Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-03-2025 Exécuté par yves (administrateur) sur BUREAU (Hewlett-Packard 110-042ef) (14-03-2025 16:45:15) Exécuté depuis C:\Users\yves\téléchargements\FRST64 (2).exe Profils chargés: yves Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.5371 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe <2> (C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\BridgeCommunication.exe <2> (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe <6> (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.025.0209.0001\Microsoft.SharePoint.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe <2> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (services.exe ->) (Luis Cobian Dorta -> Luis Cobian, CobianSoft) C:\Program Files\Cobian Reflector\Cobian.Reflector.VSCRequester.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Plex, Inc -> Plex, Inc.) C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe (services.exe ->) (RealityMine Limited -> RealityMine Ltd) [Fichier non signé] C:\Program Files\mc_plus\UsageMonitor.WindowsService.exe (services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (svchost.exe ->) (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\Shared files\PDStyleAgent\PDStyleAgent.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.025.0209.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1813128 2015-11-09] (NVIDIA Corporation -> NVIDIA Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2138272 2016-10-08] (Shenzhen Yi Xing Investment Co., Ltd. -> iSkySoft) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [138214768 2022-11-03] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [com.squirrel.Teams.Teams] => C:\Users\yves\AppData\Local\Microsoft\Teams\Update.exe [2453728 2021-04-24] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [MicrosoftEdgeAutoLaunch_411110E8E6A59F8EAFECFBE436A46F46] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4291152 2025-03-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [WPSTool] => C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe [1891840 2018-01-30] (TP-Link Technologies Co., Ltd) [Fichier non signé] HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5007376 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\25.025.0209.0001\Microsoft.SharePoint.exe [1026088 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\MountPoints2: {1a9ed534-2308-11ef-84f2-7c050736e906} - "G:\AutoRun.exe" HKU\S-1-5-21-39984328-2072628776-185655712-1002\...\MountPoints2: {bc235a17-cfff-11ee-84a4-7c050736e906} - "G:\AutoRun.exe" HKU\S-1-5-21-39984328-2072628776-185655712-1007\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKU\S-1-5-21-39984328-2072628776-185655712-1007\...\Run: [com.squirrel.Teams.Teams] => C:\Users\robert\AppData\Local\Microsoft\Teams\Update.exe [2593968 2024-06-17] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-1007\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5007376 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-39984328-2072628776-185655712-500\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKU\S-1-5-21-39984328-2072628776-185655712-500\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5007376 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\105.0.1.0\GoogleDriveFS.exe [64393824 2025-03-12] (Google LLC -> Google LLC.) HKLM\...\Print\Monitors\HP C211 Status Monitor: C:\WINDOWS\system32\hpinkstsC211LM.dll [333496 2013-01-08] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Deskjet 2540 series): C:\WINDOWS\system32\HPDiscoPMC211.dll [763912 2014-03-06] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [365568 2012-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\134.0.6998.89\Installer\chrmstp.exe [2025-03-12] (Google LLC -> Google LLC) GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {BD1CACAE-1832-419D-950C-3A4ADC255612} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.) Task: {F43976EB-26E1-4441-B46C-D01493F7D825} - System32\Tasks\CLToast => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2317096 2024-05-23] (CyberLink Corp. -> ) Task: {7FDF0E1B-C5E8-4A09-A53C-A98F5AB186F4} - System32\Tasks\CLToastRun => C:\Program Files (x86)\CyberLink\Shared files\CLToast.exe [2317096 2024-05-23] (CyberLink Corp. -> ) Task: {9FD76B84-337E-4A8D-926C-5FAFD28AF09E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{5B907BEA-BA71-481F-8B5A-05B5640C0F59} => C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe [5745760 2025-02-19] (Google LLC -> Google LLC) Task: {E54650B9-FDC3-4D5D-813F-03E8038D7178} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [703536 2024-02-01] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show Task: {4301105F-A1AF-4FCB-B138-C43476085C08} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-02-01] (HP Inc. -> HP Inc.) Task: {FFD27A3D-41D4-4E87-9E06-4ED40D7E01CF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [231472 