Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 11-04-2021 Exécuté par flosal (administrateur) sur GRENOB-004042 (Dell Inc. Latitude 3560) (11-04-2021 21:23:10) Exécuté depuis C:\Users\flosal\Downloads Profils chargés: flosal & SQLTELEMETRY$COEDB & MSSQL$COEDB Platform: Windows 10 Pro Version 20H2 19042.906 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) () [Fichier non signé] C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\spectral\SocketServer.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\bdredline.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epag.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epconsole.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epintegrationservice.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epprotectedservice.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epsecurityservice.exe (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Endpoint Security\epupdateservice.exe (Firebird Project) [Fichier non signé] C:\Program Files (x86)\Fisher & Paykel Healthcare\InfoSmart\InfoSmartDB2\bin\fbserver.exe (Fisher & Paykel Healthcare) [Fichier non signé] C:\Program Files (x86)\Fisher & Paykel Healthcare\InfoSmart\Server12\InfoSmartServer.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Löwenstein Medical Technology GmbH + Co. KG -> Löwenstein Medical Technology GmbH + Co. KG) C:\Program Files (x86)\Loewenstein Medical Technology\prismaTS\prismaServer.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESSWTS\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.ENCOREPRO2\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL11.SMARTLINKSQL\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL14.COEDB\MSSQL\Binn\sqlceip.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe (National Instruments Corporation -> National Instruments Corporation) C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\lkads.exe (National Instruments Corporation -> National Instruments Corporation) C:\Windows\SysWOW64\lktsrv.exe (National Instruments Corporation -> National Instruments, Inc.) C:\Windows\SysWOW64\lkcitdl.exe (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Qualcomm Atheros Inc.) [Fichier non signé] C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\awic\AWiCMgr.exe (Qualcomm Atheros Inc.) [Fichier non signé] C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\Wcct.exe (Qualcomm Atheros, Inc.) [Fichier non signé] C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\ihvs\AWiCDiag.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <4> (TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8822008 2017-01-25] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_MAXX6] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1478144 2017-01-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation - Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [AWiCMgr] => C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\AWiC\AWiCMgr.exe [185856 2016-04-21] (Qualcomm Atheros Inc.) [Fichier non signé] HKLM\...\Run: [AWiCDiag] => C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\ihvs\AWiCDiag.exe [3067392 2016-04-21] (Qualcomm Atheros, Inc.) [Fichier non signé] HKLM\...\Run: [wcct] => C:\Program Files (x86)\Dell\Dell Unified Wireless Suite\wcct.exe [1076224 2016-04-21] (Qualcomm Atheros Inc.) [Fichier non signé] HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [724912 2016-09-13] (Waves Inc -> Waves Audio Ltd.) HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -> Elaborate Bytes AG) HKLM-x32\...\Run: [prismaDeviceDetector] => C:\Program Files (x86)\Loewenstein Medical Technology\prismaTS\MCC.WTS.BackgroundProcess.exe [167040 2020-06-16] (Löwenstein Medical Technology GmbH + Co. KG -> Löwenstein Medical Technology GmbH + Co. KG) HKU\S-1-5-21-2565604041-4069925371-3295733377-1024\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33169992 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2565604041-4069925371-3295733377-1024\...\Run: [com.squirrel.Teams.Teams] => C:\Users\flosal\AppData\Local\Microsoft\Teams\Update.exe [2453728 2021-04-08] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKLM\...\Print\Monitors\pdfcmon: C:\WINDOWS\system32\pdfcmon.dll [115200 2017-04-11] (pdfforge GmbH) [Fichier non signé] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.114\Installer\chrmstp.exe [2021-04-02] (Google LLC -> Google LLC) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1324C745-C04B-4073-9527-8776211D8E34} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-03-18] (Piriform Software Ltd -> Piriform) Task: {13A2409B-28FC-479D-B5DA-82D978EA3F17} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\flosal\Downloads\esetonlinescanner (1).exe Task: {14E6AA70-CA1C-4187-B6EC-7E4D173A31F1} - System32\Tasks\Dell\Command Update => C:\Program Files (x86)\Dell\CommandUpdate\DellCommandUpdate.exe [2932664 2017-01-12] (Dell Inc. -> Dell Inc.) Task: {1F5CC3F8-2020-4727-84C8-E3214C2F9ACF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-04-10] (Google Inc -> Google Inc.) Task: {2D7A1B70-69C4-4044-90A8-59774AA25C82} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1478144 2017-01-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {304B435E-8E79-40C0-92A7-8115529146D5} - System32\Tasks\Mises à jours de SmartLink Desktop 3 => C:\Windows\Installer\SmartLink Desktop 3 Updates for All Users.lnk [Argument = /update] Task: {33B5EA26-CF70-43FE-9E90-7337AC062F0D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [27616328 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd) Task: {71AFD851-59EB-4516-A422-26984FF60C55} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\flosal\Downloads\esetonlinescanner (1).exe Task: {A019EF2F-CA7F-4DA0-BFB7-10BE6E5DD6AD} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-06-14] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {B0B4A4B2-A6AC-4531-AF21-978AF8FA5495} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe Task: {CF385DAD-DB4A-4278-941C-C7E378A657A7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {D1AFB76C-E534-4811-B966-03B173207014} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-04-10] (Google Inc -> Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Mises à jours de SmartLink Desktop 3.job => C:\Windows\Installer\SmartLink Desktop 3 Updates for All Users.lnk ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{7d7b4fd0-d33c-45e2-8130-cf552c5a14ed}: [DhcpNameServer] 212.27.40.241 212.27.40.240 Tcpip\..