Commentaire : analyse 21_11_24
Format du document : text/plain
Prévisualisation
Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 29-11-2024
Exécuté par JPEmery (administrateur) sur SFRK8M-000432 (LENOVO 20JNS0BK0G) (29-11-2024 18:54:51)
Exécuté depuis C:\Users\JPEmery\Downloads\FRST64 (1).exe
Profils chargés: JPEmery
Plate-forme: Microsoft Windows 10 Entreprise Version 22H2 19045.5198 (X64) Langue: Français (France)
Navigateur par défaut: Edge
Mode d'amorçage: Normal
==================== Processus (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)
(5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12134.4.3008.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\EPSON Software\PMA_A\PMAService.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\PMA_A\PMA.exe
(C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Common Files\Sophos\Web Intelligence\swi_fc.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe
(C:\Program Files\Norton\Suite\NortonSvc.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswEngSrv.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(C:\Program Files\Sophos\Live Query\SophosLiveQueryService.exe ->) (Sophos Ltd -> Facebook) C:\Program Files\Sophos\Live Query\SophosOsquery.exe
(C:\Program Files\Sophos\Live Query\SophosLiveQueryService.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Live Query\SophosMTRExtension.exe
(C:\Program Files\Sophos\Live Query\SophosLiveQueryService.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Live Query\SophosOsqueryExtension.exe
(C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFileScanner.exe <2>
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.) C:\Program Files (x86)\Common Files\Gestionnaire d'installation SolidWorks\BackgroundDownloading\sldBgDwld.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <28>
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE
(explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E1YATIBJE.EXE <3>
(Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_17e5ecff8f892470\igfxEM.exe
(Lenovo -> Lenovo.) C:\Windows\System32\TpShocks.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonUI.exe <3>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Intel(R) Corporation -> Intel Corporation) C:\Program Files\Intel\IntelSGXPSW\bin\x64\Release\aesm_service.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_c28b7f61e3210448\LMS.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_17e5ecff8f892470\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_17e5ecff8f892470\IntelCpHeciSvc.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\Lenovo\PowerMgr\EasyResume.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_7b52940a5893ba07\x64\ibmpmsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Microsoft Update Health Tools\uhssvc.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\afwServ.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\AvDump.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\nllToolsSvc.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonSvc.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\aswidsagent.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\wsc_proxy.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\PMA_A\PMAService.exe
(services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(services.exe ->) (Sony Nordic (Sweden), Filial till Sony Europe B.V.(NL) -> Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Health\SophosHealth.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sdcservice.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Clean\SophosCleanM64.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Endpoint Defense\SEDService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Endpoint Defense\SSPService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Live Query\SophosLiveQueryService.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Safestore\SophosSafestore64.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe
(services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos Network Threat Protection\SophosNtpService.exe
(services.exe ->) (Sophos Ltd -> SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registre (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM\...\Run: [Seagull Drivers] => ssdal_nc.exe startup (Pas de fichier)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [455968 2023-05-26] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM\...\Run: [NortonUI.exe] => C:\Program Files\Norton\Suite\AvLaunch.exe [429160 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [OoPDFSettingsv6.exe] => C:\Program Files (x86)\OFFICE One6.5\OFFICE One PDF Manager\OoPDFSettingsv6.exe (Pas de fichier)
HKLM-x32\...\Run: [oouserv6.exe] => c:\Program Files\OFFICE ONE6.5\program\oouserv6.exe [377856 2004-03-08] (ISSENDIS) [Fichier non signé]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2753808 2024-03-06] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [138214768 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\MRT: Restriction <==== ATTENTION
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [] => [X]
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [MicrosoftEdgeAutoLaunch_EA4F448E4C12112711828E090BA6FA34] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911232 2024-11-25] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [EPSDNMON] => C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNMON.EXE [350032 2022-07-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YATIBJE.EXE [484712 2021-11-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YATIBJE.EXE [484712 2021-11-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-1016\...\Run: [EPLTarget\P0000000000000002] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YATIBJE.EXE [484712 2021-11-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-500\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4920352 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1119209502-176514848-3354193489-500\...\Run: [MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3911232 2024-11-25] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Print\Monitors\CommonDriver PCL Language Monitor: C:\WINDOWS\system32\KOBX9J_L.DLL [25488 2021-09-03] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.)
HKLM\...\Print\Monitors\CutePDF Writer Monitor: C:\WINDOWS\system32\cpwmon64.dll [89008 2016-01-22] (Acro Software Inc. -> )
HKLM\...\Print\Monitors\EPSON XP-2200 Series 64MonitorBE: C:\WINDOWS\system32\E1YLMBBJE.DLL [237568 2021-09-21] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\WINDOWS\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Fichier non signé]
HKLM\...\Print\Monitors\HP Designjet ECP Monitor: C:\WINDOWS\system32\HPLTLM5.DLL [15360 2009-09-10] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation, Microsoft Corporation)
HKLM\...\Print\Monitors\PJL Language Monitor: C:\WINDOWS\system32\PJLMON.DLL [24064 2024-07-13] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Print\Monitors\SHARP SS0E PCL6 Language Monitor: C:\WINDOWS\system32\SS0ELMON.DLL [82432 2008-10-29] (Microsoft Windows Hardware Compatibility Publisher -> SHARP CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.86\Installer\chrmstp.exe [2024-11-22] (Google LLC -> Google LLC)
HKLM\Software\...\Winlogon\GPExtensions: [{D76B9641-3288-4f75-942D-087DE603E3EA}] -> C:\Program Files\LAPS\CSE\AdmPwd.dll [2016-09-22] (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\JPEmery\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OFFICE One 6.5.lnk [2024-01-09]
ShortcutTarget: OFFICE One 6.5.lnk -> C:\Program Files\OFFICE ONE6.5\program\quickstart.exe () [Fichier non signé]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Téléchargement en arrière-plan de SolidWorks.lnk [2022-10-28]
ShortcutTarget: Téléchargement en arrière-plan de SolidWorks.lnk -> C:\Program Files (x86)\Common Files\Gestionnaire d'installation SolidWorks\BackgroundDownloading\sldBgDwld.exe (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Tâches planifiées (Avec liste blanche) =================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {51BE001C-460B-4921-BEFC-6CDBB8434858} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.)
