Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 26-04-2020 Exécuté par JOACHIM (administrateur) sur JOACHIM-PC (ASUS All Series) (28-04-2020 14:18:10) Exécuté depuis C:\Users\JOACHIM\Desktop\FRST Profils chargés: JOACHIM & postgres (Profils disponibles: JOACHIM & postgres & compte de test & DefaultAppPool) Platform: Windows 7 Professional Service Pack 1 (X64) Langue: Français (France) Internet Explorer Version 11 (Navigateur par défaut: "C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe" -- "%1") Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\MULTIPSK\MULTIPSK.exe () [Fichier non signé] C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe () [Fichier non signé] C:\Users\JOACHIM\Desktop\SDR 4\SDRSharp.exe (3235106 NOVA SCOTIA LIMITED -> Tether) C:\Program Files (x86)\Tether\TBService.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Ransomware Protection\ARPTray.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Ransomware Protection\Service\arp-application-service.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\Adobe Installer.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <2> (AVG Technologies USA, LLC -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.7.849.0\AVGBrowserCrashHandler.exe (AVG Technologies USA, LLC -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.7.849.0\AVGBrowserCrashHandler64.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (Dashlane USA, Inc. -> Dashlane, Inc.) C:\Users\JOACHIM\AppData\Roaming\Dashlane\Dashlane.exe (Dashlane USA, Inc. -> Dashlane, Inc.) C:\Users\JOACHIM\AppData\Roaming\Dashlane\DashlanePlugin.exe (Geek Software GmbH -> Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe <2> (Godefroy Damien -> Apple Inc.) C:\Program Files\EZ mic\EZMicBroadcast.exe (Godefroy Damien -> GODEFROY Damien) C:\Program Files\EZ mic\EZMicServer.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <15> (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 4520 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe (INTERNET PROJECT LLC -> Ellora Assets Corp.) C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe (INTERNET PROJECT LLC -> Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (Janos Mathe -> H.D.S. Hungary) C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe <2> (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\alg.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7> (Nenad Hrg SoftwareOK.com) [Fichier non signé] C:\Program Files (x86)\DesktopNoteOK\DesktopNoteOK.exe (Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (Paessler AG -> Paessler AG) C:\Program Files (x86)\PRTG Network Monitor\64 bit\PRTG Server.exe (Paessler AG -> Paessler AG) C:\Program Files (x86)\PRTG Network Monitor\PRTG Probe.exe (PASS PLUS) [Fichier non signé] C:\Program Files\pic-time\PCPClientNG.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe (PostgreSQL Global Development Group) [Fichier non signé] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe <7> (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (WitWarez) [Fichier non signé] C:\Users\JOACHIM\Desktop\PDW 3\PDW32b01.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [156256 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3371296 2020-04-04] (Valve -> Valve Corporation) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [HP ENVY 4520 series (NET)] => C:\Program Files\HP\HP ENVY 4520 series\Bin\ScanToPCActivationApp.exe [3770504 2017-04-06] (Hewlett Packard -> HP Inc.) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [648328 2020-04-13] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [Dashlane] => C:\Users\JOACHIM\AppData\Roaming\Dashlane\Dashlane.exe [321536 2020-04-06] (Dashlane USA, Inc. -> Dashlane, Inc.) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [DashlanePlugin] => C:\Users\JOACHIM\AppData\Roaming\Dashlane\DashlanePlugin.exe [342528 2020-04-06] (Dashlane USA, Inc. -> Dashlane, Inc.) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [DesktopNoteOK] => C:\Program Files (x86)\DesktopNoteOK\DesktopNoteOK.exe [299008 2019-11-15] (Nenad Hrg SoftwareOK.com) [Fichier non signé] HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [365160 2020-03-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Run: [AVGBrowserAutoLaunch_0128E95628DF6644CE3A4863C706A481] => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-04-02] (AVG Technologies USA, LLC -> AVG Technologies) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2623032 2019-07-05] (Adobe Inc. -> Adobe Inc.) HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\Policies\Explorer: [HideSCAVolume] 0 HKU\S-1-5-21-2539390171-2366548022-841868847-1000\...