Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 04-06-2020 Exécuté par cbaud (administrateur) sur DESKTOP-V2QDRPL (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (05-06-2020 11:08:27) Exécuté depuis D:\Téléchargements Profils chargés: cbaud Platform: Windows 10 Pro Version 1909 18363.752 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal Tutoriel pour Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files (x86)\Global Imaging OnLine\GXD5 Spooler\srvany.exe () [Fichier non signé] C:\Program Files (x86)\NETGEAR\WG111v3\WG111v3.exe (ACROS d.o.o. -> Acros Security) C:\Program Files (x86)\0patch\Agent\0patchServicex64.exe (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_1.0.1.22_x86__enpm4xejd91yc\AdobeNotificationClient.exe (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Disc Soft Ltd -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe (Disc Soft Ltd -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Pro\DTShellHlp.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\98.4.158\QtWebEngineProcess.exe <3> (Eric Lawrence -> Bayden Systems) C:\Program Files (x86)\SlickRun\sr.exe (Famatech Corp. -> Famatech Corp.) C:\Users\cbaud\AppData\Local\Temp\Advanced IP Scanner 2\advanced_ip_scanner.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\Cloudscan\MHCloudSvc.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\MalwareHunter.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\MemfilesService.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\mhtray.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\PCBooster.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\QuickSearch.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glarysoft\Malware Hunter\x64\x64ProcessAssistSvc.exe (Global Imaging On Line) [Fichier non signé] C:\Program Files (x86)\Global Imaging OnLine\GXD5 Spooler\DIAMSpooler.exe (IncognitoVPN) [Fichier non signé] C:\Program Files (x86)\IncognitoVPN\vpn_module.exe (Invincea, Inc. -> Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Lagerkvist Teknisk Rådgivning i Borås HB -> Olof Lagerkvist) C:\Windows\System32\imdsksvc.exe (Lespeed Technology Ltd. -> WiseCleaner.com) C:\Program Files (x86)\Wise\Wise JetSearch\WiseJetHelp.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Lorenzi Davide (hexagora.com)) [Fichier non signé] C:\Program Files (x86)\PerfMon4x\PerfMon.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <22> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12624.20212.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1000.14.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.120.3171.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.120.3171.0_x64__8wekyb3d8bbwe\GameBarFT.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.20022.11011.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (MiniTool Software Limited -> ) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (Miroslav Topolar -> Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe (Miroslav Topolar -> Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (O&O Software GmbH -> O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe (O&O Software GmbH -> O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) [Fichier non signé] C:\Program Files\Macrium\Common\MacriumService.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) [Fichier non signé] C:\Program Files\Macrium\Common\ReflectUI.exe (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (Privax Limited -> Privax Limited) C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe (RapidSolution Software AG) [Fichier non signé] C:\ProgramData\RapidSolution\ExtensionPackage\VCDWriter\tools64\VCDAudioService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (SAFEVATCH, TOV -> ) C:\Users\cbaud\AppData\Local\Programs\safe-watch\resources\app\swch_go_service\swch_go_service.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Western Digital Technologies, Inc. -> Western Digital Corporation) C:\Program Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD App Manager\Plugins\WD Backup\App\WDBackupService.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD App Manager\Plugins\WD Sync\App\WDSyncService.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD App Manager\WDAppManager.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [ACPW10EN] => C:\Program Files\ACD Systems\ACDSee Pro\10.0\acdIDInTouch2.exe [2157000 2017-02-19] (ACD Systems International -> ACD Systems) [Fichier non signé] HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277528 2019-07-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [PowerDVD19Agent] => C:\Program Files\CyberLink\PowerDVD19\PowerDVD19Agent.exe [534712 2019-07-16] (CyberLink Corp. -> CyberLink Corp.) HKLM\...\Run: [0patch] => C:\Program Files (x86)\0patch\Agent\0patchTray.exe [504712 2019-03-01] (ACROS d.o.o. -> Acros Security) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2019-01-31] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [5126944 2018-11-30] (O&O Software GmbH -> O&O Software GmbH) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7357440 2020-05-28] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [WD Quick View] => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe [5388128 2018-05-23] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) HKLM-x32\...\Run: [WDAppManager] => C:\Program Files (x86)\Western Digital\WD App Manager\AppManagerLauncher.exe [21888 2019-01-02] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) HKLM-x32\...\Run: [DriveUtilitiesHelper] => C:\Program Files (x86)\Western Digital\WD Utilities\WDDriveUtilitiesHelper.exe [2309008 2019-01-11] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) HKLM-x32\...\Run: [WDDiscovery] => C:\Program Files (x86)\Western Digital\Discovery\Current\WD Discovery.exe [81376496 2019-07-10] (Western Digital Technologies, Inc. -> Western Digital Corporation) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1092304 2016-03-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) HKLM-x32\...\Run: [SystemExplorerAutoStart] => "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY HKLM-x32\...\Run: [MalTray] => C:\Program Files (x86)\Glarysoft\Malware Hunter\mhtray.exe [982448 2020-05-29] (Glarysoft LTD -> Glarysoft Ltd) HKLM\...\Policies\Explorer: [HideSCAHealth] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\...\Run: [SlickRun] => C:\Program Files (x86)\SlickRun\sr.exe [2848408 2019-08-14] (Eric Lawrence -> Bayden Systems) HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\...\Run: [PerfMon] => C:\Program Files (x86)\PerfMon4x\PerfMon.exe [1150976 2012-05-02] (Lorenzi Davide (hexagora.com)) [Fichier non signé] HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\...