Commentaire : Idem, fichier Download bug/inaccessible
Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 04-06-2022 01
Exécuté par Stephane Eppner (administrateur) sur DESKTOP-CJPT087 (Microsoft Corporation Surface Pro 4) (04-06-2022 16:31:34)
Exécuté depuis C:\Users\Stephane Eppner\Pictures
Profils chargés: Stephane Eppner
Plate-forme: Microsoft Windows 10 Professionnel Version 21H2 19044.1706 (X64) Langue: Français (France)
Navigateur par défaut: Brave
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <13>
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCopyAccelerator.exe
(DYUNER, OOO -> WinTools Software, Ltd.) C:\Program Files (x86)\WinTools Software\RAM Saver Professional\RAMSaverPro.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CastSrv.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [uTorrent] => C:\Users\Stephane Eppner\AppData\Roaming\uTorrent\uTorrent.exe [2103848 2022-04-03] (BitTorrent Inc -> BitTorrent Inc.) <==== ATTENTION
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [ut] => C:\Users\Stephane Eppner\AppData\Roaming\uTorrent\uTorrent.exe [2103848 2022-04-03] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [BitTorrent] => C:\Users\Stephane Eppner\AppData\Roaming\BitTorrent\BitTorrent.exe [2106408 2022-03-23] (BitTorrent Inc -> BitTorrent Inc.) <==== ATTENTION
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [bt] => C:\Users\Stephane Eppner\AppData\Roaming\BitTorrent\BitTorrent.exe [2106408 2022-03-23] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114000240 2021-10-28] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [RAMSaverPro] => C:\Program Files (x86)\WinTools Software\RAM Saver Professional\ramsaverpro.exe [281432 2021-07-21] (DYUNER, OOO -> WinTools Software, Ltd.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [36836592 2022-05-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [44024 2019-05-27] (Glarysoft LTD -> Glarysoft Ltd)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\RunOnce: [Application Restart #0] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [2671608 2022-04-15] (Brave Software, Inc. -> Brave Software, Inc.)
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\system: [DisableChangePassword] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\system: [DisableLockWorkstation] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\system: [NoDispSettingsPage] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoFileUrl] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoLogoff] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoSetFolders] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoNetHood] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoFileMenu] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoFind] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoSetTaskBar] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [Nosecuritytab] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoUpdateCheck] 0
HKU\S-1-5-21-3074252321-1298016287-771775826-1001\...\Policies\Explorer: [NoWindowsUpdate] 0
HKLM\...\Windows x64\Print Processors\Canon MG3500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBV.DLL [30208 2013-04-04] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3500 series: C:\WINDOWS\system32\CNMLMBV.DLL [391168 2013-04-04] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\100.1.37.116\Installer\chrmstp.exe [2022-04-15] (Brave Software, Inc. -> Brave Software, Inc.)
BootExecute: autocheck autochk *
==================== Tâches planifiées (Avec liste blanche) ============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {149024E0-3B55-4209-8D48-C2DEE7068ADF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2F836258-EA81-4E34-B57D-444AE5B9B6E4} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2021-06-23] () [Fichier non signé]
Task: {38F12C74-0DBC-4B4A-948F-9E4221EE2055} - System32\Tasks\Service\Diagnostic => C:\Users\Stephane Eppner\AppData\Roaming\ServiceGet\Tasiver.exe -> "C:\Users\Stephane Eppner\AppData\Roaming\ServiceGet\Tasiver.dat" <==== ATTENTION
Task: {4957BC7E-E415-4396-AA42-39641F62E757} - System32\Tasks\CCleanerSkipUAC - Stephane Eppner => C:\Program Files\CCleaner\CCleaner.exe [30924528 2022-05-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4EB94D85-A92E-494E-A7F7-45A005DE2F61} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6408132D-FD45-44E1-97A6-1019604DC046} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [220816 2019-09-30] (Tweaking LLC -> Tweaking.com)
Task: {A35A8658-9047-4FF9-8694-CDE3D27A14BC} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NoUACCheck
Task: {B39DF3C5-3018-45C9-8614-C1D8C391E920} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5AEE842-74A4-4082-A44B-F476FCE95C12} - System32\Tasks\1strun => C:\Users\Stephane Eppner\AppData\Local\URBrowser\Application\urbrowser.exe (Pas de fichier)
Task: {B7883AE1-B197-4C9E-B3C5-2F957E12DA07} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D456F81E-894F-47DA-AABE-D5F2900835CE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-05-11] (Piriform Software Ltd -> Piriform)
Task: {DBEF7446-D490-42F0-9D24-6DA48BB9F69F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-13] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {FBF5C045-3575-4035-B80C-6112058AFE24} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-13] (Brave Software, Inc. -> BraveSoftware Inc.)