\MountPoints2: {70951b47-d792-11dd-9819-806e6f6e6963} - D:\Autorun.EXE HKLM\Software\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\80.1.3902.164\Installer\chrmstp.exe [2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.122\Installer\chrmstp.exe [2020-04-24] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PASS PLUS Uploader.lnk [2019-09-21] ShortcutTarget: PASS PLUS Uploader.lnk -> C:\Program Files\pic-time\PCPClientNG.exe (PASS PLUS) [Fichier non signé] Startup: C:\Users\JOACHIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2019-11-01] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Restriction ? <==== ATTENTION FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {12C19AF3-ADBE-4AB9-9781-9E4419CAC082} - System32\Tasks\AdobeAAMUpdater-1.0-JOACHIM-PC-JOACHIM => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {136F81A5-E7F7-4A45-A3AE-07E3947D073E} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe Task: {1715AEB8-E37C-4B45-9FC2-E9AE39BBE8AB} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [57736 2019-01-09] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {2426799D-1233-44E7-8F1B-0B9E0DF81B34} - System32\Tasks\PCEAC56WLANMGR => C:\Program Files (x86)\ASUS\PCE-AC56 WLAN Card Utilities\WlanMgr.exe [10376192 2014-07-28] (ASUS) [Fichier non signé] Task: {2C21122A-7BE3-48FD-8F06-063E82FA1196} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-04-02] (AVG Technologies USA, LLC -> AVG Technologies) Task: {3390D0E8-FF52-44E2-9DA9-C650EA2EBD09} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [2026976 2020-04-02] (AVG Technologies USA, LLC -> AVG Technologies) Task: {3A311DD4-BCFA-42C0-B94F-8E1D5608AB48} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115448 2020-04-17] (Microsoft Corporation -> Microsoft Corporation) Task: {439CBA98-51E9-442F-910A-8C47BD3CC4AC} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) Task: {4B702227-19F2-4816-9497-AB74440EB8AD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-15] (Adobe Inc. -> Adobe) Task: {50851EDB-EDCF-436B-9141-267316441280} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-01-10] (Advanced Micro Devices, Inc.) [Fichier non signé] Task: {612098D6-04DA-46A0-B4A6-E9ED203B522D} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_JOACHIM => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [5360720 2019-03-19] (Janos Mathe -> H.D.S. Hungary) Task: {6894030E-7FB6-4A62-AC89-A4E19CB0A2AA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [126152 2020-04-28] (Mozilla Corporation -> Mozilla Foundation) Task: {6CF88A22-1DBD-4BFD-B140-247DE4E1B42B} - System32\Tasks\EZ Mic => C:\Program Files\EZ mic\EZ mic.exe [112392 2017-09-30] (Godefroy Damien -> ) Task: {77E783EC-CD51-447F-80D5-18610A13FBF6} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {9969A7F2-242A-4E85-B8C0-141270AD08CC} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [3373072 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Task: {9CFBD929-7549-4F96-9A28-DB8F1CD2D525} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {A7F4656C-A963-49A8-89C5-FD48DB844B65} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1692296 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) Task: {ACC02B1D-1AD9-4CC8-A3C7-61BE07B8F2A0} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [201472 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) Task: {BB771EF9-5379-4059-9820-0590F2458072} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-02-11] (Google Inc -> Google Inc.) Task: {C4CEEBDB-E113-4BC0-A049-F4C3C7FEC78D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24609368 2020-04-02] (Microsoft Corporation -> Microsoft Corporation) Task: {C8CB3841-0063-4DB9-BAA5-5B0C69D0B47C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-02-11] (Google Inc -> Google Inc.) Task: {CA275618-AAAE-41A3-A986-1D0069F683CE} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-01-10] (Advanced Micro Devices, Inc.) [Fichier non signé] Task: {CDDED299-2B55-4710-B93B-152822B4BD43} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {D4AADF4B-C1DA-42C9-9537-D552C12EE17C} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [201472 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) Task: {E235C90F-3E7D-4D19-9915-EF131DB99A38} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe [1458232 2020-04-15] (Adobe Inc. -> Adobe) Task: {EAEDBF4B-4583-412A-AEE1-1CC080640F6A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24609368 2020-04-02] (Microsoft Corporation -> Microsoft Corporation) Task: {EC10FA9D-EC0A-4329-A551-29370B5CD1D4} - System32\Tasks\Avira_Security_Update => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [228368 2020-04-01] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) Task: {F54479DB-B133-4992-BCEF-11F78F9CF97D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115448 2020-04-17] (Microsoft Corporation -> Microsoft Corporation) Task: {FF916483-CC10-4DBA-85F7-BD28A9689176} - System32\Tasks\AviraSystemSpeedupUpdate => C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [27848432 2020-04-28] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG ) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.) Hosts: 127.0.0.1 clientlocal.pic-time.com Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{59304B18-46CE-4C96-9599-62719BE897B7}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{5AC7719D-327D-4D06-8FDC-F436BB38ADF5}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{D0773FC3-ADE4-450B-A1A0-1090929CFB5E}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{EB3F058C-FE6B-4FA2-813B-82C2EEA62520}: [DhcpNameServer] 192.168.0.254 HKLM\System\...