\Run: [sws] => C:\Users\cbaud\AppData\Local\Programs\safe-watch\resources\app\swch_go_service\swch_go_service.exe [10179912 2019-12-05] (SAFEVATCH, TOV -> ) HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\...\MountPoints2: O - "O:\setup.exe" HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\...\MountPoints2: {7b9010f0-c7f5-11e9-ad02-001e2ad58485} - "I:\setup.exe" HKLM\...\Windows x64\Print Processors\us008PC: C:\Windows\System32\spool\prtprocs\x64\us008pc.dll [52240 2019-07-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\...\Print\Monitors\EPSON ET-2650 Series 64MonitorBE: C:\Windows\system32\E_YLMBRUE.DLL [182784 2015-12-09] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Fichier non signé] HKLM\...\Print\Monitors\us008 Langmon: C:\Windows\system32\us008lm.dll [31256 2016-02-15] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-19] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{9459C573-B17A-45AE-9F64-1857B5D58CEE}] -> C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.69\Installer\setup.exe [2020-03-20] (Microsoft Corporation -> Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Assistant SMART WIZARD NETGEAR pour WG111v3.lnk [2018-09-26] ShortcutTarget: Assistant SMART WIZARD NETGEAR pour WG111v3.lnk -> C:\Program Files (x86)\NETGEAR\WG111v3\WG111v3.exe () [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HMA VPN.lnk [2019-09-09] ShortcutTarget: HMA VPN.lnk -> C:\Program Files (x86)\HMA! Pro VPN\Vpn.exe (Privax Limited -> Privax Limited) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\NETGEAR WG111v3 Smart Wizard.lnk [2018-09-26] ShortcutTarget: NETGEAR WG111v3 Smart Wizard.lnk -> C:\Program Files (x86)\NETGEAR\WG111v3\WG111v3.exe () [Fichier non signé] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\O&O Defrag Tray.lnk [2020-06-04] ShortcutTarget: O&O Defrag Tray.lnk -> C:\Windows\Installer\{7C4D55AF-37B4-4D85-9106-CF473CEC9BE6}\app_icon.exe () [Fichier non signé] Startup: C:\Users\cbaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2020-03-11] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) BootExecute: autocheck autochk * les (x86)\Glary Utilities 5\data\gulr.dat GroupPolicy: Restriction - Windows Defender <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {048F7749-88FF-41E1-8B94-BCB0B4E0A3FB} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [68568 2017-08-02] (DivX, LLC -> DivX, LLC) Task: {0BC61DF6-A164-45DE-832D-C5DE1145AC2F} - System32\Tasks\Opera scheduled Autoupdate 1570468234 => C:\Users\cbaud\AppData\Local\Programs\Opera\launcher.exe [1517592 2020-05-19] (Opera Software AS -> Opera Software) Task: {0EE58570-11DA-4224-BC7B-3FFC94D29011} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-06-04] (Adobe Inc. -> Adobe) Task: {105912F1-EEE3-4FA8-AAF0-569B34F88B79} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_pepper.exe [1453624 2020-03-11] (Adobe Inc. -> Adobe) Task: {119B0D2D-6227-49DC-BE77-4FB52943A001} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {13C9FB10-AF6A-4059-9E25-D4630B1169FC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2145186731-3062551481-2020604074-1001Core => C:\Users\cbaud\AppData\Local\Google\Update\GoogleUpdate.exe [153168 2018-11-17] (Google Inc -> Google Inc.) Task: {145475D3-F179-4D55-B6FE-AECE466E74AA} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-01-21] (Microsoft Corporation -> Microsoft Corporation) Task: {1D922835-EE06-47DD-8E1E-2D9BE4FD5CAF} - System32\Tasks\WD Device Agent Task daniel => C:\Users\Daniel\AppData\Roaming\WD Discovery\plugins\com.wdc.plugin.catalog\current\library\WD Device Agent.exe [720432 2019-09-26] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) Task: {220C477F-B39C-4036-B5A0-79A7DBD52644} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2391338B-F024-49E5-9E26-867E4CC95010} - System32\Tasks\GMHAutoScan => C:\Program Files (x86)\Glarysoft\Malware Hunter\MalwareHunter.exe [2440624 2020-05-29] (Glarysoft LTD -> Glarysoft Ltd) Task: {281F1B4C-9C4E-4A26-8DF5-5A539C904635} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-10-26] (Google Inc -> Google LLC) Task: {2D4E49D1-BEFF-4B7C-8138-FBCA7C802BD0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2DADE3AB-B96B-4871-AEE1-6EA9DA88BF7E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [171336 2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Task: {2EE3E7CB-BCCB-43AD-835E-44699E564A5A} - \ActiveSync-SystemMechanic -> Pas de fichier <==== ATTENTION Task: {31C5D2FB-ABD4-4066-ADBC-2ECB8E6D0A5E} - System32\Tasks\Macrium-Backup-{9D52B9BE-CEA0-4E15-8276-4B5C6CEEBBDA} => C:\program files\macrium\reflect\Reflect.exe [1296176 2018-12-14] (Paramount Software UK Ltd -> Paramount Software UK Ltd) Task: {36D16F17-126E-4B30-97A5-00AC64732986} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {3A5F38A4-064F-4261-ABF2-5035C265DEAF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation) Task: {3DEE80E3-4124-4F08-891A-21592A2AC300} - System32\Tasks\Autorun Organizer => C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe Task: {4765A206-4BF0-4745-A892-AFCE71507160} - System32\Tasks\ioloTUDsDownloader => C:\Program Files (x86)\Common Files\Phoenix360\ActiveCore\activesync.exe [194800 2017-12-08] (iolo technologies, LLC -> iolo technologies, LLC) Task: {4986A965-ECF6-455F-BA60-498901336BF1} - System32\Tasks\EPSON ET-2650 Series Update {8235D11D-C0A2-42F6-82EE-157AAEC38ADF} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {52DB07DB-A9DA-474A-BE59-BDD393E4046C} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2145186731-3062551481-2020604074-1001 => C:\ProgramData\MEGAsync\MEGAupdater.exe [615160 2019-07-20] (Mega Limited -> Mega Limited) Task: {599F33FB-11A8-49DF-A0B4-68C5C42E8A91} - System32\Tasks\HardDiskSentinel\Hard Disk Sentinel_cbaud => C:\Program Files (x86)\Hard Disk Sentinel\HDSentinel.exe [5624320 2019-06-06] (H.D.S. Hungary) [Fichier non signé] Task: {5B794CD4-5952-4274-B0C9-446926C2B92A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-08-24] (Piriform Ltd -> Piriform Ltd) Task: {5C8EC3AB-B3CD-407B-A7CF-D734BDFFB117} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-20] (Dropbox, Inc -> Dropbox, Inc.) Task: {5D652AA5-19E7-4229-AF05-1344A969CC39} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [6533496 2016-07-06] (Nero AG -> Nero AG) Task: {66417E9D-0D1D-4CE3-A7FD-3E3D4A71F8CD} - System32\Tasks\WD Device Agent Task cbaud => C:\Users\cbaud\AppData\Roaming\WD Discovery\plugins\com.wdc.plugin.catalog\current\library\WD Device Agent.exe [724008 2019-06-18] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) Task: {675AAAB5-942A-43EF-BBF5-A92A5FE9D6D6} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {701F2CD0-78A6-44E0-BCE4-157B8CF631DE} - \ActiveMessenger-SystemMechanic -> Pas de fichier <==== ATTENTION Task: {746F7089-FA73-4F64-8548-81FF83568717} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6122400 2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Task: {768AD15E-CD6F-4CB2-8448-AACB2AFE782D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [171336 2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Task: {7C09C538-F216-4E93-8382-399B91AB7AC0} - System32\Tasks\WD Discovery Service Task cbaud => C:\Program Files (x86)\Western Digital\Discovery\Current\Service\WDDiscoveryService.exe [71408 2019-07-10] (Western Digital Technologies, Inc. -> ) Task: {7E083BC0-6767-48B4-85BA-AB1200F9418A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {831D4D09-30E8-41DA-B83C-D67AD689CC17} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-01-21] (Microsoft Corporation -> Microsoft Corporation) Task: {87BB013C-45D6-4009-8830-64148B20C9B6} - System32\Tasks\Wise JetSearch Task.job => C:\Program Files (x86)\Wise\Wise JetSearch\WiseJetHelp.exe [2861128 2019-11-28] (Lespeed Technology Ltd. -> WiseCleaner.com) Task: {88E747DE-E177-41D3-83B0-DB87A614619B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6122400 2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Task: {92D9BE96-8FE9-49AB-AC31-FA0F8B5B600D} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-20] (Dropbox, Inc -> Dropbox, Inc.) Task: {9FE2FB50-984C-41CC-AB5E-CDF24809D916} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {A051E8B1-6DD9-4F8B-B38C-D234F5F4D6D4} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-06-04] (Adobe Inc. -> Adobe) Task: {A48B7A5D-9A9A-4DE6-849C-52056B3CBBD7} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AE688A99-C35E-4166-8F71-4DEB55624D6E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.) Task: {AEFF40F5-1859-44DC-A7A0-F69245A3B9DC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {B871BD96-5B4D-4DB7-957D-B94B05BB7C45} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2145186731-3062551481-2020604074-1001UA => C:\Users\cbaud\AppData\Local\Google\Update\GoogleUpdate.exe [153168 2018-11-17] (Google Inc -> Google Inc.) Task: {BEF0E9C5-2481-4262-AC4B-29213BD67484} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C02DD335-C88F-481C-8473-EBCF98602486} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-cbaud2000@outlook.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {CAA251CC-9066-42E5-9AA1-43F72970FADF} - System32\Tasks\DelayedItemsByChemtableSoftware\Google Update => C:\Users\cbaud\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe <==== ATTENTION Task: {CC358DF6-2734-4B67-85D4-49C9F0321FD7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-10-26] (Google Inc -> Google LLC) Task: {CDEB818F-9C04-49ED-B1BB-23FF0D0B1653} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\WINDOWS\System32\OOBE\SetupPlatform\SetupPlatform.exe [271160 2020-05-09] (Microsoft Windows -> Microsoft Corporation) Task: {CF13DEDC-F051-4B3D-A4EC-3A8845112CD2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [538952 2018-08-24] (Piriform Ltd -> Piriform Ltd) Task: {D85CDF62-ABFB-4ECD-AB99-B90970A51FBF} - System32\Tasks\CorelUpdateHelperTaskCore => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe [1677600 2019-09-06] (Corel Corporation -> Corel Corporation) Task: {D8855ED7-067B-4AB9-B5E0-51705C2849DF} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D8F210A8-0D5F-4800-9E75-6020044EACCD} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DBB0FBE7-24A0-427E-91DC-42ACE14C816F} - System32\Tasks\GMHSkipUAC => C:\Program Files (x86)\Glarysoft\Malware Hunter\MalwareHunter.exe [2440624 2020-05-29] (Glarysoft LTD -> Glarysoft Ltd) Task: {DBB86000-EF7F-40E2-9DCB-AC6C664923D3} - System32\Tasks\Opera scheduled assistant Autoupdate 1582726302 => C:\Users\cbaud\AppData\Local\Programs\Opera\launcher.exe [1517592 2020-05-19] (Opera Software AS -> Opera Software) Task: {E964994E-2843-42F0-AE39-6C58D35CF26A} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EB34FDB6-63B6-4D69-B613-C03992DA3D73} - System32\Tasks\EPSON ET-2650 Series Update {11D0C050-A775-47AA-858B-D0CBFFAF8377} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {EE18D132-28E1-423A-8DE3-35DA5803EF5A} - System32\Tasks\DelayedItemsByChemtableSoftware\GUDelayStartup => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [44024 2020-01-19] (Glarysoft LTD -> Glarysoft Ltd) Task: {F50025E6-B8BA-49CF-B894-F65A4AF10167} - System32\Tasks\EPSON ET-2650 Series Update {5A457AD1-7320-4F5C-A959-9FFB7151976F} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Task: {F5F31B12-97D2-4576-B8D2-1BBBEBCA5899} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {F6ECECE4-6A2C-408F-A6A8-95CF2211133F} - System32\Tasks\HMA VPN Update => C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [1070688 2020-06-03] (Privax Limited -> Privax Limited) Task: {FB37F4D6-83C0-4AD0-A620-A2C384BC5EFC} - System32\Tasks\DelayedItemsByChemtableSoftware\ProductUpdater => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe Task: {FF3B0DFA-FA26-4A10-B85E-06490292A080} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23772552 2020-05-08] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\EPSON ET-2650 Series Update {11D0C050-A775-47AA-858B-D0CBFFAF8377}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE:/EXE:{11D0C050-A775-47AA-858B-D0CBFFAF8377} /F:UpdateCARNOTHOME\DESKTOP-V2QDRPL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON ET-2650 Series Update {5A457AD1-7320-4F5C-A959-9FFB7151976F}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE:/EXE:{5A457AD1-7320-4F5C-A959-9FFB7151976F} /F:UpdateCARNOTHOME\DESKTOP-V2QDRPL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\EPSON ET-2650 Series Update {8235D11D-C0A2-42F6-82EE-157AAEC38ADF}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YTSRUE.EXE:/EXE:{8235D11D-C0A2-42F6-82EE-157AAEC38ADF} /F:UpdateCARNOTHOME\DESKTOP-V2QDRPL$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Hosts: Il y a plus d'un élément dans hosts. Voir la section Hosts de Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3f331542-753b-45fc-a45d-2d46bc0a52a7}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{45be50c5-60ab-4ced-91ee-db8efba1f05c}: [NameServer] 100.120.184.1 Tcpip\..\Interfaces\{53ce2722-bdfb-11e8-ac1a-806e6f6e6963}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{5625eaea-7d31-4dcd-b854-10281df317f6}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{607e462a-a3d4-4f9f-b96d-ec825473da64}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{607e462a-a3d4-4f9f-b96d-ec825473da64}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{9043d047-495c-4b3d-afbb-52cb752ea6bf}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{aa21cf82-7167-4871-ac67-df101ae86874}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{b6731acd-60c6-4c09-9391-369abdab8169}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{b6731acd-60c6-4c09-9391-369abdab8169}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{d71a4115-304b-4c17-bdee-48b841bc81ef}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{d71a4115-304b-4c17-bdee-48b841bc81ef}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{da6d5454-1cba-4820-bdda-3729ba5ccaee}: [NameServer] 100.120.72.1 Tcpip\..\Interfaces\{e979361e-047e-4cac-bfcc-a893c2fc36e1}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{e979361e-047e-4cac-bfcc-a893c2fc36e1}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{eab57eb2-9f24-4137-98dd-48e9ce48db09}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{ee36d82a-b375-452f-99c6-c0f44ea1d51f}: [NameServer] 8.8.8.8 Tcpip\..\Interfaces\{ee36d82a-b375-452f-99c6-c0f44ea1d51f}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-12-02] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2019-01-31] (Logitech Inc -> Logitech, Inc.) BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-12-02] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2019-01-31] (Logitech Inc -> Logitech, Inc.) Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-12-02] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2014-12-03] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Toolbar: HKU\S-1-5-21-2145186731-3062551481-2020604074-1001 -> Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll [2014-12-02] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-06-03] (Microsoft Corporation -> Microsoft Corporation) Edge: ====== DownloadDir: D:\Téléchargements Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.19.0_neutral__d55gg7py3s0m0 [2020-02-12] Edge Extension: (Office) -> 2016_MicrosoftOfficeOnline_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.OfficeOnline_2.0.0.0_neutral__8wekyb3d8bbwe [2019-11-17] Edge Extension: (Pas de nom) -> EdgeExtension_24598EmsisoftEmsisoftBrowserSecurity_qx27tcjycwb5c => C:\Program Files\WindowsApps\24598Emsisoft.EmsisoftBrowserSecurity_2018.12.10.0_neutral__qx27tcjycwb5c [non trouvé(e)] Edge Extension: (Nom) -> EdgeExtension_8bitSolutionsLLCbitwardenFreePasswordManager_h4e712dmw3xyy => C:\Program Files\WindowsApps\8bitSolutionsLLC.bitwarden-FreePasswordManager_1.39.4.0_neutral__h4e712dmw3xyy [2019-09-13] Edge Extension: (IBM Security Rapport) -> EdgeExtension_IBMTrusteerIBMTrusteerRapport_756wk15nt3n8e => C:\Program Files\WindowsApps\IBMTrusteer.IBMTrusteerRapport_1.1.34.0_x64__756wk15nt3n8e [2019-01-16] Edge Extension: (Keeper® Gestionnaire de mots de passe et coffre-fort numérique) -> EdgeExtension_KeeperSecurityIncKeeperBrowserExtension_kejf07qmg0jnm => chemin non trouvé(e) Edge Extension: (OneNote Web Clipper) -> EdgeExtension_MicrosoftOneNoteWebClipper_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.OneNoteWebClipper_3.8.1.0_neutral__8wekyb3d8bbwe [2019-08-06] Edge DefaultProfile: Default Edge Profile: C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default [2020-06-05] Edge DownloadDir: D:\Téléchargements Edge StartupUrls: Default -> "hxxps://www.qwant.com/" Edge DefaultSearchURL: Default -> hxxps://www.qwant.com/?q={searchTerms}&client=opensearch Edge DefaultSearchKeyword: Default -> qwant.com Edge DefaultSuggestURL: Default -> hxxps://api.qwant.com/api/suggest/?q={searchTerms}&client=opensearch Edge Extension: (MultCloud - Put multiple cloud drives into one.) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\afpcenngkahnmlpomlphkiekmeikeagh [2020-01-21] Edge Extension: (Video Downloader Pro) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\amkaifjlpmghiekafnmdabhglgaemioe [2020-02-26] Edge Extension: (Mes Drivers - détection automatique des drivers, des pilotes et de la configuration) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\biphefbkanclpnfeknjcioepniakjicm [2020-01-21] Edge Extension: (How Secure Is My Password?) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhhfhdjeaimkodobnbolegcihogfaam [2020-01-21] Edge Extension: (Diceware Secure Passphrase and Password Generator) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cjbdjibdgajkekinhgaocabjdnkmcepk [2020-01-21] Edge Extension: (PagesJaunes : trouvez plus que des coordonnées avec l'annuaire des professionnels) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fammfinnaennlaneiplifmmcdldcpmco [2020-01-21] Edge Extension: (Online French Password Creator) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fgfaoenhlkjaefolgbnnebhklfkndpae [2020-01-21] Edge Extension: (Office) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gggmmkjegpiggikcnhidnjjhmicpibll [2020-06-05] Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2020-06-05] Edge Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gpmljinohlbfgmeoaeceoajachkabijo [2020-06-05] Edge Extension: ((1 non lus) - dan_boul@yahoo.com - Yahoo Mail) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hdiplghhfmdffgajaocfolcilpobigmc [2020-01-21] Edge Extension: (dan_boul@yahoo.com - Yahoo Mail) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hkkbfmjgbgoejplddanbgcjfegpfadkc [2020-01-21] Edge Extension: (Carte - Géoportail) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ikfnpilfdagkooghackahdgbedipdlld [2020-01-21] Edge Extension: (SFR Mail | Mail) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jaeiojhcjdcdcnldflomncpfaklnaeam [2020-01-21] Edge Extension: (Bitwarden - Gestionnaire de mots de passe gratuit) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jbkfoedolllekgbhcbcoahefnbanhhlh [2020-06-05] Edge Extension: (Emsisoft Browser Security) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jlpdpddffjddlfdbllimedpemaodbjgn [2020-06-04] Edge Extension: (DeepL Traducteur) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\knnmmijcogaaakkpcfjbkmjmckkcknhi [2020-01-21] Edge Extension: (Google Images) - C:\Users\cbaud\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mncpghpmkopgmjlgjcmokgmhkflifgph [2020-01-21] FireFox: ======== FF DefaultProfile: stagir10.default FF ProfilePath: C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default [2020-06-04] FF Notifications: Mozilla\Firefox\Profiles\stagir10.default -> hxxps://www.jcbtechno.com FF Extension: (French spelling dictionary) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2019-04-28] FF Extension: (JavaScript Toggle On and Off) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\jid1-EbhJmw1yu6Juy@jetpack.xpi [2018-10-15] [] FF Extension: (Français Language Pack) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\langpack-fr@firefox.mozilla.org.xpi [2020-03-16] FF Extension: (Nimbus Screen Capture: Screenshots, Annotate) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\nimbusscreencaptureff@everhelper.me.xpi [2020-03-15] FF Extension: (AIO Search) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\TFToolbarX@torrent-finder.xpi [2019-06-06] FF Extension: (Bitwarden - Gestionnaire de mots de passe gratuit) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2020-03-15] FF Extension: (EPUBReader) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}.xpi [2019-07-10] FF Extension: (Pocket Select All) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\{68a267e1-f384-4356-9f1e-511ec5807858}.xpi [2019-04-28] FF Extension: (Logitech SetPoint) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\{84380428-8c9d-4bdf-913d-b2c34d6562d9}.xpi [2020-03-22] FF Extension: (Emsisoft Browser Security) - C:\Users\cbaud\AppData\Roaming\Mozilla\Firefox\Profiles\stagir10.default\Extensions\{b21882eb-3211-44dc-964b-e6f35b33061f}.xpi [2019-04-28] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2018-09-26] [] [non signé] FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2018-11-03] [] [non signé] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2020-03-22] [non signé] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_371.dll [2020-06-04] (Adobe Inc. -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_371.dll [2020-06-04] (Adobe Inc. -> ) FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2017-11-21] (DivX, LLC -> DivX, LLC) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2014-12-03] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-03] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-09-27] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default [2020-03-22] CHR Notifications: Default -> hxxps://masandketakin.pro; hxxps://medianewpage.com; hxxps://www.adaware.com CHR HomePage: Default -> qwant.com CHR StartupUrls: Default -> "hxxps://www.qwant.com/" CHR Extension: (Slides) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-09-25] CHR Extension: (Docs) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-09-25] CHR Extension: (Google Drive) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-09-29] CHR Extension: (Geneanet) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\bdedlcndcclakomgkecnnmfkhioellae [2019-06-19] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2018-09-25] CHR Extension: (MEGA) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2020-03-22] CHR Extension: (DuckDuckGo) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2019-12-23] CHR Extension: (YouTube) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-09-25] CHR Extension: (Nimbus Screenshot & Screen Video Recorder) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpconcjcammlapcogcnnelfmaeghhagj [2019-11-28] CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-03-22] CHR Extension: (Adaware Ad Block) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmllgdnjnkbapbchnebiedipojhmnjej [2018-09-25] CHR Extension: (Tampermonkey) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2019-11-21] CHR Extension: (Logitech Smooth Scrolling) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2018-09-25] CHR Extension: (Dropbox pour Gmail) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2019-10-29] CHR Extension: (Adobe Acrobat) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-03-22] CHR Extension: (Sheets) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-09-25] CHR Extension: (Éditeur Office pour Docs, Sheets et Slides) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2020-03-22] CHR Extension: (Google Docs hors connexion) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-22] CHR Extension: (Web Scrobbler) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\hhinaapppaileiechjoiifaancjggfjm [2020-03-22] CHR Extension: (Qwant) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\hnlkiofnhhoahaiimdicppgemmmomijo [2018-12-17] CHR Extension: (Emsisoft Browser Security) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfofijpkapingknllefalncmbiienkab [2019-01-14] CHR Extension: (Substital: Ajoutez des sous-titres aux vidéos) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\kkkbiiikppgjdiebcabomlbidfodipjg [2019-11-28] CHR Extension: (Last.fm) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\llnaedjamgkhniabahfmpemmbclcnllc [2018-09-25] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2018-11-15] CHR Extension: (Google Maps) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\lneaknkopdijkpnocmklfnjbeapigfbh [2018-09-25] CHR Extension: (Page Captures d'écran Web - Fireshot) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\mcbpblocgmgfnpjjppndjkmgjaogfceg [2019-12-23] CHR Extension: (Gmail) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\migddoalckpaggofpaiodlpeppdpmked [2019-01-23] CHR Extension: (OneDrive) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nffchahhjecejoiigmnhhicpoabngedk [2018-09-25] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05] CHR Extension: (Bitwarden - Gestionnaire de mots de passe gratuit) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2020-03-22] CHR Extension: (Adaware Web Protection) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnooggpliipegmffiolegeppbgkclbpi [2018-09-25] CHR Extension: (AIO Search) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhijjefkkokfaiffkcemldacdabpeei [2018-09-25] CHR Extension: (Gmail) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-03] CHR Extension: (Chrome Media Router) - C:\Users\cbaud\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-22] CHR HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [cnnbdaahphjgdgfhliignpepgnbnfomp] - CHR HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo] CHR HKU\S-1-5-21-2145186731-3062551481-2020604074-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [dhancbnhabhandieicagelcddkdfgoif] - C:\Program Files (x86)\Allavsoft\Video Downloader Converter\extensions\3.22.1.7334\BVDChromeExt.crx [2020-02-17] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2014-12-03] Opera: ======= OPR Extension: (Bitwarden - Free Password Manager) - C:\Users\cbaud\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccnckbpmaceehanjmeomladnmlffdjgn [2020-03-03] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 0patchService; C:\Program Files (x86)\0patch\Agent\0PatchServicex64.exe [444480 2019-03-01] (ACROS d.o.o. -> Acros Security) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [823352 2019-09-27] (Adobe Inc. -> Adobe Inc.) S3 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated) S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated) S3 aspnet_state; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [31936 2019-07-08] (Microsoft Corporation -> Microsoft Corporation) S3 Backup4all5Srv; C:\Program Files (x86)\Softland\Backup4all 5\bService.exe [3104312 2014-07-29] (Softland S.R.L. -> Softland) S3 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [122728 2016-12-30] (CHENGDU AOMEI Tech Co., Ltd. -> AOMEI Tech Co., Ltd.) S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (Shanghai Comet Network Technology -> www.BitComet.com) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [10612592 2020-05-07] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-20] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-10-20] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44552 2020-05-28] (Dropbox, Inc -> Dropbox, Inc.) R3 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusServicePro.exe [1392320 2016-10-19] (Disc Soft Ltd -> Disc Soft Ltd) S3 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-01-21] (Microsoft Corporation -> Microsoft Corporation) S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [223336 2020-01-21] (Microsoft Corporation -> Microsoft Corporation) S3 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [145224 2016-04-18] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 FileZilla Server; C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [859304 2017-02-08] (Tim Kosse -> FileZilla Project) S3 GIOL Auto Updater; C:\Program Files (x86)\Global Imaging OnLine\GXD5 AutoUpdater\GIOLAutoUpdate.exe [345088 2016-01-27] (Global Imaging On Line) [Fichier non signé] R2 GXD5 Spooler; C:\Program Files (x86)\Global Imaging OnLine\GXD5 Spooler\DIAMSpooler.exe [653312 2015-06-25] (Global Imaging On Line) [Fichier non signé] R2 HmaProVpn; C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe [6408720 2020-06-03] (Privax Limited -> Privax Limited) R2 ImDskSvc; C:\WINDOWS\system32\imdsksvc.exe [31544 2019-01-19] (Lagerkvist Teknisk Rådgivning i Borås HB -> Olof Lagerkvist) R2 IncognitoVPNSvc; C:\Program Files (x86)\IncognitoVPN\vpn_module.exe [221696 2019-11-28] (IncognitoVPN) [Fichier non signé] R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [5453200 2019-04-29] (Paramount Software UK Ltd -> Paramount Software UK Ltd) [Fichier non signé] S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6933272 2020-06-04] (Malwarebytes Inc -> Malwarebytes) S3 MicrosoftEdgeElevationService; C:\Program Files (x86)\Microsoft\Edge\Application\80.0.361.69\elevation_service.exe [1093744 2020-03-19] (Microsoft Corporation -> Microsoft Corporation) R2 MTAgentService; C:\Program Files\MiniTool ShadowMaker\AgentService.exe [776160 2019-12-12] (MiniTool Software Limited -> ) S3 MTSchedulerService; C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe [226784 2019-12-12] (MiniTool Software Limited -> ) S3 myCANAL Server; C:\ProgramData\myCANAL\nssm.exe [294912 2019-06-26] () [Fichier non signé] S3 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 NeroBackItUpBackgroundService; C:\Program Files (x86)\Nero\Nero 2017\Nero BackItUp\NBService.exe [287088 2016-08-09] (Nero AG -> Nero AG) S3 NMSAccess64; C:\WINDOWS\SysWOW64\NMSAccess64.exe [82872 2009-01-12] (Numedia Soft, Inc. -> ) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [873272 2020-03-13] (NVIDIA Corporation -> NVIDIA Corporation) R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1721632 2018-11-30] (O&O Software GmbH -> O&O Software GmbH) S3 OS Selector; C:\Program Files (x86)\Acronis\DiskDirector\OSS\reinstall_svc.exe [2159352 2010-05-25] (Acronis, Inc -> ) S3 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) S3 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [328344 2019-10-15] (Invincea, Inc. -> Sandboxie Holdings, LLC) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5930136 2020-03-21] (Microsoft Windows Publisher -> Microsoft Corporation) R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Miroslav Topolar -> Mister Group) R2 Virtual CDAudio Service; C:\ProgramData\RapidSolution\ExtensionPackage\VCDWriter\tools64\VCDAudioService.exe [173568 2020-02-27] (RapidSolution Software AG) [Fichier non signé] S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WD Backup Drive Helper; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{4AB831D3-8315-414C-8A7A-303105288D0B} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WD Backup Snapshot; C:\WINDOWS\SysWOW64\dllhost.exe /Processid:{302480DF-3AC5-4400-BE7B-DD77AF93B6DD} [19256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) R2 WDBackup; C:\Program Files (x86)\Western Digital\WD SmartWare\WDBackupEngine.exe [668808 2018-05-23] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) R2 WDDriveService; C:\Program Files (x86)\Western Digital\WD Drive Manager\WDDriveService.exe [363888 2019-01-11] (Western Digital Technologies, Inc. -> Western Digital Technologies, Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe [107624 2018-12-06] (Wondershare Technology Co.,Ltd -> Wondershare) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 0patchDriver; C:\Program Files (x86)\0patch\Agent\0patchDriver64.sys [153552 2019-03-01] (ACROS d.o.o. -> ) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-22] (CHENGDU AOMEI Tech Co., Ltd. -> ) R0 amdide64; C:\WINDOWS\System32\drivers\amdide64.sys [13848 2015-05-11] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices Inc.) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-22] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 ampa; C:\Windows\system32\ampa.sys [17008 2013-12-18] (ChengDu AoMei Tech Co., Ltd -> ) [Fichier non signé] R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2016-12-22] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4321160 2017-11-23] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.) R2 AWEAlloc; C:\WINDOWS\system32\DRIVERS\awealloc.sys [21048 2019-01-19] (Lagerkvist Teknisk Radgivning i Boras HB -> Olof Lagerkvist) R1 cbfs6; C:\WINDOWS\system32\drivers\cbfs6.sys [460992 2016-09-09] (EldoS Corporation -> /n software, Inc.) R1 cbfsconnect2017; C:\WINDOWS\system32\drivers\cbfsconnect2017.sys [476904 2019-03-01] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc.) R2 CLFCL5.19; C:\WINDOWS\system32\DRIVERS\CLFCL5.19\000.fcl [46824 2019-07-10] (CyberLink Corp. -> CyberLink Corp.) R3 CLVirtualBus01; C:\WINDOWS\System32\drivers\CLVirtualBus01.sys [103176 2014-11-05] (CyberLink Corp. -> CyberLink) S3 clwvd7; C:\WINDOWS\System32\drivers\clwvd7.sys [61184 2017-11-15] (CyberLink Corp. -> CyberLink Corporation) R3 clwvdPFC; C:\WINDOWS\System32\drivers\clwvdPFC.sys [61696 2017-10-04] (CyberLink Corp. -> CyberLink Corporation) R0 DBDA9806; C:\WINDOWS\System32\drivers\DBDA9806.sys [478392 2020-03-04] (Kaspersky Lab -> Kaspersky Lab ZAO) R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30264 2019-08-26] (Disc Soft Ltd -> Disc Soft Ltd) S3 GeneStor; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [126168 2019-08-08] (Genesys Logic, Inc. -> GenesysLogic) R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [28936 2018-09-23] (Glarysoft LTD -> Glarysoft Ltd) R3 GUMHFilters; C:\Program Files (x86)\Glarysoft\Malware Hunter\Native\winxp_x64\GUMHFilter.sys [41232 2020-02-17] (Glarysoft LTD -> Glarysoft Ltd) R1 GUSBootStartup; C:\WINDOWS\System32\drivers\GUSBootStartup.sys [28936 2020-03-20] (Glarysoft LTD -> Glarysoft Ltd) R3 hmatap; C:\WINDOWS\System32\drivers\hmatap.sys [36456 2018-09-05] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-07-16] (Martin