Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 25.01.2024 Exécuté par MARTINE (administrateur) sur PCMARTINE (Acer Aspire V3-771) (26-01-2024 08:23:39) Exécuté depuis C:\Users\MARTINE\Desktop\FRST64.exe Profils chargés: MARTINE Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.3930 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <20> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKU\S-1-5-21-4169451036-12564491-3752749827-1001\...\Run: [EPSON688FA1] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEKE.EXE [221696 2008-03-05] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-4169451036-12564491-3752749827-1001\...\Run: [EPSON Stylus SX600FW(réseau)] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEKE.EXE [221696 2008-03-05] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-4169451036-12564491-3752749827-1001\...\Run: [EPSON0BF33C] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIFIE.EXE /FU "C:\WINDOWS\TEMP\E_S4F05.tmp" /EF "HKCU" (Pas de fichier) HKU\S-1-5-21-4169451036-12564491-3752749827-1002\...\Run: [MicrosoftEdgeAutoLaunch_11EFC5ABAB640FB5033D337833917F15] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3788224 2024-01-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-4169451036-12564491-3752749827-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44540320 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-4169451036-12564491-3752749827-500\...\Run: [EPSON Stylus SX600FW(réseau)] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIEKE.EXE [221696 2008-03-05] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKU\S-1-5-21-4169451036-12564491-3752749827-500\...\Run: [EPSON0BF33C] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIFIE.EXE /FU "C:\WINDOWS\TEMP\E_S4F05.tmp" /EF "HKCU" (Pas de fichier) HKLM\...\Windows x64\Print Processors\Canon MG4200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDB9.DLL [30208 2012-03-26] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\Canon TR4500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDEU.DLL [506368 2023-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor TR4500 series: C:\WINDOWS\system32\CNCALEU.DLL [254464 2018-03-22] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TR4500 series: C:\WINDOWS\system32\CNMLMEU.DLL [1326080 2023-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\EPSON SX600FW Series 64MonitorBE: C:\WINDOWS\system32\E_ILMEKE.DLL [108032 2007-12-07] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\121.0.6167.86\Installer\chrmstp.exe [2024-01-24] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-01-28] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Fichier non signé] HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-01-28] (Qualcomm Atheros -> Qualcomm Atheros Commnucations) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {AB33368C-FFDC-4DF0-BEE5-C5F6B8DDDE01} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {D5DCD5DF-2005-4FE6-83E8-B14A57DA3357} - System32\Tasks\Avanquest Software (7270356 Canada Inc.)\PDF Suite 20\Installer updater => C:\ProgramData\PDF Suite 20\Installation\PDFSuite20.exe [13585408 2024-01-01] (Avanquest Software (7270356 Canada Inc) -> ) Task: {F041502A-F821-4B8A-B9AA-4714B5A9A422} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {BAD42991-5CBB-4936-9605-2138F95E652D} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "4c818dc6-579b-4282-b5bf-a4908b4e682b" --version "6.20.10897" --silent Task: {DE116CCA-C4DF-4436-AD72-135ED5AF258E} - System32\Tasks\CCleanerSkipUAC - MARTINE => C:\Program Files\CCleaner\CCleaner.exe [38319520 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {EC0889CF-6EF2-46E0-A1C5-455937BCBD79} - System32\Tasks\GoogleUpdateTaskMachineCore{257140A4-0B5C-4EEF-894D-2A454F794BE2} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-06-05] (Google Inc -> Google Inc.) Task: {2370126D-6410-469B-AAA0-D29F8EB8384F} - System32\Tasks\GoogleUpdateTaskMachineUA{C4023A8B-ADFE-4DCC-BCE4-369D3817D8FC} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-06-05] (Google Inc -> Google Inc.) Task: {287EB61E-849D-44F1-BF41-56B2A8081F95} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {9768ABD2-EB67-498E-A669-15A536AF817A} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {D9C8B169-7705-4969-BDCA-D409D33A5E8A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {065315B9-656A-4978-A229-50B61F959739} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4F63397C-B693-4C87-8A08-1958D90656B3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5119D599-BD35-476B-A96B-55BBE6EF820B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2180C943-0BEE-4EDD-B4F0-F08D5ED748F2} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2024-01-24] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {065A04B0-E6E2-4893-BA4F-C0FFCEC216BB} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232 2024-01-24] (Mozilla Corporation -> Mozilla Foundation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\2454C4B494E4: [DhcpNameServer] 192.168.206.1 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\2456C6B696E6E23756475707: [DhcpNameServer] 192.168.206.1 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\4505D2C496E6B6F554874756E6465627: [DhcpDomain] home Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\6425545424F485F5D414254594E454F5B435: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{aa59f9e1-5ebe-46c1-809c-a883116c5bf6}\E6564777F627B647F623: [DhcpNameServer] 185.48.254.18 85.14.174.253 Tcpip\..