Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-12-2024 Exécuté par ericn (administrateur) sur LAPTOP-9GHAN5LN (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X521FA_S533FA) (09-12-2024 19:20:57) Exécuté depuis C:\Users\ericn\Downloads\FRST64.exe Profils chargés: ericn Plate-forme: Microsoft Windows 11 Famille Version 23H2 22631.4541 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusOSD.exe (C:\Program Files\Windows Defender\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCopyAccelerator.exe (DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusOptimizationStartupTask.exe (DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSupportService.exe (DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <47> (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\AsusAppService\AsusAppService.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusOptimization.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSoftwareManager.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSwitch\AsusSwitch.exe (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemAnalysis\AsusSystemAnalysis.exe <2> (services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe (services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_a5d3270da26fb113\ICEsoundService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_aadeb856d6301f7c\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a439e07c373809e2\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0a2eb8dac923ec42\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0a2eb8dac923ec42\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_e72614dff5a8a910\Intel_PIE_Service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7c484f80872e1cd8\jhi_service.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3> (services.exe ->) (Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\ericn\AppData\Local\Microsoft\OneDrive\24.221.1103.0003\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoftwindows.client.webexperience_524.30502.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKU\S-1-5-21-3297837166-1715305749-4148422027-1001\...\Run: [MicrosoftEdgeAutoLaunch_D7955B0807D27B056AA9AA1D14252121] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911248 2024-11-15] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\ericn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\stream.x64.x-all.dat.lnk [2022-08-22] ShortcutAndArgument: stream.x64.x-all.dat.lnk -> C:\Windows\system32\wscript.exe => /E:vbscript "C:\Users\ericn\AppData\Roaming\stream.x64.x-all.dat.vbs" <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {8EB91FEE-9C7D-4A78-9396-79FEFC0603AE} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusHotkey.exe [326120 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {A6A2F0B8-92AE-4EE0-9381-A9C29637CD55} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusUpdateChecker.exe [793040 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {A6A16A3D-A774-4D7B-92ED-EACF379C85FC} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemAnalysis\AsusSystemAnalysis.exe [5007312 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) Task: {32B77421-66A3-41F7-8A8F-225A6BF8D3BD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24610408 2020-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {5FCE74B0-CED2-48B1-94A3-371AFE70D2CA} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24610408 2020-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {7B540265-4D44-4C50-AB75-DA888B3A9C0F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158544 2020-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {1B1BE729-CFFA-4E28-8733-35910B6DFEE8} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [158544 2020-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Pas de fichier) Task: {E7FBA5FF-533B-4745-B69E-B73A614B17E6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {F29C631A-0EA3-4A62-A7D7-BD3AAC052DFB} - System32\Tasks\RtkAudUService64_BG => C:\Windows\System32\RtkAudUService64.exe [1063712 2020-02-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 1.1.1.1 1.0.0.1 Tcpip\..\Interfaces\{e33ae97a-b6be-4cad-8b86-4f8371e43066}: [DhcpNameServer] 1.1.1.1 1.0.0.1 Tcpip\..\Interfaces\{f2b82d7f-7060-4312-9ba2-cbc3d8300b0d}: [DhcpNameServer] 10.66.24.1 Edge: ======= Edge Profile: C:\Users\ericn\AppData\Local\Microsoft\Edge\User Data\Default [2024-12-09] Edge HomePage: Default -> hxxp://www.msn.com/?pc=ASTE Edge Extension: (Google Docs hors connexion) - C:\Users\ericn\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-09] Edge Extension: (Edge relevant text changes) - C:\Users\ericn\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-12-09] FireFox: ======== FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\AsusAppService\AsusAppService.exe [1176016 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusOptimization.exe [577384 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 AsusPTPService; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPService.exe [229840 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSoftwareManager\AsusSoftwareManager.exe [1389032 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSwitch\AsusSwitch.exe [650704 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemAnalysis\AsusSystemAnalysis.exe [5007312 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1096656 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11109232 2020-04-10] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2909208 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 MicrosoftEdgeElevationService; "C:\Program Files (x86)\Microsoft\Edge\Application\131.0.2903.51\elevation_service.