2024-02-01] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show Task: {93288EA3-2FB2-48BE-8392-77D1A728E2FD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161264 2024-02-01] (HP Inc. -> HP Inc.) Task: {F70A4FE2-7E20-4C83-AE93-45803A804C2E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161264 2024-02-01] (HP Inc. -> HP Inc.) Task: {B613E7B4-74FB-4471-A52B-E3709085DF27} - System32\Tasks\HP AR Program Upload - 6e794499cce04eb1bd01d8a8d3d6816b02e82cabca544f32941dad43eeca6ff7 => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {538E27C6-71C5-46C6-AD0F-9A319CE5A439} - System32\Tasks\HP AR Program Upload - 6f61c956b02d44c48b4f121c2dddc33468a52bb8884749ba8f0bee807a3fc3b4 => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {23FD9F24-1CC5-4B98-B95E-4033BB7C3944} - System32\Tasks\HP AR Program Upload - 7b50414363d44b2092a6e968cb0d02b0be5dc683a2c145208e990c2fc054587b => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {61968E1C-FD14-4C42-8D38-F6C0A4B9AFF9} - System32\Tasks\HP AR Program Upload - 957f3f23a59746fba8141510e36eb7d53ed3d6e2763f4c059f58d925e6478cbd => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {AAF33320-7D2F-4AE4-92C9-F194A7E69641} - System32\Tasks\HP AR Program Upload - 9de31d00120c43079ecfbf3efe831588d3b94a6acdde4ae9a358154aa9eccbb4 => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {F014B8C5-A0D1-4219-9A5B-3087C7A4C6CA} - System32\Tasks\HP AR Program Upload - c002a772b14049de81c33a08e050c19fccdf16719b72437a863310f269f81507 => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPRewards.exe [3495432 2014-03-06] (Hewlett Packard -> TODO: ) Task: {FC26D067-9962-473A-A094-19F0809F6547} - System32\Tasks\Microsoft\Office\Office Apps Prewarm => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [223880 2025-03-14] (Microsoft Corporation -> Microsoft Corporation) Task: {97BB03C4-4471-4533-A907-EFFCE51FFE6C} - System32\Tasks\Microsoft\Office\Office Apps Prewarm Recurring => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [223880 2025-03-14] (Microsoft Corporation -> Microsoft Corporation) Task: {A2F07602-0373-42E0-AF5C-63B1A2804D8A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28895416 2025-03-01] (Microsoft Corporation -> Microsoft Corporation) Task: {86ABD569-6938-4F87-88CB-721B616DBCC4} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [58544 2025-03-14] (Microsoft Corporation -> Microsoft Corporation) Task: {F02A8DEE-A7AE-469F-9D50-34C639F327E2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28895416 2025-03-01] (Microsoft Corporation -> Microsoft Corporation) Task: {B363830A-7E3A-4AB4-AA4D-9539B4D923A7} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [223880 2025-03-14] (Microsoft Corporation -> Microsoft Corporation) Task: {757B2CBD-71C1-4DBD-AE9C-371F73F82CFB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [223880 2025-03-14] (Microsoft Corporation -> Microsoft Corporation) Task: {EDC6F051-91BA-4CD6-9453-177E5871269D} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {7C0C03ED-4D20-4255-B657-BB8A2195D44E} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {069E56F4-AF16-4353-B941-2A73ED765400} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {F50F9C5A-8AB7-403A-AEC2-E4D19BF05AAA} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {94CD9053-54E4-4574-ADC3-46C128E1EEF8} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {3141AAC7-DE44-4B29-9D2D-F58CA6F46ABD} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {0DDB73BB-E9A8-48C7-85F5-43E1321ED4B3} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {2DC97137-FD81-43FE-A08E-9A0E41313CD2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {46119367-FF69-4C5B-8510-C53707B053F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {54009A8F-C5F5-440A-BB38-29C8453573DE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1610A5E3-9D16-4BD6-B800-2ECA74FFD739} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {89F09877-B001-4F59-B252-9738B22B4AF3} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [608320 2025-03-13] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {3E54E3FC-5056-4F1C-980C-C48A53716569} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-39984328-2072628776-185655712-1002 E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [608320 2025-03-13] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (l'élément de données a 6 caractères en plus). Task: {0345B122-7BFB-4628-993C-7421F35FC16F} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [31808 2025-03-13] (Mozilla Corporation -> Mozilla Foundation) Task: {706EEA5C-47DF-4CDF-8DB5-ED9A9666E5AE} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222496 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {DEEAFA3F-D0AB-4EC1-9BEF-BBD1C2FB0D63} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222496 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {168A88B3-8A7B-4262-A527-E1B7FC94E86B} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-1007 