\Parameters\PersistentRoutes: [0.0.0.0,0.0.0.0,10.0.0.2,1] Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-11] (Microsoft Corporation -> Microsoft Corporation) BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-04-21] (McAfee, LLC -> McAfee, LLC) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2020-04-17] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-04-21] (McAfee, LLC -> McAfee, LLC) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2020-04-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-15] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-15] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: j642wwau.default FF ProfilePath: C:\Users\JOACHIM\AppData\Roaming\Mozilla\Firefox\Profiles\j642wwau.default [2019-06-27] FF ProfilePath: C:\Users\JOACHIM\AppData\Roaming\Mozilla\Firefox\Profiles\lz3jrfk1.default-release [2020-04-28] FF NetworkProxy: Mozilla\Firefox\Profiles\lz3jrfk1.default-release -> backup.ftp", "proximus.sdis59.fr" FF Notifications: Mozilla\Firefox\Profiles\lz3jrfk1.default-release -> hxxps://www.facebook.com FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-04-21] [UpdateUrl:hxxps://www.siteadvisor.com/waffinstall/update.json] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_363.dll [2020-04-15] (Adobe Inc. -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-07-05] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_363.dll [2020-04-15] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Pas de fichier] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=3 -> C:\Program Files (x86)\AVG\Browser\Update\1.7.849.0\npAvgBrowserUpdate3.dll [2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) FF Plugin-x32: @update.avgbrowser.com/AVG Browser;version=9 -> C:\Program Files (x86)\AVG\Browser\Update\1.7.849.0\npAvgBrowserUpdate3.dll [2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-07-05] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default [2020-04-28] CHR Notifications: Default -> hxxps://badoo.com; hxxps://calendar.google.com; hxxps://lavoixdunord.os.tc; hxxps://mail.google.com; hxxps://www.20minutes.fr; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.jeanmarcmorandini.com; hxxps://www.playresponding.com; hxxps://www.reddit.com; hxxps://www.tendanceouest.com; hxxps://www.youtube.com CHR Extension: (ProxFlow) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\aakchaleigkohafkfjfjbblobjifikek [2020-04-01] CHR Extension: (Slides) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-11] CHR Extension: (Docs) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-11] CHR Extension: (Google Drive) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-11] CHR Extension: (YouTube) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-11] CHR Extension: (Avira Password Manager) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2020-04-28] CHR Extension: (Avira Safe Shopping) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2020-04-28] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-07] CHR Extension: (Dashlane - Gestionnaire de mots de passe) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdjamakpfbbddfjaooikfcpapjohcfmg [2020-04-07] CHR Extension: (Sheets) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-11] CHR Extension: (McAfee® WebAdvisor) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2020-04-17] CHR Extension: (Google Docs hors connexion) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-04-20] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-04-15] CHR Extension: (Social Fixer for Facebook) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-12] CHR Extension: (iGraal) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\kmhkepipobnjllejbafajoemahjejdcm [2020-04-17] CHR Extension: (Video DownloadHelper) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2020-04-01] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Buffer) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh [2020-03-22] CHR Extension: (TabStats) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofefchjafojmiaffflndhpcnblbedbci [2019-03-08] CHR Extension: (Gmail) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-17] CHR Extension: (Chrome Media Router) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-28] CHR Extension: (CrossShopper comparateur de prix collaboratif) - C:\Users\JOACHIM\AppData\Local\Google\Chrome\User Data\Default\Extensions\pmadodlofglhgdbehodningfkgloccgn [2019-12-03] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [4380176 2018-12-04] (Acronis International GmbH -> Acronis International GmbH) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-07-05] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3374160 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3103824 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [499080 2019-01-10] (Advanced Micro Devices, Inc. -> AMD) R2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [190464 2019-01-09] () [Fichier non signé] R2 ARPApplicationService; C:\Program Files (x86)\Acronis\Ransomware Protection\Service\arp-cloudusage.exe [25104 2018-12-14] (Acronis International GmbH -> ) S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [201472 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [345960 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [5552064 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [201472 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies) S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\80.1.3902.164\elevation_service.exe [1124112 2020-04-02] (AVG Technologies USA, LLC -> AVG Technologies) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [242448 2020-04-01] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [161552 2020-04-20] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11102064 2020-04-02] (Microsoft Corporation -> Microsoft Corporation) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4506728 2020-03-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81392 2019-04-12] (INTERNET PROJECT LLC -> Freemake) R2 FreemakeVideoCapture; C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [15856 2019-04-12] (INTERNET PROJECT LLC -> Ellora Assets Corp.) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2018-05-22] (FUTUREMARK INC -> Futuremark) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [Fichier non signé] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-04-27] (Malwarebytes Inc -> Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [916712 2020-04-21] (McAfee, LLC -> McAfee, LLC) R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [487048 2019-10-21] (Geek Software GmbH -> Geek Software GmbH) R2 PRTGCoreService; C:\Program Files (x86)\PRTG Network Monitor\64 bit\PRTG Server.exe [10819160 2019-02-08] (Paessler AG -> Paessler AG) R2 PRTGProbeService; C:\Program Files (x86)\PRTG Network Monitor\PRTG Probe.exe [13473880 2019-02-08] (Paessler AG -> Paessler AG) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [447080 2019-07-24] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [943240 2019-07-24] (Razer USA Ltd. -> Razer Inc.) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [471696 2019-09-12] (Rockstar Games, Inc. -> Rockstar Games) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12758528 2019-12-16] (TeamViewer GmbH -> TeamViewer Germany GmbH) R2 Tether; C:\Program Files (x86)\Tether\TBService.exe [125376 2012-03-28] (3235106 NOVA SCOTIA LIMITED -> Tether) S4 TlntSvr; C:\Windows\System32\tlntsvr.exe [81920 2009-07-14] (Microsoft Windows -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 postgresql-x64-9.5; "C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresql-x64-9.5" -D "C:\Program Files\PostgreSQL\9.5\data" -w ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [223624 2019-01-10] (Advanced Micro Devices, Inc. -> ) R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [52783496 2019-01-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [581000 2019-01-10] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (APOWERSOFT LIMITED -> Wondershare) R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104840 2018-09-26] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2020-03-19] (Tages SA -> ) S0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [37960 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [206672 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [234840 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [179032 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [61272 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [43568 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [175984 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [110064 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [85664 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [852392 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [459992 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [235768 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [317864 2020-04-28] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) R3 avssamp; C:\Windows\System32\DRIVERS\avssamp.sys [45320 2017-09-27] (Godefroy Damien -> ) R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-03-07] (Bluestack Systems, Inc -> Bluestack System Inc. ) S3 cpuz148; C:\Windows\temp\cpuz148\cpuz148_x64.sys [35360 2019-02-12] (CPUID S.A.R.L.U. -> CPUID) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2020-03-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2020-03-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2020-04-27] (Malwarebytes Corporation -> Malwarebytes) R2 file_protector; C:\Windows\System32\DRIVERS\file_protector.sys [667144 2019-08-01] (Acronis International GmbH -> Acronis International GmbH) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2020-03-19] (Tages SA -> ) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-04-27] (Malwarebytes Inc -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [195432 2020-04-28] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2020-04-28] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-04-28] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [112752 2020-04-28] (Malwarebytes Inc -> Malwarebytes) R2 npf; C:\Windows\System32\drivers\npf.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.) R3 PcaSp60; C:\Windows\SysWOW64\DRIVERS\PcaSp60.sys [38912 2010-09-07] (PRINTING COMMUNICATIONS ASSOCIATES, INC -> Printing Communications Assoc., Inc. (PCAUSA)) R3 phantomtap; C:\Windows\System32\DRIVERS\phantomtap.sys [35664 2020-03-18] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) R3 qrkis; C:\Windows\System32\DRIVERS\qrkis.sys [52640 2012-03-21] (3235106 NOVA SCOTIA LIMITED -> Tether) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [52248 2016-10-30] (Razer USA Ltd. -> Razer Inc) R3 rzmpos; C:\Windows\System32\DRIVERS\rzmpos.sys [48152 2016-10-30] (Razer USA Ltd. -> Razer Inc) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [31232 2016-06-02] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R3 VBAudioVACMME; C:\Windows\System32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) R3 WinUSB; C:\Windows\System32\DRIVERS\WinUSB.sys [41984 2010-11-21] (SZ DJI Technology Co., Ltd. -> Microsoft Corporation) R3 wovad_micarray; C:\Windows\System32\drivers\womic.sys [35696 2017-11-25] (Beijing Wolicheng Technology Co., Ltd. -> Windows (R) Win 7 DDK provider) R4 avkmgr; system32\DRIVERS\avkmgr.sys [X] R4 avusbflt; System32\Drivers\avusbflt.sys [X] S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-04-28 