Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-10-2024 Exécuté par gilbe (administrateur) sur SPECTREGIL (HP HP Spectre x360 2-in-1 Laptop 14-ef2xxx) (30-10-2024 11:22:36) Exécuté depuis C:\Users\gilbe\Desktop\FRST64 (2).exe Profils chargés: gilbe Plate-forme: Microsoft Windows 11 Professionnel Version 24H2 26100.2161 (X64) Langue: Allemand (Allemagne) -> Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.28801.30.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\130.0.2849.56\msedgewebview2.exe <6> (drivers\Intel\ICPS\IDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\Intel\ICPS\IDBWM.exe (drivers\Intel\ICPS\IntelConnectService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\Intel\ICPS\IntelConnect.exe (DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\BridgeCommunication.exe (DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_helper.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <35> (SECOMN64.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOCL64.exe (services.exe ->) (AOMEI International Network Limited -> AOMEI International Network Limited) C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.5.1\ABService.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ELANFPService.exe (services.exe ->) (HIMSA II K/S -> ) C:\Program Files (x86)\HIMSA\Noah 4\NoahClientService.exe (services.exe ->) (HIMSA II K/S -> ) C:\Program Files (x86)\HIMSA\Noah 4\NoahDownLoader.exe (services.exe ->) (HIMSA II K/S -> HIMSA II K/S) C:\Program Files (x86)\HIMSA\Noah 4\NoahServerService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc; HP Development Company, L.P.) C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_3befaa646f991169\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_3ea1838906a8645a\ipfsvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_f3c201b4c28c14d0\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\Intel\ICPS\IntelAnalyticsService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\Intel\ICPS\IntelConnectivityNetworkService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_33284f5d2f7b1562\AS\IAS\IntelAudioService.exe (services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\Intel\ICPS\IDBWMService.exe (services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\Intel\ICPS\IntelConnectService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL12.GNO\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_4e93878658043b21\OneApp.IGCC.WinService.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_c1e61af648833061\IntelCpHDCPSvc.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe (services.exe ->) (Natus Medical Denmark ApS -> Otometrics) C:\Program Files (x86)\Otometrics\OTOsuite\Gno.Suite.Plugin.Oae.Data.ServiceContainer.exe (services.exe ->) (Natus Medical Denmark ApS -> Otometrics) C:\Program Files (x86)\Otometrics\OTOsuite\Gno.Suite.Plugin.Oae.Logic.ServiceContainer.exe (services.exe ->) (Oticon A/S -> ) C:\Program Files (x86)\Oticon\OticonUpdater\OticonUpdaterService.exe (services.exe ->) (Portrait Displays, Inc. -> HP Inc.) C:\Program Files\Portrait Displays\HP Display Control Service\DisplayControlService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_cd9395798dc1b01f\RtkAudUService64.exe <2> (services.exe ->) (SBO Hearing A/S -> ) C:\Program Files (x86)\Bernafon\BernafonUpdater\BernafonUpdaterService.exe (services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (services.exe ->) (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) C:\Program Files (x86)\Starkey Laboratories\Inspire OS\Inspire.UpdaterService.exe (services.exe ->) (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) C:\Program Files (x86)\Starkey Laboratories\Inspire OS\InspireUpdaterSDK.exe (services.exe ->) (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) C:\Program Files (x86)\Starkey Laboratories\Inspire OS\Starkey.InspireSupport.Service.exe (services.exe ->) (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) C:\Program Files (x86)\Starkey\ProFit\Starkey.ProFitSupport.Service.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe (services.exe ->) (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (WSAUD A/S -> WIDEX A/S) C:\Program Files (x86)\Widex\CompassGPS\CompassGPSDBService.exe (services.exe ->) (WSAUD A/S -> WSAUD A/S) C:\Program Files (x86)\SAT\IPC\ShsIpcServiceHost.exe (services.exe ->) (WSAUD A/S -> WSAUD A/S) C:\Program Files (x86)\SAT\NHAXAnonymizer\SHSNhaxAnonymizerService.exe (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\ShellHost.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\Overlay\OverlayHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe (SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_cd9395798dc1b01f\RtkAudUService64.exe [1991480 2023-11-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [HPOneAgentService] => C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2106920 2024-08-13] (HP Inc. -> HP Inc; HP Development Company, L.P.) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [369504 2024-08-21] (Apple Inc. -> Apple Inc.) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-06-16] (Brother Industries, Ltd.) [Fichier non signé] HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.) [Fichier non signé] HKLM-x32\...\Run: [COMPASS GPS Updater] => C:\Program Files (x86)\Widex\CompassGPS\Widex.Compass.Updater.exe [1122376 2024-05-22] (WSAUD A/S -> WIDEX A/S) HKLM-x32\...\Run: [OticonUpdater] => C:\Program Files (x86)\Oticon\OticonUpdater\OticonUpdater.exe [354048 2024-04-26] (Oticon A/S -> ) HKLM-x32\...\Run: [BernafonUpdater] => C:\Program Files (x86)\Bernafon\BernafonUpdater\BernafonUpdater.exe [354056 2024-04-26] (SBO Hearing A/S -> ) HKU\S-1-5-21-2366571889-1264595126-1188420037-1001\...\Run: [MicrosoftEdgeAutoLaunch_A9545DB47953B4209D63F5A863C6672F] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3856456 2024-10-24] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2366571889-1264595126-1188420037-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919336 2024-10-29] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2366571889-1264595126-1188420037-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31354648 2024-05-28] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) HKU\S-1-5-21-2366571889-1264595126-1188420037-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45227312 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd) HKLM\...\Print\Monitors\pdfcmon: C:\windows\system32\pdfcmon.dll [196096 2024-02-08] (pdfforge GmbH) [Fichier non signé] HKLM\...\Print\Monitors\Virtual Port Monitor: C:\windows\system32\VirtualMon.dll [225280 2024-10-25] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.71\Installer\chrmstp.exe [2024-10-29] (Google LLC -> Google LLC) HKLM\Software\...\Winlogon\GPExtensions: [{9F02E2F5-5A41-4D1A-B473-4617E84BC957}] -> C:\WINDOWS\system32\WindowsProtectedPrintConfiguration.dll [2024-10-23] (Microsoft Windows -> Microsoft Corporation) Startup: C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2024-10-21] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\GN Notifications.lnk [2024-02-21] ShortcutTarget: GN Notifications.lnk -> C:\Program Files (x86)\GN ReSound\FSW Notify\FSNotify.exe (GN Hearing A/S -> GN Hearing) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Inspire Updater.lnk [2024-02-08] ShortcutTarget: Inspire Updater.lnk -> C:\Program Files (x86)\Starkey Laboratories\Inspire OS\Inspire.UpdaterSystemTray.exe (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ProFitUpdater.SystemTray.Shortcut.exe.lnk [2024-08-28] ShortcutTarget: ProFitUpdater.SystemTray.Shortcut.exe.lnk -> C:\Program Files (x86)\Starkey\ProFit\ProFitUpdater.SystemTray.exe (Starkey Laboratories, Inc. -> ) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RoomTune.lnk [2024-02-20] ShortcutTarget: RoomTune.lnk -> C:\Program Files (x86)\Otometrics\OTOsuite\RoomTune.exe (Natus Medical Denmark ApS -> Otometrics) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Update Manager.lnk [2024-10-23] ShortcutTarget: Update Manager.lnk -> C:\Program Files (x86)\SAT\UpdateManager\ShsUpdateManager.exe (WSAUD A/S -> WSAUD A/S) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {19FBA1F2-28BE-4338-9BED-88FED2349473} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.) Task: {12BCA889-6D24-45BA-B09F-0692D7FC023F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) Task: {E44F9503-3A5D-4F6E-9D2C-5648E51A2394} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5983536 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "b4b79b07-4e5a-4a66-9025-c1be4c7c595a" --version "6.29.11342" --silent Task: {A9F322AF-8FCD-4113-89B4-516C9E7A575F} - System32\Tasks\CCleanerSkipUAC - gilbe => C:\Program Files\CCleaner\CCleaner.exe [39090480 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd) Task: {AC38D81F-3EFE-4DCB-8744-92DCE099C79E} - System32\Tasks\DeleteSfxTempFolder => C:\windows\system32\cmd.exe [339968 2024-10-23] (Microsoft Windows -> Microsoft Corporation) -> /c rmdir /s /q C:\Users\gilbe\AppData\Local\Temp\7zS093CCA67" <==== ATTENTION Task: {B4747627-7D88-46C4-9682-08ED2A1AA924} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-05-28] (Garmin International, Inc. -> ) Task: {AE24027D-DDB3-41C4-A552-843D1BCA905C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{4FE66119-27B0-4244-A17A-71F7ECAE3FC8} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-10-14] (Google LLC -> Google LLC) Task: {ADE747EB-C744-4050-996D-2BE2A864ACC9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-09-25] (HP Inc. -> HP Inc.) Task: {C13F3EF9-A8E1-45CD-ABD6-CDCAF426B367} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161744 2024-09-25] (HP Inc. -> HP Inc.) Task: {CEF54A24-5610-43CB-A5F9-F536A38BB8B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161744 2024-09-25] (HP Inc. -> HP Inc.) Task: {83F5202C-C8FE-4025-9567-964ED51E18B3} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2024-10-23] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice Task: {05C05032-A463-479F-BBD1-0798226D6041} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{A59BC4A0-0F57-4F97-95E4-641AB5C3A9B0}\HPOneAgent.exe [1169520 2024-09-12] (HP Inc. -> HP Inc.) Task: {EECE5DCC-3C96-4E7C-BE69-53000F422C5C} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {D39598D9-BC64-444F-BE4F-F98EB507C8F5} - System32\Tasks\McAfee\WPS\McAfee Anti-Tracker Scanner => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {FFCF1A4C-DC38-4309-AD7C-F956F1FA6640} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {A81D5F8F-D8F6-4215-ABBD-46DA74BA7005} - System32\Tasks\McAfee\WPS\McAfee Message Check => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {2EFBA931-2C16-4AB4-9C87-B86F2542DB39} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {5A867C58-7DE3-4E6E-A641-B415401C2E81} - System32\Tasks\McAfee\WPS\McAfee restart of PC => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {F4FD773F-C5D9-4EDC-83D3-08554C1F0421} - System32\Tasks\McAfee\WPS\McAfee Scheduled AV Scan => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {15BEFD68-EABA-43DB-9800-63EE34812AD0} - System32\Tasks\McAfee\WPS\McAfee Scheduled Tracker Remover => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {77EF283F-FA50-4418-846A-E1B761A50AE2} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} Task: {6B5FE7F1-4A69-4449-A2B4-67C8CD931986} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28616920 2024-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {06EB53E1-1377-496C-A0BD-BE8500F9A8D7} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28616920 2024-10-14] (Microsoft Corporation -> Microsoft Corporation) Task: {7A5D4868-5CD4-4F95-8DB0-8DDB833D1C67} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-10-21] (Microsoft Corporation -> Microsoft Corporation) Task: {B68C88C4-E281-4779-9691-71B2B66E0B7C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-10-21] (Microsoft Corporation -> Microsoft Corporation) Task: {FF51DCD6-E6DC-4B50-99C6-3C98A27B3173} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [187328 2024-10-02] (Microsoft Corporation -> Microsoft Corporation) Task: {8AAC1993-911A-40E3-A870-4265186807FF} - System32\Tasks\Microsoft\Windows\Containers\CmCleanup => {F50E9363-6BC8-4DC5-8CAB-7D9F8C1B81B4} C:\WINDOWS\System32\cmcleanup.dll [87352 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {D1211565-C8D3-4652-94F0-E7177DB88C70} - System32\Tasks\Microsoft\Windows\Diagnosis\UnexpectedCodepath => C:\WINDOWS\system32\UCConfigTask.exe [90112 2024-10-25] (Microsoft Windows -> ) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Pas de fichier) Task: {EC4E1419-ADE4-4C7B-B3E1-C4DE54F3DBA8} - System32\Tasks\Microsoft\Windows\PerformanceTrace\RequestTrace => {9EFEB182-2EE3-4AF9-AFFA-521410D110D1} C:\WINDOWS\system32\PerformanceTraceHandler.dll [114688 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {FD953D65-B217-4C79-946C-40F34EA51665} - System32\Tasks\Microsoft\Windows\ReFsDedupSvc\Initialization => {DCFF735B-64F7-45F3-B39C-6C66BBE2120F} C:\WINDOWS\System32\ReFsDedupSvc.exe [2199552 2024-10-25] (Microsoft Windows -> Microsoft Corporation) Task: {D922466D-C38C-4D23-87E9-F3ECB1799881} - System32\Tasks\Microsoft\Windows\Servicing\OOBEFodSetup => C:\WINDOWS\system32\OOBEFodSetup.exe [40960 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {6E9522D4-5ECB-478B-90ED-91561B8D4524} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => {7750564D-D61C-4557-8A9D-7DF56BDCFF96} C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll [270336 2024-10-25] (Microsoft Windows -> Microsoft Corporation) Task: {6B549F30-9F73-486A-9FFB-D9A4B9B0B516} - System32\Tasks\Microsoft\Windows\Sustainability\PowerGridForecastTask => {251E5B1F-E370-4E12-B5BD-B7AD2A8EE810} C:\WINDOWS\system32\PowerGridForecastTask.dll [331776 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {1A5D83D1-04D5-47BD-B635-E52B8CA4ACB8} - System32\Tasks\Microsoft\Windows\Sustainability\SustainabilityTelemetry => {6EE41D75-D091-4FB7-9AD5-018760DD25D4} C:\WINDOWS\system32\EcoScoreTask.dll [90112 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {AE889AF2-B6E2-4941-8C89-FCD4EB658F9B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UUS Failover Task => C:\WINDOWS\System32\MLEngineStub.exe [86016 2024-10-23] (Microsoft Windows -> Microsoft Corporation) Task: {DCCDBFB4-AC7F-4B29-A43F-F80415A6C526} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F8794889-5970-44DE-8B6F-11067B9A3408} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1A99AF0F-AAC2-4B34-8A1E-E8BB54E5DB8C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {969783E3-9A91-4DEC-AB76-B0C0F04DD197} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1B966350-9C85-450A-B35C-489D2048D447} - System32\Tasks\OmenInstallMonitor => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [71120 2024-10-29] (HP Inc. -> HP Inc.) Task: {95BDBE60-D266-467A-BFE1-1CE371ABEDC4} - System32\Tasks\OmenInstallMonitorCustomEvent => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [71120 2024-10-29] (HP Inc. -> HP Inc.) Task: {C04D83BE-FE84-4152-9395-C222D103F624} - System32\Tasks\OmenOverlay => C:\Program Files\HP\Overlay\OverlayHelper.exe [66512 2024-10-29] (HP Inc. -> HP Inc.) Task: {D1C3E027-C7F8-4625-A623-C56A2452CFA5} - System32\Tasks\OmenOverlayCustomEvent => C:\Program Files\HP\Overlay\OverlayHelper.exe [66512 2024-10-29] (HP Inc. -> HP Inc.) Task: {63C1269B-6DB8-4C83-8327-CCF3C457E95F} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209192 2024-10-29] (Microsoft Corporation -> Microsoft Corporation) Task: {28398DF8-9E58-41B2-BCC6-CEC4EC73A102} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2366571889-1264595126-1188420037-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209192 2024-10-29] (Microsoft Corporation -> Microsoft Corporation) Task: {0D3DCAA8-249C-485C-AC2A-02087C764F55} - System32\Tasks\pdfforge GmbH\PDF Architect 9\Installer updater => C:\ProgramData\PDF Architect 9\Installation\PDF_Architect_9_Installer.exe /check-updates (Pas de fichier) Task: {268832EF-3F88-405F-B9D8-04E79721EDDB} - System32\Tasks\pdfforge GmbH\PDF Architect 9\Update => C:\Program Files\PDF Architect 9\architect.exe --update --mode check auto notify (Pas de fichier) Task: {8493B2E7-1D4A-4525-BE6E-80717168B5FF} - System32\Tasks\SATSUM => C:\Program Files (x86)\SAT\UpdateManager\ShsUpdateManager.exe [583064 2024-10-01] (WSAUD A/S -> WSAUD A/S) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\RNIdle Task.job => C:\Windows\System32\drivers\Intel\ICPS\RNIdleTask.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 Tcpip\..\Interfaces\{89c74572-60bd-4d35-af85-a6e7c228764e}: [DhcpNameServer] 192.168.8.1 Tcpip\..\Interfaces\{89c74572-60bd-4d35-af85-a6e7c228764e}\B42474D29343138323: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{89c74572-60bd-4d35-af85-a6e7c228764e}\B42474D29343138323: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\gilbe\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-30] Edge Notifications: Default -> hxxps://abex.co.in; hxxps://forums.garmin.com; hxxps://web.whatsapp.com; hxxps://www.facebook.com Edge Extension: (Avira Safe Shopping) - C:\Users\gilbe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2024-10-22] Edge Extension: (Avira Password Manager) - C:\Users\gilbe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emgfgdclgfeldebanedpihppahgngnle [2024-10-22] Edge Extension: (Google Docs hors connexion) - C:\Users\gilbe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-08-27] Edge Extension: (Edge relevant text changes) - C:\Users\gilbe\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-08] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default [2024-10-29] CHR Extension: (Avira Safe Shopping) - C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2024-10-29] CHR Extension: (Protection Web Avira) - C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2024-10-29] CHR Extension: (Google Docs hors connexion) - C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-18] CHR Extension: (Jitsi Meetings) - C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default\Extensions\kglhbbefdnlheedjiejgomgmfplipfeb [2024-10-14] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gilbe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-02-08] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2024-08-27] (Apple Inc. -> Apple Inc.) S3 ApxSvc; C:\WINDOWS\System32\ApxSvc.dll [73728 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R2 Backupper Service; C:\Program Files (x86)\AOMEI\AOMEI Backupper\6.5.1\ABService.exe [1024448 2021-05-14] (AOMEI International Network Limited -> AOMEI International Network Limited) R2 BernafonUpdaterService; C:\Program Files (x86)\Bernafon\BernafonUpdater\BernafonUpdaterService.exe [18696 2024-04-26] (SBO Hearing A/S -> ) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Fichier non signé] S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13861072 2024-10-14] (Microsoft Corporation -> Microsoft Corporation) R2 Compass GPS DB Service; C:\Program Files (x86)\Widex\CompassGPS\CompassGPSDBService.exe [35912 2024-05-22] (WSAUD A/S -> WIDEX A/S) R2 dptftcs; C:\WINDOWS\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_3ea1838906a8645a\ipfsvc.exe [546416 2023-06-12] (Intel Corporation -> Intel Corporation) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.196.0929.0005\FileSyncHelper.exe [3524664 2024-10-29] (Microsoft Corporation -> Microsoft Corporation) R2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2106920 2024-08-13] (HP Inc. -> HP Inc; HP Development Company, L.P.) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\AppHelperCap.exe [927840 2024-08-18] (HP Inc. -> HP Inc.) R2 HPDCService; C:\Program Files\Portrait Displays\HP Display Control Service\DisplayControlService.exe [375072 2022-10-31] (Portrait Displays, Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\DiagsCap.exe [926200 2024-08-18] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\NetworkCap.exe [922216 2024-08-18] (HP Inc. -> HP Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2024-10-14] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe [927336 2024-08-18] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe [569008 2024-05-07] (HP Inc. -> HP Inc.) R3 IDBWM; C:\WINDOWS\System32\drivers\Intel\ICPS\IDBWMService.exe [78656 2024-05-09] (Intel Corporation -> Intel® Corporation) R2 InspireApplicationUpdater; C:\Program Files (x86)\Starkey Laboratories\Inspire OS\Inspire.UpdaterService.exe [86680 2023-11-29] (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) R2 InspireSupportService; C:\Program Files (x86)\Starkey Laboratories\Inspire OS\Starkey.InspireSupport.Service.exe [27800 2023-11-29] (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) R2 Intel Analytics Service; C:\WINDOWS\System32\drivers\Intel\ICPS\IntelAnalyticsService.exe [1962416 2024-05-09] (Intel Corporation -> Intel) R2 Intel Connectivity Network Service; C:\WINDOWS\System32\drivers\Intel\ICPS\IntelConnectivityNetworkService.exe [2225576 2024-05-09] (Intel Corporation -> Intel) S2 Intel Provider Data Helper Service; C:\WINDOWS\System32\drivers\Intel\ICPS\IntelProviderDataHelperService.exe [824232 2024-05-09] (Intel Corporation -> Intel) S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation) R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_33284f5d2f7b1562\AS\IAS\IntelAudioService.exe [531920 2024-01-03] (Intel Corporation -> Intel) R3 IntelConnectService; C:\WINDOWS\System32\drivers\Intel\ICPS\IntelConnectService.exe [78760 2024-05-09] (Intel Corporation -> Intel® Corporation) R2 ipfsvc; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_uf.exe [2781336 2023-06-12] (Intel Corporation -> Intel Corporation) S3 LocalKdc; C:\WINDOWS\system32\localkdcsvc.dll [802816 2024-10-25] (Microsoft Windows -> Microsoft Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9258144 2024-10-23] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-10-23] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MSSQL$GNO; C:\Program Files (x86)\Microsoft SQL Server\MSSQL12.GNO\MSSQL\Binn\sqlservr.exe [199360 2015-04-20] (Microsoft Corporation -> Microsoft Corporation) S3 Muse Hub Updater Service; C:\Program Files\WindowsApps\Muse.MuseHub_2.0.22.1414_x64__rb9pth70m6nz6\Muse.Updater.exe [6213200 2024-10-17] (Musecy SM Ltd. -> Muse.Updater) R3 Noah4UpdateService; C:\Program Files (x86)\HIMSA\Noah 4\NoahDownLoader.exe [199240 2023-05-26] (HIMSA II K/S -> ) R2 NoahClient; C:\Program Files (x86)\HIMSA\Noah 4\NoahClientService.exe [108328 2024-01-14] (HIMSA II K/S -> ) R2 NoahServer; C:\Program Files (x86)\HIMSA\Noah 4\NoahServerService.exe [151112 2023-05-26] (HIMSA II K/S -> HIMSA II K/S) S2 NoahServicePreStarter; C:\Program Files (x86)\HIMSA\Noah 4\NoahServicePreStarter.exe [1596496 2023-05-26] (HIMSA II K/S -> HIMSA II K/S) R2 Oae.Data.ServiceContainer; C:\Program Files (x86)\Otometrics\OTOsuite\Gno.Suite.Plugin.Oae.Data.ServiceContainer.exe [20288 2023-10-21] (Natus Medical Denmark ApS -> Otometrics) R2 Oae.Logic.ServiceContainer; C:\Program Files (x86)\Otometrics\OTOsuite\Gno.Suite.Plugin.Oae.Logic.ServiceContainer.exe [20288 2023-10-21] (Natus Medical Denmark ApS -> Otometrics) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.196.0929.0005\OneDriveUpdaterService.exe [3867704 2024-10-29] (Microsoft Corporation -> Microsoft Corporation) R2 OticonUpdaterService; C:\Program Files (x86)\Oticon\OticonUpdater\OticonUpdaterService.exe [18688 2024-04-26] (Oticon A/S -> ) S3 PrintDeviceConfigurationService; C:\WINDOWS\System32\PrintDeviceConfigurationService.dll [200704 2024-10-25] (Microsoft Windows -> Microsoft Corporation) S3 PrintScanBrokerService; C:\WINDOWS\System32\PrintScanBrokerService.dll [200704 2024-10-25] (Microsoft Windows -> Microsoft Corporation) R2 ProFitSupportService; C:\Program Files (x86)\Starkey\ProFit\Starkey.ProFitSupport.Service.exe [25752 2024-08-06] (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) S3 refsdedupsvc; C:\WINDOWS\System32\ReFsDedupSvc.exe [2199552 2024-10-25] (Microsoft Windows -> Microsoft Corporation) R2 SAT IPC; C:\Program Files (x86)\SAT\IPC\ShsIpcServiceHost.exe [60312 2024-10-01] (WSAUD A/S -> WSAUD A/S) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559304 2024-10-25] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ShsNhaxAnonymizer; C:\Program Files (x86)\SAT\NHAXAnonymizer\SHSNhaxAnonymizerService.exe [58264 2024-10-01] (WSAUD A/S -> WSAUD A/S) S4 SQLAgent$GNO; C:\Program Files (x86)\Microsoft SQL Server\MSSQL12.GNO\MSSQL\Binn\SQLAGENT.EXE [454848 2015-04-20] (Microsoft Corporation -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11458560 2019-12-04] (TeamViewer GmbH -> TeamViewer GmbH) R2 UpdaterService; C:\Program Files (x86)\Starkey Laboratories\Inspire OS\InspireUpdaterSDK.exe [19608 2023-11-29] (Starkey Laboratories, Inc. -> Starkey Hearing Technologies) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 acpipagr; C:\WINDOWS\System32\DriverStore\FileRepository\acpipagr.inf_amd64_d1093347a27ff89c\acpipagr.sys [49152 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 AcpiPmi; C:\WINDOWS\System32\DriverStore\FileRepository\acpipmi.inf_amd64_3ced06eb61dcc792\acpipmi.sys [53248 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2019-05-14] (CHENGDU AOMEI Tech Co., Ltd. -> ) R0 amdwps; C:\WINDOWS\System32\drivers\amdwps.sys [67144 2024-10-23] (Microsoft Windows Hardware Abstraction Layer Publisher -> Microsoft Corporation) R2 ammntdrv; C:\windows\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 amwrtdrv; C:\windows\system32\amwrtdrv.sys [32176 2024-02-12] (AOMEI International Network Limited -> ) R3 CDD; C:\WINDOWS\System32\cdd.dll [335872 2024-10-25] (Microsoft Windows -> Microsoft Corporation) S3 CSRBC; C:\WINDOWS\System32\Drivers\cxxair_csrbc.sys [58152 2023-03-10] (Sivantos GmbH -> QTI Ltd) S3 devmap; C:\WINDOWS\System32\DriverStore\FileRepository\devmap.inf_amd64_1993197f4612e967\devmap.sys [53248 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 DisplayMux; C:\WINDOWS\System32\DriverStore\FileRepository\displaymux.inf_amd64_da65a70f0c3ce0f3\DisplayMux.sys [57344 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R0 fse; C:\WINDOWS\System32\drivers\fse.sys [222528 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R3 hi556; C:\WINDOWS\System32\drivers\hi556.sys [183456 2023-06-11] (Intel Corporation -> Intel(R) Corporation) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.) R2 HpReadHWData; C:\WINDOWS\system32\drivers\HpReadHWData.sys [57824 2024-10-25] (HP Inc. -> Windows (R) Win 7 DDK provider) R3 HpSpsNotification; C:\WINDOWS\System32\DriverStore\FileRepository\hpspsnotification.inf_amd64_15be15983f897eb1\HpSpsNotification.sys [57232 2022-11-22] (HP Inc. -> HP Development Company, L.P.) S3 I3CHost; C:\WINDOWS\System32\DriverStore\FileRepository\i3chost.inf_amd64_122b4ae9c1a21a43\I3CHost.sys [304568 2024-10-25] (Microsoft Windows -> Microsoft Corporation) R3 iaisp64; C:\WINDOWS\System32\drivers\iaisp64.sys [50384 2023-06-11] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_GPIO2_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_302e75596cffa74a\iaLPSS2_GPIO2_ADL.sys [150616 2023-06-12] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_e736c048ca307ed2\iaLPSS2_I2C_ADL.sys [220224 2023-06-12] (Intel Corporation -> Intel Corporation) R3 INTCCoSvc; C:\WINDOWS\System32\drivers\Intel\ICPS\IntcCo11X64.sys [216488 2024-05-09] (Intel Corporation -> Intel Corporation) R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_9457687510c9f4ce\IntcUSB.sys [926160 2024-01-03] (Intel Corporation -> Intel(R) Corporation) R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_04d4eecc5838a558\gna.sys [88760 2023-06-12] (Intel Corporation -> Intel Corporation) R3 ipf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_acpi.inf_amd64_7d9abd38830a6e00\ipf_acpi.sys [87144 2023-06-12] (Intel Corporation -> Intel Corporation) R3 ipf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_cpu.sys [80536 2023-06-12] (Intel Corporation -> Intel Corporation) R3 ipf_lf; C:\WINDOWS\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_bef44694f882994d\ipf_lf.sys [444568 2023-06-12] (Intel Corporation -> Intel Corporation) S3 kdnic_legacy; C:\WINDOWS\System32\drivers\kdnic_legacy.sys [70976 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [140744 2024-10-25] (Microsoft Windows -> Microsoft Corporation) R3 Lm3643; C:\WINDOWS\System32\DriverStore\FileRepository\lm3643.inf_amd64_fa78822cca8729cd\lm3643.sys [71328 2023-06-11] (Intel Corporation -> Intel Corporation) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [232000 2024-10-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-10-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 miniCom; C:\WINDOWS\system32\drivers\miniCom.sys [31840 2024-02-08] (GN HEARING A/S -> GN Resound as) R3 MpKsl8419729d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{389C7650-5732-48D0-BD5B-DF46AC5E9C91}\MpKslDrv.sys [267552 2024-10-30] (Microsoft Windows -> Microsoft Corporation) S3 MsQuicPrev; C:\WINDOWS\System32\drivers\msquicprev.sys [458032 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2023-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) S2 NetworkPrivacyPolicy; C:\WINDOWS\System32\DriverStore\FileRepository\networkprivacypolicy.inf_amd64_f3940973e0444eec\NetworkPrivacyPolicy.sys [102400 2024-10-23] (Microsoft Windows -> ) R3 og0va1b; C:\WINDOWS\System32\drivers\og0va1b.sys [175304 2023-06-11] (Intel Corporation -> Intel Corporation) S3 PktMonApi; C:\WINDOWS\System32\drivers\PktMonApi.sys [61440 2024-10-25] (Microsoft Windows -> Microsoft Corporation) S3 PlutonHeci; C:\WINDOWS\System32\DriverStore\FileRepository\pluton-heci.inf_amd64_9aaa7a8c15ac7e9a\pluton-heci.sys [58784 2024-10-23] (Microsoft Windows -> ) S3 PlutonHsp2; C:\WINDOWS\System32\DriverStore\FileRepository\plutonhsp2.inf_amd64_0b3fdc25d1dc1c6e\PlutonHsp2.sys [58672 2024-10-23] (Microsoft Windows -> ) R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [67496 2022-07-29] (Realtek Semiconductor Corp. -> Realtek) R3 Silent_Sound_Card; C:\WINDOWS\system32\drivers\SilentSoundCard_x64.sys [21504 2015-11-13] (GN Otometrics -> GN Otometrics) R3 StillCam; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\serscan.sys [49152 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R1 uiomap; C:\WINDOWS\System32\DriverStore\FileRepository\uiomap.inf_amd64_11efbd9b4c5f482e\uiomap.sys [69632 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R3 UmPass; C:\WINDOWS\System32\DriverStore\FileRepository\umpass.inf_amd64_06e016c9ffecbf73\umpass.sys [53248 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R2 UnionFS; C:\WINDOWS\system32\drivers\UnionFS.sys [497072 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2023-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R3 vwifibus; C:\WINDOWS\System32\DriverStore\FileRepository\netvwifibus.inf_amd64_ab4e111fe8221178\vwifibus.sys [65536 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R3 vwifimp; C:\WINDOWS\System32\DriverStore\FileRepository\netvwifimp.inf_amd64_16c785b9ba77e7b0\vwifimp.sys [86016 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-10-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-10-30] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-30] (Microsoft Windows -> Microsoft Corporation) S3 WinAccelCx0101; C:\WINDOWS\System32\drivers\WinAccelCx.sys [144704 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 WinI3C; C:\WINDOWS\System32\DriverStore\FileRepository\wini3c.inf_amd64_a7ed04bfcdb83650\WinI3C.sys [75208 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R0 WinSetupMon; C:\WINDOWS\System32\DRIVERS\WinSetupMon.sys [169440 2024-10-04] (Microsoft Windows -> Microsoft Corporation) R3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-10-23] (Microsoft Windows -> Microsoft Corporation) R3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\WSDScan.sys [61440 2024-10-23] (Microsoft Windows -> Microsoft Corporation) S3 ZTDNS; C:\WINDOWS\System32\drivers\ztdns.sys [107960 