Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-03-2021 Exécuté par banni (administrateur) sur LAPTOP-CDMEDQEP (ASUSTeK COMPUTER INC. VivoBook 17_ASUS Laptop X705UBR) (15-03-2021 19:26:11) Exécuté depuis C:\Users\banni\OneDrive\Bureau Profils chargés: banni Platform: Windows 10 Home Version 20H2 19042.867 (X64) Langue: Français (France) Navigateur par défaut: Edge Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Acronis International GmbH -> ) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\aakore.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\bckp_amgr.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\grpm-mini.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\monitoring-mini.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Acronis\Agent\bin\task-manager.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (Acronis International GmbH -> Acronis International GmbH) C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\adp-agent.exe (Acronis International GmbH -> Acronis International GmbH.) C:\Program Files (x86)\Acronis\Agent\bin\updater.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Apache Software Foundation) [Fichier non signé] C:\Program Files (x86)\OpenOffice 4\program\soffice.bin (Apache Software Foundation) [Fichier non signé] C:\Program Files (x86)\OpenOffice 4\program\soffice.exe (Apache Software Foundation) [Fichier non signé] C:\Program Files (x86)\OpenOffice 4\program\swriter.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSBatteryHealthCharging_1.0.7.0_x86__qmba6cd70vzyy\ASUS Battery Health Charging\BhcMgr.exe (ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.Splendid_1.0.15.0_x64__qmba6cd70vzyy\ACMON.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\117.4.378\QtWebEngineProcess.exe <3> (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\igfxext.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHDCPSvc.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_fb9939a7d714d646\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_48973fc6c96c696a\RstMwService.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.860_none_e73d0c67262f5c28\TiWorker.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.3-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2102.3-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_c5e5b389bec1547b\Display.NvContainer\NVDisplay.Container.exe <2> (Open Source Developer, Dominik Reichl -> Dominik Reichl) C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd -> Piriform) C:\Program Files (x86)\Kamo\Kamo.exe (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2019-01-31] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [321112 2019-12-09] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [644000 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [7992032 2021-03-03] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [6199560 2021-03-10] (Acronis International GmbH -> ) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3137728 2021-01-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\tib_mounter_monitor.exe [447520 2020-11-23] (Acronis International GmbH -> Acronis International GmbH) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION HKU\S-1-5-21-4163228203-3445479027-3928077703-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32726088 2021-03-05] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-4163228203-3445479027-3928077703-1001\...\Run: [KeePass Password Safe 2] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3137728 2021-01-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKU\S-1-5-21-4163228203-3445479027-3928077703-1001\...\Run: [MicrosoftEdgeAutoLaunch_A8EFE59E7E2F19A472CF2EAE79E13FFD] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window /prefetch:5 ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1BEED893-50EE-4972-9C76-B34FA773AB3B} - System32\Tasks\Microsoft\Windows\Kamo\KamoStart => C:\Program Files (x86)\Kamo\Kamo.exe [14559848 2020-08-24] (Piriform Software Ltd -> Piriform) Task: {22289439-3731-4973-A0A5-539E5D0B1078} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe [566376 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2827F2C8-F14F-45E1-BB4D-C40D9FC482D8} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {34C5A259-E4AF-4E51-8092-722E88A86D41} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [642448 2018-05-31] (ASUSTeK Computer Inc. -> ) Task: {42594644-7097-4357-AC94-924FE092C423} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe [566376 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {42FBF1F6-4267-48D0-8515-EDB77A41FE36} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 5a17e1fb-05ff-4b16-83cd-f2f486bee13d