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AsusPTPDrv; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_1e467870260bcd2f\AsusPTPFilter.sys [199632 2024-09-04] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSSystemAnalysis\AsusSAIO.sys [49320 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_a61e5ab0aed04d3c\ASUSOptimization\AsusWmiAcpi.sys [49096 2024-09-26] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) R3 MpKslab90aeed; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{2D0A0D24-2B5A-4384-BC20-DE15725F9789}\MpKslDrv.sys [267552 2024-12-09] (Microsoft Windows -> Microsoft Corporation) S3 TIHIFUSB; C:\WINDOWS\System32\Drivers\tihifusb.sys [26624 2022-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments Inc.) S3 TINWBUSB; C:\WINDOWS\System32\Drivers\tinwbusb.sys [24576 2022-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments Inc.) S3 TISLEDOS; C:\WINDOWS\System32\drivers\tisledos.sys [142848 2022-01-11] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments) S3 TISLEDUSB; C:\WINDOWS\System32\drivers\tisledusb.sys [143360 2022-01-11] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments) S3 USBTINSP; C:\WINDOWS\System32\drivers\tinspusb.sys [142848 2022-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Texas Instruments) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [48536 2022-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [438544 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [90384 2022-05-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-12-09 19:20 - 2024-12-09 19:21 - 000016519 _____ C:\Users\ericn\Downloads\FRST.txt 2024-12-09 19:20 - 2024-12-09 19:21 - 000000000 ____D C:\FRST 2024-12-09 19:19 - 2024-12-09 19:19 - 002402304 _____ (Farbar) C:\Users\ericn\Downloads\FRST64.exe 2024-12-09 19:14 - 2024-12-09 19:14 - 000773670 _____ C:\WINDOWS\system32\perfh00C.dat 2024-12-09 19:14 - 2024-12-09 19:14 - 000148746 _____ C:\WINDOWS\system32\perfc00C.dat 2024-12-09 19:08 - 2024-12-09 19:15 - 000002364 _____ C:\Users\ericn\OneDrive\Bureau\Microsoft Edge.lnk 2024-12-09 19:08 - 2024-12-09 19:08 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3297837166-1715305749-4148422027-1001 2024-12-09 18:41 - 2024-12-09 18:41 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\Excel 2024-12-09 18:41 - 2024-12-09 18:41 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\AddIns 2024-12-09 18:40 - 2024-12-09 18:40 - 000000000 ____D C:\Users\ericn\AppData\Local\VirtualStore 2024-12-09 18:37 - 2024-12-09 19:17 - 000003752 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 2024-12-09 18:37 - 2024-12-09 18:38 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-12-09 18:37 - 2024-12-09 18:37 - 000000000 ____D C:\Users\ericn\AppData\Local\CEF 2024-12-09 18:37 - 2024-12-09 18:37 - 000000000 ____D C:\Users\ericn\AppData\Local\ASUS 2024-12-09 18:36 - 2024-12-09 18:36 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2024-12-09 18:33 - 2024-12-09 18:33 - 000000000 ____D C:\Users\ericn\AppData\Local\PlaceholderTileLogoFolder 2024-12-09 18:32 - 2024-12-09 18:32 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\Network 2024-12-09 00:36 - 2024-12-09 00:36 - 000000000 ____D C:\Users\ericn\AppData\Local\Comms 2024-12-09 00:20 - 2024-12-09 19:08 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3297837166-1715305749-4148422027-1001 2024-12-09 00:20 - 2024-12-09 19:08 - 000002423 _____ C:\Users\ericn\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-12-09 00:20 - 2024-12-09 00:20 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2024-12-09 00:19 - 2024-12-09 18:32 - 000000000 ____D C:\Users\ericn\AppData\Local\D3DSCache 2024-12-09 00:19 - 2024-12-09 00:36 - 000000000 ____D C:\Users\ericn\AppData\Local\Publishers 2024-12-09 00:18 - 2024-12-09 19:08 - 000000000 ____D C:\Users\ericn\AppData\Local\Packages 2024-12-09 00:18 - 2024-12-09 19:08 - 000000000 ____D C:\ProgramData\Packages 2024-12-09 00:18 - 2024-12-09 19:07 - 000000000 ____D C:\Users\ericn\AppData\Local\ConnectedDevicesPlatform 2024-12-09 00:18 - 2024-12-09 00:18 - 000000020 ___SH C:\Users\ericn\ntuser.ini 2024-12-09 00:18 - 2024-12-09 00:18 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Adobe 2024-12-08 23:42 - 2024-12-09 19:14 - 001710914 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-12-08 23:36 - 2024-12-09 19:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-12-08 23:36 - 2024-12-09 18:35 - 000004122 _____ C:\WINDOWS\system32\Tasks\ASUS Update Checker 2.0 2024-12-08 23:36 - 2024-12-09 18:35 - 000003756 _____ C:\WINDOWS\system32\Tasks\ASUS Optimization 36D18D69AFC3 2024-12-08 23:36 - 2024-12-08 23:36 - 000003408 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-12-08 23:36 - 2024-12-08 23:36 - 000003184 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-12-08 23:36 - 2024-12-08 23:36 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3297837166-1715305749-4148422027-500 2024-12-08 23:36 - 2024-12-08 23:36 - 000002314 _____ C:\WINDOWS\system32\Tasks\RtkAudUService64_BG 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\Users\Default User 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\Users\All Users 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\ProgramData\Modèles 