Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 22-02-2025 Exécuté par Utilisateur (administrateur) sur DESKTOP-HPNHO42 (Micro-Star International Co., Ltd. MS-7D75) (22-02-2025 12:22:43) Exécuté depuis C:\Users\Utilisateur\Desktop\FRST64.exe Profils chargés: Utilisateur & WsiAccount Plate-forme: Microsoft Windows 11 Famille Version 24H2 26100.3194 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe (C:\Program Files (x86)\GigaTribe\GigaTribe.exe ->) () [Fichier non signé] C:\Program Files (x86)\GigaTribe\crashpad_handler.exe (C:\Program Files (x86)\hicloud\update_server\startUp.exe ->) (EZVIZ Inc. -> ) C:\Program Files (x86)\hicloud\update_server\SPUpDateServer.exe (C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_appbroker.exe (C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe (Canva -> Canva Pty Ltd) C:\Users\Utilisateur\AppData\Local\Programs\Canva\Canva.exe <2> (explorer.exe ->) (Gigatribe -> D1FFER) [Fichier non signé] C:\Program Files (x86)\GigaTribe\GigaTribe.exe (EZVIZ Inc. -> ) C:\Program Files (x86)\hicloud\update_server\startUp.exe (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <18> (services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_aa54f7a758543a0a\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Plarium Global LTD -> PlariumPlayClientService) C:\Users\Utilisateur\AppData\Local\PlariumPlay\8.9.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2507.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.235.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.1301.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\BackgroundTransferHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [MTPW] => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> ) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM-x32\...\Run: [SPUpDateServerrun] => C:\Program Files (x86)\hicloud\update_server\startUp.exe [14832 2015-09-10] (EZVIZ Inc. -> ) HKU\S-1-5-19\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5005344 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5005344 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5005344 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [PlariumPlay] => C:\Users\Utilisateur\AppData\Local\PlariumPlay\PlariumPlay.exe [295240 2023-12-29] (Plarium Global LTD -> PlariumPlay) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45452080 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [683072 2025-02-21] (Mozilla Corporation -> Mozilla Corporation) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [ProtonVPN] => C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe [12921504 2024-11-25] (Proton AG -> ProtonVPN) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [Proton Drive] => C:\Users\Utilisateur\AppData\Local\Programs\Proton\Drive\ProtonDrive.exe [212531424 2024-05-10] (Proton AG -> Proton AG) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [GigaTribe] => C:\Program Files (x86)\GigaTribe\GigaTribe.exe [3897088 2024-08-15] (Gigatribe -> D1FFER) [Fichier non signé] HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [CanvaAutoLaunchAvailabilityCheckAgent] => C:\Users\Utilisateur\AppData\Local\Programs\Canva\Canva.exe [186736848 2024-12-24] (Canva -> Canva Pty Ltd) HKU\S-1-5-21-3697246706-2246815657-3512592840-1001\...\Run: [MicrosoftEdgeAutoLaunch_214C468C1C6DF33CE795C9511217D27D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4088384 2025-02-20] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3697246706-2246815657-3512592840-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5005344 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.140\Installer\chrmstp.exe [2024-12-12] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\133.1.75.180\Installer\chrmstp.exe [2025-02-21] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Synology Drive Client.lnk [2024-12-08] ShortcutTarget: Synology Drive Client.lnk -> C:\Program Files (x86)\Synology\SynologyDrive\bin\launcher.exe (Synology Inc. -> Synology Inc.) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {37E12466-CBF3-40A3-80DA-9CBB09D4D39C} - System32\Tasks\Activation-Renewal => C:\Program Files\Activation-Renewal\Activation_task.cmd [17463 2024-09-15] () [Fichier non signé] -> Task Task: {885756D7-86F0-405D-A499-764F3D65442B} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [672064 2023-11-21] (Advanced Micro Devices Inc. -> ) Task: {9F8052DA-93CA-43A3-B1A3-2B9E5143EB8F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{8457E3E8-C49E-4661-AFD2-6F84620DEA7C} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2024-11-05] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {5F16883F-0FD3-4F9B-A1F8-99E653C37EB1} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{9C73C45E-9835-47D5-B69F-926DF78089D8} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2024-11-05] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {0434B345-6FCE-498A-85A1-0619E58AE2FB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {4CDD7414-BC60-45D8-86BE-A89C17FA96DE} - System32\Tasks\CCleanerClean => C:\Program Files\CCleaner\CCleaner.exe [39224624 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {19472395-F1C4-4621-9D9B-59F102F4AC0B} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "78924185-2d29-473f-97ab-9185fa1a088e" --version "6.33.0.11465" --silent Task: {ED3D3C5F-4424-467F-BFC4-774FA6B92BE5} - System32\Tasks\CCleanerSkipUAC - Utilisateur => C:\Program Files\CCleaner\CCleaner.exe [39224624 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {C5C98BE6-65C4-4962-BE86-2D35CD6F2CCB} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{17BDC70A-5EDD-4CE8-BDA1-DA1B5CD8C3D6} => C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe [5507168 2024-12-10] (Google LLC -> Google LLC) Task: {2306D84C-A4F5-4EFF-9AC2-3FB6E8D22C2E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{933F7616-434C-43A3-8E5B-4871087E8738} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC) Task: {F076D154-8A62-4EC2-B90A-32F59D951616} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe /DeviceScanR6 (Pas de fichier) Task: {797379D2-88CA-41D1-A8F7-C36A3AC77316} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation) Task: {3FE2C9CA-271C-481B-AC7B-3D42C018C981} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation) Task: {4BABA5A3-CE38-4FEC-AF8D-2E047299766F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-16] (Microsoft Corporation -> Microsoft Corporation) Task: {C697D3E5-55A2-4C7B-B591-0EF1B0C297C5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-16] (Microsoft Corporation -> Microsoft Corporation) Task: {D3DEEFC6-6EDB-4520-8D38-3CE3A77D579D} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [186992 2024-12-16] (Microsoft Corporation -> Microsoft Corporation) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (Pas de fichier) Task: {039AFDA3-CE26-48F1-BDEF-B45D62690306} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UIEOrchestrator => C:\WINDOWS\system32\UIEOrchestrator.exe [336816 2025-01-30] (Microsoft Windows -> ) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Pas de fichier) Task: {1AAA9740-9312-4E32-8D44-EA0B22BE339C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpCmdRun.exe [1732792 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4A06DA49-0899-491B-BD24-E95E5890D209} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpCmdRun.exe [1732792 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A02FA71D-7B20-4130-8DAE-0D8B146DEC1F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpCmdRun.exe [1732792 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D08EE726-A2B6-4981-9CF7-083D1F92006D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpCmdRun.exe [1732792 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3B48E730-AF1E-4F1B-8504-9909ADD107A8} - System32\Tasks\MiniToolPartitionWizard => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> ) Task: {C548E973-B241-4E4E-8040-F0BE60D3EB19} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [683072 2025-02-21] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {7DD48037-7708-437C-B588-D82281781F94} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3697246706-2246815657-3512592840-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [683072 2025-02-21] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {0C8E518F-8ED7-48F0-BD04-237C710CA481} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-02-21] (Mozilla Corporation -> Mozilla Foundation) Task: {5D7731FB-CA05-4B02-A12D-B972FDDA247A} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214304 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) Task: {997DCDDD-77D5-47C9-A9C1-BA95F5AD1030} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3697246706-2246815657-3512592840-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214304 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) Task: {CBC33798-EAF2-4440-8EBD-B6C1524420A4} - System32\Tasks\StartAUEP => C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe [728504 2023-08-04] (Advanced Micro Devices Inc. -> AMD) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CCleanerClean.job => C:\Program Files\CCleaner\CCleaner.exe Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{02323026-7659-4446-acb6-8c2ea8984400}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{101a5810-7eba-47e1-94bd-796335c289a3}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{101a5810-7eba-47e1-94bd-796335c289a3}: [DhcpDomain] lan Tcpip\..