cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation


==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843784 2016-08-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [340440 2021-04-16] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [492632 2022-07-14] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784 2016-06-20] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324488 2016-08-02] (HP Inc. -> HP)
HKLM-x32\...\Run: [Adobe Photo Downloader] => C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\apdproxy.exe [61440 2006-09-14] (Adobe Systems Incorporated) [Fichier non signé]
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\HP\HP 3D DriveGuard\AccelerometerST.exe [133952 2016-09-28] (HP Inc. -> HP)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Pas de fichier)
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [92390144 2020-02-13] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-2065614966-3883503044-3197694451-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2017-07-14] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-2065614966-3883503044-3197694451-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Quentin\AppData\Local\Microsoft\Teams\Update.exe [2459328 2021-12-08] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2065614966-3883503044-3197694451-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Quentin\AppData\Local\WebEx\ciscowebexstart.exe [4703056 2021-10-22] (Cisco WebEx LLC -> Cisco Webex LLC)
HKU\S-1-5-21-2065614966-3883503044-3197694451-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [37054552 2022-07-18] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\...\Windows x64\Print Processors\Canon MG4200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDB9.DLL [30208 2012-03-26] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG4200 series: C:\windows\system32\CNMLMB9.DLL [389120 2012-03-26] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\HP C211 Status Monitor: C:\windows\system32\hpinkstsC211LM.dll [342232 2015-07-03] (Hewlett Packard -> Hewlett-Packard Co.)
HKLM\...\Print\Monitors\us008 Langmon: C:\windows\system32\us008lm.dll [31256 2016-02-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.81\Installer\chrmstp.exe [2022-08-09] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP JumpStart Launch.lnk [2017-05-10]
ShortcutTarget: HP JumpStart Launch.lnk -> c:\Windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico () [Fichier non signé]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2016-09-20]
ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {050E4E45-C878-4B04-AF59-9945022B5A1C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6570472 2022-08-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {0CDF684F-5EED-4DC1-B9ED-9312F4708A98} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116632 2022-08-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {16DEA092-FB0C-40D0-AE20-0536BECC21D9} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task => {35EF4182-F900-4632-B072-8639E4478A61}
Task: {19861CBC-CEDC-47DE-BB18-2D4358058089} - System32\Tasks\CCleanerSkipUAC - Quentin => C:\Program Files\CCleaner\CCleaner.exe [31101528 2022-07-18] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1A55D3F6-8FB2-4957-92CE-4BBB9590EF7C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1B65DD58-D16B-45E8-BEB4-94D7E4D64DF7} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task => {35EF4182-F900-4632-B072-8639E4478A61}
Task: {1E9A64E5-B4E2-4A4B-A848-CE497D14C9C0} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [816960 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {1F8B54BB-928E-4ADC-A547-8C5FB55C4554} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {256CF379-2628-484D-A714-3D98B471D80F} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {33C531BD-3C27-49B3-85EA-994AE1312F8D} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {3BEC2D7A-7CEE-4466-B10B-3B64776414A1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - resources updates => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /r (Pas de fichier)
Task: {3F8302B2-516E-4ACA-87EB-FAAC62DEF3F0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647656 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4C66982F-4A51-4E55-B063-234CC45C6846} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116632 2022-08-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {4EC7D3A6-721E-4A4B-83CF-621297F1F547} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {527E7183-72A0-4B18-988B-712D003ABBF6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /u (Pas de fichier)
Task: {5363AAD7-7E2D-4E38-B1B1-5F2041C319F4} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {542EE5F3-4597-4692-9D57-236B347481ED} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.231\WatchDog.exe [1053264 2022-07-25] (Bitdefender SRL -> Bitdefender)
Task: {553AAF98-CAC4-4D50-8F78-50DCAB5FAC07} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-07-18] (Piriform Software Ltd -> Piriform)
Task: {55BBDF42-3929-4327-8522-F7ED5B4C515D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe /send (Pas de fichier)
Task: {662E8BDD-8876-46C5-B3E3-795A0DF2DFFF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {67066774-A1DC-4FE2-9B2D-232270F86ADC} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {707D0DDD-DBCC-497E-9866-E529DA48329C} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {77BDDE73-623A-4F2B-8D7D-13A832F2548A} - System32\Tasks\Microsoft\Windows\ErrorDetails\EnableErrorDetailsUpdate => {FE285C8C-5360-41C1-A700-045501C740DE} C:\Windows\System32\ErrorDetailsUpdate.dll [72704 2018-03-22] (Microsoft Windows -> Microsoft Corporation)
Task: {89B5533F-F46D-4701-A872-A297CBBB73B1} - System32\Tasks\Microsoft\Windows\ErrorDetails\ErrorDetailsUpdate => {9CDA66BE-3271-4723-8D35-DD834C58AD92} C:\Windows\System32\ErrorDetailsUpdate.dll [72704 2018-03-22] (Microsoft Windows -> Microsoft Corporation)
Task: {9C2B0D88-F5AE-442F-892D-149A8B0C1FCD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.)
Task: {9E362678-3F6C-4A7F-8204-746F00CF389E} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [584488 2016-09-21] (Dropbox, Inc -> )
Task: {AACD61D8-C535-41F5-9FCB-3F2584018CD9} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {CE85F832-4206-41E3-9280-E4DE23551D1C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-05-07] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {D037B038-D979-42F5-B664-395B697931C1} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task
Task: {D9D4EE35-9346-4A21-93A2-803826A5072E} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-06-23] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DF11DC50-0097-48CD-AAD3-4541A65B5251} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {E2E770A3-7A87-44DE-96C1-4E0CC78E091E} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [987200 2022-08-09] (Bitdefender SRL -> Bitdefender)
Task: {E9E75D79-624D-48B0-86A4-6DF867A774DD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {F33CF6AF-8768-44D9-A62B-C84DC1073ABC} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3292984 2020-06-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F60776E8-6C2B-4C30-B622-C77A4B7232A6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6570472 2022-08-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {FC2934FD-FF8A-47C7-9309-D9FEAFB6C33C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [690656 2022-08-15] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{2bf7fde1-e49c-4620-abb9-4295702ec717}: [DhcpNameServer] 212.27.40.240 212.27.40.241
Tcpip\..\Interfaces\{fab5e4d3-bbc0-4966-ba27-c347a082ef25}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{fef86fe4-5780-494f-9f97-3a98bc90b1bf}: [DhcpNameServer] 192.168.43.1

