Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 09-11-2024 Exécuté par faiss (administrateur) sur DESKTOP-JJSV76N (HONOR HYM-WXX) (10-11-2024 12:40:38) Exécuté depuis C:\Users\faiss\OneDrive\Bureau\FRST64.exe Profils chargés: faiss Plate-forme: Microsoft Windows 11 Famille Version 24H2 26100.2161 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (A-Volute SAS -> A-Volute) C:\Windows\System32\NhNotifSys.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (C:\Users\faiss\AppData\Roaming\Habbo Launcher\downloads\unity\65011751\StandaloneWindows\habbo2020-global-prod.exe ->) (Unity Technologies SF -> ) C:\Users\faiss\AppData\Roaming\Habbo Launcher\downloads\unity\65011751\StandaloneWindows\UnityCrashHandler32.exe (Discord Inc. -> Discord Inc.) C:\Users\faiss\AppData\Local\Discord\app-1.0.9169\Discord.exe <6> (DriverStore\FileRepository\u0375946.inf_amd64_3bee377fd1131476\B374515\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0375946.inf_amd64_3bee377fd1131476\B374515\atieclxx.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <69> (explorer.exe ->) (Nicolas Coolman) [Fichier non signé] C:\Users\faiss\AppData\Roaming\ZHP\ZHPSuite.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a1020546271138b9\RtkAudUService64.exe (explorer.exe ->) (ShareX Team) [Fichier non signé] C:\Program Files\ShareX\ShareX.exe (services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0375946.inf_amd64_3bee377fd1131476\B374515\atiesrxx.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Goodix) C:\Windows\System32\drivers\SessionService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe (services.exe ->) (Senary Technology Limited -> Senary) C:\Windows\System32\DriverStore\FileRepository\audioservice.inf_amd64_5689a145489b27ee\SenaryAudioApp.Svc.exe (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24101.35.0_x64__cw5n1h2txyewy\CrossDeviceService.exe (Sulake Oy -> ) C:\Users\faiss\AppData\Roaming\Habbo Launcher\downloads\unity\65011751\StandaloneWindows\habbo2020-global-prod.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2444.5.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_a1020546271138b9\RtkAudUService64.exe [1344136 2021-12-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [ZELOTES C-12] => C:\Program Files (x86)\ZELOTES C-12 3327\Monitor.exe [2459648 2022-10-17] () [Fichier non signé] HKU\S-1-5-21-4210320040-1515599530-1282947709-1002\...\Run: [Opera Stable] => C:\Users\faiss\AppData\Local\Programs\Opera\opera.exe [1573784 2024-10-17] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-4210320040-1515599530-1282947709-1002\...\Run: [MicrosoftEdgeAutoLaunch_72AF909EBD30DF795543C9F13B64B692] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3856424 2024-10-31] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-4210320040-1515599530-1282947709-1003\...\Run: [MicrosoftEdgeAutoLaunch_4743581FF0E9E24AF095D2C6DB87059E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3856424 2024-10-31] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.117\Installer\chrmstp.exe [2024-11-07] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2023-01-30] ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {C1D6059B-E56A-43E1-B5A5-1AEDE2E6B34C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.2{3054E9D4-4F74-4853-B413-344B19D88297} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.2\updater.exe [5507168 2024-10-28] (Google LLC -> Google LLC) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Pas de fichier) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {621657DF-EC77-46C3-9D6C-85A3A449B8D2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC Reboot (Pas de fichier) Task: {969CCDD3-22CB-4AF2-A090-BF55489AB88D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot (Pas de fichier) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {F298BA98-3938-479C-A68A-8C1859EBCF65} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {DF825805-D617-46A2-B0DE-ED64A278DBAD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4512DABA-2294-4875-8756-A26F5CD6F381} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {477A2EF4-8723-4858-B1AF-828761E5BD7A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CB3B5B8D-0BB2-4E1A-94D1-F442F0D451A8} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671808 2024-11-09] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {68D1648F-FC04-4050-AC16-75781768E427} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-4210320040-1515599530-1282947709-1002 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [671808 2024-11-09] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {E246D258-A3B1-4456-BE0F-C7F8C9905850} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34368 2024-11-09] (Mozilla Corporation -> Mozilla Foundation) Task: {B114209A-F30E-43AE-BB56-D4890BEB1E7A} - System32\Tasks\Opera scheduled Autoupdate 1685312069 => C:\Users\faiss\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5812120 2024-10-15] (Opera Norway AS -> Opera Software) Task: {2A754AF3-C6D9-4A73-A3F0-2D013412F53A} - System32\Tasks\ViGEmBus_Updater => C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBus_Updater.exe [1117096 2022-09-27] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) -> C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\\/silent (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{41fd36ed-7ca6-4a56-9e50-0a6a66a2121c}: [DhcpNameServer] 10.128.128.128 Tcpip\..