Task: {F10352FA-0A35-4278-9B53-2DF76AABBF4A} - System32\Tasks\EPSON XP-2200 Series Update {5A9DC60A-1238-40CB-9E9F-BA58A8868749} => C:\Windows\System32\spool\drivers\x64\3\E1YTSBJE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {66579174-545F-4B89-A265-AC2D237D4959} - System32\Tasks\EPSON XP-2200 Series Update {C1A2E69F-2E64-4321-B772-3EBA27544C21} => C:\Windows\System32\spool\drivers\x64\3\E1YTSBJE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {0F6DC3AA-FE0E-4B73-B5F0-51AF63A3E4D3} - System32\Tasks\EPSON XP-2200 Series Update {EBE26DF0-BE2E-48BF-BDB3-BFA870AF1517} => C:\Windows\System32\spool\drivers\x64\3\E1YTSBJE.EXE [680440 2017-06-07] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Task: {A651739C-12D7-4769-AE54-208E7B62ED60} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{B5B302D8-BA87-4932-839B-8F95A2A2F522} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {55921E4A-B84C-4894-BF3A-EDFCFA3D4E82} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4983528 2024-08-02] (Intel Corporation -> Intel Corporation)
Task: {5C090A24-8057-4354-A968-3D8D06212865} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4983528 2024-08-02] (Intel Corporation -> Intel Corporation)
Task: {5C964E4B-74F2-474F-812C-EF9CE00FC942} - System32\Tasks\Lenovo Active Protection System => C:\Windows\System32\TpShUI.exe [120424 2017-06-28] (Lenovo -> Lenovo.)
Task: {ED5C8EB9-12EC-4E64-980B-B23329A372DD} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [129368 2024-06-26] (Lenovo -> Lenovo)
Task: {D3D21F63-2F7F-4BFC-8A45-DD5FAA533744} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [67424 2024-06-26] (Lenovo -> )
Task: {5A9B1D41-A59D-4B4F-B494-8CB66B05FFF0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26513416 2023-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {75C87A2D-F353-439C-ABEE-0A124667F351} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26513416 2023-05-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {4B85F758-3CA2-45DA-8574-98C71BE7AF98} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [157576 2024-10-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C90519D3-4552-4BE2-B5EC-A993F59F859C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [157576 2024-10-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {0720F176-B47C-4B7B-B286-2C7D36D01CF3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [190816 2024-10-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {67C3FB7F-DFF0-4474-8AE7-165CDAF8E812} - System32\Tasks\Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA} => C:\WINDOWS\system32\gpupdate.exe [30720 2024-03-22] (Microsoft Windows -> Microsoft Corporation)
Task: {0A80F0F6-82FC-4BDE-A710-A26EA633E7D6} - System32\Tasks\Norton\Norton 360 Patcher => C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe [8549480 2024-11-13] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {7633CA82-BFDF-4971-823B-AADF0A2E85A4} - System32\Tasks\Norton\Overseer => C:\Program Files\Common Files\Norton\Overseer\overseer.exe [2558056 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {0E936F22-CD3D-47D1-93E1-AB627195EBED} - System32\Tasks\Norton\Suite Emergency Update => C:\Program Files\Norton\Suite\AvEmUpdate.exe [5210728 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {EFC9EF58-B339-443B-9B27-C5CD1032A07C} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {A4617703-F8FB-4F5B-9F7B-504EB905C4AE} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1005 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {6F0D1819-5DB3-42DC-85EF-54220D09F624} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1006 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {FD10E29B-7FA0-4E73-854D-1F4ABA97A232} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1007 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB8598B9-197B-4475-A28A-FD76313508CB} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1016 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {6D0A39A5-BDBF-43CD-85E8-8318909B556D} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-500 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {7DACB210-0399-4F86-B764-BE06ED929C42} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-796845957-113007714-1202660629-33741 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209184 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {3F60E82C-BA86-477E-8275-404A92FB6E14} - System32\Tasks\RTFTrack => %windir%\RTFTrack.exe (Pas de fichier)
Task: {61B699E0-8103-420E-9969-E4DD0C2EA9EF} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618912 2022-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {C9CA611F-72A6-4EF6-B5EE-670FC6A1FCF8} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618912 2022-05-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {E5A1A8A4-2015-4DC9-B98A-1EA3703C55DB} - System32\Tasks\RtsCM => %windir%\RtsCM64.exe (Pas de fichier)
Task: {3243BD66-2489-4EF9-9047-21132104C60A} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\WINDOWS\System32\Wscript.exe [180736 2024-11-10] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files\Intel\SUR\QUEENCREEK\x64\//B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\EPSON XP-2200 Series Update {5A9DC60A-1238-40CB-9E9F-BA58A8868749}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YTSBJE.EXE:/EXE:{5A9DC60A-1238-40CB-9E9F-BA58A8868749} /F:UpdateWORKGROUP\SFRK8M-000432$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\EPSON XP-2200 Series Update {C1A2E69F-2E64-4321-B772-3EBA27544C21}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YTSBJE.EXE:/EXE:{C1A2E69F-2E64-4321-B772-3EBA27544C21} /F:UpdateWORKGROUP\SFRK8M-000432$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\EPSON XP-2200 Series Update {EBE26DF0-BE2E-48BF-BDB3-BFA870AF1517}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E1YTSBJE.EXE:/EXE:{EBE26DF0-BE2E-48BF-BDB3-BFA870AF1517} /F:UpdateWORKGROUP\SFRK8M-000432$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\Lenovo Active Protection System.job => C:\WINDOWS\system32\TpShUI.exe
==================== Internet (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{09ccc233-4afc-44ac-a3c2-75db935ab4e6}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{22ea8f45-11ac-48ed-aafa-3245e680c12b}: [DhcpNameServer] 10.41.160.1 10.41.161.1
Tcpip\..\Interfaces\{22ea8f45-11ac-48ed-aafa-3245e680c12b}: [DhcpDomain] swisslog.net
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}: [DhcpNameServer] 192.168.1.254
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}: [DhcpDomain] lan
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}\35C4F47474C4F42414C4: [DhcpNameServer] 10.41.160.1 10.41.161.1
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}\35C4F47474C4F42414C4: [DhcpDomain] swisslog.net
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}\845514755494D224532383D224139344: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{4e691ec5-dc73-41be-8c6d-b1bb08aed3dc}\960586F6E65602465602A45616E602079656272756: [DhcpNameServer] 172.20.10.1
Edge:
=======
Edge Profile: C:\Users\JPEmery\AppData\Local\Microsoft\Edge\User Data\Default [2024-11-29]
Edge Extension: (Google Docs hors connexion) - C:\Users\JPEmery\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-13]
Edge Extension: (Edge relevant text changes) - C:\Users\JPEmery\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-04]