\Interfaces\{317ab5b0-5239-4904-87e7-50d431a7f263}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{317ab5b0-5239-4904-87e7-50d431a7f263}: [DhcpDomain] lan Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default [2025-02-21] Edge Extension: (Google Docs hors connexion) - C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-20] Edge Extension: (Edge relevant text changes) - C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge Extension: (Signets iCloud) - C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lbfbbhdljlmhnpbcdcajkdanonpgbhlh [2024-01-11] Edge Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2025-02-21] FireFox: ======== FF DefaultProfile: 6cce998n.default FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\6cce998n.default [2024-11-05] FF ProfilePath: C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release [2025-02-22] FF Notifications: Mozilla\Firefox\Profiles\pllp3s90.default-release -> hxxps://www.tomshardware.fr; hxxps://www.editions-tissot.fr; hxxps://www.eurosport.fr; hxxps://www.alucare.fr; hxxps://www.facebook.com; hxxps://mail.proton.me; hxxps://www.passtime.eu; hxxps://www.ariase.com; hxxps://fr.cyberlink.com; hxxps://www.leroymerlin.fr; hxxps://rmcsport.bfmtv.com; hxxps://calendar.proton.me; hxxps://www.castorama.fr; hxxps://www.allopneus.com FF Extension: (Proton Pass: Free Password Manager) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\78272b6fa58f4a1abaac99321d503a20@proton.me.xpi [2025-02-21] FF Extension: (Facebook Container) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\@contain-facebook.xpi [2025-02-09] FF Extension: (SimpleLogin:Receive & Send emails anonymously) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\addon@simplelogin.xpi [2024-09-03] FF Extension: (Privacy Badger) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2025-01-31] FF Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-02-13] FF Extension: (Correcteur d’orthographe et reformulateur — LanguageTool) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\languagetool-webextension@languagetool.org.xpi [2025-01-16] FF Extension: (Firefox Relay) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\private-relay@firefox.com.xpi [2024-02-12] FF Extension: (uBlock Origin) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-01-19] FF Extension: (javascript) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\{d4bc778f-3a98-44f4-9b2e-45fab92a21db}.xpi [2024-07-14] FF Extension: (Web Apps by 123apps) - C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\pllp3s90.default-release\Extensions\{e662576a-2f73-4069-bcca-ddf440fea62b}.xpi [2024-03-27] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-12-16] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default [2025-01-22] CHR HomePage: Default -> hxxp://www.orange.fr/portail CHR StartupUrls: Default -> "","hxxp://r.orange.fr/r/Ohome_portail?ref=O_OI_defaultPage_CH","hxxp://www.dosearches.com/?utm_source=b&utm_medium=mp3&utm_campaign=rg&utm_content=hp&from=mp3&uid=ST3500830AS_9QG38NYBXXXX9QG38NYB&ts=1383758329","hxxp://www.google.com","hxxp://iron-start.com/" CHR Session Restore: Default -> est activé. CHR Extension: (WOT pour la sécurité des sites Web et une navigation sûre) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2024-09-04] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-09-04] CHR Extension: (Tampermonkey) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2024-09-04] CHR Extension: (Grepolis Report Converter Revolution Tools) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eediamimojgbnjfaalcnlonenfdcogop [2024-09-04] CHR Extension: (GMass: Powerful mail merge for Gmail) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehomdgjhgmbidokdgicgmdiedadncbgf [2024-09-04] CHR Extension: (Dark Reader) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2024-09-04] CHR Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2024-09-04] CHR Extension: (GrepolisToolkit, le script !) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\fehekolnlpmcpflkgchknkboeanmhicc [2024-09-04] CHR Extension: (ExpressVPN: VPN proxy for a better internet) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\fgddmllnllkalaagkghckoinaemmogpe [2024-09-04] CHR Extension: (Google Docs hors connexion) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-04] CHR Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-09-04] CHR Extension: (PixelBlock) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmpmfcjnflbcoidlgapblgpgbilinlem [2024-09-04] CHR Extension: (Grepolis) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkgkognjknhcgbgbeijjondlikfkgnog [2024-09-04] CHR Extension: (User-Agent Switcher) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkmofgnohbedopheiphabfhfjgkhfcgf [2024-09-04] CHR Extension: (FranceVerif - Sécurité en ligne) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhkejggchhilmabpicojddgaahkkgoln [2024-09-04] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-09-04] Brave: ======= BRA DefaultProfile: Default BRA Profile: C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-01-22] BRA Profile: C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 