FireFox:
========
FF DefaultProfile: 34wm7lai.default
FF DefaultProfile: zh0hqvb8.default
FF ProfilePath: C:\Users\Quentin\AppData\Roaming\Zotero\Zotero\Profiles\34wm7lai.default [2018-11-20]
FF ProfilePath: C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\zh0hqvb8.default [2022-08-09]
FF Extension: (Cisco WebEx Extension) - C:\Users\Quentin\AppData\Roaming\Mozilla\Firefox\Profiles\zh0hqvb8.default\Extensions\ciscowebexstart1@cisco.com.xpi [2020-08-10]
FF Extension: (Cisco WebEx Extension) - C:\Program Files\Mozilla Firefox\distribution\extensions\ciscowebexstart1@cisco.com.xpi [2020-04-29]
FF HKLM\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF Extension: (Bitdefender Wallet) - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi [2021-08-14] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/wallet/updates.json ]
FF HKLM\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF Extension: (Bitdefender Anti-tracker) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi [2020-11-26] [UpdateUrl:hxxps://download.bitdefender.com/windows/desktop/connect/antitracker/updates.json ]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Extension: (Bitdefender Antispam Toolbar) - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext [2021-08-26] [] [non signé]
FF HKLM-x32\...\Firefox\Extensions: [bdwtwe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdwteff.xpi
FF HKLM-x32\...\Firefox\Extensions: [bdtbe@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbef.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender Security\bdtbext
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-08-02] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-04-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-20] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @webex.com/npatgpc -> C:\Program Files (x86)\Webex\npatgpc.dll [2020-04-29] (Cisco WebEx LLC -> Cisco WebEx LLC)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2020-08-10] <==== ATTENTION (Pointe vers un fichier *.cfg)
FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2020-08-10] <==== ATTENTION