Edge Extension: (Total Adblock - Ad Blocker) - C:\Users\JPEmery\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kkkldohdhcfhpjchcefpkfhjfeapdmek [2024-11-29]
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-10-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-10-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: intercall.com plugins -> C:\Users\k8emerj\AppData\Local\UMClient\npComponentStub.dll [2018-04-16] (Intercall, Inc. -> InterCall, Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\autoconfig.js [2020-03-13] <==== ATTENTION (Pointe vers un fichier *.cfg)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\local_settings.js [2016-06-15]
FF ExtraCheck: C:\Program Files\mozilla firefox\mozilla.cfg [2022-03-28] <==== ATTENTION
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Default [2024-11-29]
CHR Notifications: Default -> hxxps://fr.aliexpress.com; hxxps://h5-global.alimebot.aliexpress.com; hxxps://vieilles-soupapes.1fr1.net; hxxps://www.auto-doc.fr; hxxps://www.conforama.fr; hxxps://www.easeus.fr; hxxps://www.esky.fr; hxxps://www.foterritoriaux.fr; hxxps://www.lesnumeriques.com; hxxps://www.manomano.fr; hxxps://www.materiaux-naturels.fr; hxxps://www.mesure-laser.com; hxxps://www.oscaro.com; hxxps://www.pagesjaunes.fr; hxxps://www.retraite.com; hxxps://www.sncf-connect.com; hxxps://www.visiativ.com
CHR Extension: (Ad Block One - supprime les pubs invasives) - C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihgokmkngdlhbfhkcfpddknldflggpc [2023-05-11]
CHR Extension: (Google Docs hors connexion) - C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-26]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-28]
CHR Profile: C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-11-05]
CHR Extension: (Google Docs hors connexion) - C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-19]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-07-01]
CHR Profile: C:\Users\JPEmery\AppData\Local\Google\Chrome\User Data\System Profile [2024-11-29]
==================== Services (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11749256 2023-05-04] (Microsoft Corporation -> Microsoft Corporation)
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2020-06-02] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [47000 2024-09-26] (Intel Corporation -> Intel)
R2 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [330136 2024-09-26] (Intel Corporation -> Intel)
R2 Epson PMAService A; C:\Program Files (x86)\Epson Software\PMA_A\PMAService.exe [113144 2017-03-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [206304 2022-07-13] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.216.1027.0003\FileSyncHelper.exe [3526688 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [3124480 2022-04-19] (Sophos Ltd -> SurfRight B.V.)
R2 IBMPMSVC; C:\WINDOWS\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_7b52940a5893ba07\x64\ibmpmsvc.exe [1031024 2023-06-20] (Lenovo -> Lenovo)
R2 Lenovo Instant On; C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\EasyResume.exe [2352392 2024-06-26] (Lenovo -> Lenovo Group Limited)
S3 lpasvc; C:\Program Files\Microsoft Policy Platform\policyHost.exe [50360 2016-09-18] (Microsoft Corporation -> Microsoft Corporation)
S2 LPlatSvc; C:\WINDOWS\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_7b52940a5893ba07\x64\LPlatSvc.exe [915824 2023-06-20] (Lenovo -> Lenovo)
S3 lppsvc; C:\Program Files\Microsoft Policy Platform\policyHost.exe [50360 2016-09-18] (Microsoft Corporation -> Microsoft Corporation)
R3 nllbIDSAgent; C:\Program Files\Norton\Suite\aswidsagent.exe [7568488 2024-11-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R2 Norton Antivirus; C:\Program Files\Norton\Suite\NortonSvc.exe [777832 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 Norton Firewall; C:\Program Files\Norton\Suite\afwServ.exe [2366056 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 Norton Tools; C:\Program Files\Norton\Suite\nllToolsSvc.exe [1224808 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 nortonAvDumper64; C:\Program Files\Norton\Suite\AvDump.exe [3491432 2024-11-22] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 NortonWscReporter; C:\Program Files\Norton\Suite\wsc_proxy.exe [76552 2024-11-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.216.1027.0003\OneDriveUpdaterService.exe [3872800 2024-11-26] (Microsoft Corporation -> Microsoft Corporation)
R2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [308112 2021-07-07] (Sophos Ltd -> Sophos Limited)
R2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [216728 2021-07-07] (Sophos Ltd -> Sophos Limited)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SntpService; C:\Program Files\Sophos\Sophos Network Threat Protection\SophosNtpService.exe [9517912 2022-01-25] (Sophos Ltd -> Sophos Limited)
S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2018-06-06] (SolidWorks) [Fichier non signé]
R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [820168 2023-02-07] (Sophos Ltd -> Sophos Limited)
R2 Sophos Clean Service; C:\Program Files\Sophos\Clean\SophosCleanM64.exe [1481160 2021-10-01] (Sophos Ltd -> Sophos Limited)
R3 Sophos Device Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\sdcservice.exe [622688 2021-07-07] (Sophos Ltd -> Sophos Limited)
R2 Sophos Endpoint Defense Service; C:\Program Files\Sophos\Endpoint Defense\SEDService.exe [3667888 2021-12-13] (Sophos Ltd -> Sophos Limited)
R2 Sophos File Scanner Service; C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe [1134104 2022-01-17] (Sophos Ltd -> Sophos Limited)
R2 Sophos Health Service; C:\Program Files (x86)\Sophos\Health\SophosHealth.exe [1555024 2021-10-05] (Sophos Ltd -> Sophos Limited)
R2 Sophos Live Query; C:\Program Files\Sophos\Live Query\SophosLiveQueryService.exe [3473328 2021-10-01] (Sophos Ltd -> Sophos Limited)
R2 Sophos MCS Agent; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe [1290536 2022-01-17] (Sophos Ltd -> Sophos Limited)
R2 Sophos MCS Client; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe [1432600 2022-01-17] (Sophos Ltd -> Sophos Limited)
R2 Sophos Safestore Service; C:\Program Files\Sophos\Safestore\SophosSafestore64.exe [3631336 2021-10-01] (Sophos Ltd -> Sophos Limited)
R2 Sophos System Protection Service; C:\Program Files\Sophos\Endpoint Defense\SSPService.exe [11898424 2021-12-13] (Sophos Ltd -> Sophos Limited)
R2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [351336 2020-11-25] (Sophos Ltd -> Sophos Limited)
R2 swi_filter; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe [483680 2021-03-23] (Sophos Ltd -> Sophos Limited)
R2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3608056 2021-03-23] (Sophos Ltd -> Sophos Limited)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2375704 2023-10-09] (Sony Nordic (Sweden), Filial till Sony Europe B.V.(NL) -> Sony)
===================== Pilotes (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_4476f5fd93c02299\e1d.sys [613072 2024-02-28] (Intel Corporation -> Intel Corporation)
S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications AB -> Sony Mobile Communications)
R1 hmpalert; C:\WINDOWS\system32\drivers\hmpalert.sys [685600 2022-04-19] (Microsoft Windows Hardware Compatibility Publisher -> SurfRight B.V.)
