Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024 Exécuté par nilsc (administrateur) sur LAPTOP-CLPLK9Q5 (HP OMEN by HP Laptop 17-cb1xxx) (10-10-2024 21:33:32) Exécuté depuis C:\Users\nilsc\OneDrive - URCA\Bureau\frst.exe Profils chargés: nilsc Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.4894 (X64) Langue: Français (France) Navigateur par défaut: "C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe" -noautoupdate -- "%1" Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12133.2.3006.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe ->) (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\nilsc\AppData\Local\Microsoft\OneDrive\24.186.0915.0001\Microsoft.SharePoint.exe (C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\nilsc\AppData\Local\Programs\Opera GX\113.0.5230.135\opera_crashreporter.exe (Discord Inc. -> Discord Inc.) C:\Users\nilsc\AppData\Local\Discord\app-1.0.9166\Discord.exe <6> (DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\BridgeCommunication.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2409.4.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\OmenCommandCenterBackground.exe (ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <6> (explorer.exe ->) (MobiSystems, Inc. -> MobiSystems Inc.) C:\Program Files\MobiSystems\PDFExtra\PdfEditorUpdate.exe (explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe <58> (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe (services.exe ->) (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_f1b47696babae655\x64\OmenCap\OmenCap.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_86dc7f4c001ddecd\RstMwService.exe (services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_4a6e3add73c4708a\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (PreSonus Audio Electronics, Inc. -> PreSonus) C:\Program Files\PreSonus\Universal Control\PreSonusHardwareAccessService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\IAS\IntelAudioService.exe (services.exe ->) (TBT_DCH_DRV_PROD -> ) C:\Windows\TbtP2pShortcutService.exe (services.exe ->) (TBT_DCH_DRV_PROD -> Intel Corporation) C:\Windows\ThunderboltService.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (sihost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.OMENLightStudio_1.0.52.0_x64__v10z8vjag6ke6\LightStudio-ui\LightStudio-background.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\LightStudioHelper\LightStudioHelper.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\Overlay\OverlayHelper.exe (svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\nilsc\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\nilsc\AppData\Local\Microsoft\OneDrive\24.186.0915.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1141544 2020-09-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PDFExtra] => C:\Program Files\MobiSystems\PDFExtra\PdfEditorUpdate.exe [354680 2023-12-20] (MobiSystems, Inc. -> MobiSystems Inc.) HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [471432 2020-05-15] (Express Vpn LLC -> ExpressVPN) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [97703592 2020-02-13] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [AirBackupHelper] => C:\Program Files (x86)\iMobie\AnyTrans\AirBackupHelper.exe (Pas de fichier) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-06-05] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [539152 2024-04-24] (HP Inc. -> HP Inc.) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Microsoft Edge Update] => C:\Users\nilsc\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\MicrosoftEdgeUpdateCore.exe [268384 2024-10-05] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4406632 2024-09-17] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36717544 2024-07-27] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Opera GX Stable] => C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe [1306528 2024-09-24] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Discord] => C:\Users\nilsc\AppData\Local\Discord\Update.exe [1525016 2022-10-21] (Discord Inc. -> GitHub) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Universal Control] => [X] HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\nilsc\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [1619560 2023-03-03] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45125936 2024-09-18] (Gen Digital Inc. -> Piriform Software Ltd) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [6448712 2018-04-23] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-2578958701-3296982357-2529178961-1001\...