14:15 - 2020-04-28 14:18 - 000000000 ____D C:\Users\JOACHIM\Desktop\FRST 2020-04-28 02:54 - 2020-04-28 03:10 - 000000000 ____D C:\Users\JOACHIM\AppData\LocalLow\IGDump 2020-04-28 01:10 - 2020-04-28 01:10 - 000003706 _____ C:\Windows\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) 2020-04-28 01:10 - 2020-04-28 01:10 - 000003124 _____ C:\Windows\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon) 2020-04-28 01:10 - 2020-04-28 01:10 - 000002376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG Secure Browser.lnk 2020-04-28 01:10 - 2020-04-28 01:10 - 000002333 _____ C:\Users\Public\Desktop\AVG Secure Browser.lnk 2020-04-28 01:10 - 2020-04-28 01:10 - 000002333 _____ C:\ProgramData\Desktop\AVG Secure Browser.lnk 2020-04-28 01:08 - 2020-04-28 01:08 - 000003502 _____ C:\Windows\system32\Tasks\AVGUpdateTaskMachineUA 2020-04-28 01:08 - 2020-04-28 01:08 - 000003374 _____ C:\Windows\system32\Tasks\AVGUpdateTaskMachineCore 2020-04-28 01:08 - 2020-04-28 01:08 - 000000000 ____D C:\Program Files (x86)\AVG 2020-04-28 01:05 - 2020-04-28 01:10 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\Avg 2020-04-28 01:05 - 2020-04-28 01:05 - 000001986 _____ C:\Users\Public\Desktop\AVG AntiVirus Gratuit.lnk 2020-04-28 01:05 - 2020-04-28 01:05 - 000001986 _____ C:\ProgramData\Desktop\AVG AntiVirus Gratuit.lnk 2020-04-28 01:05 - 2020-04-28 01:05 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\AVG 2020-04-28 01:05 - 2020-04-28 01:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2020-04-28 01:03 - 2020-04-28 01:03 - 000852392 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000459992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000337592 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe 2020-04-28 01:03 - 2020-04-28 01:03 - 000317864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000235768 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000234840 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000206672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000179032 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000175984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000110064 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000085664 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000061272 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000043568 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000037960 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArDisk.sys 2020-04-28 01:03 - 2020-04-28 01:03 - 000003904 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update 2020-04-28 01:03 - 2020-04-28 01:03 - 000000000 ____D C:\Windows\system32\Tasks\AVG 2020-04-28 01:03 - 2020-04-28 01:03 - 000000000 ____D C:\Program Files\Common Files\AVG 2020-04-28 01:02 - 2020-04-28 01:02 - 000000000 ____D C:\Program Files\AVG 2020-04-28 01:01 - 2020-04-28 01:03 - 000000000 ____D C:\ProgramData\AVG 2020-04-28 01:01 - 2020-04-28 01:01 - 000270160 _____ (AVG Technologies CZ, s.r.o.) C:\Users\JOACHIM\Downloads\avg_antivirus_free_setup.exe 2020-04-28 01:00 - 2020-04-28 01:00 - 000000000 ____H C:\ProgramData\rebootpending.txt 2020-04-28 00:52 - 2020-04-28 00:52 - 000000000 ____D C:\Users\Public\Security Sessions 2020-04-28 00:48 - 2020-04-28 00:48 - 000003456 _____ C:\Windows\system32\Tasks\Avira_Security_Update 2020-04-28 00:47 - 2020-04-28 00:47 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avusbflt_01011.Wdf 2020-04-28 00:39 - 2020-04-28 01:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2020-04-28 00:39 - 2020-04-28 01:00 - 000000000 ____D C:\ProgramData\Avira 2020-04-28 00:39 - 2020-04-28 00:52 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\Avira 2020-04-28 00:39 - 2020-04-28 00:48 - 000000000 ____D C:\Program Files (x86)\Avira 2020-04-28 00:39 - 2020-04-28 00:40 - 000000000 ____D C:\Users\Public\Speedup Sessions 2020-04-28 00:39 - 2020-04-28 00:39 - 000003666 _____ C:\Windows\system32\Tasks\AviraSystemSpeedupUpdate 2020-04-28 00:39 - 2020-04-28 00:39 - 000001194 _____ C:\Users\Public\Desktop\Avira.lnk 2020-04-28 00:39 - 2020-04-28 00:39 - 000001194 _____ C:\ProgramData\Desktop\Avira.lnk 2020-04-28 00:38 - 2020-04-28 00:42 - 000076419 _____ C:\Users\JOACHIM\Downloads\Addition.txt 2020-04-28 00:37 - 2020-04-28 14:18 - 000000000 ____D C:\FRST 2020-04-28 00:37 - 2020-04-28 00:42 - 000051392 _____ C:\Users\JOACHIM\Downloads\FRST.txt 2020-04-28 00:37 - 2020-04-28 00:37 - 002283008 _____ (Farbar) C:\Users\JOACHIM\Downloads\FRST64.exe 2020-04-28 00:28 - 2020-04-28 00:28 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2020-04-28 00:14 - 2020-04-28 00:14 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2020-04-28 00:14 - 2020-04-28 00:14 - 000195432 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2020-04-28 00:14 - 2020-04-28 00:14 - 000112752 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2020-04-28 00:14 - 2020-04-28 00:14 - 000073584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2020-04-28 00:12 - 2020-04-28 00:12 - 008196784 _____ (Malwarebytes) C:\Users\JOACHIM\Downloads\adwcleaner_8.0.4.exe 2020-04-28 00:11 - 2020-04-28 00:11 - 000406954 _____ C:\Users\JOACHIM\Desktop\scan.txt 2020-04-28 00:09 - 2020-04-28 00:09 - 000412083 _____ C:\Users\JOACHIM\Desktop\ZHPDiag.txt 2020-04-28 00:06 - 2020-04-28 00:09 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\ZHP 2020-04-28 00:06 - 2020-04-28 00:06 - 003276160 _____ (Nicolas