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222496 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {A83886AB-1F77-4A5C-B5B6-2307864B2D72} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-500 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4222496 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {CA52C129-15AE-450D-BD33-1EE27E2A8F5E} - System32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-1002 => C:\Program Files\Microsoft OneDrive\25.025.0209.0001\OneDriveLauncher.exe [669224 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {78860C6C-E8EC-4234-89BD-5A99E614CACE} - System32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-1007 => C:\Program Files\Microsoft OneDrive\25.025.0209.0001\OneDriveLauncher.exe [669224 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {094241F3-7D93-4529-8106-9A34153D4795} - System32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-500 => C:\Program Files\Microsoft OneDrive\25.025.0209.0001\OneDriveLauncher.exe [669224 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {4D1F4D63-A61C-4CC0-B91A-F0EFE3F518C9} - System32\Tasks\PowerDirectorStyleAgent => C:\Program Files (x86)\CyberLink\Shared files\PDStyleAgent\PDStyleAgent.exe [97576 2024-05-23] (CyberLink Corp. -> CyberLink Corp.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{56d9a9b6-43d5-4e2d-8973-6687aefbe340}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{70c4393c-133a-4a1d-a5e9-0118e54d2dff}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{70c4393c-133a-4a1d-a5e9-0118e54d2dff}\A54554F5146443647353: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{f7f3adb5-d234-4ef3-8acd-2e6e366b9c52}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{f7f3adb5-d234-4ef3-8acd-2e6e366b9c52}: [DhcpDomain] lan Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\yves\AppData\Local\Microsoft\Edge\User Data\Default [2025-03-14] Edge DownloadDir: Default -> C:\Users\yves\Downloads Edge HomePage: Default -> hxxp://microsoft%20edge/ Edge Extension: (Google Docs hors connexion) - C:\Users\yves\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-25]hxxps://clients2.google.com/service/update2/crx Edge Extension: (Edge relevant text changes) - C:\Users\yves\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-02]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx FireFox: ======== FF DefaultProfile: 3ps1necy.default-1458633979907-1705405611826 FF ProfilePath: C:\Users\yves\AppData\Roaming\Mozilla\Firefox\Profiles\3ps1necy.default-1458633979907-1705405611826 [2025-03-14] FF Notifications: Mozilla\Firefox\Profiles\3ps1necy.default-1458633979907-1705405611826 -> hxxps://qltuh.check-tl-ver-94-1.com; hxxps://qltuh.check-tl-ver-94-2.com; hxxps://teams.microsoft.com FF ProfilePath: C:\Users\yves\AppData\Roaming\Mozilla\Firefox\Profiles\cxxw44pt.default-1482659248022 [2024-01-23] FF Extension: (mC+) - C:\Users\yves\AppData\Roaming\Mozilla\Firefox\Profiles\cxxw44pt.default-1482659248022\Extensions\{8D8ABF0C-6469-48A0-8002-65FEF50A8463}.xpi [2017-09-20] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-02-21] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-07-18] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-07-18] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-30] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.20 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin HKU\S-1-5-21-39984328-2072628776-185655712-1002: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\yves\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife -> RocketLife, LLP) Chrome: ======= CHR Profile: C:\Users\yves\AppData\Local\Google\Chrome\User Data\Default [2025-03-14] CHR Notifications: Default -> hxxps://web.telegram.org CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-03-01]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-03-05]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Assistant Amazon pour Chrome) - C:\Users\yves\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2023-04-29]hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-39984328-2072628776-185655712-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-39984328-2072628776-185655712-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13768944 2025-03-01] (Microsoft Corporation -> Microsoft Corporation) R2 CobVSCRequester; C:\Program Files\Cobian Reflector\Cobian.Reflector.VSCRequester.exe [331088 2023-05-30] (Luis Cobian Dorta -> Luis Cobian, CobianSoft) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.025.0209.0001\FileSyncHelper.exe [3532816 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) R2 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [888360 2023-09-15] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [886824 2023-09-15] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [883136 