-11 09:45 - 2019-12-07 05:03 - 000065536 _____ C:\Windows\system32\config\ELAM 2023-10-10 21:00 - 2019-12-07 05:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2023-10-10 20:56 - 2019-12-07 05:03 - 000000000 ____D C:\Windows\CbsTemp 2023-10-10 20:55 - 2019-12-07 11:06 - 000000000 ____D C:\Windows\SysWOW64\fr 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\migwiz 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\SystemResources 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-10-10 20:55 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2023-10-10 20:54 - 2019-12-07 11:09 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-10-10 20:54 - 2019-12-07 11:09 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-10-10 20:54 - 2019-12-07 11:06 - 000000000 ____D C:\Windows\system32\fr 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\system32\UNP 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\system32\F12 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ___RD C:\Windows\PrintDialog 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\Sysprep 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\ShellExperiences 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\setup 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\oobe 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\migwiz 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\lv-LV 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\lt-LT 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\et-EE 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\es-MX 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\Dism 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\Com 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\ShellExperiences 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\ShellComponents 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\Provisioning 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\IME 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\bcastdvr 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files\Common Files\System 2023-10-10 20:54 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-10-10 20:54 - 2019-12-07 05:03 - 000000000 ____D C:\Windows\servicing 2023-10-10 20:43 - 2019-12-07 11:09 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll 2023-10-10 20:43 - 2019-12-07 05:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2023-10-10 20:43 - 2019-12-07 05:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2023-10-03 19:26 - 2019-12-07 05:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft.old 2023-10-02 22:47 - 2019-12-07 05:14 - 000000000 ___SD C:\Windows\Downloaded Program Files 2023-10-02 22:47 - 2019-12-07 05:14 - 000000000 ___RD C:\Windows\Offline Web Pages 2023-09-30 09:43 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\Registration 2023-09-30 04:03 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\appcompat 2023-09-29 19:09 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2023-09-29 19:09 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\appraiser 2023-09-29 19:09 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2023-09-29 18:24 - 2019-12-07 05:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template 2023-09-29 17:44 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\ServiceState 2023-09-29 17:28 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2023-09-29 17:28 - 2019-12-07 05:14 - 000000000 ____D C:\ProgramData\USOPrivate 2023-09-29 17:27 - 2019-12-07 11:07 - 000000000 ____D C:\Windows\system32\FxsTmp 2023-09-29 17:27 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\spool 2023-09-29 17:25 - 2019-12-07 05:14 - 000000000 ____D C:\Program Files\Windows NT 2023-09-29 17:24 - 2019-12-07 05:14 - 000000000 ____D C:\Windows\system32\Drivers\DriverData ==================== SigCheckExt ========================= 2023-10-14 21:09 - 2023-10-14 06:22 - 002383360 _____ (Farbar) C:\Users\André\Desktop\FRST64.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {ba8a986d-5f16-11ee-9da1-a10343c68f29} timeout 1 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale fr-CA inherit {globalsettings} default {current} resumeobject {ba8a986f-5f16-11ee-9da1-a10343c68f29} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {ba8a986d-5f16-11ee-9da1-a10343c68f29} description Hard Drive Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \Windows\system32\winload.efi description Windows 10 locale fr-CA inherit {bootloadersettings} recoverysequence {ba8a9871-5f16-11ee-9da1-a10343c68f29} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {ba8a986f-5f16-11ee-9da1-a10343c68f29} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {ba8a9871-5f16-11ee-9da1-a10343c68f29} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{ba8a9872-5f16-11ee-9da1-a10343c68f29} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-ca inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{ba8a9872-5f16-11ee-9da1-a10343c68f29} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {ba8a986f-5f16-11ee-9da1-a10343c68f29} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale fr-CA inherit {resumeloadersettings} recoverysequence {ba8a9871-5f16-11ee-9da1-a10343c68f29} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-CA inherit {globalsettings} badmemoryaccess Yes Paramètres EMS -------------- identificateur {emssettings} bootems No Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de mémoire RAM ---------------------- identificateur {badmemory} Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de périphérique ----------------------- identificateur {ba8a9872-5f16-11ee-9da1-a10343c68f29} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================