Coolman) C:\Users\JOACHIM\Downloads\ZHPDiag3.exe 2020-04-28 00:06 - 2020-04-28 00:06 - 000000824 _____ C:\Users\JOACHIM\Desktop\ZHPDiag.lnk 2020-04-28 00:06 - 2020-04-28 00:06 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\ZHP 2020-04-27 23:40 - 2020-04-28 00:01 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\WSCC4 2020-04-27 23:40 - 2020-04-27 23:40 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2020-04-27 23:40 - 2020-04-27 23:40 - 000001960 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-04-27 23:39 - 2020-04-27 23:40 - 000000000 ____D C:\Program Files (x86)\WSCC4 2020-04-27 23:39 - 2020-04-27 23:39 - 003815096 _____ (KirySoft ) C:\Users\JOACHIM\Downloads\wscc_4-0-5-1_en_309418_32.exe 2020-04-27 23:39 - 2020-04-27 23:39 - 000001030 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSCC.lnk 2020-04-27 23:39 - 2020-04-27 23:39 - 000000982 _____ C:\Users\JOACHIM\Desktop\WSCC.lnk 2020-04-25 02:01 - 2020-04-25 02:01 - 000000000 ____D C:\Program Files (x86)\WizardWorks 2020-04-25 01:56 - 2020-04-25 02:39 - 000000000 ____D C:\Program Files (x86)\EM4 2020-04-25 01:43 - 2020-04-25 01:44 - 1427554548 _____ C:\Users\JOACHIM\Downloads\Emergency.4.911.First.Responders.rar 2020-04-25 01:23 - 2020-04-25 01:23 - 539866273 _____ C:\Users\JOACHIM\Downloads\BSPP-Mod-2019-v1.rar 2020-04-24 23:49 - 2020-04-24 23:49 - 000459094 _____ C:\Users\JOACHIM\Downloads\comparison-E4000_-R820T-tuner.pdf 2020-04-24 03:36 - 2020-04-24 03:36 - 000064193 _____ C:\Users\JOACHIM\Downloads\product7F988B.pdf 2020-04-24 03:25 - 2020-04-24 03:25 - 000061911 _____ C:\Users\JOACHIM\Downloads\productB9C2BA.pdf 2020-04-23 23:10 - 2020-04-23 23:10 - 000000981 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge 2020.lnk 2020-04-21 18:56 - 2020-04-21 18:56 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gamorsec 2020-04-21 18:56 - 2020-04-21 18:56 - 000000000 ____D C:\Program Files (x86)\gamorsec 2020-04-21 18:55 - 2020-04-21 18:55 - 016924040 _____ C:\Users\JOACHIM\Downloads\gamorsec.exe 2020-04-21 02:37 - 2020-04-21 02:37 - 000000000 ____D C:\Users\JOACHIM\AppData\LocalLow\Empyrean 2020-04-21 02:37 - 2020-04-21 02:37 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\PajdaPanel 2020-04-20 23:19 - 2020-04-20 23:19 - 000000222 _____ C:\Users\JOACHIM\Desktop\House Flipper.url 2020-04-20 22:49 - 2020-04-20 22:50 - 1757103050 _____ C:\Users\JOACHIM\Downloads\House Flipper - PC.rar 2020-04-20 02:53 - 2020-04-28 00:14 - 000000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2020-04-20 02:45 - 2020-04-20 02:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\ClockworkMod 2020-04-20 02:44 - 2020-04-20 02:45 - 000000000 ____D C:\Program Files (x86)\ClockworkMod 2020-04-20 02:44 - 2020-04-20 02:44 - 000000000 ____D C:\Users\JOACHIM\Desktop\tether 2020-04-20 02:44 - 2020-04-20 02:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClockworkMod 2020-04-20 02:41 - 2020-04-20 02:42 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\Tether 2020-04-20 02:41 - 2020-04-20 02:41 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_WinUSB_01009.Wdf 2020-04-20 02:40 - 2020-04-20 02:42 - 000000979 _____ C:\Users\Public\Desktop\Tether.lnk 2020-04-20 02:40 - 2020-04-20 02:42 - 000000979 _____ C:\ProgramData\Desktop\Tether.lnk 2020-04-20 02:40 - 2020-04-20 02:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tether 2020-04-20 02:40 - 2020-04-20 02:42 - 000000000 ____D C:\Program Files (x86)\Tether 2020-04-20 02:40 - 2012-03-21 19:48 - 000052640 _____ (Tether) C:\Windows\system32\Drivers\qrkis.sys 2020-04-20 02:40 - 2010-11-17 11:29 - 001721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2020-04-20 02:39 - 2020-04-20 02:39 - 012406013 _____ C:\Users\JOACHIM\Downloads\Tether.zip 2020-04-20 02:24 - 2020-04-20 02:27 - 376302295 _____ C:\Users\JOACHIM\Desktop\VIDEO COVID FINALE.mp4 2020-04-20 02:22 - 2020-04-20 02:22 - 000003414 _____ C:\Users\JOACHIM\Desktop\VIDEO COVID FINALE.xmp 2020-04-20 02:21 - 2020-04-20 02:22 - 1015881228 _____ C:\Users\JOACHIM\Desktop\VIDEO COVID FINALE.mpeg 2020-04-19 21:50 - 2020-04-19 21:51 - 068250642 _____ C:\Users\JOACHIM\Desktop\VIDEO ENEDIS.mp4 2020-04-19 21:30 - 2020-04-19 21:30 - 000003414 _____ C:\Users\JOACHIM\Desktop\VIDEO ENEDIS.xmp 2020-04-19 21:29 - 2020-04-19 21:30 - 338720694 _____ C:\Users\JOACHIM\Desktop\VIDEO ENEDIS.mpeg 2020-04-19 15:04 - 2020-04-19 15:15 - 793214232 _____ C:\Users\JOACHIM\Downloads\COVID 19 (1).mp4 2020-04-17 02:06 - 2020-04-24 15:20 - 000001072 _____ C:\Users\JOACHIM\Desktop\Adobe Lightroom Classic.lnk 2020-04-17 02:06 - 2020-04-17 02:06 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic.lnk 2020-04-17 01:57 - 2020-04-17 01:57 - 000001019 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2020.lnk 2020-04-15 23:42 - 2020-04-15 23:42 - 041991191 _____ C:\Users\JOACHIM\Downloads\wetransfer-129fb8.zip 2020-04-14 17:23 - 2020-04-19 16:26 - 000000000 ____D C:\Users\JOACHIM\Desktop\VIDEO COVID 2020-04-14 15:56 - 2020-04-14 15:56 - 000000000 ____D C:\Users\JOACHIM\Downloads\__MACOSX 2020-04-14 15:56 - 2020-04-12 19:52 - 793376337 _____ C:\Users\JOACHIM\Downloads\COVID 19.mp4 2020-04-14 15:46 - 2020-04-14 15:47 - 1693354470 _____ C:\Users\JOACHIM\Downloads\Adobe Premiere Pro CC 2020 By KOS.rar 2020-04-12 21:35 - 2020-04-12 21:45 - 792289684 _____ C:\Users\JOACHIM\Downloads\COVID 19.mp4.zip 2020-04-11 17:56 - 2020-04-11 17:56 - 000022900 _____ C:\Users\JOACHIM\Downloads\deep.zip 2020-04-10 01:53 - 