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default [2022-08-15]
CHR Extension: (uBlock Origin) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-08-10]
CHR Extension: (wanteeed) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\emnoomldgleagdjapdeckpmebokijail [2022-07-19]
CHR Extension: (Google Docs hors connexion) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-07-19]
CHR Extension: (Save to Facebook) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmfikkaogpplgnfjmbjdpalkhclendgd [2021-06-15]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-08-09]
CHR Profile: C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-08-10]
CHR Extension: (Google Docs hors connexion) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-09]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-08]
CHR Profile: C:\Users\Quentin\AppData\Local\Google\Chrome\User Data\System Profile [2022-08-09]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R2 AdobeActiveFileMonitor5.0; C:\Program Files (x86)\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe [102400 2006-09-14] () [Fichier non signé]
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.)
S3 AfVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\hydra.sdk.windows.service.exe [356504 2022-06-20] (Get Aura Inc -> AnchorFree Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-19] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-19] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2195320 2018-03-22] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender)
R2 BdVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [449112 2022-07-14] (Bitdefender SRL -> Bitdefender)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12102608 2022-08-09] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
S2 hpsrv; C:\windows\system32\Hpservice.exe [38728 2016-10-11] (HP Inc. -> HP)
S2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800 2016-06-20] (HP Inc. -> HP Inc.)
R2 macmnsvc; C:\Program Files (x86)\McAfee\Common Framework\macmnsvc.exe [141136 2016-07-29] (McAfee, Inc. -> McAfee, Inc.)
R2 masvc; C:\Program Files (x86)\McAfee\Common Framework\masvc.exe [56656 2016-07-29] (McAfee, Inc. -> McAfee, Inc.)
R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2022-08-10] (Malwarebytes Inc -> Malwarebytes)
R3 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\x86\macompatsvc.exe [213840 2016-07-29] (McAfee, Inc. -> McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [384528 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
S3 mfevtp; C:\windows\system32\mfevtps.exe [316432 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [789072 2022-07-25] (Bitdefender SRL -> Bitdefender)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280128 2022-08-09] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821312 2022-07-19] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3880120 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)
S3 WebexService; C:\Program Files (x86)\Webex\Webex\Applications\WebExService.exe [146240 2020-04-29] (Cisco WebEx LLC -> Cisco WebEx LLC)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [114208 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)
R2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X]