Malik - REALiX -> REALiX(tm)) R2 ImDisk; C:\WINDOWS\system32\DRIVERS\imdisk.sys [48704 2019-01-19] (Lagerkvist Teknisk Radgivning i Boras HB -> Olof Lagerkvist) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-06-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-06-04] (Malwarebytes Inc -> Malwarebytes) R0 mrcbt; C:\WINDOWS\System32\drivers\mrcbt.sys [82984 2019-04-29] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R0 mrigflt; C:\WINDOWS\System32\drivers\mrigflt.sys [62832 2019-04-29] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) S3 NPF; C:\WINDOWS\System32\drivers\NPF.sys [35344 2011-02-11] (CACE Technologies, Inc. -> CACE Technologies, Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_ab1f86d7947528e0\nvlddmkm.sys [23270632 2020-03-16] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2020-03-14] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 pimou; C:\WINDOWS\System32\drivers\pimou.sys [42392 2016-11-17] (Christian Gulden -> Christian Gulden) S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [189152 2017-08-08] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> ) R1 RrNetCapFilterDriver; C:\WINDOWS\system32\DRIVERS\RrNetCapFilterDriver.sys [34608 2017-10-26] (Audials AG -> Audials AG) R3 rsvcdwdr; C:\WINDOWS\system32\DRIVERS\rsvcdwdr.sys [59032 2020-02-27] (Audials AG -> RapidSolution Software AG) R3 RTL8187B; C:\WINDOWS\System32\drivers\rtl8187B.sys [452096 2019-03-19] (Microsoft Windows -> Realtek Semiconductor Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [223680 2019-10-17] (Invincea, Inc. -> Sandboxie Holdings, LLC) R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203296 2019-01-24] (Disc Soft Ltd -> Duplex Secure Ltd) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2014-11-05] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R3 tbhsd; C:\WINDOWS\system32\drivers\tbhsd.sys [56168 2020-02-27] (Audials AG -> RapidSolution Software AG) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> ) R3 usbfilter; C:\WINDOWS\system32\DRIVERS\usbfilter.sys [61464 2015-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) R3 vpnpbus; C:\WINDOWS\System32\drivers\vpnpbus.sys [20704 2019-03-01] (Microsoft Windows Hardware Compatibility Publisher -> Callback Technologies, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation) R1 wdfsconnect2017; C:\WINDOWS\system32\drivers\wdfsconnect2017.sys [468112 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation) R3 wdvpnpbus; C:\WINDOWS\System32\drivers\wdvpnpbus.sys [20624 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.) S3 WIMMount; C:\Program Files (x86)\Windows Kits\10\Assessment and Deployment Kit\Deployment Tools\amd64\DISM\wimmount.sys [37384 2019-03-18] (Microsoft Windows -> Microsoft Corporation) S3 WSDScan; C:\WINDOWS\system32\DRIVERS\WSDScan.sys [26112 2019-03-19] (Microsoft Corporation) [Fichier non signé] S3 XUIF; C:\WINDOWS\System32\Drivers\x10ufx2.sys [33048 2006-11-30] (X10 Wireless Technology Inc. -> X10 Wireless Technology, Inc.) R4 eppdisk; system32\drivers\eppdisk.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) =================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-06-05 11:07 - 2020-06-05 11:09 - 000000000 ____D C:\FRST 2020-06-05 10:47 - 2020-06-05 10:47 - 000008192 _____ C:\WINDOWS\SysWOW64\WDPABKP.dat 2020-06-05 00:14 - 2020-06-05 00:14 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2145186731-3062551481-2020604074-1002 2020-06-05 00:14 - 2020-06-05 00:14 - 000002453 _____ C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-06-05 00:12 - 2020-06-05 00:12 - 000000000 ____D C:\Users\Daniel\AppData\Roaming\Logitech 2020-06-05 00:12 - 2020-06-05 00:12 - 000000000 ____D C:\Users\Daniel\AppData\Roaming\GlarySoft 2020-06-05 00:12 - 2020-06-05 00:12 - 000000000 ____D C:\Users\Daniel\AppData\Local\Apple 2020-06-05 00:10 - 2020-06-05 00:10 - 000002341 _____ C:\Users\Daniel\Desktop\Microsoft Edge.lnk 2020-06-04 23:51 - 2020-06-04 23:51 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-06-04 23:47 - 2020-06-04 23:47 - 000000000 ____D C:\Malwarebytes 2020-06-04 19:48 - 2020-06-04 19:48 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2145186731-3062551481-2020604074-1001 2020-06-04 19:48 - 2020-06-04 19:48 - 000002452 _____ C:\Users\cbaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-06-04 19:40 - 2020-06-04 19:40 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2020-06-04 19:23 - 2020-06-04 19:23 - 000001466 _____ C:\Users\cbaud\Desktop\ResetWUEng.cmd - Raccourci.lnk 2020-06-04 15:53 - 2020-06-04 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\O&O Software 2020-06-04 15:44 - 2020-06-04 15:44 - 000000000 ____D C:\Program Files\OO Software 2020-06-04 15:37 - 2020-06-04 15:45 - 000000000 ____D C:\ProgramData\OO DiskStat 2020-06-04 15:19 - 2020-06-04 15:19 - 000000000 ____D C:\Users\cbaud\AppData\Local\O&O 2020-06-04 15:14 - 2020-06-04 15:34 - 000000000 ____D C:\WINDOWS\system32\oodag 2020-06-04 15:12 - 2020-06-04 15:12 - 000000000 ____D C:\ProgramData\OO Software 2020-06-04 14:57 - 2020-06-04 14:57 - 000004329 _____ C:\Users\cbaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AIMP.lnk 2020-06-04 08:59 - 2020-06-04 08:59 - 000003062 _____ C:\WINDOWS\system32\Tasks\GMHSkipUAC 2020-06-04 00:51 - 2020-06-04 01:02 - 000000000 ____D C:\Users\cbaud\Desktop\Backup 2020-06-03 20:12 - 2020-02-28 20:16 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys 2020-06-03 20:09 - 2020-06-03 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-06-03 19:46 - 2020-06-03 19:46 - 000004236 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1570468234 2020-06-03 19:46 - 2020-06-03 19:46 - 000001450 _____ C:\Users\cbaud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2020-06-03 19:19 - 2020-06-03 19:19 - 000000000 ___HD C:\$WinREAgent 2020-05-28 14:20 - 2020-05-28 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2020-05-28 14:20 - 2020-05-28 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2020-05-28 14:20 - 2020-05-28 14:20 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2020-05-28 14:20 - 2020-05-28 14:20 - 000044552 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2020-06-05 11:09 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-06-05 11:09 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-06-05 10:59 - 2019-03-19 06:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-06-05 10:59 - 2018-09-22 22:28 - 000000000 ____D C:\ProgramData\Emsisoft 2020-06-05 10:59 - 2018-09-22 22:26 - 000000000 ____D C:\Program Files\Emsisoft Anti-Malware 2020-06-05 10:56 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-06-05 10:56 - 2018-09-22 01:28 - 000000000 ____D C:\Users\cbaud\AppData\Local\Packages 2020-06-05 10:53 - 2019-07-07 23:47 - 001800618 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-06-05 