2023-09-15] (HP Inc. -> HP Inc.) S2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2023-03-15] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [886824 2023-09-15] (HP Inc. -> HP Inc.) S2 HPTouchpointAnalyticsService; C:\Program Files\HP\HP Touchpoint Analytics Client\TouchpointAnalyticsClientService.exe [332216 2017-11-22] (HP Inc. -> HP Inc.) S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-06-04] (The Document Foundation -> The Document Foundation) S3 mc-wps-secdashboardservice; C:\Program Files (x86)\HP\HP Support Framework\Resources\mc-wps-secdashboardservice.exe [1254064 2024-02-01] (McAfee, LLC -> McAfee, LLC) R2 mc_plusSvc; C:\Program Files\mc_plus\UsageMonitor.WindowsService.exe [35696 2017-09-20] (RealityMine Limited -> RealityMine Ltd) [Fichier non signé] R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe [1427024 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.025.0209.0001\OneDriveUpdaterService.exe [3879976 2025-03-07] (Microsoft Corporation -> Microsoft Corporation) R2 PlexUpdateService; C:\Program Files (x86)\Plex\Plex Media Server\Plex Update Service.exe [2128872 2019-07-15] (Plex, Inc -> Plex, Inc.) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [625960 2024-05-23] (CyberLink Corp. -> CyberLink) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21819184 2025-01-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe [3199648 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe [133704 2024-09-12] (Microsoft Windows Publisher -> Microsoft Corporation) S2 DFWSIDService; C:\ProgramData\Wondershare\wsServices\WsidService.exe [X] S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.243\WsAppService.exe [X] S4 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [303616 2018-03-11] () [Fichier non signé] S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [282624 2023-11-27] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [147968 2023-11-27] (Microsoft Corporation) [Fichier non signé] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 DxVGrb; C:\WINDOWS\system32\drivers\DxVGrb.sys [227456 2014-04-08] (Conexant Systems, Inc. -> Dexetek) R2 googledrivefs31626; C:\Program Files\Google\Drive File Stream\Drivers\31626\googledrivefs31626.sys [384096 2024-07-26] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [35328 2018-03-11] () [Fichier non signé] S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [274416 2019-03-23] (Malwarebytes Corporation -> Malwarebytes) R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2015-08-21] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [4776176 2017-12-19] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 StillCam; C:\WINDOWS\system32\DRIVERS\serscan.sys [13312 2020-11-26] (Microsoft Corporation) [Fichier non signé] S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [22080 2024-09-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602504 2024-09-12] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-09-12] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-03-14 16:41 - 2025-03-14 16:57 - 000000000 ____D C:\FRST 2025-03-14 14:51 - 2025-03-14 14:51 - 000236377 _____ C:\Users\yves\Desktop\ZHPDiag.txt 2025-03-14 13:36 - 2025-03-14 13:36 - 000000871 _____ C:\Users\yves\Desktop\ZHPSuite.lnk 2025-03-14 13:34 - 2025-03-14 13:34 - 000000000 ____D C:\Users\yves\AppData\Local\ZHP 2025-03-14 10:12 - 2022-09-30 05:24 - 000050720 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ss_conn_usb_driver2.sys 2025-03-13 12:53 - 2025-03-13 12:53 - 000000000 ___HD C:\$WinREAgent 2025-02-26 16:20 - 2025-02-26 16:20 - 000285810 _____ C:\Users\yves\Documents\chaudière facture2025.pdf 2025-02-26 16:14 - 2025-02-26 16:14 - 000223479 _____ C:\Users\yves\Documents\chaudière attestation 2025.pdf 2025-02-26 16:13 - 2025-02-26 16:13 - 000561794 _____ C:\Users\yves\Documents\chaudière entretien 2025.pdf 2025-02-26 11:17 - 2025-02-26 11:18 - 001233505 _____ C:\Users\yves\Documents\ticket-tombola-2024-fichier-imprimeur.pdf 2025-02-16 10:06 - 2025-03-14 10:11 - 000000000 ___RD C:\Users\yves\LES RESTAURANTS DU COEUR 2025-02-06 09:18 - 2025-03-07 11:25 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-1007 2025-02-06 09:18 - 2025-03-07 11:25 - 000003534 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-1002 2025-02-06 09:18 - 2025-03-07 11:25 - 000003528 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-39984328-2072628776-185655712-500 2025-01-30 17:47 - 2025-01-30 17:47 - 000000000 ___HD C:\OneDriveTemp 2025-01-30 17:35 - 2025-01-30 17:35 - 000000000 ____D C:\WINDOWS\system32\%userprofile% 2025-01-30 17:31 - 2025-03-07 11:25 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-1007 2025-01-30 17:31 - 2025-03-07 11:25 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-1002 2025-01-30 17:31 - 2025-03-07 11:25 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-39984328-2072628776-185655712-500 2025-01-30 