R3 IBMPMDRV; C:\WINDOWS\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_7b52940a5893ba07\x64\ibmpmdrv.sys [56128 2023-06-20] (Lenovo -> Lenovo)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
S3 nfcgpiomanager; C:\WINDOWS\System32\drivers\nfcgpiomanager.sys [31264 2017-02-10] (NXP Semiconductors -> Nfc GPIO Driver)
R0 nllArDisk; C:\WINDOWS\System32\drivers\nllArDisk.sys [20552 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllArPot; C:\WINDOWS\System32\drivers\nllArPot.sys [234056 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllbidsdriver; C:\WINDOWS\System32\drivers\nllbidsdriver.sys [383040 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbidsh; C:\WINDOWS\System32\drivers\nllbidsh.sys [296008 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbuniv; C:\WINDOWS\System32\drivers\nllbuniv.sys [84552 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllElam; C:\WINDOWS\System32\drivers\nllElam.sys [28280 2024-11-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 nllKbd; C:\WINDOWS\System32\drivers\nllKbd.sys [28736 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllMonFlt; C:\WINDOWS\System32\drivers\nllMonFlt.sys [274504 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllNetHub; C:\WINDOWS\System32\drivers\nllNetHub.sys [550984 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllRdr; C:\WINDOWS\System32\drivers\nllRdr2.sys [97864 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllRvrt; C:\WINDOWS\System32\drivers\nllRvrt.sys [69184 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSnx; C:\WINDOWS\System32\drivers\nllSnx.sys [954944 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSP; C:\WINDOWS\System32\drivers\nllSP.sys [1424448 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 nllStm; C:\WINDOWS\System32\drivers\nllStm.sys [203848 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllVmm; C:\WINDOWS\System32\drivers\nllVmm.sys [381512 2024-11-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 PMDRVS; C:\WINDOWS\System32\DriverStore\FileRepository\ibmpmdrv.inf_amd64_7b52940a5893ba07\x64\pmdrvs.sys [41792 2023-06-20] (Lenovo -> Lenovo)
R1 SAVOnAccess; C:\WINDOWS\System32\DRIVERS\savonaccess.sys [216280 2020-11-25] (Sophos Ltd -> Sophos Limited)
S3 sdcfilter; C:\WINDOWS\system32\DRIVERS\sdcfilter.sys [38144 2020-11-25] (Sophos Limited -> Sophos Limited)
R1 sntp; C:\WINDOWS\system32\DRIVERS\sntp.sys [259088 2021-11-11] (Microsoft Windows Hardware Compatibility Publisher -> Sophos Limited)
S0 Sophos ELAM; C:\WINDOWS\System32\DRIVERS\SophosEL.sys [26032 2021-10-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Sophos Limited)
R0 Sophos Endpoint Defense; C:\WINDOWS\System32\DRIVERS\SophosED.sys [2582568 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Sophos Limited)
S4 SophosBootDriver; C:\WINDOWS\system32\DRIVERS\SophosBootDriver.sys [45840 2020-11-25] (Sophos Limited -> Sophos Limited)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 swi_callout; C:\WINDOWS\system32\DRIVERS\swi_callout.sys [47760 2020-11-25] (Sophos Limited -> Sophos Limited)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
U0 SR; pas de ImagePath
U2 srservice; pas de ImagePath
==================== NetSvcs (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
==================== Trois mois (créés) (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2024-11-29 18:54 - 2024-11-29 18:55 - 000042995 _____ C:\Users\JPEmery\Downloads\FRST.txt
2024-11-29 18:53 - 2024-11-29 18:55 - 000000000 ____D C:\FRST
2024-11-29 18:52 - 2024-11-29 18:52 - 002402816 _____ (Farbar) C:\Users\JPEmery\Downloads\FRST64.exe
2024-11-29 18:52 - 2024-11-29 18:52 - 002402816 _____ (Farbar) C:\Users\JPEmery\Downloads\FRST64 (1).exe
2024-11-29 18:42 - 2024-11-29 18:42 - 000000873 _____ C:\Users\JPEmery\Desktop\ZHPSuite.lnk
2024-11-29 18:28 - 2024-11-29 18:29 - 003539144 _____ (Nicolas Coolman) C:\Users\JPEmery\Downloads\ZHPSuite (1).exe
2024-11-29 07:49 - 2024-11-29 18:49 - 000265968 _____ C:\Users\JPEmery\Desktop\ZHPDiag.txt
2024-11-29 07:44 - 2024-11-29 18:48 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\ZHP
2024-11-29 07:44 - 2024-11-29 07:44 - 000000000 ____D C:\Users\JPEmery\AppData\Local\ZHP
2024-11-28 14:54 - 2024-11-28 14:54 - 000022205 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-11-28 14:53 - 2024-11-28 14:53 - 000022205 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2024-11-28 07:18 - 2024-11-28 07:18 - 000217897 _____ C:\Users\JPEmery\Downloads\Avis d'échéance (2).pdf
2024-11-28 07:18 - 2024-11-28 07:18 - 000217897 _____ C:\Users\JPEmery\Downloads\Avis d'échéance (1).pdf
2024-11-26 19:13 - 2024-11-26 19:13 - 000035104 _____ C:\Users\JPEmery\Downloads\INV36991367 (1).pdf
2024-11-26 19:13 - 2024-11-26 19:13 - 000035080 _____ C:\Users\JPEmery\Downloads\INV76778971.pdf
2024-11-26 19:13 - 2024-11-26 19:13 - 000035069 _____ C:\Users\JPEmery\Downloads\INV53603105.pdf
2024-11-26 19:11 - 2024-11-26 19:11 - 000035104 _____ C:\Users\JPEmery\Downloads\INV36991367.pdf
2024-11-26 11:35 - 2024-11-26 11:35 - 000103974 _____ C:\Users\JPEmery\Downloads\Download (2).PDF
2024-11-26 11:06 - 2024-11-26 11:06 - 000102223 _____ C:\Users\JPEmery\Downloads\Download (1).PDF
2024-11-26 11:04 - 2024-11-26 11:04 - 000109867 _____ C:\Users\JPEmery\Downloads\Download.PDF
2024-11-26 10:32 - 2024-11-26 10:32 - 000002129 _____ C:\Users\Public\Desktop\Epson Photo+ Tool.lnk
2024-11-26 10:32 - 2024-11-26 10:32 - 000002121 _____ C:\Users\Public\Desktop\Epson Photo+.lnk
2024-11-23 15:45 - 2024-11-23 15:45 - 000367084 _____ C:\Users\JPEmery\Downloads\cache-servo-evo72-01.stl
2024-11-22 22:50 - 2024-11-22 22:50 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Norton