\Interfaces\{f8f0e892-cee2-4aa8-b845-ac69f553a06c}: [DhcpNameServer] 172.16.128.41 8.8.8.8 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge Profile: C:\Users\flosal\AppData\Local\Microsoft\Edge\User Data\Default [2021-04-09] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=1.6.0_32 -> C:\Windows\system32\npdeployJava1.dll [2017-04-24] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.) FF Plugin: @java.com/JavaPlugin -> C:\Program Files\Java\jre6\bin\plugin2\npjp2.dll [2017-04-24] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default [2021-04-11] CHR Notifications: Default -> hxxps://calendar.google.com CHR Extension: (Slides) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-05] CHR Extension: (Docs) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-05] CHR Extension: (Google Drive) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-05] CHR Extension: (YouTube) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-05] CHR Extension: (Sheets) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-05] CHR Extension: (Google Docs hors connexion) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-05] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-04-06] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-05] CHR Extension: (Chrome Media Router) - C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-04] CHR Profile: C:\Users\flosal\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-03-06] CHR Profile: C:\Users\flosal\AppData\Local\Google\Chrome\User Data\System Profile [2021-03-06] CHR HKU\S-1-5-21-2565604041-4069925371-3295733377-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S2 acrwatchsrv; C:\WINDOWS\system32\acrwatchsrv.exe [103728 2019-03-11] (Activecrypt Software Ltd. -> Activecrypt Software Co., Ltd.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S2 EncoreRecalculationService; C:\Program Files (x86)\Respironics\Encore Pro 2\Services\PatientRecalculation\EPRService.exe [24064 2019-01-14] (Philips Respironics) [Fichier non signé] R2 epag; C:\Program Files\Bitdefender\Endpoint Security\epag.exe [5117056 2021-03-29] (Bitdefender SRL -> Bitdefender) R2 EPIntegrationService; C:\Program Files\Bitdefender\Endpoint Security\EPIntegrationService.exe [432136 2021-02-17] (Bitdefender SRL -> Bitdefender) R2 EPProtectedService; C:\Program Files\Bitdefender\Endpoint Security\EPProtectedService.exe [432136 2021-02-17] (Bitdefender SRL -> Bitdefender) R2 EPRedline; C:\Program Files\Bitdefender\Endpoint Security\bdredline.exe [2224336 2021-02-17] (Bitdefender SRL -> Bitdefender) R2 EPSecurityService; C:\Program Files\Bitdefender\Endpoint Security\EPSecurityService.exe [432136 2021-02-17] (Bitdefender SRL -> Bitdefender) R2 EPUpdateService; C:\Program Files\Bitdefender\Endpoint Security\EPUpdateService.exe [432136 2021-02-17] (Bitdefender SRL -> Bitdefender) R2 FirebirdServerInfoSmartDB2; C:\Program Files (x86)\Fisher & Paykel Healthcare\InfoSmart\InfoSmartDB2\bin\fbserver.exe [3735552 2011-08-30] (Firebird Project) [Fichier non signé] R2 InfoSmartServer12; C:\Program Files (x86)\Fisher & Paykel Healthcare\InfoSmart\Server12\InfoSmartServer.exe [32768 2015-04-28] (Fisher & Paykel Healthcare) [Fichier non signé] R2 LkCitadelServer; C:\Windows\SysWOW64\lkcitdl.exe [695136 2010-10-27] (National Instruments Corporation -> National Instruments, Inc.) R2 lkClassAds; C:\Windows\SysWOW64\lkads.exe [46192 2011-06-14] (National Instruments Corporation -> National Instruments Corporation) R2 lkTimeSync; C:\Windows\SysWOW64\lktsrv.exe [56952 2011-06-14] (National Instruments Corporation -> National Instruments Corporation) S2 MSSQL$COEDB; C:\Program Files\Microsoft SQL Server\MSSQL14.COEDB\MSSQL\Binn\sqlservr.exe [478096 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$ENCOREPRO2; c:\Program Files\Microsoft SQL Server\MSSQL10.ENCOREPRO2\MSSQL\Binn\sqlservr.exe [69964448 2015-04-03] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$SMARTLINKSQL; C:\Program Files\Microsoft SQL Server\MSSQL11.SMARTLINKSQL\MSSQL\Binn\sqlservr.exe [194240 2017-07-07] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$SQLEXPRESSWTS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESSWTS\MSSQL\Binn\sqlservr.exe [43040096 2011-06-17] (Microsoft Corporation -> Microsoft Corporation) R2 NIDomainService; C:\Program Files (x86)\National Instruments\Shared\Security\nidmsrv.exe [362104 2011-06-14] (National Instruments Corporation -> National Instruments Corporation) R2 niSvcLoc; C:\Program Files (x86)\National Instruments\Shared\NI WebServer\SystemWebServer.exe [50328 2011-05-27] (National Instruments Corporation -> National Instruments Corporation) R2 prismaServer; C:\Program Files (x86)\Loewenstein Medical Technology\prismaTS\prismaServer.exe [18048 2020-06-16] (Löwenstein Medical Technology GmbH + Co. KG -> Löwenstein Medical Technology GmbH + Co. KG) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5361256 2021-04-04] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$COEDB; C:\Program Files\Microsoft SQL Server\MSSQL14.COEDB\MSSQL\Binn\SQLAGENT.EXE [571792 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$ENCOREPRO2; c:\Program Files\Microsoft SQL