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\ProgramData\Bureau 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 _SHDL C:\Program Files\Fichiers communs 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 ____D C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Roaming\Microsoft\SystemCertificates 2024-12-08 23:36 - 2024-12-08 23:36 - 000000000 ____D C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Roaming\Microsoft\Crypto 2024-12-08 23:35 - 2024-12-08 23:35 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\SystemCertificates 2024-12-08 23:35 - 2024-12-08 23:35 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\Crypto 2024-12-08 23:35 - 2024-12-08 23:35 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\SystemCertificates 2024-12-08 23:35 - 2024-12-08 23:35 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Crypto 2024-12-08 23:35 - 2024-12-08 23:35 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-12-08 23:34 - 2024-12-09 19:14 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\Spelling 2024-12-08 23:34 - 2024-12-09 00:18 - 000000000 ____D C:\Users\ericn\AppData\Roaming\Microsoft\Windows 2024-12-08 23:34 - 2024-12-09 00:18 - 000000000 ____D C:\Users\ericn 2024-12-08 23:34 - 2024-12-08 23:36 - 000000000 ____D C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Roaming\Microsoft\Windows 2024-12-08 23:34 - 2024-12-08 23:36 - 000000000 ____D C:\Users\defaultuser100000.LAPTOP-9GHAN5LN 2024-12-08 23:34 - 2024-12-08 23:35 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows 2024-12-08 23:34 - 2024-12-08 23:35 - 000000000 ____D C:\Users\defaultuser100000 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\Voisinage réseau 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\Voisinage d'impression 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\Modèles 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\Mes documents 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\Menu Démarrer 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\ericn\AppData\Local\Historique 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\Voisinage réseau 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\Voisinage d'impression 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\Modèles 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\Mes documents 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\Menu Démarrer 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Historique 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\Voisinage réseau 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\Voisinage d'impression 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\Modèles 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\Mes documents 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\Menu Démarrer 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-12-08 23:34 - 2024-12-08 23:34 - 000000000 _SHDL C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Local\Historique 2024-12-08 23:34 - 2024-12-08 23:21 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Spelling 2024-12-08 23:34 - 2024-12-08 23:21 - 000000000 ____D C:\Users\defaultuser100000.LAPTOP-9GHAN5LN\AppData\Roaming\Microsoft\Spelling 2024-12-08 23:32 - 2024-12-08 23:32 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-12-08 23:29 - 2024-12-08 23:33 - 000000000 ____D C:\ProgramData\Intel 2024-12-08 23:29 - 2024-12-08 23:29 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2024-12-08 23:29 - 2024-12-08 23:29 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2024-12-08 23:28 - 2024-12-09 19:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-12-08 23:28 - 2024-12-09 19:06 - 000297776 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-12-08 23:28 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\ASUS 2024-12-08 23:28 - 2024-12-08 23:28 - 000000000 ____D C:\WINDOWS\system32\config\BFS 2024-12-08 23:28 - 2019-09-11 13:04 - 000030762 _____ C:\WINDOWS\system32\Drivers\Gen3p1pkey.dat 2024-12-08 23:28 - 2019-06-27 16:28 - 000001400 _____ C:\WINDOWS\system32\Drivers\configuration.tf 2024-12-08 23:27 - 2024-12-08 23:42 - 000000000 ____D C:\WINDOWS\Panther 2024-12-08 23:27 - 2024-12-08 23:42 - 000000000 ____D C:\Windows.old 2024-12-08 23:27 - 2024-12-08 23:27 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-12-08 23:26 - 2024-12-08 23:26 - 000000000 ____D C:\WINDOWS\system32\Intel 2024-12-08 23:26 - 2024-12-08 23:26 - 000000000 ____D C:\WINDOWS\system32\cAVS 2024-12-08 23:24 - 2024-12-08 23:27 - 000000000 ____D C:\WINDOWS\Setup 2024-12-08 23:24 - 2024-12-08 23:24 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-12-08 23:23 - 2024-12-08 23:42 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\fr 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\fr 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\addins 2024-12-08 23:23 - 2024-12-08 23:23 - 000000000 ____D C:\ProgramData\ssh 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\winrm 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\WCN 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\slmgr 2024-12-08 23:22 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2024-12-08 23:22 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2024-12-08 23:22 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\SysWOW64\0409 2024-12-08 23:22 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\system32\0409 2024-12-08 23:22 