2024-10-23] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-30 11:22 - 2024-10-30 11:23 - 000047940 _____ C:\Users\gilbe\Desktop\FRST.txt 2024-10-30 11:22 - 2024-10-30 11:22 - 000246019 _____ C:\Users\gilbe\Desktop\ZHPDiag.txt 2024-10-30 11:15 - 2024-10-30 11:15 - 000963794 _____ C:\WINDOWS\system32\perfh00C.dat 2024-10-30 11:15 - 2024-10-30 11:15 - 000909312 _____ C:\WINDOWS\system32\perfh007.dat 2024-10-30 11:15 - 2024-10-30 11:15 - 000228218 _____ C:\WINDOWS\system32\perfc00C.dat 2024-10-30 11:15 - 2024-10-30 11:15 - 000227888 _____ C:\WINDOWS\system32\perfc007.dat 2024-10-30 11:06 - 2024-10-30 11:06 - 000001122 _____ C:\ProgramData\ntuser.pol 2024-10-30 10:28 - 2024-10-30 10:28 - 000000000 ____D C:\Program Files (x86)\Phonak 2024-10-29 21:58 - 2024-10-29 22:06 - 2550803987 _____ C:\Users\gilbe\Downloads\Leo_Matu_def_28102024.mp4 2024-10-29 21:26 - 2024-10-29 22:37 - 000000000 ____D C:\Users\gilbe\Desktop\desinfec 2024-10-29 21:09 - 2024-10-29 21:13 - 000000000 ____D C:\AdwCleaner 2024-10-29 21:09 - 2024-10-29 21:09 - 008790880 _____ (Malwarebytes) C:\Users\gilbe\Desktop\adwcleaner_8.4.2.exe 2024-10-29 21:01 - 2024-10-29 21:01 - 003362816 _____ (Nicolas Coolman) C:\Users\gilbe\Downloads\ZHPCleaner.exe 2024-10-29 21:01 - 2024-10-29 21:01 - 000000882 _____ C:\Users\gilbe\Desktop\ZHPCleaner.lnk 2024-10-29 20:48 - 2024-10-29 20:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avira 2024-10-29 19:47 - 2024-10-30 11:23 - 000000000 ____D C:\FRST 2024-10-29 19:45 - 2024-10-29 19:47 - 002397696 _____ (Farbar) C:\Users\gilbe\Desktop\FRST64 (2).exe 2024-10-29 19:44 - 2024-10-29 19:44 - 002397696 _____ (Farbar) C:\Users\gilbe\Downloads\Non confirmé 481228.crdownload 2024-10-29 19:44 - 2024-10-29 19:44 - 002397696 _____ (Farbar) C:\Users\gilbe\Downloads\Non confirmé 248537.crdownload 2024-10-29 19:26 - 2024-10-29 19:26 - 009466251 _____ C:\Users\gilbe\Downloads\Plans (1).pdf 2024-10-29 18:57 - 2024-10-30 11:22 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\ZHP 2024-10-29 18:57 - 2024-10-29 21:01 - 000000000 ____D C:\Users\gilbe\AppData\Local\ZHP 2024-10-29 18:57 - 2024-10-29 18:57 - 003536896 _____ (Nicolas Coolman) C:\Users\gilbe\Downloads\ZHPSuite.exe 2024-10-29 18:57 - 2024-10-29 18:57 - 000000872 _____ C:\Users\gilbe\Desktop\ZHPSuite.lnk 2024-10-29 17:31 - 2024-10-29 17:31 - 000279752 _____ C:\Users\gilbe\Downloads\pavillon.nhax 2024-10-29 17:27 - 2024-10-29 17:27 - 009466251 _____ C:\Users\gilbe\Downloads\Plans.pdf 2024-10-28 07:21 - 2024-10-28 07:21 - 008541634 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-28.pdf 2024-10-27 09:51 - 2016-11-23 10:34 - 004721305 _____ C:\Users\gilbe\Desktop\Fil rouge pousuite.pdf 2024-10-26 12:03 - 2024-10-26 12:03 - 000605612 _____ C:\Users\gilbe\Downloads\Règlement PPE _HAMO 28.pdf 2024-10-25 16:05 - 2024-10-27 10:30 - 000000000 ____D C:\Users\gilbe\Desktop\uspi1 2024-10-25 14:18 - 2024-10-29 21:31 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-10-25 14:17 - 2024-10-25 14:17 - 000026650 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-10-25 14:17 - 2024-10-25 14:17 - 000026650 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2024-10-25 12:21 - 2024-10-25 12:22 - 003839376 _____ C:\Users\gilbe\Downloads\immeublepullysuite.zip 2024-10-25 11:44 - 2024-10-27 09:51 - 000000000 ____D C:\Users\gilbe\Desktop\CHATEAU SEC 15 2024-10-24 06:27 - 2024-10-24 06:27 - 000130391 _____ C:\Users\gilbe\Documents\KRONENBERG.nhax 2024-10-23 21:05 - 2024-10-29 20:34 - 000000000 ____D C:\Users\gilbe\AppData\Local\AVG 2024-10-23 21:01 - 2024-10-29 20:34 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\AVG 2024-10-23 20:59 - 2024-10-29 20:45 - 000000000 ____D C:\ProgramData\AVG 2024-10-23 20:59 - 2024-10-23 20:59 - 000000000 ____D C:\ProgramData\Piriform 2024-10-23 20:58 - 2024-10-29 22:35 - 000000000 ____D C:\Program Files\CCleaner 2024-10-23 20:58 - 2024-10-29 16:59 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2024-10-23 20:58 - 2024-10-24 06:09 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2024-10-23 20:58 - 2024-10-23 20:58 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2024-10-23 20:58 - 2024-10-23 20:58 - 000002894 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - gilbe 2024-10-23 20:58 - 2024-10-23 20:58 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk 2024-10-23 20:58 - 2024-10-23 20:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2024-10-23 20:57 - 2024-10-23 20:57 - 077195320 _____ (Piriform Software Ltd) C:\Users\gilbe\Downloads\ccsetup629.exe 2024-10-23 20:48 - 2024-10-23 19:59 - 000000000 ____D C:\Windows.old 2024-10-23 20:46 - 2024-10-23 20:48 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-10-23 20:44 - 2024-10-23 20:46 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-10-23 20:44 - 2024-10-23 20:44 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-10-23 20:42 - 2024-10-23 20:42 - 000005264 _____ C:\WINDOWS\system32\ecoscore_config.json 2024-10-23 20:42 - 2024-10-23 20:42 - 000000773 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json 2024-10-23 20:40 - 2024-10-23 20:40 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2024-10-23 20:40 - 2024-10-23 20:40 - 000000000 ____D C:\WINDOWS\system32\msmq 2024-10-23 20:40 - 2024-10-23 20:40 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2024-10-23 20:39 - 2024-10-23 20:44 - 000000000 ____D C:\WINDOWS\system32\de-CH 2024-10-23 20:39 - 2024-10-23 20:39 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2024-10-23 20:39 - 2024-10-23 20:39 - 000000000 ____D C:\Program Files\Reference Assemblies 2024-10-23 20:39 - 2024-10-23 20:39 - 000000000 ____D C:\Program Files\MSBuild 2024-10-23 20:39 - 2024-10-23 20:39 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2024-10-23 20:39 - 2024-10-23 20:39 - 000000000 ____D C:\Program Files (x86)\MSBuild 2024-10-23 20:38 - 2024-10-23 20:38 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2024-10-23 20:38 - 2024-10-23 20:38 - 000000000 ____D C:\WINDOWS\system32\fr 2024-10-23 20:05 - 2024-10-23 20:05 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2024-10-23 20:00 - 2024-10-23 20:00 - 000000020 ___SH C:\Users\gilbe\ntuser.ini 2024-10-23 19:59 - 2024-10-30 11:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-10-23 19:59 - 2024-10-29 20:48 - 000004278 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitorCustomEvent 2024-10-23 19:59 - 2024-10-29 20:48 - 000004220 _____ C:\WINDOWS\system32\Tasks\OmenOverlayCustomEvent 2024-10-23 19:59 - 2024-10-29 20:48 - 000003878 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitor 2024-10-23 19:59 - 2024-10-29 20:48 - 000003818 _____ C:\WINDOWS\system32\Tasks\OmenOverlay 2024-10-23 19:59 - 2024-10-29 17:29 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2366571889-1264595126-1188420037-1001 2024-10-23 19:59 - 2024-10-29 17:29 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-10-23 19:59 - 2024-10-23 19:59 - 000003618 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-10-23 19:59 - 2024-10-23 19:59 - 000003394 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-10-23 19:59 - 2024-10-23 19:59 - 000002754 _____ C:\WINDOWS\system32\Tasks\HPOneAgentRepairTask 2024-10-23 19:59 - 2024-10-23 19:59 - 000002702 _____ C:\WINDOWS\system32\Tasks\GarminUpdaterTask 2024-10-23 19:59 - 2024-10-23 19:59 - 000002458 _____ C:\WINDOWS\system32\Tasks\DeleteSfxTempFolder 2024-10-23 19:59 - 2024-10-23 19:59 - 000002438 _____ C:\WINDOWS\system32\Tasks\SATSUM 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Public\Documents\Mes images 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Modèles 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Mes documents 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Documents\Mes images 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\ProgramData\Modèles 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\ProgramData\Bureau 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Program Files\Fichiers communs 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 _SHDL C:\Documents and Settings 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\pdfforge GmbH 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\Apple 2024-10-23 19:59 - 2024-10-23 19:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2024-10-23 19:59 - 2023-11-27 06:02 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2811764788-1574137795-208334877-500 2024-10-23 19:59 - 2023-07-05 01:03 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3171439308-3844393159-2328568443-500 2024-10-23 19:59 - 2022-11-03 05:36 - 000003392 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-353709614-2291778256-2954742011-500 2024-10-23 19:55 - 2024-10-30 11:15 - 003386728 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-10-23 19:55 - 2024-10-23 19:55 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\SystemCertificates 2024-10-23 19:55 - 2024-10-23 19:55 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Network 2024-10-23 19:55 - 2024-10-23 19:55 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Crypto 2024-10-23 19:55 - 2024-10-23 19:55 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-10-23 19:54 - 2024-10-30 11:08 - 000002482 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2024-10-23 19:51 - 2024-10-23 19:51 - 000000306 _____ C:\WINDOWS\Tasks\RNIdle Task.job 2024-10-23 19:51 - 2024-10-23 19:51 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\CLR Security Config 2024-10-23 19:50 - 2024-10-23 20:45 - 000000000 ____D C:\Users\gilbe 2024-10-23 19:50 - 2024-10-23 20:01 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Windows 2024-10-23 19:50 - 2024-10-23 19:52 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Spelling 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Voisinage réseau 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Voisinage d'impression 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Modèles 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Mes documents 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Menu Démarrer 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Documents\Mes vidéos 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Documents\Mes images 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\Documents\Ma musique 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-10-23 19:50 - 2024-10-23 19:50 - 000000000 _SHDL C:\Users\gilbe\AppData\Local\Historique 2024-10-23 19:48 - 2024-10-30 10:16 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2024-10-23 19:48 - 2024-10-30 07:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-10-23 19:48 - 2024-10-25 16:18 - 001015704 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-10-23 16:07 - 2024-10-23 21:01 - 000000000 ___DC C:\WINDOWS\Panther 2024-10-23 14:45 - 2024-10-23 14:45 - 000000000 ____D C:\Users\Default\AppData\Local\Malwarebytes 2024-10-23 08:29 - 2024-10-23 08:29 - 000251434 _____ C:\Users\gilbe\Downloads\Support étudiant_Droit de l'environnement_Yvan Leupin_Immodéveloppement 1 2024.pdf 2024-10-23 06:42 - 2024-10-23 06:43 - 007376922 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-23.pdf 2024-10-23 06:18 - 2024-10-30 11:18 - 000000000 ____D C:\Users\gilbe\AppData\Local\Malwarebytes 2024-10-23 06:18 - 2024-10-23 06:18 - 000002100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-10-23 06:16 - 2024-10-23 06:16 - 002549600 _____ (Malwarebytes) C:\Users\gilbe\Downloads\MBSetup.exe 2024-10-23 06:16 - 2024-10-23 06:16 - 002549600 _____ (Malwarebytes) C:\Users\gilbe\Downloads\MBSetup (1).exe 2024-10-23 06:16 - 2024-10-23 06:16 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-10-23 06:16 - 2024-10-23 06:16 - 000000000 ____D C:\Program Files\Malwarebytes 2024-10-22 21:34 - 2024-10-23 20:48 - 000000000 ____D C:\WINDOWS\SysWOW64\statReporter 2024-10-22 21:34 - 2024-10-22 21:34 - 000000000 ____D C:\Users\Public\Security Sessions 2024-10-22 21:34 - 2024-10-22 21:34 - 000000000 ____D C:\Users\gilbe\AppData\Local\AviraWebView2Cache 2024-10-22 21:33 - 2024-10-29 20:48 - 000448480 _____ C:\WINDOWS\system32\rtp.db 2024-10-22 21:32 - 2024-10-22 21:34 - 000000000 ____D C:\Users\gilbe\AppData\Local\Avira 2024-10-22 21:31 - 2024-10-29 20:49 - 000000000 ____D C:\ProgramData\Avira 2024-10-22 21:31 - 2024-10-22 21:31 - 006738360 _____ (Avira Operations GmbH) C:\Users\gilbe\Downloads\avira_fr_sptl1_317135610-1729628904-1729628904-1__pavwws.exe 2024-10-22 20:24 - 2024-10-22 20:26 - 000000000 ____D C:\Users\gilbe\Desktop\ia-a 2024-10-22 14:51 - 2024-10-22 14:51 - 007725658 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-22.pdf 2024-10-22 10:12 - 2024-10-22 21:32 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\iMazing 2024-10-22 10:12 - 2024-10-22 10:12 - 000000000 ____D C:\Users\gilbe\AppData\Local\DigiDNA 2024-10-22 10:11 - 2024-10-22 10:11 - 000000000 ____D C:\ProgramData\Apple Inc 2024-10-22 10:11 - 2024-10-22 10:11 - 000000000 ____D C:\Program Files\iPod 2024-10-22 10:09 - 2024-10-23 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMazing 2024-10-22 10:09 - 2024-10-22 10:09 - 000001870 _____ C:\Users\Public\Desktop\iMazing.lnk 2024-10-22 10:09 - 2024-10-22 10:09 - 000000000 ____D C:\ProgramData\DigiDNA 2024-10-22 10:09 - 2024-10-22 10:09 - 000000000 ____D C:\Program Files\DigiDNA 2024-10-22 10:08 - 2024-10-22 10:08 - 193372792 _____ (DigiDNA ) C:\Users\gilbe\Downloads\iMazing3forWindows.exe 2024-10-22 08:47 - 2024-10-22 14:51 - 002977384 _____ C:\Users\gilbe\Desktop\VENTE 2025 22.10.2024.xlsm 2024-10-21 20:50 - 2024-10-25 16:04 - 000000000 ____D C:\Users\gilbe\Desktop\USPI 2024-10-21 20:28 - 2024-10-21 20:28 - 000000000 ____D C:\Users\gilbe\Documents\Blocs-notes OneNote 2024-10-21 20:28 - 2024-10-21 20:28 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\OneNote 2024-10-21 20:24 - 2024-10-21 20:24 - 000000000 ____D C:\Users\gilbe\AppData\Local\INetHistory 2024-10-21 16:18 - 2024-10-21 16:18 - 000137956 _____ C:\Users\gilbe\Downloads\GilLogo_pale.zip 2024-10-21 16:15 - 2024-10-21 16:15 - 007771048 _____ C:\Users\gilbe\Downloads\Logo Acoustique Bernheim 2021.zip 2024-10-21 16:15 - 2024-10-21 16:15 - 007771048 _____ C:\Users\gilbe\Downloads\Logo Acoustique Bernheim 2021 (1).zip 2024-10-21 14:35 - 2024-10-21 14:35 - 000055775 _____ C:\Users\gilbe\Downloads\A4en-tete.pdf 2024-10-21 14:16 - 2024-10-21 14:16 - 000078090 _____ C:\Users\gilbe\Downloads\assura-basis-sa-2024-10-15-2263435652 (1).pdf 2024-10-21 06:11 - 2024-10-21 06:12 - 008818602 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-21.pdf 2024-10-18 09:03 - 2024-10-18 09:03 - 000127276 _____ C:\Users\gilbe\Downloads\enfant Dittmann.nhax 2024-10-18 08:42 - 2024-10-18 08:42 - 000035840 _____ C:\Users\gilbe\Downloads\Preisliste Yeanzi-5 (2).pdf 2024-10-18 08:39 - 2024-10-18 08:39 - 000035840 _____ C:\Users\gilbe\Downloads\Preisliste Yeanzi-5 (1).pdf 2024-10-18 07:55 - 2024-10-18 07:55 - 000035840 _____ C:\Users\gilbe\Downloads\Preisliste Yeanzi-5.pdf 2024-10-18 07:53 - 2024-10-18 07:54 - 000000000 ____D C:\Users\gilbe\Desktop\SKYLINE 2024-10-18 07:43 - 2024-10-18 07:43 - 009295073 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-18.pdf 2024-10-18 06:44 - 2024-10-18 06:44 - 000078090 _____ C:\Users\gilbe\Downloads\assura-basis-sa-2024-10-15-2263435652.pdf 2024-10-17 17:37 - 2024-10-21 07:02 - 000000000 ____D C:\Users\gilbe\Desktop\interface 2024-10-17 17:03 - 2024-10-17 17:04 - 012055211 _____ C:\Users\gilbe\Downloads\M_moire_Laura_ISRAEL.pdf 2024-10-17 16:26 - 2024-10-17 16:26 - 000000000 _____ C:\Users\gilbe\test1.py 2024-10-17 15:07 - 2024-10-17 15:07 - 000000000 ____D C:\Users\gilbe\.matplotlib 2024-10-17 14:54 - 2024-10-17 14:54 - 000000000 ____D C:\Users\gilbe\Documents\Audacity 2024-10-17 14:51 - 2024-10-21 08:14 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\audacity 2024-10-17 14:51 - 2024-10-17 14:51 - 000000872 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk 2024-10-17 14:51 - 2024-10-17 14:51 - 000000000 ____D C:\Users\gilbe\AppData\Local\audacity 2024-10-17 14:51 - 2024-10-17 14:51 - 000000000 ____D C:\Program Files\Audacity 2024-10-17 14:48 - 2024-10-23 15:02 - 000000000 ____D C:\Users\gilbe\AppData\Local\Muse Hub 2024-10-17 14:48 - 2024-10-23 07:24 - 000000000 ____D C:\Users\gilbe\AppData\Local\MuseSampler 2024-10-17 14:48 - 2024-10-17 14:48 - 000000000 ____D C:\Users\gilbe\Muse Hub 2024-10-17 14:48 - 2024-10-17 14:48 - 000000000 ____D C:\Program Files\dotnet 2024-10-17 14:47 - 2024-10-17 14:47 - 044979280 _____ (Muse Group) C:\Users\gilbe\Downloads\Muse_Hub (4).exe 2024-10-17 14:47 - 2024-10-17 14:47 - 044979280 _____ (Muse Group) C:\Users\gilbe\Downloads\Muse_Hub (3).exe 2024-10-17 14:46 - 2024-10-17 14:46 - 044979280 _____ (Muse Group) C:\Users\gilbe\Downloads\Muse_Hub (2).exe 2024-10-17 14:45 - 2024-10-17 14:46 - 044979280 _____ (Muse Group) C:\Users\gilbe\Downloads\Muse_Hub.exe 2024-10-17 14:45 - 2024-10-17 14:46 - 044979280 _____ (Muse Group) C:\Users\gilbe\Downloads\Muse_Hub (1).exe 2024-10-17 13:07 - 2024-10-17 13:07 - 000000000 ____D C:\Users\gilbe\AppData\Local\pip 2024-10-17 10:11 - 2024-10-23 19:52 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.13 2024-10-17 10:11 - 2024-10-17 10:11 - 028160096 _____ (Python Software Foundation) C:\Users\gilbe\Downloads\python-3.13.0-amd64.exe 2024-10-17 10:11 - 2024-10-17 10:11 - 000000000 ____D C:\Users\gilbe\AppData\Local\Package Cache 2024-10-17 10:02 - 2024-10-17 10:02 - 000301423 _____ (Johannes Wallroth ) C:\Users\gilbe\Downloads\setup_ertest-1.0.exe 2024-10-17 09:43 - 2024-10-23 19:52 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Equalizer APO 1.4 2024-10-17 09:43 - 2024-10-17 09:43 - 000000000 ____D C:\Program Files\EqualizerAPO 2024-10-17 09:42 - 2024-10-17 09:42 - 009957334 _____ C:\Users\gilbe\Downloads\EqualizerAPO64-1.4.exe 2024-10-16 10:37 - 2024-10-16 10:37 - 006590941 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-16.pdf 2024-10-16 10:27 - 2024-10-16 10:27 - 000562920 _____ C:\Users\gilbe\Downloads\_005195.pdf 2024-10-16 08:53 - 2024-10-16 08:53 - 000296036 _____ C:\Users\gilbe\Downloads\WhatsApp Image 2024-10-15 at 12.55.39.jpeg 2024-10-16 06:56 - 2024-10-16 06:56 - 000091610 _____ C:\Users\gilbe\Downloads\documents d'expédition rma 2328159 .zip 2024-10-16 06:56 - 2024-10-16 06:56 - 000091610 _____ C:\Users\gilbe\Downloads\documents d'expédition rma 2328159 (1).zip 2024-10-15 08:39 - 2024-10-15 08:39 - 003847881 _____ C:\Users\gilbe\Downloads\JUNGO_Sara_Epertise_finale_2024.pdf 2024-10-14 09:46 - 2024-10-14 09:46 - 008853853 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-14.pdf 2024-10-14 09:46 - 2024-10-14 09:46 - 000343289 _____ C:\Users\gilbe\Downloads\Page_1_24heures_LAUSANNE_2024-10-14.pdf 2024-10-14 07:14 - 2024-10-14 07:14 - 010419928 _____ C:\Users\gilbe\Downloads\HPPSdr.exe 2024-10-14 07:14 - 2024-10-14 07:14 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\HPPSDr 2024-10-14 06:35 - 2024-10-14 06:35 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-10-11 08:31 - 2024-10-11 08:31 - 002969688 _____ C:\Users\gilbe\Downloads\VENTE 2025 11.10.2024 (1).xlsm 2024-10-09 08:17 - 2024-10-09 08:17 - 000175870 _____ C:\Users\gilbe\Downloads\2024-09-18_GEHRING André_BERNHEIM Acoustique_Devis CHF 4000.pdf 2024-10-09 08:08 - 2024-10-09 08:08 - 000165873 _____ C:\Users\gilbe\Downloads\DEVIS ROUSEIL.pdf 2024-10-09 07:38 - 2024-10-09 07:38 - 000241822 _____ C:\Users\gilbe\Downloads\salt-mobile-sa-2024-10-07-24090002095228.pdf 2024-10-09 07:37 - 2024-10-09 07:37 - 000168088 _____ C:\Users\gilbe\Downloads\romande-energie-sa-2024-09-14-010009119384.pdf 2024-10-08 10:03 - 2024-10-08 10:03 - 000158119 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302066065102024 (1).pdf 2024-10-08 10:03 - 2024-10-08 10:03 - 000158080 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302059270102024 (3).pdf 2024-10-08 10:02 - 2024-10-08 10:02 - 000000250 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302066065102024.pdf 2024-10-08 09:32 - 2024-10-08 09:32 - 018568474 _____ C:\Users\gilbe\Downloads\Preisliste_liste_de_prix_09_2024_2.pdf 2024-10-08 06:21 - 2024-10-08 06:21 - 000000250 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302059270102024.pdf 2024-10-08 06:21 - 2024-10-08 06:21 - 000000250 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302059270102024 (2).pdf 2024-10-08 06:21 - 2024-10-08 06:21 - 000000250 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-10-03-3302059270102024 (1).pdf 2024-10-07 13:54 - 2024-10-07 13:54 - 000001754 _____ C:\Users\gilbe\Downloads\image004.emz 2024-10-07 09:52 - 2024-10-07 09:52 - 000069610 _____ C:\Users\gilbe\Downloads\extract_CHE-135.677.965.pdf 2024-10-07 09:27 - 2024-10-07 09:27 - 000766224 _____ (Python Software Foundation) C:\WINDOWS\py.exe 2024-10-07 09:27 - 2024-10-07 09:27 - 000764688 _____ (Python Software Foundation) C:\WINDOWS\pyw.exe 2024-10-07 09:27 - 2024-10-07 09:27 - 000050960 _____ (Python Software Foundation) C:\WINDOWS\pyshellext.amd64.dll 2024-10-07 07:29 - 2024-10-07 07:29 - 000294851 _____ C:\Users\gilbe\Downloads\pache.nhax 2024-10-06 12:28 - 2024-10-06 12:28 - 000108979 _____ C:\Users\gilbe\Downloads\CHE317331300-06.10.2024-Merkmale.pdf 2024-10-05 08:28 - 2024-10-05 08:28 - 000218931 _____ C:\Users\gilbe\Downloads\Encashment Form NEW.V8 (1).pdf 2024-10-05 08:27 - 2024-10-05 08:27 - 000063675 _____ C:\Users\gilbe\Downloads\sunrise-gmbh-yallo-2024-10-03-633179468.pdf 2024-10-05 