17:31 - 2025-03-07 11:25 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2025-01-30 17:31 - 2025-03-07 11:25 - 000002177 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-01-11 17:45 - 2025-01-11 17:45 - 094890392 _____ C:\Users\yves\Downloads\Xvideos_transexuelle_en_bikini_baise_mec_360p.mp4 2025-01-11 10:23 - 2025-01-11 10:23 - 037948276 _____ C:\Users\yves\Downloads\Xvideos_trans_ebony_vanniall_obtient_bareback_avec_jamie_kelly_360p.mp4 2025-01-03 10:45 - 2025-03-14 09:56 - 003183276 _____ C:\Users\yves\Documents\Abandon-frais-kms-Feuille-de-trajet-du-benevole (yves)2025.ods 2025-01-02 09:49 - 2025-01-02 09:49 - 000389170 _____ C:\Users\yves\Documents\fiche abandon mai à décembre.pdf 2025-01-02 09:48 - 2025-01-02 09:48 - 000385981 _____ C:\Users\yves\Documents\fiche abandon janvier à avril.pdf 2025-01-02 09:47 - 2025-01-02 09:47 - 000408321 _____ C:\Users\yves\Documents\abandon km mai à décembre 2024.pdf 2024-12-30 16:19 - 2024-12-30 16:19 - 000934635 _____ C:\Users\yves\Documents\Le cheval de la reunion.pdf 2024-12-26 11:06 - 2024-12-26 11:06 - 001082344 _____ C:\Users\yves\Documents\Le cheval de Vincennes.pdf 2024-12-26 10:19 - 2025-03-13 11:09 - 000085511 _____ C:\Users\yves\Documents\compte CM 2025.ods 2024-12-16 15:16 - 2024-12-16 15:16 - 000022205 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-12-16 15:14 - 2024-12-16 15:14 - 000022205 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2025-03-14 16:40 - 2023-07-24 17:25 - 000000000 ___RD C:\Users\yves\téléchargements 2025-03-14 16:38 - 2020-11-26 11:59 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-03-14 15:56 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-03-14 14:51 - 2016-03-01 19:11 - 000000000 ____D C:\Users\yves\AppData\Roaming\ZHP 2025-03-14 12:56 - 2022-02-12 18:38 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-03-14 12:27 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-03-14 11:50 - 2015-04-22 14:29 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-03-14 11:25 - 2015-04-22 14:29 - 209365816 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-03-14 11:07 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2025-03-14 10:10 - 2023-12-02 21:03 - 000000000 ____D C:\Program Files\RUXIM 2025-03-14 10:05 - 2015-04-26 13:27 - 000000000 __SHD C:\Users\yves\IntelGraphicsProfiles 2025-03-14 10:00 - 2016-09-28 09:07 - 000000000 ____D C:\ProgramData\NVIDIA 2025-03-14 09:59 - 2024-12-02 10:11 - 000000000 ____D C:\Program Files\TeamViewer 2025-03-14 09:58 - 2020-11-26 12:34 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-03-14 09:57 - 2020-11-26 11:59 - 000008192 ___SH C:\DumpStack.log.tmp 2025-03-14 09:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-03-14 09:35 - 2018-07-24 13:22 - 000000000 ____D C:\ProgramData\Packages 2025-03-14 09:35 - 2017-10-26 09:00 - 000000000 ____D C:\Users\yves\AppData\Local\Packages 2025-03-14 09:18 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-03-14 09:16 - 2013-06-17 15:42 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2025-03-13 17:23 - 2024-12-13 08:51 - 000098698 _____ C:\Users\yves\Documents\méthodes.ods 2025-03-13 17:23 - 2018-02-13 09:55 - 000499240 _____ C:\Users\yves\Documents\calculateur.ods 2025-03-13 17:17 - 2024-12-13 09:59 - 000327651 _____ C:\Users\yves\Documents\turfiz bis.ods 2025-03-13 16:59 - 2020-11-26 12:05 - 000000000 ____D C:\Users\yves 2025-03-13 16:56 - 2022-01-01 17:19 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-03-13 15:45 - 2020-07-01 09:10 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-03-13 15:45 - 2020-07-01 09:10 - 000002287 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-03-13 12:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2025-03-13 12:10 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2025-03-13 12:10 - 2017-08-16 21:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2025-03-13 08:57 - 2018-02-12 19:38 - 000001231 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-03-12 23:41 - 2017-10-24 16:22 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-03-12 23:41 - 2017-10-24 16:22 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2025-03-12 18:42 - 2023-03-09 17:55 - 000001979 _____ C:\Users\yves\Desktop\Google Drive.lnk 2025-03-12 18:42 - 2023-02-08 14:09 - 000002015 _____ C:\Users\robert\Desktop\Google Slides.lnk 2025-03-12 18:42 - 2023-02-08 14:09 - 000002015 _____ C:\Users\robert\Desktop\Google Sheets.lnk 2025-03-12 18:42 - 2021-09-23 07:45 - 000002180 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2025-03-12 18:42 - 2021-09-23 07:45 - 000002015 _____ C:\Users\Default\Desktop\Google Slides.lnk 2025-03-12 18:42 - 2021-09-23 07:45 - 000002015 _____ C:\Users\Default\Desktop\Google Sheets.lnk 2025-03-12 18:42 - 2021-09-23 07:45 - 000002003 _____ C:\Users\Default\Desktop\Google Docs.lnk 2025-03-09 09:29 - 2015-04-26 13:33 - 000000000 ___RD C:\Users\yves\OneDrive 