2024-11-22 22:50 - 2024-11-22 22:50 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Norton
2024-11-22 22:49 - 2024-11-22 22:49 - 000002135 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton AntiVirus.lnk
2024-11-22 22:49 - 2024-11-22 22:49 - 000002123 _____ C:\Users\Public\Desktop\Norton AntiVirus.lnk
2024-11-22 22:49 - 2024-11-22 22:48 - 000315496 _____ (Gen Digital Inc.) C:\WINDOWS\system32\nllBoot.exe
2024-11-22 22:48 - 2024-11-22 22:49 - 000000000 ____D C:\Program Files\Norton
2024-11-22 22:48 - 2024-11-22 22:48 - 000000000 ____D C:\Program Files\Common Files\Norton
2024-11-22 22:48 - 2024-11-22 22:46 - 000050976 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2024-11-22 22:46 - 2024-11-29 18:27 - 000000000 ____D C:\ProgramData\Norton
2024-11-22 22:46 - 2024-11-22 22:49 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton
2024-11-22 22:45 - 2024-11-22 22:45 - 001919720 _____ (Gen Digital Inc.) C:\Users\JPEmery\Downloads\norton_360_online_setup.exe
2024-11-22 13:35 - 2024-11-22 13:35 - 000000000 ___HD C:\$WinREAgent
2024-11-17 11:18 - 2024-11-17 11:18 - 004219233 _____ C:\Users\JPEmery\Desktop\FilChaudNX-utilisation.pdf
2024-11-17 11:17 - 2024-11-17 11:17 - 000001228 _____ C:\Users\JPEmery\Desktop\FilChaudNX.lnk
2024-11-17 11:17 - 2024-11-17 11:17 - 000000000 ____D C:\Users\JPEmery\Documents\FilChaudNX
2024-11-17 11:17 - 2024-11-17 11:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FilChaudNX
2024-11-17 11:17 - 2024-11-17 11:17 - 000000000 ____D C:\Program Files (x86)\FilChaudNX
2024-11-17 11:17 - 2006-11-16 13:51 - 000024626 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrnfr.dll
2024-11-17 11:17 - 1998-07-12 22:00 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCFR.DLL
2024-11-17 11:17 - 1998-07-12 22:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CMDLGFR.DLL
2024-11-17 11:17 - 1998-07-12 22:00 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TABCTFR.DLL
2024-11-17 11:16 - 2024-11-17 11:16 - 003368168 _____ ( ) C:\Users\JPEmery\Downloads\Setup_FilChaudNX_v569 (1).exe
2024-11-16 07:00 - 2024-11-16 07:16 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\FreeCAD
2024-11-16 07:00 - 2024-11-16 07:00 - 000001929 _____ C:\Users\Public\Desktop\FreeCAD 1.0.lnk
2024-11-16 07:00 - 2024-11-16 07:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 1.0
2024-11-16 06:56 - 2024-11-16 07:00 - 000000000 ____D C:\Program Files\FreeCAD 1.0
2024-11-16 06:51 - 2024-11-16 06:51 - 401024136 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD_1.0.0RC4-conda-Windows-x86_64-installer-1.exe
2024-11-13 14:05 - 2024-07-11 13:22 - 000379520 _____ (Intel Corporation) C:\WINDOWS\system32\PROUnstl.exe
2024-11-13 13:55 - 2024-11-13 13:55 - 000014232 _____ C:\Users\JPEmery\Downloads\Detailed-System-Report.html
2024-11-13 13:55 - 2024-07-11 13:22 - 000000936 ____N C:\WINDOWS\system32\SetupBD.din
2024-11-13 13:54 - 2024-11-13 13:54 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2024-11-13 13:54 - 2024-11-13 13:54 - 000003670 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2024-11-13 13:54 - 2024-11-13 13:54 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2024-11-13 13:54 - 2024-11-13 13:54 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Intel
2024-11-13 13:54 - 2024-08-05 00:16 - 000048472 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2024-11-13 13:52 - 2024-11-13 13:52 - 000001516 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2024-11-13 13:51 - 2024-11-13 13:51 - 003827880 _____ (Intel) C:\Users\JPEmery\Downloads\Intel-Driver-and-Support-Assistant-Installer.exe
2024-11-13 08:43 - 2024-11-26 09:55 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-11-11 21:55 - 2024-11-11 21:55 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Blender Foundation
2024-11-11 21:55 - 2024-11-11 21:55 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Blender Foundation
2024-11-11 21:55 - 2024-11-11 21:55 - 000000000 ____D C:\Users\JPEmery\.thumbnails
2024-11-11 21:54 - 2024-11-11 21:54 - 000000000 ____D C:\Program Files\Blender Foundation
2024-11-11 21:51 - 2024-11-11 21:52 - 343683072 _____ C:\Users\JPEmery\Downloads\blender-windows-4.2.3-32731 (1).msi
2024-11-11 21:50 - 2024-11-11 21:51 - 343683072 _____ C:\Users\JPEmery\Downloads\blender-windows-4.2.3-32731.msi
2024-11-10 21:05 - 2024-11-10 21:15 - 000361984 _____ C:\Users\JPEmery\Desktop\comptes-2024.xls
2024-11-10 20:39 - 2024-11-10 20:39 - 000566272 _____ C:\Users\JPEmery\Downloads\comptes-2023.xls
2024-11-10 20:38 - 2024-11-10 20:38 - 000007062 _____ C:\Users\JPEmery\Downloads\CA20241110_203804.xlsx
2024-11-10 19:41 - 2024-11-10 19:42 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1 (2).exe
2024-11-10 08:42 - 2024-11-10 08:43 - 375726215 _____ C:\Users\JPEmery\Downloads\FreeCAD_weekly-builds-39141-conda-Windows-x86_64-py311 (1).7z
2024-11-09 18:51 - 2024-11-09 18:52 - 375726215 _____ C:\Users\JPEmery\Downloads\FreeCAD_weekly-builds-39141-conda-Windows-x86_64-py311.zip.7z
2024-11-08 02:46 - 2024-11-08 08:41 - 000000000 ____D C:\Users\JPEmery\freecad
2024-11-07 09:45 - 2024-11-07 09:47 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1 (1).exe
2024-11-05 15:22 - 2024-11-05 15:22 - 000000000 ____D C:\Users\JPEmery\Documents\Modèles Office personnalisés
2024-11-03 20:02 - 2024-11-03 20:02 - 000000000 ____D C:\Users\JPEmery\AppData\Local\FreeCAD
2024-11-03 08:01 - 2024-11-03 08:01 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Backup
2024-11-02 08:53 - 2024-11-02 08:54 - 422789920 _____ (PortableApps.com) C:\Users\JPEmery\Downloads\FreeCADPortable_0.21.2.paf.exe