\Interfaces\{626b2dec-8435-46bc-9066-f9b6dd42471e}: [DhcpNameServer] 10.128.128.128 Tcpip\..\Interfaces\{64b0a482-a6ae-4e9c-b3fe-73ca329688c1}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{6a145128-471b-400d-81ec-15033ab24670}: [DhcpNameServer] 109.88.203.3 62.197.111.140 Tcpip\..\Interfaces\{bcc5146b-7807-4541-b568-e720e37ff627}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Profile: C:\Users\faiss\AppData\Local\Microsoft\Edge\User Data\Default [2024-11-10] Edge Extension: (Google Docs hors connexion) - C:\Users\faiss\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-20] Edge Extension: (Edge relevant text changes) - C:\Users\faiss\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29] FireFox: ======== FF DefaultProfile: 9rcsm6fa.default FF ProfilePath: C:\Users\faiss\AppData\Roaming\Mozilla\Firefox\Profiles\9rcsm6fa.default [2023-10-17] FF ProfilePath: C:\Users\faiss\AppData\Roaming\Mozilla\Firefox\Profiles\hp28ytcw.default-release [2024-11-10] FF Extension: (MetaMask) - C:\Users\faiss\AppData\Roaming\Mozilla\Firefox\Profiles\hp28ytcw.default-release\Extensions\webextension@metamask.io.xpi [2024-08-29] FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Default [2024-11-10] CHR Extension: (Google Docs hors connexion) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-30] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-01-30] CHR Profile: C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-05-14] CHR Profile: C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-11-10] CHR HomePage: Profile 1 -> hxxp://www.google.be/ CHR StartupUrls: Profile 1 -> "hxxp://iron-start.com" CHR DefaultSearchURL: Profile 1 -> hxxp://www.google.be/search?q={searchTerms}. CHR DefaultSearchKeyword: Profile 1 -> googlebe CHR Session Restore: Profile 1 -> est activé. CHR Extension: (Phantom) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2024-11-08] CHR Extension: (Argent X - Starknet Wallet) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dlcobpjiigpikoobohmabehhmhfoodbb [2024-09-26] CHR Extension: (Video Downloader Professional) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2024-08-06] CHR Extension: (I don't care about cookies) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fihnjjcciajhdojfnbdddfaoknhalnja [2024-06-30] CHR Extension: (Google Docs hors connexion) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-08] CHR Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-11-08] CHR Extension: (Xverse Wallet) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\idnnbdplmphpflfnlkomgpfbpcgelopg [2024-11-08] CHR Extension: (Etherscan) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\joeoaocmnapjmkhjndfflecmdaldkpbn [2024-08-21] CHR Extension: (Voir image) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jpcmhcelnjdmblfmjabdeclccemkghjk [2024-06-30] CHR Extension: (html.to.design) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ldnheaepmnmbjjjahokphckbpgciiaed [2024-11-08] CHR Extension: (Video DownloadHelper) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2024-11-02] CHR Extension: (When the Night Falls 1:00 AM (1; rnbw; 1080p)) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lpmmeefjafijboofpccfngkpckkjpadm [2024-03-13] CHR Extension: (MetaMask) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2024-11-02] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-01-30] CHR Extension: (Netflix Party is now Teleparty) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oocalimimngaihdkbihfgmpkcpnmlaoa [2024-11-08] CHR Extension: (UniSat Wallet) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ppbibelpcjmhbdihakflkdcoccbgbkpo [2024-11-02] CHR Profile: C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-04-07] CHR Extension: (Google Docs hors connexion) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-07] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\faiss\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-07] CHR Profile: C:\Users\faiss\AppData\Local\Google\Chrome\User Data\System Profile [2024-11-10] Opera: ======= OPR DefaultProfile: Default ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2023-11-09] (Apple Inc. -> Apple Inc.) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [423816 2021-10-28] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9424792 2024-11-10] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-11-10] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1888440 2021-10-07] (A-Volute SAS -> Nahimic) R2 SenaryAudioApp.Svc; C:\WINDOWS\System32\DriverStore\FileRepository\audioservice.inf_amd64_5689a145489b27ee\SenaryAudioApp.Svc.exe [78152 2021-12-20] (Senary Technology Limited -> Senary) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-10-30] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0375946.inf_amd64_3bee377fd1131476\B374515\amdkmdag.sys [80560032 2022-01-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 CnxtHdAudService; C:\WINDOWS\System32\DriverStore\FileRepository\cisstrtu-base.inf_amd64_907d2eaafbd65ef6\CHDRT64ISST.sys [2478384 2021-12-20] (Senary Technology Limited -> Senary Technology Limited.) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [232000 2024-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2024-11-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MpKsl580f98dc; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C9FDFFFA-4728-40CB-BA37-826A41217438}\MpKslDrv.sys [267552 2024-11-10] (Microsoft Windows -> Microsoft Corporation) R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85144 2021-09-13] (A-Volute SAS -> Windows (R) Win 7 DDK provider) R3 qcwlan; C:\WINDOWS\System32\drivers\qcwlan64.sys [3092744 2021-10-18] (Qualcomm Atheros, Inc. -> Qualcomm Atheros, Inc.) R3 SpbNfcDriver; C:\WINDOWS\System32\drivers\SpbNfcDriver.sys [45936 2021-11-26] (Honor Device Co., Ltd. -> Windows (R) Win 7 DDK provider) R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-10-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-10-30] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-10-30] (Microsoft Windows -> Microsoft Corporation) R3 WDTDrv; C:\WINDOWS\System32\Drivers\WDTDrv.sys [44784 2021-05-10] (Honor Device Co., Ltd. -> ) R0 WinSetupMon; C:\WINDOWS\System32\DRIVERS\WinSetupMon.sys [169440 2024-10-04] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-11-10 12:40 - 2024-11-10 12:40 - 000000000 ____D C:\Users\faiss\OneDrive\Bureau\FRST-OlderVersion 2024-11-10 11:28 - 2024-11-10 11:28 - 000001806 _____ C:\Users\faiss\OneDrive\Bureau\MBAM.txt 2024-11-10 11:19 - 2024-11-10 11:19 - 000755364 _____ C:\WINDOWS\system32\perfh00C.dat 2024-11-10 11:19 - 2024-11-10 11:19 - 000150716 _____ C:\WINDOWS\system32\perfc00C.dat 2024-11-10 11:15 - 2024-11-10 12:35 - 000000000 ____D C:\Users\faiss\AppData\Local\Malwarebytes 2024-11-10 11:15 - 2024-11-10 11:15 - 000002093 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2024-11-10 11:14 - 2024-11-10 11:14 - 002744320 _____ (Malwarebytes) C:\Users\faiss\Downloads\MBSetup.exe 2024-11-10 11:14 - 2024-11-10 11:14 - 000000000 ____D C:\ProgramData\Malwarebytes 2024-11-10 11:14 - 2024-11-10 11:14 - 000000000 ____D C:\Program Files\Malwarebytes 2024-11-10 11:12 - 2024-11-10 11:07 - 000001963 _____ C:\Users\faiss\OneDrive\Bureau\AdwCleaner[C00].txt 2024-11-10 11:05 - 2024-11-10 11:07 - 000000000 ____D C:\AdwCleaner 2024-11-10 11:05 - 2024-11-10 11:05 - 008790880 _____ (Malwarebytes) C:\Users\faiss\Downloads\adwcleaner.exe 2024-11-10 11:03 - 2024-11-10 11:03 - 000017780 _____ C:\Users\faiss\OneDrive\Bureau\ZHPCleaner.txt 2024-11-10 11:03 - 2024-11-10 11:03 - 000000000 ____D C:\Users\faiss\AppData\LocalLow\AMD 2024-11-10 11:01 - 2024-11-10 11:01 - 000017766 _____ C:\Users\faiss\OneDrive\Bureau\ZHPCleaner (R).txt 2024-11-10 10:56 - 2024-11-10 10:56 - 000017371 _____ C:\Users\faiss\OneDrive\Bureau\ZHPCleaner (S).txt 2024-11-10 10:42 - 2024-11-10 10:42 - 000355343 _____ C:\Users\faiss\OneDrive\Documents\favoris_10_11_2024.html 2024-11-10 10:41 - 2024-11-10 10:41 - 000000881 _____ C:\Users\faiss\OneDrive\Bureau\ZHPCleaner.lnk 2024-11-10 10:39 - 2024-11-10 10:39 - 003362816 _____ (Nicolas Coolman) C:\Users\faiss\OneDrive\Bureau\ZHPCleaner.exe 2024-11-09 21:32 - 2024-11-09 21:59 - 003202951 ____H C:\Users\faiss\Downloads\.6c35f9c54c93de13f4371eeae38aab2f3c639e01.parts 2024-11-09 21:32 - 2024-11-09 21:59 - 000000000 ____D C:\Users\faiss\Downloads\The Substance (2024) VOSTFR FANSUB 1080p WEB 10bit DDP 5.1 H265 -DKPT 2024-11-09 21:31 - 2024-11-09 21:31 - 000050844 _____ C:\Users\faiss\Downloads\The Substance (2024) VOSTFR FANSUB 1080p WEB 10bit DDP 5.1 H265 -DKPT.torrent 2024-11-09 15:37 - 2024-11-10 11:02 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-11-07 22:41 - 2024-11-07 22:41 - 000045180 _____ C:\Users\faiss\OneDrive\Bureau\Shortcut.txt 2024-11-07 22:40 - 2024-11-07 22:41 - 