2025-03-08 08:51 - 2024-01-11 17:48 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2025-03-07 09:08 - 2020-11-26 12:34 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-03-07 09:08 - 2020-11-26 12:34 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-03-06 13:42 - 2015-10-05 09:42 - 000000000 ____D C:\Users\yves\AppData\Local\ElevatedDiagnostics 2025-03-01 10:28 - 2024-02-08 10:00 - 003182169 _____ C:\Users\yves\Documents\Abandon-frais-kms-Feuille-de-trajet-du-benevole (yves)2024.ods 2025-03-01 10:01 - 2024-08-08 09:31 - 000000000 ____D C:\Users\yves\AppData\Roaming\IPTVSmartersPro 2025-02-25 13:08 - 2021-11-24 17:24 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2025-02-25 13:07 - 2024-08-27 13:28 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2025-02-25 13:07 - 2024-07-05 08:23 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2025-02-24 11:39 - 2015-04-21 12:41 - 000000000 ____D C:\Users\yves\AppData\Roaming\vlc 2025-02-22 10:26 - 2013-12-13 08:58 - 000000000 ____D C:\Users\yves\Documents\rib 2025-02-18 17:16 - 2024-09-14 08:29 - 001454140 _____ C:\Users\yves\Documents\Système ROI_cheval HR Direct.xlsx 2025-02-17 15:43 - 2020-11-26 12:15 - 001814248 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-02-17 15:43 - 2019-12-07 15:49 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat 2025-02-17 15:43 - 2019-12-07 15:49 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat 2025-02-13 09:16 - 2024-04-25 08:55 - 000000000 ____D C:\Users\yves\AppData\Roaming\AnyDesk ==================== Fichiers à la racine de certains dossiers ======== 2018-07-31 15:36 - 2018-07-31 15:36 - 011991471 _____ (Editions PERCEVAL ) C:\Users\yves\SetupEcartsLocalizerTCV30.exe 2021-07-17 13:31 - 2021-07-17 13:31 - 000281108 _____ () C:\Users\yves\AppData\Roaming\DreamPlan.dmp 2019-01-30 16:21 - 2021-06-03 09:38 - 000015848 _____ () C:\Users\yves\AppData\Roaming\LOG_calps.txt 2015-06-17 13:33 - 2024-11-01 09:32 - 000018944 _____ () C:\Users\yves\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2018-01-20 10:00 - 2018-01-20 10:00 - 000000000 _____ () C:\Users\yves\AppData\Local\Girlvania (Girlvanic Studios)_.lock 2019-01-31 11:15 - 2021-06-03 09:44 - 000000021 _____ () C:\Users\yves\AppData\Local\PdfPort.ini 2020-04-14 14:10 - 2024-07-09 08:15 - 000028100 _____ () C:\Users\yves\AppData\Local\PlariumPlay.log 2015-07-07 11:23 - 2015-07-07 11:23 - 000003862 _____ () C:\Users\yves\AppData\Local\recently-used.xbel 2023-05-17 10:12 - 2023-05-17 10:12 - 000000017 _____ () C:\Users\yves\AppData\Local\resmon.resmoncfg 2017-12-20 09:44 - 2017-12-20 09:44 - 000000000 _____ () C:\Users\yves\AppData\Local\{3D444E6B-F72D-4F05-B6F8-09DB1C9E9337} ==================== SigCheckExt ========================= 2016-07-16 12:42 - 2016-07-16 12:42 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AllJoynDiscoveryPlugin.dll 2013-08-22 12:45 - 2013-08-22 12:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 12:43 - 2013-08-22 12:43 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-security-cryptoapi-l1-1-0.dll 2016-07-13 10:58 - 2016-07-01 04:57 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpreference.exe 2015-10-30 08:19 - 2015-10-30 08:19 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafCdp.dll 2017-04-13 09:31 - 2017-03-28 06:37 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2014-11-21 00:20 - 2014-11-21 00:20 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe 2014-11-21 00:20 - 2014-11-21 00:20 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 12:42 - 2013-08-22 12:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2013-06-17 15:35 - 2011-08-23 22:52 - 000117248 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPMUIDir.exe 2017-05-10 13:40 - 2017-03-04 07:26 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-07-16 12:43 - 2016-07-16 23:45 - 003584000 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkAnalysisLegacyCom.dll 2014-11-21 05:34 - 2014-11-21 05:34 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll 2015-10-30 08:18 - 2015-10-30 08:18 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flashlight.dll 2016-04-01 10:05 - 2016-04-01 10:05 - 000477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore(3754).dll 2015-06-10 08:58 - 2015-05-25 14:23 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDiscoveryPlugin.dll 2016-07-16 12:42 - 2016-07-16 12:42 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiOnboardingPlugin.dll 2015-04-26 13:38 - 2015-04-26 13:38 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2017-01-30 20:34 - 1998-10-29 16:45 - 000306688 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2015-10-30 08:19 - 2016-04-01 09:53 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelFrench.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelGerman.dll 2006-09-26 14:01 - 2006-09-26 14:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelJapanese.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelKorean.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelPortugese.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelSimplifiedChinese.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelSpanish.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelSwedish.dll 2006-09-08 09:01 - 2006-09-08 09:01 - 000045056 _____ C:\WINDOWS\SysWOW64\AgCPanelTraditionalChinese.dll 2015-10-30 08:19 - 2016-04-01 09:53 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2013-08-22 05:17 - 2013-08-22 05:17 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-security-cryptoapi-l1-1-0.dll 2019-10-09 13:08 - 2006-08-25 20:17 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl70.dll 2019-10-09 13:08 - 2011-01-12 19:53 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000974848 _____ C:\WINDOWS\SysWOW64\cis-2.4.dll 2016-07-16 12:43 - 2016-07-16 12:43 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\configmanager2.dll 2016-07-16 12:43 - 2016-07-16 12:43 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\coredpus.dll 2013-03-26 09:09 - 2013-03-26 09:09 - 000253952 _____ (Hewlett-Packard Development Company, L.P.) C:\WINDOWS\SysWOW64\cPC_DMIRD.dll 2015-10-30 08:19 - 2015-10-30 08:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafCdp.dll 2016-09-19 18:15 - 1999-01-20 04:01 - 000210032 _____ C:\WINDOWS\SysWOW64\DBCLIENT.DLL 2007-04-27 10:43 - 2007-04-27 10:43 - 000120200 _____ () C:\WINDOWS\SysWOW64\DLLDEV32i.dll 2013-08-22 05:14 - 2013-08-22 05:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 05:14 - 2013-08-22 05:13 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 05:14 - 2013-08-22 05:13 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2015-10-30 08:19 - 2016-04-01 09:53 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2015-10-30 08:19 - 2016-04-01 09:53 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2015-10-30 08:19 - 2016-04-01 09:53 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2017-03-14 21:49 - 2017-03-04 07:18 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-07-16 12:44 - 2016-07-16 23:45 - 002549760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkAnalysisLegacyCom.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000081920 _____ C:\WINDOWS\SysWOW64\issacapi_bs-2.3.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000065536 _____ C:\WINDOWS\SysWOW64\issacapi_pe-2.3.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000057344 _____ C:\WINDOWS\SysWOW64\issacapi_se-2.3.dll 2012-04-20 13:59 - 2012-04-20 13:59 - 000001536 _____ C:\WINDOWS\SysWOW64\IusEventLog.dll 2012-11-16 09:53 - 2012-11-16 09:53 - 000434176 _____ (The cURL library, hxxp://curl.haxx.se/) C:\WINDOWS\SysWOW64\libcurld.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MACXMLProto.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000118784 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MaDRM.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000049152 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaJGUILib.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000045320 _____ (MARKANY) C:\WINDOWS\SysWOW64\MAMACExtract.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000024576 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MASetupCleaner.exe 2016-05-18 13:49 - 2016-05-18 13:49 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaXMLProto.dll 2019-10-09 13:08 - 2006-08-25 21:07 - 001024000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70chs.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70cht.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70deu.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70enu.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70esp.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70fra.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70ita.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70jpn.dll 2019-10-09 13:08 - 2006-08-25 21:15 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70kor.dll 2019-10-09 13:08 - 2006-08-25 21:28 - 001017344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70u.dll 2019-10-09 13:08 - 2011-01-12 20:19 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71.dll 2019-10-09 13:08 - 2011-01-12 20:25 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHS.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHT.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71DEU.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ENU.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ESP.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71FRA.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ITA.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71JPN.DLL 2019-10-09 13:08 - 2011-01-12 20:25 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71KOR.DLL 2019-10-09 13:08 - 2011-01-12 20:36 - 001054208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71u.