\Run: [MicrosoftEdgeAutoLaunch_954C294086F0F9BDCA2F7FA56B4A57BC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3795008 2024-10-03] (Microsoft Corporation -> Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {6CBEF361-EE00-46F9-B3B8-D803788F07C8} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Pas de fichier <==== ATTENTION Task: {8ACB53D9-7A3B-41B2-8448-52A927F42C4E} - \Microsoft\Windows\Setup\SetupCleanupTask -> Pas de fichier <==== ATTENTION Task: {A74F1BC2-B811-4919-B349-5173BD407625} - \HPAudioSwitch -> Pas de fichier <==== ATTENTION Task: {E718D044-8F6E-48E7-953D-85D8F0FF19E2} - \OneDrive Standalone Update Task-S-1-5-21-2292549785-2426566057-1901073597-500 -> Pas de fichier <==== ATTENTION Task: {4232FB57-CEB6-4F0E-82E6-EDD55763F575} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-09-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {AECA5585-E5ED-42B6-AE0B-D5F70E49F19C} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5937456 2024-09-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "24226d28-da79-4638-9927-1dd6f1b33662" --version "6.28.11297" --silent Task: {A735433E-1F68-4AFE-BE16-0E5F2016B101} - System32\Tasks\CCleanerSkipUAC - nilsc => C:\Program Files\CCleaner\CCleaner.exe [39012144 2024-09-18] (Gen Digital Inc. -> Piriform Software Ltd) Task: {A8956B1E-E770-4E02-8FDC-AE421B855AC0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [744976 2024-09-25] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show Task: {403791C4-976A-4540-871A-5EAD56EBA3A7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-09-25] (HP Inc. -> HP Inc.) Task: {6DB2096E-3158-4325-B12A-FFBEE59ADF71} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice Task: {C6481BF4-7801-48B5-BF79-0F66EC2E9B7B} - System32\Tasks\HP\HP Support Assistant\sp152119.exe => C:\ProgramData\HP\HP Support Framework\Softpaq\66485\sp152119.exe [23202624 2024-05-02] (HP Inc. -> HP Inc.) -> C:\ProgramData\HP\HP Support Framework\Softpaq\66485\/s /e cmd.exe /a /c ""HPUP.exe"" Task: {D0DEF0AF-2A78-4583-A4C1-05F84FC47866} - System32\Tasks\LightStudioHelper => C:\Program Files\HP\LightStudioHelper\LightStudioHelper.exe [30704 2022-11-02] (HP Inc. -> HP Inc.) Task: {2AF167D3-642E-4EAA-BF06-1C7EF3CD3AB7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617448 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {CD253BF5-A1FE-4405-96C2-7487CDAF1D3A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617448 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {EAE41D06-BA41-4A67-96FC-16121A24AB60} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {BBAEBCD0-C5F2-4222-BA39-6C8F78F38819} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312472 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {AD485BA4-4C8F-4097-937D-CA95993A1F45} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187328 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {31A060E8-57D8-4C03-97DD-60A9DA220C5D} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4465608 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {A18E9167-E769-4E9C-8313-9F3E648C3B16} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\OLicenseHeartbeat.exe [91848 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) Task: {C9C939A7-F073-45B2-984E-F0C87E778A49} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {723EC8E3-0D37-497B-8C14-CB6716D031C5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D9DCCE40-1165-43F0-9479-CAD044598C97} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {224BD47A-0B10-4F58-8FD4-A4F33BAAA9CF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpCmdRun.exe [1687208 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B03E13D6-DA78-4406-9959-0ADA5A777F2E} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2578958701-3296982357-2529178961-1001Core{BFB052AA-B690-42AF-8751-D15520A55B17} => C:\Users\nilsc\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205752 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {49F55145-7969-4EFA-8EF0-307553CBB28E} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2578958701-3296982357-2529178961-1001UA{CF68A5A3-9113-44B5-8652-A9DF750EDDE6} => C:\Users\nilsc\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205752 2022-11-02] (Microsoft Corporation -> Microsoft Corporation) Task: {D8291681-6405-4D46-984B-A0D6100D38FB} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {B4B4F1D1-5B33-41B7-AB60-C0AAA4A062A9} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7E133547-622B-4D93-A71E-6E72A747565E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler Task: {8BB08E4C-6B8A-4FBE-8555-DE881C65558A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1175E972-8EB7-4A3C-B30D-12D9018894DE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3035F28C-2D8B-4806-A34C-887C35B81729} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DBD00FD9-FCD6-410D-AACF-7F4F02FCE892} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {10AB82C6-15E5-4012-A09E-ADC51F2D1969} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {87D35AE0-207F-47E9-B009-2780B5392839} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BBAAF89B-06B4-4933-87E1-03198036225B} - System32\Tasks\OmenInstallMonitor => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [70616 2024-09-27] (HP Inc. -> HP Inc.) Task: {94C19FB6-7548-4A4E-8EC8-A3311ACFB074} - System32\Tasks\OmenInstallMonitorCustomEvent => C:\Program Files\HP\OmenInstallMonitor\OmenInstallMonitor.exe [70616 2024-09-27] (HP Inc. -> HP Inc.) Task: {5C37F878-A306-426F-815A-B6DD12D12653} - System32\Tasks\OmenOverlay => C:\Program Files\HP\Overlay\OverlayHelper.exe [66520 2024-09-27] (HP Inc. -> HP Inc.) Task: {0A71E875-74F3-4AFE-900F-4A35B4666092} - System32\Tasks\OmenOverlayCustomEvent => C:\Program Files\HP\Overlay\OverlayHelper.exe [66520 2024-09-27] (HP Inc. -> HP Inc.) Task: {359C1FD5-4183-4E63-B96E-F3E4F8E4774C} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1668725209 => C:\Users\nilsc\AppData\Local\Programs\Opera GX\launcher.exe [1306528 2024-09-24] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\nilsc\AppData\Local\Programs\Opera GX\assistant" $(Arg0) Task: {EC50B99F-2087-42BB-8AA5-11F041F78053} - System32\Tasks\Opera GX scheduled Autoupdate 1667429179 => C:\Users\nilsc\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [5579168 2024-09-24] (Opera Norway AS -> Opera Software) Task: {647C1125-FC69-423E-B269-0CF840D0D0EF} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2578958701-3296982357-2529178961-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {C317332E-6FCB-442C-B90C-1D52634EC5E7} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2388744 2024-08-29] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule Task: {547EF1B5-5D55-414E-A3F3-B8F831FD997A} - System32\Tasks\SystemOptimizer => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [159696 2024-09-27] (HP Inc. -> HP Inc.) Task: {0A7B72C8-70A8-4D27-8388-E8A527744798} - System32\Tasks\SystemOptimizerCustomEvent => C:\Program Files\HP\SystemOptimizer\SystemOptimizer.exe [159696 2024-09-27] (HP Inc. -> HP Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{1b223edf-a13a-4466-828b-766c4bce1b32}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{59079601-2e96-477f-8981-550227907242}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{59079601-2e96-477f-8981-550227907242}: [DhcpDomain] home Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\05C616E656473416D607573702D20275966496020727966756: [DhcpNameServer] 10.192.24.1 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\4505D2C496E6B6F583347323: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\4505D2C496E6B6F583347323: [DhcpDomain] home Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\6427565626F687D235C4F523E24374548545: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\960586F6E656: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\960586F6E65602D496D69602: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\C496675626F687D293733303: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{aca48618-3c05-413a-8dd6-4577c9b1ee26}\C496675626F687D293733303: [DhcpDomain] home Edge: ======= Edge Profile: C:\Users\nilsc\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-10] Edge Extension: (Google Docs hors connexion) - C:\Users\nilsc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-13] Edge Extension: (Edge relevant text changes) - C:\Users\nilsc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-08-29] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-04] (Microsoft Corporation -> Microsoft Corporation) Opera: ======= StartMenuInternet: (HKU\S-1-5-21-2578958701-3296982357-2529178961-1001) Opera GXStable - "C:\Users\nilsc\AppData\Local\Programs\Opera GX\opera.exe" ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-12-06] (BattlEye Innovations e.K. -> ) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-09-18] (Gen Digital Inc. -> Piriform Software Ltd) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13861048 2024-10-01] (Microsoft Corporation -> Microsoft Corporation) R2 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [213432 2021-02-21] (DTS, Inc. -> DTS Inc.) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [10164328 2023-03-03] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2022-12-06] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [954704 2024-08-28] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2022-11-24] (Epic Games Inc. -> Epic Games, Inc.) R2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [438664 2020-05-15] (Express Vpn LLC -> ExpressVPN) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [665160 2018-04-23] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8109640 2018-04-23] (GOG Sp. z o.o. -> GOG.com) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\AppHelperCap.exe [927840 2024-08-18] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\DiagsCap.exe [926200 2024-08-18] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\NetworkCap.exe [922216 2024-08-18] (HP Inc. -> HP Inc.) R2 HPOmenCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapcomp.inf_amd64_f1b47696babae655\x64\OmenCap\OmenCap.exe [755152 2023-10-19] (HP Inc. -> HP Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-08-07] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_98792a9ca78941b9\x64\SysInfoCap.exe [927336 2024-08-18] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe [569008 2024-05-07] (HP Inc. -> HP Inc.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe [1431160 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_4a6e3add73c4708a\Display.NvContainer\NVDisplay.Container.exe [1275016 2024-08-15] (NVIDIA Corporation -> NVIDIA Corporation) S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [22384 2023-11-17] (Microsoft Windows -> Microsoft Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2388744 2024-08-29] (Overwolf Ltd -> Overwolf LTD) R2 PreSonus Hardware Access Service; C:\Program Files\PreSonus\Universal Control\PreSonusHardwareAccessService.exe [491960 2022-05-05] (PreSonus Audio Electronics, Inc. -> PreSonus) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1271280 2023-11-04] (Rockstar Games, Inc. -> Rockstar Games) R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [252264 2021-01-26] (TBT_DCH_DRV_PROD -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe [3199656 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe [133704 2024-09-17] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [39272 