2024-11-02 08:49 - 2024-11-16 07:00 - 000000000 ____D C:\Users\JPEmery\AppData\Local\cache
2024-11-02 08:42 - 2024-11-02 08:42 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1.exe
2024-11-02 08:27 - 2024-11-02 08:27 - 000000000 ____D C:\ProgramData\UniqueId
2024-11-02 08:26 - 2024-11-02 08:27 - 000000000 ____D C:\ProgramData\WinZip
2024-11-02 08:19 - 2024-11-02 08:19 - 483629248 _____ C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-Windows-x86_64.zip.7z
2024-11-02 08:03 - 2024-11-02 08:03 - 001624144 _____ (Igor Pavlov) C:\Users\JPEmery\Downloads\7z2408-x64.exe
2024-11-02 07:52 - 2024-11-02 07:54 - 483629248 _____ C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-Windows-x86_64.7z
2024-10-29 18:17 - 2024-10-30 18:32 - 000000947 _____ C:\WINDOWS\Tasks\EPSON XP-2200 Series Update {EBE26DF0-BE2E-48BF-BDB3-BFA870AF1517}.job
2024-10-29 18:17 - 2024-10-29 18:17 - 000004146 _____ C:\WINDOWS\system32\Tasks\EPSON XP-2200 Series Update {EBE26DF0-BE2E-48BF-BDB3-BFA870AF1517}
2024-10-29 10:58 - 2024-10-29 10:58 - 000049218 _____ C:\Users\JPEmery\Downloads\TRANSPORT-0071DC45
2024-10-29 10:52 - 2024-10-29 10:52 - 000074523 _____ C:\Users\JPEmery\Downloads\Bouyguestelecom_Facture_20241002.pdf
2024-10-29 10:51 - 2024-10-29 10:51 - 000057499 _____ C:\Users\JPEmery\Downloads\Bouyguestelecom_Facture_20241006.pdf
2024-10-22 21:24 - 2024-10-22 21:24 - 003368168 _____ ( ) C:\Users\JPEmery\Downloads\Setup_FilChaudNX_v569.exe
2024-10-21 11:04 - 2024-10-21 11:04 - 000002380 _____ C:\Users\JPEmery\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams classic.lnk
2024-10-18 07:12 - 2024-11-07 09:45 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\Teams
2024-10-18 07:12 - 2024-10-18 07:14 - 000000000 ____D C:\Users\JPEmery\AppData\Local\SquirrelTemp
2024-10-16 11:56 - 2024-10-16 11:56 - 000000000 ____D C:\Program Files (x86)\Teams Installer
2024-10-16 11:55 - 2024-10-16 11:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-10-16 11:53 - 2024-10-16 11:53 - 000002478 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002478 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002461 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000002401 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2024-10-16 11:53 - 2024-10-16 11:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office
2024-10-16 11:48 - 2024-10-16 11:54 - 000000000 ____D C:\Program Files\Microsoft Office
2024-10-16 11:48 - 2024-10-16 11:48 - 000000000 ____D C:\Program Files\Microsoft Office 15
2024-10-16 11:40 - 2024-10-16 11:48 - 000000000 ____D C:\Users\JPEmery\AppData\Local\SaraResults
2024-10-16 11:02 - 2024-10-16 11:03 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2024-10-16 11:02 - 2024-10-16 11:02 - 000000520 _____ C:\Users\JPEmery\Desktop\Assistant Support et récupération de Microsoft.appref-ms
2024-10-16 11:02 - 2024-10-16 11:02 - 000000000 ____D C:\Users\JPEmery\AppData\Local\SaRALogs
2024-10-16 11:01 - 2024-11-03 08:01 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Deployment
2024-10-16 11:01 - 2024-10-16 11:01 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Apps\2.0
2024-10-15 07:37 - 2024-10-15 07:38 - 000025693 _____ C:\Users\JPEmery\Downloads\1728931120406_BS SEPT 24.PDF
2024-10-06 17:55 - 2024-10-06 18:04 - 700239872 _____ C:\Users\JPEmery\Downloads\ProPlus2021Retail.img
2024-09-27 10:43 - 2024-09-27 10:43 - 000158410 _____ C:\Users\JPEmery\Downloads\2024015623033.pdf
2024-09-27 10:35 - 2024-09-27 10:35 - 000172261 _____ C:\Users\JPEmery\Downloads\paiement.pdf
2024-09-27 10:27 - 2024-09-27 10:27 - 000114676 _____ C:\Users\JPEmery\Downloads\prelevement_a_la_source.pdf
2024-09-25 10:54 - 2024-09-25 10:54 - 000035430 _____ C:\Users\JPEmery\Downloads\BON_COMMANDE.pdf
2024-09-19 19:47 - 2024-09-19 19:47 - 000207455 _____ C:\Users\JPEmery\Downloads\Projet protocole.pdf
2024-09-19 19:43 - 2024-09-19 19:43 - 000210334 _____ C:\Users\JPEmery\Downloads\Dossier Candidature.pdf
2024-09-19 14:21 - 2024-09-19 14:38 - 000000000 ____D C:\ESD
2024-09-19 14:14 - 2024-09-19 14:14 - 000000000 ___HD C:\$Windows.~WS
2024-09-19 14:13 - 2024-09-19 14:13 - 000000000 ____D C:\$WINDOWS.~BT
2024-09-19 11:09 - 2024-09-19 11:09 - 000181388 _____ C:\Users\JPEmery\Downloads\A la rencontre des industriels du Cher qui recrutent ! - invitation_evenement_2024-09-26T14_00_00.pdf
2024-09-07 12:04 - 2024-09-07 12:04 - 000113200 _____ C:\Users\JPEmery\Downloads\extrait_immatriculation_inpi_813056645.pdf
==================== Trois mois (modifiés) ==================
(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)
2024-11-29 18:57 - 2021-08-03 07:19 - 000000000 ____D C:\ProgramData\HitmanPro.Alert
2024-11-29 18:53 - 2021-08-03 07:19 - 000000000 ____D C:\WINDOWS\CryptoGuard
2024-11-29 18:35 - 2021-01-22 13:17 - 001778884 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-11-29 18:35 - 2019-12-07 15:50 - 000795802 _____ C:\WINDOWS\system32\perfh00C.dat
2024-11-29 18:35 - 2019-12-07 15:50 - 000151166 _____ C:\WINDOWS\system32\perfc00C.dat
2024-11-29 18:35 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2024-11-29 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-29 18:26 - 2022-03-28 18:05 - 000000000 __SHD C:\Users\JPEmery\IntelGraphicsProfiles
2024-11-29 18:26 - 2021-01-22 13:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-11-29 18:26 - 2021-01-22 13:07 - 000008192 ___SH C:\DumpStack.log.tmp
2024-11-29 18:25 - 2019-12-07 10:03 - 001835008 _____ C:\WINDOWS\system32\config\BBI
2024-11-29 07:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-11-28 15:00 - 2024-07-13 06:17 - 000000000 ____D C:\WINDOWS\system32\compatrel