Server\MSSQL10.ENCOREPRO2\MSSQL\Binn\SQLAGENT.EXE [441512 2015-04-03] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$SMARTLINKSQL; C:\Program Files\Microsoft SQL Server\MSSQL11.SMARTLINKSQL\MSSQL\Binn\SQLAGENT.EXE [613056 2017-07-07] (Microsoft Corporation -> Microsoft Corporation) S4 SQLAgent$SQLEXPRESSWTS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.SQLEXPRESSWTS\MSSQL\Binn\SQLAGENT.EXE [370016 2011-06-17] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY$COEDB; C:\Program Files\Microsoft SQL Server\MSSQL14.COEDB\MSSQL\Binn\sqlceip.exe [245648 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7534864 2016-08-25] (TeamViewer -> TeamViewer GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MsMpEng.exe [128376 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R1 acrwatchdrv; C:\WINDOWS\system32\drivers\acrwatchdrv.sys [33336 2017-07-06] (Activecrypt Software Ltd. -> ) R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [2718744 2021-03-29] (Bitdefender SRL -> Bitdefender S.R.L. Bucharest, ROMANIA) R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [802976 2021-03-29] (Bitdefender SRL -> Bitdefender) R3 bddevflt; C:\Program Files\Bitdefender\Endpoint Security\bddevflt.sys [106544 2018-11-06] (Bitdefender SRL -> BitDefender LLC) S0 BDElam; C:\WINDOWS\System32\drivers\bdelam.sys [23176 2019-03-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [22864 2016-10-27] (WDKTestCert Andy_Chen6,131219483243550933 -> OSR Open Systems Resources, Inc.) S3 fenrir; C:\WINDOWS\System32\drivers\fenrir.sys [54312 2019-04-05] (Bitdefender SRL -> ) S3 FTSER2K; C:\WINDOWS\system32\drivers\ftser2k.sys [79872 2014-10-21] (Microsoft Windows Hardware Compatibility Publisher -> FTDI Ltd.) R3 gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [488592 2021-03-29] (Bitdefender SRL -> BitDefender S.R.L. Bucharest, ROMANIA) R0 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [195232 2020-12-16] (Bitdefender SRL -> BitDefender LLC) R0 Ignis; C:\WINDOWS\System32\drivers\ignis.sys [196184 2021-02-17] (Bitdefender SRL -> Bitdefender) S4 RsFx0202; C:\WINDOWS\System32\DRIVERS\RsFx0202.sys [339648 2015-10-20] (Microsoft Corporation -> Microsoft Corporation) R1 RsFx0501; C:\WINDOWS\System32\DRIVERS\RsFx0501.sys [261784 2020-11-03] (Microsoft Corporation -> Microsoft Corporation) R0 stdcfltn; C:\WINDOWS\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics) R2 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [641728 2021-03-29] (Bitdefender SRL -> Bitdefender) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [428264 2020-10-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-10-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-11 21:06 - 2021-04-11 21:12 - 000047412 _____ C:\Users\flosal\Downloads\Addition.txt 2021-04-11 20:52 - 2021-04-11 21:25 - 000023180 _____ C:\Users\flosal\Downloads\FRST.txt 2021-04-11 20:51 - 2021-04-11 21:24 - 000000000 ____D C:\FRST 2021-04-11 20:51 - 2021-04-11 20:51 - 002297856 _____ (Farbar) C:\Users\flosal\Downloads\FRST64.exe 2021-04-11 20:49 - 2021-04-11 20:49 - 000072744 _____ C:\ProgramData\agent.uninstall.1618166949.bdinstall.v2.bin 2021-04-11 20:46 - 2021-04-11 20:46 - 000044416 _____ C:\ProgramData\hva.uninstall.1618166742.bdinstall.bin 2021-04-10 07:19 - 2021-04-10 07:20 - 007356416 _____ C:\Users\flosal\Downloads\Escaliers durs durs durs - Josiane .. 29 03 2021.pps 2021-04-10 07:18 - 2021-04-10 07:18 - 007031569 _____ C:\Users\flosal\Downloads\Trafic-Pere-De-Famille1.mp4 2021-04-09 21:39 - 2021-04-09 21:42 - 000002827 _____ C:\Users\flosal\Desktop\kprm-20210409213924.txt 2021-04-09 21:39 - 2021-04-09 21:39 - 000000000 ____D C:\KPRM 2021-04-09 00:35 - 2021-04-09 00:35 - 000000112 ___SH C:\bootTel.dat 2021-04-08 19:37 - 2021-04-08 19:37 - 000735138 _____ C:\Users\flosal\Downloads\MESNIL HERVE NUIT CAPNO DU 27 05 20 OBS.pdf 2021-04-08 19:37 - 2021-04-08 19:37 - 000515544 _____ C:\Users\flosal\Downloads\MESNIL HERVÉ 28 05 20 CAPNO SOUS VNI.pdf 2021-04-08 08:28 - 2021-04-08 08:28 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03 (5).pdf 2021-04-08 08:28 - 2021-04-08 08:28 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03 (4).pdf 2021-04-08 08:03 - 2021-04-08 08:03 - 000002373 _____ C:\Users\flosal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-04-08 08:03 - 2021-04-08 08:03 - 000002365 _____ C:\Users\flosal\Desktop\Microsoft Teams.lnk 2021-04-08 08:03 - 2021-04-08 08:03 - 000000000 ____D C:\Users\flosal\AppData\Roaming\Teams 2021-04-07 23:39 - 2021-04-08 08:03 - 000000000 ____D C:\Users\flosal\AppData\Local\SquirrelTemp 2021-04-06 23:54 - 2021-04-06 23:54 - 002084016 _____ (Malwarebytes) C:\Users\flosal\Downloads\MBSetup (2).exe 2021-04-06 23:08 - 2021-04-06 23:08 - 002084016 _____ (Malwarebytes) C:\Users\flosal\Downloads\MBSetup (1).exe 2021-04-06 11:10 - 2021-04-06 11:10 - 000000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2021-04-05 19:39 - 2021-04-05 19:39 - 000055112 _____ C:\Users\flosal\Desktop\03-04-2021-attestation-de-deplacement-derogatoire.pdf 2021-04-05 19:36 - 2021-04-05 19:36 - 000437166 _____ C:\Users\flosal\Downloads\03-04-2021-attestation-de-deplacement-derogatoire-pdf.pdf 2021-04-05 19:36 - 2021-04-05 19:36 - 000063953 _____ C:\Users\flosal\Downloads\2021-03-19-justificatif-de-deplacement-professionnel.pdf 2021-04-05 19:36 - 2021-04-05 19:36 - 000055112 _____ C:\Users\flosal\Downloads\03-04-2021-attestation-de-deplacement-derogatoire.pdf 2021-04-05 19:36 - 2021-04-05 19:36 - 000054628 _____ C:\Users\flosal\Downloads\2021-03-19-justificatif-de-deplacement-scolaire.pdf 2021-04-04 20:46 - 2021-04-04 20:46 - 003273368 _____ (Nicolas Coolman) C:\Users\flosal\ZHPDiag3.exe 2021-04-04 20:08 - 2021-04-04 20:08 - 000011353 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-04-04 19:20 - 2021-04-04 19:20 - 000000000 ____D