\Interfaces\{e531cdd6-8321-4927-8480-8f7c984029ae}: [DhcpNameServer] 192.168.0.254 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-25] Edge Extension: (Désactivation de Google Analytics) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2021-03-11] Edge Extension: (Google Docs hors connexion) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-20] Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-01-24] Edge Extension: (Protect My Choices) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hdgloanjhdcenjgiafkpbehddcnonlic [2021-06-16] Edge Extension: (Edge relevant text changes) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-18] Edge Profile: C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2024-01-24] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\bojobppfploabceghnmlahpoonbcbacn [2024-01-24] Edge Extension: (Google Docs hors connexion) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-20] Edge Extension: (Edge relevant text changes) - C:\Users\MARTINE\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] FireFox: ======== FF DefaultProfile: 464b7shr.default-1623565288696 FF ProfilePath: C:\Users\MARTINE\AppData\Roaming\Mozilla\Firefox\Profiles\464b7shr.default-1623565288696 [2024-01-24] FF Extension: (Activist – Balanced) - C:\Users\MARTINE\AppData\Roaming\Mozilla\Firefox\Profiles\464b7shr.default-1623565288696\Extensions\activist-balanced-colorway@mozilla.org.xpi [2023-05-15] FF Extension: (Malwarebytes Browser Guard) - C:\Users\MARTINE\AppData\Roaming\Mozilla\Firefox\Profiles\464b7shr.default-1623565288696\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2023-01-28] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\MARTINE\AppData\Roaming\Mozilla\Firefox\Profiles\464b7shr.default-1623565288696\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2023-07-06] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-09-11] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\Default [2024-01-26] CHR Notifications: Default -> hxxps://assiste.com CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-01-24] CHR Extension: (Désactivation de Google Analytics) - C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2018-07-08] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Profile: C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-04-15] CHR Profile: C:\Users\MARTINE\AppData\Local\Google\Chrome\User Data\System Profile [2023-06-21] CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [109056 2009-09-28] (ArcSoft, Inc. -> ArcSoft Inc.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.) S4 ApHidMonitorService; C:\Program Files\Apoint2K\HidMonitorSvc.exe [104840 2015-09-24] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082784 2024-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) S4 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Fichier non signé] S4 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2457232 2012-07-24] (Realtek Semiconductor Corp -> Realsil Microelectronics Inc.) S4 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9410296 2024-01-16] (Malwarebytes Inc. -> Malwarebytes) S4 myCANAL Server; C:\ProgramData\myCANAL\nssm.exe [294912 2019-06-26] () [Fichier non signé] S4 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2013-11-06] (Dritek System Inc. -> Dritek System INC.) S4 StatusAgent4; C:\WINDOWS\SysWOW64\SAgent4.exe [131072 2006-12-20] (SEIKO EPSON CORPORATION) [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223296 2024-01-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-01-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-01-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 Ps2Kb2Hid; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736 2013-11-06] (Dritek System Inc. -> Dritek System Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 wanatw; C:\WINDOWS\System32\drivers\wanatw64.sys [24064 2006-11-29] (Microsoft Windows Hardware Compatibility Publisher -> America Online, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-06] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-01-26 08:23 - 2024-01-26 08:25 - 000019296 _____ C:\Users\MARTINE\Desktop\FRST.txt 2024-01-26 08:22 - 2024-01-26 08:24 - 