Task: {4581AB5A-B591-4A7E-A843-45EC181C7040} - System32\Tasks\OneDrive Standalone Update Task v2 => C:\Users\banni\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {4BCCB8E1-7F32-4BA7-BA4E-D53DB632AD34} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe [566376 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4C77E07D-5E08-4BBF-BA6C-4130E45AB34F} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-31] (Dropbox, Inc -> Dropbox, Inc.) Task: {712088F6-F642-4871-B5F0-94DDEA95CE62} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-02-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {76A354DA-AB62-4D4B-A147-41385E595F7B} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617784 2020-02-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {81B72141-3190-4997-BEE7-DE8D06E94D9C} - System32\Tasks\Update Checker => C:\Program Files (x86)\ASUS\ASUS Live Update\UpdateChecker.exe [143160 2019-03-12] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) Task: {868FE186-B4B9-4C8B-9888-1DCA14417891} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) Task: {A0C7F3B8-DBB8-4AEF-B5CF-A46264A70112} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2020-02-25] (NVIDIA Corporation -> NVIDIA Corporation) Task: {ACA27FA0-9A6D-4377-9DF4-46EF986A8CAD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [27168840 2021-03-05] (Piriform Software Ltd -> Piriform Software Ltd) Task: {ACBD6679-5DD6-4953-BEAB-EDE8DB0D70EF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MpCmdRun.exe [566376 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C2F3A039-D555-4D66-BC33-7D94AD290989} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe Task: {D84A9E31-1DCE-40FB-8FE0-8CDE1C15E07A} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-31] (Dropbox, Inc -> Dropbox, Inc.) Task: {EF70B07D-719C-4ED8-8A0C-A8CD543FAFE4} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617784 2020-02-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {F19FD44D-8003-457D-AE23-8A6F8C466109} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe Task: {FA6F9BA1-EAEE-4F88-BB02-88DE1FDA626D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{3d25affd-97ca-482d-86d6-34b9984f2cf5}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{b6e1c8b1-294a-44c5-b362-c0217dde04b9}: [DhcpNameServer] 192.168.0.254 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-15] Edge HomePage: Default -> hxxp://www.sfr.fr/portail.html Edge Extension: (Logitech Smooth Scrolling) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2020-08-09] Edge Extension: (Dropbox pour Gmail) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2020-08-09] Edge Extension: (IBA Opt-out (by Google)) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gbiekjoijknlhijdjbaadobpkdhmoebb [2020-08-09] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-03-15] Edge Extension: (Signal Spam) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\npkncdihipibabapnailakhpajlglbfk [2021-03-12] Edge Profile: C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-03-15] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\banni\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-03-15] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2019-09-22] [non signé] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 aakore; C:\Program Files (x86)\Acronis\Agent\aakore.exe [9022120 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) R2 AcronisActiveProtectionService; C:\Program Files (x86)\Common Files\Acronis\ActiveProtection\anti_ransomware_service.exe [12952232 2021-03-10] (Acronis International GmbH -> ) S4 AcronisCyberProtectionService; C:\Program Files\Acronis\CyberProtect\cyber-protect-service.exe [1425256 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1052280 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) R2 afcdpsrv; C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [6391536 2021-03-13] (Acronis International GmbH -> ) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-31] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-05-31] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44272 2021-03-03] (Dropbox, Inc -> Dropbox, Inc.) S2 DevActSvc; C:\Program Files (x86)\ASUS\ASUS Device Activation\DevActSvc.exe [325456 2018-06-12] (ASUSTek Computer Inc. -> ) R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [285144 2018-04-04] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-10] (Malwarebytes Inc -> Malwarebytes) R2 mmsminisrv; C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe [4878840 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2019-03-25] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [2129696 2021-03-10] (Acronis International