2023-06-27] (Apple Inc. -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.) S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [28440 2020-05-15] (ExprsVPN LLC -> ExpressVPN) R3 GlPciSD; C:\WINDOWS\System32\drivers\GlPciSD.sys [482912 2020-06-01] (GENESYS LOGIC, INC. -> Genesys Logic) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.) R3 HPOmenCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpomencustomcapdriver.inf_amd64_326f2e1d16385daf\x64\hpomencustomcapdriver.sys [23888 2020-04-21] (HP Inc. -> HP Inc.) R2 HpReadHWData; C:\WINDOWS\system32\drivers\HpReadHWData.sys [56288 2024-09-27] (HP Inc. -> Windows (R) Win 7 DDK provider) R3 MpKsl9d1420ca; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{10F697A4-D18D-4448-A052-7B8F34A44D21}\MpKslDrv.sys [267552 2024-10-09] (Microsoft Windows -> Microsoft Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation) S3 paeusbaudio; C:\WINDOWS\System32\drivers\paeusbaudio.sys [412792 2022-05-05] (PreSonus Audio Electronics, Inc. -> ) S3 paeusbaudioks; C:\WINDOWS\System32\drivers\paeusbaudioks.sys [62584 2022-05-05] (PreSonus Audio Electronics, Inc. -> ) R1 rtf64; C:\WINDOWS\system32\DRIVERS\rtf64x64.sys [67496 2022-07-28] (Realtek Semiconductor Corp. -> Realtek) R3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [44304 2020-05-15] (ExprsVPN LLC -> The OpenVPN Project) R3 teVirtualMIDI64; C:\WINDOWS\System32\drivers\teVirtualMIDI64.sys [53120 2019-12-08] (Tobias Erichsen -> Tobias Erichsen) R3 ThrottleStop; C:\Users\nilsc\AppData\Local\Temp\ThrottleStop.sys [50216 2024-10-08] (TechPowerUp LLC -> ) <==== ATTENTION R3 ViGEmBus; C:\WINDOWS\System32\DriverStore\FileRepository\vigembus.inf_amd64_8a927fc43d8a7838\x64\ViGEmBus.sys [91432 2020-04-21] (HP Inc. -> Benjamin Hoeglinger-Stelzer) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22080 2024-09-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602392 2024-09-17] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-09-17] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP) U3 aspnet_state; pas de ImagePath S3 HWiNFO_174; \??\C:\Users\nilsc\AppData\Local\Temp\HWiNFO64A_174.SYS [X] <==== ATTENTION ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-10 21:33 - 2024-10-10 21:34 - 000036076 _____ C:\Users\nilsc\OneDrive - URCA\Bureau\FRST.txt 2024-10-10 21:33 - 2024-10-10 21:33 - 000000000 ____D C:\FRST 2024-10-10 21:32 - 2024-10-10 21:32 - 002397696 _____ (Farbar) C:\Users\nilsc\OneDrive - URCA\Bureau\frst.exe 2024-10-10 07:17 - 2024-10-10 07:17 - 000000000 ___HD C:\$WinREAgent 2024-10-08 15:02 - 2024-10-08 15:02 - 000009470 _____ C:\Users\nilsc\Downloads\Data_D (2).xlsx 2024-10-08 14:35 - 2024-10-08 14:35 - 000009470 _____ C:\Users\nilsc\Downloads\Data_D (1).xlsx 2024-10-07 17:10 - 2024-10-07 17:10 - 000596532 _____ C:\Users\nilsc\Downloads\ETHN_154_0643 (1).pdf 2024-10-07 17:10 - 2024-10-07 17:10 - 000403606 _____ C:\Users\nilsc\Downloads\Llena et al bien-être affectif.pdf 2024-10-07 17:10 - 2024-10-07 17:10 - 000157946 _____ C:\Users\nilsc\Downloads\la-transhumance-de-ladolescence-le-corps-leps-et-le-sport (2).pdf 2024-10-07 17:09 - 2024-10-07 17:09 - 000516851 _____ C:\Users\nilsc\Downloads\préférence perceptive Coquart et al 2009.pdf 2024-10-07 17:09 - 2024-10-07 17:09 - 000301821 _____ C:\Users\nilsc\Downloads\vers-un-nouveau-modele-sportif-durable.pdf 2024-10-07 16:58 - 2024-10-07 16:58 - 000602374 _____ C:\Users\nilsc\Downloads\ejrieps-5959 (1).pdf 2024-10-07 10:31 - 2024-10-07 10:31 - 000157946 _____ C:\Users\nilsc\Downloads\la-transhumance-de-ladolescence-le-corps-leps-et-le-sport (1).pdf 2024-10-06 00:26 - 2024-10-06 00:26 - 000349573 _____ C:\Users\nilsc\Downloads\chapitre 1 Leffort (2000) (2).pdf 2024-10-06 00:24 - 2024-10-06 00:24 - 005323422 _____ C:\Users\nilsc\Downloads\Genre Pour laction, chapitre 6.pdf 2024-10-06 00:22 - 2024-10-06 00:22 - 000157946 _____ C:\Users\nilsc\Downloads\la-transhumance-de-ladolescence-le-corps-leps-et-le-sport.pdf 2024-10-06 00:09 - 2024-10-06 