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R1 atc; C:\windows\System32\DRIVERS\atc.sys [4802976 2022-05-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
S3 bcmfn; C:\windows\System32\drivers\bcmfn.sys [9728 2016-07-16] (Microsoft Windows -> Windows (R) Win 7 DDK provider)
R2 BdDci; C:\windows\system32\DRIVERS\bddci.sys [800672 2021-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\windows\System32\drivers\bdelam.sys [22976 2021-04-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
R0 bdprivmon; C:\windows\System32\DRIVERS\bdprivmon.sys [33208 2022-03-02] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL)
S3 bduefiscan; C:\windows\system32\DRIVERS\bduefiscan.sys [55864 2021-12-01] (Bitdefender SRL -> Bitdefender)
R1 bdvpn_netfilter; C:\windows\System32\drivers\bdvpn_netfilter.sys [94600 2021-09-16] (Pango Inc. -> Pango Inc)
R0 Gemma; C:\windows\System32\DRIVERS\gemma.sys [1262496 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
R2 Ignis; C:\windows\system32\DRIVERS\ignis.sys [185312 2020-12-22] (Bitdefender SRL -> Bitdefender)
R2 MBAMChameleon; C:\windows\System32\Drivers\MbamChameleon.sys [220752 2022-08-10] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\windows\System32\DRIVERS\MbamElam.sys [19912 2022-08-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [248992 2022-08-10] (Malwarebytes Inc -> Malwarebytes)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [479288 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [364600 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [877624 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeplk; C:\windows\System32\drivers\mfeplk.sys [110136 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [252984 2017-08-19] (McAfee, Inc. -> McAfee, Inc.)
S3 Netaapl; C:\windows\System32\drivers\netaapl64.sys [23040 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
S3 NetAdapterCx; C:\windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] (Microsoft Windows -> )
R2 npf; C:\windows\System32\drivers\npf.sys [36600 2014-04-18] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
S3 NVHDA; C:\windows\system32\drivers\nvhda64v.sys [138584 2021-06-17] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S3 NVSWCFilter; C:\windows\System32\drivers\nvswcfilter.sys [28344 2016-08-16] (Nvidia Corporation -> Windows (R) Win 7 DDK provider)
R3 ssdevfactory; C:\windows\System32\drivers\ssdevfactory.sys [40568 2015-10-03] (SteelSeries ApS -> SteelSeries ApS)
S3 sshid; C:\windows\System32\drivers\sshid.sys [51400 2016-05-27] (SteelSeries ApS -> SteelSeries ApS)
R3 tap0901; C:\windows\System32\drivers\tap0901.sys [47920 2020-02-20] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R0 trufos; C:\windows\System32\DRIVERS\trufos.sys [633264 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 USBAAPL64; C:\windows\System32\Drivers\usbaapl64.sys [54784 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R0 vlflt; C:\windows\System32\DRIVERS\vlflt.sys [474048 2022-05-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\windows\system32\drivers\wd\WdBoot.sys [46680 2018-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\windows\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\windows\system32\drivers\wd\WdFilter.sys [330936 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [62136 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\system32\DRIVERS\WirelessButtonDriver64.sys [32832 2016-07-31] (HP Inc. -> HP)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Trois mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-08-15 11:07 - 2022-08-15 11:07 - 000000000 ____D C:\Users\Quentin\Desktop\Nouveau dossier
2022-08-15 10:54 - 2022-08-15 11:09 - 000027254 _____ C:\Users\Quentin\Desktop\FRST.txt
2022-08-15 10:47 - 2022-08-15 10:47 - 000370173 _____ C:\Users\Quentin\Desktop\ZHPDiag.txt
2022-08-15 10:45 - 2022-08-15 10:45 - 000001210 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2022-08-15 10:45 - 2022-08-15 10:45 - 000001206 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2022-08-15 10:31 - 2022-08-15 10:31 - 003489992 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPSuite.exe
2022-08-10 20:57 - 2022-08-10 20:57 - 003303624 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPCleaner.exe
2022-08-10 14:54 - 2022-08-10 14:54 - 000248992 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2022-08-10 14:54 - 2022-08-10 14:54 - 000220752 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamChameleon.sys
2022-08-10 14:51 - 2022-08-10 14:51 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2022-08-10 14:50 - 2022-08-10 14:50 - 000019912 _____ (Malwarebytes) C:\windows\system32\Drivers\MbamElam.sys
2022-08-10 13:16 - 2022-08-10 13:16 - 000000079 _____ C:\Users\Quentin\Desktop\Pré-Nettoyage.url
2022-08-10 12:55 - 2022-08-10 14:49 - 199196264 _____ (Malwarebytes) C:\Users\Quentin\Desktop\mb4-setup-adwc.adwc100.4.3.0.210.exe
2022-08-10 12:54 - 2022-08-10 13:01 - 008551608 _____ (Malwarebytes) C:\Users\Quentin\Desktop\adwcleaner_8.3.2.exe
2022-08-10 10:31 - 2022-08-10 20:57 - 000000747 _____ C:\Users\Quentin\Desktop\ZHPCleaner.lnk
2022-08-10 10:29 - 2022-08-10 10:31 - 003303664 _____ (Nicolas Coolman) C:\Users\Quentin\Desktop\ZHPCleaner.exe
2022-08-10 09:44 - 2022-08-10 09:44 - 000056668 _____ C:\ProgramData\agent.uninstall.1660117450.bdinstall.v2.bin
2022-08-10 09:44 - 2022-08-10 09:44 - 000050668 _____ C:\ProgramData\vpn.1660117470.bdinstall.v2.bin
2022-08-09 16:14 - 2022-08-15 10:30 - 000000000 ____D C:\Program Files\CCleaner
2022-08-09 16:14 - 2022-08-09 16:20 - 000002318 _____ C:\windows\system32\Tasks\CCleanerSkipUAC - Quentin
2022-08-09 16:14 - 2022-08-09 16:14 - 000003936 _____ C:\windows\system32\Tasks\CCleaner Update
2022-08-09 16:14 - 2022-08-09 16:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2022-08-09 16:12 - 2022-08-09 16:12 - 049899376 _____ (Piriform Software Ltd) C:\Users\Quentin\Downloads\ccsetup602.exe
2022-08-09 15:28 - 2022-08-15 10:31 - 000000737 _____ C:\Users\Quentin\Desktop\ZHPSuite.lnk
2022-08-09 15:25 - 2022-08-09 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2022-08-09 15:25 - 2022-08-09 15:25 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2022-08-09 12:21 - 2022-08-09 12:21 - 000000000 ____D C:\windows\system32\Tasks\Mozilla
2022-08-09 11:54 - 2022-08-09 12:17 - 000000000 ___HD C:\$WINDOWS.~BT
2022-08-09 11:33 - 2022-08-09 12:17 - 000000000 ___HD C:\$GetCurrent
2022-08-05 08:56 - 2022-08-10 12:19 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-08-04 16:20 - 2022-08-15 11:08 - 000000000 ____D C:\FRST
2022-08-04 16:18 - 2022-08-15 10:54 - 002370560 _____ (Farbar) C:\Users\Quentin\Desktop\FRST64.exe
2022-08-04 16:13 - 2022-08-04 16:13 - 000000000 ____D C:\Program Files\Google
2022-08-04 15:53 - 2022-08-15 10:47 - 000000000 ____D C:\Users\Quentin\AppData\Roaming\ZHP
2022-08-04 15:53 - 2022-08-10 10:31 - 000000000 ____D C:\Users\Quentin\AppData\Local\ZHP
2022-08-04 15:45 - 2022-08-04 15:45 - 000234000 _____ C:\ProgramData\vpn.1659620670.bdinstall.v2.bin
2022-08-04 15:45 - 2022-08-04 15:45 - 000085568 _____ C:\ProgramData\vpn.uninstall.1659620671.bdinstall.v2.bin
2022-08-04 15:45 - 2022-08-04 15:45 - 000002202 _____ C:\Users\Public\Desktop\Bitdefender VPN.lnk
2022-08-04 12:35 - 2022-08-04 12:35 - 000099156 _____ C:\ProgramData\agent.update.1659609313.bdinstall.v2.bin
2022-08-03 16:58 - 2022-08-03 16:58 - 000000000 ____D C:\Users\Quentin\AppData\Local\mbam
2022-08-03 16:55 - 2022-08-10 14:54 - 000199128 _____ (Malwarebytes) C:\windows\system32\Drivers\mbae64.sys
2022-08-03 16:55 - 2022-08-10 14:51 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2022-08-03 16:53 - 2022-08-03 16:53 - 000000000 ____D C:\ProgramData\Malwarebytes
2022-08-03 16:53 - 2022-08-03 16:53 - 000000000 ____D C:\Program Files\Malwarebytes
2022-08-03 15:47 - 2022-08-03 16:11 - 000000000 ____D C:\AdwCleaner
2022-07-23 15:55 - 2022-07-23 15:55 - 000269384 _____ C:\Users\Quentin\Downloads\PJ_BAC_22207479_2022.pdf
2022-07-23 15:27 - 2022-07-23 15:27 - 000083138 _____ C:\Users\Quentin\Downloads\PJ_CVEC_22207479_2022.pdf
2022-07-20 08:44 - 2022-07-20 08:48 - 158863360 _____ C:\Users\Quentin\Downloads\EpicInstaller-13.3.0.msi
2022-07-20 08:32 - 2022-07-20 08:33 - 158863360 _____ C:\Users\Quentin\Downloads\EpicInstaller-13.3.0 (6).msi
2022-07-13 20:10 - 2021-09-16 11:55 - 000094600 _____ (Pango Inc) C:\windows\system32\Drivers\bdvpn_netfilter.sys
2022-07-07 22:35 - 2022-07-07 23:38 - 000010470 _____ C:\Users\Quentin\Desktop\Documents\Projet glacier plage.xlsx
2022-07-07 13:46 - 2022-07-07 13:46 - 001602008 _____ C:\Users\Quentin\Downloads\Carapine.pdf
2022-07-02 19:03 - 2022-07-02 19:03 - 000124148 _____ C:\Users\Quentin\Downloads\Facture ROYER Quentin.pdf
2022-06-30 09:57 - 2022-06-30 09:57 - 003372139 _____ C:\Users\Quentin\Downloads\30_05_21_gap_uf_2s.pdf
2022-06-29 11:51 - 2022-06-29 11:51 - 000020707 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ(3) (1).xlsx
2022-06-29 10:49 - 2022-06-29 10:49 - 000000000 ____D C:\Users\Quentin\.ms-ad
2022-06-20 19:49 - 2022-06-20 19:49 - 000020707 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ(3).xlsx
2022-06-13 14:42 - 2022-06-13 14:42 - 000021110 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ(2).xlsx
2022-06-13 11:37 - 2022-06-13 11:37 - 000020986 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ 13-06-2022.xlsx
2022-06-13 11:37 - 2022-06-13 11:37 - 000020986 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ 13-06-2022 (1).xlsx
2022-06-13 09:43 - 2022-06-13 09:43 - 000021111 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL _Tableau-PRéférents_MàJ.xlsx
2022-06-11 10:56 - 2022-06-11 10:56 - 000014043 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL(3)).xlsx
2022-06-11 10:54 - 2022-06-11 10:55 - 000014043 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL(2) (1).xlsx
2022-06-11 10:54 - 2022-06-11 10:54 - 000014134 _____ C:\Users\Quentin\Downloads\Lieux_PFMP_2GATL(2).xlsx
2022-05-31 19:06 - 2022-05-31 19:15 - 000011009 _____ C:\Users\Quentin\Downloads\PASSAGE CCF SITUATION B ESPAGNOL.xlsx
2022-05-28 12:59 - 2022-05-28 12:59 - 000162305 _____ C:\Users\Quentin\Downloads\Avis_d_impot_2021_sur_les_revenus_2020.pdf
2022-05-28 12:59 - 2022-05-28 12:59 - 000146769 _____ C:\Users\Quentin\Downloads\Avis_d_impot_2020_sur_les_revenus_2019.pdf
2022-05-28 12:58 - 2022-05-28 12:58 - 000132652 _____ C:\Users\Quentin\Downloads\revenu-2021-impots-2022.pdf

==================== Trois mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-08-15 10:51 - 2016-07-29 14:32 - 000000000 ____D C:\windows\system32\SleepStudy
2022-08-15 10:45 - 2016-09-20 13:34 - 000004270 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineUA
2022-08-15 10:45 - 2016-09-20 13:34 - 000004038 _____ C:\windows\system32\Tasks\DropboxUpdateTaskMachineCore
2022-08-15 10:39 - 2017-08-16 18:18 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task
2022-08-15 10:38 - 2021-11-12 13:25 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2022-08-15 10:38 - 2021-11-12 13:25 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2022-08-15 10:38 - 2016-09-20 13:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-08-15 10:32 - 2019-11-19 09:23 - 000002445 _____ C:\Users\Quentin\Desktop\Alex - Chrome.lnk
2022-08-15 10:31 - 2017-08-16 07:22 - 000000000 ____D C:\Users\Quentin
2022-08-15 10:28 - 2017-05-10 21:15 - 000000000 ____D C:\ProgramData\NVIDIA
2022-08-10 14:50 - 2016-07-16 13:47 - 000000000 ___HD C:\windows\ELAMBKUP
2022-08-10 13:21 - 2016-09-20 13:29 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2022-08-10 13:21 - 2016-09-20 13:27 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2022-08-10 12:35 - 2017-08-18 10:41 - 000000000 ____D C:\Program Files (x86)\Google
2022-08-10 12:26 - 2017-08-16 07:23 - 000000000 __SHD C:\Users\Quentin\IntelGraphicsProfiles
2022-08-10 12:19 - 2016-07-29 14:32 - 000000006 ____H C:\windows\Tasks\SA.DAT
2022-08-10 09:59 - 2017-08-16 11:54 - 000000000 ____D C:\windows\system32\MRT
2022-08-10 09:46 - 2017-08-16 09:38 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-08-10 09:41 - 2017-08-16 11:54 - 144534560 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2022-08-09 16:21 - 2021-12-13 23:22 - 000003126 _____ C:\windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2065614966-3883503044-3197694451-1001
2022-08-09 16:21 - 2017-08-17 12:27 - 000002922 _____ C:\windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2065614966-3883503044-3197694451-1001
2022-08-09 16:16 - 2017-09-02 13:40 - 000000000 ____D C:\windows\Minidump
2022-08-09 16:16 - 2017-08-16 10:29 - 000000000 ____D C:\Users\Quentin\AppData\Local\CrashDumps
2022-08-09 16:16 - 2016-07-29 15:23 - 000000000 ____D C:\windows\Panther
2022-08-09 16:16 - 2016-07-16 13:47 - 000000000 ____D C:\windows\LiveKernelReports
2022-08-09 12:53 - 2017-08-16 09:39 - 000000000 ____D C:\Users\Quentin\AppData\LocalLow\Mozilla
2022-08-09 12:21 - 2017-08-16 09:38 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-08-09 12:17 - 2018-02-10 17:35 - 000001908 _____ C:\windows\diagwrn.xml
2022-08-09 12:17 - 2018-02-10 17:35 - 000001908 _____ C:\windows\diagerr.xml
2022-08-09 11:52 - 2018-02-10 17:32 - 000000036 _____ C:\windows\progress.ini
2022-08-09 11:42 - 2019-06-05 20:09 - 000000000 ____D C:\Windows10Upgrade
2022-08-05 10:59 - 2016-07-16 08:04 - 000786432 _____ C:\windows\system32\config\BBI
2022-08-05 09:26 - 2016-07-16 13:36 - 000000000 ____D C:\windows\CbsTemp
2022-08-05 09:03 - 2017-08-31 00:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Movie Maker
2022-08-05 09:03 - 2016-09-20 13:30 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2022-08-04 12:35 - 2019-11-02 16:28 - 000003846 _____ C:\windows\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864
2022-08-04 12:35 - 2019-11-02 16:26 - 000000000 ____D C:\Program Files\Bitdefender Agent
2022-08-03 16:28 - 2016-07-16 08:04 - 000065536 _____ C:\windows\system32\config\ELAM
2022-08-03 16:12 - 2017-08-16 07:23 - 000000000 ____D C:\Users\Quentin\AppData\Local\Hewlett-Packard
2022-08-03 16:12 - 2017-08-16 07:22 - 000000000 ____D C:\Users\defaultuser0\AppData\Local\Hewlett-Packard
2022-08-03 16:12 - 2017-05-10 21:30 - 000000000 ____D C:\windows\system32\Tasks\HP
2022-08-03 16:12 - 2016-09-20 13:31 - 000000000 ____D C:\Program Files (x86)\HP Inc
2022-08-03 16:12 - 2016-09-20 13:30 - 000000000 ____D C:\Program Files\HP
2022-08-03 16:12 - 2016-09-20 13:29 - 000000000 ____D C:\ProgramData\HP
2022-08-03 16:12 - 2016-09-20 13:29 - 000000000 ____D C:\Program Files (x86)\HP
2022-08-03 16:12 - 2016-09-07 00:27 - 000000000 ___HD C:\hp
2022-08-03 16:11 - 2017-08-16 07:27 - 000000000 ____D C:\Users\Quentin\AppData\Roaming\Hewlett-Packard
2022-07-30 16:51 - 2016-07-16 13:47 - 000000000 ____D C:\windows\AppReadiness
2022-07-29 11:35 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-29 11:21 - 2017-08-16 07:25 - 000002418 _____ C:\Users\Quentin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-07-29 11:17 - 2021-08-31 12:26 - 000000000 ____D C:\Users\Quentin\Desktop\LP JP
2022-07-23 15:58 - 2017-08-30 10:38 - 000000000 ____D C:\Users\Quentin\Desktop\Documents\Diplomes documents importants
2022-07-23 15:26 - 2021-05-13 10:37 - 000003690 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-23 15:26 - 2021-05-13 10:37 - 000003566 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-20 08:59 - 2017-08-16 07:23 - 000000000 ____D C:\Users\Quentin\AppData\Local\Packages
2022-07-20 08:52 - 2017-08-16 07:23 - 000000000 ____D C:\Users\Quentin\AppData\Local\NVIDIA
2022-07-20 08:50 - 2017-08-16 07:23 - 000000000 ____D C:\Users\Quentin\AppData\Local\NVIDIA Corporation
2022-07-20 08:50 - 2017-05-10 21:15 - 000000000 ____D C:\ProgramData\NVIDIA Corporation

==================== Fichiers à la racine de certains dossiers ========

2022-08-10 20:57 - 2022-08-10 20:57 - 003303624 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPCleaner.exe
2022-08-15 10:31 - 2022-08-15 10:31 - 003489992 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPSuite.exe

==================== SigCheckExt =========================

2017-08-17 13:03 - 2007-01-23 15:42 - 000388608 _____ (L'Aventure Multimedia) C:\windows\LMD9Il.exe
2017-08-17 13:04 - 2007-07-02 14:10 - 004111872 _____ (L'Aventure Multimedia) C:\windows\MediaDico9IlDll.dll
2017-08-17 13:04 - 2006-02-04 12:18 - 000208998 _____ (L'Aventure MultiMedia) C:\windows\RACHook9Il.dll
2014-04-18 06:31 - 2014-04-18 06:31 - 000053299 _____ C:\windows\SysWOW64\pthreadVC.dll
2022-08-10 20:57 - 2022-08-10 20:57 - 003303624 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPCleaner.exe
2022-08-15 10:31 - 2022-08-15 10:31 - 003489992 _____ (Nicolas Coolman) C:\Users\Quentin\ZHPSuite.exe
2022-08-04 16:18 - 2022-08-15 10:54 - 002370560 _____ (Farbar) C:\Users\Quentin\Desktop\FRST64.exe
2022-08-10 10:29 - 2022-08-10 10:31 - 003303664 _____ (Nicolas Coolman) C:\Users\Quentin\Desktop\ZHPCleaner.exe
2021-11-01 11:11 - 2021-11-01 11:12 - 009616803 _____ (OCAD AG ) C:\Users\Quentin\Downloads\Ocad_10_Viewer_Setup.exe

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)


==================== BCD ================================

Gestionnaire de d‚marrage du microprogramme
-------------------------------------------
identificateur {fwbootmgr}
displayorder {bootmgr}
{72535764-8256-11e7-9455-806e6f6e6963}
{e83228a4-3604-11e7-8589-3c5282d61382}
timeout 0

Gestionnaire de d‚marrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\bootmgfw.efi
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {e83228a2-3604-11e7-8589-3c5282d61382}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30

Application logicielle (101fffff)
--------------------------------
identificateur {72535764-8256-11e7-9455-806e6f6e6963}
description Internal Hard Disk or Solid State Disk

Application logicielle (101fffff)
--------------------------------
identificateur {e83228a4-3604-11e7-8589-3c5282d61382}
description EFI USB Device

Chargeur de d‚marrage Windows
-----------------------------
identificateur {82f58dc7-35bf-11e7-9451-887873c50f7f}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{82f58dc8-35bf-11e7-9451-887873c50f7f}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale fr-FR
inherit {bootloadersettings}
displaymessage Recovery
displaymessageoverride Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{82f58dc8-35bf-11e7-9451-887873c50f7f}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes

Chargeur de d‚marrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \windows\system32\winload.efi
description Windows 10
locale fr-FR
inherit {bootloadersettings}
recoverysequence {82f58dc7-35bf-11e7-9451-887873c50f7f}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \windows
resumeobject {e83228a2-3604-11e7-8589-3c5282d61382}
nx OptIn
bootmenupolicy Standard

Reprendre … partir de la mise en veille prolong‚e
-------------------------------------------------
identificateur {e83228a2-3604-11e7-8589-3c5282d61382}
device partition=C:
path \windows\system32\winresume.efi
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
recoverysequence {82f58dc7-35bf-11e7-9451-887873c50f7f}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No

Testeur de m‚moire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Windows Memory Diagnostic
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes

ParamŠtres EMS
--------------
identificateur {emssettings}
bootems No

ParamŠtres du d‚bogueur
-----------------------
identificateur {dbgsettings}
debugtype Local

Erreurs de m‚moire RAM
----------------------
identificateur {badmemory}

ParamŠtres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}

ParamŠtres du chargeur de d‚marrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}

ParamŠtres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200

ParamŠtres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}

Options de p‚riph‚rique
-----------------------
identificateur {82f58dc8-35bf-11e7-9451-887873c50f7f}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi


LastRegBack: 2022-08-15 10:48
==================== Fin de FRST.txt ========================

Publicité


Signaler le contenu de ce document

Publicité