000043397 _____ C:\Users\faiss\OneDrive\Bureau\Addition.txt 2024-11-07 22:37 - 2024-11-10 12:41 - 000021384 _____ C:\Users\faiss\OneDrive\Bureau\FRST.txt 2024-11-07 22:36 - 2024-11-10 12:40 - 000000000 ____D C:\FRST 2024-11-07 22:34 - 2024-11-10 12:40 - 002400768 _____ (Farbar) C:\Users\faiss\OneDrive\Bureau\FRST64.exe 2024-11-07 22:28 - 2024-11-07 22:28 - 000001331 _____ C:\Users\faiss\OneDrive\Bureau\SOURATE 3.txt 2024-11-07 22:06 - 2024-11-10 12:25 - 000174567 _____ C:\Users\faiss\OneDrive\Bureau\ZHPDiag.txt 2024-11-07 21:58 - 2024-11-10 12:25 - 000000000 ____D C:\Users\faiss\AppData\Roaming\ZHP 2024-11-07 21:58 - 2024-11-10 10:41 - 000000000 ____D C:\Users\faiss\AppData\Local\ZHP 2024-11-07 21:58 - 2024-11-07 21:58 - 000000871 _____ C:\Users\faiss\OneDrive\Bureau\ZHPSuite.lnk 2024-11-07 21:56 - 2024-11-07 21:56 - 003536896 _____ (Nicolas Coolman) C:\Users\faiss\OneDrive\Bureau\ZHPSuite.exe 2024-11-05 22:08 - 2024-11-05 22:25 - 3760260860 _____ C:\Users\faiss\Downloads\Oculus.2013.MULTI.VFF.1080p.mHD.x264.AC3.5.1-SEL.mkv 2024-11-05 22:07 - 2024-11-05 22:07 - 000143757 _____ C:\Users\faiss\Downloads\Oculus.2013.MULTI.VFF.1080p.mHD.x264.AC3.5.1-SEL.mkv.torrent 2024-11-04 21:22 - 2024-11-04 21:27 - 004022136 ____H C:\Users\faiss\Downloads\.47f05badf2d7cfeb0c2db8fb9c73e5318095fa98.parts 2024-11-03 11:31 - 2024-11-09 21:57 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-11-02 23:55 - 2024-11-02 23:55 - 000026650 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-11-02 23:55 - 2024-11-02 23:55 - 000026650 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2024-11-02 21:46 - 2024-11-10 11:19 - 001684128 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-11-02 21:39 - 2024-11-10 11:13 - 000000584 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2024-11-02 21:39 - 2024-11-02 21:39 - 000000020 ___SH C:\Users\faiss\ntuser.ini 2024-11-02 21:39 - 2024-11-02 21:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2024-11-02 21:36 - 2024-11-10 11:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-11-02 21:36 - 2024-11-09 22:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2024-11-02 21:36 - 2024-11-08 21:52 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-11-02 21:36 - 2024-11-08 21:52 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-11-02 21:36 - 2024-11-06 18:08 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4210320040-1515599530-1282947709-1002 2024-11-02 21:36 - 2024-11-06 18:08 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4210320040-1515599530-1282947709-1002 2024-11-02 21:36 - 2024-11-02 21:36 - 000003600 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1685312069 2024-11-02 21:36 - 2024-11-02 21:36 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4210320040-1515599530-1282947709-1003 2024-11-02 21:36 - 2024-11-02 21:36 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4210320040-1515599530-1282947709-500 2024-11-02 21:36 - 2024-11-02 21:36 - 000002946 _____ C:\WINDOWS\system32\Tasks\ViGEmBus_Updater 2024-11-02 21:36 - 2024-11-02 21:36 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4210320040-1515599530-1282947709-1003 2024-11-02 21:36 - 2024-11-02 21:36 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4210320040-1515599530-1282947709-500 2024-11-02 21:36 - 2024-11-02 21:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem 2024-11-02 21:36 - 2024-11-02 21:36 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\Invite\AppData\Roaming\Microsoft\SystemCertificates 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\Invite\AppData\Roaming\Microsoft\Network 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\Invite\AppData\Roaming\Microsoft\Crypto 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\SystemCertificates 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Network 2024-11-02 21:35 - 2024-11-02 21:35 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Crypto 2024-11-02 21:33 - 2024-11-02 21:39 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows 2024-11-02 21:33 - 2024-11-02 21:39 - 000000000 ____D C:\Users\faiss 2024-11-02 21:33 - 2024-11-02 21:35 - 000000000 ____D C:\Users\Invite\AppData\Roaming\Microsoft\Windows 2024-11-02 21:33 - 2024-11-02 21:35 - 000000000 ____D C:\Users\Invite 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\Voisinage réseau 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\Voisinage d'impression 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\Modèles 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\Mes documents 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\Menu Démarrer 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\Invite\AppData\Local\Historique 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\Voisinage