1 [2025-01-22] BRA Profile: C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 2 [2025-01-22] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-12-12] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-12-12] BRA Extension: (Brave NTP background images) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-11-05] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-12-12] BRA Extension: (Brave Ads Resources) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\bgifagoclclhhoflocdefiklgodpihog [2024-12-12] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-12-12] BRA Extension: (Brave Ad Block Updater (AdGuard Français (plaintext))) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\flnkmpokemfpaajmiimmjeiandgoodgg [2024-12-12] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-11-16] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2024-11-05] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-12-12] BRA Extension: (Brave NTP sponsored images) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2024-12-12] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Utilisateur\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-11-22] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 AUEPLauncher; C:\Program Files\AMD\Performance Profile Client\AUEPDU.exe [527800 2023-08-04] (Advanced Micro Devices Inc. -> AMD) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2024-11-05] (Brave Software, Inc. -> BraveSoftware Inc.) S4 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\133.1.75.180\elevation_service.exe [3021840 2025-02-19] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2024-11-05] (Brave Software, Inc. -> BraveSoftware Inc.) R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13512888 2024-12-07] (Microsoft Corporation -> Microsoft Corporation) S4 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.221.1103.0003\FileSyncHelper.exe [3527712 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) S4 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-01-16] (HP Inc. -> HP Inc.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MpDefenderCoreService.exe [1926992 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) S4 MEmuSVC; C:\Program Files\Microvirt\MEmu\MemuService.exe [85304 2019-09-12] (Shanghai Microvirt Software Technology Co., Ltd. -> ) S4 MTAgentService; C:\Program Files\MiniTool ShadowMaker\AgentService.exe [732992 2024-01-23] (MiniTool Software Limited -> ) S4 MTSchedulerService; C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe [225088 2024-01-23] (MiniTool Software Limited -> ) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_aa54f7a758543a0a\Display.NvContainer\NVDisplay.Container.exe [1275024 2024-11-19] (NVIDIA Corporation -> NVIDIA Corporation) S4 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.221.1103.0003\OneDriveUpdaterService.exe [3873312 2024-12-02] (Microsoft Corporation -> Microsoft Corporation) R2 OptionsPlusUpdaterService; C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe [19828616 2025-02-03] (Logitech Inc -> Logitech, Inc.) R2 Plarium Play Client Service; C:\Users\Utilisateur\AppData\Local\PlariumPlay\8.9.0-0.0.1\PlariumPlayClientService\PlariumPlayClientService.exe [200520 2023-12-29] (Plarium Global LTD -> PlariumPlayClientService) S4 ProtonVPN Service; C:\Program Files\Proton\VPN\v3.5.0\ProtonVPNService.exe [464608 2024-11-25] (Proton AG -> ProtonVPN) S4 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v3.5.0\ProtonVPN.WireGuardService.exe [464096 2024-11-25] (Proton AG -> ProtonVPN) S4 Synology Drive VSS Service x64; C:\Program Files (x86)\Synology\SynologyDrive\bin\vss-service-x64.exe [360320 2023-02-02] (Synology Inc. -> ) S4 UsbClientService; C:\Program Files (x86)\Synology\Assistant\UsbClientService.exe [2004352 2024-07-26] (Synology Inc. -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\NisSrv.exe [4352464 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.6-0\MsMpEng.exe [270088 2025-02-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc) R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider) R0 fse; C:\WINDOWS\System32\drivers\fse.sys [222528 2024-10-18] (Microsoft Windows -> Microsoft Corporation) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [278944 2025-02-13] (Microsoft Windows -> Microsoft Corporation) S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [140704 2025-01-30] (Microsoft Windows -> Microsoft Corporation) R1 MEmuDrv; C:\WINDOWS\system32\DRIVERS\MEmuDrv.sys [320360 2021-01-04] (Shanghai Microvirt Software Technology Co., Ltd. -> Maiwei Corporation) R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_64b9cb0ab89a487e\mtkbtfilterx.sys [388512 2024-11-08] (MEDIATEK INC. -> MediaTek Inc.) R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_d96220d92628de31\mtkwl6ex.sys [1736600 2024-11-08] (MEDIATEK INC. -> MediaTek