000000000 ____D C:\FRST 2024-01-26 08:21 - 2024-01-26 08:22 - 002389504 _____ (Farbar) C:\Users\MARTINE\Desktop\FRST64.exe 2024-01-26 08:08 - 2024-01-26 08:08 - 000184182 _____ C:\Users\MARTINE\Desktop\ZHPDiag.txt 2024-01-26 08:01 - 2024-01-26 08:08 - 000000000 ____D C:\Users\MARTINE\AppData\Roaming\ZHP 2024-01-26 08:01 - 2024-01-26 08:01 - 000000910 _____ C:\Users\MARTINE\Desktop\ZHPSuite.lnk 2024-01-26 07:59 - 2024-01-26 07:59 - 003538080 _____ (Nicolas Coolman) C:\Users\MARTINE\Desktop\ZHPSuite.exe 2024-01-16 10:09 - 2024-01-16 10:09 - 000000000 ____D C:\Users\MARTINE\Documents\2024_01_16 2024-01-16 07:43 - 2024-01-26 07:33 - 000000000 ____D C:\Users\MARTINE\AppData\Local\Malwarebytes 2024-01-16 07:43 - 2024-01-16 07:43 - 000002037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-01-16 07:41 - 2024-01-16 07:41 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-01-16 07:40 - 2024-01-16 07:40 - 002606880 _____ (Malwarebytes) C:\Users\MARTINE\Desktop\MBSetup.exe 2024-01-10 20:09 - 2024-01-10 20:12 - 000000000 ___HD C:\$WinREAgent 2024-01-01 17:51 - 2024-01-01 17:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avanquest Software (7270356 Canada Inc.) 2024-01-01 17:49 - 2024-01-01 17:49 - 000000000 ____D C:\ProgramData\PDF Suite 20 2023-12-28 14:28 - 2023-12-28 14:28 - 000000000 ____D C:\Users\MARTINE\Documents\2023_12_28 2023-12-13 08:19 - 2023-12-13 08:19 - 000000000 ____D C:\WINDOWS\InboxApps 2023-12-13 07:54 - 2023-12-13 07:54 - 000016707 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-12-13 06:33 - 2023-12-13 06:33 - 000000000 ____D C:\Users\MARTINE\Documents\2023_12_13 2023-12-02 06:24 - 2024-01-07 11:03 - 000000000 ____D C:\Users\MARTINE\Documents\2023_12_02 2023-11-16 09:50 - 2024-01-16 07:53 - 000000000 ____D C:\Users\MARTINE\AppData\LocalLow\IGDump 2023-11-09 16:26 - 2023-11-09 16:26 - 000000000 ____D C:\Users\MARTINE\Documents\2023_11_09 ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-01-26 08:23 - 2021-12-15 19:30 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-01-26 08:23 - 2015-08-24 13:57 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-26 08:20 - 2020-11-01 18:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-01-26 08:10 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-01-26 08:10 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-26 08:01 - 2023-01-28 08:28 - 000000000 ____D C:\Users\MARTINE\AppData\Local\ZHP 2024-01-26 07:36 - 2020-04-30 14:09 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-26 07:36 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-24 16:40 - 2015-08-26 07:55 - 000000000 ____D C:\Users\MARTINE\AppData\Roaming\Microsoft\Word 2024-01-24 09:44 - 2022-08-10 05:55 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-01-24 09:44 - 2022-02-10 08:47 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-01-24 09:44 - 2021-06-13 07:19 - 000001009 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-01-24 09:34 - 2023-09-17 09:15 - 000000000 ____D C:\Users\MARTINE\Desktop\RECAPITULATIF BUREAU 2024-01-24 09:34 - 2020-11-01 19:06 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-01-24 09:34 - 2019-12-07 15:49 - 000792848 _____ C:\WINDOWS\system32\perfh00C.dat 2024-01-24 09:34 - 2019-12-07 15:49 - 000149978 _____ C:\WINDOWS\system32\perfc00C.dat 2024-01-24 09:34 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2024-01-24 09:30 - 2022-09-21 06:34 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2024-01-24 09:30 - 2020-11-01 19:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-01-24 09:29 - 2021-08-08 09:09 - 000000000 ____D C:\Program Files\CCleaner 2024-01-24 09:29 - 2020-11-01 18:46 - 000008192 ___SH C:\DumpStack.log.tmp 2024-01-24 09:29 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-01-24 08:21 - 2017-06-05 10:34 - 000002303 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-01-24 07:06 - 2022-09-21 06:34 - 000003378 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2024-01-24 07:06 - 2015-08-24 13:47 - 000000000 ____D C:\Users\MARTINE\AppData\Local\CrashDumps 2024-01-24 07:05 - 2022-08-13 13:45 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2024-01-22 08:21 - 2020-11-02 08:11 - 000000000 ____D C:\Users\MARTINE\AppData\Local\Deployment 2024-01-16 10:09 - 2021-12-21 17:52 - 000000000 ____D C:\ProgramData\CanonIJPLM 2024-01-16 10:09 - 2016-04-03 10:15 - 000000000 ___RD C:\Users\MARTINE\OneDrive 2024-01-16 07:42 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-01-16 07:41 - 2017-07-23 17:31 - 000000000 ____D C:\Program Files\Malwarebytes 2024-01-12 07:55 - 2016-04-26 08:03 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2024-01-10 10:52 - 2020-11-01 18:46 - 000607816 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-01-10 10:51 - 2015-09-29 16:50 - 000000000 ____D C:\Program Files (x86)\epson 