réseau 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\Voisinage d'impression 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\Modèles 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\Mes documents 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\Menu Démarrer 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 _SHDL C:\Users\faiss\AppData\Local\Historique 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 ____D C:\Users\Invite\AppData\Roaming\Microsoft\Spelling 2024-11-02 21:33 - 2024-11-02 21:33 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Spelling 2024-11-02 21:32 - 2024-11-10 11:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-11-02 21:32 - 2024-11-10 11:02 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2024-11-02 21:32 - 2024-11-08 22:28 - 000297024 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-11-02 21:31 - 2024-11-02 21:38 - 000000000 ____D C:\Windows.old 2024-11-02 21:30 - 2024-11-02 21:31 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-11-02 21:29 - 2024-11-02 21:30 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-11-02 21:29 - 2024-11-02 21:29 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-11-02 21:28 - 2024-11-02 21:28 - 000000000 ____D C:\WINDOWS\InboxApps 2024-11-02 21:27 - 2024-11-02 21:27 - 000005264 _____ C:\WINDOWS\system32\ecoscore_config.json 2024-11-02 21:27 - 2024-11-02 21:27 - 000000773 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json 2024-11-02 21:25 - 2024-11-02 21:25 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2024-11-02 21:25 - 2024-11-02 21:25 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2024-11-02 21:25 - 2024-11-02 21:25 - 000000000 ____D C:\WINDOWS\addins 2024-10-30 21:58 - 2024-10-30 22:08 - 000000000 ____D C:\Users\faiss\Downloads\The.Penguin.S01E02.MULTi.2160p.MAX.WEBRiP.DDP5.1.x265-R3MiX 2024-10-30 21:57 - 2024-10-30 21:57 - 000026452 _____ C:\Users\faiss\Downloads\The.Penguin.S01E02.MULTi.2160p.MAX.WEBRiP.DDP5.1.x265-R3MiX.torrent 2024-10-26 22:21 - 2024-10-26 22:21 - 002243051 _____ C:\Users\faiss\OneDrive\Bureau\0b224a3879423ce52cb2f58b10fe9bfcddefd737d8efc43e52f32ce024f56f6a.mp4 2024-10-26 11:04 - 2024-10-26 11:04 - 000298008 _____ C:\Users\faiss\OneDrive\Bureau\GavWqyRW0AAWNJH.jpeg 2024-10-22 17:10 - 2024-10-22 17:16 - 1111512420 _____ C:\Users\faiss\Downloads\The.Penguin.S01E01.MULTI.VFF.1080p.10bit.WEBRip.6CH.x265.HEVC-SERQPH.mkv 2024-10-22 17:09 - 2024-10-22 17:09 - 000042719 _____ C:\Users\faiss\Downloads\The.Penguin.S01E01.MULTI.VFF.1080p.10bit.WEBRip.6CH.x265.HEVC-SERQPH.mkv.torrent 2024-10-21 19:04 - 2024-10-21 19:04 - 000215011 _____ C:\Users\faiss\OneDrive\Bureau\GaaxJ83XEAEbl0U.jpeg 2024-10-21 19:04 - 2024-10-21 19:04 - 000101714 _____ C:\Users\faiss\OneDrive\Bureau\GaaxJ82XkAAkKeo.jpeg 2024-10-21 19:03 - 2024-10-21 19:03 - 000283654 _____ C:\Users\faiss\OneDrive\Bureau\GaaxJ84WsAAC9Qu.jpeg 2024-10-21 19:03 - 2024-10-21 19:03 - 000283654 _____ C:\Users\faiss\OneDrive\Bureau\GaaxJ84WsAAC9Qu (1).jpeg 2024-10-21 19:03 - 2024-10-21 19:03 - 000279402 _____ C:\Users\faiss\OneDrive\Bureau\GaaxJ82WIAAL3fF.jpeg 2024-10-18 17:57 - 2024-11-08 22:30 - 000000000 ___DC C:\WINDOWS\Panther 2024-10-16 16:19 - 2024-10-16 18:10 - 287683503 _____ C:\Users\faiss\Downloads\Shutter Island (2010) MULTi VFF 2160p 10bit 4KLight HDR BluRay AC3 5.1 x265-QTZ.mkv 2024-10-16 16:18 - 2024-10-16 16:18 - 000011268 _____ C:\Users\faiss\OneDrive\Bureau\Shutter Island (2010) MULTi VFF 2160p 10bit 4KLight HDR BluRay AC3 5.1 x265-QTZ.mkv.torrent 2024-10-14 19:55 - 2024-10-14 21:23 - 3233490746 _____ C:\Users\faiss\Downloads\Parasite.2019.MULTi.1080p.BluRay.TrueHD.Atmos.7.1.x264-KAGE.mkv 2024-10-14 19:54 - 2024-10-14 19:54 - 000019513 _____ C:\Users\faiss\OneDrive\Bureau\Parasite.2019.MULTi.1080p.BluRay.TrueHD.Atmos.7.1.x264-KAGE.mkv.torrent 2024-10-06 13:39 - 2024-11-04 21:08 - 000000000 ____D C:\Users\faiss\Downloads\Kill Me Heal Me S01 1080p NF WEB-DL DD+2.0 x264-ARiN 2024-10-06 13:37 - 2024-11-10 11:01 - 000000000 ____D C:\Users\faiss\AppData\Roaming\qBittorrent 2024-10-06 13:37 - 2024-10-06 13:37 - 000182267 _____ C:\Users\faiss\OneDrive\Bureau\Kill Me Heal Me S01 1080p NF WEB-DL DD+2.0 x264-ARiN.torrent 2024-10-06 13:37 - 2024-10-06 13:37 - 000000000 ____D C:\Users\faiss\AppData\Local\qBittorrent 2024-10-06 13:36 - 2024-11-02 21:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent 2024-10-06 13:36 - 2024-10-06 13:36 - 000000000 ____D C:\Program Files\qBittorrent 2024-10-06 13:35 - 2024-10-06 13:35 - 039289750 _____ (The qBittorrent project) C:\Users\faiss\OneDrive\Bureau\qbittorrent_5.0.0_x64_setup.exe 2024-10-05 14:57 - 2024-10-05 14:57 - 000258439 _____ C:\Users\faiss\OneDrive\Bureau\ellie-williams-dark-2560x1080-18417.jpeg 2024-10-03 