Inc.) R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2024-03-21] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v3.5.0\Resources\ProtonVPN.CalloutDriver.sys [40360 2024-11-25] (Proton AG -> Proton AG) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2021-03-26] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2021-03-26] (MiniTool Solution Ltd -> ) R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-09-08] (Realtek Semiconductor Corp. -> Realtek) R3 RtkUsbAD_2393; C:\WINDOWS\System32\DriverStore\FileRepository\rtdusbad_msi.inf_amd64_918b994f22965fa4\RtUsbA64.sys [516960 2024-07-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) S3 usbscan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\usbscan.sys [90112 2024-10-18] (Microsoft Windows -> Microsoft Corporation) S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2024-10-18] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20056 2025-02-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [601504 2025-02-13] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100768 2025-02-13] (Microsoft Windows -> Microsoft Corporation) S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2024-06-12] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2023-12-30] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) R3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2024-10-18] (Microsoft Windows -> Microsoft Corporation) R3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\WSDScan.sys [61440 2024-10-18] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-02-22 12:22 - 2025-02-22 12:23 - 000035123 _____ C:\Users\Utilisateur\Desktop\FRST.txt 2025-02-22 12:22 - 2025-02-22 12:22 - 000000000 ____D C:\FRST 2025-02-22 12:20 - 2025-02-22 12:20 - 002403840 _____ (Farbar) C:\Users\Utilisateur\Desktop\FRST64.exe 2025-02-22 12:11 - 2025-02-22 12:11 - 000199112 _____ C:\Users\Utilisateur\Downloads\ZHPDiag.txt 2025-02-22 11:20 - 2025-02-22 11:20 - 000754110 _____ C:\WINDOWS\system32\perfh00C.dat 2025-02-22 11:20 - 2025-02-22 11:20 - 000150498 _____ C:\WINDOWS\system32\perfc00C.dat 2025-02-22 11:16 - 2025-02-22 11:16 - 003540680 _____ (Nicolas Coolman) C:\Users\Utilisateur\ZHPSuite.exe 2025-02-22 11:15 - 2025-02-22 11:15 - 003540680 _____ (Nicolas Coolman) C:\Users\Utilisateur\Desktop\ZHPSuite.exe 2025-02-21 20:18 - 2025-02-21 20:20 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Packages 2025-02-21 20:18 - 2025-02-21 20:20 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\LogiOptionsPlus 2025-02-21 20:18 - 2025-02-21 20:18 - 000000020 ___SH C:\Users\WsiAccount\ntuser.ini 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Voisinage réseau 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Voisinage d'impression 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Modèles 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Mes documents 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Menu Démarrer 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Documents\Mes vidéos 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Documents\Mes images 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\Documents\Ma musique 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 _SHDL C:\Users\WsiAccount\AppData\Local\Historique 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\SystemCertificates 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Protect 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Crypto 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ___SD C:\Users\WsiAccount\AppData\Roaming\Microsoft\Credentials 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Windows 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Vault 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Spelling 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\LocalLow\NVIDIA 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\VirtualStore 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\D3DSCache 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\ConnectedDevicesPlatform 2025-02-21 20:18 - 2025-02-21 20:18 - 000000000 ____D C:\Users\WsiAccount 2025-02-21 20:18 - 2024-10-18 17:50 - 000000000 ____D C:\Users\WsiAccount\AppData\Roaming\Microsoft\Network 2025-02-21 20:18 - 2024-10-14 18:09 - 000000000 ____D C:\Users\WsiAccount\AppData\Local\Logi 2025-02-21 20:18 - 2024-09-01 12:57 - 000000000 ___RD C:\Users\WsiAccount\OneDrive 2025-02-21 20:13 - 2025-02-21 20:13 - 001473375 _____ C:\Users\Utilisateur\Documents\Cession C4.pdf 2025-02-13 20:03 - 2025-02-13 20:03 - 000000000 ____D C:\Users\Utilisateur\AppData\LocalLow\NVIDIA 2025-02-13 20:02 - 2024-11-19 11:29 - 025312888 _____ C:\WINDOWS\system32\nvidia-pcc.exe 2025-02-13 20:02 - 2024-11-19 11:29 - 002040704 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2025-02-13 20:02 - 2024-11-19 11:29 - 002040704 _____ C:\WINDOWS\system32\vulkaninfo.exe 