GmbH -> ) R2 syncagentsrv; C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe [7398360 2021-03-10] (Acronis International GmbH -> ) S3 Tib Mounter Service; C:\Program Files (x86)\Common Files\Acronis\TibMounter64\tib_mounter_service.exe [5911456 2020-11-23] (Acronis International GmbH -> Acronis International GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\NisSrv.exe [2483624 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.3-0\MsMpEng.exe [128392 2021-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ZenAnywhere; C:\Program Files\Orbweb Inc\ZenAnywhere\ZenAnywhere.exe [154560 2018-02-07] (Orbweb Taiwan Inc. -> Orbweb Inc.) S3 ZenAnywhere Updater; C:\Program Files\Orbweb Inc\ZenAnywhere\updater.exe [154560 2018-02-07] (Orbweb Taiwan Inc. -> Orbweb Inc.) S3 ZenAnywhereNetworkService; C:\Program Files\Orbweb Inc\ZenAnywhere\bin\ZenAnywhereNetworkService.exe [67520 2017-04-07] (Orbweb Taiwan Inc. -> Orbweb Inc.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_c5e5b389bec1547b\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_c5e5b389bec1547b\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2021-01-24] (AVAST Software s.r.o. -> The OpenVPN Project) R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2020-11-23] (Bitdefender SRL -> Bitdefender) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-01-10] (Malwarebytes Corporation -> Malwarebytes) R2 file_protector; C:\WINDOWS\System32\DRIVERS\file_protector.sys [722568 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [392840 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220616 2021-03-11] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-01-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198248 2021-03-15] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-03-15] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-03-11] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [142416 2021-03-15] (Malwarebytes Inc -> Malwarebytes) S3 MpKsla37657d5; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{70C3F5CB-7B2E-4323-9E07-A0E3286E86CB}\MpKslDrv.sys [90360 2021-03-15] (Microsoft Windows -> Microsoft Corporation) R1 netfilter2; C:\WINDOWS\System32\drivers\netfilter2.sys [86632 2020-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S0 ngelam; C:\WINDOWS\System32\drivers\ngelam.sys [15816 2021-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Acronis International GmbH) R1 ngscan; C:\WINDOWS\System32\DRIVERS\ngscan.sys [176568 2021-03-10] (Acronis International GmbH -> Acronis International GmbH) S3 RealWoW60; C:\WINDOWS\system32\DRIVERS\RealWoW60.sys [39432 2017-04-07] (Realtek Semiconductor Corp. -> Realtek semiconductor corp) S3 tib; C:\WINDOWS\system32\DRIVERS\tib.sys [887032 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) R2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [176248 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) S3 tnd; C:\WINDOWS\system32\DRIVERS\tnd.sys [694920 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [334984 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [251016 2021-03-13] (Acronis International GmbH -> Acronis International GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49544 2021-03-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [420088 2021-03-11] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72952 2021-03-11] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-03-15 19:22 - 2021-03-15 19:22 - 000077496 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2021-03-15 19:21 - 2021-03-15 19:21 - 000198248 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2021-03-15 19:21 - 2021-03-15 19:21 - 000142416 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2021-03-13 13:01 - 2021-03-10 18:49 - 000176568 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\ngscan.sys 2021-03-13 11:20 - 2021-03-13 11:21 - 002300928 _____ (Farbar) C:\Users\banni\Downloads\FRST64.exe 2021-03-11 17:05 - 2021-03-11 17:05 - 000002888 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-03-11 14:24 - 2021-03-11 14:24 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2021-03-10 21:35 - 2021-03-10 21:35 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-03-10 21:34 - 2021-03-10 21:34 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-03-10 21:34 - 2021-03-10 21:34 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-03-10 21:34 - 2021-03-10 21:34 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-03-10 21:33 - 2021-03-10 21:33 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-03-10 21:32 - 2021-03-10 21:32 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-03-10 21:31 - 2021-03-10 21:31 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-03-10 