16:20 - 2024-10-03 16:57 - 3966660367 _____ C:\Users\faiss\OneDrive\Bureau\Speak.No.Evil.2024.MULTi.VFQ.1080p.WEB.H264-FW-Wawacity.CFD.mkv 2024-09-24 21:21 - 2024-09-24 21:27 - 911723224 _____ C:\Users\faiss\OneDrive\Bureau\House.S03E01.VOSTFR.1080p.BluRay.x265-Wawacity.onl.mkv 2024-09-21 07:39 - 2024-09-21 07:39 - 046701070 _____ C:\Users\faiss\OneDrive\Bureau\Bobba_Gazette_n2.pdf 2024-09-19 21:59 - 2024-09-19 22:00 - 000000000 ____D C:\Users\faiss\OneDrive\Bureau\Nouveau dossier (2) 2024-09-18 22:34 - 2009-02-09 10:04 - 000047237 _____ C:\Users\faiss\OneDrive\Bureau\21 - Euphoria Part 2.srt 2024-09-15 13:27 - 2024-09-15 14:07 - 000000000 ____D C:\Users\faiss\OneDrive\Bureau\dslemu 2024-09-10 21:01 - 2024-09-10 21:26 - 1369550284 _____ C:\Users\faiss\OneDrive\Bureau\Oddity.2024.VOSTFR.1080p.WEB.H264-FW-Wawacity.ING.mkv 2024-09-08 12:54 - 2024-09-08 12:54 - 000326110 _____ C:\Users\faiss\OneDrive\Bureau\CONVENTION_DE_DON_DE_MATERIEL_INFORMATIQUE.pdf 2024-09-08 12:54 - 2024-09-08 12:54 - 000257615 _____ C:\Users\faiss\OneDrive\Bureau\-_Ne_ceder_du_materiel_que_si_celui-ci_lui_appartient_entierement.pdf 2024-08-25 20:32 - 2024-08-25 20:32 - 000001253 _____ C:\Users\faiss\OneDrive\Bureau\Special K.lnk ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-11-10 12:37 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-11-10 12:33 - 2023-01-30 13:57 - 000000000 ____D C:\Users\faiss\AppData\Local\Discord 2024-11-10 12:09 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-11-10 12:00 - 2023-12-01 22:04 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Habbo Launcher 2024-11-10 11:53 - 2022-02-01 08:54 - 000000000 ____D C:\ProgramData\Goodix 2024-11-10 11:50 - 2023-01-30 13:57 - 000000000 ____D C:\Users\faiss\AppData\Roaming\discord 2024-11-10 11:19 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF 2024-11-10 11:15 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-11-10 11:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState 2024-11-10 11:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-11-10 11:13 - 2024-04-01 08:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-11-10 11:13 - 2022-02-01 08:47 - 000012288 ___SH C:\DumpStack.log.tmp 2024-11-10 11:10 - 2023-01-30 13:24 - 000000000 ____D C:\Users\faiss\AppData\Local\D3DSCache 2024-11-10 11:02 - 2023-10-17 20:48 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-11-10 11:01 - 2023-01-30 14:15 - 000000000 ____D C:\Users\faiss\OneDrive\Documents\ShareX 2024-11-10 10:13 - 2023-02-16 13:51 - 000000000 ____D C:\Users\faiss\AppData\Roaming\BetterDiscord Installer 2024-11-10 03:14 - 2023-10-17 20:48 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-11-10 01:04 - 2023-08-11 23:45 - 000000000 ____D C:\Users\faiss\AppData\Roaming\vlc 2024-11-09 22:40 - 2023-10-17 20:48 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-11-09 13:41 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps 2024-11-08 22:45 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate 2024-11-08 22:30 - 2023-01-30 13:24 - 000000000 ____D C:\Users\faiss\AppData\Local\Packages 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-11-08 22:27 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-11-08 22:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2024-11-08 21:58 - 2022-02-01 08:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-11-06 18:08 - 2023-01-30 13:26 - 000002421 _____ C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-11-03 11:38 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\appcompat 2024-11-02 22:07 - 2022-02-01 08:49 - 000000000 ____D C:\ProgramData\Packages 2024-11-02 21:39 - 2022-02-01 08:49 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-11-02 21:38 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Windows NT 2024-11-02 21:36 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender 2024-11-02 21:36 - 2024-04-01 08:26 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2024-11-02 21:36 - 2023-01-30 13:26 - 000000000 ___RD C:\Users\faiss\OneDrive 2024-11-02 21:33 - 2024-06-23 13:59 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Clavier+ 2024-11-02 21:33 - 2024-02-15 19:24 - 000000000 ____D C:\Users\Invite\AppData\Local\Packages 2024-11-02 21:33 - 2023-08-12 18:04 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.11 2024-11-02 21:33 - 2023-02-16 17:01 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sparrow 2024-11-02 21:33 - 2023-02-13 20:28 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-11-02 21:33 - 2023-02-05 14:50 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-11-02 21:33 - 2023-01-30 14:26 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop 2024-11-02 21:32 - 2024-04-01 08:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2024-11-02 21:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-11-02 21:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2024-11-02 21:32 - 2023-10-13 15:00 - 000000000 ____D C:\WINDOWS\Firmware 2024-11-02 21:31 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-11-02 21:31 - 2024-04-01 08:29 - 000000000 ____D C:\WINDOWS\Setup 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 __RHD C:\Users\Public\Libraries 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\spool 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\NDF 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2024-11-02 21:31 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-11-02 21:31 - 2024-02-25 14:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Sandbox 2024-11-02 21:31 - 2023-10-13 15:00 - 000000000 ____D C:\WINDOWS\system32\A-Volute 2024-11-02 21:31 - 2023-08-11 23:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2024-11-02 21:31 - 2023-02-05 15:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZELOTES C-12 3327 2024-11-02 21:31 - 2023-02-05 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-11-02 21:31 - 2023-01-30 14:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShareX 2024-11-02 21:31 - 2023-01-30 14:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2024-11-02 21:31 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2024-11-02 21:31 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-11-02 21:31 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2024-11-02 21:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2024-11-02 21:30 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\schemas 2024-11-02 21:30 - 2023-10-13 15:00 - 000000000 ____D C:\WINDOWS\system32\AMD 2024-11-02 21:30 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-11-02 21:30 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-11-02 21:28 - 2024-04-01 17:38 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2024-11-02 21:28 - 2024-04-01 17:38 - 000028898 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2024-11-02 21:28 - 2024-04-01 17:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2024-11-02 21:28 - 2024-04-01 17:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2024-11-02 21:28 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2024-11-02 21:28 - 2024-04-01 08:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2024-11-02 21:28 - 2024-04-01 08:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemApps 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\te-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\or-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\is-IS 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\id-ID 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\et-EE 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\es-MX 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Com 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\be-BY 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\as-IN 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\am-ET 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\IME 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore 2024-11-02 21:28 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System 2024-11-02 21:28 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing 2024-11-02 21:27 - 2024-04-01 08:22 - 000063064 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll 2024-11-02 21:27 - 2024-04-01 08:22 - 000062952 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcPseDMA.dll 2024-11-02 21:27 - 2024-04-01 08:22 - 000062944 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll 2024-11-02 21:25 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\OCR 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\system32\winrm 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\system32\WCN 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\system32\slmgr 2024-11-02 21:24 - 2024-04-01 17:35 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2024-11-02 21:24 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\dsc 2024-11-02 21:24 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender 2024-10-30 19:42 - 2022-02-01 08:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-10-27 21:04 - 2023-01-30 14:26 - 000000000 ____D C:\Users\faiss\AppData\Roaming\Telegram Desktop 2024-10-17 17:26 - 2023-05-28 23:14 - 000001390 _____ C:\Users\faiss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk ==================== SigCheckExt ========================= 2024-11-07 22:34 - 2024-11-10 12:40 - 002400768 _____ (Farbar) C:\Users\faiss\OneDrive\Bureau\FRST64.exe 2024-10-06 13:35 - 2024-10-06 13:35 - 039289750 _____ (The qBittorrent project) C:\Users\faiss\OneDrive\Bureau\qbittorrent_5.0.0_x64_setup.exe 