08:27 - 2024-10-05 08:27 - 000063675 _____ C:\Users\gilbe\Downloads\sunrise-gmbh-yallo-2024-10-03-633179468 (1).pdf 2024-10-03 15:02 - 2024-10-03 15:02 - 2473210620 _____ C:\Users\gilbe\Downloads\test (1).mp4 2024-10-03 11:07 - 2024-10-03 11:07 - 2473210620 _____ C:\Users\gilbe\Downloads\test.mp4 2024-10-02 06:27 - 2024-10-02 06:27 - 008993989 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-02.pdf 2024-10-01 14:25 - 2024-10-01 14:25 - 002615120 _____ C:\Users\gilbe\Downloads\915357c8-0369-4e8a-9233-4121d61aac4b (1).pdf 2024-10-01 14:24 - 2024-10-01 14:24 - 000148058 _____ C:\Users\gilbe\Downloads\IMBE-18819664-HS2024 (1) (1).pdf 2024-10-01 14:22 - 2024-10-01 14:22 - 000148058 _____ C:\Users\gilbe\Downloads\IMBE-18819664-HS2024 (1).pdf 2024-10-01 14:19 - 2024-10-01 14:19 - 002615120 _____ C:\Users\gilbe\Downloads\915357c8-0369-4e8a-9233-4121d61aac4b.pdf 2024-10-01 12:09 - 2024-10-01 12:09 - 000218931 _____ C:\Users\gilbe\Downloads\Encashment Form NEW.V8.pdf 2024-10-01 11:54 - 2024-10-01 11:54 - 009129109 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-10-01.pdf 2024-10-01 11:40 - 2024-10-01 11:40 - 000477630 _____ C:\Users\gilbe\Downloads\croxford.nhax 2024-09-30 15:31 - 2024-09-30 15:31 - 001172564 _____ C:\Users\gilbe\Downloads\ETAT DES LIEUX Prilly 2.pdf 2024-09-30 12:25 - 2024-09-30 12:26 - 003086812 _____ C:\Users\gilbe\Downloads\Phonak Infinio Sphere FR.pdf 2024-09-30 07:44 - 2024-09-30 07:44 - 000740599 _____ C:\Users\gilbe\Downloads\1624845.pdf 2024-09-27 10:28 - 2024-09-27 10:28 - 000329641 _____ C:\Users\gilbe\Downloads\34_Ride_for_Israel_Remerciement_don.pdf 2024-09-27 09:12 - 2024-09-27 09:12 - 009121004 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-27.pdf 2024-09-26 08:32 - 2024-09-26 08:32 - 000014357 _____ C:\Users\gilbe\Downloads\Liste chargeurs à facturer Mr Bernheim.xlsx 2024-09-26 06:29 - 2024-09-26 06:29 - 009689615 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-26.pdf 2024-09-25 15:28 - 2024-09-25 15:28 - 000114790 _____ C:\Users\gilbe\Downloads\BILAN 2024 (2).PDF 2024-09-25 15:09 - 2024-09-25 15:09 - 000049783 _____ C:\Users\gilbe\Downloads\Demoliste Acoustique Bernheim Sàrl (2).xlsx 2024-09-25 14:51 - 2024-09-25 14:51 - 000049783 _____ C:\Users\gilbe\Downloads\Demoliste Acoustique Bernheim Sàrl (1).xlsx 2024-09-25 09:40 - 2024-09-25 09:40 - 000002412 _____ C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bitwarden.lnk 2024-09-25 09:40 - 2024-09-25 09:40 - 000002404 _____ C:\Users\gilbe\Desktop\Bitwarden.lnk 2024-09-25 09:40 - 2024-09-25 09:40 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Bitwarden 2024-09-25 09:40 - 2024-09-25 09:40 - 000000000 ____D C:\Users\gilbe\AppData\Local\bitwarden-updater 2024-09-25 09:39 - 2024-09-25 09:39 - 000731968 _____ (Bitwarden Inc.) C:\Users\gilbe\Downloads\Bitwarden-Installer-2024.9.0.exe 2024-09-25 08:01 - 2024-09-25 08:01 - 000005226 _____ C:\Users\gilbe\Downloads\Anamnese_Audioprothese.xlsx 2024-09-25 07:11 - 2024-09-25 07:11 - 000071697 _____ C:\Users\gilbe\Downloads\5c8feca75d11bce215522f98999ef09e58c2d556.pdf 2024-09-24 15:37 - 2024-09-24 15:37 - 000193607 _____ C:\Users\gilbe\Downloads\FONTANNAZ.nhax 2024-09-23 15:08 - 2024-09-23 15:09 - 009149539 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-23.pdf 2024-09-23 08:58 - 2024-09-23 08:58 - 000045309 _____ C:\Users\gilbe\Downloads\Sept27_private_fr.ics 2024-09-23 08:12 - 2024-09-23 08:12 - 002996295 _____ C:\Users\gilbe\Downloads\VENTE 2025 19.09.2024.xlsm 2024-09-23 08:09 - 2024-09-23 08:09 - 019177652 _____ C:\Users\gilbe\Downloads\Preisliste_liste_de_prix_09_2024.pdf 2024-09-19 20:24 - 2024-09-19 20:24 - 000114790 _____ C:\Users\gilbe\Downloads\BILAN 2024.PDF 2024-09-19 20:24 - 2024-09-19 20:24 - 000114790 _____ C:\Users\gilbe\Downloads\BILAN 2024 (1).PDF 2024-09-19 10:37 - 2024-09-19 10:37 - 002402067 _____ C:\Users\gilbe\Downloads\senerchia.nhax 2024-09-19 06:58 - 2024-09-19 06:58 - 000346989 _____ C:\Users\gilbe\Downloads\monney irène.nhax 2024-09-18 17:16 - 2024-09-18 17:16 - 000616843 _____ C:\Users\gilbe\Downloads\Fwd_ Rapport IRM Gil Bernheim.pdf.zip 2024-09-18 16:49 - 2024-09-18 16:50 - 000043054 _____ C:\Users\gilbe\Downloads\Copie pour le patient 3243287008 (1).pdf 2024-09-18 16:49 - 2024-09-18 16:49 - 000065483 _____ C:\Users\gilbe\Downloads\Facture 3243287008.pdf 2024-09-18 16:49 - 2024-09-18 16:49 - 000043054 _____ C:\Users\gilbe\Downloads\Copie pour le patient 3243287008.pdf 2024-09-18 16:48 - 2024-09-18 16:48 - 000043124 _____ C:\Users\gilbe\Downloads\Justificatif de remboursement 3243287008.pdf 2024-09-18 16:28 - 2024-09-18 16:28 - 000692212 _____ C:\Users\gilbe\Downloads\M This interview cuisine moléculaire pour travail de maturité-20240328_073450-Meeting Recording.mp4.html 2024-09-18 13:47 - 2024-09-18 13:47 - 000189186 _____ C:\Users\gilbe\Downloads\CHATELAIN Lydia (1).nhax 2024-09-18 13:46 - 2024-09-18 13:46 - 000189186 _____ C:\Users\gilbe\Downloads\CHATELAIN Lydia.nhax 2024-09-18 08:59 - 2024-09-18 08:59 - 000175870 _____ C:\Users\gilbe\Downloads\devis gehring 1.pdf 2024-09-18 07:09 - 2024-09-18 07:09 - 008621668 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-18.pdf 2024-09-17 08:44 - 2024-10-23 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2024-09-17 08:44 - 2024-09-17 08:44 - 000001823 _____ C:\Users\Public\Desktop\iTunes.lnk 2024-09-17 08:43 - 2024-09-17 08:43 - 000000000 ____D C:\Program Files\iTunes 2024-09-13 10:21 - 2024-09-13 10:21 - 000148058 _____ C:\Users\gilbe\Downloads\IMBE-18819664-HS2024.pdf 2024-09-13 08:18 - 2024-09-13 08:18 - 001992121 _____ C:\Users\gilbe\Downloads\GROUP-IT région Vaud et Léman - Rendu des pré-évaluations.zip 2024-09-11 16:03 - 2024-09-11 16:03 - 000257760 _____ C:\Users\gilbe\Downloads\salt-mobile-sa-2024-09-05-24093622183.pdf 2024-09-11 06:18 - 2024-09-11 06:18 - 008684605 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-11.pdf 2024-09-10 12:07 - 2024-09-10 12:07 - 000287504 _____ C:\Users\gilbe\Downloads\salt-mobile-sa-2024-09-09-24093722202.pdf 2024-09-10 10:11 - 2024-09-11 09:59 - 000051412 _____ C:\Users\gilbe\Downloads\Demoliste Acoustique Bernheim Sàrl.xlsx 2024-09-10 06:21 - 2024-09-10 06:21 - 009006933 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-10.pdf 2024-09-09 15:11 - 2024-10-23 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2024-09-09 15:11 - 2024-09-09 15:11 - 045181584 _____ (Avanquest pdfforge GmbH) C:\Users\gilbe\Downloads\PDFCreator-5_3_1-Setup.exe 2024-09-09 06:20 - 2024-09-09 06:20 - 009209956 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-09.pdf 2024-09-08 11:21 - 2024-09-08 11:21 - 002299983 _____ C:\Users\gilbe\Downloads\Montanagest_Fabrini_vente.pdf 2024-09-06 11:23 - 2024-09-06 11:23 - 000023460 _____ C:\Users\gilbe\Downloads\0331109845 20240906 083125.PDF 2024-09-06 11:20 - 2024-09-06 11:20 - 000035750 _____ C:\Users\gilbe\Downloads\1895717-51_Écritures_06-09-2024.pdf 2024-09-06 08:48 - 2024-10-07 18:23 - 000000000 ____D C:\Users\gilbe\Desktop\TRAVLERS 2024-09-06 08:30 - 2024-09-06 08:30 - 000124934 _____ C:\Users\gilbe\Downloads\RIB - 1100821 - USD.pdf 2024-09-05 13:33 - 2024-09-05 13:33 - 009489981 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-05.pdf 2024-09-05 12:57 - 2024-09-05 12:57 - 000000000 ____D C:\Users\gilbe\AppData\Local\ToastNotificationManagerCompat 2024-09-05 08:16 - 2024-09-05 08:16 - 000190784 _____ C:\Users\gilbe\Downloads\reymond francoise.nhax 2024-09-04 09:41 - 2024-09-04 09:41 - 019705024 _____ (HIMSA II K/S) C:\Users\gilbe\Downloads\NLWUpgrader_3.1.0.92.exe 2024-09-04 09:10 - 2024-09-04 09:10 - 000063368 _____ C:\Users\gilbe\Downloads\sunrise-gmbh-yallo-2024-09-04-632601041.pdf 2024-09-04 09:09 - 2024-09-04 09:09 - 000158496 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-09-03-3302026728092024.pdf 2024-09-04 09:09 - 2024-09-04 09:09 - 000157516 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-09-03-3302024265092024.pdf 2024-09-04 06:49 - 2024-09-04 06:49 - 008329246 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-04.pdf 2024-09-03 17:53 - 2024-09-03 17:53 - 000049983 _____ C:\Users\gilbe\Downloads\memberplus.pkpass 2024-09-03 15:55 - 2024-09-03 15:59 - 400687104 _____ C:\Users\gilbe\Downloads\Non confirmé 625056.crdownload 2024-09-03 15:44 - 2024-09-03 15:44 - 008018271 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-03.pdf 2024-09-02 06:08 - 2024-09-02 06:08 - 008560037 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-09-02.pdf 2024-08-29 17:32 - 2024-08-29 17:32 - 304914873 _____ C:\Users\gilbe\Downloads\test.mov 2024-08-29 06:20 - 2024-08-29 06:20 - 009573890 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-29.pdf 2024-08-28 14:22 - 2024-08-28 14:22 - 000000000 ____D C:\SWSetup 2024-08-28 07:21 - 2024-08-28 07:21 - 009898858 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-28.pdf 2024-08-28 06:40 - 2024-10-23 20:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starkey 2024-08-28 06:38 - 2024-08-28 06:38 - 000000000 ____D C:\ProgramData\ProFitSetup 4.0.10160.0 2024-08-27 06:19 - 2024-08-27 06:20 - 007363664 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-27.pdf 2024-08-26 08:57 - 2024-08-26 08:57 - 000090338 _____ C:\Users\gilbe\Downloads\9e733596e73f842987cad638909d0e7aa87d45c3.pdf 2024-08-22 09:02 - 2024-09-23 14:18 - 003648728 _____ C:\Users\gilbe\Desktop\VENTE TVA 2024 30.06.241.xlsm 2024-08-22 08:13 - 2024-06-03 04:50 - 001350672 _____ (HP Inc.) C:\WINDOWS\system32\HPScanTEDrv_x64_DiscoveryLibDyn.dll 2024-08-22 08:13 - 2024-06-03 04:50 - 000699400 _____ (HP Inc., LP) C:\WINDOWS\system32\HPWia2Drv.dll 2024-08-22 08:13 - 2024-06-03 04:50 - 000168976 _____ (TODO: ) C:\WINDOWS\system32\HPWIAExtensionUI.dll 2024-08-22 08:13 - 2024-06-03 04:49 - 007685024 _____ (HP Inc.) C:\WINDOWS\system32\HPScanTEDrv_x64.dll 2024-08-22 08:13 - 2024-06-03 04:49 - 005382560 _____ (HP Inc.) C:\WINDOWS\SysWOW64\HPScanTEDrv.dll 2024-08-22 08:13 - 2024-06-03 04:49 - 000992160 _____ (HP Inc.) C:\WINDOWS\SysWOW64\DiscoveryLibDyn.dll 2024-08-21 07:14 - 2024-08-21 07:14 - 008645403 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-21.pdf 2024-08-20 10:36 - 2024-08-20 10:36 - 000020844 _____ C:\Users\gilbe\Downloads\Bernheim liste Demo.xlsx 2024-08-20 10:36 - 2024-08-20 10:36 - 000020844 _____ C:\Users\gilbe\Downloads\Bernheim liste Demo (1).xlsx 2024-08-20 09:48 - 2024-08-20 09:48 - 000104432 _____ C:\Users\gilbe\Downloads\Guide_achat_appareil_auditif_09.2020.pdf 2024-08-20 07:39 - 2024-08-20 07:39 - 002414297 _____ C:\Users\gilbe\Downloads\MULHEMANN.nhax 2024-08-20 06:16 - 2024-08-20 06:16 - 008484974 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-20.pdf 2024-08-19 10:15 - 2024-08-19 10:15 - 001583846 _____ C:\Users\gilbe\Downloads\mode-d-emploi-telecommande-starkey.pdf 2024-08-15 08:44 - 2024-08-15 08:44 - 000089968 _____ C:\Users\gilbe\Downloads\demande avs Mr dinatale.pdf 2024-08-15 06:09 - 2024-08-15 06:09 - 010209236 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-15.pdf 2024-08-14 07:34 - 2024-08-14 07:34 - 000409422 _____ C:\Users\gilbe\Downloads\TARARAN (1).nhax 2024-08-13 11:23 - 2024-08-13 11:23 - 007704317 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-13.pdf 2024-08-13 09:23 - 2024-08-13 09:23 - 000028152 _____ C:\Users\gilbe\Downloads\GUISOLAN (1).nhax 2024-08-12 07:11 - 2024-08-12 07:11 - 007325331 _____ C:\Users\gilbe\Downloads\Toute_l_edition_24heures_LAUSANNE_2024-08-12.pdf 2024-08-12 06:39 - 2024-10-23 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMPASS GPS Tools 2024-08-12 06:39 - 2024-08-12 06:39 - 000002076 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMPASS GPS.lnk 2024-08-12 06:39 - 2024-08-12 06:39 - 000002076 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COMPASS GPS Stand-alone database.lnk 2024-08-10 09:30 - 2024-08-10 09:30 - 000308985 _____ C:\Users\gilbe\Downloads\salt-mobile-sa-2024-08-09-24083551761.pdf 2024-08-10 09:22 - 2024-08-10 09:22 - 000409422 _____ C:\Users\gilbe\Downloads\TARARAN.nhax 2024-08-10 09:17 - 2024-08-10 09:18 - 000028152 _____ C:\Users\gilbe\Downloads\GUISOLAN.nhax 2024-08-09 18:07 - 2024-08-09 18:07 - 000093541 _____ C:\Users\gilbe\Downloads\REP_P_CH5809000000805377880_1108078297_0_2024073001301532.pdf 2024-08-09 18:06 - 2024-08-09 18:06 - 000088273 _____ C:\Users\gilbe\Downloads\REP_P_CH5809000000805377880_1108078297_0_2024073101262653.pdf 2024-08-09 18:06 - 2024-08-09 18:06 - 000088273 _____ C:\Users\gilbe\Downloads\REP_P_CH5809000000805377880_1108078297_0_2024073101262653 (1).pdf 2024-08-09 15:53 - 2024-08-09 15:53 - 000158154 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-08-03-3302038368082024.pdf 2024-08-09 15:53 - 2024-08-09 15:53 - 000063294 _____ C:\Users\gilbe\Downloads\sunrise-gmbh-yallo-2024-08-05-631676155.pdf 2024-08-09 15:52 - 2024-08-09 15:52 - 000157892 _____ C:\Users\gilbe\Downloads\swisscom-schweiz-ag-2024-08-03-3302052655082024.pdf 2024-08-09 15:46 - 2024-08-09 15:46 - 000265830 _____ C:\Users\gilbe\Downloads\salt-mobile-sa-2024-08-08-24083375530.pdf 2024-08-09 15:33 - 2024-08-09 15:33 - 001063616 _____ C:\Users\gilbe\Downloads\petitleorevientdallemagne.pdf 2024-08-09 13:28 - 2024-08-09 13:28 - 000002508 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-30 11:18 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-10-30 11:15 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF 2024-10-30 11:08 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2024-10-30 11:08 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState 2024-10-30 11:08 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-10-30 11:08 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-10-30 11:08 - 2024-02-12 20:24 - 000000208 _____ C:\WINDOWS\SysWOW64\AbBakConfig.dat 2024-10-30 11:08 - 2024-02-12 20:24 - 000000150 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2024-10-30 11:08 - 2024-02-08 18:05 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2024-10-30 11:08 - 2022-11-03 05:32 - 000012288 ___SH C:\DumpStack.log.tmp 2024-10-30 11:07 - 2024-04-01 08:21 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2024-10-30 11:03 - 2022-05-07 06:24 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2024-10-30 10:28 - 2024-02-08 18:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Phonak 2024-10-30 10:13 - 2024-02-08 13:53 - 000000000 ____D C:\Users\gilbe\AppData\Local\D3DSCache 2024-10-30 09:35 - 2024-02-08 19:51 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\GN 2024-10-30 08:31 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps 2024-10-30 08:01 - 2024-02-08 16:33 - 000000000 ____D C:\ProgramData\Package Cache 2024-10-30 08:00 - 2022-11-03 05:32 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-10-30 07:44 - 2024-02-10 15:30 - 000000000 ____D C:\Users\gilbe\AppData\Local\OGH 2024-10-29 22:35 - 2024-02-08 13:53 - 000000000 ___RD C:\Users\gilbe\OneDrive 2024-10-29 22:34 - 2024-02-08 19:54 - 000002212 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-10-29 21:58 - 2024-02-08 13:07 - 000000000 ____D C:\Users\gilbe\AppData\Local\Packages 2024-10-29 21:26 - 2023-11-27 06:46 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2024-10-29 21:22 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate 2024-10-29 21:14 - 2023-07-05 01:10 - 000000000 ____D C:\ProgramData\HP 2024-10-29 21:13 - 2023-10-05 02:35 - 000000000 ____D C:\hp 2024-10-29 20:45 - 2024-02-09 09:12 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-10-29 20:32 - 2022-11-03 05:35 - 000000000 ____D C:\ProgramData\Packages 2024-10-29 18:47 - 2024-02-08 21:40 - 000000000 ____D C:\Users\gilbe\Desktop\CIEL 2024-10-29 18:38 - 2024-02-12 20:25 - 000001024 ____H C:\SYSTAG.BIN 2024-10-29 17:29 - 2024-02-08 21:21 - 000002177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-10-28 08:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2024-10-28 08:15 - 2024-02-08 18:35 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Word 2024-10-28 07:15 - 2022-11-03 05:32 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-10-27 10:38 - 2024-02-08 20:27 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Excel 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-10-25 16:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-10-25 16:16 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-10-25 16:16 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-10-25 16:16 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-10-25 16:16 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning 2024-10-25 16:16 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-10-25 16:16 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-10-25 14:35 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\appcompat 2024-10-25 12:08 - 2024-02-08 21:40 - 000000000 ____D C:\Users\gilbe\Desktop\divers gb hp 2024-10-25 11:27 - 2023-11-27 06:19 - 000057824 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\HpReadHWData.sys 2024-10-23 21:01 - 2024-02-08 14:11 - 000000000 ____D C:\Users\gilbe\AppData\Local\CrashDumps 2024-10-23 21:00 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-10-23 20:48 - 2024-06-07 13:33 - 000000000 ____D C:\WINDOWS\system32\%userprofile% 2024-10-23 20:48 - 2024-06-04 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2024-10-23 20:48 - 2024-04-01 17:36 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-10-23 20:48 - 2024-04-01 08:29 - 000000000 ____D C:\WINDOWS\Setup 2024-10-23 20:48 - 2024-04-01 08:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2024-10-23 20:48 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\spool 2024-10-23 20:48 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-10-23 20:48 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2024-10-23 20:48 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-10-23 20:48 - 2024-03-13 16:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2024-10-23 20:48 - 2024-02-21 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ReSound 2024-10-23 20:48 - 2024-02-12 20:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper 2024-10-23 20:48 - 2024-02-10 11:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Otometrics 2024-10-23 20:48 - 2024-02-08 21:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2024-10-23 20:48 - 2024-02-08 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Point Grey FlyCapture2 SDK 2024-10-23 20:48 - 2024-02-08 19:04 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2024-10-23 20:48 - 2024-02-08 19:04 - 000000000 ____D C:\WINDOWS\system32\1033 2024-10-23 20:48 - 2024-02-08 19:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014 2024-10-23 20:48 - 2024-02-08 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fitting Software 2024-10-23 20:48 - 2024-02-08 17:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eLohnausweis SSK 2024-10-23 20:48 - 2024-02-08 17:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oticon 2024-10-23 20:48 - 2024-02-08 17:46 - 000000000 ____D C:\WINDOWS\system32\Macromed 2024-10-23 20:48 - 2024-02-08 17:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starkey Laboratories 2024-10-23 20:48 - 2024-02-08 16:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bernafon 2024-10-23 20:48 - 2024-02-08 15:26 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2024-10-23 20:48 - 2024-02-08 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NOAHlink 2024-10-23 20:48 - 2024-02-08 14:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HIMSA 2024-10-23 20:48 - 2023-11-27 06:15 - 000000000 ____D C:\WINDOWS\SysWOW64\Amazon 2024-10-23 20:48 - 2022-05-07 07:10 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2024-10-23 20:48 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-10-23 20:48 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2024-10-23 20:48 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2024-10-23 20:46 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\schemas 2024-10-23 20:46 - 2024-02-10 14:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cochlear 2024-10-23 20:46 - 2024-02-08 19:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2024-10-23 20:46 - 2024-02-08 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unitron 2024-10-23 20:46 - 2024-02-08 14:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ciel 2024-10-23 20:46 - 2023-11-27 06:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\Intel 2024-10-23 20:46 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-10-23 20:46 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-10-23 20:44 - 2024-04-01 17:37 - 000000000 ___SD C:\WINDOWS\system32\AppV 2024-10-23 20:44 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\InboxApps 2024-10-23 20:44 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2024-10-23 20:44 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2024-10-23 20:44 - 2024-04-01 17:36 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemApps 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\te-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\or-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\is-IS 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\id-ID 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\et-EE 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\es-MX 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Com 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\be-BY 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\as-IN 