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Winsock: Catalog9 17 %windir%\system32\vsocklib.dll => Pas de fichier
Winsock: Catalog9 18 %windir%\system32\vsocklib.dll => Pas de fichier
Winsock: Catalog9-x64 17 %windir%\system32\vsocklib.dll => Pas de fichier
Winsock: Catalog9-x64 18 %windir%\system32\vsocklib.dll => Pas de fichier
Tcpip\Parameters: [DhcpNameServer] 10.36.254.10 8.8.8.8
Tcpip\..\Interfaces\{d7027def-1657-4963-8294-252c9db878b4}: [DhcpNameServer] 10.36.254.10 8.8.8.8
Edge:
=======
Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)]
Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)]
FireFox:
========
FF DefaultProfile: 4t24ybwf.default
FF DefaultProfile: qtir5jy2.default
FF ProfilePath: C:\Users\Stephane Eppner\AppData\Roaming\Mozilla\Firefox\Profiles\4t24ybwf.default [2021-05-15]
FF ProfilePath: C:\Users\Stephane Eppner\AppData\Roaming\Mozilla\Firefox\Profiles\7j3ls1fd.default-release-1644485134768 [2022-06-04]
FF ProfilePath: C:\Users\Stephane Eppner\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\qtir5jy2.default [2022-06-04]
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
Brave:
=======
BRA Profile: C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-06-04]
BRA DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}&t=brave
BRA DefaultSearchKeyword: Default -> :d
BRA DefaultSuggestURL: Default -> hxxps://ac.duckduckgo.com/ac/?q={searchTerms}&type=list
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-06-03]
BRA Extension: (Brave NTP background images) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-03-10]
BRA Extension: (Wallet Data Files Updater) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-04-12]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-06-04]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-05-22]
BRA Extension: (Brave Ad Block Updater (AdGuard Français)) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\emaecjinaegfkoklcdafkiocjhoeilao [2022-06-04]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-10]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\lcenblphbmngnohghkhpojmpflebkcpd [2022-06-04]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Stephane Eppner\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-06-01]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-13] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162456 2021-12-13] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6254856 2022-05-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WMIRegistrationService; C:\WINDOWS\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe [538736 2021-10-05] (Intel Corporation -> Intel Corporation)
S3 Browser; %SystemRoot%\System32\browser.dll [X]
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 anvsnddrv; C:\WINDOWS\system32\drivers\anvsnddrv.sys [34416 2017-06-20] (Anvsoft Inc. -> AnvSoft Inc.)
S1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [28936 2022-04-12] (Glarysoft LTD -> Glarysoft Ltd)
R3 MpKsl4dd0ad36; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{1DB8F0C7-B85B-4AC3-B511-0219FFCDADD6}\MpKslDrv.sys [137464 2022-06-04] (Microsoft Windows -> Microsoft Corporation)
S3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-04-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [443664 2022-04-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Un mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2022-06-04 16:18 - 2022-06-04 16:31 - 000000000 ____D C:\FRST
2022-06-04 15:17 - 2022-06-04 15:17 - 000003676 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2022-06-04 15:00 - 2022-06-04 15:00 - 000000207 _____ C:\WINDOWS\tweaking.com-regbackup-DESKTOP-CJPT087-Windows-10-Pro-(64-bit).dat
2022-06-04 15:00 - 2022-06-04 15:00 - 000000000 ____D C:\RegBackup
2022-06-04 14:59 - 2022-06-04 14:59 - 000003802 _____ C:\WINDOWS\system32\Tasks\Tweaking.com - Windows Repair Tray Icon
2022-06-04 14:59 - 2022-06-04 14:59 - 000002232 _____ C:\Users\Stephane Eppner\Desktop\Tweaking.com - Windows Repair.lnk
2022-06-04 14:59 - 2022-06-04 14:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2022-06-04 14:58 - 2022-06-04 14:58 - 000000000 ____D C:\Program Files (x86)\Tweaking.com
2022-06-04 14:51 - 2022-06-04 14:51 - 000000000 ___HD C:\$SysReset
2022-06-04 14:43 - 2022-06-04 14:43 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\ElevatedDiagnostics
2022-06-04 12:27 - 2022-06-04 12:27 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\WhatsApp
2022-06-02 22:20 - 2022-06-02 22:40 - 345951227 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E01.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 241541365 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E07.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 218439121 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E06.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 210248542 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E08.FiNAL.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 209438091 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E02.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 208389563 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E04.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 185583993 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E03.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:20 - 2022-06-02 22:40 - 168268842 ____R C:\Users\Stephane Eppner\Downloads\The.Mandalorian.S02E05.FRENCH.WEBRip.x264-FRATERNiTY.mkv
2022-06-02 22:19 - 2022-06-02 22:19 - 000000000 ____D C:\Users\Stephane Eppner\AppData\LocalLow\uTorrent
2022-05-29 16:42 - 2022-05-29 17:15 - 2075039744 _____ C:\Users\Stephane Eppner\Downloads\Togo - 2020 .avi