2020-04-24 15:19 - 000000000 ____D C:\Users\JOACHIM\Desktop\ECUSSON PROTEC COVID 2020-04-10 01:52 - 2020-04-10 01:52 - 000070824 _____ C:\Users\JOACHIM\Desktop\D625C78B-35CF-468D-AC0D-49FEC56B8156.jpeg 2020-04-10 00:49 - 2020-04-10 00:50 - 010996835 _____ C:\Users\JOACHIM\Downloads\IMG_3786.MOV 2020-04-10 00:49 - 2020-04-10 00:50 - 010572773 _____ C:\Users\JOACHIM\Downloads\IMG_3784.MOV 2020-04-10 00:49 - 2020-04-10 00:50 - 006602463 _____ C:\Users\JOACHIM\Downloads\IMG_3767.MOV 2020-04-09 21:48 - 2020-04-10 00:42 - 000000000 ____D C:\Users\JOACHIM\Documents\Notruf 2 Templates 2020-04-09 21:48 - 2020-04-09 21:48 - 000000000 ____D C:\Users\JOACHIM\Documents\Notruf 2 Skins 2020-04-09 21:48 - 2020-04-09 21:48 - 000000000 ____D C:\Users\JOACHIM\Documents\Notruf 2 Showroom 2020-04-09 21:40 - 2020-04-09 21:40 - 000000223 _____ C:\Users\JOACHIM\Desktop\Notruf 112 - Die Feuerwehr Simulation 2 Showroom.url 2020-04-09 21:33 - 2020-04-09 21:40 - 011184952 _____ C:\Users\JOACHIM\Documents\DLK_tex.dds 2020-04-09 21:31 - 2020-04-09 21:32 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\paint.net 2020-04-09 21:31 - 2020-04-09 21:31 - 000001260 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\paint.net.lnk 2020-04-09 21:31 - 2020-04-09 21:31 - 000000000 ____D C:\Program Files\paint.net 2020-04-09 21:30 - 2020-04-09 21:31 - 010338862 _____ C:\Users\JOACHIM\Downloads\paint-net_4-2-10_fr_14651.zip 2020-04-08 17:28 - 2020-04-08 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2020-04-08 17:28 - 2020-04-08 17:28 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2020-04-08 17:27 - 2020-04-08 17:27 - 000151552 _____ C:\Windows\SysWOW64\nvRegDev.dll 2020-04-08 17:24 - 2020-04-08 17:26 - 017098975 _____ (InstallShield Software Corporation) C:\Users\JOACHIM\Downloads\photoshop_plugins_8.51.0301.0345.exe 2020-04-08 17:18 - 2020-04-10 00:42 - 000000000 ____D C:\Users\JOACHIM\Documents\SKIN NOTRUF2 2020-04-07 16:38 - 2020-04-07 16:44 - 000000000 ____D C:\FeuDeForet_v500 2020-04-07 16:38 - 2020-04-07 16:38 - 000001987 _____ C:\Users\JOACHIM\Desktop\Désinstaller FeuDeForet_v500.lnk 2020-04-07 16:38 - 2020-04-07 16:38 - 000001523 _____ C:\Users\JOACHIM\Desktop\FeuDeForet.lnk 2020-04-07 16:37 - 2020-04-07 16:38 - 000000000 ___HD C:\Program Files\Zero G Registry 2020-04-07 16:37 - 2020-04-07 16:37 - 000000000 ___HD C:\Users\JOACHIM\InstallAnywhere 2020-04-07 16:17 - 2020-04-07 16:17 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2020-04-07 16:16 - 2020-04-07 16:17 - 005955896 _____ C:\Users\JOACHIM\Downloads\NVIDIA_Texture_Tools_Exporter_for_Adobe_Photoshop_2020.1.1.exe 2020-04-07 16:06 - 2020-04-07 16:06 - 002940296 _____ C:\Users\JOACHIM\Downloads\DDS Converter 1.4.zip 2020-04-07 15:28 - 2020-04-07 15:28 - 000000000 ____D C:\Users\JOACHIM\AppData\LocalLow\Aerosoft GmbH 2020-04-07 15:14 - 2020-04-07 15:40 - 481887109 _____ (Depart2feux) C:\Users\JOACHIM\Downloads\SetupFF5W64.exe 2020-04-05 21:40 - 2020-04-28 00:28 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-04-05 17:28 - 2020-04-05 17:28 - 003276278 _____ C:\Users\JOACHIM\Downloads\textures.rar 2020-04-05 15:47 - 2020-04-05 17:44 - 000000000 ____D C:\Users\JOACHIM\Desktop\SELECTION FINALE 2020-04-03 21:50 - 2020-04-03 21:50 - 000342120 _____ C:\Users\JOACHIM\Desktop\20NSY298B MED Vos droits tableau journalistes Covid.pdf 2020-04-02 17:59 - 2020-04-02 17:59 - 001046046 _____ C:\Users\JOACHIM\Downloads\screenshot_2020-04-02-15-43-37.jpeg 2020-04-02 14:40 - 2020-04-02 14:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SDR-Radio.com (V3) Tools 2020-04-02 14:40 - 2020-04-02 14:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SDR-Radio.com (V3) 2020-04-02 14:29 - 2020-04-14 22:29 - 000000000 ____D C:\Users\JOACHIM\Desktop\SELECTION PORTRAIT 2020-04-02 00:36 - 2020-04-02 00:36 - 000000000 ____D C:\Users\JOACHIM\Desktop\SDK EM5 2020-04-01 23:15 - 2020-04-01 23:28 - 415404495 _____ C:\Users\JOACHIM\Downloads\sdk.zip 2020-04-01 23:08 - 2020-04-01 23:12 - 135757806 _____ C:\Users\JOACHIM\Downloads\Non confirmé 476477.crdownload 2020-03-31 14:53 - 2020-03-31 14:53 - 001623320 _____ C:\Users\JOACHIM\Downloads\iloveimg-converted.zip 2020-03-31 14:51 - 2020-03-31 14:51 - 002201892 _____ C:\Users\JOACHIM\Downloads\screenshot_2020-03-30-23-46-51.jpeg 2020-03-31 03:02 - 2020-03-31 03:02 - 002333285 _____ C:\Users\JOACHIM\Downloads\Instructions.rar 2020-03-31 03:02 - 2017-11-02 01:50 - 000417642 _____ C:\Users\JOACHIM\Downloads\INSTALLATION INSTRUCTIONS.pdf 2020-03-31 03:02 - 2017-04-05 19:19 - 000507633 _____ C:\Users\JOACHIM\Downloads\Installationsanleitung.pdf 2020-03-31 03:02 - 2016-08-25 07:23 - 000330062 _____ C:\Users\JOACHIM\Downloads\Minimod 2.6 Befehlsübersicht für Modder.pdf 2020-03-31 03:02 - 2016-08-14 11:01 - 001223813 _____ C:\Users\JOACHIM\Downloads\Übersicht Minimod v 2.6.pdf 2020-03-31 02:56 - 2020-03-31 03:00 - 154132222 _____ C:\Users\JOACHIM\Downloads\killerconstis_mini_mod_4_5.zip ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-04-28 05:12 - 2009-07-14 06:45 - 000031904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-04-28 05:12 - 2009-07-14 06:45 - 000031904 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-04-28 01:10 - 2011-04-12 11:16 - 000728578 _____ C:\Windows\system32\perfh00C.dat 2020-04-28 01:10 - 2011-04-12 11:16 - 000137866 _____ C:\Windows\system32\perfc00C.dat 2020-04-28 01:10 - 2009-07-14 07:13 - 001606198 _____ C:\Windows\system32\PerfStringBackup.INI 