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\am-ET 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\IME 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore 2024-10-23 20:44 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System 2024-10-23 20:44 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing 2024-10-23 20:43 - 2024-04-01 17:37 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2024-10-23 20:43 - 2024-04-01 17:37 - 000028898 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2024-10-23 20:43 - 2024-04-01 08:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2024-10-23 20:43 - 2024-04-01 08:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2024-10-23 20:42 - 2024-04-01 08:22 - 000063064 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll 2024-10-23 20:42 - 2024-04-01 08:22 - 000062952 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcPseDMA.dll 2024-10-23 20:42 - 2024-04-01 08:22 - 000062944 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll 2024-10-23 20:40 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\OCR 2024-10-23 20:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2024-10-23 20:39 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\MUI 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\system32\winrm 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\system32\WCN 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\system32\slmgr 2024-10-23 20:38 - 2024-04-01 17:33 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2024-10-23 20:38 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\dsc 2024-10-23 20:38 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender 2024-10-23 20:38 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2024-10-23 20:01 - 2022-11-03 05:35 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-10-23 19:59 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender 2024-10-23 19:59 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Windows NT 2024-10-23 19:53 - 2024-04-01 08:26 - 000000000 __RHD C:\Users\Public\Libraries 2024-10-23 19:52 - 2024-06-06 17:54 - 000000000 ____D C:\Users\gilbe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2024-10-23 19:51 - 2024-04-01 08:26 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2024-10-23 19:51 - 2023-11-27 06:14 - 000000000 ____D C:\Users\Default\AppData\Local\Packages 2024-10-23 19:49 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-10-23 19:49 - 2024-02-12 18:43 - 000000000 ____D C:\WINDOWS\Firmware 2024-10-23 19:48 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2024-10-23 10:45 - 2024-02-08 21:40 - 000051914 _____ C:\Users\gilbe\Desktop\REP1.xlsm 2024-10-23 07:24 - 2024-02-08 19:16 - 000000000 ____D C:\ProgramData\boost_interprocess 2024-10-23 06:18 - 2024-02-08 13:09 - 000000000 ____D C:\Users\gilbe\AppData\Local\PlaceholderTileLogoFolder 2024-10-22 20:10 - 2023-11-27 06:20 - 000000000 ____D C:\Program Files\Common Files\McAfee 2024-10-22 08:55 - 2024-02-08 21:51 - 000000000 ____D C:\Users\gilbe\Desktop\vente 2024-10-21 06:17 - 2023-07-05 01:13 - 000000000 ____D C:\Program Files\Microsoft Office 2024-10-18 12:05 - 2024-02-12 20:24 - 000000000 ____D C:\ProgramData\AomeiBR 2024-10-14 10:26 - 2024-02-10 14:06 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2024-10-14 07:14 - 2023-07-05 01:10 - 000000000 ____D C:\Program Files (x86)\HP 2024-10-09 10:09 - 2024-02-09 12:16 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-10-09 09:51 - 2024-02-09 12:16 - 201324920 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-10-07 08:36 - 2024-02-20 09:49 - 000000000 ____D C:\Users\gilbe\AppData\Local\ElevatedDiagnostics 2024-10-02 09:47 - 2024-02-08 21:40 - 000833024 _____ C:\Users\gilbe\Desktop\fichier client référence 30.6.21.xlsx ==================== FLock ============================== 2022-11-03 05:32 C:\WINDOWS\system32\config\BFS ==================== SigCheckExt ========================= 2024-03-13 16:39 - 2012-12-12 11:37 - 000318464 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\BrFaxTxAppRun64.dll 2024-03-13 16:39 - 2013-03-08 07:44 - 000087040 _____ (Brother Industries, Ltd.) C:\WINDOWS\system32\BrNetSti.dll 2024-03-13 16:39 - 2013-07-03 03:46 - 000065024 _____ (Brother Industries,Ltd) C:\WINDOWS\system32\Brnsplg.dll 2024-03-13 16:39 - 2005-04-22 05:36 - 000143360 _____ C:\WINDOWS\system32\BrSNMP64.dll 2024-03-13 16:39 - 2013-03-08 07:45 - 000059904 _____ (Brother Industries,Ltd.) C:\WINDOWS\system32\BrWiaNCp.dll 2024-03-13 16:39 - 2013-07-12 06:03 - 000251392 _____ (brother) C:\WINDOWS\system32\NSSRH64.dll 2024-02-08 17:55 - 2024-02-08 17:55 - 000196096 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2024-03-13 16:39 - 2010-03-15 19:45 - 000073728 _____ (Brother Industries Ltd.) C:\WINDOWS\SysWOW64\BrDctF2.dll 2024-03-13 16:39 - 2007-12-13 22:16 - 000005120 _____ (Brother Industries Ltd.) C:\WINDOWS\SysWOW64\BrDctF2L.dll 2024-03-13 16:39 - 2012-12-03 13:39 - 000002560 _____ (Brother Industries Ltd.) C:\WINDOWS\SysWOW64\BrDctF2S.dll 2024-03-13 16:39 - 2013-07-12 14:03 - 000214016 _____ (brother) C:\WINDOWS\SysWOW64\NSSearch.dll 2024-10-29 19:45 - 2024-10-29 19:47 - 002397696 _____ (Farbar) C:\Users\gilbe\Desktop\FRST64 (2).exe 2024-10-17 09:42 - 2024-10-17 09:42 - 009957334 _____ C:\Users\gilbe\Downloads\EqualizerAPO64-1.4.exe 2024-10-17 10:02 - 2024-10-17 10:02 - 000301423 _____ (Johannes Wallroth ) C:\Users\gilbe\Downloads\setup_ertest-1.0.exe 2024-10-29 21:01 - 2024-10-29 21:01 - 003362816 _____ (Nicolas Coolman) C:\Users\gilbe\Downloads\ZHPCleaner.exe 2024-10-29 18:57 - 2024-10-29 18:57 - 003536896 _____ (Nicolas Coolman) C:\Users\gilbe\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {185716d3-8d35-11ee-9712-606d3cc9c998} {dcf5abd5-c679-11ee-966d-806e6f6e6963} timeout 0 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} isolatedcontext Yes default {current} resumeobject {bbb029c1-9177-11ef-b54f-d22059f11fb5} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {185716d3-8d35-11ee-9712-606d3cc9c998} description EFI USB Device isolatedcontext Yes Application logicielle (101fffff) -------------------------------- identificateur {dcf5abd5-c679-11ee-966d-806e6f6e6963} description Internal Hard Disk or Solid State Disk isolatedcontext Yes Chargeur de démarrage Windows ----------------------------- identificateur {185716d2-8d35-11ee-9712-606d3cc9c998} device partition=C: path \windows\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {ca8fe905-9152-11ef-a5ef-f88c4b4015c6} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \windows resumeobject {185716d1-8d35-11ee-9712-606d3cc9c998} nx OptIn bootmenupolicy Standard hypervisorlaunchtype Auto Installation de Windows ----------------------- identificateur {7254a080-1510-4e85-ac0f-e7fb3d444736} device ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{ca8fe907-9152-11ef-a5ef-f88c4b4015c6} custom:11000083 partition=C: path \windows\system32\winload.efi description Windows Rollback locale de-DE bootstatfilepath \$WINDOWS.~BT\Sources\SafeOS\bootstat.dat inherit {bootloadersettings} restartonfailure Yes isolatedcontext Yes osdevice ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{ca8fe907-9152-11ef-a5ef-f88c4b4015c6} custom:21000152 partition=C: systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {bbb029c3-9177-11ef-b54f-d22059f11fb5} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {bbb029c1-9177-11ef-b54f-d22059f11fb5} nx OptOut bootmenupolicy Standard hypervisorlaunchtype Auto Chargeur de démarrage Windows ----------------------------- identificateur {bbb029c3-9177-11ef-b54f-d22059f11fb5} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{bbb029c4-9177-11ef-b54f-d22059f11fb5} path \windows\system32\winload.efi description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{bbb029c4-9177-11ef-b54f-d22059f11fb5} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {ca8fe905-9152-11ef-a5ef-f88c4b4015c6} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{ca8fe906-9152-11ef-a5ef-f88c4b4015c6} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{ca8fe906-9152-11ef-a5ef-f88c4b4015c6} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {d24243bf-411a-11ef-969d-d4e98a1a9d33} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{d24243c0-411a-11ef-969d-d4e98a1a9d33} path \windows\system32\winload.efi description Windows Recovery Environment locale de-DE inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{d24243c0-411a-11ef-969d-d4e98a1a9d33} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {185716d1-8d35-11ee-9712-606d3cc9c998} device partition=C: path \windows\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {ca8fe905-9152-11ef-a5ef-f88c4b4015c6} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {bbb029c1-9177-11ef-b54f-d22059f11fb5} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {bbb029c3-9177-11ef-b54f-d22059f11fb5} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {d24243bc-411a-11ef-969d-d4e98a1a9d33} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale de-DE inherit {resumeloadersettings} recoverysequence {d24243bf-411a-11ef-969d-d4e98a1a9d33} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Windows-Speicherdiagnose locale fr-FR inherit {globalsettings} badmemoryaccess Yes isolatedcontext Yes Paramètres EMS -------------- identificateur {emssettings} bootems No isolatedcontext Yes Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Local isolatedcontext Yes Erreurs de mémoire RAM ---------------------- identificateur {badmemory} isolatedcontext Yes Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} isolatedcontext Yes Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} isolatedcontext Yes Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} isolatedcontext Yes hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} isolatedcontext Yes Options de périphérique ----------------------- identificateur {bbb029c4-9177-11ef-b54f-d22059f11fb5} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de périphérique ----------------------- identificateur {ca8fe906-9152-11ef-a5ef-f88c4b4015c6} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de périphérique ----------------------- identificateur {ca8fe907-9152-11ef-a5ef-f88c4b4015c6} description Windows Setup isolatedcontext Yes ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Options de périphérique ----------------------- identificateur {d24243be-411a-11ef-969d-d4e98a1a9d33} description Windows Setup isolatedcontext Yes ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Options de périphérique ----------------------- identificateur {d24243c0-411a-11ef-969d-d4e98a1a9d33} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi