Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 03-02-2025 Exécuté par mbutt (administrateur) sur MARCEL (Gigabyte Technology Co., Ltd. A520M DS3H V2) (05-02-2025 14:21:20) Exécuté depuis C:\Users\mbutt\Desktop\FRST64 (1).exe Profils chargés: mbutt Plate-forme: Microsoft Windows 11 Professionnel Version 24H2 26100.3037 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (cmd.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <17> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\EoAExperiences.exe (services.exe ->) (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe (services.exe ->) (AOMEI International Network Limited -> AOMEI International Network Limited) C:\Program Files (x86)\AOMEI\AOMEI Backupper\7.4.2\ABService.exe (services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Windows\System32\GigabyteUpdateService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.27703.1006.0_x64__8wekyb3d8bbwe\SecHealthUI.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22178.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22178.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.34401.20.0_x64__cw5n1h2txyewy\WidgetBoard.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealth\10.0.27703.1006-0\SecurityHealthHost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b55ed36a9a78cc75\RtkAudUService64.exe [3495808 2022-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [MouseDriver] => C:\WINDOWS\system32\TiltWheelMouse.exe [241152 2012-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Pixart Imaging Inc) HKLM\...\Run: [Seagate Scheduler2 Service] => C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedhlp.exe [643672 2023-01-05] (Acronis International GmbH -> Acronis International GmbH) HKLM-x32\...\Run: [DiscWizardMonitor.exe] => C:\Program Files (x86)\Seagate\DiscWizard\DiscWizardMonitor.exe [5090352 2023-01-05] (Acronis International GmbH -> ) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [446392 2023-01-05] (Acronis International GmbH -> Acronis International GmbH) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [239704 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\WINDOWS\system32\hpzllw71.dll [62552 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Pas de fichier) Task: {9661A0ED-B7ED-4B06-85E6-AE8BEA141E43} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator => C:\WINDOWS\system32\UIEOrchestrator.exe [336816 2025-01-30] (Microsoft Windows -> ) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {CD2EF6C9-27EE-46C6-948C-DA3DFBE76A84} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {101FAE22-F81D-4141-A663-6CB95292E9BD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A05BE9DF-E2C7-4136-B8A3-44DB279F78B5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C64A368B-DAD7-4218-82EB-891B1A0B5E55} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe [1687360 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {199EAC20-DE4F-4881-936E-9F17168EF827} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2024-06-10] (Nvidia Corporation -> NVIDIA Corporation) Task: {778DD6C6-7C06-4113-9DB6-79A151088DBA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2024-06-10] (Nvidia Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 06 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 06 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{69e6a88b-e67e-43a4-85b0-c04dbccbdeca}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{69e6a88b-e67e-43a4-85b0-c04dbccbdeca}: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-05] Edge DefaultSearchURL: Default -> hxxps://www.qwant.com/?q={searchTerms}&client=plgn-edge-sb Edge DefaultSearchKeyword: Default -> www.qwant.com Edge DefaultSuggestURL: Default -> hxxps://api.qwant.com/api/suggest/?q={searchTerms}&client=opensearch Edge Extension: (Qwant) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\admmanannmnegodaboehkdhangccabio [2024-12-12] Edge Extension: (Norton Safe Web) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bdaafgjhhjkdplpffldcncdignokfkbo [2025-01-07] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2025-02-04] Edge Extension: (Avira Safe Shopping) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2024-12-12] Edge Extension: (DuckDuckGo) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caoacbimdbbljakfhgikoodekdnlcgpk [2025-01-23] Edge Extension: (Avast Online Security & Privacy) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2024-12-12] Edge Extension: (Google Docs hors connexion) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-26] Edge Extension: (Edge relevant text changes) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-12-12] Edge Extension: (FranceVerif) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jpkboimponcpijccnmajogiloakfldgo [2024-12-12] Edge Extension: (Decentraleyes) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lmijmgnfconjockjeepmlmkkibfgjmla [2024-12-12] Edge Extension: (Privacy Badger) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-01-30] Edge Extension: (uBlock Origin) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2025-01-03] Edge Extension: (AdGuard AdBlocker) - C:\Users\mbutt\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pdffkfellgipmhklpdmokmckkkfcopbh [2024-12-26] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 aakore; C:\Program Files (x86)\Seagate\Agent\aakore.exe [9022120 2023-01-05] (Acronis International GmbH -> Acronis International GmbH) R2 Backupper Service; C:\Program Files (x86)\AOMEI\AOMEI Backupper\7.4.2\ABService.exe [1109232 2024-09-19] (AOMEI International Network Limited -> AOMEI International Network Limited) S4 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-12-15] (The Document Foundation -> The Document Foundation) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2025-02-04] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559304 2024-12-20] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SgtSch2Svc; C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe [1052472 2023-01-05] (Acronis International GmbH -> Acronis International GmbH) S4 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5910328 2023-01-05] (Acronis International GmbH -> Acronis International GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-12-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 GigabyteUpdateService; C:\WINDOWS\system32\GigabyteUpdateService.exe [898808 2025-02-04] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2024-04-29] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33592 2024-09-12] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [172928 2025-01-21] (AOMEI International Network Limited -> ) R2 amwrtdrv; C:\Windows\system32\amwrtdrv.sys [32176 2025-01-21] (AOMEI International Network Limited -> ) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2025-01-04] (Acronis International GmbH -> Acronis International GmbH) R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [183944 2025-01-04] (Acronis International GmbH -> Acronis International GmbH) S3 gdrv3; C:\Windows\System32\drivers\gdrv3.sys [52528 2024-12-14] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2025-02-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2025-02-04] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MpKsl73039980; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{874ECB40-FFF9-4627-AC00-1BAB0F3A7671}\MpKslDrv.sys [267552 2025-02-05] (Microsoft Windows -> Microsoft Corporation) R3 NVHDA; C:\WINDOWS\system32\drivers\nvhda64v.sys [136848 2024-06-10] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) S3 Ser2pl; C:\WINDOWS\system32\DRIVERS\ser2pl64.sys [90112 2007-07-31] (Microsoft Windows Hardware Compatibility Publisher -> Prolific Technology Inc.) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [175648 2025-01-04] (Acronis International GmbH -> Acronis International GmbH) R3 t_mouse.sys; C:\WINDOWS\system32\DRIVERS\t_mouse.sys [6144 2012-12-19] (Microsoft Windows Hardware Compatibility Publisher -> ) R3 usbscan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\usbscan.sys [90112 2024-12-20] (Microsoft Windows -> Microsoft Corporation) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2025-01-04] (Acronis International GmbH -> Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2025-01-04] (Acronis International GmbH -> Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22104 2024-12-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606624 2024-12-12] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105888 2024-12-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-02-05 14:21 - 2025-02-05 14:22 - 000015995 _____ C:\Users\mbutt\Desktop\FRST.txt 2025-02-05 14:20 - 2025-02-05 14:22 - 000000000 ____D C:\FRST 2025-02-05 14:19 - 2025-02-05 14:18 - 002403328 _____ (Farbar) C:\Users\mbutt\Desktop\FRST64 (1).exe 2025-02-05 14:18 - 2025-02-05 14:18 - 002403328 _____ (Farbar) C:\Users\mbutt\Downloads\FRST64 (1).exe 2025-02-05 14:01 - 2025-02-05 14:01 - 000140256 _____ C:\Users\mbutt\Desktop\ZHPDiag.txt 2025-02-05 13:55 - 2025-02-05 14:16 - 000000865 _____ C:\Users\mbutt\Desktop\ZHPSuite.lnk 2025-02-05 13:55 - 2025-02-05 14:16 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\ZHP 2025-02-05 13:55 - 2025-02-05 13:55 - 000000000 ____D C:\Users\mbutt\AppData\Local\ZHP 2025-02-05 13:55 - 2025-02-05 13:48 - 003540168 _____ (Nicolas Coolman) C:\Users\mbutt\Desktop\ZHPSuite.exe 2025-02-05 13:47 - 2025-02-05 13:48 - 003540168 _____ (Nicolas Coolman) C:\Users\mbutt\Downloads\ZHPSuite.exe 2025-02-05 05:59 - 2025-02-05 05:59 - 000000000 ____D C:\Users\mbutt\AppData\Local\INetHistory 2025-02-04 14:45 - 2025-02-04 14:59 - 000000000 ____D C:\Users\mbutt\AppData\Local\Malwarebytes 2025-02-04 14:45 - 2025-02-04 14:45 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2025-02-04 14:45 - 2025-02-04 14:45 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2025-02-04 14:39 - 2025-02-04 14:39 - 000000000 ____D C:\ProgramData\Malwarebytes 2025-02-04 14:39 - 2025-02-04 14:39 - 000000000 ____D C:\Program Files\Malwarebytes 2025-02-04 11:12 - 2025-02-04 11:12 - 000754110 _____ C:\WINDOWS\system32\perfh00C.dat 2025-02-04 11:12 - 2025-02-04 11:12 - 000150498 _____ C:\WINDOWS\system32\perfc00C.dat 2025-02-04 10:57 - 2025-02-04 10:57 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2025-02-04 07:51 - 2025-02-04 07:51 - 000098642 _____ C:\Users\mbutt\Downloads\Enedis_AR_25219536894910_04_02_2025 (1).pdf 2025-01-30 16:14 - 2025-01-30 16:14 - 000000000 ____D C:\Users\mbutt\AppData\Local\CrashDumps 2025-01-30 09:58 - 2025-01-30 09:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerShell 2025-01-30 09:57 - 2025-01-30 09:57 - 000000000 ____D C:\Program Files\PowerShell 2025-01-30 08:29 - 2025-02-05 13:44 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-01-30 08:17 - 2025-01-30 08:17 - 000027617 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-01-30 08:17 - 2025-01-30 08:17 - 000027617 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-01-30 07:44 - 2025-02-01 08:17 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2025-01-27 16:01 - 2025-01-27 16:01 - 000000000 ____D C:\Users\mbutt\AppData\Local\mbam 2025-01-27 15:55 - 2025-01-27 15:55 - 002588568 _____ (Malwarebytes) C:\Users\mbutt\Downloads\MBSetup (1).exe 2025-01-21 07:00 - 2025-01-21 07:00 - 000000964 _____ C:\Users\Public\Desktop\AOMEI Backupper.lnk 2025-01-21 07:00 - 2025-01-21 07:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper 2025-01-21 06:59 - 2025-01-21 07:00 - 000172928 _____ C:\WINDOWS\system32\ammntdrv.sys 2025-01-21 06:59 - 2025-01-21 07:00 - 000032176 _____ C:\WINDOWS\system32\amwrtdrv.sys 2025-01-21 06:59 - 2025-01-21 06:59 - 000000000 ____D C:\Program Files (x86)\AOMEI 2025-01-21 06:59 - 2024-04-29 17:21 - 000051120 _____ C:\WINDOWS\system32\ambakdrv.sys 2025-01-14 10:49 - 2025-01-14 10:51 - 066897080 _____ (Advanced Micro Devices, Inc.) C:\Users\mbutt\Downloads\amd_chipset_software_6.10.17.152.exe 2025-01-14 09:03 - 2025-01-14 09:03 - 000001197 _____ C:\Users\Public\Desktop\LibreOffice 24.8.lnk 2025-01-14 09:03 - 2025-01-14 09:03 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 2025-01-14 08:40 - 2025-01-14 08:40 - 000000000 ____D C:\Program Files\Bonjour 2025-01-14 08:40 - 2025-01-14 08:40 - 000000000 ____D C:\Program Files (x86)\Bonjour 2025-01-06 08:14 - 2025-01-06 08:14 - 000000000 ____D C:\Users\mbutt\AppData\Local\setup 2025-01-06 08:11 - 2025-01-06 08:11 - 000000000 ____D C:\Users\mbutt\AppData\Local\AMD_Common 2025-01-06 08:11 - 2025-01-06 08:11 - 000000000 ____D C:\Program Files\AMD 2025-01-06 08:07 - 2025-01-06 08:07 - 001624440 _____ (Tous Les Drivers) C:\Users\mbutt\Downloads\Mes_Drivers_3.0.4.exe 2025-01-04 15:17 - 2025-01-04 15:17 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Seagate 2025-01-04 15:09 - 2025-01-04 15:09 - 000000000 ____D C:\Users\mbutt\AppData\Local\Seagate 2025-01-04 15:08 - 2025-01-04 15:08 - 000000000 ____D C:\ProgramData\Apple 2025-01-04 15:05 - 2025-01-04 15:19 - 000000000 ____D C:\ProgramData\Acronis 2025-01-04 15:05 - 2025-01-04 15:05 - 000394760 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2025-01-04 15:05 - 2025-01-04 15:05 - 000392840 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2025-01-04 15:05 - 2025-01-04 15:05 - 000334984 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2025-01-04 15:05 - 2025-01-04 15:05 - 000251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2025-01-04 15:05 - 2025-01-04 15:05 - 000183944 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\fltsrv.sys 2025-01-04 15:04 - 2025-01-04 15:04 - 000175648 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2025-01-04 15:04 - 2025-01-04 15:04 - 000001270 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate DiscWizard.lnk 2025-01-04 15:04 - 2025-01-04 15:04 - 000001258 _____ C:\Users\Public\Desktop\Seagate DiscWizard.lnk 2025-01-04 15:04 - 2025-01-04 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Seagate 2025-01-04 15:04 - 2025-01-04 15:04 - 000000000 ____D C:\Program Files (x86)\Seagate 2025-01-04 15:00 - 2025-01-04 15:43 - 000000000 ____D C:\ProgramData\Seagate 2025-01-04 10:56 - 2025-01-04 10:56 - 000000000 ____D C:\AdwCleaner 2025-01-04 10:17 - 2025-01-04 10:17 - 008790880 _____ (Malwarebytes) C:\Users\mbutt\Downloads\adwcleaner.exe 2025-01-03 06:40 - 2025-01-03 06:40 - 000000000 ____D C:\Users\mbutt\Downloads\CrystalDiskInfo9_5_0 2025-01-03 06:40 - 2025-01-03 06:40 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\CrystalDiskInfo 2024-12-20 16:02 - 2024-12-20 16:02 - 000000000 ____D C:\Program Files (x86)\Prolific 2024-12-20 