2020-04-28 00:52 - 2019-02-11 20:16 - 000120320 _____ C:\Users\JOACHIM\AppData\Local\GDIPFONTCACHEV1.DAT 2020-04-28 00:40 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2020-04-28 00:39 - 2019-02-11 20:30 - 000000000 ____D C:\ProgramData\Package Cache 2020-04-28 00:28 - 2019-06-27 14:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-04-28 00:28 - 2019-02-13 22:37 - 000000000 ____D C:\Users\JOACHIM\AppData\LocalLow\Mozilla 2020-04-28 00:24 - 2020-02-29 00:12 - 000000000 ____D C:\Users\JOACHIM\Desktop\SDR 4 2020-04-28 00:24 - 2019-02-11 21:06 - 000000000 ____D C:\MULTIPSK 2020-04-28 00:14 - 2019-02-12 19:45 - 000000000 ___RD C:\Users\JOACHIM\Creative Cloud Files 2020-04-28 00:14 - 2019-02-12 19:15 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\Adobe 2020-04-28 00:14 - 2019-02-11 21:20 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-04-28 00:14 - 2019-02-11 20:56 - 000000000 ____D C:\Program Files (x86)\Steam 2020-04-28 00:14 - 2019-02-11 20:34 - 000003110 _____ C:\Windows\system32\Tasks\AMDLinkUpdate 2020-04-28 00:13 - 2019-02-11 21:16 - 000000000 ____D C:\Program Files (x86)\PRTG Network Monitor 2020-04-28 00:13 - 2019-02-11 20:35 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2020-04-28 00:13 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-04-27 23:40 - 2019-03-05 22:50 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2020-04-27 23:40 - 2019-03-05 22:50 - 000001948 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2020-04-27 23:40 - 2019-03-05 22:50 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2020-04-27 21:09 - 2019-04-29 20:05 - 000000000 ____D C:\Users\JOACHIM\Desktop\instagram 2020-04-27 21:08 - 2019-10-03 19:29 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-04-27 21:08 - 2019-10-03 19:29 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData 2020-04-27 20:48 - 2019-03-05 23:06 - 000000000 ____D C:\Users\postgres 2020-04-25 02:38 - 2019-02-11 20:14 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2020-04-24 03:05 - 2019-02-11 20:16 - 000002222 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-24 03:05 - 2019-02-11 20:16 - 000002181 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-04-24 03:05 - 2019-02-11 20:16 - 000002181 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-04-23 23:10 - 2019-02-12 19:30 - 000000000 ____D C:\Program Files\Common Files\Adobe 2020-04-21 23:12 - 2019-02-12 19:28 - 000000000 ____D C:\Program Files\Adobe 2020-04-20 23:19 - 2019-02-11 21:03 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-04-20 02:37 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2020-04-18 18:20 - 2019-09-21 00:25 - 000000000 ____D C:\Users\JOACHIM\Desktop\AUTOENTREPRISE PHOTOGRAPHE 2020-04-18 17:51 - 2019-04-22 02:08 - 000000000 ____D C:\Users\compte de test\AppData\Roaming\Adobe 2020-04-18 13:28 - 2019-03-05 23:22 - 000000000 ____D C:\Users\JOACHIM\AppData\Local\CrashDumps 2020-04-17 16:39 - 2019-05-17 14:45 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-17 16:39 - 2019-04-08 18:53 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-04-17 01:57 - 2019-02-12 19:26 - 000000000 ____D C:\ProgramData\Adobe 2020-04-16 14:32 - 2019-05-17 14:47 - 000003182 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2539390171-2366548022-841868847-1000 2020-04-16 14:32 - 2019-05-17 14:47 - 000002202 _____ C:\Users\JOACHIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2020-04-16 14:32 - 2019-05-17 14:47 - 000000000 ___RD C:\Users\JOACHIM\OneDrive 2020-04-15 13:25 - 2019-09-01 22:52 - 000001925 _____ C:\Users\JOACHIM\Desktop\Dashlane.lnk 2020-04-15 13:25 - 2019-09-01 22:50 - 000000000 ____D C:\Users\JOACHIM\AppData\Roaming\Dashlane 2020-04-15 06:27 - 2019-08-01 22:04 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe 2020-04-15 06:27 - 2019-08-01 22:04 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2020-04-15 06:27 - 2019-08-01 22:04 - 000004600 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-04-15 06:27 - 2019-08-01 22:04 - 000004454 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater 2020-04-15 06:27 - 2019-08-01 22:04 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2020-04-15 06:27 - 2019-08-01 22:04 - 000000000 ____D C:\Windows\system32\Macromed 2020-04-14 18:15 - 2019-02-12 19:45 - 000000000 ____D C:\Users\JOACHIM\Documents\Adobe 2020-04-14 15:25 - 2019-02-18 21:57 - 000000011 _____ C:\ProgramData\Multipsk.TXT 2020-04-10 00:44 - 2019-02-12 19:45 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe 2020-04-07 16:40 - 2009-01-01 01:29 - 000000000 ____D C:\Users\JOACHIM 2020-04-02 14:44 - 2020-03-27 01:45 - 000001054 _____ C:\Users\JOACHIM\Desktop\SDRConsole (V3).lnk 2020-04-02 14:40 - 2019-04-29 21:14 - 000000901 _____ C:\Users\Public\Desktop\SDRConsole (V3).lnk 2020-04-02 14:40 - 2019-04-29 21:14 - 000000901 _____ C:\ProgramData\Desktop\SDRConsole (V3).lnk 2020-04-02 01:49 - 2010-11-21 05:27 - 000744808 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2020-03-30 03:17 - 2019-03-02 21:36 - 000000000 ____D C:\Users\JOACHIM\Desktop\SDR ==================== Fichiers à la racine de certains dossiers ======== 2019-02-12 19:26 - 2019-02-12 19:26 - 000000410 _____ () C:\Users\JOACHIM\AppData\Local\oobelibMkey.log 2019-05-31 19:23 - 2019-05-31 19:23 - 000000760 _____ () C:\Users\JOACHIM\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) LastRegBack: 2020-04-27 02:45 ==================== Fin de FRST.txt ========================