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\DigitalLocker 2024-12-08 23:21 - 2024-12-09 19:18 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-12-08 23:21 - 2024-12-09 19:16 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-12-08 23:21 - 2024-12-09 19:16 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-12-08 23:21 - 2024-12-09 19:15 - 000000000 ____D C:\WINDOWS\ServiceState 2024-12-08 23:21 - 2024-12-09 19:08 - 000000000 ___HD C:\Program Files\WindowsApps 2024-12-08 23:21 - 2024-12-09 19:07 - 000000000 ___RD C:\Program Files (x86) 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\SystemResources 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\setup 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-12-08 23:21 - 2024-12-09 19:06 - 000000000 ____D C:\ProgramData\USOPrivate 2024-12-08 23:21 - 2024-12-09 18:46 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2024-12-08 23:21 - 2024-12-09 18:36 - 000000000 ____D C:\WINDOWS\appcompat 2024-12-08 23:21 - 2024-12-08 23:37 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2024-12-08 23:21 - 2024-12-08 23:36 - 000000000 ____D C:\Program Files\Windows NT 2024-12-08 23:21 - 2024-12-08 23:35 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2024-12-08 23:21 - 2024-12-08 23:34 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ___SD C:\WINDOWS\system32\dsc 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\WaaS 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\spool 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\OCR 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\WINDOWS\IME 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2024-12-08 23:21 - 2024-12-08 23:33 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2024-12-08 23:21 - 2024-12-08 23:32 - 000000000 ____D C:\Program Files\Common Files\System 2024-12-08 23:21 - 2024-12-08 23:27 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2024-12-08 23:21 - 2024-12-08 23:27 - 000000000 __RHD C:\Users\Public\Libraries 2024-12-08 23:21 - 2024-12-08 23:27 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\id-ID 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\Com 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\Program Files\Windows Defender 2024-12-08 23:21 - 2024-12-08 23:23 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2024-12-08 23:21 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2024-12-08 23:21 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\system32\MUI 2024-12-08 23:21 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\Help 2024-12-08 23:21 - 2024-12-08 23:22 - 000000000 ____D C:\WINDOWS\BrowserCore 2024-12-08 23:21 - 2024-12-08 23:22 - 000000000 ____D C:\Program Files (x86)\Windows NT 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 __SHD C:\Program Files\Windows Sidebar 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\system32\Nui 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\system32\lxss 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\WUModels 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Web 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Vss 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\UUS 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\tracing 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\TAPI 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SystemApps 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\winevt 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\WebThreatDefSvc 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\ras 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\ProximityToast 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Pbr 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\NDF 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Keywords 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Ipmi 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\IME 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\icsxml 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\ias 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\DriverState 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\downlevel 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\DDFs 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\config\TxR 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\config\RegBack 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\config\Journal 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\System 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SKB 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\security 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\schemas 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\SchCache 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Resources 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\rescache 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Registration 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Provisioning 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\PLA 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Performance 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\ModemLogs 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Media 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\L2Schemas 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\InputMethod 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\InboxApps 