Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 01.07.2024 Exécuté par DELAFOND (administrateur) sur DESKTOP-DE3ET1I (ASUSTeK COMPUTER INC. X751SA) (09-07-2024 15:14:20) Exécuté depuis C:\Users\DELAFOND\Downloads\FRST64.exe Profils chargés: DELAFOND Plate-forme: Microsoft Windows 11 Famille Version 21H2 22000.2538 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Areson Technology -> ) C:\Program Files (x86)\Hama Mouse Assistant\mouse_driver.exe (C:\Program Files (x86)\Auslogics\Duplicate File Finder\Integrator.exe ->) (Auslogics Labs Pty Ltd -> Auslogics) C:\Program Files (x86)\Auslogics\Duplicate File Finder\ActionCenter.exe (C:\Program Files (x86)\Auslogics\Duplicate File Finder\Integrator.exe ->) (Auslogics Labs Pty Ltd -> Auslogics) C:\Program Files (x86)\Auslogics\Duplicate File Finder\DuplicateFileFinder.exe (C:\Program Files (x86)\Auslogics\Duplicate File Finder\Integrator.exe ->) (Auslogics Labs Pty Ltd -> Auslogics) C:\Program Files (x86)\Auslogics\Duplicate File Finder\TabReports.exe (C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\92.0.1.0\crashpad_handler.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\126.0.2592.87\msedgewebview2.exe <6> (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (explorer.exe ->) (Emjysoft -> Emjysoft) C:\Program Files\Emjysoft\Sauvegarde-Facile\Sauvegarde.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <10> (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe <7> (Intel Corporation -> ) C:\Windows\System32\igfxTray.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Reason Cybersecurity Inc. -> Reason Cybersecurity Ltd.) C:\Program Files\ReasonLabs\Common\Client\v1.4.2\rsAppUI.exe <5> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AOMEI International Network Limited -> AOMEI International Network Limited) C:\Program Files (x86)\AOMEI\ABService.exe (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe (services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2424.6.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Auslogics Labs Pty Ltd -> Auslogics) C:\Program Files (x86)\Auslogics\Duplicate File Finder\Integrator.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.13200.30.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [278440 2019-12-05] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [uni mouse driver] => C:\Program Files (x86)\Hama Mouse Assistant\mouse_driver.exe [1634296 2015-04-13] (Areson Technology -> ) HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" [70024624 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (Pas de fichier) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-20] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-20] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919200 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [MicrosoftEdgeAutoLaunch_38A84346576CE693E78CB1B422245805] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883472 2024-07-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-20] (Google LLC -> Google, Inc.) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [YouSendIt.exe] => C:\Program Files (x86)\YouSendIt\Express\YouSendIt.exe -ui none (Pas de fichier) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [NoxMultiPlayer] => "D:\Program Files\Nox\bin\MultiPlayerManager.exe" -startSource:auto_start (Pas de fichier) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [Emjysoft Sauvegarde Facile] => C:\Program Files\Emjysoft\Sauvegarde-Facile\Sauvegarde.exe [4110688 2024-03-01] (Emjysoft -> Emjysoft) HKU\S-1-5-21-3383411506-4232689735-212020319-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [11432352 2024-06-27] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-20] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\Canon TS3400 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDGF.DLL [525824 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TS3400 series: C:\WINDOWS\system32\CNMLMGF.DLL [962560 2021-09-12] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\126.0.6478.127\Installer\chrmstp.exe [2024-06-27] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {3F5B1834-45E4-4378-94F6-28067646BE80} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1558984 2024-06-25] (Adobe Inc. -> Adobe Inc.) Task: {3F14FC76-DE3F-45E6-AD51-641F981956CD} - System32\Tasks\Auslogics\Duplicate File Finder\Start Duplicate File Finder on DELAFOND logon => C:\Program Files (x86)\Auslogics\Duplicate File Finder\Integrator.exe [5508768 2024-04-27] (Auslogics Labs Pty Ltd -> Auslogics) Task: {8E66CAE3-67EE-402E-BB56-C01E7A76A7CD} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{DDC72301-51A7-4CD0-84A9-D83F3D8B72C3} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe [4623976 2024-06-13] (Google LLC -> Google LLC) Task: {03570EF5-E4AC-4BDA-8789-ECF96CA532D5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28512448 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {0E4A1BBE-C548-41F8-A445-F05F44B68C63} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28512448 2024-06-26] (Microsoft Corporation -> Microsoft Corporation) Task: {557183C4-5210-4FFB-B5CA-69799A2D5212} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221848 2024-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {B13EA774-C2D6-4462-875E-28079E7FDA2C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221848 2024-07-01] (Microsoft Corporation -> Microsoft Corporation) Task: {EB5AE08B-57BA-497D-8B0F-97F9510C1AD8} - System32\Tasks\Microsoft\Windows\CloudRestore\Backup => {722D0F89-B69C-4700-AE8C-4A44350E4876} Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {755A13AF-D1DE-4804-8FE0-A3DA95169E57} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F2FBCED5-CFC0-44F9-B9F6-1CE409DB224C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {108D748C-56CF-4DCA-A7E6-1001F82F09EF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C7857216-C14B-4770-B93A-C518C9E3F96D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2ED3B8F5-3A69-4D61-B768-F27793A720E3} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676936 2024-06-27] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {277EF80C-A2E2-4715-A49B-ECF4C9990C1C} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3383411506-4232689735-212020319-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676936 2024-06-27] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {2DA146BD-E286-4033-9E96-A28B2B03112C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34888 2024-06-27] (Mozilla Corporation -> Mozilla Foundation) Task: {2754D674-1D20-4EA3-A141-F84E57F7FDEB} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {1C76E054-98C7-47A6-9A25-FFA791EF16B6} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3383411506-4232689735-212020319-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) Task: {13F74A2F-0D98-4FE9-A3A9-57825F823D9E} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617880 2021-09-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {1AF25E98-BC31-428A-AA89-03F0A07D437E} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617880 2021-09-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5a7fdd4c-7ea8-411e-8208-d8c572fb9f31}: [DhcpNameServer] 192.168.1.11 Tcpip\..\Interfaces\{b7bfc643-fa8f-4b0f-8d40-57bb8c5d6c15}: [DhcpNameServer] 192.168.239.63 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}: [DhcpDomain] home Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\056502459702D41647: [DhcpNameServer] 10.188.0.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\14355535F5250514345363: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\4505D2C494E4B4F554874756E6465627F5344354438334: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\74F656C6961602C456370274F62776563702465602C6160245275797562756: [DhcpNameServer] 10.188.0.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\960586F6E6560246560244F646F602822392: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\C496675626F687D233532403F5537484A7F52374548545: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{be1525f3-8878-4de8-8f83-5d828bcb0369}\C496675626F687D233532403F5537484A7F52374548545: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Profile 1 Edge Profile: C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-23] Edge Extension: (Google Docs hors connexion) - C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-09] Edge Extension: (Edge relevant text changes) - C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-09] Edge Profile: C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2024-07-08] Edge Notifications: Profile 1 -> hxxps://www.francebleu.fr Edge HomePage: Profile 1 -> hxxps://www.google.fr/ Edge Extension: (Google Docs hors connexion) - C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-03] Edge Extension: (Edge relevant text changes) - C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-07] Edge Profile: C:\Users\DELAFOND\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2024-03-23] Edge HKU\S-1-5-21-3383411506-4232689735-212020319-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl] Edge HKLM-x32\...