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-01-10 10:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-01-10 10:43 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-01-10 08:40 - 2015-08-24 16:45 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-01-10 08:32 - 2015-08-24 16:45 - 189718008 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-01-07 11:38 - 2021-01-31 09:28 - 000000000 ____D C:\Users\MARTINE\Documents\comptes bancaires divers ==================== Fichiers à la racine de certains dossiers ======== 2019-10-08 06:48 - 2019-10-08 06:48 - 009256960 _____ () C:\Program Files (x86)\GUTD60D.tmp ==================== SigCheckExt ========================= 2016-07-16 12:42 - 2016-07-16 12:42 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AllJoynDiscoveryPlugin.dll 2007-04-13 18:28 - 2007-04-13 18:28 - 000088064 _____ (AOL LLC) C:\WINDOWS\system32\AOLDial.dll 2013-08-22 12:45 - 2013-08-22 12:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 12:43 - 2013-08-22 12:43 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-security-cryptoapi-l1-1-0.dll 2013-01-28 14:47 - 2013-01-28 14:47 - 000361600 _____ (Qualcomm Atheros Commnucations) C:\WINDOWS\system32\AthCredentialProvider.dll 2016-07-13 10:07 - 2016-07-01 04:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe 2015-10-30 08:19 - 2015-10-30 08:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafCdp.dll 2017-04-12 16:57 - 2017-03-28 06:37 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2014-11-21 00:20 - 2014-11-21 00:20 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe 2014-11-21 00:20 - 2014-11-21 00:20 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2017-05-10 08:20 - 2017-03-04 07:26 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-07-16 12:43 - 2016-07-16 23:45 - 003584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkAnalysisLegacyCom.dll 2014-11-21 05:34 - 2014-11-21 05:34 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll 2015-10-30 08:18 - 2015-10-30 08:18 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flashlight.dll 2015-09-09 11:05 - 2015-07-22 15:19 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDiscoveryPlugin.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiOnboardingPlugin.dll 2015-08-24 21:28 - 2015-08-24 21:28 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2017-01-09 13:54 - 1999-11-23 09:23 - 000048640 _____ C:\WINDOWS\catalogSubInstaller.exe 2017-01-09 13:33 - 1998-10-07 13:08 - 000327168 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUn040c.exe 2017-01-09 13:54 - 1997-12-17 18:33 - 000304128 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2013-08-22 05:17 - 2013-08-22 05:17 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-security-cryptoapi-l1-1-0.dll 2016-01-18 11:55 - 2010-08-27 23:55 - 000040448 _____ (Embarcadero Technologies, Inc.) C:\WINDOWS\SysWOW64\borlndmm.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000059392 _____ (SANYO Electric Co., Ltd.) C:\WINDOWS\SysWOW64\Camapi32.dll 2016-01-18 11:55 - 2010-08-27 23:55 - 001143296 _____ (Embarcadero Technologies Inc.) C:\WINDOWS\SysWOW64\cc32100mt.dll 2016-01-18 11:55 - 2010-08-27 23:55 - 001043456 _____ (Embarcadero Technologies, Inc.) C:\WINDOWS\SysWOW64\cc32110mt.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000019968 _____ (SANYO Electric Co., Ltd.) C:\WINDOWS\SysWOW64\Comm32.dll 2016-07-16 12:43 - 2016-07-16 12:43 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\configmanager2.dll 2016-07-16 12:43 - 2016-07-16 12:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coredpus.dll 2013-04-18 05:31 - 2012-07-04 03:55 - 000053248 _____ (Windows XP Bundled build C-Centric Single User) C:\WINDOWS\SysWOW64\CSVer.dll 2017-01-09 13:54 - 1999-11-23 09:21 - 000020976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CTL3D.DLL 2015-10-30 08:19 - 2015-10-30 08:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafCdp.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000045568 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\DC210.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000045568 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\DC210V204_32.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000110592 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\DC240.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000230400 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\DC265.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000100864 _____ C:\WINDOWS\SysWOW64\Dc50ip32.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000119296 _____ (Eastman Kodak) C:\WINDOWS\SysWOW64\Dc50v11_32.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000168960 _____ (Canon, Inc.) C:\WINDOWS\SysWOW64\deimg.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000161280 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\deimg301.