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2024-11-28 15:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-11-28 14:58 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-11-28 14:53 - 2021-01-22 13:10 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2024-11-28 14:31 - 2022-01-03 17:58 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-11-28 06:48 - 2020-09-23 09:29 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-28 06:44 - 2021-01-22 13:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-11-26 12:34 - 2021-06-15 07:11 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-11-26 10:57 - 2023-03-21 16:09 - 000000000 ____D C:\Users\JPEmery\Documents\comptes mensuels
2024-11-26 10:57 - 2022-05-13 14:21 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\Word
2024-11-26 10:57 - 2022-05-13 14:21 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\UProof
2024-11-26 10:32 - 2023-11-12 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
2024-11-26 10:32 - 2023-03-29 20:41 - 000000000 ____D C:\Program Files (x86)\EPSON Software
2024-11-26 10:08 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-26 09:56 - 2022-03-28 18:08 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1016
2024-11-26 09:56 - 2021-12-11 17:56 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-1006
2024-11-26 09:56 - 2021-12-11 17:56 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1119209502-176514848-3354193489-500
2024-11-26 09:56 - 2021-01-22 13:18 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-11-26 09:49 - 2021-01-22 13:18 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-11-26 09:49 - 2021-01-22 13:18 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-11-23 15:45 - 2022-03-28 18:06 - 000000000 ___RD C:\Users\JPEmery\3D Objects
2024-11-22 22:49 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2024-11-15 10:00 - 2021-01-22 13:07 - 000541920 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-11-15 09:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2024-11-15 08:47 - 2018-03-07 11:37 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-11-15 08:42 - 2018-03-07 11:37 - 202035632 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-11-15 08:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2024-11-14 13:49 - 2022-03-28 18:05 - 000000000 ____D C:\Users\JPEmery\AppData\Local\Packages
2024-11-13 14:20 - 2017-08-29 13:44 - 000000000 ____D C:\Program Files\Intel
2024-11-13 14:20 - 2017-08-29 09:45 - 000000000 ____D C:\ProgramData\Package Cache
2024-11-13 14:07 - 2018-02-27 16:04 - 000000000 ____D C:\Program Files (x86)\Intel
2024-11-13 13:52 - 2018-02-27 16:04 - 000000000 ____D C:\ProgramData\Intel
2024-11-11 22:22 - 2022-04-15 13:50 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\Excel
2024-11-11 22:03 - 2018-02-28 09:33 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2024-11-11 21:55 - 2022-03-28 18:05 - 000000000 ____D C:\Users\JPEmery
2024-11-10 09:15 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-11-10 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2024-11-10 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2024-11-10 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-11-10 09:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2024-11-05 15:29 - 2023-03-24 12:49 - 000000000 ____D C:\Users\JPEmery\Documents\recherche emploi
2024-11-05 15:19 - 2022-05-13 14:21 - 000000000 ____D C:\Users\JPEmery\AppData\Roaming\Microsoft\Office
2024-11-03 07:51 - 2022-03-28 18:06 - 000000000 ____D C:\Users\JPEmery\AppData\Local\ConnectedDevicesPlatform
2024-11-02 08:30 - 2017-08-29 10:55 - 000000000 __RHD C:\Users\Public\AccountPictures
2024-11-02 08:26 - 2019-03-24 11:38 - 000000000 ____D C:\ProgramData\Packages
2024-11-02 08:24 - 2022-03-28 18:11 - 000000000 ____D C:\Users\JPEmery\AppData\Local\PlaceholderTileLogoFolder
==================== Fichiers à la racine de certains dossiers ========
2024-01-09 19:16 - 2024-01-09 19:16 - 000000089 _____ () C:\Users\JPEmery\AppData\Roaming\sversion.ini
2024-01-09 19:16 - 2024-01-09 19:16 - 000002048 _____ () C:\Users\JPEmery\AppData\Roaming\user60.rdb
==================== SigCheckExt =========================
2019-11-13 16:14 - 2022-03-28 17:26 - 001236480 _____ (CPUID) C:\WINDOWS\system32\cpuidsdk64.dll
2015-04-01 09:50 - 2015-04-01 09:50 - 001771008 _____ (Seagull Scientific, Inc.) C:\WINDOWS\system32\DriverAutomationLibrary.dll
2016-09-14 13:31 - 2016-09-14 13:31 - 000500736 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppmon.dll
2016-09-14 13:31 - 2016-09-14 13:31 - 002642944 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\enppui.dll
2016-09-14 13:31 - 2016-09-14 13:31 - 000500736 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppmon.dll
2016-09-14 13:31 - 2016-09-14 13:31 - 002642944 ____S (SEIKO EPSON CORPORATION) C:\WINDOWS\system32\ensppui.dll
2023-11-27 20:32 - 2023-11-27 20:32 - 000176128 _____ C:\WINDOWS\system32\FCStdThumbnail.dll
2015-04-01 09:49 - 2015-04-01 09:49 - 000003584 _____ (Seagull Scientific, Inc.) C:\WINDOWS\system32\ssevtmsg.dll
2015-04-01 09:50 - 2015-04-01 09:50 - 000326144 _____ (Seagull Scientific, Inc.) C:\WINDOWS\ssdal.exe
2015-04-01 09:50 - 2015-04-01 09:50 - 000063488 _____ C:\WINDOWS\ssdal_nc.exe
2024-01-09 18:54 - 2024-01-09 18:54 - 000077824 _____ C:\WINDOWS\uinst001.exe
2018-02-28 11:41 - 2014-06-02 14:10 - 000180300 _____ C:\WINDOWS\_isusr32.dll
2024-01-09 18:30 - 2003-06-06 16:03 - 000194700 _____ (AMYUNI Consultants - AMYUNI Technologies hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\acfpdf.dll
2024-01-09 18:30 - 2003-06-06 16:03 - 000126729 _____ (AMYUNI Consultants - AMYUNI Technologies hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\acfpdfu.dll