15:24 - 2024-12-20 15:24 - 000000000 ____D C:\Users\Default\AppData\Local\D3DSCache 2024-12-20 15:20 - 2024-12-20 15:20 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\VoiceAccess 2024-12-20 13:44 - 2024-12-20 13:44 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2024-12-20 13:39 - 2024-12-20 13:39 - 000000020 ___SH C:\Users\mbutt\ntuser.ini 2024-12-20 13:38 - 2025-02-04 11:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-12-20 13:38 - 2025-01-21 06:43 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1375437466-879345967-3869977482-1001 2024-12-20 13:38 - 2025-01-21 06:43 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1375437466-879345967-3869977482-1001 2024-12-20 13:38 - 2024-12-26 08:27 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-12-20 13:38 - 2024-12-26 08:27 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-12-20 13:38 - 2024-12-20 13:38 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-12-20 13:38 - 2024-12-20 13:38 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2024-12-20 13:36 - 2024-12-20 13:36 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-12-20 13:34 - 2025-02-04 11:12 - 001684136 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-12-20 13:32 - 2024-04-26 09:48 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2024-12-20 13:28 - 2025-02-04 11:08 - 000002774 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2024-12-20 13:27 - 2025-02-05 12:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-12-20 13:27 - 2025-01-30 09:41 - 000461120 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-12-20 13:15 - 2024-12-20 13:26 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Crypto 2024-12-20 13:15 - 2024-12-20 13:15 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\SystemCertificates 2024-12-20 13:15 - 2024-12-20 13:15 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Network 2024-12-20 13:13 - 2024-12-20 13:25 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-12-20 13:12 - 2025-01-28 15:30 - 000000000 ____D C:\Users\mbutt 2024-12-20 13:12 - 2024-12-20 14:33 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Spelling 2024-12-20 13:12 - 2024-12-20 13:42 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Windows 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Voisinage réseau 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Voisinage d'impression 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Modèles 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Mes documents 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Menu Démarrer 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Documents\Mes vidéos 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Documents\Mes images 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\Documents\Ma musique 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-12-20 13:12 - 2024-12-20 13:12 - 000000000 _SHDL C:\Users\mbutt\AppData\Local\Historique 2024-12-20 13:09 - 2024-12-20 13:13 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-12-20 12:57 - 2024-12-20 12:57 - 000000998 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json 2024-12-20 12:54 - 2024-12-20 12:54 - 000005264 _____ C:\WINDOWS\system32\ecoscore_config.json 2024-12-20 12:06 - 2024-12-20 12:06 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-12-20 10:33 - 2024-12-20 10:33 - 000001970 _____ C:\Users\mbutt\Desktop\INFORAD MANAGER 3.9.lnk 2024-12-20 10:33 - 2024-12-20 10:33 - 000000000 ____D C:\Users\mbutt\AppData\Local\IFM39 2024-12-20 10:33 - 2024-12-20 10:33 - 000000000 ____D C:\Program Files (x86)\INFORAD_DRIVERS 2024-12-20 10:33 - 2004-06-28 15:08 - 000042752 _____ (Prolific Technology Inc.) C:\WINDOWS\SysWOW64\Drivers\ser2pl.sys 2024-12-20 08:31 - 2025-01-02 17:35 - 000000000 ___DC C:\WINDOWS\Panther 2024-12-19 15:37 - 2024-12-20 13:26 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\INFORAD 2024-12-19 15:37 - 2024-12-20 10:33 - 000000000 ____D C:\Program Files (x86)\INFORAD 2024-12-19 15:37 - 2024-12-20 08:49 - 000000000 ____D C:\Users\mbutt\AppData\Local\IFM36 2024-12-19 15:36 - 2024-12-19 15:37 - 009604028 _____ (INFORAD Ltd ) C:\Users\mbutt\Downloads\IFM36SETUPEN.exe 2024-12-19 08:26 - 2024-12-19 08:26 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\LibreOffice 2024-12-19 08:24 - 2025-01-14 09:00 - 000000000 ____D C:\Program Files\LibreOffice 2024-12-19 08:11 - 2024-12-19 08:23 - 363794432 _____ C:\Users\mbutt\Downloads\LibreOffice_24.8.3_Win_x86-64.msi 2024-12-18 08:00 - 2024-12-18 08:00 - 000000878 _____ C:\Users\mbutt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LibreOfficePortable.lnk 2024-12-18 07:27 - 2024-12-18 07:27 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\NVIDIA 2024-12-17 07:31 - 2024-12-17 07:31 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Office 2024-12-17 07:29 - 2024-12-17 07:30 - 000104990 _____ C:\Users\mbutt\wtge61fr.HST 2024-12-17 06:56 - 2024-12-17 06:56 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Mozilla 2024-12-16 16:53 - 2024-12-16 16:53 - 000005127 _____ C:\ProgramData\uninstall_ping_updates_82ec82f6-549e-418f-84dc-dce530e486f8.json 2024-12-16 16:47 - 2024-12-16 16:47 - 000000000 _____ C:\ProgramData\UpdateLock-updates 2024-12-16 16:19 - 2024-12-16 16:19 - 000000000 ____D C:\Program Files (x86)\MSECache 2024-12-16 16:02 - 2024-12-20 13:26 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Démarrage 2024-12-16 16:02 - 2024-12-18 14:23 - 000000957 _____ C:\WINDOWS\ODBCINST.INI 2024-12-16 16:02 - 2024-12-18 14:23 - 000000611 _____ C:\WINDOWS\ODBC.INI 2024-12-16 16:00 - 2024-12-18 14:24 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2024-12-16 15:42 - 2025-02-05 06:46 - 000000432 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2024-12-16 15:42 - 2025-02-05 06:46 - 000000208 _____ C:\WINDOWS\SysWOW64\AbBakConfig.dat 2024-12-16 15:42 - 2025-02-05 06:21 - 000001024 ____H C:\SYSTAG.BIN 2024-12-16 15:42 - 2024-12-16 15:42 - 000000000 ____D C:\ProgramData\Aomei 2024-12-16 15:41 - 2025-02-05 06:49 - 000000000 ____D C:\ProgramData\AomeiBR 2024-12-16 15:33 - 2024-12-16 15:39 - 145068968 _____ (AOMEI International Network Limited. ) C:\Users\mbutt\Downloads\AOMEIBackupperStd.exe 2024-12-16 11:59 - 2025-02-05 11:38 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-12-16 11:59 - 2024-12-17 06:56 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Thunderbird 2024-12-16 11:59 - 2024-12-16 11:59 - 000000000 ____D C:\Users\mbutt\AppData\Local\Thunderbird 2024-12-16 11:58 - 2025-02-01 08:17 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-12-16 11:58 - 2025-01-31 08:14 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2024-12-16 11:58 - 2025-01-17 11:05 - 000001326 _____ C:\Users\Public\Desktop\Thunderbird.lnk 2024-12-16 11:41 - 2024-12-16 11:43 - 066916264 _____ (Mozilla) C:\Users\mbutt\Downloads\Thunderbird Setup 128.5.2esr.exe 2024-12-16 07:13 - 2024-12-16 07:13 - 000280051 _____ C:\Users\mbutt\Downloads\Comment activer windows 11 pro (1) (1) (1) (1).pdf 2024-12-15 15:27 - 2024-12-15 15:29 - 000000000 ____D C:\Users\mbutt\Downloads\hwmonitor_1.55 2024-12-15 13:33 - 2025-01-20 15:13 - 000000000 ____D C:\Users\mbutt\AppData\Local\ElevatedDiagnostics 2024-12-15 12:08 - 2024-12-15 14:44 - 000000000 ____D C:\Users\mbutt\AppData\Local\NVIDIA Corporation 2024-12-15 12:08 - 2024-12-15 12:08 - 000000000 ____D C:\Users\mbutt\AppData\Local\CEF 2024-12-15 12:07 - 2024-12-20 13:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2024-12-15 12:07 - 2024-06-10 07:02 - 000994872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2024-12-15 12:07 - 2024-06-10 07:02 - 000085544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2024-12-15 12:05 - 2024-06-11 19:57 - 001859744 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2024-12-15 12:05 - 2024-06-11 19:57 - 001859744 _____ C:\WINDOWS\system32\vulkaninfo.exe 2024-12-15 12:05 - 2024-06-11 19:57 - 001440016 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2024-12-15 12:05 - 2024-06-11 19:57 - 001440016 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2024-12-15 12:05 - 2024-06-11 19:57 - 001099024 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2024-12-15 12:05 - 2024-06-11 19:57 - 000952992 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 001522808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 001172600 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 000719496 _____ C:\WINDOWS\system32\nvofapi64.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 000679048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 000578680 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2024-12-15 12:05 - 2024-06-11 19:54 - 000567432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 002114168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 001794080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6447514.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 001684616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6447514.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 001597560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 000922224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2024-12-15 12:05 - 2024-06-11 19:53 - 000753800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2024-12-15 12:05 - 2024-06-11 19:52 - 008856584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2024-12-15 12:05 - 2024-06-11 19:52 - 007921184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2024-12-15 12:05 - 2024-06-11 19:52 - 002928648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2024-12-15 12:05 - 2024-06-11 19:51 - 004990984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2024-12-15 12:05 - 2024-06-11 19:49 - 