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000161792 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\deimg401.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000162816 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\deimg602.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000167936 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\deimg603.dll 2017-06-20 13:12 - 2009-11-09 08:40 - 003248128 _____ () C:\WINDOWS\SysWOW64\DVAPfg.exe 2017-06-20 13:12 - 2009-10-30 08:13 - 000188416 _____ (Chicony Electronics Co., Ltd.) C:\WINDOWS\SysWOW64\DVAPTray.exe 2017-01-09 13:54 - 1999-11-23 09:17 - 000308224 _____ (Nikon Corp.) C:\WINDOWS\SysWOW64\E300.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000029696 _____ (Nikon Corp.) C:\WINDOWS\SysWOW64\E300str.dll 2016-02-26 12:50 - 2006-12-19 18:20 - 000077824 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EBAPI.dll 2007-09-28 08:06 - 2007-09-28 08:06 - 001573220 _____ (SEIKO EPSON COPRORATION) C:\WINDOWS\SysWOW64\EB_SET05.EXE 2016-02-26 12:50 - 2007-09-07 17:33 - 000135168 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EEBAPI.dll 2016-02-26 12:50 - 2006-12-19 18:31 - 000110592 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EEBDSCVR.dll 2016-02-26 12:50 - 2003-12-17 01:01 - 000055808 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EEBSDKIF.dll 2016-02-26 12:50 - 2007-03-28 18:26 - 000065536 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\EEBUtil.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000071168 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekexifio.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000043520 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixaudio.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000138240 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixexif.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000004608 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixguid.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000446976 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixio130.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000097280 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixjpeg.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000068096 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ekfpixpsets.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:13 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 05:14 - 2013-08-22 05:13 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2016-05-09 12:40 - 2007-09-27 02:08 - 000112640 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\E_ADDNET.EXE 2017-01-09 13:54 - 1999-11-23 09:17 - 000032768 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\F210.dll 2017-06-20 13:12 - 2009-07-05 20:33 - 000085504 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000006144 _____ C:\WINDOWS\SysWOW64\ImgLibLead.dll 2017-03-15 07:45 - 2017-03-04 07:18 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2001-09-25 14:39 - 2001-09-25 14:39 - 000054784 _____ (Blue Sky Software Corporation.) C:\WINDOWS\SysWOW64\Inetwh32.dll 2016-07-16 12:44 - 2016-07-16 23:45 - 002549760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkAnalysisLegacyCom.dll 2012-04-20 13:59 - 2012-04-20 13:59 - 000001536 _____ C:\WINDOWS\SysWOW64\IusEventLog.dll 2006-06-08 21:33 - 2006-06-08 21:33 - 000163840 _____ (America Online) C:\WINDOWS\SysWOW64\jgdw400.dll 2006-06-08 21:33 - 2006-06-08 21:33 - 000027648 _____ (Johnson-Grace Company) C:\WINDOWS\SysWOW64\jgpl400.dll 2017-01-09 13:54 - 1999-11-23 09:23 - 000176128 _____ (LightWork Design Ltd.) C:\WINDOWS\SysWOW64\Kzdi20.dll 2017-01-09 13:54 - 1999-11-23 09:23 - 001436672 _____ (LightWork Design Ltd.) C:\WINDOWS\SysWOW64\Kzlw20.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000034304 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\lfbmp10N.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000024576 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\Lfbmp70n.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000240128 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\LFCMP10N.DLL 2017-01-09 13:54 - 1999-11-23 09:17 - 000225280 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\LFCMP70n.DLL 2017-01-09 13:54 - 1999-11-23 09:17 - 000099840 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\ltfil10N.DLL 2017-01-09 13:54 - 1999-11-23 09:17 - 000055808 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\Ltfil70n.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000291840 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\ltkrn10N.