2025-02-13 20:02 - 2024-11-19 11:29 - 001584000 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2025-02-13 20:02 - 2024-11-19 11:29 - 001584000 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2025-02-13 20:02 - 2024-11-19 11:29 - 001446784 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2025-02-13 20:02 - 2024-11-19 11:29 - 001446784 _____ C:\WINDOWS\system32\vulkan-1.dll 2025-02-13 20:02 - 2024-11-19 11:29 - 001296776 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2025-02-13 20:02 - 2024-11-19 11:29 - 001296776 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2025-02-13 20:02 - 2024-11-19 11:29 - 000477816 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2025-02-13 20:02 - 2024-11-19 11:29 - 000374920 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2025-02-13 20:02 - 2024-11-19 11:27 - 000669808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll 2025-02-13 20:02 - 2024-11-19 11:27 - 000505992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 002178696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 001629304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 001547400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 001202808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 001078896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 001034384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 000856696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2025-02-13 20:02 - 2024-11-19 11:26 - 000796792 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2025-02-13 20:02 - 2024-11-19 11:26 - 000461960 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2025-02-13 20:02 - 2024-11-19 11:25 - 016200328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 014270072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 006914160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 005910160 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 005348976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 003788408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2025-02-13 20:02 - 2024-11-19 11:25 - 000853136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2025-02-13 20:02 - 2024-11-19 11:24 - 007133128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2025-02-13 20:02 - 2024-11-19 11:24 - 006212840 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2025-02-13 20:02 - 2024-11-19 10:55 - 000127247 _____ C:\WINDOWS\system32\nvinfo.pb 2025-02-12 19:27 - 2025-02-21 22:21 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-02-09 11:59 - 2025-02-09 12:04 - 000000000 ____D C:\Program Files (x86)\Ezviz Studio 2025-02-09 11:59 - 2025-02-09 11:59 - 047997104 _____ (EZVIZ Inc. ) C:\Users\Utilisateur\Downloads\EzvizStudioSetups.exe 2025-02-09 11:59 - 2025-02-09 11:59 - 000001123 _____ C:\Users\Public\Desktop\Ezviz Studio.lnk 2025-02-09 11:59 - 2025-02-09 11:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hicloud 2025-02-09 11:59 - 2025-02-09 11:59 - 000000000 ____D C:\ProgramData\hik 2025-02-09 11:59 - 2025-02-09 11:59 - 000000000 ____D C:\Program Files (x86)\hicloud 2025-02-08 12:17 - 2025-02-08 12:17 - 000171221 _____ C:\Users\Utilisateur\Downloads\8R48398350321-1.pdf 2025-02-08 12:15 - 2025-02-08 12:15 - 000171067 _____ C:\Users\Utilisateur\Downloads\8R48398350321.pdf 2025-02-05 20:37 - 2025-02-05 20:37 - 000065466 _____ C:\Users\Utilisateur\Downloads\attestation 118742536 54896300 - philippe guillemette.pdf 2025-02-05 19:49 - 2025-02-05 19:49 - 000000000 ____D C:\Program Files\Logi 2025-02-05 19:48 - 2025-02-05 19:48 - 000000859 _____ C:\Users\Public\Desktop\Logi Options+.lnk 2025-02-05 19:48 - 2025-02-05 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2025-02-05 19:48 - 2025-02-05 19:48 - 000000000 ____D C:\Program Files\LogiOptionsPlus 2025-02-01 09:59 - 2025-02-01 09:59 - 000114741 _____ C:\Users\Utilisateur\Downloads\E Avis de pr l vement non ex cut 29 01 2025.pdf 2025-01-30 20:36 - 2025-01-30 20:36 - 000027617 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-01-30 20:36 - 2025-01-30 20:36 - 000027617 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-01-26 19:20 - 2025-01-26 19:20 - 003732669 _____ C:\Users\Utilisateur\Downloads\XUB24_2797xSN-2_2797QSNP-usermanual-f.pdf 2025-01-26 19:17 - 2025-01-26 19:17 - 002583429 _____ C:\Users\Utilisateur\Downloads\XUB2490HSUC-B5-usermanual-f-revD.pdf 2025-01-25 17:22 - 2025-01-25 17:22 - 001624440 _____ (Tous Les Drivers) C:\Users\Utilisateur\Downloads\Mes_Drivers_3.0.4(1).exe ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-02-22 12:18 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF 2025-02-22 12:11 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-02-22 11:29 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-02-22 11:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-02-22 11:24 - 2022-01-01 12:14 