C:\WINDOWS\system32\tmp0000175d 2021-04-04 16:04 - 2021-04-04 16:04 - 000000020 ___SH C:\Users\flosal\ntuser.ini 2021-04-04 15:12 - 2021-04-04 14:56 - 000000000 ____D C:\Windows.old 2021-04-04 15:04 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2021-04-04 14:58 - 2021-04-04 14:58 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-04-04 14:54 - 2021-04-11 17:39 - 000004176 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{FFEB563F-C563-4467-BE25-0F1D9D0D89ED} 2021-04-04 14:54 - 2021-04-09 15:17 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2021-04-04 14:54 - 2021-04-04 14:55 - 000003516 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-04-04 14:54 - 2021-04-04 14:55 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2565604041-4069925371-3295733377-1024 2021-04-04 14:54 - 2021-04-04 14:55 - 000002772 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task v2 2021-04-04 14:54 - 2021-04-04 14:54 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-04-04 14:54 - 2021-04-04 14:54 - 000003292 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-04-04 14:54 - 2021-04-04 14:54 - 000003118 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2021-04-04 14:54 - 2021-04-04 14:54 - 000002978 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2021-04-04 14:54 - 2021-04-04 14:54 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2565604041-4069925371-3295733377-500 2021-04-04 14:54 - 2021-04-04 14:54 - 000002660 _____ C:\WINDOWS\system32\Tasks\Mises à jours de SmartLink Desktop 3 2021-04-04 14:54 - 2021-04-04 14:54 - 000002598 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2021-04-04 14:54 - 2021-04-04 14:54 - 000002304 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_PushButton 2021-04-04 14:54 - 2021-04-04 14:54 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2021-04-04 14:54 - 2021-04-04 14:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Dell 2021-04-04 14:54 - 2021-04-04 14:54 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2021-04-04 14:52 - 2021-04-04 14:54 - 000022863 _____ C:\WINDOWS\diagwrn.xml 2021-04-04 14:52 - 2021-04-04 14:54 - 000022863 _____ C:\WINDOWS\diagerr.xml 2021-04-04 14:40 - 2021-04-04 14:40 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-04-04 14:40 - 2021-04-04 14:40 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-04-04 14:40 - 2021-04-04 14:40 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2021-04-04 14:40 - 2021-04-04 14:40 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-04-04 14:40 - 2021-04-04 14:40 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-04-04 14:40 - 2021-04-04 14:40 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2021-04-04 14:40 - 2021-04-04 14:40 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-04-04 14:40 - 2021-04-04 14:40 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2021-04-04 14:40 - 2021-04-04 14:40 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-04-04 14:40 - 2021-04-04 14:40 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-04-04 14:39 - 2021-04-04 14:39 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-04-04 14:39 - 2021-04-04 14:39 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-04-04 14:39 - 2021-04-04 14:39 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-04-04 14:39 - 2021-04-04 14:39 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-04-04 14:39 - 2021-04-04 14:39 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-04-04 14:39 - 2021-04-04 14:39 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-04-04 14:39 - 2021-04-04 14:39 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-04-04 14:39 - 2021-04-04 14:39 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-04-04 14:38 - 2021-04-04 14:38 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-04-04 14:38 - 2021-04-04 14:38 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-04-04 14:38 - 2021-04-04 14:38 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-04-04 14:38 - 2021-04-04 14:38 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-04-04 14:38 - 2021-04-04 14:38 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-04-04 14:38 - 2021-04-04 14:38 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-04-04 14:38 - 2021-04-04 14:38 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-04-04 14:38 - 2021-04-04 14:38 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-04-04 14:38 - 2021-04-04 14:38 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-04-04 14:38 - 2021-04-04 14:38 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2021-04-04 14:37 - 2021-04-11 07:36 - 002171964 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-04-04 14:37 - 2021-04-04 14:37 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-04-04 14:37 - 2021-04-04 14:37 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2021-04-04 14:37 - 2021-04-04 14:37 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-04-04 14:37 - 2021-04-04 14:37 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-04-04 14:37 - 2021-04-04 14:37 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-04-04 14:37 - 2021-04-04 14:37 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-04-04 14:37 - 2021-04-04 14:37 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-04-04 14:36 - 2021-04-04 14:36 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-04-04 14:36 - 2021-04-04 14:36 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-04-04 14:36 - 2021-04-04 14:36 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2021-04-04 14:36 - 2021-04-04 14:36 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-04-04 14:36 - 2021-04-04 14:36 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-04-04 14:36 - 2021-04-04 14:36 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2021-04-04 14:36 - 2021-04-04 14:36 