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000349696 _____ (LEAD Technologies, Inc.) C:\WINDOWS\SysWOW64\Ltkrn70n.dll 2016-01-18 11:55 - 2009-08-19 14:05 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCANS32.DLL 2015-10-30 08:19 - 2016-09-14 11:06 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-30 08:19 - 2016-09-14 11:06 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2017-01-09 13:54 - 1999-10-07 10:13 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVCP50.DLL 2003-08-13 02:17 - 2003-08-13 02:17 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2003-08-13 02:17 - 2003-08-13 02:17 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2016-01-18 11:55 - 2010-01-08 11:51 - 000210944 _____ C:\WINDOWS\SysWOW64\msvcrt10.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000034304 _____ (Nikon Corp.) C:\WINDOWS\SysWOW64\Nkdscsi.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000059904 _____ (Nikon Corp.) C:\WINDOWS\SysWOW64\Nkdserl.dll 2016-01-18 11:55 - 2010-01-08 12:51 - 000212480 _____ (Eastman Kodak) C:\WINDOWS\SysWOW64\PCDLIB32.DLL 2017-01-09 13:54 - 1999-11-23 09:17 - 000403968 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\PDC_SDK.dll 2017-01-09 13:54 - 1999-11-23 09:21 - 000032768 _____ (Adobe Systems, Inc.) C:\WINDOWS\SysWOW64\PLUGIN.DLL 2017-01-09 13:54 - 1999-11-23 09:17 - 000074240 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\ProFire.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000045056 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psaddimg.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000114688 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\pscollec.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000274432 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psdecode.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000057344 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psdvelop.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000207872 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psl350.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000176128 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psll.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000102400 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\psparse.dll 2017-01-09 13:54 - 1999-11-23 09:17 - 000069632 _____ (Canon Inc.) C:\WINDOWS\SysWOW64\pssetup.dll 2017-06-20 13:12 - 2009-07-05 20:33 - 000060273 _____ (Open Source Software community project) C:\WINDOWS\SysWOW64\pthreadGC2.dll 2001-09-25 14:39 - 2001-09-25 14:39 - 001044480 _____ (eHelp Corporation.) C:\WINDOWS\SysWOW64\roboex32.dll 2016-12-22 15:52 - 2006-12-20 02:14 - 000131072 _____ (SEIKO EPSON CORPORATION) C:\WINDOWS\SysWOW64\SAgent4.exe 2017-01-09 13:54 - 1999-11-23 09:17 - 000215040 _____ (Eastman Kodak Company) C:\WINDOWS\SysWOW64\SC.dll 2017-01-09 13:54 - 1999-11-23 09:21 - 000249856 _____ (Play Incorporated) C:\WINDOWS\SysWOW64\Snap32n.dll 2016-01-18 11:55 - 2003-03-19 07:04 - 000618496 _____ C:\WINDOWS\SysWOW64\stlpmt45.dll 2006-10-26 12:45 - 2006-10-26 12:45 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WISPTIS.EXE 2018-05-25 07:02 - 2018-05-25 07:02 - 001438086 _____ (Igor Pavlov) C:\Users\MARTINE\Desktop\7z1805-x64.exe 2024-01-26 08:21 - 2024-01-26 08:22 - 002389504 _____ (Farbar) C:\Users\MARTINE\Desktop\FRST64.exe 2024-01-26 07:59 - 2024-01-26 07:59 - 003538080 _____ (Nicolas Coolman) C:\Users\MARTINE\Desktop\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} timeout 2 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {62b2e84a-ef2c-11e9-a35a-e7551a78c40d} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de démarrage Windows ----------------------------- identificateur {1bcc5e17-5ff3-11e8-b48a-a4598ab06dfc} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{1bcc5e18-5ff3-11e8-b48a-a4598ab06dfc} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{1bcc5e18-5ff3-11e8-b48a-a4598ab06dfc} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {62b2e84d-ef2c-11e9-a35a-e7551a78c40d} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {62b2e84a-ef2c-11e9-a35a-e7551a78c40d} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {62b2e84d-ef2c-11e9-a35a-e7551a78c40d} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{62b2e84e-ef2c-11e9-a35a-e7551a78c40d} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{62b2e84e-ef2c-11e9-a35a-e7551a78c40d} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {62b2e84a-ef2c-11e9-a35a-e7551a78c40d} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {62b2e84d-ef2c-11e9-a35a-e7551a78c40d} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes Paramètres EMS -------------- identificateur {emssettings} bootems No Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de mémoire RAM ---------------------- identificateur {badmemory} Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de périphérique ----------------------- identificateur {62b2e84e-ef2c-11e9-a35a-e7551a78c40d} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================