Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2023 Exécuté par pasca (administrateur) sur MSI (Micro-Star International Co., Ltd. GP62 6QF) (19-10-2023 15:14:54) Exécuté depuis C:\Users\pasca\Desktop\FRST64.exe Profils chargés: pasca & pascaline Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3570 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (A-Volute -> ) [Fichier non signé] C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2> (C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe ->) () [Fichier non signé] C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2Svc32.exe (C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe ->) () [Fichier non signé] C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2Svc64.exe (C:\Program Files\Tablet\Pen\WacomHost.exe ->) (Wacom Technology Corp. -> Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (C:\Program Files\Tablet\Pen\WTabletServiceCon.exe ->) (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (C:\Program Files\Tablet\Pen\WTabletServiceCon.exe ->) (Wacom Technology Corp. -> Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (C:\Program Files\Tablet\Pen\WTabletServiceCon.exe ->) (Wacom Technology Corp. -> Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (drivers\RivetNetworks\Killer\KAPSService.exe ->) (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe (drivers\RivetNetworks\Killer\xTendUtilityService.exe ->) (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe (DriverStore\FileRepository\cui_dch.inf_amd64_db953c52208ada71\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_db953c52208ada71\igfxEM.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <45> (explorer.exe ->) (Learnpulse -> Learnpulse) C:\Users\pasca\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe (explorer.exe ->) (MSI) [Fichier non signé] C:\Program Files (x86)\SCM\SCM.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (explorer.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe (Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_db953c52208ada71\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2f4c7fcb86976beb\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2f4c7fcb86976beb\IntelCpHeciSvc.exe (services.exe ->) (MAGIX AG) [Fichier non signé] C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe (services.exe ->) (Micro-Star International Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\SCM\MSIService.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (services.exe ->) (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe (services.exe ->) (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Wacom Technology Corp. -> Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8853248 2016-06-02] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-24] (Intel Corporation - Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Nahimic2UILauncher] => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe [691048 2016-03-30] (A-Volute -> ) [Fichier non signé] HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [298496 2016-04-16] (MSI) [Fichier non signé] HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3571168 2023-08-25] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3920552 2016-06-02] (Synaptics Incorporated -> Synaptics Incorporated) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Fichier non signé] HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-3116919124-3436908372-3405017035-1001\...\Run: [Spotify] => C:\Users\pasca\AppData\Roaming\Spotify\Spotify.exe [21690232 2023-10-18] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3116919124-3436908372-3405017035-1001\...\Run: [Screenpresso] => C:\Users\pasca\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [22307336 2023-09-01] (Learnpulse -> Learnpulse) HKU\S-1-5-21-3116919124-3436908372-3405017035-1001\...\Run: [MicrosoftEdgeAutoLaunch_25126CB5C6052474A90460F9FE881413] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4131264 2023-10-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3116919124-3436908372-3405017035-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [42614688 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKLM\...\Print\Monitors\us008 Langmon: C:\Windows\system32\us008lm.dll [31256 2019-01-09] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.88\Installer\chrmstp.exe [2023-10-18] (Google LLC -> Google LLC) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {BAAEDAE2-A202-4BDE-8CFD-F35842805F60} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1341008 2020-09-06] (Adobe Inc. -> Adobe Inc.) Task: {0A5DA1B3-61B6-4871-BF73-B861D21AC723} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe [1502776 2020-11-10] (Adobe Inc. -> Adobe) Task: {F3DAFE8F-98FE-4751-9991-C696789BB81E} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_pepper.exe [1498680 2020-11-10] (Adobe Inc. -> Adobe) Task: {0AB4CDF8-F42E-41AC-8C14-DB9DC165FE20} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-10] (Adobe Inc. -> Adobe) Task: {3A50923A-0CB3-464E-AE1D-F11807B6AC3F} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-pascaline.camblong@hotmail.