Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-03-2025 Exécuté par AMS France (administrateur) sur AMSF (LENOVO 20236) (08-03-2025 14:22:43) Exécuté depuis C:\Users\AMS France\Desktop\FRST64.exe Profils chargés: AMS France Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.5487 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe (C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe (services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5456392 2024-12-31] (Realtek Semiconductor Corp. -> Realtek semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [196520 2024-10-28] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-12-04] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3477640 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-21-156622224-59511148-2068995514-1000\...\Run: [dms-helper] => C:\Checkpoint Systems, Inc\Field Service DMS\DMS30\dms-helper\dms-helper.bat "C:\Checkpoint Systems, Inc\Field Service DMS\DMS30\dms-helper" [0 2025-01-18] () <==== ATTENTION [zéro octet Fichier/Dossier] HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> "C:\Program Files (x86)\Microsoft\Edge\Application\131.0.2903.112\Installer\setup.exe" --configure-user-settings --verbose-logging --system-level --msedge --channel=stable HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\BtwCP.dll [2014-09-24] (Broadcom Corporation -> Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2025-01-08] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {F07DAA85-9C93-448A-806D-1C587FD167F5} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.) Task: {1F4AC984-E6F1-44A9-ADAC-3EC7C9703C98} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "6a0837fa-c603-477d-b128-2af4c781e691" --version "6.32.0.11432" --silent Task: {9D13149E-1784-404B-8785-973E8D311CA1} - System32\Tasks\CCleanerSkipUAC - AMS France => C:\Program Files\CCleaner\CCleaner.exe [39138608 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.) Task: {AA1CB1F3-18F9-4A10-9953-087D3A359824} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {E03461A4-4B06-4AE7-AA6C-2C81EA1E86FD} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /c (Pas de fichier) Task: {7A0C5D7E-4A6C-4F54-97CA-4B4F85C2C875} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe /ua /installsource scheduler (Pas de fichier) Task: {64D87BD5-8844-4A83-A36C-0E72E5627C5C} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-156622224-59511148-2068995514-1000 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676416 2025-03-06] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {4F5F9765-63BB-4C8B-8902-1EDA5A239EFA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34368 2025-03-06] (Mozilla Corporation -> Mozilla Foundation) Task: {CDFE58B0-5A2D-4887-B6B6-81E3455FBDE3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-156622224-59511148-2068995514-1000 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\..\Interfaces\{16f47cdc-8718-4dd2-92d7-c34c541b05c0}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{16f47cdc-8718-4dd2-92d7-c34c541b05c0}: [DhcpDomain] home Tcpip\..\Interfaces\{16f47cdc-8718-4dd2-92d7-c34c541b05c0}\1436365637F575966696F505F627475647: [DhcpNameServer] 10.10.128.1 FireFox: ======== FF DefaultProfile: dx4xirbb.default FF ProfilePath: C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\dx4xirbb.default [2025-01-09] FF ProfilePath: C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr [2025-03-08] FF DownloadDir: C:\Users\AMS France\Desktop FF Extension: (Ghostery Bloqueur de Traqueurs et de Publicités - confidentialité) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\firefox@ghostery.com.xpi [2025-02-27] FF Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-03-01] FF Extension: (NordVPN - A VPN Proxy Extension for Firefox) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\nordvpnproxy@nordvpn.com.xpi [2023-08-11] FF Extension: (Malwarebytes Browser Guard) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-10-13] FF Extension: (Butterfly Chaos) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\{6cca767c-a90c-47d7-9347-5e6b71913fa8}.xpi [2023-04-27] FF Extension: (Video DownloadHelper) - C:\Users\AMS France\AppData\Roaming\Mozilla\Firefox\Profiles\xbwuffzp.default-esr\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-02-01] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2025-01-24] [] [non