2024-01-09 18:30 - 2003-06-06 16:03 - 000102624 _____ (Amyuni Technologies hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\acfpdfui.dll
2024-01-09 18:30 - 2003-11-13 10:43 - 000237568 _____ (Amyuni Technologies Inc. - hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\acpdfcrdb.dll
2024-01-09 18:30 - 2003-11-13 10:43 - 000274432 _____ (Amyuni Technologies Inc. - hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\acpdfcrext.dll
2024-01-09 18:30 - 2003-06-06 16:03 - 000360448 _____ (Amyuni Technologies hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\cdintf.dll
2024-11-17 11:17 - 1998-07-12 22:00 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CMDLGFR.DLL
2024-01-09 19:15 - 1999-01-20 05:01 - 000210032 _____ C:\WINDOWS\SysWOW64\DBCLIENT.DLL
2024-11-17 11:17 - 1998-07-12 22:00 - 000141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCFR.DLL
2017-01-20 08:07 - 2017-01-20 08:07 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll
2024-01-09 18:30 - 2024-01-09 18:30 - 000002048 _____ C:\WINDOWS\SysWOW64\OoPdfManagerPopup.dll
2024-01-09 18:30 - 2003-11-13 10:43 - 001306624 _____ (Amyuni Technologies Inc. - hxxp://www.amyuni.com) C:\WINDOWS\SysWOW64\pdfcreactivex.dll
2024-11-17 11:17 - 2006-11-16 13:51 - 000024626 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrnfr.dll
2024-11-17 11:17 - 1998-07-12 22:00 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TABCTFR.DLL
2018-02-28 11:41 - 2010-05-28 15:30 - 000032768 _____ C:\WINDOWS\SysWOW64\_isusr2k.dll
2024-11-02 08:03 - 2024-11-02 08:03 - 001624144 _____ (Igor Pavlov) C:\Users\JPEmery\Downloads\7z2408-x64.exe
2023-03-29 20:45 - 2023-03-29 20:45 - 012872704 _____ C:\Users\JPEmery\Downloads\epson323810eu.exe
2024-11-07 09:45 - 2024-11-07 09:47 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1 (1).exe
2024-11-10 19:41 - 2024-11-10 19:42 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1 (2).exe
2024-11-02 08:42 - 2024-11-02 08:42 - 511978400 _____ (FreeCAD Team) C:\Users\JPEmery\Downloads\FreeCAD-0.21.2-WIN-x64-installer-1.exe
2024-11-29 18:52 - 2024-11-29 18:52 - 002402816 _____ (Farbar) C:\Users\JPEmery\Downloads\FRST64 (1).exe
2024-11-29 18:52 - 2024-11-29 18:52 - 002402816 _____ (Farbar) C:\Users\JPEmery\Downloads\FRST64.exe
2024-11-17 11:16 - 2024-11-17 11:16 - 003368168 _____ ( ) C:\Users\JPEmery\Downloads\Setup_FilChaudNX_v569 (1).exe
2024-10-22 21:24 - 2024-10-22 21:24 - 003368168 _____ ( ) C:\Users\JPEmery\Downloads\Setup_FilChaudNX_v569.exe
2024-11-29 18:28 - 2024-11-29 18:29 - 003539144 _____ (Nicolas Coolman) C:\Users\JPEmery\Downloads\ZHPSuite (1).exe
==================== SigCheck ============================
(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)
==================== BCD ================================
Gestionnaire de démarrage Windows
---------------------------------
identificateur {bootmgr}
device partition=\Device\HarddiskVolume1
description Windows Boot Manager
locale fr-FR
inherit {globalsettings}
default {current}
resumeobject {5ecc1599-5caa-11eb-b1ed-da571080aa94}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Chargeur de démarrage Windows
-----------------------------
identificateur {current}
device partition=C:
path \WINDOWS\system32\winload.exe
description Windows 10
locale fr-FR
inherit {bootloadersettings}
recoverysequence {85a2d1b3-5caa-11eb-b7df-d20936198cdf}
displaymessageoverride Recovery
recoveryenabled Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {5ecc1599-5caa-11eb-b1ed-da571080aa94}
nx OptIn
bootmenupolicy Standard
Chargeur de démarrage Windows
-----------------------------
identificateur {85a2d1b3-5caa-11eb-b7df-d20936198cdf}
device ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{85a2d1b4-5caa-11eb-b7df-d20936198cdf}
path \windows\system32\winload.exe
description Windows Recovery Environment
locale fr-FR
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{85a2d1b4-5caa-11eb-b7df-d20936198cdf}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes
Reprendre à partir de la mise en veille prolongée
-------------------------------------------------
identificateur {5ecc1599-5caa-11eb-b1ed-da571080aa94}
device partition=C:
path \WINDOWS\system32\winresume.exe
description Windows Resume Application
locale fr-FR
inherit {resumeloadersettings}
recoverysequence {85a2d1b3-5caa-11eb-b7df-d20936198cdf}
recoveryenabled Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No
Testeur de mémoire Windows
--------------------------
identificateur {memdiag}
device partition=\Device\HarddiskVolume1
path \boot\memtest.exe
description Diagnostics mémoire Windows
locale fr-FR
inherit {globalsettings}
badmemoryaccess Yes
Paramètres EMS
--------------
identificateur {emssettings}
bootems No
Paramètres du débogueur
-----------------------
identificateur {dbgsettings}
debugtype Local
Erreurs de mémoire RAM
----------------------
identificateur {badmemory}
Paramètres globaux
------------------
identificateur {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Paramètres du chargeur de démarrage
-----------------------------------
identificateur {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Paramètres de l'hyperviseur
-------------------
identificateur {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Paramètres du chargeur de reprise
---------------------------------
identificateur {resumeloadersettings}
inherit {globalsettings}
Options de périphérique
-----------------------
identificateur {85a2d1b4-5caa-11eb-b7df-d20936198cdf}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume3
ramdisksdipath \Recovery\WindowsRE\boot.sdi
==================== Fin de FRST.txt ========================