2024-05-07 20:27 - 2024-05-07 20:29 - 261294523 _____ (RomStation ) C:\Users\faiss\OneDrive\Bureau\romstation-windows-x64.exe 2024-11-10 10:39 - 2024-11-10 10:39 - 003362816 _____ (Nicolas Coolman) C:\Users\faiss\OneDrive\Bureau\ZHPCleaner.exe 2024-11-07 21:56 - 2024-11-07 21:56 - 003536896 _____ (Nicolas Coolman) C:\Users\faiss\OneDrive\Bureau\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {024451bc-8333-11ec-9251-e3539106c3b9} {024451bd-8333-11ec-9251-e3539106c3b9} {024451be-8333-11ec-9251-e3539106c3b9} timeout 0 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} isolatedcontext Yes default {current} resumeobject {7ee6944f-9959-11ef-8c13-d08a51deccb1} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {024451bc-8333-11ec-9251-e3539106c3b9} description EFI USB Device isolatedcontext Yes Application logicielle (101fffff) -------------------------------- identificateur {024451bd-8333-11ec-9251-e3539106c3b9} description EFI DVD/CDROM isolatedcontext Yes Application logicielle (101fffff) -------------------------------- identificateur {024451be-8333-11ec-9251-e3539106c3b9} description EFI Network isolatedcontext Yes Chargeur de démarrage Windows ----------------------------- identificateur {024451c2-8333-11ec-9251-e3539106c3b9} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{024451c3-8333-11ec-9251-e3539106c3b9} path \windows\system32\winload.efi description Windows Recovery Environment locale de-de inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{024451c3-8333-11ec-9251-e3539106c3b9} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {024451c5-8333-11ec-9251-e3539106c3b9} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {024451c7-8333-11ec-9251-e3539106c3b9} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {024451c4-8333-11ec-9251-e3539106c3b9} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {024451c7-8333-11ec-9251-e3539106c3b9} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{024451c8-8333-11ec-9251-e3539106c3b9} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{024451c8-8333-11ec-9251-e3539106c3b9} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Installation de Windows ----------------------- identificateur {7254a080-1510-4e85-ac0f-e7fb3d444736} device ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{024451c9-8333-11ec-9251-e3539106c3b9} custom:11000083 partition=C: path \windows\system32\winload.efi description Windows Rollback locale fr-FR bootstatfilepath \$WINDOWS.~BT\Sources\SafeOS\bootstat.dat inherit {bootloadersettings} restartonfailure Yes isolatedcontext Yes osdevice ramdisk=[C:]\$WINDOWS.~BT\Sources\SafeOS\winre.wim,{024451c9-8333-11ec-9251-e3539106c3b9} custom:21000152 partition=C: systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {7ee69451-9959-11ef-8c13-d08a51deccb1} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {7ee6944f-9959-11ef-8c13-d08a51deccb1} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {7ee69451-9959-11ef-8c13-d08a51deccb1} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{7ee69452-9959-11ef-8c13-d08a51deccb1} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{7ee69452-9959-11ef-8c13-d08a51deccb1} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {024451c4-8333-11ec-9251-e3539106c3b9} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {024451c7-8333-11ec-9251-e3539106c3b9} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {7ee6944f-9959-11ef-8c13-d08a51deccb1} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {7ee69451-9959-11ef-8c13-d08a51deccb1} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes isolatedcontext Yes Paramètres EMS -------------- identificateur {emssettings} bootems No isolatedcontext Yes Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Local isolatedcontext Yes Erreurs de mémoire RAM ---------------------- identificateur {badmemory} isolatedcontext Yes Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} isolatedcontext Yes Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} isolatedcontext Yes Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} isolatedcontext Yes hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} isolatedcontext Yes Options de périphérique ----------------------- identificateur {024451c8-8333-11ec-9251-e3539106c3b9} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi Options de périphérique ----------------------- identificateur {024451c9-8333-11ec-9251-e3539106c3b9} description Windows Setup isolatedcontext Yes ramdisksdidevice partition=C: ramdisksdipath \$WINDOWS.~BT\Sources\SafeOS\boot.sdi Options de périphérique ----------------------- identificateur {7ee69452-9959-11ef-8c13-d08a51deccb1} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================