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2021-04-04 14:35 - 2021-04-04 14:35 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-04-04 14:35 - 2021-04-04 14:35 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-04-04 14:35 - 2021-04-04 14:35 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-04-04 14:35 - 2021-04-04 14:35 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-04-04 14:35 - 2021-04-04 14:35 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-04-04 14:35 - 2021-04-04 14:35 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-04-04 14:35 - 2021-04-04 14:35 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-04-04 14:35 - 2021-04-04 14:35 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2021-04-04 14:34 - 2021-04-04 14:34 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-04-04 14:34 - 2021-04-04 14:34 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll 2021-04-04 14:34 - 2021-04-04 14:34 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-04-04 14:34 - 2021-04-04 14:34 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-04-04 14:34 - 2021-04-04 14:34 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2021-04-04 14:34 - 2021-04-04 14:34 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2021-04-04 14:33 - 2021-04-04 14:33 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-04-04 14:33 - 2021-04-04 14:33 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-04-04 14:33 - 2021-04-04 14:33 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-04-04 14:33 - 2021-04-04 14:33 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2021-04-04 14:33 - 2021-04-04 14:33 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-04-04 14:20 - 2021-04-06 11:10 - 000000000 ____D C:\Users\DefaultAppPool 2021-04-04 14:20 - 2021-04-04 20:46 - 000000000 ____D C:\Users\flosal 2021-04-04 14:20 - 2021-04-04 14:37 - 000000000 ____D C:\Users\AdminSoS 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Voisinage réseau 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Voisinage d'impression 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Modèles 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Mes documents 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Menu Démarrer 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Documents\Mes vidéos 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Documents\Mes images 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\Documents\Ma musique 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\flosal\AppData\Local\Historique 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage réseau 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Voisinage d'impression 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Modèles 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Mes documents 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Menu Démarrer 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes vidéos 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Mes images 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\Documents\Ma musique 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historique 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Voisinage réseau 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Voisinage d'impression 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Modèles 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Mes documents 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Menu Démarrer 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Documents\Mes vidéos 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Documents\Mes images 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\Documents\Ma musique 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes 2021-04-04 14:20 - 2021-04-04 14:20 - 000000000 _SHDL C:\Users\AdminSoS\AppData\Local\Historique 2021-04-04 14:20 - 2019-12-07 11:10 - 000001105 _____ C:\Users\flosal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-04-04 14:20 - 2019-12-07 11:10 - 000001105 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-04-04 14:20 - 2019-12-07 11:10 - 000001105 _____ C:\Users\AdminSoS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-04-04 14:19 - 2021-04-04 14:19 - 000000000 ____D C:\Program Files\Waves 2021-04-04 14:19 - 2019-10-15 14:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2021-04-04 14:19 - 2019-04-18 19:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2021-04-04 14:17 - 2017-11-07 18:08 - 000099832 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\Program Files\MSBuild 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-04-04 14:15 - 2021-04-04 14:15 - 000000000 ____D C:\inetpub 2021-04-04 14:13 - 2021-04-09 00:36 - 000008192 ___SH C:\DumpStack.log.tmp 2021-04-04 11:21 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\tmp00000ab1 2021-04-03 20:08 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\tmp000069e1 2021-04-03 17:56 - 2021-04-04 16:04 - 000000000 ___DC C:\WINDOWS\Panther 2021-04-03 15:14 - 2021-04-03 17:49 - 000000000 ___HD C:\$GetCurrent 2021-04-03 15:14 - 2021-04-03 15:14 - 000000731 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Assistant Mise à jour de Windows 10.lnk 2021-04-03 15:14 - 2021-04-03 15:14 - 000000719 _____ C:\Users\flosal\Desktop\Assistant Mise à jour de Windows 10.lnk 2021-04-02 22:06 - 2021-04-02 22:06 - 000000107 ____H C:\Users\flosal\Desktop\.~lock.rapport ziag.odt# 2021-04-02 22:05 - 2021-04-02 22:05 - 000000107 ____H C:\Users\flosal\Desktop\.~lock.echelle_evaluation_humeur (1).docx# 2021-04-01 16:14 - 2021-04-01 16:14 - 000444528 _____ C:\Users\flosal\Downloads\report_LUDOVIC_12_11_2020-31_03_2021_fr (2).pdf 2021-04-01 16:01 - 2021-04-01 16:02 - 000444528 _____ C:\Users\flosal\Downloads\report_LUDOVIC_12_11_2020-31_03_2021_fr (1).pdf 2021-04-01 16:01 - 2021-04-01 16:01 - 000444528 _____ C:\Users\flosal\Downloads\report_LUDOVIC_12_11_2020-31_03_2021_fr.pdf 2021-03-31 18:19 - 2021-03-31 18:19 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03 (3).pdf 2021-03-31 18:17 - 2021-03-31 18:17 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03 (2).pdf 2021-03-31 18:13 - 2021-03-31 18:14 - 000000000 ____D C:\Users\flosal\Desktop\ventil’tech 2021-03-31 18:12 - 2021-03-31 18:12 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03 (1).pdf 2021-03-31 18:07 - 2021-03-31 18:07 - 000545553 _____ C:\Users\flosal\Downloads\module E Ventil'Tech - A4 V03.pdf 2021-03-30 22:52 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\tmp000026cc 2021-03-30 15:03 - 2021-03-30 15:03 - 000364463 _____ C:\Users\flosal\Downloads\DEBON LEOPOLD 30 03 21 OBS.pdf 2021-03-29 17:11 - 2021-03-29 17:11 - 000308494 _____ C:\Users\flosal\Downloads\MESNIL HERVE 29 03 21 OBS (1).pdf 2021-03-29 17:09 - 2021-03-29 17:09 - 000308494 _____ C:\Users\flosal\Downloads\MESNIL HERVE 29 03 21 OBS.pdf 2021-03-27 19:50 - 2021-03-27 19:50 - 005526235 _____ C:\Users\flosal\Downloads\VIDEO-2021-03-15-19-31-45_0 (1).mp4 2021-03-27 19:47 - 2021-03-27 19:47 - 005526235 _____ C:\Users\flosal\Downloads\VIDEO-2021-03-15-19-31-45_0.mp4 2021-03-27 10:59 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\tmp00003ed1 2021-03-25 10:18 - 2021-03-25 10:18 - 000351535 _____ C:\Users\flosal\Downloads\MEZZADRI GUY 25 03 21 OBS.pdf 2021-03-25 10:07 - 2021-04-04 15:12 - 000000000 ____D C:\WINDOWS\system32\tmp00003fee 2021-03-24 15:14 - 2021-03-24 15:14 - 000020035 _____ C:\Users\flosal\Downloads\3000107177-right window envelop.pdf 2021-03-21 20:44 - 2021-03-21 20:44 - 000043394 _____ C:\Users\flosal\Downloads\F009824.gerX.pdf_immobi03.36.pdf 2021-03-21 20:37 - 2021-03-21 20:37 - 010042880 _____ C:\Users\flosal\Downloads\VID-20210222-WA0001.mp4 2021-03-12 14:24 - 2021-03-12 14:24 - 1102105055 _____ C:\WINDOWS\MEMORY.DMP ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2021-04-11 21:12 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2021-04-11 21:10 - 2020-11-19 00:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-04-11 20:49 - 2020-11-23 22:51 - 000000000 ____D C:\Program Files\Bitdefender Agent 2021-04-11 20:48 - 2020-10-29 21:18 - 000000000 ____D C:\ProgramData\bdkitinstaller 2021-04-11 20:46 - 2020-11-23 22:53 - 000000000 ____D C:\ProgramData\Bitdefender Home Scanner 2021-04-11 20:46 - 2020-11-23 22:53 - 000000000 ____D C:\Program Files\Bitdefender Home Scanner 2021-04-11 20:24 - 2021-01-14 16:37 - 000000000 ____D C:\Program Files\CCleaner 2021-04-11 09:47 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-04-11 09:33 - 2017-10-06 04:01 - 000000000 __SHD C:\Users\flosal\IntelGraphicsProfiles 2021-04-11 09:33 - 2017-04-07 14:36 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2021-04-11 07:36 - 2019-12-07 16:50 - 000866684 _____ C:\WINDOWS\system32\perfh00C.dat 2021-04-11 07:36 - 2019-12-07 16:50 - 000177998 _____ C:\WINDOWS\system32\perfc00C.dat 2021-04-10 12:42 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-04-10 12:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-04-10 07:21 - 2020-11-19 01:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-04-10 07:19 - 2019-11-09 21:11 - 000000000 ____D C:\Users\flosal\AppData\Roaming\vlc 2021-04-09 21:39 - 2020-12-15 15:08 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER FLO 2021-04-09 21:39 - 2020-11-12 23:54 - 000000000 ____D C:\Users\flosal\AppData\Local\ESET 2021-04-09 16:18 - 2017-10-13 16:45 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER PATIENT PPC FLORIAN 2021-04-09 11:06 - 2018-06-22 13:27 - 000000000 ____D C:\Users\flosal\Desktop\CAPNO 2021-04-09 10:57 - 2018-09-03 15:03 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER PATIENT VNI FLORIAN 2021-04-09 10:43 - 2019-11-27 18:55 - 000000000 ____D C:\Users\flosal\AppData\Local\CrashDumps 2021-04-09 00:40 - 2020-10-29 22:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender Endpoint Security Tools 2021-04-09 00:38 - 2017-04-10 16:20 - 000000000 ____D C:\ProgramData\firebird 2021-04-09 00:36 - 2020-11-19 01:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-04-08 22:23 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-04-08 17:27 - 2018-07-10 10:20 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER MUTUELLE 2021-04-08 15:28 - 2017-11-15 20:25 - 000000000 ____D C:\Users\flosal\Desktop\OXYMETRIE 2021-04-08 15:16 - 2020-08-14 10:50 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER PATIENT CS FLORIAN 2021-04-08 07:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-04-08 07:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat 2021-04-06 23:56 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-04-06 22:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-04-05 21:55 - 2021-01-21 09:12 - 000000000 ____D C:\Users\flosal\AppData\Roaming\ZHP 2021-04-04 20:24 - 2020-11-19 00:44 - 000372680 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-04-04 20:20 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-04-04 20:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-04-04 20:17 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-04-04 20:16 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2021-04-04 20:05 - 2020-11-19 01:46 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-04-04 19:21 - 2018-08-03 11:40 - 000000000 ____D C:\Users\flosal\AppData\Local\PlaceholderTileLogoFolder 2021-04-04 18:33 - 2020-09-30 21:26 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-04-04 16:24 - 2017-10-06 04:01 - 000000000 ____D C:\Users\flosal\AppData\Local\Packages 2021-04-04 16:23 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-04-04 16:05 - 2018-05-31 23:21 - 000000000 ___RD C:\Users\flosal\3D Objects 2021-04-04 15:13 