Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024 Exécuté par jeand (administrateur) sur JEANDA (LENOVO 82H8) (02-10-2024 13:42:36) Exécuté depuis C:\Users\jeand\Downloads\FRST64.exe Profils chargés: jeand Plate-forme: Microsoft Windows 11 Famille Version 23H2 22631.4249 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\LenovoVantage-(VantageCoreAddin).exe (C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe (cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\jeand\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (drivers\Lenovo\udc\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\23.10.0.18\x64\AppProvisioningPlugin.exe (DriverStore\FileRepository\cui_dch.inf_amd64_05a153f767b80b04\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_05a153f767b80b04\igfxEMN.exe (DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_e9709186d216ac57\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyCapsLKNumLK.exe (DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyUtility.exe (LNBITSSvc.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\AutoModeDetect.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (services.exe ->) () [Fichier non signé] C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe (services.exe ->) () [Fichier non signé] C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (services.exe ->) (Brother Industries, Ltd.) [Fichier non signé] C:\Program Files (x86)\Browny02\BrYNSvc.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_e9709186d216ac57\DAX3API.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_05a153f767b80b04\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_d9aa4f0713cc07ec\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_29670c30dd54a556\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_03e2a5c7c3b3fa7c\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_dd6a7ef14d856351\AS\IAS\IntelAudioService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe (services.exe ->) (Lenovo -> Lenovo Limited Company) C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe (services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe (services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\LenovoVantageService.exe (services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Elevoc Technology Co.,Ltd.) C:\Windows\System32\ElevocInstallDriver\ElevocControlService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2409.21002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2438.5.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_01de91f5c3258938\RtkAudUService64.exe [1910160 2023-08-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [LVAW] => C:\Program Files\Lenovo\LVA Pro Service\StartupHelper.exe [699680 2023-02-10] (Lenovo -> Lenovo Limited Company) HKLM-x32\...\Run: [I17B] => C:\WINDOWS\twain_32\Brimi17b\Common\TwDsUiLaunch.exe [86152 2020-03-25] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3591168 2022-10-09] (Brother Industries, Ltd.) [Fichier non signé] HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4009984 2024-05-31] (Brother Industries, Ltd.) [Fichier non signé] HKU\S-1-5-21-2722745619-2288073294-4058544942-1001\...\Run: [MicrosoftEdgeAutoLaunch_6CD2A50D2BE68BBFB400BBBE113FDBA9] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3794984 2024-09-26] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2722745619-2288073294-4058544942-1001\...\Run: [Samsung DeX] => C:\Program Files (x86)\Samsung\Samsung DeX\SamsungDeX.exe [9995072 2023-09-26] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) HKU\S-1-5-21-2722745619-2288073294-4058544942-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [12256672 2024-09-07] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-2722745619-2288073294-4058544942-1001\...