signé] FF Plugin: @java.com/DTPlugin,version=11.441.2 -> C:\Program Files\Java\jre1.8.0_441\bin\dtplugin\npDeployJava1.dll [2024-12-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.441.2 -> C:\Program Files\Java\jre1.8.0_441\bin\plugin2\npjp2.dll [2024-12-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-03-08] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65192 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) S4 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-07-25] (Brother Industries, Ltd.) [Fichier non signé] S4 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.) R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5563760 2024-10-28] (ESET, spol. s r.o. -> ESET) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-10-28] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-10-28] (ESET, spol. s r.o. -> ESET) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [Fichier non signé] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [Fichier non signé] S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2025-01-01] (Microsoft Windows Publisher -> Microsoft Corporation) S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.) R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.) R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2025-01-04] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24090.11-0\NisSrv.exe [3199672 2025-01-01] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.24090.11-0\MsMpEng.exe [141952 2025-01-01] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [220520 2024-10-28] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [121864 2024-10-28] (Microsoft Windows Hardware Compatibility Publisher -> ESET) S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2024-10-24] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [268568 2024-10-28] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [57872 2024-10-28] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [87784 2024-10-28] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [128552 2024-10-28] (ESET, spol. s r.o. -> ESET) R2 NDivert; C:\Program Files\NordVPN\7.32.5.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.) R3 ovpn-dco; C:\Windows\System32\drivers\ovpn-dco.sys [103528 2024-10-30] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc) S3 RevoProcessDetector; C:\Windows\System32\DRIVERS\RevoProcessDetector.sys [19504 2024-03-28] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group) U5 RTSPER; C:\Windows\System32\Drivers\RTSPER.sys [865216 2024-12-31] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation) S3 Ser2pl; C:\Windows\system32\DRIVERS\ser2pl64.sys [335008 2024-07-02] (Microsoft Windows Hardware Compatibility Publisher -> Prolific Technology Inc.) R3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [53088 2024-10-30] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [22104 2025-01-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [606624 2025-01-01] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105888 2025-01-01] (Microsoft Windows -> Microsoft Corporation) R3 WireGuard; C:\Windows\System32\drivers\wireguard.sys [489368 2025-01-22] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-03-08 14:22 - 2025-03-08 14:23 - 000018963 _____ C:\Users\AMS France\Desktop\FRST.txt 2025-03-08 14:21 - 2025-03-08 14:23 - 000000000 ____D C:\FRST 2025-03-08 14:19 - 2025-03-08 14:19 - 002404352 _____ (Farbar) C:\Users\AMS France\Desktop\FRST64.exe 2025-03-07 16:15 - 2025-03-07 16:15 - 000296356 _____ C:\Users\AMS France\Desktop\Devis - 0121043.pdf 2025-03-07 15:55 - 2025-03-07 15:55 - 047888485 _____ C:\Users\AMS France\Desktop\25-02-19 Bassins des Lumières Bordeaux.zip 2025-03-06 23:05 - 2025-03-06 23:05 - 000097294 _____ C:\Users\AMS France\Desktop\ticket.pdf 2025-03-06 17:06 - 2025-03-06 17:06 - 000447985 _____ C:\Users\AMS France\Desktop\Facture EDF.pdf 2025-03-04 14:38 - 2025-03-06 23:36 - 000000000 ____D C:\Users\AMS France\Desktop\25-02-19 Bassins des Lumières Bordeaux 2025-03-03 12:34 - 2025-03-03 12:37 - 000000176 _____ C:\Users\AMS France\Desktop\Codes forum .txt 2025-03-01 19:26 - 2025-03-01 19:26 - 000016325 _____ C:\Users\AMS France\Desktop\facture.pdf 2025-03-01 18:57 - 