00:09 - 000596532 _____ C:\Users\nilsc\Downloads\ETHN_154_0643.pdf 2024-10-06 00:08 - 2024-10-06 00:08 - 000349573 _____ C:\Users\nilsc\Downloads\chapitre 1 Leffort (2000) (1).pdf 2024-10-06 00:02 - 2024-10-06 00:02 - 000366767 _____ C:\Users\nilsc\Downloads\chapitre 3 Ladolescence (2011).pdf 2024-10-01 18:22 - 2024-10-01 18:22 - 000127432 _____ C:\Users\nilsc\Downloads\Fancy, GUI Overhaul v0.1.2.8.zip 2024-10-01 18:21 - 2024-10-01 18:21 - 000516256 _____ C:\Users\nilsc\Downloads\FreshAnimations_v1.9.2.zip 2024-10-01 17:06 - 2024-10-01 17:06 - 000011571 _____ C:\Users\nilsc\Downloads\Fichiers (1).zip 2024-10-01 15:04 - 2024-10-01 17:01 - 000013933 _____ C:\Users\nilsc\Downloads\Données_TD1_A (2).xlsx 2024-10-01 13:13 - 2024-10-01 13:13 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-10-01 10:33 - 2024-10-01 10:33 - 003267654 _____ C:\Users\nilsc\Downloads\article 2.PDF 2024-10-01 10:33 - 2024-10-01 10:33 - 000349573 _____ C:\Users\nilsc\Downloads\chapitre 1 Leffort (2000).pdf 2024-09-28 17:20 - 2024-09-28 17:20 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\Sun 2024-09-28 17:20 - 2024-09-28 17:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2024-09-28 17:20 - 2024-09-28 17:20 - 000000000 ____D C:\Program Files\Java 2024-09-28 17:20 - 2024-06-05 13:24 - 000213120 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2024-09-28 13:29 - 2024-09-28 13:29 - 1776222409 _____ C:\WINDOWS\MEMORY.DMP 2024-09-28 13:29 - 2024-09-28 13:29 - 003603116 _____ C:\WINDOWS\Minidump\092824-10078-01.dmp 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Zoom 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\The Witcher 3 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Temp 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Rockstar Games 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\My Games 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Modèles Office personnalisés 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Image-Line 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\DuckGame 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Custom Office Templates 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Criterion Games 2024-09-25 16:59 - 2024-09-25 16:59 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Documents\Blackmagic Design 2024-09-25 16:55 - 2024-10-10 21:30 - 000000000 ___RD C:\Users\nilsc\OneDrive - URCA 2024-09-25 16:55 - 2024-10-04 23:30 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\L3 S1 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\YOUTUBE 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\Work 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\Vidéos et autre 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\Université 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\ORDINATEUR 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\MUSIQUE 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\MONTAGES 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\Les arts de la grimpe 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\Lectures 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\JEUX 2024-09-25 16:55 - 2024-09-25 16:55 - 000000000 ____D C:\Users\nilsc\OneDrive - URCA\Bureau\IMAGES ET VIDEOS 2024-09-24 23:20 - 2024-09-24 23:20 - 000001144 _____ C:\Users\nilsc\OneDrive - URCA\Bureau\Minecraft Launcher.lnk 2024-09-24 16:00 - 2024-09-24 16:00 - 000014040 _____ C:\Users\nilsc\Downloads\Fichiers.zip 2024-09-24 15:51 - 2024-09-24 15:51 - 000010653 _____ C:\Users\nilsc\Downloads\Données_TD1_A (1).xlsx 2024-09-24 14:14 - 2024-09-24 15:59 - 000011450 _____ C:\Users\nilsc\Downloads\Données_TD1_A.xlsx 2024-09-23 23:00 - 2024-09-23 23:00 - 000000000 ____D C:\Users\nilsc\AppData\Local\ElevatedDiagnostics 2024-09-17 11:56 - 2024-09-17 11:56 - 000311391 _____ C:\Users\nilsc\OneDrive - URCA\Documents\CM 2 - Tableau histoire evaluation EPS.pdf 2024-09-17 11:56 - 2024-09-17 11:56 - 000000000 ____D C:\Users\nilsc\AppData\LocalLow\Temp ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-10-10 21:33 - 2022-11-03 00:35 - 000000000 ____D C:\Program Files (x86)\Steam 2024-10-10 21:32 - 2022-11-03 05:23 - 000000000 ___HD C:\Program Files\WindowsApps 2024-10-10 21:32 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-10-10 21:32 - 2022-11-03 01:24 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\discord 2024-10-10 21:31 - 2022-11-03 00:24 - 000000000 ____D C:\Users\nilsc\AppData\Local\OGH 2024-10-10 21:31 - 2022-11-02 20:33 - 000000000 ____D C:\ProgramData\NVIDIA 2024-10-10 21:30 - 2022-11-03 01:24 - 000000000 ____D C:\Users\nilsc\AppData\Local\Discord 2024-10-10 07:18 - 2022-11-03 05:21 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-10-10 07:17 - 2022-11-03 16:10 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\Microsoft\Word 2024-10-10 07:17 - 2022-11-03 05:23 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-10-10 07:17 - 2022-11-02 20:33 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-10-09 20:14 - 2023-01-29 19:34 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\Microsoft\Excel 2024-10-08 15:02 - 2022-11-02 20:48 - 000000000 ____D C:\Users\nilsc\AppData\Local\Packages 2024-10-08 14:57 - 2022-11-02 20:55 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2578958701-3296982357-2529178961-1001 2024-10-08 14:57 - 2022-11-02 20:55 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2578958701-3296982357-2529178961-1001 2024-10-08 14:57 - 2022-11-02 20:48 - 000002428 _____ C:\Users\nilsc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-10-08 14:10 - 2022-11-02 20:56 - 000000000 ____D C:\Users\nilsc\AppData\Local\D3DSCache 2024-10-08 10:53 - 2022-11-03 05:25 - 001241884 _____ C:\WINDOWS\system32\perfh00C.dat 2024-10-08 10:53 - 2022-11-03 05:25 - 000286842 _____ C:\WINDOWS\system32\perfc00C.dat 2024-10-08 10:53 - 2022-11-02 20:44 - 000006540 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-10-08 10:49 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\Registration 2024-10-08 10:46 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\ServiceState 2024-10-08 10:46 - 2022-11-02 20:33 - 000008192 ___SH C:\DumpStack.log.tmp 2024-10-08 10:46 - 2022-11-02 20:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-10-07 10:25 - 2023-09-05 18:00 - 000000000 ____D C:\Program Files\CCleaner 2024-10-07 10:25 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-10-06 22:16 - 2022-12-08 16:57 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\.minecraft 2024-10-05 12:16 - 2022-11-02 20:58 - 000004030 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2578958701-3296982357-2529178961-1001UA{CF68A5A3-9113-44B5-8652-A9DF750EDDE6} 2024-10-05 12:16 - 2022-11-02 20:58 - 000003966 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2578958701-3296982357-2529178961-1001Core{BFB052AA-B690-42AF-8751-D15520A55B17} 2024-10-05 11:52 - 2022-11-02 20:33 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-10-05 11:46 - 2022-11-02 20:33 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-10-05 11:46 - 2022-11-02 20:33 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-10-04 23:14 - 2022-11-08 13:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard 2024-10-04 23:14 - 2022-11-03 01:24 - 000002260 _____ C:\Users\nilsc\OneDrive - URCA\Bureau\Discord.lnk 2024-10-01 21:22 - 2024-08-28 09:59 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\EasyAntiCheat 2024-10-01 13:14 - 2022-11-03 05:23 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-10-01 13:14 - 2020-06-08 08:03 - 000000000 ____D C:\Program Files\Microsoft Office 2024-09-29 11:19 - 2023-09-05 18:00 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2024-09-29 02:35 - 2022-11-02 20:48 - 000000000 ____D C:\Users\nilsc 2024-09-28 17:01 - 2022-11-03 05:25 - 000000000 ____D C:\WINDOWS\HoloShell 2024-09-28 17:01 - 2022-11-03 05:23 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-09-28 17:01 - 2022-11-03 05:23 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-09-28 13:30 - 2023-01-25 22:37 - 000000000 ____D C:\WINDOWS\Minidump 2024-09-28 12:27 - 2022-11-03 05:21 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2024-09-28 11:22 - 2024-02-11 21:12 - 000004290 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitorCustomEvent 2024-09-28 11:22 - 2024-02-11 21:12 - 000004230 _____ C:\WINDOWS\system32\Tasks\OmenOverlayCustomEvent 2024-09-28 11:22 - 2023-09-13 12:45 - 000003828 _____ C:\WINDOWS\system32\Tasks\OmenOverlay 2024-09-28 11:22 - 2023-09-01 10:25 - 000003888 _____ C:\WINDOWS\system32\Tasks\OmenInstallMonitor 2024-09-28 11:20 - 2024-02-11 21:11 - 000004266 _____ C:\WINDOWS\system32\Tasks\SystemOptimizerCustomEvent 2024-09-28 11:20 - 2022-11-03 05:30 - 000000000 ____D C:\Program Files\HP 2024-09-28 11:20 - 2022-11-03 00:24 - 000003864 _____ C:\WINDOWS\system32\Tasks\SystemOptimizer 2024-09-27 14:17 - 2022-11-10 13:39 - 000056288 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\HpReadHWData.sys 2024-09-26 20:15 - 2022-11-03 00:24 - 002819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2024-09-26 20:15 - 2022-11-03 00:24 - 000775720 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2024-09-26 20:15 - 2022-11-03 00:24 - 000243264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2024-09-26 20:15 - 2022-11-03 00:24 - 000210472 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2024-09-26 20:15 - 2022-11-03 00:24 - 000153152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2024-09-26 20:15 - 2022-11-03 00:24 - 000124480 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2024-09-26 20:15 - 2022-11-03 00:24 - 000075304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2024-09-26 20:11 - 2022-11-03 00:46 - 000004304 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1667429179 2024-09-26 20:11 - 2022-11-03 00:46 - 000001426 _____ C:\Users\nilsc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera GX.lnk 2024-09-25 17:00 - 2022-11-02 20:55 - 000000000 ___RD C:\Users\nilsc\OneDrive 2024-09-24 19:10 - 2020-07-30 11:30 - 000000000 ____D C:\ProgramData\Packages 2024-09-24 19:08 - 2022-11-02 20:54 - 000000000 ____D C:\Users\nilsc\AppData\Local\PlaceholderTileLogoFolder 2024-09-24 13:40 - 2023-09-05 18:00 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2024-09-23 23:06 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2024-09-21 12:46 - 2023-09-05 18:00 - 000003382 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2024-09-20 10:27 - 2022-11-03 15:55 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\Microsoft\Teams 2024-09-20 10:25 - 2022-11-27 20:59 - 000000000 ____D C:\Users\nilsc\AppData\Local\CrashDumps 2024-09-20 10:22 - 2022-12-08 16:57 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\.tlauncher 2024-09-20 10:22 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\INF 2024-09-17 13:07 - 2022-11-02 20:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-09-17 12:07 - 2022-11-03 16:10 - 000000000 ____D C:\Users\nilsc\AppData\Roaming\Microsoft\Office 2024-09-15 09:23 - 2020-05-06 10:59 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-09-14 02:24 - 2022-11-02 20:33 - 000770440 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\SystemResources 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-09-14 02:23 - 2022-11-03 05:23 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-09-14 00:08 - 2022-11-02 20:35 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2024-09-13 23:59 - 2022-11-05 15:46 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-09-13 20:15 - 2022-11-05 15:46 - 199688632 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Fichiers à la racine de certains dossiers ======== 2020-01-31 19:22 - 2020-01-31 19:22 - 003628032 _____ (Image-Line) C:\Users\nilsc\FL Studio VSTi (Multi).dll 2020-01-31 19:22 - 2020-01-31 19:22 - 003628032 _____ (Image-Line) C:\Users\nilsc\FL Studio VSTi.dll 2022-11-23 14:44 - 2022-11-23 14:44 - 000007601 _____ () C:\Users\nilsc\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================