\Run: [LenovoVantage] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoCompanionAppAddin\1.0.0.40\LenovoVantage.exe [25496 2024-08-13] (Lenovo -> Lenovo) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\129.0.6668.71\Installer\chrmstp.exe [2024-10-02] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2023-11-11] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Brother iPSMonitor.lnk [2024-09-09] ShortcutTarget: Brother iPSMonitor.lnk -> C:\Program Files (x86)\Brother\iPrint&Scan\IPSMONITOR\iPSMonitor.exe (iPSMonitor) [Fichier non signé] HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0AC7841F-7AA6-46E0-975D-7A156B0C7DBE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {000BD521-926F-4B45-922C-ABCF6446FF73} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{DC797C75-5B6A-4BBE-8C8A-653BFFC57385} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC) Task: {6DB8C628-B2D1-4EEB-9E68-6065485C6C0A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {CEF443C6-5BB6-42EF-8E93-BCDD7330533B} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService Task: {EB5DB918-9596-4907-AD66-4F284DAE1377} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [102400 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {6D3038D8-AA54-4229-BEF6-BA933A70D714} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\0901ebbf-1a54-493c-a78a-03c6c21bafd7 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {B5BE7AC1-C14E-44E6-89C3-1D1E41FA7C02} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\2c76208c-4c70-4344-9454-5312f03c4e87 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {0911DBA9-6219-4D21-8750-E68DB8943800} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\43ca4125-a479-4d36-8817-90e947692303 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {E2850C20-380B-4440-88EA-FD966ADBEE73} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9ec2a1ee-c1ea-4d4f-b8ce-09406d414547 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {0B9A9749-E825-4C7C-84A5-095BE2860C7B} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b5a063ac-a69d-4e65-a63f-6daf6f582176 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {8A040D6F-CBC2-48C3-92BC-66FBA79B4E86} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2722745619-2288073294-4058544942-1001 => C:\Users\jeand\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [88584 2024-05-17] (Lenovo (Beijing) Limited -> Lenovo Group Limited) Task: {18F099F3-6F72-4C7E-8BE1-64AC6B481CAA} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210 Task: {3E2B5BD5-80A8-4E54-AA7C-BE5BF07F9855} - System32\Tasks\Lenovo\UDC\Lenovo UDC Idle Monitor => C:\windows\system32\drivers\Lenovo\udc\Service\UDCUserAgent.exe [90600 2023-11-02] (Lenovo -> Lenovo Group Ltd.) -> C:\windows\system32\drivers\Lenovo\udc\Service\/onidle Task: {874BAF4B-8429-4C7C-BE09-F53611EA17BA} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [185312 2023-11-02] (Lenovo -> Lenovo Group Ltd.) Task: {5C6EF13F-B110-480C-BDD1-357232CF44DE} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService Task: {BEF2F545-09FB-40FD-97CF-4514D95D23D5} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {310241DD-48AC-4E2C-A72B-6C9F98CF1C17} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {86ECB791-A532-49BA-882E-D56268B4A4E2} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {E6FCA750-4664-4298-AE21-F729A437F470} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {06829FB1-1407-4C5C-B4A6-BECE6A286110} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {59D4909F-E999-4C83-9414-CA0EEDFE9F6E} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {932D4AE0-9F73-4163-892D-2042F73C7B84} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (Pas de fichier) Task: {D56E7A70-614E-4E7C-95B2-B052296A732B} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {9CC25209-C891-4B4F-B611-47D15545EFB3} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {FBFF8861-B693-43F8-90C0-3D28A72FCD87} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (Pas de fichier) Task: {965A854E-BC7C-415D-ABA0-A9E4BC7C03E3} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {23256D15-9851-43CD-9704-E02F093752BD} - System32\Tasks\Lenovo\Vantage\Schedule\SmartLock.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {8361E700-4EE1-4F19-8536-D0BA66C011DE} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {E682D188-8E61-4559-ACEC-43947D4DC50C} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.174\ScheduleEventAction.exe [17816 2024-08-30] (Lenovo -> Lenovo) Task: {3DF0F8AC-0655-4E5C-9CEB-083B7F7EAA3D} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\ScheduleEventAction.exe [30160 2024-07-16] (Lenovo -> Lenovo) Task: {D57DDE6A-7D73-418E-84DA-9635E9C7EF48} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\uninstall.exe [345448 2024-07-16] (Lenovo -> Lenovo) Task: {ECE0D9CD-FA0E-46DB-9536-6E0BFB3A394F} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (Pas de fichier) Task: {2B247D2C-B1F0-4BC9-8D9B-4DCC47F2AF97} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {5F97955A-5D6D-4FCA-BD0A-85840D62A03D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-09-08] (Microsoft Corporation -> Microsoft Corporation) Task: {04B5D9EB-835D-49B6-AC16-9911CB40B912} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {6460D9F3-2937-43D0-BFE0-FE2016E6ED33} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-09-15] (Microsoft Corporation -> Microsoft Corporation) Task: {54741F55-C68F-42DF-BF84-2AF725B3F8B2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187024 2024-09-04] (Microsoft Corporation -> Microsoft Corporation) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {7F331A96-24EA-48BF-A884-342ECF27565D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {462AF336-D7EC-4BE4-B781-61FA3CA63694} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6976C2A6-2DE5-429A-A67E-6DBC8905A0B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9655E9DD-C84D-4398-A55D-AA2337DA851F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {498ADC8F-9D0D-4254-BD14-31EF3CB11865} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2722745619-2288073294-4058544942-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [672328 2024-10-02] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {5CD0AB65-29D5-4D42-82BD-C7FA738A491A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34376 2024-10-02] (Mozilla Corporation -> Mozilla Foundation) Task: {B3F47266-4F1F-422D-8A91-B7326DCF42D1} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2722745619-2288073294-4058544942-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [65536 2024-04-24] (Microsoft Windows -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.50.1 9.9.9.9 1.1.1.1 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}: [DhcpNameServer] 192.168.50.1 9.9.9.9 1.1.1.1 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}: [DhcpDomain] lebelleviste Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\6425545424F485F5C455947494F5C483: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\6596679616E6567237027416C616879702142323025374: [DhcpNameServer] 192.168.173.117 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\C4562456C6C6566596374756F5537484A7: [DhcpNameServer] 192.168.4.1 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\C4562456C6C6566596374756F5537484A7: [DhcpDomain] lebelleviste Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\C496675626F687D253643403: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{2e91c93a-01e7-489b-82d1-b759bdeabc2f}\C496675626F687D253643403: [DhcpDomain] home Tcpip\..\Interfaces\{37ed1629-a32d-4810-8903-58da71721b30}: [DhcpNameServer] 152.209.1.3 Edge: ======= Edge Profile: C:\Users\jeand\AppData\Local\Microsoft\Edge\User Data\Default [2024-09-27] Edge Extension: (cast player) - C:\Users\jeand\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dionggdmdobjjolppiiejleechniphok [2024-02-27] Edge Extension: (Google Docs hors connexion) - C:\Users\jeand\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-11-11] Edge Extension: (Edge relevant text changes) - C:\Users\jeand\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-17] FireFox: ======== FF DefaultProfile: xvquld03.default FF ProfilePath: C:\Users\jeand\AppData\Roaming\Mozilla\Firefox\Profiles\xvquld03.default [2023-11-11] FF ProfilePath: C:\Users\jeand\AppData\Roaming\Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977 [2024-10-02] FF Homepage: Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977 -> hxxps://www.google.fr/ FF Session Restore: Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977 -> est activé. FF Notifications: Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977 -> hxxps://account.ring.com; hxxps://www.huffingtonpost.fr; hxxps://www.alltricks.fr; hxxps://account.lenovo.com FF Extension: (Ghostery Bloqueur de Traqueurs et de Publicités - confidentialité) - C:\Users\jeand\AppData\Roaming\Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977\Extensions\firefox@ghostery.com.xpi [2024-09-03] FF Extension: (Fairytale Of Nature) - C:\Users\jeand\AppData\Roaming\Mozilla\Firefox\Profiles\j2yrh7rr.default-release-1714922988977\Extensions\{6804879d-8801-473a-b13d-605b902a5e4f}.xpi [2024-05-05] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-09-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [Pas de fichier] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\jeand\AppData\Local\Google\Chrome\User