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\IdentityCRL 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Globalization 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\DiagTrack 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Cursors 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Containers 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\Branding 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Spelling 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\ProgramData\USOShared 2024-12-08 23:21 - 2024-12-08 23:21 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2024-12-08 23:21 - 2024-12-08 23:20 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config 2024-12-08 23:21 - 2024-12-08 23:20 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config 2024-12-08 23:21 - 2024-12-08 23:20 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2024-12-08 23:20 - 2024-12-09 19:14 - 000000000 ____D C:\WINDOWS\INF 2024-12-08 23:18 - 2024-12-09 19:01 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-12-08 23:17 - 2024-12-09 19:15 - 104071168 _____ C:\WINDOWS\system32\config\SOFTWARE 2024-12-08 23:17 - 2024-12-09 19:15 - 025690112 _____ C:\WINDOWS\system32\config\SYSTEM 2024-12-08 23:17 - 2024-12-09 19:15 - 000524288 _____ C:\WINDOWS\system32\config\DEFAULT 2024-12-08 23:17 - 2024-12-09 19:15 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2024-12-08 23:17 - 2024-12-09 19:15 - 000065536 _____ C:\WINDOWS\system32\config\SAM 2024-12-08 23:17 - 2024-12-09 19:15 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY 2024-12-08 23:17 - 2024-12-09 18:48 - 000000000 ____D C:\WINDOWS\servicing 2024-12-08 23:17 - 2024-12-09 18:40 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2024-12-08 23:17 - 2024-12-08 23:21 - 000000000 ____D C:\WINDOWS\system32\SMI 2024-12-08 23:16 - 2024-12-08 23:36 - 000000000 ___HD C:\$SysReset 2024-11-27 13:53 - 2024-11-27 13:53 - 000002195 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IFBpbG90ZSBPbiBEZQ-- (71).ica 2024-11-27 13:50 - 2024-11-27 13:50 - 000002199 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IE9uIERlbWFuZF8tMg-- (16).ica 2024-11-27 11:38 - 2024-11-27 11:38 - 000002199 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IE9uIERlbWFuZF8tMg-- (15).ica 2024-11-27 11:34 - 2024-11-27 11:34 - 000002195 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IFBpbG90ZSBPbiBEZQ-- (70).ica 2024-11-27 10:37 - 2024-11-27 10:37 - 000002195 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IFBpbG90ZSBPbiBEZQ-- (69).ica 2024-11-17 18:44 - 2024-11-17 18:44 - 000026650 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-11-17 18:42 - 2024-11-17 18:42 - 000026650 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2024-11-17 18:01 - 2024-11-17 18:03 - 000002195 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IFBpbG90ZSBPbiBEZQ-- (68).ica 2024-11-13 08:40 - 2024-11-13 08:40 - 001564141 _____ C:\Users\ericn\OneDrive\Bureau\Copie de DSCG 2024 mdofi derniere version 13-11.pptx 2024-11-12 13:31 - 2024-11-12 13:31 - 000002195 _____ C:\Users\ericn\Downloads\UWVvZDIwMTkuRXhwZXJ0IFBpbG90ZSBPbiBEZQ-- (67).ica 2024-11-09 22:46 - 2024-11-09 22:46 - 001273126 _____ C:\Users\ericn\Downloads\Copie de DSCG 2024 (3).pptx 2024-11-09 22:30 - 2024-11-09 22:30 - 001212858 _____ C:\Users\ericn\Downloads\Copie de DSCG 2024 (2).pptx ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-12-09 19:16 - 2021-01-16 01:59 - 000000000 ___RD C:\Users\ericn\OneDrive 2024-12-09 19:15 - 2020-05-13 05:00 - 000012288 ___SH C:\DumpStack.log.tmp 2024-12-09 19:07 - 2020-11-05 03:11 - 000000000 ____D C:\ProgramData\ASUS 2024-12-09 19:07 - 2020-05-13 05:04 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-12-09 00:19 - 2021-05-26 12:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2024-12-09 00:19 - 2020-05-13 05:06 - 000002474 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002474 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2024-12-09 00:19 - 2020-05-13 05:06 - 000002397 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2024-12-09 00:18 - 2020-11-05 04:13 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-12-09 00:18 - 2020-05-13 05:43 - 000000000 ____D C:\WINDOWS\Log 2024-12-09 00:18 - 2020-05-13 05:04 - 000000000 ____D C:\Program Files\Microsoft Office 2024-12-08 23:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2024-12-08 23:33 - 2020-11-05 04:23 - 000000000 ____D C:\WINDOWS\OEM 2024-12-08 23:33 - 2020-11-05 04:17 - 000000000 ____D C:\ProgramData\McInstTemp0058601604546239 2024-12-08 23:33 - 2020-05-13 05:04 - 000000000 ____D C:\Program Files\Microsoft Office 15 2024-12-08 23:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2024-12-08 23:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2024-12-08 23:33 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Security 2024-12-08 23:32 - 2020-05-13 05:05 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-12-08 23:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2024-12-08 23:27 - 2021-07-01 20:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ThinPrint Client Windows 2024-12-08 23:27 - 2021-02-03 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2024-12-08 23:11 - 2020-11-05 03:11 - 000000000 ___HD C:\Intel 2024-12-08 22:45 - 2021-01-16 01:58 - 000000000 __SHD C:\Users\ericn\IntelGraphicsProfiles 2024-11-24 05:25 - 2021-04-20 19:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================