007283264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2024-12-15 12:05 - 2024-06-11 19:49 - 006218640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2024-12-15 12:05 - 2024-06-10 10:50 - 001689256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2024-12-15 12:05 - 2024-06-10 10:50 - 000068132 _____ C:\WINDOWS\system32\nvinfo.pb 2024-12-15 12:05 - 2024-06-10 10:50 - 000044544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2024-12-15 11:33 - 2024-12-15 11:58 - 720122256 _____ (NVIDIA Corporation) C:\Users\mbutt\Downloads\475.14-desktop-win10-win11-64bit-international-whql.exe 2024-12-15 11:26 - 2025-02-03 12:04 - 000000000 ____D C:\Users\mbutt\AppData\Local\D3DSCache 2024-12-14 18:28 - 2024-12-14 18:28 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\HTML Help 2024-12-14 16:56 - 2024-12-20 15:25 - 000073845 _____ C:\WINDOWS\dxdiag.txt 2024-12-14 16:35 - 2024-12-14 16:35 - 000000000 ____D C:\Users\mbutt\AppData\Local\Backup 2024-12-13 14:54 - 2024-12-13 14:54 - 000000000 ____D C:\Users\mbutt\AppData\LocalLow\Temp 2024-12-13 14:49 - 2024-12-13 14:49 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2024-12-13 12:28 - 2012-10-18 21:52 - 003867040 _____ C:\WINDOWS\system32\PortChanger.exe 2024-12-13 12:28 - 2012-10-18 21:52 - 002398112 _____ (Hewlett Packard) C:\WINDOWS\system32\hppldcoi.dll 2024-12-13 12:28 - 2012-10-18 21:52 - 000151968 ____N (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\Dot4.sys 2024-12-13 12:28 - 2012-10-18 21:52 - 000027040 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\Dot4Prt.sys 2024-12-12 18:33 - 2024-12-12 18:33 - 000280051 _____ C:\Users\mbutt\Downloads\Comment activer windows 11 pro (1) (1) (1).pdf 2024-12-12 14:43 - 2024-12-12 14:43 - 000000000 ____D C:\Users\mbutt\AppData\Local\PeerDistRepub 2024-12-12 14:38 - 2023-09-18 18:14 - 001296872 ____N (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys 2024-12-12 14:37 - 2024-12-12 14:38 - 000000000 ____D C:\Program Files (x86)\Realtek 2024-12-12 14:37 - 2024-12-12 14:37 - 000000000 ___HD C:\Program Files (x86)\Temp 2024-12-12 14:37 - 2022-06-29 18:34 - 006174016 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2024-12-12 14:37 - 2021-05-17 02:50 - 002875968 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlExUpd.dll 2024-12-12 14:34 - 2025-01-06 08:16 - 000000000 ____D C:\AMD 2024-12-12 14:34 - 2024-12-12 14:34 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\AMD 2024-12-12 14:34 - 2024-12-12 14:34 - 000000000 ____D C:\Program Files (x86)\AMD 2024-12-12 14:28 - 2024-12-14 16:25 - 000052528 ____N (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\Drivers\gdrv3.sys 2024-12-12 14:25 - 2025-01-14 09:05 - 000000000 ____D C:\ProgramData\Package Cache 2024-12-12 14:25 - 2025-01-14 08:23 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2024-12-12 13:20 - 2025-02-04 17:22 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-12-12 13:03 - 2024-12-12 13:03 - 000000000 ____D C:\Users\mbutt\AppData\Local\Comms 2024-12-12 12:56 - 2025-01-20 11:12 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\MMC 2024-12-12 12:54 - 2024-12-12 12:54 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2024-12-12 12:40 - 2024-12-12 12:40 - 000000000 ____D C:\Users\mbutt\AppData\Local\OneDrive 2024-12-12 12:32 - 2024-12-12 12:32 - 000000000 ___HD C:\OneDriveTemp 2024-12-12 12:28 - 2025-01-21 06:43 - 000002417 _____ C:\Users\mbutt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2024-12-12 12:28 - 2025-01-09 14:30 - 000000000 ___RD C:\Users\mbutt\OneDrive 2024-12-12 12:28 - 2024-12-12 12:28 - 000000000 ____D C:\Users\mbutt\AppData\Local\Publishers 2024-12-12 12:27 - 2024-12-16 16:04 - 000000000 ____D C:\Users\mbutt\AppData\Local\VirtualStore 2024-12-12 12:24 - 2025-02-04 11:09 - 000109304 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteDownloadAssistant.exe 2024-12-12 12:24 - 2025-01-31 11:38 - 000000000 ____D C:\Users\mbutt\AppData\Local\packages 2024-12-12 12:24 - 2024-12-20 13:40 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-12-12 12:24 - 2024-12-15 14:44 - 000000000 ____D C:\Users\mbutt\AppData\Local\NVIDIA 2024-12-12 12:24 - 2024-12-12 12:24 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Adobe 2024-12-12 12:23 - 2024-12-12 13:57 - 000000000 ____D C:\Users\mbutt\AppData\Local\ConnectedDevicesPlatform 2024-12-12 12:23 - 2024-12-12 12:23 - 000000000 ____D C:\Users\mbutt\AppData\Roaming\Microsoft\Vault 2024-12-12 11:25 - 2025-01-05 16:25 - 000000000 ____D C:\ProgramData\NVIDIA 2024-12-12 11:25 - 2024-12-20 13:32 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2024-12-12 11:25 - 2024-06-10 07:02 - 005682728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2024-12-12 11:25 - 2024-06-10 07:02 - 002643496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2024-12-12 11:25 - 2024-06-10 07:02 - 001761848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2024-12-12 