\Edge\Extension: [jcpgbnbdnakoblgfkbgggankeidkfcdl] FireFox: ======== FF DefaultProfile: jh1oa0og.default FF ProfilePath: C:\Users\DELAFOND\AppData\Roaming\Mozilla\Firefox\Profiles\jh1oa0og.default [2023-09-29] FF ProfilePath: C:\Users\DELAFOND\AppData\Roaming\Mozilla\Firefox\Profiles\h7am0vxy.default-release [2024-07-09] FF Notifications: Mozilla\Firefox\Profiles\h7am0vxy.default-release -> hxxps://www.facebook.com; hxxps://forum.clubic.com FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-06-27] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default [2024-07-09] CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://cb125k.lebonforum.com; hxxps://fjpower.forumgratuit.org; hxxps://honda-crm.superforum.fr; hxxps://rugbyfederal.com; hxxps://www.50factory.com; hxxps://www.auto-doc.fr; hxxps://www.ffr.fr; hxxps://www.jardinier-amateur.fr; hxxps://www.joom.com; hxxps://www.ladepeche.fr; hxxps://www.lanouvellerepublique.fr; hxxps://www.leberry.fr; hxxps://www.lechorepublicain.fr; hxxps://www.lequipe.fr; hxxps://www.rugbyfederal.com; hxxps://www.rugbyrama.fr; hxxps://www.totalenergies.fr; hxxps://www.youtube.com CHR HomePage: Default -> hxxps://www.google.fr/ CHR StartupUrls: Default -> "hxxps://www.google.fr/" CHR Extension: (Blueticks) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\adgnjhngogijkkppficiiepmjebijinl [2024-06-30] CHR Extension: (Samsung Internet) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\epejdmjgfibjaffbmojllapapjejipkh [2024-04-09] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-06-26] CHR Extension: (Online Security) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2024-06-08] CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2024-04-09] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-09] CHR Profile: C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Guest Profile [2024-04-02] CHR Profile: C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 17 [2024-04-02] CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 17\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2024-04-02] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 17\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-02] CHR Profile: C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18 [2024-04-08] CHR Notifications: Profile 18 -> hxxps://www.facebook.com; hxxps://www.lanouvellerepublique.fr CHR HomePage: Profile 18 -> hxxps://www.google.fr/ CHR StartupUrls: Profile 18 -> "hxxps://www.google.fr/" CHR Extension: (Blueticks) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\adgnjhngogijkkppficiiepmjebijinl [2024-04-04] CHR Extension: (Samsung Internet) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\epejdmjgfibjaffbmojllapapjejipkh [2024-04-02] CHR Extension: (Google Docs hors connexion) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-02] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-04-02] CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2024-04-02] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\Profile 18\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-02] CHR Profile: C:\Users\DELAFOND\AppData\Local\Google\Chrome\User Data\System Profile [2024-04-09] CHR HKU\S-1-5-21-3383411506-4232689735-212020319-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKU\S-1-5-21-3383411506-4232689735-212020319-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-06-25] (Adobe Inc. -> Adobe Inc.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [338920 2017-06-19] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) R2 Backupper Service; C:\Program Files (x86)\AOMEI\ABService.exe [1106416 2024-03-12] (AOMEI International Network Limited -> AOMEI International Network Limited) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14023752 2024-06-21] (Microsoft Corporation -> Microsoft Corporation) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\FileSyncHelper.exe [3519392 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-07-31] (Canon Inc. -> ) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8887344 2024-05-18] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-05-18] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe [1505416 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\OneDriveUpdaterService.exe [3860400 2024-07-09] (Microsoft Corporation -> Microsoft Corporation) R2 rsVPNClientSvc; C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe [672400 2024-04-29] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 rsVPNSvc; C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe [225792 2024-04-29] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2022-10-04] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2022-10-04] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe [3236728 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe [133704 2024-06-05] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2019-05-14] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [172928 2024-05-18] (AOMEI International Network Limited -> ) S3 ampa; C:\WINDOWS\system32\ampa.sys [38320 2023-10-10] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [32176 2024-05-18] (AOMEI International Network Limited -> ) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) S3 ddmdrv; C:\WINDOWS\system32\ddmdrv.sys [35760 2023-10-10] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-11-04] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [34488 2022-08-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223184 2024-05-18] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-09-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 MpKsl63002565; C:\WINDOWS\system32\MpEngineStore\MpKslDrv.sys [222464 2023-10-02] (Microsoft Windows -> Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22080 2024-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [103656 2021-06-05] (Microsoft Windows -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602520 2024-06-05] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105880 2024-06-05] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-07-09 15:14 - 2024-07-09 15:16 - 000029220 _____ C:\Users\DELAFOND\Downloads\FRST.txt 2024-07-09 15:13 - 2024-07-09 15:15 - 000000000 ____D C:\FRST 2024-07-09 15:11 - 2024-07-09 15:11 - 002395648 _____ (Farbar) C:\Users\DELAFOND\Downloads\FRST64.exe 2024-07-09 08:40 - 2024-07-09 08:40 - 000000000 ____D C:\DOSSIER NISSAN ET CITROEN C4 2024-07-08 19:25 - 2024-07-08 19:25 - 000769342 _____ C:\Users\DELAFOND\Downloads\Constat_Amiable.pdf 2024-07-08 09:20 - 2024-07-08 09:20 - 000000000 ____D C:\Users\DELAFOND\AppData\Roaming\Emjysoft 2024-07-08 09:19 - 2024-07-08 09:19 - 000000000 ____D C:\Program Files\Emjysoft 2024-07-08 09:18 - 2024-07-08 09:19 - 043389704 _____ (Emjysoft ) C:\Users\DELAFOND\Downloads\sauvegarde-facile.exe 2024-07-08 08:35 - 2024-07-08 08:35 - 000686768 _____ C:\Users\DELAFOND\Desktop\cerfa_15776-01.pdf 2024-07-08 08:33 - 2024-07-08 08:33 - 000686768 _____ C:\Users\DELAFOND\Downloads\cerfa_15776-01.pdf 2024-07-06 11:23 - 2024-07-06 11:23 - 000000520 _____ C:\WINDOWS\system32\AbBakConfig.dat 2024-07-06 07:55 - 2024-07-06 07:56 - 010650737 _____ C:\Users\DELAFOND\Downloads\VID-20240627-WA0004.mp4 2024-07-05 15:16 - 2024-07-05 15:16 - 000151126 _____ C:\Users\DELAFOND\Downloads\Relevé n°007 du 03_07_2024.pdf 2024-07-01 08:16 - 2024-07-01 08:16 - 000080312 _____ C:\Users\DELAFOND\Downloads\attestationfiscale.pdf 2024-06-23 10:45 - 2024-06-23 10:45 - 000014736 _____ C:\Users\DELAFOND\Downloads\Vigicrues_Hauteurs_L720061001.csv 2024-06-21 08:06 - 2024-06-21 08:06 - 000000688 _____ C:\Users\DELAFOND\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Nouveau dossier.lnk 2024-06-20 07:20 - 2024-06-28 07:55 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-06-19 16:48 - 2024-06-19 16:48 - 003392169 _____ C:\Users\DELAFOND\Downloads\archive (1).zip 2024-06-19 11:32 - 2024-06-19 11:22 - 001675110 _____ C:\Users\DELAFOND\Desktop\80 ans Club - Réu Interne (3).pdf 2024-06-10 08:55 - 2024-06-27 11:29 - 000000087 _____ C:\Users\DELAFOND\Desktop\Mon eBay- Messages.url ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-07-09 15:12 - 2023-09-29 19:37 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-07-09 15:10 - 2023-08-09 14:23 - 000000000 ___SD C:\Users\DELAFOND\AppData\Roaming\Microsoft\Credentials 2024-07-09 14:57 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-07-09 14:09 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-07-09 11:37 - 2023-08-09 15:17 - 000000000 ____D C:\Users\DELAFOND\AppData\Local\Adobe 2024-07-09 11:27 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-07-09 11:22 - 2023-08-09 14:24 - 000000000 ____D C:\Users\DELAFOND\AppData\Local\Packages 2024-07-09 11:22 - 2023-08-09 14:24 - 000000000 ____D C:\ProgramData\Packages 2024-07-09 11:22 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps 2024-07-09 08:52 - 2023-08-11 12:42 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3383411506-4232689735-212020319-1001 2024-07-09 08:52 - 2023-08-11 12:42 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-07-09 08:52 - 2023-08-10 16:01 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-07-09 08:52 - 2023-08-09 15:27 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-07-09 08:52 - 2023-08-09 14:37 - 000000000 ___RD C:\Users\DELAFOND\OneDrive 2024-07-09 05:13 - 2023-08-11 12:39 - 001709664 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-07-09 05:13 - 2021-06-05 20:14 - 000772574 _____ C:\WINDOWS\system32\perfh00C.dat 2024-07-09 05:13 - 2021-06-05 20:14 - 000148820 _____ C:\WINDOWS\system32\perfc00C.dat 2024-07-09 05:13 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF 2024-07-09 05:08 - 2024-05-18 19:36 - 000000000 ____D C:\Program Files (x86)\AOMEI 2024-07-09 05:08 - 2023-10-31 18:18 - 000000520 _____ C:\WINDOWS\SysWOW64\AbBakConfig.dat 2024-07-09 05:08 - 2023-09-04 07:40 - 000000432 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2024-07-09 05:08 - 2023-08-09 14:31 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2024-07-09 05:08 - 2023-08-09 14:31 - 000000000 __SHD C:\Users\DELAFOND\IntelGraphicsProfiles 2024-07-09 05:07 - 2023-08-11 12:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-07-09 05:07 - 2023-08-09 14:16 - 000012288 ___SH C:\DumpStack.log.tmp 2024-07-09 05:07 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ServiceState 2024-07-08 20:14 - 2021-06-05 14:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2024-07-08 09:26 - 2023-08-26 18:22 - 000000000 ____D C:\ProgramData\AomeiBR 2024-07-08 09:25 - 2023-09-04 11:38 - 000001024 ____H C:\SYSTAG.BIN 2024-07-07 08:45 - 2023-08-11 12:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-07-06 11:23 - 2023-10-02 08:46 - 000000432 _____ C:\WINDOWS\system32\winsevr.dat 2024-07-05 15:25 - 2023-08-10 15:03 - 000000000 ____D C:\ProgramData\CanonIJPLM 2024-07-04 07:21 - 2023-10-20 18:04 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-07-04 07:21 - 2023-08-09 14:17 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2024-07-01 17:58 - 2023-08-09 17:55 - 000000000 ____D C:\Users\DELAFOND\AppData\Local\D3DSCache 2024-07-01 17:42 - 2023-08-09 15:30 - 000000000 ____D C:\Users\DELAFOND\AppData\Roaming\Microsoft\Word 2024-07-01 08:43 - 2024-05-18 19:43 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant 2024-07-01 08:42 - 2023-08-26 18:23 - 000001024 ____H C:\AMTAG.BIN 2024-07-01 08:42 - 2023-08-26 18:23 - 000000000 ____D C:\ProgramData\boost_interprocess 2024-07-01 07:19 - 2023-08-09 15:23 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2024-06-30 17:51 - 2023-08-09 15:22 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-06-30 17:51 - 2023-08-09 15:22 - 000002021 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2024-06-30 17:48 - 2023-08-11 12:42 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-06-29 08:17 - 2024-04-02 09:31 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2024-06-28 07:55 - 2023-09-29 19:37 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-06-27 08:59 - 2023-09-29 19:37 - 000000965 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-06-27 08:59 - 2023-09-29 19:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2024-06-27 08:34 - 2023-08-30 15:32 - 000000000 ____D C:\Users\DELAFOND\AppData\Local\CrashDumps 2024-06-27 07:56 - 2023-09-03 13:49 - 000002205 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-06-27 07:56 - 2023-09-03 13:49 - 000002164 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2024-06-20 19:23 - 2023-11-04 10:43 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2024-06-20 11:53 - 2023-08-09 17:28 - 000000000 ____D C:\Users\DELAFOND\AppData\Roaming\Microsoft\Excel 2024-06-16 23:05 - 2023-08-11 12:05 - 000000000 ____D C:\Users\DELAFOND 2024-06-15 16:43 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\NDF 2024-06-12 08:25 - 2023-08-09 14:35 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-06-12 08:20 - 2023-08-09 14:35 - 199048176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Fichiers à la racine de certains dossiers ======== 2024-05-18 19:37 - 2022-08-31 19:20 - 000497096 ___SH (AOMEI International Network Limited) C:\Program Files (x86)\ABLaucher.exe 2024-05-18 19:37 - 2022-08-31 19:20 - 000497096 _____ (AOMEI International Network Limited) C:\Program Files (x86)\ABLauncher.exe 2024-05-18 19:37 - 2021-03-19 15:11 - 000018432 _____ () C:\Program Files (x86)\Uninstall.exe 2023-08-11 10:05 - 2023-08-11 10:05 - 000000001 _____ () C:\Users\DELAFOND\AppData\Roaming\c 2024-01-15 17:41 - 2024-01-15 17:41 - 000000017 _____ () C:\Users\DELAFOND\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================