21:31 - 2021-03-10 21:31 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-03-10 21:30 - 2021-03-10 21:30 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-03-10 21:30 - 2021-03-10 21:30 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-03-10 21:30 - 2021-03-10 21:30 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-03-10 19:12 - 2021-03-15 19:27 - 000000000 ____D C:\FRST 2021-03-10 18:49 - 2021-03-10 18:49 - 000015816 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\ngelam.sys 2021-03-07 17:43 - 2021-03-07 17:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2021-03-07 16:50 - 2021-03-07 16:50 - 000002126 _____ C:\ProgramData\Bureau\Acrobat Reader DC.lnk 2021-03-03 04:12 - 2021-03-03 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2021-03-03 04:12 - 2021-03-03 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2021-03-03 04:12 - 2021-03-03 04:12 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2021-03-03 04:12 - 2021-03-03 04:12 - 000044272 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2021-02-22 17:20 - 2021-02-22 17:20 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-02-22 15:09 - 2021-02-22 15:09 - 000001363 _____ C:\Users\banni\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SyncBackSE.lnk 2021-02-22 15:08 - 2021-02-22 15:08 - 000001158 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SyncBackSE.lnk 2021-02-22 12:13 - 2021-03-11 14:32 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-02-22 12:13 - 2021-03-11 14:23 - 000220616 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2021-02-22 11:43 - 2020-09-16 00:41 - 000171488 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2021-02-22 11:43 - 2020-09-16 00:41 - 000146776 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 001790200 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-02-22 11:43 - 2020-09-16 00:40 - 001386232 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-02-22 11:43 - 2020-09-16 00:40 - 001096808 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 000949864 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 000507704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 000462648 _____ C:\WINDOWS\system32\ze_loader.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 000370488 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-02-22 11:43 - 2020-09-16 00:40 - 000295224 _____ C:\WINDOWS\system32\igfxCPL.cpl 2021-02-22 11:43 - 2020-09-16 00:40 - 000148792 _____ C:\WINDOWS\system32\ze_validation_layer.dll ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-03-15 19:23 - 2020-03-01 19:17 - 000000000 ____D C:\Program Files\CCleaner 2021-03-15 19:23 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-03-15 19:22 - 2018-08-17 04:32 - 000000000 __SHD C:\Users\banni\IntelGraphicsProfiles 2021-03-15 19:20 - 2020-07-19 13:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-03-15 19:20 - 2020-07-19 12:44 - 000008192 ___SH C:\DumpStack.log.tmp 2021-03-15 19:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-03-15 19:20 - 2018-08-17 02:42 - 000000000 ___HD C:\Intel 2021-03-15 19:19 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-03-15 19:18 - 2020-01-12 17:46 - 000018479 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2021-03-15 19:18 - 2020-01-12 17:46 - 000012189 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2021-03-15 19:16 - 2019-05-30 10:55 - 000000000 ____D C:\Users\banni\AppData\Local\Google 2021-03-15 19:15 - 2020-01-12 17:46 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1 2021-03-15 19:14 - 2020-01-13 19:35 - 000017518 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1 2021-03-15 16:59 - 2020-07-19 12:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-03-15 15:53 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-03-15 15:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-03-15 15:02 - 2020-07-04 21:35 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-03-15 14:55 - 2019-05-29 18:26 - 000000000 ____D C:\Users\banni\AppData\Roaming\KeePass 2021-03-14 19:49 - 2020-01-12 18:36 - 000013894 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1 2021-03-14 19:28 - 2020-01-12 17:59 - 000012176 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2021-03-14 17:34 - 2020-07-19 12:52 - 001683186 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-03-14 17:34 - 2019-12-07 15:49 - 000757888 _____ C:\WINDOWS\system32\perfh00C.dat 2021-03-14 17:34 - 2019-12-07 15:49 - 000142642 _____ C:\WINDOWS\system32\perfc00C.dat 2021-03-14 17:34 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-03-14 17:19 - 2019-05-30 10:56 - 000000000 ____D C:\Program Files (x86)\Google 2021-03-14 17:16 - 