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000057344 _____ (Marktek) C:\WINDOWS\SysWOW64\MK_Lyric.dll 2016-09-16 10:30 - 2015-10-30 03:40 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll 2015-10-30 08:19 - 2016-09-16 10:02 - 000635904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000245760 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSCLib.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000155648 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSFLib.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000352256 _____ (Sample Corporation) C:\WINDOWS\SysWOW64\MSLUR71.dll 2019-10-09 13:08 - 2008-04-15 13:00 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm50.dll 2019-10-09 13:08 - 2005-01-20 16:25 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvci70.dll 2019-10-09 13:08 - 2002-01-05 02:40 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVCP70.DLL 2006-09-08 09:00 - 2007-02-01 17:13 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2019-10-09 13:08 - 2007-01-30 17:04 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll 2003-02-21 03:42 - 2007-02-01 14:11 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2019-10-09 13:08 - 1994-11-17 22:00 - 000210944 _____ C:\WINDOWS\SysWOW64\msvcrt10.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000040960 _____ (Telechips Inc.,) C:\WINDOWS\SysWOW64\MTTELECHIP.dll 2016-05-18 13:49 - 2016-05-18 13:49 - 000057344 _____ (Marktek Inc.) C:\WINDOWS\SysWOW64\MTXSYNCICON.dll 2006-09-28 14:55 - 2006-09-28 14:55 - 000053248 _____ C:\WINDOWS\SysWOW64\PhysXLoader.dll 2023-07-28 14:10 - 2016-05-18 13:49 - 004659712 _____ (Dmitry Streblechenko) C:\WINDOWS\SysWOW64\Redemption.dll 2012-11-16 09:53 - 2012-11-16 09:53 - 000079360 _____ (GnuWin32 ) C:\WINDOWS\SysWOW64\regex2.dll 2019-10-09 13:08 - 1996-01-12 01:00 - 000722192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Vb40032.dll 2018-07-31 12:19 - 2000-10-02 02:00 - 000119568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6FR.dll 2015-10-30 08:19 - 2016-04-01 09:53 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2003-06-17 12:15 - 2003-06-17 12:15 - 000110592 _____ (FlexCell Studio) C:\WINDOWS\SysWOW64\xls.dll 2018-07-31 15:36 - 2018-07-31 15:36 - 011991471 _____ (Editions PERCEVAL ) C:\Users\yves\SetupEcartsLocalizerTCV30.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {2d631ab3-d7b9-11e2-b195-a9fb9f674534} {2d631ab4-d7b9-11e2-b195-a9fb9f674534} {2d631ab9-d7b9-11e2-b195-a9fb9f674534} {e99a00f2-d80a-11e2-be6e-806e6f6e6963} {2d631ab7-d7b9-11e2-b195-a9fb9f674534} {2d631ab8-d7b9-11e2-b195-a9fb9f674534} {95cffdcf-d966-11ef-85ea-806e6f6e6963} timeout 2 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {628ac41e-2fd6-11eb-bab2-86d8ba0b35a9} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {2d631ab3-d7b9-11e2-b195-a9fb9f674534} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {2d631ab4-d7b9-11e2-b195-a9fb9f674534} description USB Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {2d631ab7-d7b9-11e2-b195-a9fb9f674534} description USB Floppy/CD Application logicielle (101fffff) -------------------------------- identificateur {2d631ab8-d7b9-11e2-b195-a9fb9f674534} description Hard Drive Application logicielle (101fffff) -------------------------------- identificateur {2d631ab9-d7b9-11e2-b195-a9fb9f674534} description UEFI: IPv4 Realtek PCIe FE Family Controller Application logicielle (101fffff) -------------------------------- identificateur {95cffdcf-d966-11ef-85ea-806e6f6e6963} description CD/DVD Drive Application logicielle (101fffff) -------------------------------- identificateur {e99a00f2-d80a-11e2-be6e-806e6f6e6963} description UEFI: IPv6 Realtek PCIe FE Family Controller Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {a5b7aec3-2fd6-11eb-8196-abe365a9a735} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {628ac41e-2fd6-11eb-bab2-86d8ba0b35a9} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {a5b7aec3-2fd6-11eb-8196-abe365a9a735} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{a5b7aec4-2fd6-11eb-8196-abe365a9a735} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{a5b7aec4-2fd6-11eb-8196-abe365a9a735} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {628ac41e-2fd6-11eb-bab2-86d8ba0b35a9} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {a5b7aec3-2fd6-11eb-8196-abe365a9a735} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes Paramètres EMS -------------- identificateur {emssettings} bootems No Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de mémoire RAM ---------------------- identificateur {badmemory} Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de périphérique ----------------------- identificateur {a5b7aec4-2fd6-11eb-8196-abe365a9a735} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================