2025-03-01 18:57 - 000110268 _____ C:\Users\AMS France\Desktop\Lootvoet_Bruno_compte-rendu_2025-02-28.pdf 2025-03-01 18:56 - 2025-03-01 18:56 - 000110950 _____ C:\Users\AMS France\Desktop\Lootvoet_Bruno_compte-rendu_2025-01-20.pdf 2025-03-01 18:55 - 2025-03-01 18:55 - 000032726 _____ C:\Users\AMS France\Desktop\Lootvoet_Bruno_facture_2024-10-28.pdf 2025-03-01 18:52 - 2025-03-01 18:52 - 003228075 _____ C:\Users\AMS France\Desktop\Lootvoet_Bruno_compte-rendu_2024-08-07.pdf 2025-02-25 19:37 - 2025-02-19 11:07 - 045244055 _____ C:\Users\AMS France\Desktop\20250219_110647.mp4 2025-02-25 19:22 - 2025-03-04 14:14 - 000000000 ____D C:\Users\AMS France\Desktop\Photos 2025-02-25 19:22 - 2025-02-25 19:22 - 000000000 ____D C:\Users\AMS France\.android 2025-02-25 19:08 - 2025-02-25 19:09 - 021203792 _____ C:\Users\AMS France\Desktop\MyPhoneExplorer_Setup_2.2.exe 2025-02-25 19:06 - 2025-02-25 19:06 - 000000000 ____D C:\Users\AMS France\Desktop\MyPhoneExplorer portable 2025-02-25 17:08 - 2025-02-25 17:08 - 000255691 _____ C:\Users\AMS France\Desktop\Procuration.pdf 2025-02-25 17:07 - 2025-02-25 17:07 - 000285822 _____ C:\Users\AMS France\Desktop\Renseignements.pdf 2025-02-25 16:36 - 2025-02-25 16:36 - 000023356 ____T C:\Users\AMS France\Desktop\gl fournisseurs 2024 lootvoet.xlsx 2025-02-24 18:19 - 2025-02-24 18:19 - 000134853 _____ C:\Users\AMS France\Desktop\Ordonance TDM Rochers.pdf 2025-02-24 16:59 - 2025-02-24 17:18 - 000470661 _____ C:\Users\AMS France\Desktop\LOOTVOET B. Proposition mission.pdf 2025-02-24 16:58 - 2025-02-24 16:58 - 000291625 _____ C:\Users\AMS France\Desktop\CCI_000012.pdf 2025-02-24 12:20 - 2025-02-24 12:22 - 000539322 _____ C:\Users\AMS France\Desktop\Information préalable URSSAF.pdf 2025-02-21 12:57 - 2025-02-21 12:57 - 000498506 _____ C:\Users\AMS France\Desktop\correspondance.pdf 2025-02-21 12:53 - 2025-02-21 12:53 - 000072537 _____ C:\Users\AMS France\Desktop\doc22.pdf 2025-02-18 21:25 - 2025-02-18 21:25 - 000184885 _____ C:\Users\AMS France\Desktop\Cerballiance_Res_a7c09a07-39de-4eee-a815-de1221c327f9.pdf 2025-02-18 13:30 - 2025-02-18 13:30 - 000155076 _____ C:\Users\AMS France\Desktop\ba05a708-80d7-4391-b6d2-0bab830973b7.pdf 2025-02-18 13:07 - 2025-02-18 13:07 - 000258359 _____ C:\Users\AMS France\Desktop\correspondance URSSAF (Réponse).pdf 2025-02-18 13:05 - 2025-02-18 13:05 - 000234968 _____ C:\Users\AMS France\Desktop\Avis_supplementaire_d_impot_2023_sur_les_revenus_2022.pdf 2025-02-18 12:07 - 2025-02-18 12:07 - 000000000 ____D C:\Users\AMS France\Desktop\Shurgard 25-02-18 2025-02-18 11:50 - 2025-02-18 12:17 - 000000494 _____ C:\Users\AMS France\Desktop\SHURGARD.txt 2025-02-18 11:19 - 2025-02-18 11:19 - 000000000 ____D C:\Users\AMS France\.dotnet 2025-02-18 11:06 - 2025-03-04 10:38 - 000000000 ____D C:\Users\AMS France\AppData\Local\NordVPN 2025-02-17 13:28 - 2025-02-17 13:28 - 000000000 ____D C:\Users\AMS France\Desktop\Bassins des Lumières Bordeaux 2025-02-17 13:27 - 2025-02-17 13:27 - 000000000 ____D C:\Users\AMS France\Desktop\Maj PC 2025-02-17 13:24 - 2025-02-17 13:26 - 000000000 ____D C:\Users\AMS France\Desktop\Urssaf 2025-02-17 13:10 - 2025-02-17 13:10 - 000000000 ____D C:\Users\AMS France\Desktop\Trancheuse Krups 2025-02-16 12:58 - 2025-02-16 12:58 - 005634880 _____ (AnyDesk Software GmbH) C:\Users\AMS France\Desktop\AnyDesk.exe 2025-02-16 12:26 - 2025-02-20 12:28 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\AnyDesk 2025-02-15 18:11 - 2025-02-15 18:11 - 000000000 ___HD C:\$WinREAgent 2025-02-13 19:59 - 2025-02-13 19:59 - 000001930 _____ C:\Users\AMS France\Documents\AMS-9060-error-20250213-195917.txt 2025-02-13 19:49 - 2025-02-13 19:52 - 000000050 _____ C:\Users\AMS France\Documents\hex.txt 2025-02-10 15:42 - 2025-02-10 15:42 - 000000112 ___SH C:\bootTel.dat 2025-02-10 15:07 - 2025-02-10 15:11 - 000000000 ____D C:\Users\AMS France\AppData\Local\ElevatedDiagnostics 2025-02-10 14:55 - 2025-02-10 14:55 - 000000000 ___HD C:\$SysReset 2025-02-10 11:38 - 2025-02-17 13:30 - 000000000 ____D C:\Users\AMS France\Desktop\Perso ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-03-08 14:13 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-03-08 13:19 - 2024-12-31 17:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-03-08 13:18 - 2025-01-14 06:44 - 000000000 ____D