Data\Default [2024-10-02] CHR Notifications: Default -> hxxps://account.ring.com; hxxps://www.auto-doc.fr; hxxps://www.francebleu.fr CHR HomePage: Default -> hxxps://www.google.com/?authuser=0 CHR StartupUrls: Default -> "hxxps://www.google.fr/?hl=fr&gws_rd=cr&ei=U3--VLuPDabe7AaT7oG4AQ" CHR Session Restore: Default -> est activé. CHR Extension: (cast player) - C:\Users\jeand\AppData\Local\Google\Chrome\User Data\Default\Extensions\dionggdmdobjjolppiiejleechniphok [2024-02-27] CHR Extension: (Google Docs hors connexion) - C:\Users\jeand\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-06] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\jeand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-11-11] CHR Profile: C:\Users\jeand\AppData\Local\Google\Chrome\User Data\Guest Profile [2024-02-05] CHR Profile: C:\Users\jeand\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-29] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-07-31] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [5328200 2024-05-25] (AnyDesk Software GmbH -> AnyDesk Software GmbH) R2 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [500736 2024-05-31] (Brother Industries, Ltd.) [Fichier non signé] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14042808 2024-09-08] (Microsoft Corporation -> Microsoft Corporation) R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_e9709186d216ac57\DAX3API.exe [2363392 2023-03-27] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 ElevocService; C:\WINDOWS\system32\ElevocInstallDriver\ElevocControlService.exe [416536 2023-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Elevoc Technology Co.,Ltd.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230360 2024-01-12] (HP Inc. -> HP Inc.) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_dd6a7ef14d856351\AS\IAS\IntelAudioService.exe [539816 2021-09-01] (Intel Corporation -> Intel) R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe [178656 2024-08-21] (Lenovo -> Lenovo) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.1.22.0\LenovoVantageService.exe [34664 2024-07-16] (Lenovo -> Lenovo) S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-09-10] (The Document Foundation -> The Document Foundation) R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1831672 2022-08-17] (Lenovo -> Lenovo(beijing) Limited) R2 LVAWService; C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe [693536 2023-02-10] (Lenovo -> Lenovo Limited Company) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe [1431160 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2022-09-14] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2022-09-14] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72160 2023-11-02] (Lenovo -> Lenovo Group Ltd.) R2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [11776 2024-08-19] () [Fichier non signé] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe [3199656 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe [133704 2024-09-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [18944 2024-08-19] () [Fichier non signé] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Fichier non signé] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 DSI_SiUSBXp_3_1; C:\WINDOWS\system32\drivers\DSI_SiUSBXp_3_1.sys [16384 2007-09-06] (Microsoft Windows Hardware Compatibility Publisher -> Silicon Laboratories) R0 fse; C:\WINDOWS\System32\drivers\fse.sys [218488 2024-08-28] (Microsoft Windows -> Microsoft Corporation) S3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [137040 2021-01-20] (GENESYS LOGIC, INC. -> Genesys Logic) S3 GSCAuxDriver; C:\WINDOWS\System32\DriverStore\FileRepository\gscauxdriver.inf_amd64_47dea9773e9dfab7\GSCAuxDriverx64.sys [78888 2021-06-23] (Intel Corporation -> Intel Corporation) S3 GSCx64; C:\WINDOWS\System32\DriverStore\FileRepository\gscheci.inf_amd64_1027aa064fe1f3f7\TeeDriverGSCW8x64.sys [258088 2021-06-23] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131224 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_1308f85f1b0adf27\iaLPSS2_I2C_TGL.sys [204440 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_SPI_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_spi_tgl.inf_amd64_fc1ed3a5a1d514f2\iaLPSS2_SPI_TGL.sys [158352 2021-07-20] (Intel Corporation -> Intel Corporation) R3 iaLPSS2_UART2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_cd8c3a141c1b1284\iaLPSS2_UART2_TGL.sys [313504 2021-07-20] (Intel Corporation -> Intel Corporation) R0 iaStorVD; C:\WINDOWS\System32\drivers\iaStorVD.sys [1546432 2022-01-20] (Intel Corporation -> Intel Corporation) S3 LenovoDiagnosticsDriver; C:\ProgramData\Lenovo\Vantage\Addins\LenovoHardwareScanAddin\3.6.0.13\LenovoDiagnosticsDriver.sys [52624 2024-08-08] (Microsoft Windows Hardware Compatibility Publisher -> Lenovo Group Limited (R)) R3 MpKsl83a7dcf6; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8EA14F9-0438-4879-B36A-01C8FEBD6559}\MpKslDrv.sys [267552 2024-10-02] (Microsoft Windows -> Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [57344 2022-05-07] (Microsoft Corporation) [Fichier non signé] S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [94208 2023-11-11] (Microsoft Windows -> ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22080 2024-09-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602392 2024-09-18] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-09-18] (Microsoft Windows -> Microsoft Corporation) S3 ss_conn_usb_driver2; \SystemRoot\System32\Drivers\ss_conn_usb_driver2.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-02 13:42 - 2024-10-02 13:43 - 000036415 _____ C:\Users\jeand\Downloads\FRST.txt 2024-10-02 13:40 - 2024-10-02 13:40 - 002397696 _____ (Farbar) C:\Users\jeand\Downloads\FRST64.exe 2024-10-02 13:38 - 2024-10-02 13:41 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-10-02 06:57 - 2024-10-02 06:57 - 000810954 _____ C:\WINDOWS\system32\perfh00C.dat 2024-10-02 06:57 - 2024-10-02 06:57 - 000157390 _____ C:\WINDOWS\system32\perfc00C.dat 2024-10-01 21:16 - 2024-10-01 21:16 - 001913488 _____ (Lenovo Group Limited ) C:\Users\jeand\Downloads\5zlc020f1evv38c0.exe 2024-10-01 21:02 - 2024-10-01 21:02 - 004091448 _____ (Lenovo Group Limited ) C:\Users\jeand\Downloads\3bs3020fw7jnjjc0.exe 2024-10-01 20:01 - 2024-10-01 20:01 - 003808512 _____ (Lenovo Group Limited ) C:\Users\jeand\Downloads\urlc280flarzt9c0.exe 2024-10-01 13:49 - 2024-10-01 13:49 - 008790880 _____ (Malwarebytes) C:\Users\jeand\Downloads\adwcleaner.exe 2024-09-30 10:09 - 2024-09-30 10:09 - 000000000 ____D C:\Users\jeand\CrossDevice 2024-09-30 10:09 - 2024-09-30 10:09 - 000000000 ____D C:\ProgramData\CrossDevice 2024-09-30 08:14 - 2024-09-30 08:14 - 000000000 ___HD C:\$SysReset 2024-09-29 19:15 - 2024-09-29 19:15 - 000002264 _____ C:\Users\jeand\AppData\LocalLow\4b82d73b83a4ced6b7d0997eb3aaaa99b450d9ee2aa3cc29116e303d1eae60a8 2024-09-29 19:13 - 2024-10-01 15:32 - 000441230 _____ C:\Users\jeand\AppData\LocalLow\b6f4b85779ab477df2ad80f8c96aa6c6bb8e0e80917194fb28985c5a92e096e7 2024-09-29 19:13 - 2024-09-30 20:56 - 000000634 _____ C:\Users\jeand\AppData\LocalLow\6bb4f2f9d65f7bda2d90f51ccff4729b5ddfdde019641b39e1f05d5a804c8ed9 2024-09-29 18:55 - 2024-09-29 19:18 - 000032388 _____ C:\WINDOWS\storelibdebug.txt 2024-09-27 17:58 - 2024-09-27 17:58 - 000000000 ____D C:\Users\jeand\AppData\Local\LenovoServiceBridge 2024-09-27 17:57 - 2024-09-27 17:57 - 003812528 _____ (Lenovo ) C:\Users\jeand\OneDrive\Documents\LSBSetup.exe 2024-09-27 11:36 - 2024-09-30 10:21 - 000000000 ____D C:\Users\jeand\OneDrive\Desktop\Bluethoo 2024-09-27 11:22 - 2024-09-27 11:22 - 000002264 _____ C:\Users\jeand\AppData\LocalLow\035d99e80669aa4696f3f9a017910a8d8b3bf55d1370ff5da734b4c009cefcdf 2024-09-26 14:59 - 2024-09-30 10:11 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\7b0919abf0c5706f7d28e43a08d89f6dafd89acdd1f99cfb2c0c21998a33147b 2024-09-26 14:59 - 2024-09-30 10:09 - 000144578 _____ C:\Users\jeand\AppData\LocalLow\d1b68a9baea4c00f6062a48df8f59e92ebed60072f65bd40734919fba10360f2 2024-09-26 14:12 - 2024-09-26 14:12 - 008790880 _____ (Malwarebytes) C:\Users\jeand\OneDrive\Documents\adwcleaner.exe 2024-09-26 11:36 - 2024-09-29 18:48 - 000099026 _____ C:\Users\jeand\AppData\LocalLow\a2fc8a20ac2473bc0291ec0294f9df45d3c7bfeaaf0c744ff779334216ef42d6 2024-09-26 11:36 - 2024-09-27 11:32 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\5922c598d9c155dd0a89ef350f8ccdb5004a4175c78d6f91838fb8ff9c9d05af 2024-09-26 11:36 - 2024-09-27 11:22 - 000000298 _____ C:\Users\jeand\AppData\LocalLow\35b2633203c3af59a201a64aef04ec6fda53f80f475a1be714434091af7cccc9 2024-09-26 11:36 - 2024-09-27 11:20 - 000074408 _____ C:\Users\jeand\AppData\LocalLow\1562a5aae6a173d1d9bb7077fb5366388e99d2392261adf10ea13aa0e8bf35ec 2024-09-26 11:29 - 2024-09-26 11:29 - 000000000 ____D