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {3A86AF6A-4510-4CC6-BA49-509A2BE097C9} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3571168 2023-08-25] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {BDAE5872-249E-4C3F-B161-B01CCD0534E8} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3807712 2023-08-25] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {8B7A2305-0FBE-4937-866C-7D3488531936} - System32\Tasks\AVGPCTuneUp_Task_BkGndMaintenance => C:\Program Files (x86)\AVG\AVG PC TuneUp\tuscanx.exe $(Arg0) (Pas de fichier) Task: {E5ADE93D-620E-480D-B7AB-C8C3D0CFD05E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {FAF9F56A-B6E0-4257-A479-6133F1F6CE27} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "35c415c4-f1d9-46aa-b106-137ac570400e" --version "6.16.10662" --silent Task: {8642767C-B6E7-45A5-90CA-16C8EDE995D3} - System32\Tasks\CCleanerSkipUAC - pasca => C:\Program Files\CCleaner\CCleaner.exe [35675552 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {515844D0-DD69-44F6-BA1A-EA3B86A72658} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2017-01-05] (Google Inc -> Google Inc.) Task: {2BFAC70F-DC01-4E0A-8B33-63A7799AAAAC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2017-01-05] (Google Inc -> Google Inc.) Task: {4384849B-FF0D-461A-9439-57A541AADCFB} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation) Task: {692C89EA-958B-479A-BD7F-F361C5DDD5C9} - System32\Tasks\Microsoft\Windows\rempl\shell-usoscan => %ProgramFiles%\rempl\remsh.exe /RunUsoScanOnly (Pas de fichier) Task: {339C8767-7795-4A64-986E-0CC38DA517FD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CE188E22-B16F-41D2-8BDA-9FD493647EEE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {22B989C5-211F-4766-88D7-91A657EB8830} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3565BC00-D0D0-42DD-BEA3-8BDBD91D5EE9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BE5F25A2-5753-41A0-8725-F65B2E9206C6} - System32\Tasks\MSI_Help_Desk_Agent => C:\Program Files (x86)\MSI\Help Desk\MSI Update Agent.exe [431384 2017-07-25] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) [Fichier non signé] Task: {E3D9BD1B-DF08-4668-B1C2-946F8C2114DF} - System32\Tasks\Nahimic2svc32Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2svc32.exe [1962496 2016-03-30] () [Fichier non signé] Task: {72E4AA7A-EB9F-4577-83E8-D7A36A9E8C90} - System32\Tasks\Nahimic2svc64Run => C:\Program Files\Nahimic\Nahimic2\UserInterface\x64\Nahimic2svc64.exe [500224 2016-03-30] () [Fichier non signé] Task: {F0D2B584-AB56-49C0-A18A-EFF726079FF9} - System32\Tasks\Nahimic2UILauncherRun => C:\Program Files\Nahimic\Nahimic2\UserInterface\Nahimic2UILauncher.exe [691048 2016-03-30] (A-Volute -> ) [Fichier non signé] Task: {45B3F88E-990C-405D-B452-7B7A42716ED5} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe (Pas de fichier) Task: {144E6186-938B-4CC6-B44C-E9FD9EBC2D13} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3920552 2016-06-02] (Synaptics Incorporated -> Synaptics Incorporated) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{240a9ec7-5bf3-4327-986f-2ce5454868a3}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{ede48475-2248-40a8-8503-01f3d9f264e0}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{f8cb1978-481d-448f-8d32-3310ee2581cb}: [DhcpNameServer] 192.168.1.254 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\pasca\AppData\Local\Microsoft\Edge\User Data\Default [2023-10-19] Edge Extension: (Google Docs hors connexion) - C:\Users\pasca\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-29] Edge Extension: (Edge relevant text changes) - C:\Users\pasca\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-26] FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_453.dll [2020-11-10] (Adobe Inc. -> ) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) [Fichier non signé] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) [Fichier non signé] FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_453.dll [2020-11-10] (Adobe Inc. -> ) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) [Fichier non signé] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-10-23] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) [Fichier non signé] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default [2023-10-19] CHR Notifications: Default -> hxxps://calendar.google.com CHR HomePage: Default -> hxxp://www.google.fr/ CHR StartupUrls: Default -> "hxxp://www.google.com","","hxxp://www.google.com/","hxxps://www.google.fr/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8" CHR NewTab: Default -> Not-active:"chrome-extension://eedlgdlajadkbbjoobobefphmfkcchfk/newtab.html" CHR Session Restore: Default -> est activé. CHR Extension: (Web Developer) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbameneiokkgbdmiekhjnmfkcnldhhm [2023-08-28] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-08-24] CHR Extension: (User-Agent Switcher for Chrome) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg [2019-09-10] CHR Extension: (Ecosia) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\eedlgdlajadkbbjoobobefphmfkcchfk [2023-06-19] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-10-19] CHR Extension: (IGRAAL : Cashback & codes promo) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm [2023-10-05] CHR Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\mlomiejdfkolichcflejclcbmpeaniij [2023-09-29] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-10-19] CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-10-19] CHR Extension: (Slides) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-05] CHR Extension: (Docs) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-05] CHR Extension: (Google Drive) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-05] CHR Extension: (YouTube) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-05] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-09-06] CHR Extension: (Sheets) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-05] CHR Extension: (Google Docs hors connexion) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-06] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-06] CHR Extension: (Gmail) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-05] CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2 [2023-10-19] CHR Extension: (Slides) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-07-22] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-03-08] CHR Extension: (Sheets) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-07-22] CHR Extension: (Google Docs hors connexion) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-07-22] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-22] CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 3 [2023-10-19] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-02] CHR Extension: (Google Docs hors connexion) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-03-02] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\pasca\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-03-02] CHR Profile: C:\Users\pasca\AppData\Local\Google\Chrome\User Data\System Profile [2023-10-19] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-09-06] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-10] (Adobe Inc. -> Adobe) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3966432 2023-08-25] (Adobe Inc. -> Adobe Systems, Incorporated) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1074080 2023-09-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-24] (MAGIX AG) [Fichier non signé] S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [Fichier non signé] R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Fichier non signé] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Fichier non signé] R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2616936 2019-07-16] (Rivet Networks LLC -> Rivet Networks) R3 KillerSmartConnectService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [72792 2019-07-16] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2016-04-16] (Micro-Star International Co., Ltd.) [Fichier non signé] S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Fichier non signé] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-10-09] (Microsoft Windows Publisher -> Microsoft Corporation) S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [73048 2019-07-16] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72816 2019-07-16] (Rivet Networks LLC -> Rivet Networks, LLC.) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [104312 2018-08-09] (D3L -> Dokan Project) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-01-09] (Martin Malik - REALiX -> REALiX(tm)) R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [162432 2019-07-16] (Rivet Networks LLC -> Rivet Networks, LLC.) R3 MpKsl06b2e699; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{4900FCDC-3098-44ED-9DC6-3DA01B722383}\MpKslDrv.sys [263560 2023-10-19] (Microsoft Windows -> Microsoft Corporation) S3 scsiscan; C:\WINDOWS\System32\drivers\scsiscan.sys [21504 2023-10-11] (Microsoft Windows -> Microsoft Corporation) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-01] (Apple, Inc.) [Fichier non signé] S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-10-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [572712 2023-10-09] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105872 2023-10-09] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-10-19 15:09 - 2023-10-19 15:14 - 000056761 ____C C:\Users\pasca\Desktop\Addition.txt 2023-10-19 15:06 - 2023-10-19 15:15 - 000031533 ____C C:\Users\pasca\Desktop\FRST.txt 2023-10-19 15:06 - 2023-10-19 15:15 - 000000000 ____D C:\FRST 2023-10-15 18:16 - 2023-10-15 18:14 - 002383360 ____C (Farbar) C:\Users\pasca\Desktop\FRST64.exe 2023-10-12 13:24 - 2023-10-12 13:24 - 000000000 ____D C:\ProgramData\PLUG 2023-10-12 09:29 - 2023-10-12 09:29 - 000000000 ____D C:\Users\pasca\AppData\Local\Backup 2023-10-11 19:26 - 2023-10-11 19:26 - 000000927 ____C C:\Users\pasca\Desktop\A VIDER MEMOIRE LIGHTROOM - Raccourci.lnk 2023-10-11 09:52 - 2023-10-11 09:52 - 000000000 ____D C:\ProgramData\Piriform 2023-10-11 09:43 - 2023-10-19 10:26 - 000000000 ____D C:\Program Files\CCleaner 2023-10-11 09:43 - 2023-10-17 16:03 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-10-11 09:43 - 2023-10-11 21:14 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-10-11 09:43 - 2023-10-11 09:43 - 000003476 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-10-11 09:43 - 2023-10-11 09:43 - 000002880 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - pasca 2023-10-11 09:43 - 2023-10-11 09:43 - 000000873 _____ C:\Users\Public\Desktop\CCleaner.lnk 2023-10-11 09:43 - 2023-10-11 09:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2023-10-11 09:06 - 2023-10-11 09:06 - 000016059 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-10-11 08:57 - 2023-10-11 08:57 - 000000000 ___HD C:\$WinREAgent 2023-10-09 18:39 - 2023-10-09 18:39 - 000000000 ___DC C:\Users\pasca\Desktop\RETRAITE MAMAN 2023-10-06 13:01 - 2023-10-06 13:01 - 000007605 _____ C:\Users\pasca\AppData\Local\Resmon.ResmonCfg ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-10-19 14:57 - 2021-04-05 19:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-10-19 14:49 - 2021-12-15 23:58 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-10-19 14:49 - 2017-01-05 13:14 - 000000000 ____D C:\Program Files (x86)\Google 2023-10-19 14:34 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-10-19 14:25 - 2021-01-31 12:22 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2023-10-19 11:00 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-10-19 11:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-10-19 10:55 - 2017-01-07 23:20 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\Microsoft\Word 2023-10-19 10:29 - 2017-02-28 17:55 - 000000000 ___DC C:\Users\pasca\AppData\Local\CrashDumps 2023-10-19 10:26 - 2017-05-04 10:48 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\Microsoft\Excel 2023-10-19 10:23 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-10-19 10:20 - 2017-01-04 20:24 - 000000000 __SHD C:\Users\pasca\IntelGraphicsProfiles 2023-10-18 20:20 - 2017-01-07 05:37 - 000000000 ____D C:\ProgramData\NVIDIA 2023-10-18 19:32 - 2021-04-05 19:14 - 001772722 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-10-18 19:32 - 2019-12-07 16:49 - 000792858 _____ C:\WINDOWS\system32\perfh00C.dat 2023-10-18 19:32 - 2019-12-07 16:49 - 000149988 _____ C:\WINDOWS\system32\perfc00C.dat 2023-10-18 17:40 - 2021-04-05 19:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-10-18 17:39 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2023-10-18 17:20 - 2017-01-05 14:55 - 000000000 ___DC C:\Users\pasca\AppData\Local\Spotify 2023-10-18 17:20 - 2017-01-05 14:48 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\Spotify 2023-10-18 12:08 - 2018-12-27 14:19 - 000000000 ___DC C:\Users\pasca\AppData\Local\D3DSCache 2023-10-18 12:08 - 2017-03-01 13:07 - 000000132 ____C C:\Users\pasca\AppData\Roaming\Préfs Format PNG Adobe CS6 2023-10-18 11:30 - 2017-01-20 20:56 - 000002309 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-10-18 11:30 - 2017-01-20 20:56 - 000002268 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-10-16 21:28 - 2017-02-13 18:25 - 000000000 ___DC C:\Users\pasca\Desktop\photo adobe 2023-10-15 15:15 - 2023-01-16 21:39 - 000002290 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-10-15 15:15 - 2020-06-25 08:58 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-10-13 14:31 - 2018-05-23 22:55 - 000000000 ___DC C:\Users\pasca\AppData\Local\PlaceholderTileLogoFolder 2023-10-13 14:31 - 2018-02-02 23:35 - 000000000 ___DC C:\Users\pasca\AppData\Local\Packages 2023-10-12 09:24 - 2022-02-17 19:22 - 000000000 ____D C:\Program Files\RUXIM 2023-10-11 21:16 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-10-11 21:14 - 2021-04-05 19:04 - 005284328 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-10-11 21:13 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-10-11 21:13 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-10-11 21:13 - 2019-12-07 16:49 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2023-10-11 21:13 - 2019-12-07 16:49 - 000000000 ____D C:\WINDOWS\system32\fr 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2023-10-11 21:13 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-10-11 21:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2023-10-11 19:37 - 2017-02-04 00:58 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\Microsoft\MMC 2023-10-11 19:34 - 2021-04-05 19:06 - 000000000 ____D C:\Users\pasca 2023-10-11 19:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-10-11 09:54 - 2016-06-11 16:10 - 000000000 ____D C:\ProgramData\Package Cache 2023-10-11 09:52 - 2019-09-09 13:51 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\TeamViewer 2023-10-11 09:13 - 2019-12-07 16:53 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-10-11 09:13 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2023-10-11 09:13 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2023-10-11 09:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-10-11 09:06 - 2021-04-05 19:07 - 003014144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-10-11 08:55 - 2017-01-05 13:59 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-10-11 08:52 - 2017-01-05 13:59 - 181553176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-10-10 17:07 - 2017-01-06 17:13 - 000000000 ____D C:\Program Files\Adobe 2023-10-10 14:17 - 2017-01-08 18:10 - 000000000 ___DC C:\Users\pasca\AppData\Roaming\vlc 2023-10-10 13:12 - 2021-02-22 10:07 - 000000000 ___RD C:\Users\pasca\iCloudPhotos 2023-10-10 13:12 - 2018-07-16 12:19 - 000000000 ___RD C:\Users\pasca\iCloudDrive 2023-10-09 12:48 - 2018-05-24 07:04 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-10-06 23:48 - 2017-01-04 21:25 - 000000000 ___DC C:\Users\pasca\AppData\Local\Avg 2023-10-06 23:48 - 2017-01-04 21:25 - 000000000 ____D C:\ProgramData\Avg 2023-10-06 19:24 - 2023-07-31 10:41 - 000002508 _____ C:\WINDOWS\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 2023-10-06 19:24 - 2021-04-05 19:14 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-10-06 19:24 - 2021-04-05 19:14 - 000003526 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-10-06 19:24 - 2021-04-05 19:14 - 000003394 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-10-06 19:24 - 2021-04-05 19:14 - 000003302 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-10-06 19:24 - 2021-04-05 19:14 - 000002596 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2023-10-06 19:24 - 2021-04-05 19:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2023-10-02 15:44 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-09-26 10:04 - 2018-07-11 11:03 - 000000000 ____D C:\ProgramData\Packages 2023-09-25 15:26 - 2020-03-17 13:57 - 000000000 ____D C:\Users\pasca\AppData\Roaming\Microsoft\Skype for Desktop ==================== Fichiers à la racine de certains dossiers ======== 2015-12-30 00:44 - 2015-12-30 00:44 - 000082537 _____ () C:\Program Files (x86)\en.rtf 2017-01-29 00:21 - 2017-01-31 14:47 - 000000132 ____C () C:\Users\pasca\AppData\Roaming\Adobe PNG Format CS5 Prefs 2018-11-14 15:45 - 2018-11-14 15:45 - 000000078 ____C () C:\Users\pasca\AppData\Roaming\FC.dat 2018-11-14 16:01 - 2018-11-14 16:01 - 000000078 ____C () C:\Users\pasca\AppData\Roaming\ICP.dat 2017-04-24 20:29 - 2017-04-24 20:29 - 000000132 ____C () C:\Users\pasca\AppData\Roaming\Préfs Format BMP Adobe CS6 2019-06-25 13:46 - 2019-06-25 13:46 - 000000132 ____C () C:\Users\pasca\AppData\Roaming\Préfs Format GIF Adobe CS6 2017-03-01 13:07 - 2023-10-18 12:08 - 000000132 ____C () C:\Users\pasca\AppData\Roaming\Préfs Format PNG Adobe CS6 2021-04-03 22:00 - 2021-04-04 14:20 - 000001456 _____ () C:\Users\pasca\AppData\Local\Adobe Enregistrer pour le Web 13.0 Prefs 2018-08-06 10:18 - 2018-08-06 10:19 - 001065984 ____C () C:\Users\pasca\AppData\Local\file__0.localstorage 2020-05-13 15:04 - 2020-05-13 15:04 - 000000000 _____ () C:\Users\pasca\AppData\Local\oobelibMkey.log 2021-02-21 01:23 - 2021-02-21 01:47 - 000000128 _____ () C:\Users\pasca\AppData\Local\PUTTY.RND 2023-10-06 13:01 - 2023-10-06 13:01 - 000007605 _____ () C:\Users\pasca\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================