C:\Users\AMS France\Documents\Fichiers Outlook 2025-03-08 13:17 - 2024-12-31 17:28 - 001779416 _____ C:\Windows\system32\PerfStringBackup.INI 2025-03-08 13:17 - 2019-12-07 15:50 - 000795946 _____ C:\Windows\system32\perfh00C.dat 2025-03-08 13:17 - 2019-12-07 15:50 - 000151198 _____ C:\Windows\system32\perfc00C.dat 2025-03-08 13:17 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2025-03-08 13:15 - 2025-01-23 19:46 - 000003326 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2025-03-08 13:15 - 2025-01-23 19:46 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2025-03-08 13:13 - 2025-01-01 23:01 - 000000000 __SHD C:\Users\AMS France\IntelGraphicsProfiles 2025-03-08 13:12 - 2024-12-31 17:17 - 000008192 ___SH C:\DumpStack.log.tmp 2025-03-08 13:12 - 2024-12-31 17:17 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-03-07 16:17 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2025-03-07 16:01 - 2025-01-26 10:50 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\vlc 2025-03-07 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2025-03-06 23:12 - 2025-01-14 17:47 - 000001287 _____ C:\Windows\BRRBCOM.INI 2025-03-06 15:22 - 2024-12-31 17:17 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-03-06 12:27 - 2025-01-08 14:38 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-03-06 09:08 - 2025-01-08 14:38 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-03-05 22:11 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-03-04 14:03 - 2025-01-17 14:01 - 000000000 ____D C:\Program Files\CCleaner 2025-03-04 10:39 - 2025-01-22 12:19 - 000000000 ____D C:\Program Files\NordUpdater 2025-02-28 18:57 - 2024-12-31 17:24 - 000000000 ____D C:\Users\AMS France 2025-02-25 17:07 - 2025-01-16 05:21 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\Microsoft\Excel 2025-02-19 08:26 - 2025-01-13 08:51 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\Microsoft\Word 2025-02-18 11:21 - 2025-01-22 12:19 - 000000000 ____D C:\Program Files\NordVPN 2025-02-18 11:19 - 2025-01-02 18:46 - 000000000 ____D C:\Program Files\dotnet 2025-02-18 11:18 - 2025-01-02 18:46 - 000000000 ____D C:\ProgramData\Package Cache 2025-02-18 11:11 - 2025-01-04 13:25 - 000000000 ____D C:\Windows\system32\MRT 2025-02-18 10:56 - 2024-12-31 17:24 - 000000000 ___SD C:\Users\AMS France\AppData\Roaming\Microsoft\Credentials 2025-02-17 08:42 - 2025-01-24 11:17 - 000000000 ____D C:\Users\AMS France\Desktop\Dernières factures 2025-02-16 12:07 - 2025-01-23 07:02 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\uTorrent 2025-02-16 11:42 - 2024-12-31 17:17 - 000456160 _____ C:\Windows\system32\FNTCACHE.DAT 2025-02-15 18:31 - 2025-01-04 14:56 - 000000000 ____D C:\Windows\system32\compatrel 2025-02-15 18:31 - 2023-12-04 03:53 - 000000000 ____D C:\Windows\InboxApps 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2025-02-15 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2025-02-15 18:31 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2025-02-15 18:25 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2025-02-15 18:21 - 2024-12-31 17:21 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2025-02-15 17:46 - 2025-01-04 13:25 - 209365816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2025-02-14 11:44 - 2025-01-17 14:01 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update 2025-02-10 16:09 - 2025-01-23 12:58 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2025-02-10 16:09 - 2025-01-23 12:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2025-02-10 16:09 - 2025-01-22 12:19 - 000000000 ____D C:\ProgramData\NordVPN 2025-02-10 16:09 - 2025-01-20 11:37 - 000000000 ____D C:\Users\AMS France\Desktop\Bureau 2025-02-10 16:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\registration 2025-02-10 14:39 - 2025-01-18 13:48 - 000000000 ____D C:\Users\AMS France\AppData\Local\CrashDumps 2025-02-10 14:39 - 2024-12-31 17:16 - 000000000 ____D C:\Windows\Panther 2025-02-10 13:57 - 2024-12-31 17:33 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\Microsoft\MMC 2025-02-07 06:10 - 2025-01-24 07:11 - 000000000 ____D C:\Users\AMS France\AppData\LocalLow\Adobe 2025-02-07 06:10 - 2024-12-31 17:24 - 000000000 ____D C:\Users\AMS France\AppData\Roaming\Adobe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================