C:\Users\jeand\AppData\Local\ElevatedDiagnostics 2024-09-26 11:00 - 2024-09-26 11:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 2024-09-26 10:56 - 2024-09-26 10:56 - 363098112 _____ C:\Users\jeand\OneDrive\Documents\LibreOffice_24.8.1_Win_x86-64.msi 2024-09-24 18:18 - 2024-09-30 10:21 - 000000298 _____ C:\Users\jeand\AppData\LocalLow\491dfa6c5089e8600099e6d1172d3a6bce2aaa0bc0a8fb3c146b3df0d94a5618 2024-09-24 18:18 - 2024-09-30 10:20 - 000040215 _____ C:\Users\jeand\AppData\LocalLow\14cec8a688e7e25ec65d0024a12c37be778db19ee974553c79f1bfd71cb3ee51 2024-09-20 20:18 - 2024-09-25 17:28 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2024-09-15 14:17 - 2024-09-15 14:17 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-09-12 12:04 - 2024-09-12 12:04 - 000011329 _____ C:\Users\jeand\Downloads\Vinted.pdf 2024-09-11 20:47 - 2024-09-30 10:21 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\9efc7b77bc60a484afa1dbca8105b35ad2d2bcddf61075a21cfb283050ad9d1e 2024-09-11 20:47 - 2024-09-30 10:20 - 000029120 _____ C:\Users\jeand\AppData\LocalLow\b15d3a108baf677bad705d2193ceb1d29295e9ae5672296ad2f6ec14fa4d226f 2024-09-11 08:02 - 2024-09-11 08:02 - 000014079 _____ C:\Users\jeand\Downloads\GG3A24255F027845.pdf 2024-09-08 17:48 - 2024-09-08 17:48 - 000703479 _____ (Kopf ) C:\Users\jeand\OneDrive\Documents\winmail-reader-setup.exe 2024-09-08 17:48 - 2024-09-08 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winmail Reader 2024-09-08 17:48 - 2024-09-08 17:48 - 000000000 ____D C:\Program Files (x86)\Winmail Reader 2024-09-08 17:41 - 2024-09-26 14:15 - 000023430 _____ C:\Users\jeand\AppData\LocalLow\7c20ed46f96c41e8f4707573a4b5f44f7b40b89f3834b85911e9c253e71a658b 2024-09-08 17:41 - 2024-09-26 14:15 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\d184b3a61bf4be513cbb771b07df842ddf56f91b67d9cbe187f53880ca9b5c5d 2024-09-05 16:20 - 2024-10-02 13:39 - 000025478 _____ C:\Users\jeand\AppData\LocalLow\abdfbee3f482f410934d1e17c2f7f6fa1d3b379b2a07284ffda6ea337445c922 2024-09-05 16:20 - 2024-09-05 16:20 - 000000026 _____ C:\Users\jeand\AppData\LocalLow\6bdad7e2b2f0e006a1b2964609240b6498c71fd5a1aeb1e97866f9a43779a743 ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-02 13:42 - 2023-11-11 16:15 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-10-02 13:42 - 2023-06-26 21:13 - 000000000 ____D C:\FRST 2024-10-02 13:41 - 2023-11-11 17:48 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-10-02 13:41 - 2023-11-11 16:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2024-10-02 13:41 - 2023-11-11 16:14 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-10-02 13:37 - 2024-08-28 08:33 - 000011216 _____ C:\Users\jeand\AppData\LocalLow\6d1a0d74b8983cab26a68cd0cdace1fb63918ce4f5f6aeaeeefb13009d6d5154 2024-10-02 13:37 - 2022-11-28 15:21 - 000000000 __SHD C:\Users\jeand\IntelGraphicsProfiles 2024-10-02 13:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-10-02 07:10 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-10-02 06:57 - 2023-11-11 15:52 - 001803986 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-10-02 06:57 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2024-10-02 06:50 - 2023-11-11 18:15 - 000002256 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-10-02 06:49 - 2023-11-11 15:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-10-02 06:49 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState 2024-10-02 06:49 - 2022-05-07 07:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-10-02 06:49 - 2021-12-01 15:49 - 000000000 ___HD C:\Intel 2024-10-02 06:49 - 2021-06-23 20:44 - 000012288 ___SH C:\DumpStack.log.tmp 2024-10-01 21:20 - 2023-11-11 15:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-10-01 21:16 - 2021-12-01 15:52 - 000000000 ____D C:\WINDOWS\TempInst 2024-10-01 19:57 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-10-01 15:05 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-10-01 15:03 - 2023-11-11 15:50 - 000000000 ____D C:\Users\jeand\AppData\Local\D3DSCache 2024-10-01 13:51 - 2023-11-11 15:50 - 000000000 ____D C:\Users\jeand\AppData\Local\Lenovo 2024-10-01 13:51 - 2023-11-11 15:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo 2024-10-01 13:51 - 2023-11-11 15:39 - 000000000 ____D C:\ProgramData\Lenovo 2024-09-30 18:26 - 2024-08-28 15:30 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\a8b141efd5a28a0535a4b1cef38c232052f69977de70ef5ac15dddb5a77f531f 