Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024 Exécuté par Yves (administrateur) sur YVES-PC (16-09-2024 14:51:15) Exécuté depuis C:\Users\Yves\Downloads\FRST64.exe Profils chargés: Yves Plate-forme: Microsoft Windows 11 Entreprise Version 22H2 22621.4037 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\File Transfer\Wi-Fi GO! AssistTool\File Transfer Server.exe (atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\AsPowerBar.exe (C:\Program Files (x86)\ASUS\AI Suite III\File Transfer\Wi-Fi GO! AssistTool\File Transfer Server.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\File Transfer\Wi-Fi GO! AssistTool\ASUSRelayWS.exe (C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe ->) (Clarus, Inc.) [Fichier non signé] C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvMon.exe (C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\1.3.911.1\DropboxCrashHandler.exe (C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe ->) (Logitech, Inc. -> ) C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe ->) (Microsoft Windows -> ) C:\Program Files\Windows Defender Advanced Threat Protection\SenseTVM.exe (C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender Advanced Threat Protection\Classification\SenseCE.exe <2> (C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe ->) (Microsoft Windows -> Microsoft) C:\Program Files\Windows Defender Advanced Threat Protection\SenseNdr.exe (C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender Advanced Threat Protection\SenseIR.exe (C:\Program Files\WindowsApps\MSTeams_24231.513.3110.6302_x64__8wekyb3d8bbwe\ms-teams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.79\msedgewebview2.exe <14> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDlpService.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\DlpUserAgent.exe (C:\Windows\CCM\CcmExec.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\CCM\SCNotification.exe (cmd.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\mpextms.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (explorer.exe ->) (Adaware Software (Lavasoft Software Canada Inc.) -> ) C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.10.55.0\AdAwareTray.exe (explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe (explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\Yves\AppData\Local\FluxSoftware\Flux\flux.exe (explorer.exe ->) (Facebook, Inc. -> Facebook) C:\Users\Yves\AppData\Local\Facebook\Games\FacebookGameroom.exe (explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.180.0905.0001\Microsoft.SharePoint.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Now.gg, INC -> now.gg, Inc.) C:\Users\Yves\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe <4> (explorer.exe ->) (Panasonic Corporation -> Panasonic Corporation) C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (explorer.exe ->) (Societe Francaise de Radiotelephone - SFR -> SFR) C:\Program Files (x86)\SFR\Mediacenter Evolution\MediaCenter.exe (Google Inc -> Google) C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Logitech, Inc. -> Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_24231.513.3110.6302_x64__8wekyb3d8bbwe\ms-teams.exe <2> (Miroslav Topolar -> Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe (services.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.77\AsusFanControlService.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.00.38\atkexComSvc.exe (services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (services.exe ->) (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe (services.exe ->) (Clarus, Inc.) [Fichier non signé] C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe (services.exe ->) (CLEVERFILES INC. -> CleverFiles) C:\Program Files\CleverFiles\Disk Drill\cfbackd.w32.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (Glarysoft Ltd -> Glarysoft Ltd) C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files (x86)\Logitech\LogiTune\LogiTuneUpdater.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Intune Management Extension\Microsoft.Management.Services.IntuneWindowsAgent.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Device Inventory Agent\InventoryService\InventoryService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft EPM Agent\EPMService\EpmService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.180.0905.0001\FileSyncHelper.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Policy Platform\policyHost.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Remote Help\RhService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\CCM\CcmExec.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Microsoft Update Health Tools\uhssvc.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDlpService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe (services.exe ->) (Miroslav Topolar -> Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (Shanghai Microvirt Software Technology Co., Ltd. -> ) D:\Program Files\Microvirt\MEmu\MemuService.exe (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24081.57.0_x64__cw5n1h2txyewy\CrossDeviceService.exe (svchost.exe ->) () [Fichier non signé] C:\Program Files (x86)\Logitech\LogiTune\data\drivers\RightSight\crashpad_handler.exe (svchost.exe ->) () [Fichier non signé] C:\Windows\DAODx.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\GPU Boost Driver\GpuBoostServer.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\TurboV EVO\TurboVHelp.exe (svchost.exe ->) (Clarus, Inc. -> Clarus, Inc.) C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.180.0905.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.5.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceEnroller.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\omadmclient.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\omadmprc.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [427304 2024-09-11] (Avast Software s.r.o. -> Gen Digital Inc.) HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [9831832 2024-03-19] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [876536 2019-05-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdAwareTray] => C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.10.55.0\AdAwareTray.exe [4759800 2020-10-26] (Adaware Software (Lavasoft Software Canada Inc.) -> ) HKLM-x32\...\Run: [Six Engine] => C:\Program Files (x86)\ASUS\EPU\EPU.exe [5308544 2010-03-03] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) HKLM-x32\...\Run: [QFan Help] => C:\Program Files\ASUS\Ai Suite\QFan4\FanHelp.exe [888960 2010-03-11] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) HKLM-x32\...\Run: [Google Desktop Search] => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2013-05-04] (Google Inc -> Google) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [76600 2020-07-24] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [SystemExplorerAutoStart] => "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY (Pas de fichier) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9235344 2024-09-09] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech, Inc. -> Logitech Inc.) HKLM-x32\...\Run: [ASUS WiFi GO! FileTransfer Execute] => C:\Program Files (x86)\ASUS\AI Suite III\File Transfer\Wi-Fi GO! AssistTool\WiFile\WiFileTransfer.exe [1391408 2017-09-19] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [Logi Tune] => C:\Program Files (x86)\Logitech\LogiTune\LogiTune.exe [134023056 2022-12-09] (Logitech Inc -> Logitech) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [143270984 2023-12-26] (Microsoft Corporation -> Microsoft Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRoot% <==== ATTENTION HKLM Group Policy restriction on software: %HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ProgramFilesDir% <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Restriction <==== ATTENTION HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [MicrosoftEdgeAutoLaunch_46FD5B88D9107B242DAE847A699C0293] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741224 2024-09-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [com.squirrel.Teams.Teams] => C:\Users\v-yniquil\AppData\Local\Microsoft\Teams\Update.exe [2589872 2024-05-27] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe [61368936 2024-09-09] (Google LLC -> Google, Inc.) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123172880 2024-08-18] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\24.180.0905.0001\Microsoft.SharePoint.exe [1025576 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe [61368936 2024-09-09] (Google LLC -> Google, Inc.) HKU\S-1-5-19\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe [61368936 2024-09-09] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [49958368 2022-02-01] (Google LLC -> ) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [SFR Mediacenter] => C:\Program Files (x86)\SFR\Mediacenter Evolution\MediaCenter.exe [2688368 2013-02-26] (Societe Francaise de Radiotelephone - SFR -> SFR) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\Bluestacks\HD-Agent.exe [970264 2016-07-04] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [Chromium] => c:\users\yves\appdata\local\chromium\application\chrome.exe --auto-launch-at-startup --profile-directory=Default --restore-last-session [1068544 2016-03-18] (The Chromium Authors) [Fichier non signé] HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [f.lux] => C:\Users\Yves\AppData\Local\FluxSoftware\Flux\flux.exe [1528952 2024-02-22] (F.lux Software LLC -> f.lux Software LLC) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [730992 2018-10-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe [61368936 2024-09-09] (Google LLC -> Google, Inc.) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [AvastBrowserAutoLaunch_5443465C6362FAB533A8CCA146EAF7B2] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2960216 2024-08-19] (Avast Software s.r.o. -> Gen Digital Inc.) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [Amazon Music Helper] => C:\Users\Yves\AppData\Local\Amazon Music\Amazon Music Helper.exe [2364136 2022-08-30] (Amazon.com Services LLC -> Amazon.com Services LLC) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [Amazon Music] => C:\Users\Yves\AppData\Local\Amazon Music\Amazon Music.exe [21812456 2022-08-30] (Amazon.com Services LLC -> Amazon.com Services LLC) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [BingSvc] => C:\Users\Yves\AppData\Local\Microsoft\BingSvc\BingSvc.exe [6605744 2022-06-06] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Yves\AppData\Local\Microsoft\Teams\Update.exe [2589872 2024-03-30] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [electron.app.BlueStacks Services] => C:\Users\Yves\AppData\Local\Programs\bluestacks-services\BlueStacksServices.exe [162219656 2024-05-08] (Now.gg, INC -> now.gg, Inc.) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [MicrosoftEdgeAutoLaunch_87CA1A4ECD4A616711F06D9FFFE1FF98] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741224 2024-09-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\24.180.0905.0001\Microsoft.SharePoint.exe [1025576 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\MountPoints2: {d9c6ac90-1d0a-11ee-9e02-00051b40386b} - "H:\setup.EXE" /AUTORUN HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-21-2291361548-2016861130-3130650149-1141\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919352 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\97.0.1.0\GoogleDriveFS.exe [61368936 2024-09-09] (Google LLC -> Google, Inc.) HKLM\...\Windows x64\Print Processors\Lexmark Pro800-Pro900 Series Print Processor: C:\Windows\System32\spool\prtprocs\x64\lxecdrpp.dll [189440 2009-11-04] () [Fichier non signé] HKLM\...\Print\Monitors\HP 5912 Status Monitor: C:\WINDOWS\system32\hpinksts5912LM.dll [331664 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Officejet Pro 8600): C:\WINDOWS\system32\HPDiscoPM5912.dll [741480 2012-10-17] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\PDF-XChange: C:\Windows\system32\pxc35pm.dll [6656 2006-01-30] (Tracker Software) [Fichier non signé] HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [117248 2019-03-16] (pdfforge GmbH) [Fichier non signé] HKLM\...\Print\Monitors\Wondershare PDFelement Monitor: C:\WINDOWS\system32\WSPDFelementMonitor.dll [271360 2017-10-19] (Wondershare Software) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\92.2.11577.159\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\128.0.6613.138\Installer\chrmstp.exe [2024-09-13] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\127.0.26097.121\Installer\chrmstp.exe [2024-08-26] (Avast Software s.r.o. -> Gen Digital Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\128.1.69.168\Installer\chrmstp.exe [2024-09-11] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{90EF4A5E-85DB-4825-96F5-1AB93C2A8EEB}] -> C:\Program Files (x86)\Mindjet\MindManager 10\sys\MmInternetExplorerActiveSetup.vbs [2011-11-10] () [Fichier non signé] HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> HKLM\Software\...\Winlogon\GPExtensions: [{346193F5-F2FD-4DBD-860C-B88843475FD3}] -> C:\WINDOWS\system32\CcmUsrCse.dll [2024-05-02] (Microsoft Corporation -> Microsoft Corporation) AppInit_DLLs-x32: C:\PROGRA~2\Google\GOOGLE~1\GO36F4~1.DLL => C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktopNetwork3.dll [123392 2013-05-04] (Google) [Fichier non signé] [Fichier en cours d'utilisation] Startup: C:\Users\Yves\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2024-01-19] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\Users\Yves\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2019-09-28] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Yves\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook, Inc. -> Facebook) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AlertusDesktopAlert.exe.lnk [2024-01-16] ShortcutTarget: AlertusDesktopAlert.exe.lnk -> C:\Program Files (x86)\Alertus Technologies\Alertus Desktop\AlertusDesktopAlert.exe (Alertus Technologies, LLC -> Alertus Technologies) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 9.6 PE.lnk [2016-12-21] ShortcutTarget: PHOTOfunSTUDIO 9.6 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (Panasonic Corporation -> Panasonic Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Drive Manager Real-Time.lnk [2015-09-03] ShortcutTarget: Samsung Drive Manager Real-Time.lnk -> C:\Program Files (x86)\Clarus\Samsung Drive Manager\ABRTMon.exe (Clarus, Inc.) [Fichier non signé] BootExecute: autocheck autochk * GroupPolicy: Restriction - Chrome <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0544C179-D86D-449D-B9F2-B2F403D542A7} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {0A6F2007-1999-4177-AAA4-C0FDF309C633} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {2E9CA400-747A-453F-B8BC-2967587B09EB} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {2F46992E-1C65-422C-B899-A258914BD671} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {36C738A9-6231-427F-BD68-3B80DB742E20} - \Programme de mise à jour en ligne de HP. -> Pas de fichier <==== ATTENTION Task: {43021976-2642-4689-B26E-59488A3CAB38} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {4AD3F071-A73A-43E4-9F0E-42426759FC31} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {57A87967-34C8-42AC-868B-133B025AA409} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {9B93F371-9882-4E79-A649-F457E64620E7} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {B1631846-F722-4479-9E5A-32BA4645575F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {B20D8A53-CFE1-4F1F-87C9-9B125E56F5F6} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {E43D14D6-4A53-4C45-8BF4-1B66EAEF48E6} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {FA0E10F3-FE14-4D29-853E-8BC17A2C20D7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {FE60CA3B-6D62-40AB-968A-821936EA4A28} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {CDF52D9B-68E2-4B67-90AE-66F3C101E6A9} - System32\Tasks\{075B5E3C-4850-41F8-9AB1-E178C8462A90} => C:\Windows\System32\pcalua.exe [118784 2024-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Yves\Downloads\Plug-in_messagerie_vocale_888.exe -d C:\Users\Yves\Downloads Task: {2319DA52-5FEA-4759-BDF3-2BD407E43D61} - System32\Tasks\{0CB0FB65-A0A3-4BDE-8E5D-497D4409E608} => C:\Windows\System32\pcalua.exe [118784 2024-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\Yves\AppData\Local\Temp\Temp1_PalmDesktopWin414e.zip\setup.exe Task: {FD564F37-A767-4A5E-9491-0C900B38C647} - System32\Tasks\2BrightSparks\SyncBackFree\YVES-PC-Yves\SyncBackFree Yves => C:\Program Files (x86)\2BrightSparks\SyncBackFree\SyncBackFree.exe [70973360 2019-11-11] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.) -> C:\Program Files (x86)\2BrightSparks\SyncBackFree\-m "Yves" Task: {BC6B6AF9-4A21-4238-B737-04D933620864} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {3E02F248-A56A-4879-9FBD-AB1EC8194F16} - System32\Tasks\AdobeAAMUpdater-1.0-EUROPE-v-niquilyves => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {04A19D15-758B-4535-AE96-A0CCBA7AA9E7} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-yves.niquil@club-internet.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {7FF09761-B1DC-4DC1-8CB1-39334D9015C0} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-yves.niquil@hotmail.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {32F67835-445F-44AB-ADF0-E9CE38B90E4B} - System32\Tasks\AdobeAAMUpdater-1.0-REDMOND-v-yniquil => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {CCE28325-1FE6-4D46-B77B-77A684402C45} - System32\Tasks\AdobeAAMUpdater-1.0-Yves-PC-Yves => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [497648 2010-07-29] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {218A49A9-C925-4230-8A50-E96E36E07C6D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe -task (Pas de fichier) Task: {E37C4817-5E9F-4B7E-9700-2F1808E4D6DA} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [2110000 2019-04-22] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {20B1A054-6243-484E-8E0F-D241F634358A} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1467752 2019-06-21] (ASUSTeK Computer Inc. -> ) Task: {E7E15CA4-3C0E-450A-BBF0-5A27F9AA9388} - System32\Tasks\ASUS\ASUS File Transfer Server Launcher => C:\Program Files (x86)\ASUS\AI Suite III\File Transfer\Wi-Fi GO! AssistTool\File Transfer Server Launcher.exe [1898480 2017-09-19] (ASUSTeK Computer Inc. -> TODO: ) Task: {5235536A-E947-4DA1-A321-A26F818E3E4E} - System32\Tasks\ASUS\ASUS RegRun Loader => C:\Program Files (x86)\ASUS\AASP\1.01.02\AsLoader.exe [803968 2009-12-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {DA0D5EC1-3918-40B4-88B4-759CD49C31C4} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUSUpdate\UpdateChecker\UpdateChecker.exe [121472 2009-12-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {8B0CFD01-5E51-4339-9FFF-FAA45A8CE62A} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1509424 2019-06-14] (ASUSTeK Computer Inc. -> ) Task: {EF91EAD8-8ED5-4037-95FE-A6581A141F22} - System32\Tasks\ASUS\Gpu Boost Driver => C:\Program Files\ASUS\GPU Boost Driver\GpuBoostServer.exe [1135232 2010-02-10] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {A9276573-7119-451A-892C-8D0343E0EB41} - System32\Tasks\ASUS\GpuFanHelper => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\GpuFanHelper.exe [4329008 2019-05-22] (ASUSTeK Computer Inc. -> TODO: ) Task: {563B4ED8-7B1E-4DA0-958B-6508F17D939E} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [32768 2009-03-30] () [Fichier non signé] Task: {76CAEC79-1E4A-4820-AFA8-38FA5D6481AD} - System32\Tasks\ASUS\TurboVHelp => C:\Program Files\ASUS\TurboV EVO\TurboVHELP.exe [1060992 2010-01-19] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {2CC3DDE4-3096-44D9-893D-C0D5086D601C} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2960216 2024-08-19] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {E9ABA938-8299-492C-A5F0-50540473E8C5} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2960216 2024-08-19] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {63D91D71-9ABA-43A6-A842-49747BE1E47B} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4979096 2024-03-19] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\A (l'élément de données a 70 caractères en plus). Task: {1516A006-CE4D-44E6-9A19-0A3DB053B1F2} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [7786904 2024-03-14] (Avast Software s.r.o. -> Avast Software) Task: {B9657ADA-D48C-4771-862E-089DCCDF9B66} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [5173032 2024-09-11] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {6615116B-D07F-4FC5-B6AC-3880D68836DF} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe -> C:\Program Files\Common Files\AV\avast! Antivirus\/backup /iavs Task: {2303916C-B4CA-41D3-8D99-73A6AEBE8263} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software) Task: {4F0B6756-F6A6-46BE-9CA9-5533FDBEDCA8} - System32\Tasks\AvastBrowserProtectS-1-5-21-2291361548-2016861130-3130650149-1000 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1690008 2024-04-23] (Avast Software s.r.o. -> Gen Digital Inc.) Task: {F1D04C50-A726-4B32-8E0A-5D5285546702} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) Task: {6CCF306C-48EF-4C0F-A084-AC6D9596B847} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) Task: {C792FD1C-E2B8-4B83-9B0B-2F4B25BCA65C} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [302968 