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2021-04-04 15:13 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2021-04-04 15:12 - 2021-03-06 09:44 - 000000000 ____D C:\WINDOWS\system32\tmp00004ccd 2021-04-04 15:12 - 2021-03-04 00:27 - 000000000 ____D C:\WINDOWS\system32\tmp000027f9 2021-04-04 15:12 - 2021-03-01 16:33 - 000000000 ____D C:\WINDOWS\system32\tmp00004910 2021-04-04 15:12 - 2021-02-27 08:42 - 000000000 ____D C:\WINDOWS\system32\tmp00006b42 2021-04-04 15:12 - 2021-02-26 09:58 - 000000000 ____D C:\WINDOWS\system32\tmp000019fe 2021-04-04 15:12 - 2021-02-25 09:52 - 000000000 ____D C:\WINDOWS\system32\tmp000005b5 2021-04-04 15:12 - 2021-02-24 09:12 - 000000000 ____D C:\WINDOWS\system32\tmp000026ba 2021-04-04 15:12 - 2021-02-11 14:30 - 000000000 ____D C:\WINDOWS\system32\tmp000047bf 2021-04-04 15:12 - 2021-02-10 11:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Care Orchestrator Essence 2021-04-04 15:12 - 2021-01-27 21:19 - 000000000 ____D C:\WINDOWS\system32\tmp0000451e 2021-04-04 15:12 - 2021-01-26 11:35 - 000000000 ____D C:\WINDOWS\system32\tmp0000546a 2021-04-04 15:12 - 2021-01-23 09:07 - 000000000 ____D C:\WINDOWS\system32\tmp00005828 2021-04-04 15:12 - 2021-01-22 19:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DbDefence 2021-04-04 15:12 - 2021-01-22 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2017 2021-04-04 15:12 - 2021-01-15 09:13 - 000000000 ____D C:\WINDOWS\system32\tmp00003eae 2021-04-04 15:12 - 2021-01-14 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-04-04 15:12 - 2021-01-11 20:47 - 000000000 ____D C:\WINDOWS\system32\tmp00000476 2021-04-04 15:12 - 2021-01-08 14:47 - 000000000 ____D C:\WINDOWS\system32\tmp000042a0 2021-04-04 15:12 - 2021-01-06 09:57 - 000000000 ____D C:\WINDOWS\system32\tmp00000c25 2021-04-04 15:12 - 2021-01-01 19:56 - 000000000 ____D C:\WINDOWS\system32\tmp0000531a 2021-04-04 15:12 - 2021-01-01 17:42 - 000000000 ____D C:\WINDOWS\system32\tmp00000867 2021-04-04 15:12 - 2020-12-18 15:16 - 000000000 ____D C:\WINDOWS\system32\tmp000077b9 2021-04-04 15:12 - 2020-12-16 09:06 - 000000000 ____D C:\WINDOWS\system32\tmp00003342 2021-04-04 15:12 - 2020-12-10 12:55 - 000000000 ____D C:\WINDOWS\system32\tmp000014de 2021-04-04 15:12 - 2020-12-06 07:52 - 000000000 ____D C:\WINDOWS\system32\tmp00002e35 2021-04-04 15:12 - 2020-11-26 09:57 - 000000000 ____D C:\WINDOWS\system32\tmp0000035a 2021-04-04 15:12 - 2020-11-26 09:53 - 000000000 ____D C:\WINDOWS\system32\tmp00005be5 2021-04-04 15:12 - 2020-11-25 22:07 - 000000000 ____D C:\WINDOWS\system32\tmp000051db 2021-04-04 15:12 - 2020-11-24 08:40 - 000000000 ____D C:\WINDOWS\system32\tmp0000792d 2021-04-04 15:12 - 2020-11-19 01:48 - 000000000 ____D C:\ProgramData\Packages 2021-04-04 15:12 - 2020-11-19 01:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-04-04 15:12 - 2020-11-14 13:54 - 000000000 ____D C:\WINDOWS\system32\tmp00005d13 2021-04-04 15:12 - 2020-11-12 20:02 - 000000000 ____D C:\WINDOWS\system32\tmp00006b0e 2021-04-04 15:12 - 2020-11-12 12:41 - 000000000 ____D C:\WINDOWS\system32\tmp00006612 2021-04-04 15:12 - 2020-11-12 08:55 - 000000000 ____D C:\WINDOWS\system32\tmp00003482 2021-04-04 15:12 - 2020-11-02 16:34 - 000000000 ____D C:\WINDOWS\system32\tmp000030d6 2021-04-04 15:12 - 2020-10-29 22:52 - 000000000 ____D C:\WINDOWS\system32\tmp00002f97 2021-04-04 15:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-04-04 15:12 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-04-04 15:12 - 2019-06-18 18:14 - 000000000 ____D C:\Program Files\UNP 2021-04-04 15:12 - 2018-09-20 09:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Radiometer 2021-04-04 15:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-04-04 15:12 - 2017-04-24 16:59 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2021-04-04 15:12 - 2017-04-24 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Löwenstein Medical Technology 2021-04-04 15:12 - 2017-04-24 08:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zimbra Desktop 2021-04-04 15:12 - 2017-04-13 10:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2021-04-04 15:12 - 2017-04-11 14:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2021-04-04 15:12 - 2017-04-11 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\COVIDIEN 2021-04-04 15:12 - 2017-04-11 13:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2012 2021-04-04 15:12 - 2017-04-11 12:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DreamStar Analyze 2021-04-04 15:12 - 2017-04-11 12:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Silverlining3 2021-04-04 15:12 - 2017-04-11 12:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V-STATS 2021-04-04 15:12 - 2017-04-11 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Weinmann 2021-04-04 15:12 - 2017-04-11 11:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 R2 2021-04-04 15:12 - 2017-04-11 09:57 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2021-04-04 15:12 - 2017-04-11 09:57 - 000000000 ____D C:\WINDOWS\system32\1033 2021-04-04 15:12 - 2017-04-11 09:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2021-04-04 15:12 - 2017-04-10 13:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.2 2021-04-04 15:12 - 2017-04-10 12:35 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-04-04 15:12 - 2017-04-07 15:52 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2021-04-04 15:12 - 2017-04-07 14:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2021-04-04 15:12 - 2017-04-07 14:36 - 000000000 ____D C:\Program Files\Intel 2021-04-04 15:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Resources 2021-04-04 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Help 2021-04-04 15:04 - 2019-07-01 16:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ResMed 2021-04-04 15:04 - 2017-04-13 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ingenico 