11:25 - 2024-06-10 07:02 - 000123432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2024-12-12 11:25 - 2024-05-28 10:51 - 010633937 _____ C:\WINDOWS\system32\nvcoproc.bin 2024-12-12 11:25 - 2015-06-29 21:42 - 000385352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2024-12-12 11:24 - 2024-12-20 13:32 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2024-12-12 11:24 - 2024-12-15 15:48 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2024-12-12 11:24 - 2015-06-29 22:53 - 022992072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2024-12-12 11:24 - 2015-06-29 22:53 - 015294280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2024-12-12 11:24 - 2015-06-29 22:53 - 001907400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6434174.dll 2024-12-12 11:24 - 2015-06-29 22:53 - 001557832 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6434174.dll 2024-12-12 11:18 - 2025-01-21 11:06 - 000000000 ____D C:\Users\mbutt\AppData\Local\PlaceholderTileLogoFolder 2024-12-12 11:17 - 2024-12-12 11:17 - 000000000 ___SD C:\Users\mbutt\AppData\Roaming\Microsoft\Protect 2024-12-12 11:17 - 2024-12-12 11:17 - 000000000 ___SD C:\Users\mbutt\AppData\Roaming\Microsoft\Credentials 2024-12-12 11:03 - 2024-12-12 11:03 - 000000000 ____D C:\WINDOWS\CSC 2024-12-12 11:02 - 2025-01-30 16:14 - 000000000 ____D C:\ProgramData\Packages 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Public\Documents\Mes images 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Voisinage réseau 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Modèles 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Mes documents 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Menu Démarrer 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Documents\Mes images 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\ProgramData\Modèles 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\ProgramData\Menu Démarrer 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\ProgramData\Bureau 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Program Files\Fichiers communs 2024-12-12 11:01 - 2024-12-12 11:01 - 000000000 _SHDL C:\Documents and Settings 2024-12-12 10:56 - 2025-02-01 09:58 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-12-12 10:56 - 2025-02-01 09:58 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2024-12-12 10:56 - 2024-12-12 10:56 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2024-12-12 10:55 - 2024-12-12 14:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-12-12 10:55 - 2024-12-12 10:55 - 000000000 ____D C:\WINDOWS\system32\config\BFS 2024-12-12 10:54 - 2025-02-04 11:08 - 000926512 _____ C:\WINDOWS\system32\wpbbin.exe 2024-12-12 10:54 - 2025-02-04 11:08 - 000898808 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteUpdateService.exe 2024-12-12 10:54 - 2025-02-04 11:08 - 000012288 ___SH C:\DumpStack.log.tmp ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-02-05 13:57 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-02-05 12:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-02-04 14:44 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2025-02-04 11:12 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF 2025-02-04 10:56 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2025-02-04 07:52 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps 2025-02-04 07:52 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-02-04 07:47 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2025-01-30 10:01 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate 2025-01-30 09:34 - 2024-04-01 17:36 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\UNP 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-01-30 09:34 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2025-01-30 09:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-01-30 09:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs 2025-01-30 09:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-01-30 09:32 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\InboxApps 2025-01-30 09:32 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2025-01-30 09:32 - 2024-04-01 17:37 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-01-30 09:32 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System 2025-01-30 09:32 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing 2025-01-15 15:49 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-01-08 07:32 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth ==================== SigCheckExt ========================= 1996-12-17 00:00 - 1996-12-17 00:00 - 000123904 _____ (Microsoft) C:\WINDOWS\SysWOW64\ACCWIZ.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000057342 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COMMTB32.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CONVDSN.EXE 1996-12-17 00:00 - 1996-12-17 00:00 - 000022016 _____ C:\WINDOWS\SysWOW64\DOCOBJ.