2024-04-24] (Now.gg, INC -> BlueStack Systems, Inc.) Task: {7DD0A64B-4735-45FF-A8EE-E9F40AF09AA1} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{82053B8A-B8F4-4348-876B-FE359344D967} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-31] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {700F560A-8CC7-458C-9C2B-D2849F7FCF75} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{84EFF17C-DDE6-405F-AEF0-CE5FAE1C2463} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-31] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {5DF9EBA4-0B1A-4EBD-A88F-130954608240} - System32\Tasks\CLARUS_DRIVE_MANAGER\Clarus_Drive_Manager => C:\Program Files (x86)\Clarus\Samsung Drive Manager\Drive Manager.exe [8135744 2013-12-18] (Clarus, Inc. -> Clarus, Inc.) Task: {9234A3FA-D125-4AEE-8300-F35403779FB9} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) Task: {841FC890-D012-4E0C-A385-79DCBD4D0DA0} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) Task: {F504E74C-35C0-421D-B411-A27D3990B1F1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{EABE635C-F350-4774-99EC-A3430CF265FF} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC) Task: {66E8AD75-F15B-4857-82D4-64B248A6A023} - System32\Tasks\HP AR Program Upload - 02e7b196d6644dbd8ef7ff7f1ef3c55f6ccdfa18757d41c68995c1dea1671a27 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {27F9D342-066B-4AE6-A117-AD2F5222BBB1} - System32\Tasks\HP AR Program Upload - 2e44796d4196458994de464b091c9bce1ec6b34acadf4c29be825d2dd60fcfe4 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {5D7B1BBE-184E-4DF6-A6C1-20762451ED6E} - System32\Tasks\HP AR Program Upload - 5eec7d2ab7dc4377b6cbd3f61d6447f785564245aee843dbbfd04c3d80f8c8e6 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {6C691FCD-2B51-4B06-B1C1-7640A92E2740} - System32\Tasks\HP AR Program Upload - 611fc2320f574b6182a7c201247fe9b625a12377b6224b52a162bc1842d82e68 => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {997D4A59-FFE5-49D3-B905-23DE3254E295} - System32\Tasks\HP AR Program Upload - 7807065ea22b496a92723e8e76ebb6e27f7faa8b5b4143ef85c0230532bbb68e => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {20EA1605-E543-4E80-BF60-B34E778E4502} - System32\Tasks\HP AR Program Upload - f417a592ea0943c3b3d86c41fe26e772c4a4d25cecf54845831b9b444dda826d => C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPRewards.exe [3513960 2012-10-17] (Hewlett Packard -> TODO: ) Task: {2A76CC35-03CB-4D51-8F9B-BBDC7752B674} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Pas de fichier) Task: {9A819AB0-98B5-44F2-9ACF-267C791D26C7} - System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-2291361548-2016861130-3130650149-1000 => C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_2150.23.211.0_x64__8xx8rvfyw5nnt\app\MessengerHelper.exe [2192632 2024-09-14] (6E08453F-9BA7-4311-999C-D22FBA2FB1B8 -> Meta Platforms, Inc.) Task: {064F0C57-3EC4-47EF-AC72-C77DC2CFE11F} - System32\Tasks\Microsoft\Configuration Manager\Configuration Manager Health Evaluation => C:\Windows\CCM\CcmEval.exe [5617080 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) Task: {C43B5D08-6173-4469-968D-572103AB8292} - System32\Tasks\Microsoft\Configuration Manager\Configuration Manager Idle Detection => {4ca7a766-13d8-4652-8016-b01a03117903} Task: {151B9E76-2267-403B-BE8E-4AF4D769D443} - System32\Tasks\Microsoft\Configuration Manager\Configuration Manager Passport for Work Certificate Enrollment Task => C:\Windows\System32\wbem\WMIC.exe [471040 2023-12-13] (Microsoft Windows -> Microsoft Corporation) -> /NAMESPACE:\\root\ccm\dcm path SMS_DesiredConfiguration CALL EvaluatePassportCertProfiles /NOINTERACTIVE Task: {2D86DBA1-1E82-45FD-BBF2-920940832ABE} - System32\Tasks\Microsoft\Intune\Intune Management Extension Health Evaluation => C:\Program Files (x86)\Microsoft Intune Management Extension\ClientHealthEval.exe [50728 2024-09-11] (Microsoft Corporation -> Microsoft Corporation) Task: {098B3824-BFF9-46AC-8365-B15169A38AB5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617456 2024-09-12] (Microsoft Corporation -> Microsoft Corporation) Task: {BE03B805-AF05-42BE-9E6F-B2D73698E9A2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617456 2024-09-12] (Microsoft Corporation -> Microsoft Corporation) Task: {2D86EEA8-546C-4352-926E-2C21691ED1A8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-09-14] (Microsoft Corporation -> Microsoft Corporation) Task: {3442153E-0BEF-4694-A624-730D81E2F409} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-09-14] (Microsoft Corporation -> Microsoft Corporation) Task: {F4AA6EFF-FFCF-45D9-B072-20CC5A8BD7D6} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187328 2024-09-14] (Microsoft Corporation -> Microsoft Corporation) Task: {08C164F9-669A-4843-A648-53F14ECE92DC} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4465608 2024-09-03] (Microsoft Corporation -> Microsoft Corporation) Task: {59365A2F-4380-494D-B588-DB85191A2C9A} - System32\Tasks\Microsoft\Remote Help\Remote Help Automatic Updates => C:\Program Files\Remote Help\RemoteHelpUpdater.exe [38832 2024-06-18] (Microsoft Corporation -> Microsoft Corporation) Task: {61900055-C168-4431-B2DD-8231A0449667} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {65484B34-FC32-4061-BCF7-2E732F0D103B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Login Schedule created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {7C44A131-06C0-4417-811E-A8D1B8A9229B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {3DE9619F-99BD-415E-A081-4D1DBE9D04FE} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {EDD4250B-9CDC-442A-9DB8-568798DBA526} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {19E6F603-46AC-427B-BF3B-1C06CEDDAF9E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {ECAAA5AE-BEED-49DF-84DF-3F7FFA39104A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {24D395C2-1D69-4C98-A17C-B3C0784B992B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {4AA3272E-7E1D-4801-903B-AF9F2A4CA723} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {F721E4CE-309F-4291-9330-7704C663C58A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {2B0654FA-D2F8-43F2-A302-9C7DD71E5106} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {1F055D2B-BF9A-4AEA-A2C3-BFFB22DC0F57} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {1DB38FB2-37F7-464F-BD41-0149B5D305C5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [479232 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {F04C8946-9B80-4866-9094-CB4464A55DD6} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [479232 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {1586EE27-9000-4A80-BD04-DC589F45FF80} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {AF300D86-FCC2-4732-9698-08B5B7DCC95E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\763101AE-9D96-406D-A442-3356991EA7DD\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {CDC35A88-6E19-4FB5-988B-3347AC3A2834} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Login Schedule created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {3C49D78C-A7C1-4EB7-AEE4-BCA0652E431D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {7DDEA0CE-E4A1-4B20-8624-52AD38A25E96} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {89C4229F-7C9B-4E2F-BAEF-A7C595D641A2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {BEC56443-6BDE-406F-8417-66ACCA582103} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {9DA49133-FD32-452F-A185-C2EE3393E85D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {6293501D-EEF0-4C8F-9976-35290220D783} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {BEF40EBF-CB2B-4288-AC26-B7AAA6168CEA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {AB41A986-30E8-44C1-80A0-FACAD9CCAFBD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {622A56D0-EBA0-4F28-B75F-BD83D85F7BF8} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {A40DCBD1-8F24-4E8E-83FF-6F58E4633443} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {FF0EB63F-220B-479E-BCF0-9735405BA40D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [479232 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {D9D83C00-C32E-44BF-84EB-83C0639EBFCE} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [479232 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {AB95CAFB-3066-4F6B-BB61-E35BE6A76887} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {931FA9D0-724A-4B24-BE96-944A6B693447} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\E4F14E4B-B919-4D97-9E51-96A88D2FC63B\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {0BC9913F-11F2-4176-B0A7-5E3836DADBCA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\VirtulizationBasedIsolation\Virtualization based Isolation master policy change => C:\WINDOWS\system32\hvsievaluator.exe [194016 2024-06-12] (Microsoft Windows -> Microsoft Corporation) Task: {34296E7D-ACFC-4B4C-93ED-2325DE9D25DA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmtNonCritical\25DF3DF7-ED1A-449A-ADCF-3E117C6C4A3C\Queued Schedule created for queued alerts => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {C5E6D77F-CE02-465C-BCA6-F3DF0ED298FA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmtNonCritical\763101AE-9D96-406D-A442-3356991EA7DD\Queued Schedule created for queued alerts => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {137EED6C-7703-43F2-A22F-CC169026098C} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Pas de fichier) Task: {0D14AA7E-E9DC-4C3E-9FF9-18FF9EDFAF8C} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Pas de fichier) Task: {3F00C55F-13F3-4A81-A8F1-9D80166CCE0F} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Pas de fichier) Task: {A7290575-D4F0-4F1E-910E-6095B09269FB} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe /DRMInit (Pas de fichier) Task: {06D29E80-A0F4-4B5C-81EE-39AC50A6BA54} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Pas de fichier) Task: {37783BA8-DD98-4DFF-801E-87F9AC439A3F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate $(Arg0) (Pas de fichier) Task: {3AFFA546-AD83-482B-A9D3-FEA7B903FB3A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => %SystemRoot%\ehome\mcupdate -crl -hms -pscn 15 (Pas de fichier) Task: {86AF0547-66DD-4EC9-8110-68ECCDA05FF7} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -MediaCenterRecoveryTask (Pas de fichier) Task: {A15BD5AE-D085-46B8-9F61-D15504644D17} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Pas de fichier) Task: {E734FC91-30D0-49DF-BD29-B5FCF16F7F2D} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe /OCURActivate (Pas de fichier) Task: {CC8EF2C6-440B-4CF3-A103-96EAF713D600} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Pas de fichier) Task: {9281A1D2-E46F-4874-A6B7-CCB1E0A6FA37} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe /PBDADiscovery (Pas de fichier) Task: {409274A2-9D75-40BB-8C3F-016CCFA1259F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Pas de fichier) Task: {455352A8-B127-4B24-9C1F-5B09C49612DE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Pas de fichier) Task: {7FC7CD4B-16CD-4A09-8B46-08BCE7243A67} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe -pscn 0 (Pas de fichier) Task: {CAAAC192-B918-4955-AC6C-EBD6017BD9FB} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -PvrRecoveryTask (Pas de fichier) Task: {268C837B-F931-4B39-970D-10326D3BD105} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe -PvrSchedule (Pas de fichier) Task: {ECDE666C-61A3-43CF-B7B9-CDE69FF4DD64} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec /RestartRecording (Pas de fichier) Task: {79F9C6B7-E25C-4C1A-A35F-8BD0CD7558F7} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Pas de fichier) Task: {0D42D76C-7A37-4F77-B0AA-F34088A8FE94} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe /DoReindexSearchRoot (Pas de fichier) Task: {80D40DB9-C1F6-4C2A-88EB-50969234FA7C} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe -SqlLiteRecoveryTask (Pas de fichier) Task: {35CC7C3B-631C-4C67-870B-09D97A1A0A3B} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => %SystemRoot%\ehome\ehrec /StartRecording (Pas de fichier) Task: {4A17ABF6-2E5E-4696-A144-305C4F815D8A} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Pas de fichier) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {594F6888-2F30-4DD8-A245-15D3145813A6} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {7E619D2E-37AE-4CED-890C-5EE2DF38208D} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {7C78563B-81AB-4D9E-B0A1-880220DDBA1A} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {3B08FFAD-A192-49E1-90E7-3E008D34FFC0} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {062C47BD-0B2A-4CA8-AB90-D124C41D208B} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {5CDB7FFB-D6D4-4E96-BE67-6DB3714AB96C} - System32\Tasks\Microsoft\Windows\UhsTasks\ExpediteCleanup => C:\Program Files\Microsoft Update Health Tools\ExpediteUpdater.exe [349656 2023-09-25] (Microsoft Windows -> Microsoft Corporation) Task: {BEF635D1-C3A2-45BB-95EE-F7BEBD06504A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval => %systemroot%\system32\MusNotification.exe Display (Pas de fichier) Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe RebootDialog (Pas de fichier) Task: {97A80F1C-1E26-46F1-9A20-34A94500A300} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC ForcedReboot (Pas de fichier) Task: {D709515F-BA1D-4A2F-9BC4-813704BA4C4D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery ForcedReboot (Pas de fichier) Task: {73CD86F6-E2CA-493E-9335-FB75C0B47ABE} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (Pas de fichier) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {0075D69D-FE10-4B6F-9042-981A49F4A3F4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EF6FC206-62AA-4711-AB7B-68ED2D4F87B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {600A46A5-587A-4CB4-AE2C-8A184CA6DE2F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {537AFEDF-DD00-454A-87E0-7A4E6FDA2330} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2495728 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {BBE6A995-0BC7-4112-9089-4A3528E187E8} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1841904 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {3E7CDA2E-D5F2-45D7-BDE2-4DA6050E87E9} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [1966320 2017-09-15] (Microsoft Corporation -> Microsoft) Task: {6E6EA53F-77FB-48E4-8F41-17D18EE1E87F} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\CEIP.exe [39152 2017-09-15] (Microsoft Corporation -> Microsoft) Task: {4ACD3CFE-FBAE-4A5A-A3EA-FF6A3C6F9BA5} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2495728 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {5BEDE284-0333-4D6F-B7CD-FFBAF2BA74D6} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1841904 2017-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {19CBEBA5-4718-42B8-BEFC-FA0233954579} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [606112 2024-03-04] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {AF8DEDE5-2C2F-4E99-AC71-163C57B11EDB} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {2AD435E4-5561-48C1-882D-4E7355BEAD86} - System32\Tasks\OneDrive Reporting Task-S-1-12-1-1861095930-1159029358-1885105328-2907093874 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {ACAC7E6D-0C51-4977-BAE6-DCB08B8D2734} - System32\Tasks\OneDrive Reporting Task-S-1-12-1-227014197-1332383969-180552885-3027138722 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {DA893030-C854-4046-AC87-C97505784303} - System32\Tasks\OneDrive Reporting Task-S-1-12-1-3823366177-1111767493-887005616-1606936512 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {A99BD4C8-CD84-441D-8FF8-7A297455BB91} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1000 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {FD2331DA-33F4-4104-81CD-2C5C56525F57} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1139 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {94267B2B-5F9B-4E6E-9E23-1057EB920250} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1141 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) Task: {5CF80A34-8504-48A3-8A06-3E2BC52DD5B2} - System32\Tasks\Opera scheduled assistant Autoupdate 1642463007 => C:\Users\Yves\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Yves\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {3F9603D5-0336-42A9-8BB8-CA8948DF2CBE} - System32\Tasks\Opera scheduled Autoupdate 1642463000 => C:\Users\Yves\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Pas de fichier) Task: {E186D610-19C4-4F12-BC22-95F95AE7D3E1} - System32\Tasks\Optimize Push Notification Data File-S-1-12-1-3823366177-1111767493-887005616-1606936512 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [65536 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {41488B9B-2920-48BD-A2DB-95FE766BC299} - System32\Tasks\Programme de mise à jour en ligne de Adobe => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {6134A019-B9E3-45B9-B2BC-13E67969AB4F} - System32\Tasks\S-1-5-21-2291361548-2016861130-3130650149-1000\EnterpriseMgmt\25DF3DF7-ED1A-449A-ADCF-3E117C6C4A3C\Login Schedule created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [528384 2024-08-13] (Microsoft Windows -> Microsoft Corporation) Task: {903BA7CA-2CD1-4423-83F1-EE14A2735865} - System32\Tasks\SensorFramework-LogonTask-{100ee514-48c8-f419-6760-6fb8cb2767cd} => C:\Program Files (x86)\Microsoft Intune Management Extension\SensorLogonTask.exe [33224 2024-05-23] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: 54.204.28.26 dlgdjipfpeahlpmmjcclaeeodpdmjipc Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4bd321a1-7d50-40a7-8319-64b452cbf28e}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{5a954778-a4d9-4255-bc81-75c84d563e5b}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{5a954778-a4d9-4255-bc81-75c84d563e5b}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{dd374744-c964-498e-8293-431cd7e41d0d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{fa91459c-68c2-472c-ba23-b6697e433cce}: [DhcpNameServer] 192.168.1.1 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION DnsPolicyConfig: [{0A0FD620-52CA-43CC-AA1E-8742F7383F89}] => GenericDNSServers=13.107.244.1;150.171.0.1;150.171.254.1;208.84.4.1;192.168.1.1;1.1.1.1 DnsPolicyConfig: [{DE9F0406-60D9-48D0-9BE2-2D43907F442D}] => GenericDNSServers=13.107.244.2;150.171.0.2;150.171.254.2;208.84.4.2;192.168.1.1;1.1.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Default [2024-09-16] Edge Extension: (Google Docs hors connexion) - C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-13] Edge Extension: (Edge relevant text changes) - C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge Profile: C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2022-01-10] Edge Profile: C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2024-09-06] Edge Extension: (Google Docs hors connexion) - C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-05] Edge Extension: (Edge relevant text changes) - C:\Users\Yves\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] FireFox: ======== FF DefaultProfile: 1d9gf01h.default FF DefaultProfile: uvsi7cu1.default FF ProfilePath: C:\Users\Yves\AppData\Roaming\TomTom\HOME\Profiles\61sizs0d.default [2019-12-07] FF Extension: (Pas de nom) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [non trouvé(e)] FF ProfilePath: C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default [2024-09-02] FF Homepage: Mozilla\SeaMonkey\Profiles\1d9gf01h.default -> hxxp://www.google.fr FF Extension: (English United States Dictionary) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\@unitedstatesenglishdictionary.xpi [2019-11-15] [non signé] FF Extension: (DOM Inspector) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\inspector@mozilla.org [2016-05-01] [] FF Extension: (ChatZilla Français Language Pack) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\langpack-fr@chatzilla.mozilla.org.xpi [2013-02-09] [] [non signé] FF Extension: (JavaScript Debugger Français Language Pack) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\langpack-fr@venkman.mozilla.org.xpi [2013-02-08] [] [non signé] FF Extension: (ChatZilla) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2} [2016-11-14] [] FF Extension: (Adblock Plus) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-24] [] FF Extension: (JavaScript Debugger) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\{f13b157f-b174-47e7-a34d-4815ddfdfeb8}.xpi [2016-05-01] [] FF Extension: (YouTube Flash Video Player) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\1d9gf01h.default\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2017-10-02] [] FF ProfilePath: C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\n7uecmec.Secours [2024-09-02] FF Extension: (DOM Inspector) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\n7uecmec.Secours\Extensions\inspector@mozilla.org.xpi [2016-01-31] [] [non signé] FF Extension: (ChatZilla) - C:\Users\Yves\AppData\Roaming\Mozilla\SeaMonkey\Profiles\n7uecmec.Secours\Extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}.xpi [2016-01-31] [] [non signé] FF ProfilePath: C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default [2024-09-09] FF Homepage: Mozilla\Firefox\Profiles\uvsi7cu1.default -> hxxps://www.msn.com/?pc=SK216&ocid=SK216DHP&osmkt=fr-fr|hxxps://www.google.com/?bcutc=sp-006 FF NewTab: Mozilla\Firefox\Profiles\uvsi7cu1.default -> about:newtab FF Extension: (Bing Search Engine) - C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\Extensions\bingsearchweb_uniwin@microsoft.com.xpi [2018-07-07] [UpdateUrl:hxxps://browserdefaults.azurewebsites.net/FirefoxExtn/updateextension.json] FF Extension: (Avast Passwords) - C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2019-05-25] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json] FF Extension: (Avast SafePrice | Comparaison, offres, coupons) - C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\Extensions\sp@avast.com.xpi [2019-02-10] FF Extension: (Urlbar Top Sites Experiment) - C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\Extensions\urlbar-top-sites-experiment@shield.mozilla.org.xpi [2019-09-18] FF SearchPlugin: C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\searchplugins\bing-.xml [2018-04-17] FF SearchPlugin: C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\searchplugins\google-avast.xml [2017-03-08] FF SearchPlugin: C:\Users\Yves\AppData\Roaming\Mozilla\Firefox\Profiles\uvsi7cu1.default\searchplugins\orange.xml [2014-10-08] FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25] [] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox FF Extension: (Freemake Video Converter Plugin) - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-04-28] [] [non signé] FF HKLM-x32\...