2024-09-30 10:09 - 2023-11-11 15:44 - 000000000 ____D C:\Users\jeand 2024-09-29 18:55 - 2024-02-27 18:24 - 000000000 ____D C:\Users\jeand\AppData\Local\CrashDumps 2024-09-28 14:38 - 2023-11-11 15:38 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-09-27 17:58 - 2022-12-04 12:20 - 000000000 ____D C:\Users\jeand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo 2024-09-27 17:58 - 2021-12-01 16:00 - 000000000 ____D C:\Program Files (x86)\Lenovo 2024-09-27 15:35 - 2023-11-12 18:51 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2024-09-27 11:33 - 2024-08-31 14:06 - 000021931 _____ C:\Users\jeand\AppData\LocalLow\c471a3f3b88ab9b37460e73f6bb1a3e7a513a2a2866fad587ff56ef5a1ad7e6c 2024-09-27 11:33 - 2024-08-31 14:06 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\bef33e67af07b07688c0a6330e732d016df14dc5824def44f89868a00efa36c8 2024-09-27 11:13 - 2024-08-30 21:41 - 000000130 _____ C:\Users\jeand\AppData\LocalLow\4fca0a34b497acffbb870a4cea576f3ac71f00928c3146fe3d0d2dac45c9d5fb 2024-09-27 11:12 - 2024-08-30 21:41 - 000231987 _____ C:\Users\jeand\AppData\LocalLow\34f6b2483462849a0a6b86842dbaed8595c9b1ea24a510ce6cabb8d612885e8b 2024-09-27 07:24 - 2023-11-11 15:50 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2722745619-2288073294-4058544942-1001 2024-09-27 07:24 - 2023-11-11 15:50 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2722745619-2288073294-4058544942-1001 2024-09-27 07:24 - 2023-11-11 15:50 - 000002432 _____ C:\Users\jeand\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-09-26 21:17 - 2023-11-13 19:37 - 000000000 ____D C:\Users\jeand\AppData\Roaming\Microsoft\MMC 2024-09-26 21:09 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-09-26 20:53 - 2023-11-11 15:39 - 000615024 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemApps 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\Provisioning 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\IME 2024-09-26 20:52 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-09-26 20:52 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\servicing 2024-09-26 20:26 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-09-26 20:24 - 2023-12-08 08:14 - 003213312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2024-09-26 11:00 - 2024-04-04 07:52 - 000000000 ____D C:\Program Files\LibreOffice 2024-09-23 16:27 - 2023-11-11 15:50 - 000000000 ____D C:\Users\jeand\AppData\Local\PlaceholderTileLogoFolder 2024-09-23 16:27 - 2023-11-11 15:48 - 000000000 ____D C:\Users\jeand\AppData\Local\Packages 2024-09-23 16:27 - 2023-11-11 15:48 - 000000000 ____D C:\ProgramData\Packages 2024-09-21 07:04 - 2023-11-11 17:48 - 000001066 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2024-09-19 06:51 - 2023-12-09 09:22 - 000000000 ____D C:\Users\jeand\AppData\Roaming\com.adobe.dunamis 2024-09-19 06:51 - 2023-12-09 09:20 - 000000000 ____D C:\Users\jeand\AppData\Local\Adobe 2024-09-19 06:51 - 2023-11-11 15:48 - 000000000 ____D C:\Users\jeand\AppData\Roaming\Adobe 2024-09-18 20:52 - 2024-07-12 16:35 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-09-18 20:52 - 2024-07-12 16:35 - 000002084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-09-18 07:15 - 2021-06-23 20:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-09-15 14:16 - 2021-12-01 15:53 - 000000000 ____D C:\Program Files\Microsoft Office 2024-09-10 21:20 - 2023-11-11 15:37 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-09-10 20:16 - 2023-11-11 15:53 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-09-10 20:13 - 2023-11-11 15:53 - 199688632 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-09-09 22:49 - 2023-11-11 18:26 - 000000000 ____D C:\Program Files (x86)\Browny02 2024-09-09 22:49 - 2023-11-11 18:25 - 000000000 ____D C:\ProgramData\Package Cache 2024-09-09 22:49 - 2022-11-29 11:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2024-09-09 07:15 - 2023-11-11 15:45 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-09-09 07:15 - 2023-11-11 15:45 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== Fichiers à la racine de certains dossiers ======== 2024-03-06 17:33 - 2024-03-06 17:33 - 000003584 _____ () C:\Users\jeand\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2024-07-27 13:59 - 2024-07-27 13:59 - 000000000 _____ () C:\Users\jeand\AppData\Local\settingData.dat ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================