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000004656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DS16GT.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DS32GT.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 001123600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FM20.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000028432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FM20FRA.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000012288 _____ C:\WINDOWS\SysWOW64\HLINKPRX.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HLP95EN.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IMGWALK.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCANS32.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSEXCL35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000016304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSINF16H.EXE 1996-12-17 00:00 - 1996-12-17 00:00 - 001038848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJET35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000041232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJINT35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000024336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSJTER35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSOTHUNK.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000251664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSRD2X35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000402704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSREPL35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSTEXT35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSXBSE35.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000026224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBC16GT.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBC32GT.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ODBCTL32.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PICSTORE.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PUBDLG.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SCP32.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000032256 _____ (Microsoft) C:\WINDOWS\SysWOW64\SELFREG.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000012288 _____ C:\WINDOWS\SysWOW64\VAFR232.DLL 1996-12-17 00:00 - 1996-12-17 00:00 - 000020080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WINSSPI.DLL 2025-02-05 14:19 - 2025-02-05 14:18 - 002403328 _____ (Farbar) C:\Users\mbutt\Desktop\FRST64 (1).exe 2025-02-05 13:55 - 2025-02-05 13:48 - 003540168 _____ (Nicolas Coolman) C:\Users\mbutt\Desktop\ZHPSuite.exe 2025-02-05 14:18 - 2025-02-05 14:18 - 002403328 _____ (Farbar) C:\Users\mbutt\Downloads\FRST64 (1).exe 2024-12-19 15:36 - 2024-12-19 15:37 - 009604028 _____ (INFORAD Ltd ) C:\Users\mbutt\Downloads\IFM36SETUPEN.exe 2025-02-05 13:47 - 2025-02-05 13:48 - 003540168 _____ (Nicolas Coolman) C:\Users\mbutt\Downloads\ZHPSuite.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {a802212e-b88e-11ef-b856-806e6f6e6963} {31b73671-bb96-11ef-b860-806e6f6e6963} {e901b837-c358-11ef-b86c-806e6f6e6963} timeout 2 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {0ee9cd30-b86e-11ef-960e-c6921b939bf6} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {31b73671-bb96-11ef-b860-806e6f6e6963} description ST1000DM010-2EP102 Application logicielle (101fffff) -------------------------------- identificateur {a802212e-b88e-11ef-b856-806e6f6e6963} description TSSTcorp CDDVDW SH-224GB Application logicielle (101fffff) -------------------------------- identificateur {e901b837-c358-11ef-b86c-806e6f6e6963} device unknown description ST1000DM003-1CH162 Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale fr-FR inherit {bootloadersettings} recoverysequence {0ee9cd33-b86e-11ef-960e-c6921b939bf6} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {0ee9cd30-b86e-11ef-960e-c6921b939bf6} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {0ee9cd33-b86e-11ef-960e-c6921b939bf6} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{0ee9cd34-b86e-11ef-960e-c6921b939bf6} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{0ee9cd34-b86e-11ef-960e-c6921b939bf6} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {0ee9cd30-b86e-11ef-960e-c6921b939bf6} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {0ee9cd33-b86e-11ef-960e-c6921b939bf6} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes Paramètres EMS -------------- identificateur {emssettings} bootems No Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de mémoire RAM ---------------------- identificateur {badmemory} Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de périphérique ----------------------- identificateur {0ee9cd34-b86e-11ef-960e-c6921b939bf6} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================