\Firefox\Extensions: [7go@7go.com] - C:\Users\Yves\AppData\Roaming\Mozilla\Extensions\7go@7go.com => non trouvé(e) FF HKLM-x32\...\Firefox\Extensions: [fmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com => non trouvé(e) FF HKLM-x32\...\Firefox\Extensions: [ytfmdownloader@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com FF Extension: (Freemake Youtube Download Button) - C:\Program Files (x86)\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com [2014-03-24] [] [non signé] FF HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\...\Firefox\Extensions: [7go@7go.com] - C:\Users\Yves\AppData\Roaming\Mozilla\Extensions\7go@7go.com => non trouvé(e) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-03-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-09-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @canon.com/MycameraPlugin -> C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll [2008-10-15] (CANON INC.) [Fichier non signé] FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-08-26] (Google Inc -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\WINDOWS\SysWOW64\npDeployJava1.dll [2020-08-06] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-03-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=6.0.12.450 -> C:\Program Files (x86)\Real Alternative\browser\plugins\nppl3260.dll [2010-02-15] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files (x86)\Real Alternative\browser\plugins\nprpjplug.dll [2010-02-15] (RealNetworks, Inc.) [Fichier non signé] FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.20 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin HKU\S-1-5-21-2291361548-2016861130-3130650149-1000: SkypeForBusinessPlugin-15.8 -> C:\Users\Yves\AppData\Local\Microsoft\SkypeForBusinessPlugin\15.8.20020.400\npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-2291361548-2016861130-3130650149-1000: SkypeForBusinessPlugin64-15.8 -> C:\Users\Yves\AppData\Local\Microsoft\SkypeForBusinessPlugin\15.8.20020.400\npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Users\Yves\AppData\Roaming\mozilla\plugins\npatgpc.dll [2016-01-05] Chrome: ======= CHR Profile: C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default [2024-09-16] CHR Notifications: Default -> hxxps://www.castorama.fr; hxxps://www.u-buy.be CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-09-15] CHR Extension: (Extension Microsoft Purview) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\echcggldkblhodogklpincgchnpgcdco [2024-01-26] CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-09-05] CHR Extension: (Google Docs hors connexion) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-03] CHR Extension: (Video Downloader Plus) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkdmdpdhfaamhgaojpelccmeehpfljgf [2024-04-04] CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-08-21] CHR Extension: (Video DownloadHelper) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2024-09-05] CHR Extension: (Téléchargeur de vidéo) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcbiamenoghegpghidohnfegcepamdm [2024-01-29] CHR Extension: (Keyboard Shortcuts) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\lplcmnhgijkkmflbmhabnccgelffpnog [2024-03-04] CHR Extension: (Video Speed Controller) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffaoalbilbmmfgbnbgppjihopabppdk [2024-05-24] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-06] CHR Extension: (Video Downloader for FaceBook) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\ododgdnipimbpbfioijikckkgkbkginh [2024-09-13] CHR Extension: (Qui m'a supprimé ?) - C:\Users\Yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\olljnkilmblncgcghhaodkpdcnokhpah [2024-08-22] CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] CHR HKU\.DEFAULT\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-12-1-1861095930-1159029358-1885105328-2907093874\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-2291361548-2016861130-3130650149-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] Opera: ======= OPR DefaultProfile: Default Brave: ======= BRA Profile: C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-10-31] BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-10-31] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-31] BRA Extension: (Brave NTP background images) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-10-31] BRA Extension: (Wallet Data Files Updater) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-10-31] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-31] BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-10-31] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2022-10-31] BRA Extension: (Brave NTP sponsored images) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2022-10-31] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Yves\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-31] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeActiveFileMonitor9.0; C:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [169408 2010-09-30] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-07-31] (Adobe Inc. -> Adobe Inc.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.00.38\atkexComSvc.exe [440368 2019-04-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [96896 2009-12-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.77\AsusFanControlService.exe [2061872 2019-05-14] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7248680 2024-09-11] (Avast Software s.r.o. -> AVAST Software) S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [771880 2024-09-11] (Avast Software s.r.o. -> Gen Digital Inc.) S2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [1217832 2024-09-11] (Avast Software s.r.o. -> Gen Digital Inc.) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software) S4 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\127.0.26097.121\elevation_service.exe [1651832 2024-08-19] (Avast Software s.r.o. -> Gen Digital Inc.) S2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-31] (Avast Software s.r.o. -> AVAST Software) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-31] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\128.1.69.168\elevation_service.exe [2659864 2024-09-11] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2022-10-31] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BstHdAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Service.exe [441880 2016-07-04] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\Bluestacks\HD-LogRotatorService.exe [421400 2016-07-04] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\Bluestacks\HD-Plus-Service.exe [458264 2016-07-04] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) R2 CcmExec; C:\WINDOWS\CCM\CcmExec.exe [2577440 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) R2 cfbackd; C:\Program Files\CleverFiles\Disk Drill\cfbackd.w32.exe [309128 2023-03-23] (CLEVERFILES INC. -> CleverFiles) S4 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [18727320 2024-03-19] (Avast Software s.r.o. -> AVAST Software) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13861048 2024-09-12] (Microsoft Corporation -> Microsoft Corporation) S4 CmRcService; C:\WINDOWS\CCM\RemCtrl\CmRcService.exe [3739072 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-11] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2024-09-09] (Dropbox, Inc -> Dropbox, Inc.) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3730288 2018-10-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\207.4.5821\DropboxElevationService.exe [1659288 2024-09-09] (Dropbox, Inc -> Dropbox, Inc.) R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.180.0905.0001\FileSyncHelper.exe [3522976 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [104448 2016-12-08] (Freemake) [Fichier non signé] S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [344288 2015-03-20] (FUTUREMARK INC -> Futuremark) S3 GoogleDesktopManager-051210-111108; C:\Program Files (x86)\Google\Google Desktop Search\GoogleDesktop.exe [30192 2013-05-04] (Google Inc -> Google) R2 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [889240 2023-04-14] (Glarysoft Ltd -> Glarysoft Ltd) S3 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [76696 2023-04-14] (Glarysoft Ltd -> Glarysoft Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-08-06] (HP Inc. -> HP Inc.) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Fichier non signé] R2 IntuneManagementExtension; C:\Program Files (x86)\Microsoft Intune Management Extension\Microsoft.Management.Services.IntuneWindowsAgent.exe [237096 2024-09-11] (Microsoft Corporation -> Microsoft Corporation) R2 InventoryService; C:\Program Files\Microsoft Device Inventory Agent\InventoryService\InventoryService.exe [15416 2024-08-16] (Microsoft Corporation -> Microsoft Corporation) R2 LogiTuneUpdaterService; C:\Program Files (x86)\Logitech\LogiTune\LogiTuneUpdater.exe [7005584 2022-12-09] (Logitech Inc -> Logitech, Inc.) R3 lpasvc; C:\Program Files\Microsoft Policy Platform\policyHost.exe [50360 2016-09-18] (Microsoft Corporation -> Microsoft Corporation) S3 lppsvc; C:\Program Files\Microsoft Policy Platform\policyHost.exe [50360 2016-09-18] (Microsoft Corporation -> Microsoft Corporation) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe [1431160 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MDDlpSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDlpService.exe [741128 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MEMEPMSvc; C:\Program Files\Microsoft EPM Agent\EPMService\EpmService.exe [275000 2024-08-30] (Microsoft Corporation -> Microsoft Corporation) R2 MEmuSVC; D:\Program Files\Microvirt\MEmu\MemuService.exe [85304 2019-09-12] (Shanghai Microvirt Software Technology Co., Ltd. -> ) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [46416 2022-05-07] (Microsoft Windows -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.180.0905.0001\OneDriveUpdaterService.exe [3864496 2024-09-13] (Microsoft Corporation -> Microsoft Corporation) S3 PrintNotify; C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll [4075520 2024-09-11] (Microsoft Corporation) [Fichier non signé] R2 Remote Help; C:\Program Files\Remote Help\RhService.exe [629280 2024-06-18] (Microsoft Corporation -> Microsoft Corporation) R2 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522096 2024-08-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 smstsmgr; C:\WINDOWS\CCM\TSManager.exe [9673160 2024-05-02] (Microsoft Corporation -> Microsoft Corporation) R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Miroslav Topolar -> Mister Group) R2 SZDrvSvc; C:\Program Files (x86)\Clarus\Samsung Drive Manager\SZDrvSvc.exe [18432 2013-12-18] (Clarus, Inc.) [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe [3199656 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe [133704 2024-09-10] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2009-08-04] (ASUSTeK Computer Inc. -> ) R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [25728 2019-06-14] (ASUSTeK Computer Inc. -> ) R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> ) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [20536 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [229832 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [381400 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [293944 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [84536 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [27744 2024-07-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [28616 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [273456 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [549968 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [97736 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [69176 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [949816 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1198648 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [203832 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [306744 2024-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.) R3 AX88179A; C:\WINDOWS\System32\DriverStore\FileRepository\axusbeth.inf_amd64_00da554e0fe424fd\AxUsbEth.sys [168048 2024-06-11] (WDKTestCert asix,133111579530933026 -> ASIX Electronics Corp.) R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [394176 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Bluestack System Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [532480 2023-01-27] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2023-01-27] (Microsoft Corporation) [Fichier non signé] S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Fichier non signé] R1 dfmirage; C:\WINDOWS\System32\drivers\dfmirage.sys [36432 2011-04-06] (DemoForge LLC -> DemoForge, LLC) R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [386552 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Dokan Project) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2020-08-06] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2020-08-06] (Disc Soft Ltd -> Disc Soft Ltd) R1 Eve; C:\WINDOWS\system32\DRIVERS\eve.sys [41304 2014-01-23] (VSO-SOFTWARE -> ) R2 googledrivefs31626; C:\Program Files\Google\Drive File Stream\Drivers\31626\googledrivefs31626.sys [384096 2024-07-16] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [45056 2023-04-26] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd) S3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [34064 2019-03-21] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R3 mdf16; C:\Program Files (x86)\Clarus\Samsung Drive Manager\mdf16.sys [20400 2012-06-21] (Clarus, Inc. -> ) R2 MEMEPMAgent; C:\WINDOWS\System32\drivers\MEMEPMAgent.sys [107456 2024-08-14] (Microsoft Corporation -> Microsoft Corporation) R1 MEmuDrv; C:\WINDOWS\system32\DRIVERS\MEmuDrv.sys [320360 2021-01-04] (Shanghai Microvirt Software Technology Co., Ltd. -> Maiwei Corporation) R3 mvd23; C:\Program Files (x86)\Clarus\Samsung Drive Manager\mvd23.sys [99248 2012-06-21] (Clarus, Inc. -> ) S3 NPF; C:\WINDOWS\System32\drivers\NPF.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.) R3 prepdrvr; C:\WINDOWS\system32\DRIVERS\prepdrv.sys [31696 2024-05-02] (Microsoft Windows Hardware Compatibility Publisher -> Microsoft Corporation) R3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek) R3 t6sta; C:\WINDOWS\System32\Drivers\t6sta.sys [168776 2024-08-06] (MAGIC CONTROL TECHNOLOGY CORPORATION -> Magic Control Technology Corporation) S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2017-10-10] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 Trufos; C:\WINDOWS\System32\DRIVERS\Trufos.sys [611728 2020-08-06] (Bitdefender SRL -> Bitdefender) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22080 2024-09-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [14464 2011-02-16] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602392 2024-09-10] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-09-10] (Microsoft Windows -> Microsoft Corporation) R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [340880 2022-11-05] (Nox Limited -> Nox Limited Corporation) S1 googledrivefs31357; \SystemRoot\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [X] U3 idsvc; pas de ImagePath S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-09-16 15:18 - 2024-09-16 15:27 - 000000000 ___HD C:\$SysReset 2024-09-16 14:51 - 2024-09-16 14:52 - 000098638 _____ C:\Users\Yves\Downloads\FRST.txt 2024-09-16 14:51 - 2024-09-16 14:51 - 000000000 ____D C:\Users\Yves\Downloads\FRST-OlderVersion 2024-09-16 14:37 - 2024-09-16 14:37 - 000883706 _____ C:\WINDOWS\system32\perfh00C.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000840746 _____ C:\WINDOWS\system32\perfh019.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000783072 _____ C:\WINDOWS\system32\perfh005.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000616616 _____ C:\WINDOWS\system32\perfh008.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000185232 _____ C:\WINDOWS\system32\perfc00C.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000184668 _____ C:\WINDOWS\system32\perfc019.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000178920 _____ C:\WINDOWS\system32\perfc005.dat 2024-09-16 14:37 - 2024-09-16 14:37 - 000116900 _____ C:\WINDOWS\system32\perfc008.dat 2024-09-16 11:17 - 2024-09-16 11:20 - 000161299 _____ C:\Users\Yves\Downloads\OLDAddition.txt 2024-09-16 11:13 - 2024-09-16 11:20 - 000128492 _____ C:\Users\Yves\Downloads\OLDFRST.txt 2024-09-16 11:12 - 2024-09-16 14:52 - 000000000 ____D C:\FRST 2024-09-16 11:11 - 2024-09-16 14:51 - 002397696 _____ (Farbar) C:\Users\Yves\Downloads\FRST64.exe 2024-09-16 00:07 - 2024-09-16 00:07 - 000000000 ____D C:\Users\Yves\AppData\Local\Clarus 2024-09-15 23:42 - 2024-09-15 23:44 - 000300290 _____ C:\WINDOWS\ntbtlog.txt 2024-09-15 23:42 - 2024-09-15 23:42 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2024-09-15 21:42 - 2024-09-15 21:42 - 000000178 ____C C:\Users\Yves\Desktop\Windows Defender bloque Avast... mais du coup je n'arrive pas à le - Communauté Microsoft.url 2024-09-15 21:12 - 2024-09-15 21:12 - 013485792 _____ (Gen Digital Inc.) C:\Users\Yves\Downloads\avastclear.exe 2024-09-15 11:12 - 2024-09-15 11:12 - 000249584 _____ (Gen Digital Inc.) C:\Users\Yves\Downloads\avast_antivirus_gratuit_installateur_en-ligne.exe 2024-09-15 11:09 - 2024-09-15 11:09 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-09-13 19:19 - 2024-09-13 19:19 - 061076219 _____ C:\Users\v-yniquil\Downloads\Programme 15 septembre.zip 2024-09-13 11:32 - 2024-09-13 11:32 - 002944797 _____ C:\Users\v-yniquil\Downloads\WhatsApp Video 2024-09-07 at 13.29.07.mp4 2024-09-13 09:56 - 2024-09-13 09:56 - 000137421 _____ C:\Users\v-yniquil\Downloads\459276271_863188618861582_2118875440263927537_n.mp4 2024-09-13 09:31 - 2024-09-15 11:05 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1141 2024-09-13 00:12 - 2024-09-13 00:12 - 000000000 ____D C:\Program Files\Microsoft Device Inventory Agent 2024-09-12 15:28 - 2024-09-12 15:28 - 000246006 _____ C:\Users\v-yniquil\Downloads\Bon de commande grand ménage .pdf 2024-09-11 22:13 - 2024-09-11 22:13 - 000002723 _____ C:\Users\v-yniquil\Downloads\file.enc 2024-09-11 22:13 - 2024-09-11 22:13 - 000002723 _____ C:\Users\v-yniquil\Downloads\file (1).enc 2024-09-11 20:51 - 2024-09-11 20:52 - 000949908 _____ C:\Users\v-yniquil\Downloads\RougeMatFacebook.mp4 2024-09-11 13:27 - 2024-09-11 13:27 - 006939337 _____ C:\Users\v-yniquil\Downloads\Pacte d’action pour les français.pdf 2024-09-11 07:37 - 2024-09-11 07:37 - 000000000 ____D C:\Program Files (x86)\InventoryAdaptor 2024-09-11 03:06 - 2024-09-11 03:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2024-09-11 02:34 - 2024-09-11 02:34 - 000315176 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe 2024-09-10 23:27 - 2024-09-10 23:28 - 000283490 _____ C:\Users\v-yniquil\Downloads\WhatsApp Image 2024-09-10 at 23.27.43.jpeg 2024-09-10 10:02 - 2024-09-10 10:02 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\PlaceholderTileLogoFolder 2024-09-10 10:00 - 2024-09-10 10:00 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Publishers 2024-09-10 09:57 - 2024-09-15 21:06 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Packages 2024-09-10 09:57 - 2024-09-10 09:57 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Software Center 2024-09-10 09:57 - 2024-09-10 09:57 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\GlarySoft 2024-09-10 09:57 - 2024-09-10 09:57 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\CrashDumps 2024-09-10 09:56 - 2024-09-10 10:00 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Windows 2024-09-10 09:56 - 2024-09-10 09:57 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\ConnectedDevicesPlatform 2024-09-10 09:56 - 2024-09-10 09:56 - 000000020 ___SH C:\Users\Yves-PC_WsiAccount_$\ntuser.ini 2024-09-10 09:56 - 2024-09-10 09:56 - 000000020 ___SH C:\Users\WsiAccount\ntuser.ini 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\Voisinage réseau 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\Voisinage d'impression 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\Modèles 