2019-08-02 12:05 - 000000000 ____D C:\Users\banni\AppData\Local\NVIDIA 2021-03-14 17:16 - 2018-08-17 04:35 - 000000000 ____D C:\Users\banni\AppData\Local\NVIDIA Corporation 2021-03-14 17:16 - 2018-08-17 02:49 - 000000000 ____D C:\ProgramData\NVIDIA 2021-03-14 17:16 - 2018-08-17 02:49 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-03-14 17:16 - 2018-08-17 02:47 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-03-14 17:16 - 2018-08-17 02:47 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-03-13 14:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-03-13 13:01 - 2020-11-28 17:42 - 000000000 ____D C:\Program Files\Common Files\Acronis 2021-03-13 13:01 - 2020-01-12 17:46 - 000013537 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1 2021-03-13 13:01 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-03-13 12:52 - 2020-04-26 14:54 - 000000000 ____D C:\ProgramData\Acronis 2021-03-13 12:49 - 2020-04-26 15:37 - 000722568 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_protector.sys 2021-03-13 12:49 - 2020-04-26 14:55 - 000392840 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\file_tracker.sys 2021-03-13 12:48 - 2020-04-26 15:37 - 000694920 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tnd.sys 2021-03-13 12:48 - 2020-04-26 15:37 - 000334984 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\virtual_file.sys 2021-03-13 12:48 - 2020-04-26 15:37 - 000251016 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\volume_tracker.sys 2021-03-13 12:48 - 2020-04-26 15:36 - 000001288 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image.lnk 2021-03-13 12:48 - 2020-04-26 14:55 - 000887032 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib.sys 2021-03-13 12:48 - 2020-04-26 14:55 - 000391816 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\snapman.sys 2021-03-13 12:48 - 2020-04-26 14:55 - 000176248 _____ (Acronis International GmbH) C:\WINDOWS\system32\Drivers\tib_mounter.sys 2021-03-13 12:20 - 2019-05-30 14:57 - 000000000 ____D C:\Users\banni\OneDrive\Documents\BdD_KeePass_Annick 2021-03-11 17:08 - 2019-05-30 14:57 - 000000000 ____D C:\Users\banni\OneDrive\Documents\Dossiers temporaires 2021-03-11 15:15 - 2019-05-30 15:16 - 000000000 ____D C:\Users\banni\OneDrive\Documents\Sauvegarde_CCleaner 2021-03-11 13:27 - 2018-05-14 21:17 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-03-11 13:16 - 2019-05-29 18:06 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-03-11 13:11 - 2021-01-24 12:30 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update 2021-03-11 13:06 - 2021-01-10 14:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2021-03-11 12:41 - 2020-07-19 12:44 - 000293720 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-03-11 12:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-03-11 12:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-03-11 12:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-03-11 12:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-03-11 12:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-03-10 19:03 - 2019-05-30 10:54 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-03-10 18:59 - 2019-06-11 15:36 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-03-10 18:54 - 2019-05-30 10:54 - 131005360 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-03-07 17:45 - 2019-05-31 09:54 - 000000000 ____D C:\Program Files (x86)\Dropbox 2021-03-07 16:52 - 2020-07-19 13:22 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-03-07 16:40 - 2020-07-19 13:22 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-03-07 16:40 - 2020-07-19 13:22 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-03-04 19:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2021-03-04 19:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2021-03-04 19:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-03-04 19:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-03-04 19:28 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-02-22 15:08 - 2020-04-26 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2BrightSparks 2021-02-22 15:01 - 2018-08-17 04:32 - 000000000 ____D C:\Users\banni\AppData\Local\Packages 2021-02-22 14:43 - 2020-07-21 14:23 - 000000000 ____D C:\Users\banni\AppData\Roaming\ZHP 2021-02-22 11:44 - 2019-05-30 12:24 - 000000000 ____D C:\Users\banni\AppData\Local\CrashDumps ==================== Fichiers à la racine de certains dossiers ======== 2019-05-31 16:44 - 2020-11-29 11:50 - 000265891 _____ () C:\Users\banni\AppData\Local\Snip.txt 2020-11-28 15:14 - 2020-11-29 11:50 - 2937130318 _____ () C:\Users\banni\AppData\Local\SnipUsages.txt ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================