10:53 - 2019-03-19 14:01 - 000801934 _____ C:\WINDOWS\system32\perfh00C.dat 2020-06-05 10:53 - 2019-03-19 14:01 - 000155012 _____ C:\WINDOWS\system32\perfc00C.dat 2020-06-05 10:53 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-06-05 10:50 - 2019-05-26 23:14 - 000000000 ____D C:\Users\cbaud\AppData\Roaming\WD Discovery 2020-06-05 10:50 - 2019-05-26 23:14 - 000000000 ____D C:\Users\cbaud\.wdc 2020-06-05 10:50 - 2018-09-22 01:33 - 000000000 ____D C:\ProgramData\NVIDIA 2020-06-05 10:46 - 2019-07-07 23:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-06-05 10:46 - 2019-07-07 23:42 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-06-05 10:46 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-06-05 00:43 - 2019-03-19 06:37 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2020-06-05 00:14 - 2019-06-14 16:06 - 000000000 ____D C:\Users\Daniel\AppData\Roaming\WD Discovery 2020-06-05 00:14 - 2019-06-14 16:06 - 000000000 ____D C:\Users\Daniel\.wdc 2020-06-05 00:14 - 2018-11-18 02:07 - 000000000 ___RD C:\Users\Daniel\OneDrive 2020-06-05 00:14 - 2018-11-18 02:05 - 000000000 ____D C:\Users\Daniel\AppData\Local\Packages 2020-06-05 00:13 - 2019-07-07 23:59 - 000004180 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{59E7FEB3-EAE2-43E3-BBC2-428ECF3287C6} 2020-06-05 00:12 - 2018-11-18 02:06 - 000000000 ____D C:\Users\Daniel\AppData\Local\Dropbox 2020-06-05 00:10 - 2018-11-18 02:05 - 000000000 ___RD C:\Users\Daniel\3D Objects 2020-06-05 00:10 - 2018-09-22 01:28 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-06-05 00:08 - 2019-09-17 23:54 - 000000000 ____D C:\Users\cbaud\AppData\Roaming\Bitwarden 2020-06-04 23:51 - 2019-11-01 19:53 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-06-04 23:51 - 2019-11-01 19:53 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2020-06-04 19:48 - 2018-09-22 01:30 - 000000000 ___RD C:\Users\cbaud\OneDrive 2020-06-04 19:40 - 2018-09-28 00:53 - 000000000 ____D C:\Users\cbaud\AppData\Local\cache 2020-06-04 17:14 - 2018-10-02 00:07 - 000000000 ____D C:\Users\cbaud\AppData\Local\CrashDumps 2020-06-04 17:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-06-04 15:41 - 2019-09-17 23:53 - 000000000 ____D C:\Program Files\Bitwarden 2020-06-04 09:40 - 2020-03-20 19:48 - 000000000 ___HD C:\$GlaryQuarantine 2020-06-04 08:59 - 2020-03-20 17:58 - 000001311 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malware Hunter.lnk 2020-06-04 08:57 - 2019-11-01 19:55 - 000004718 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-06-04 08:57 - 2019-07-07 23:59 - 000004596 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-06-04 08:57 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-06-04 08:57 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-06-04 08:57 - 2018-09-26 23:16 - 000000000 ____D C:\Users\cbaud\AppData\Local\Adobe 2020-06-04 08:35 - 2019-06-11 16:34 - 000000000 ____D C:\Program Files (x86)\HMA! Pro VPN 2020-06-03 23:12 - 2018-09-22 17:20 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-06-03 23:02 - 2018-09-22 17:20 - 120636720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-06-03 21:49 - 2019-07-07 23:55 - 000024768 _____ C:\WINDOWS\diagwrn.xml 2020-06-03 21:49 - 2019-07-07 23:55 - 000024768 _____ C:\WINDOWS\diagerr.xml 2020-06-03 20:53 - 2019-12-07 17:54 - 000000000 ___HD C:\$WINDOWS.~BT 2020-06-03 20:53 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Registration 2020-06-03 20:43 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-06-03 20:42 - 2019-07-07 19:59 - 000000000 ___DC C:\WINDOWS\Panther 2020-06-03 20:39 - 2019-03-19 06:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-06-03 20:35 - 2018-09-23 19:32 - 000000000 ____D C:\Program Files\Microsoft Office 2020-06-03 20:10 - 2018-10-20 22:47 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-06-03 19:24 - 2019-07-07 23:44 - 000000000 ____D C:\Users\Daniel 2020-06-03 19:24 - 2018-10-20 22:55 - 000000000 ___RD C:\Users\cbaud\Dropbox 2020-06-03 19:24 - 2018-09-22 01:30 - 000000000 ____D C:\Users\cbaud\AppData\Local\PlaceholderTileLogoFolder 2020-06-03 19:22 - 2019-07-07 23:44 - 000000000 ____D C:\Users\cbaud 2020-06-03 19:20 - 2019-06-19 14:47 - 000000000 ____D C:\Program Files\UNP 2020-06-03 19:15 - 2020-03-23 13:24 - 000004174 _____ C:\WINDOWS\system32\Tasks\Macrium-Backup-{9D52B9BE-CEA0-4E15-8276-4B5C6CEEBBDA} 2020-06-03 19:14 - 2019-11-01 03:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\NCH Software ==================== Fichiers à la racine de certains dossiers ======== 2019-08-27 15:41 - 2019-09-22 00:35 - 000000004 _____ () C:\ProgramData\lock.dat 2019-08-27 15:41 - 2019-08-27 15:41 - 000000008 _____ () C:\ProgramData\ts.dat 2018-10-14 16:02 - 2018-10-14 16:35 - 003171712 _____ () C:\Users\cbaud\ZHPDiag3.exe 2019-04-29 19:23 - 2019-04-29 19:23 - 002283176 _____ (WiseCleaner.com ) C:\Program Files\WJSSetup_3.1.8.156.exe 2018-10-06 17:50 - 2018-10-06 17:50 - 007649280 _____ () C:\Program Files (x86)\GUTE261.tmp 2019-05-14 15:27 - 2019-07-07 02:55 - 000000114 _____ () C:\Users\cbaud\AppData\Roaming\Network Monitor II_#0_Traffic.ini 2020-01-22 01:56 - 2020-01-22 01:56 - 000004636 _____ () C:\Users\cbaud\AppData\Roaming\plugin_scan_state_VST2_x32.scan 2020-01-22 01:56 - 2020-01-22 01:56 - 000005797 _____ () C:\Users\cbaud\AppData\Roaming\plugin_scan_state_VST2_x64.scan 2020-01-22 01:56 - 2020-01-22 01:56 - 000000059 _____ () C:\Users\cbaud\AppData\Roaming\plugin_scan_state_VST3_x32.scan 2020-01-22 01:56 - 2020-01-22 01:56 - 000000059 _____ () C:\Users\cbaud\AppData\Roaming\plugin_scan_state_VST3_x64.scan 2019-05-19 16:21 - 2019-05-19 16:21 - 000000115 _____ () C:\Users\cbaud\AppData\Roaming\System Monitor II_UptimeRecord.ini 2019-09-02 23:44 - 2019-09-02 23:44 - 000038540 _____ () C:\Users\cbaud\AppData\Roaming\Valeurs séparées par une virgule.ADR 2019-11-27 21:46 - 2019-11-27 21:46 - 000660978 _____ () C:\Users\cbaud\AppData\Local\ars.cache 2019-11-27 21:47 - 2019-11-27 21:47 - 001542735 _____ () C:\Users\cbaud\AppData\Local\census.cache 2019-09-17 20:02 - 2019-09-17 20:02 - 000000093 _____ () C:\Users\cbaud\AppData\Local\fusioncache.dat 2019-11-27 20:23 - 2019-11-27 20:23 - 000000036 _____ () C:\Users\cbaud\AppData\Local\housecall.guid.cache 2019-12-09 00:27 - 2019-12-09 00:27 - 000000000 _____ () C:\Users\cbaud\AppData\Local\oobelibMkey.log 2019-12-25 17:38 - 2019-12-25 17:38 - 000000218 _____ () C:\Users\cbaud\AppData\Local\recently-used.xbel 2018-09-22 16:59 - 2018-09-22 16:59 - 000000017 _____ () C:\Users\cbaud\AppData\Local\resmon.resmoncfg 2019-11-27 20:30 - 2019-11-27 20:30 - 000000010 _____ () C:\Users\cbaud\AppData\Local\sponge.last.runtime.cache 2019-08-26 16:36 - 2019-08-26 16:36 - 000000000 _____ () C:\Users\cbaud\AppData\Local\Templog ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================