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\Mes documents 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\Menu Démarrer 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\Yves-PC_WsiAccount_$\AppData\Local\Historique 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\Voisinage réseau 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\Voisinage d'impression 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\Modèles 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\Mes documents 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\Menu Démarrer 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 _SHDL C:\Users\WsiAccount\AppData\Local\Historique 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\SystemCertificates 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Protect 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Crypto 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Credentials 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ___HD C:\Users\Yves-PC_WsiAccount_$ 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Vault 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Spelling 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\VirtualStore 2024-09-10 09:56 - 2024-09-10 09:56 - 000000000 ____D C:\Users\WsiAccount 2024-09-10 09:56 - 2024-09-09 19:07 - 000002015 _____ C:\Users\Yves-PC_WsiAccount_$\Desktop\Google Slides.lnk 2024-09-10 09:56 - 2024-09-09 19:07 - 000002015 _____ C:\Users\Yves-PC_WsiAccount_$\Desktop\Google Sheets.lnk 2024-09-10 09:56 - 2024-09-09 19:07 - 000002015 _____ C:\Users\WsiAccount\Desktop\Google Slides.lnk 2024-09-10 09:56 - 2024-09-09 19:07 - 000002015 _____ C:\Users\WsiAccount\Desktop\Google Sheets.lnk 2024-09-10 09:56 - 2024-09-09 19:07 - 000002003 _____ C:\Users\Yves-PC_WsiAccount_$\Desktop\Google Docs.lnk 2024-09-10 09:56 - 2024-09-09 19:07 - 000002003 _____ C:\Users\WsiAccount\Desktop\Google Docs.lnk 2024-09-10 09:56 - 2024-01-16 17:04 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Local\Alertus Technologies 2024-09-10 09:56 - 2024-01-16 17:04 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Alertus Technologies 2024-09-10 09:56 - 2023-08-11 18:49 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Mozilla 2024-09-10 09:56 - 2023-08-11 18:49 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Local\Mozilla 2024-09-10 09:56 - 2023-08-11 18:49 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Mozilla 2024-09-10 09:56 - 2023-08-11 18:49 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Mozilla 2024-09-10 09:56 - 2023-01-28 02:26 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Microsoft\Network 2024-09-10 09:56 - 2023-01-28 02:26 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Network 2024-09-10 09:56 - 2023-01-27 20:27 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Microsoft\Windows 2024-09-10 09:56 - 2022-05-07 07:24 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Microsoft\Spelling 2024-09-10 09:56 - 2021-08-18 23:40 - 000000000 ___RD C:\Users\Yves-PC_WsiAccount_$\OneDrive 2024-09-10 09:56 - 2021-08-18 23:40 - 000000000 ___RD C:\Users\WsiAccount\OneDrive 2024-09-10 09:56 - 2020-10-29 16:48 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\ATI 2024-09-10 09:56 - 2020-10-29 16:48 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Local\ATI 2024-09-10 09:56 - 2020-10-29 16:48 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\ATI 2024-09-10 09:56 - 2020-10-29 16:48 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\ATI 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Media Center Programs 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Roaming\Macromedia 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Local\Microsoft Help 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\Yves-PC_WsiAccount_$\AppData\Local\Google 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Media Center Programs 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Macromedia 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Microsoft Help 2024-09-10 09:56 - 2016-10-01 23:07 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Google 2024-09-09 22:57 - 2024-09-09 22:57 - 000551297 _____ C:\Users\v-yniquil\Downloads\KlezmerDindons.mp4 2024-09-09 22:47 - 2024-09-09 22:47 - 000255130 _____ C:\Users\v-yniquil\Downloads\Facebook.mp4 2024-09-09 18:51 - 2024-09-09 18:51 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2024-09-08 19:21 - 2024-09-08 19:21 - 000082963 _____ C:\Users\Yves\Downloads\1724746308586.jpeg 2024-09-07 14:23 - 2024-09-07 14:23 - 002944797 _____ C:\Users\Yves\Downloads\WhatsApp Video 2024-09-07 at 13.29.07.mp4 2024-09-05 20:32 - 2024-09-05 20:32 - 002944797 _____ C:\Users\v-yniquil\Downloads\WhatsApp Video 2024-09-05 at 19.20.55.mp4 2024-09-05 16:09 - 2024-08-16 04:57 - 001303984 _____ (Magic Control Technology Corp.) C:\WINDOWS\system32\t6indisp.dll 2024-09-05 11:02 - 2024-09-05 11:12 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Winamp 2024-09-05 10:30 - 2024-09-05 10:30 - 004581304 _____ (Empire Security Services Inc) C:\Users\v-yniquil\Downloads\EzExtractSetup.exe 2024-09-04 12:37 - 2024-09-04 12:37 - 002439266 _____ C:\Users\v-yniquil\Downloads\4. Réacteur – physique du cœur - Rapport de sûreté.pdf 2024-09-04 12:37 - 2024-09-04 12:37 - 002439266 _____ C:\Users\v-yniquil\Downloads\4. Réacteur – physique du cœur - Rapport de sûreté (1).pdf 2024-09-04 09:57 - 2024-09-04 09:57 - 000000106 _____ C:\Users\v-yniquil\Desktop\Livres lus.url 2024-09-03 15:55 - 2024-09-03 15:56 - 045410687 _____ C:\Users\v-yniquil\Downloads\Les champignons - Les reconnaitre et les trouver.pdf 2024-09-03 15:55 - 2024-09-03 15:55 - 028515302 _____ C:\Users\v-yniquil\Downloads\Champignons comestibles - Artemis.pdf 2024-09-03 15:49 - 2024-08-06 01:21 - 000168776 _____ (Magic Control Technology Corporation) C:\WINDOWS\system32\Drivers\t6sta.sys 2024-09-02 16:14 - 2024-09-02 16:14 - 000000000 ____D C:\Program Files\Microsoft EPM Agent 2024-09-02 00:14 - 2024-09-02 00:14 - 000000077 ____C C:\Users\Yves\Desktop\WPF Puzzle GP7 - gp.worldpuzzle.org.url 2024-09-01 21:14 - 2024-09-01 21:59 - 2597127448 _____ C:\Users\Yves\Downloads\La Nuit Americaine (1973) FRENCH HDTV - 1080p x264 acc.Wawacity.work.mkv 2024-09-01 21:06 - 2024-09-01 22:30 - 3912977325 _____ C:\Users\Yves\Downloads\L.ecole.des.espions.2024.FRENCH.1080p.WEB.H264-FW-Wawacity.ING.mkv 2024-08-28 10:31 - 2024-08-28 10:31 - 000001706 _____ C:\Users\Public\Desktop\Recuva.lnk 2024-08-27 17:15 - 2024-08-27 17:15 - 000091791 _____ C:\Users\v-yniquil\Downloads\SIGN-011062-084129-CRA-202408 (1).pdf 2024-08-26 18:07 - 2024-08-26 18:07 - 000240396 _____ C:\Users\v-yniquil\Downloads\Document_Shiva_2638209.pdf 2024-08-26 16:48 - 2024-08-26 16:48 - 000259561 _____ C:\Users\v-yniquil\Downloads\Attestation_Fiscale_Shiva_2109998.pdf 2024-08-25 19:17 - 2024-08-25 19:17 - 012991649 _____ C:\Users\v-yniquil\Downloads\Maman(1) (1).zip 2024-08-25 18:20 - 2024-08-25 18:20 - 000200487 _____ C:\Users\v-yniquil\Downloads\Attestation NIQUIL.pdf 2024-08-22 16:41 - 2024-08-22 16:41 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\VoiceAccess 2024-08-22 14:24 - 2024-08-22 14:24 - 000400277 _____ C:\Users\v-yniquil\Downloads\VF2 Signalement HASSAN - 21.08.2024.pdf 2024-08-21 00:11 - 2024-08-21 00:11 - 003152078 _____ C:\Users\v-yniquil\Downloads\bulletin d'inscription.pdf 2024-08-20 22:18 - 2024-08-20 22:18 - 000091791 _____ C:\Users\v-yniquil\Downloads\SIGN-011062-084129-CRA-202408.pdf 2024-08-19 20:55 - 2024-08-19 20:55 - 000000000 ____D C:\Users\v-yniquil\Downloads\wetransfer_hitlergehenim4-0-avec-quelques-commentaires-7-pdf_2024-08-16_1032 2024-08-19 10:27 - 2024-08-19 10:36 - 468447643 _____ C:\Users\v-yniquil\Downloads\wetransfer_hitlergehenim4-0-avec-quelques-commentaires-7-pdf_2024-08-16_1032 (1).zip 2024-08-19 10:24 - 2024-08-19 10:33 - 468447643 _____ C:\Users\v-yniquil\Downloads\wetransfer_hitlergehenim4-0-avec-quelques-commentaires-7-pdf_2024-08-16_1032.zip ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-09-16 15:22 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-09-16 15:21 - 2023-10-12 03:31 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-09-16 15:21 - 2022-05-07 12:35 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2024-09-16 15:21 - 2022-05-07 12:35 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\WUModels 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\Provisioning 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-09-16 15:21 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-09-16 14:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-09-16 14:51 - 2017-10-03 16:21 - 000000000 ___DC C:\Users\Yves\AppData\Local\CrashDumps 2024-09-16 14:50 - 2023-07-01 01:05 - 000000000 ____D C:\Users\Yves\AppData\Roaming\bluestacks-services 2024-09-16 14:50 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-09-16 14:50 - 2015-08-15 15:35 - 000000000 ___RD C:\Users\Yves\OneDrive 2024-09-16 14:49 - 2020-11-04 13:21 - 000000000 ____D C:\WINDOWS\SensorFramework 2024-09-16 14:49 - 2020-08-06 13:08 - 000000000 ____D C:\ProgramData\ASUS 2024-09-16 14:48 - 2024-02-05 12:20 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Microsoft\Skype for Desktop 2024-09-16 14:48 - 2024-01-17 17:15 - 000000000 ___RD C:\Users\v-yniquil\OneDrive - Microsoft 2024-09-16 14:48 - 2024-01-16 17:02 - 000000000 ___RD C:\Users\v-yniquil\OneDrive 2024-09-16 14:47 - 2020-11-04 14:14 - 000000622 _____ C:\WINDOWS\SMSCFG.ini 2024-09-16 14:47 - 2016-03-12 09:39 - 000000000 ___HD C:\OneDriveTemp 2024-09-16 14:46 - 2024-01-17 17:31 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2024-09-16 14:46 - 2023-01-28 02:34 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-09-16 14:46 - 2023-01-28 02:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-09-16 14:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState 2024-09-16 14:46 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-09-16 14:46 - 2020-11-29 19:39 - 000012288 ___SH C:\DumpStack.log.tmp 2024-09-16 14:45 - 2022-05-07 07:17 - 001310720 _____ C:\WINDOWS\system32\config\BBI 2024-09-16 14:37 - 2023-01-28 02:28 - 004722996 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-09-16 14:37 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2024-09-16 14:34 - 2020-11-04 13:22 - 000000000 ____D C:\WINDOWS\IMECache 2024-09-16 14:31 - 2023-01-28 02:34 - 000003570 _____ C:\WINDOWS\system32\Tasks\SensorFramework-LogonTask-{100ee514-48c8-f419-6760-6fb8cb2767cd} 2024-09-16 14:31 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-09-16 14:31 - 2017-12-15 14:07 - 000000000 ___DC C:\Users\Yves\AppData\Local\PlaceholderTileLogoFolder 2024-09-16 14:31 - 2017-12-12 21:42 - 000000000 ___DC C:\Users\Yves\AppData\Local\Packages 2024-09-16 14:28 - 2023-01-28 02:24 - 000684992 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-09-16 12:49 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\registration 2024-09-16 11:28 - 2024-01-16 17:28 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Microsoft\Word 2024-09-16 01:16 - 2022-12-22 21:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-09-16 00:25 - 2024-01-29 20:39 - 000000000 ____D C:\Users\v-yniquil\AppData\Local\CrashDumps 2024-09-15 23:42 - 2018-09-11 18:04 - 000000000 ___DC C:\Users\Yves\AppData\Local\D3DSCache 2024-09-15 12:32 - 2013-02-09 02:39 - 000000000 ___DC C:\Users\Yves\AppData\Roaming\Microsoft\Word 2024-09-15 11:10 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-09-15 11:10 - 2021-08-18 23:35 - 000000000 ____D C:\Program Files\Microsoft Office 2024-09-15 11:07 - 2021-09-15 17:28 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-09-15 11:07 - 2014-09-25 22:49 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-09-15 11:05 - 2024-02-21 18:59 - 000002778 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-REDMOND-v-yniquil 2024-09-15 11:05 - 2024-01-16 17:08 - 000003094 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-12-1-1861095930-1159029358-1885105328-2907093874 2024-09-15 11:05 - 2023-07-01 01:05 - 000002958 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper_nxt 2024-09-15 11:05 - 2023-01-28 02:34 - 000003818 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1642463007 2024-09-15 11:05 - 2023-01-28 02:34 - 000003624 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA{84EFF17C-DDE6-405F-AEF0-CE5FAE1C2463} 2024-09-15 11:05 - 2023-01-28 02:34 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-09-15 11:05 - 2023-01-28 02:34 - 000003592 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1642463000 2024-09-15 11:05 - 2023-01-28 02:34 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-09-15 11:05 - 2023-01-28 02:34 - 000003400 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore{82053B8A-B8F4-4348-876B-FE359344D967} 2024-09-15 11:05 - 2023-01-28 02:34 - 000003394 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-09-15 11:05 - 2023-01-28 02:34 - 000003090 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-12-1-3823366177-1111767493-887005616-1606936512 2024-09-15 11:05 - 2023-01-28 02:34 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1139 2024-09-15 11:05 - 2023-01-28 02:34 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2291361548-2016861130-3130650149-1000 2024-09-15 11:05 - 2023-01-28 02:34 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-09-15 11:05 - 2023-01-28 02:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2024-09-13 16:36 - 2017-03-08 00:20 - 000000000 ___DC C:\Users\Yves\AppData\Local\AVAST Software 2024-09-13 16:15 - 2022-09-17 20:56 - 000000000 ____D C:\Users\Yves\AppData\Roaming\com.adobe.dunamis 2024-09-13 16:15 - 2014-06-19 00:11 - 000000000 ___DC C:\Users\Yves\AppData\Local\Adobe 2024-09-13 16:15 - 2013-02-08 02:06 - 000000000 ___DC C:\Users\Yves\AppData\Roaming\Adobe 2024-09-13 09:31 - 2021-08-18 23:40 - 000002177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-09-12 22:44 - 2020-06-17 11:15 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-09-12 20:03 - 2022-10-15 03:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Intune Management Extension 2024-09-12 20:03 - 2020-11-04 13:21 - 000000000 ____D C:\Program Files (x86)\Microsoft Intune Management Extension 2024-09-11 21:41 - 2022-10-31 21:40 - 000002369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2024-09-11 15:55 - 2024-05-02 23:10 - 000001259 _____ C:\Users\v-yniquil\Desktop\Thunderbird.lnk 2024-09-11 15:55 - 2024-01-16 17:02 - 000002556 _____ C:\Users\v-yniquil\Desktop\Avast Secure Browser.lnk 2024-09-11 15:55 - 2024-01-16 17:02 - 000002416 _____ C:\Users\v-yniquil\Desktop\Brave.lnk 2024-09-11 15:55 - 2024-01-16 17:02 - 000002299 _____ C:\Users\v-yniquil\Desktop\Google Chrome.lnk 2024-09-11 09:21 - 2024-01-16 17:15 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\com.adobe.dunamis 2024-09-11 09:21 - 2024-01-16 17:06 - 000000000 ____D C:\Users\v-yniquil\AppData\Local\Adobe 2024-09-11 09:21 - 2024-01-16 17:02 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Adobe 2024-09-11 03:08 - 2024-03-06 10:36 - 000001050 _____ C:\Users\Public\Desktop\Thunderbird.lnk 2024-09-11 03:08 - 2024-02-29 18:22 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2024-09-11 03:08 - 2015-06-29 01:29 - 000001062 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2024-09-11 03:06 - 2019-05-20 10:40 - 000000000 ____D C:\Program Files (x86)\Dropbox 2024-09-11 03:02 - 2022-10-13 23:11 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-09-11 02:55 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-09-11 02:40 - 2013-02-08 02:35 - 000000000 ____D C:\ProgramData\AVAST Software 2024-09-11 02:34 - 2022-05-07 07:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-09-11 02:34 - 2020-10-19 04:00 - 000273456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2024-09-11 02:34 - 2020-04-01 21:51 - 000549968 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys 2024-09-11 02:34 - 2019-01-14 18:17 - 000381400 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys 2024-09-11 02:34 - 2019-01-07 17:38 - 000293944 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys 2024-09-11 02:34 - 2019-01-07 17:38 - 000084536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys 2024-09-11 02:34 - 2019-01-07 17:38 - 000020536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys 2024-09-11 02:34 - 2018-10-24 17:04 - 000028616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys 2024-09-11 02:34 - 2017-11-17 06:58 - 000229832 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys 2024-09-11 02:34 - 2013-05-31 17:48 - 000306744 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys 2024-09-11 02:34 - 2013-05-31 17:48 - 000069176 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2024-09-11 02:34 - 2013-02-08 02:35 - 001198648 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys 2024-09-11 02:34 - 2013-02-08 02:35 - 000949816 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys 2024-09-11 02:34 - 2013-02-08 02:35 - 000097736 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2024-09-11 02:33 - 2018-08-30 21:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-09-11 02:29 - 2024-01-17 12:51 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Microsoft\PowerPoint 2024-09-11 01:28 - 2013-08-15 23:38 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-09-11 01:20 - 2013-02-11 12:49 - 199688632 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-09-10 23:42 - 2024-04-29 23:51 - 000000000 ____D C:\ProgramData\bst_boost_interprocess 2024-09-10 23:42 - 2024-04-29 23:50 - 000000000 ____D C:\ProgramData\BlueStacks_nxt 2024-09-10 10:04 - 2018-08-30 21:14 - 000000000 ____D C:\ProgramData\Packages 2024-09-10 09:01 - 2024-04-26 10:33 - 000000872 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2024-09-10 09:01 - 2024-04-26 10:33 - 000000860 _____ C:\Users\Public\Desktop\Audacity.lnk 2024-09-10 09:01 - 2022-11-23 23:38 - 000000000 ____D C:\Program Files\Audacity 2024-09-09 19:07 - 2024-01-16 17:02 - 000002103 _____ C:\Users\v-yniquil\Desktop\Google Slides.lnk 2024-09-09 19:07 - 2024-01-16 17:02 - 000002015 _____ C:\Users\REDMOND_v-yniquil_$\Desktop\Google Slides.lnk 2024-09-09 19:07 - 2024-01-16 17:02 - 000002015 _____ C:\Users\REDMOND_v-yniquil_$\Desktop\Google Sheets.lnk 2024-09-09 19:07 - 2024-01-16 17:02 - 000002003 _____ C:\Users\REDMOND_v-yniquil_$\Desktop\Google Docs.lnk 2024-09-09 19:07 - 2021-09-24 19:01 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2024-09-09 19:07 - 2021-09-24 19:01 - 000002015 _____ C:\Users\Default\Desktop\Google Slides.lnk 2024-09-09 19:07 - 2021-09-24 19:01 - 000002015 _____ C:\Users\Default\Desktop\Google Sheets.lnk 2024-09-09 19:07 - 2021-09-24 19:01 - 000002003 _____ C:\Users\Default\Desktop\Google Docs.lnk 2024-09-09 19:07 - 2013-06-25 11:34 - 000002055 ____C C:\Users\Yves\Desktop\Google Drive.lnk 2024-09-09 11:37 - 2024-01-16 18:14 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Microsoft\Excel 2024-09-08 16:48 - 2013-02-10 16:30 - 000000000 ___DC C:\Users\Yves\AppData\Roaming\Microsoft\Excel 2024-09-08 10:48 - 2024-01-11 00:27 - 000000000 ____D C:\Users\Yves\AppData\Local\Package Cache 2024-09-08 10:47 - 2024-01-11 00:27 - 000000000 ___DC C:\Users\Yves\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.12 2024-09-07 09:01 - 2023-07-21 21:33 - 000001000 _____ C:\Users\Public\Desktop\Firefox.lnk 2024-09-07 09:01 - 2022-11-23 23:53 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-09-07 09:01 - 2014-09-25 22:49 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-09-05 06:28 - 2024-01-16 17:02 - 000000000 ____D C:\Users\v-yniquil\AppData\Local\Packages 2024-08-31 08:18 - 2018-12-11 01:54 - 000001314 _____ C:\Users\Public\Desktop\Skype.lnk 2024-08-31 08:18 - 2018-12-11 01:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2024-08-30 17:19 - 2023-07-01 01:06 - 000000000 ____D C:\Users\Yves\AppData\Local\BlueStacks X 2024-08-28 10:31 - 2016-12-06 01:08 - 000000000 ____D C:\Program Files\Recuva 2024-08-27 18:28 - 2024-02-27 19:22 - 000002056 _____ C:\Users\v-yniquil\Desktop\WhatsApp.lnk 2024-08-26 19:23 - 2018-05-03 00:03 - 000002503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk 2024-08-22 16:41 - 2024-01-16 17:06 - 000000000 ____D C:\Users\v-yniquil\AppData\Local\PlaceholderTileLogoFolder 2024-08-22 01:04 - 2024-01-16 17:08 - 000000000 ____D C:\Users\v-yniquil\AppData\Local\Dropbox 2024-08-22 00:37 - 2024-03-06 04:35 - 000000000 ____D C:\Users\v-yniquil\AppData\Roaming\Dropbox ==================== Fichiers à la racine de certains dossiers ======== 2013-03-04 23:23 - 2013-03-04 23:23 - 000000604 _____ () C:\Program Files (x86)\STLL Notifier 2014-10-10 13:14 - 2014-10-10 13:14 - 000000604 _____ () C:\Program Files (x86)\_43_S 2014-02-18 19:42 - 2014-02-18 20:05 - 000037362 ____C () C:\Users\Yves\AppData\Roaming\Valeurs séparées par une virgule (DOS).ADR 2013-12-27 02:07 - 2014-01-22 01:07 - 000000080 ____C () C:\Users\Yves\AppData\Roaming\WB.CFG 2020-10-07 16:46 - 2020-10-07 16:46 - 000003584 _____ () C:\Users\Yves\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2021-05-10 01:04 - 2021-05-10 01:04 - 000001277 _____ () C:\Users\Yves\AppData\Local\recently-used.xbel 2014-03-05 01:58 - 2019-11-02 16:04 - 000007603 ____C () C:\Users\Yves\AppData\Local\Resmon.ResmonCfg 2020-05-10 17:29 - 2020-05-10 17:29 - 000000000 _____ () C:\Users\Yves\AppData\Local\{CAF1B528-BE99-4760-99DF-B851DB472B1A} ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================