2021-04-04 15:04 - 2017-04-11 14:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiring 2021-04-04 15:04 - 2017-04-11 14:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nonin Medical, Inc 2021-04-04 15:04 - 2017-04-11 14:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BreasMedical 2021-04-04 15:04 - 2017-04-11 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeVilbiss Healthcare 2021-04-04 15:04 - 2017-04-11 12:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Somnetics 2021-04-04 15:04 - 2017-04-11 10:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Respironics 2021-04-04 15:04 - 2017-04-10 16:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fisher & Paykel Healthcare 2021-04-04 15:04 - 2017-04-10 13:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elaborate Bytes 2021-04-04 15:04 - 2017-04-07 14:33 - 000000000 ____D C:\Program Files\Realtek 2021-04-04 15:04 - 2017-04-07 14:32 - 000000000 ____D C:\Program Files\STMicroelectronics 2021-04-04 14:58 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2021-04-04 14:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-04-04 14:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration 2021-04-04 14:55 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT 2021-04-04 14:54 - 2020-11-19 01:46 - 000003560 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-04-04 14:54 - 2020-11-19 01:46 - 000003336 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-04-04 14:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-04-04 14:50 - 2019-12-07 16:53 - 000000000 ___SD C:\WINDOWS\system32\AppV 2021-04-04 14:50 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-04-04 14:50 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2021-04-04 14:50 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-04-04 14:39 - 2018-05-31 23:09 - 000023208 _____ C:\WINDOWS\system32\emptyregdb.dat 2021-04-04 14:27 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-04-04 14:23 - 2017-04-07 13:35 - 000000000 ____D C:\Users\AdminSoS\AppData\Local\Packages 2021-04-04 14:20 - 2020-11-19 00:44 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2021-04-04 14:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2021-04-04 14:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-04-04 14:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2021-04-04 14:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2021-04-04 14:19 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-04-04 14:19 - 2017-04-07 14:34 - 000000000 ____D C:\WINDOWS\system32\RTCOM 2021-04-04 14:19 - 2017-04-07 14:33 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2021-04-04 14:19 - 2017-04-07 14:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2021-04-04 14:18 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup 2021-04-04 14:18 - 2017-04-07 14:36 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat 2021-04-04 14:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-04-04 14:15 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-04-03 17:56 - 2019-11-01 10:14 - 000000036 _____ C:\WINDOWS\progress.ini 2021-04-03 17:49 - 2019-10-30 08:30 - 000000000 ____D C:\Windows10Upgrade 2021-04-01 19:22 - 2017-10-13 16:45 - 000000000 ____D C:\Users\flosal\Desktop\NOTE DE FRAIS FLORIAN 2021-04-01 16:15 - 2017-04-10 13:50 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-04-01 16:13 - 2017-10-06 04:03 - 000000000 ____D C:\Users\flosal\AppData\Roaming\prismaTS 2021-04-01 15:50 - 2017-04-24 16:48 - 000000000 ____D C:\ProgramData\prismaTS 2021-04-01 13:32 - 2017-10-13 16:45 - 000000000 ____D C:\Users\flosal\Desktop\DOSSIER CPAM PATIENT FLORIAN 2021-04-01 08:59 - 2017-04-24 16:16 - 000000000 ____D C:\prismaServerFiles 2021-03-29 19:49 - 2020-10-29 22:11 - 000641728 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\trufos.sys 2021-03-29 19:48 - 2020-10-29 22:49 - 002718744 _____ (Bitdefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\atc.sys 2021-03-29 19:48 - 2020-10-29 22:49 - 000802976 _____ (Bitdefender) C:\WINDOWS\system32\Drivers\bddci.sys 2021-03-29 19:48 - 2020-10-29 22:49 - 000488592 _____ (BitDefender S.R.L. Bucharest, ROMANIA) C:\WINDOWS\system32\Drivers\gemma.sys 2021-03-29 19:48 - 2020-10-29 22:49 - 000009993 _____ C:\WINDOWS\system32\Drivers\gemma.cat 2021-03-29 19:48 - 2020-10-29 22:49 - 000009980 _____ C:\WINDOWS\system32\Drivers\bddci.cat 2021-03-29 19:48 - 2020-10-29 22:49 - 000009954 _____ C:\WINDOWS\system32\Drivers\atc.cat 2021-03-27 10:45 - 2020-01-15 21:21 - 000000000 ___RD C:\Users\flosal\Desktop\SAV 2021-03-23 01:42 - 2020-09-30 21:26 - 000470864 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll 2021-03-23 01:41 - 2020-09-30 21:26 - 000734008 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll 2021-03-22 14:35 - 2017-10-13 14:09 - 000000000 ____D C:\Users\flosal\AppData\Local\PDFCreator 2021-03-21 20:10 - 2017-04-21 15:29 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-03-21 20:04 - 2020-11-12 23:54 - 000000799 _____ C:\Users\flosal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2021-03-13 13:12 - 2017-10-06 04:04 - 000000000 ___RD C:\Users\flosal\OneDrive ==================== Fichiers à la racine de certains dossiers ======== 2021-04-04 20:46 - 2021-04-04 20:46 - 003273368 _____ (Nicolas Coolman) C:\Users\flosal\ZHPDiag3.exe 2015-01-20 23:14 - 2015-01-20 23:14 - 001621504 _____ (Somnetics) C:\Program Files\Somnetics Sleep Apnea Therapy Management Utility.exe 2020-11-01 17:34 - 2020-12-16 01:05 - 000146756 _____ () C:\Users\flosal\AppData\Local\ars.cache 2020-11-01 17:34 - 2020-12-16 01:05 - 000683133 _____ () C:\Users\flosal\AppData\Local\census.cache 2020-04-30 17:30 - 2020-04-30 17:30 - 000000036 _____ () C:\Users\flosal\AppData\Local\housecall.guid.cache ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================