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-02-22 11:24 - 2022-01-01 12:14 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-02-22 11:21 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps 2025-02-22 11:20 - 2024-11-04 23:05 - 000199112 _____ C:\Users\Utilisateur\Desktop\ZHPDiag.txt 2025-02-22 11:20 - 2024-11-04 23:03 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\ZHP 2025-02-22 11:20 - 2024-10-18 17:53 - 001684128 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-02-22 11:20 - 2024-10-18 17:50 - 000003326 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2025-02-22 11:20 - 2024-01-03 23:40 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2025-02-22 11:16 - 2024-11-04 23:03 - 000000734 _____ C:\Users\Utilisateur\Desktop\ZHPSuite.lnk 2025-02-22 11:16 - 2024-10-18 17:38 - 000000000 ____D C:\Users\Utilisateur 2025-02-22 11:15 - 2023-12-28 11:31 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-02-22 11:14 - 2024-01-03 23:40 - 000000000 ____D C:\Program Files\CCleaner 2025-02-22 11:14 - 2024-01-02 23:19 - 000000000 ____D C:\Users\Utilisateur\AppData\Roaming\Canva 2025-02-22 11:14 - 2023-12-29 21:22 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\LogiOptionsPlus 2025-02-22 11:13 - 2024-11-28 20:22 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-02-22 11:13 - 2024-10-18 17:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-02-22 11:13 - 2024-10-18 17:49 - 000013870 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2025-02-22 11:13 - 2023-12-28 11:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-02-22 11:13 - 2023-12-28 11:20 - 000000000 ____D C:\ProgramData\NVIDIA 2025-02-22 11:13 - 2022-01-01 12:14 - 000012288 ___SH C:\DumpStack.log.tmp 2025-02-21 22:50 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2025-02-21 20:57 - 2022-01-01 12:20 - 000000000 ____D C:\Users\Utilisateur\AppData\Local\D3DSCache 2025-02-21 20:36 - 2024-10-18 17:50 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2025-02-21 20:21 - 2024-10-18 17:50 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2025-02-21 20:21 - 2023-12-28 11:31 - 000001069 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-02-21 20:04 - 2024-11-05 22:34 - 000002362 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2025-02-21 20:04 - 2024-11-05 22:34 - 000002321 _____ C:\Users\Public\Desktop\Brave.lnk 2025-02-15 11:09 - 2024-10-18 17:49 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2025-02-13 20:03 - 2023-12-28 11:20 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2025-02-13 19:56 - 2022-01-01 12:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-02-13 19:41 - 2024-06-15 18:43 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2025-02-13 19:36 - 2023-12-30 14:04 - 000000000 ___RD C:\Users\Utilisateur\iCloudDrive 2025-02-13 19:34 - 2024-10-18 17:49 - 000527944 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-02-12 23:02 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-02-12 23:02 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources 2025-02-12 23:02 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-02-12 23:02 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-02-12 19:23 - 2023-12-28 11:20 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-02-12 19:22 - 2023-12-28 11:20 - 209365816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-02-09 18:29 - 2024-10-18 17:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-02-06 20:35 - 2024-02-14 23:21 - 000000280 _____ C:\WINDOWS\Tasks\CCleanerClean.job 2025-02-05 23:21 - 2024-10-18 17:50 - 000003128 _____ C:\WINDOWS\system32\Tasks\CCleanerClean 2025-01-31 17:42 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate 2025-01-30 21:50 - 2024-10-18 17:36 - 000000000 ____D C:\WINDOWS\InboxApps 2025-01-30 21:50 - 2024-04-01 17:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2025-01-30 21:50 - 2024-04-01 17:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2025-01-30 21:50 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\UNP 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-01-30 21:50 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System 2025-01-30 21:50 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing 2025-01-30 20:36 - 2024-10-18 17:51 - 003334656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-01-25 13:53 - 2025-01-20 10:54 - 000000000 ____D C:\Users\Utilisateur\Documents\CA ==================== Fichiers à la racine de certains dossiers ======== 2025-02-22 11:16 - 2025-02-22 11:16 - 003540680 _____ (Nicolas Coolman) C:\Users\Utilisateur\ZHPSuite.exe 2024-08-27 20:55 - 2024-08-27 20:55 - 000000018 _____ () C:\Users\Utilisateur\AppData\Roaming\.cache17951620050788523514.dat 2023-12-29 21:38 - 2024-01-07 17:35 - 000020910 _____ () C:\Users\Utilisateur\AppData\Local\PlariumPlay.log ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================