2022-05-29 16:33 - 2022-05-29 16:56 - 1909141504 _____ C:\Users\Stephane Eppner\Downloads\La llamada de lo salvaje HDR Castellano .avi
2022-05-29 15:56 - 2022-05-29 15:56 - 000000000 ____D C:\Users\Stephane Eppner\Downloads\Slumdog.Millionaire.2008.SPANISH.DVDRIP.XVID.[TodoTorrente.com]
2022-05-27 19:38 - 2022-05-27 20:22 - 2057631744 _____ C:\Users\Stephane Eppner\Downloads\Marea Negra - 2017.avi
2022-05-27 19:14 - 2022-05-27 19:50 - 2383480832 _____ C:\Users\Stephane Eppner\Downloads\Hostiles - BluRay Rip AC3 5.1 Castellano 2019.avi
2022-05-27 19:12 - 2022-05-27 19:37 - 1582844570 _____ C:\Users\Stephane Eppner\Downloads\Old Henry - 2022 - BluRay Rip AC3 5.1 Castellano .avi
2022-05-14 23:06 - 2022-05-14 23:43 - 000000000 ____D C:\Program Files (x86)\Google
2022-05-13 05:23 - 2022-05-13 05:23 - 000188928 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2022-05-13 05:22 - 2022-05-13 05:22 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-05-13 05:22 - 2022-05-13 05:22 - 000093696 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-05-13 05:22 - 2022-05-13 05:22 - 000011799 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-05-13 05:11 - 2022-05-13 05:11 - 000000000 ___HD C:\$WinREAgent
2022-05-11 11:52 - 2022-05-11 11:54 - 000000000 ____D C:\ProgramData\F-Secure
2022-05-11 11:52 - 2022-05-11 11:52 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\F-Secure
2022-05-11 11:39 - 2022-04-29 10:04 - 000042704 _____ (TEFINCOM S.A.) C:\WINDOWS\Nord.Setup.dll
==================== Un mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2022-06-04 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-06-04 16:26 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-04 16:12 - 2021-10-01 16:13 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\Telegram Desktop
2022-06-04 16:06 - 2021-05-16 20:42 - 001761484 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-04 16:06 - 2019-12-07 16:50 - 000775786 _____ C:\WINDOWS\system32\perfh00C.dat
2022-06-04 16:06 - 2019-12-07 16:50 - 000144898 _____ C:\WINDOWS\system32\perfc00C.dat
2022-06-04 16:06 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-06-04 16:04 - 2021-12-29 13:56 - 000000000 ____D C:\Program Files\CCleaner
2022-06-04 16:01 - 2021-06-17 07:32 - 000041448 _____ C:\WINDOWS\system32\OV5693_FRONT.aiqd
2022-06-04 16:01 - 2021-05-16 20:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-04 16:01 - 2021-05-16 20:32 - 000008192 ___SH C:\DumpStack.log.tmp
2022-06-04 16:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-06-04 16:01 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-06-04 15:51 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-06-04 15:39 - 2022-04-12 17:49 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5
2022-06-04 15:34 - 2021-05-16 20:32 - 000295168 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-04 15:34 - 2021-05-15 13:25 - 000000000 ____D C:\WINDOWS\CSC
2022-06-04 15:27 - 2021-05-15 13:27 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\Packages
2022-06-04 15:25 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-06-04 15:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-06-04 13:55 - 2021-05-16 20:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-04 12:27 - 2022-02-09 20:46 - 000002249 _____ C:\Users\Stephane Eppner\Desktop\WhatsApp.lnk
2022-06-04 12:27 - 2022-02-09 20:46 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\WhatsApp
2022-06-04 12:27 - 2022-02-09 20:46 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
2022-06-04 12:27 - 2022-02-09 20:46 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\SquirrelTemp
2022-06-02 22:47 - 2021-05-15 16:14 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\uTorrent
2022-06-02 22:41 - 2021-05-15 16:30 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\BitTorrentHelper
2022-06-02 21:53 - 2021-06-25 16:08 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\MPC-HC
2022-06-01 12:11 - 2021-05-15 16:29 - 000000000 ____D C:\ProgramData\Packages
2022-06-01 12:11 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-05-28 15:11 - 2021-05-16 20:34 - 000000000 ____D C:\Users\Stephane Eppner
2022-05-28 07:14 - 2021-09-24 00:08 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Local\CrashDumps
2022-05-28 07:14 - 2021-05-25 14:27 - 000000000 ____D C:\WINDOWS\Minidump
2022-05-28 07:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-05-24 21:09 - 2021-12-02 18:56 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\vlc
2022-05-21 21:06 - 2021-12-29 13:56 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-05-21 21:06 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-05-15 17:30 - 2022-04-20 19:05 - 000000000 ____D C:\Users\Stephane Eppner\AppData\Roaming\ServiceGet
2022-05-13 07:09 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-05-13 07:09 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-05-13 07:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-05-13 07:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-05-13 07:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-05-13 07:09 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-05-13 05:10 - 2021-05-15 13:41 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-05-13 05:03 - 2021-05-15 13:41 - 145501456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-05-11 11:41 - 2022-02-22 22:57 - 000000000 ____D C:\ProgramData\Package Cache
==================== Fichiers à la racine de certains dossiers ========
2020-09-22 09:19 - 2020-09-22 09:19 - 000000258 _____ () C:\ProgramData\fontcacheev1.dat
==================== FLock ==============================
2021-05-28 18:56 C:\Users\Stephane Eppner\Downloads\uTorrent.exe
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== Fin de FRST.txt ========================