Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 25-03-2022 Exécuté par quign (administrateur) sur DESKTOP-1M9UE6M (Gigabyte Technology Co., Ltd. GA-970A-UD3) (25-03-2022 16:48:39) Exécuté depuis C:\Users\quign\Desktop Profils chargés: quign Plate-forme: Microsoft Windows 10 Professionnel Version 21H2 19044.1586 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe (C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe (C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\MKCHelper.exe (C:\Program Files\RogueKiller\RogueKillerSvc.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKiller64.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCopyAccelerator.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <20> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe (services.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKillerSvc.exe (services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Print\Monitors\EPSON XP-332 335 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBPEE.DLL [180224 2014-03-05] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\99.0.4844.82\Installer\chrmstp.exe [2022-03-23] (Google LLC -> Google LLC) BootExecute: autocheck autochk * sdnclean64.exe HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {04203D62-645A-43DB-98C2-383A3542A5F8} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {067FF720-3719-4B45-AB0F-5348084E39AA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0BEB209E-A464-4F6A-93A8-7ECA13F8397A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {1A1D8DE4-A917-4682-BE2A-B3103A7AFDC9} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463176 2021-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {246D3DF0-AF99-4088-937D-47B180CD6867} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2463176 2021-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {39C014A1-5089-4053-BE55-F1F423C3F827} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-03-04] (Google LLC -> Google LLC) Task: {3D493D55-A692-4BE6-89DC-DA428BFB11A6} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938368 2021-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {4ABF21AC-CEC1-4550-A638-9D51037B2B5E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [62752 2021-05-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {59B6CC75-A53C-4388-A381-959C1549DE51} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [269272 2021-07-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {5EA32C73-BC91-44C9-A77A-572FA383DB85} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1714648 2021-07-06] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {60863BCA-2ACA-4DBC-A63B-90CB7C89306A} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1938368 2021-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {64EB6564-2074-4AB9-ABD0-953E39B49AD6} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {9C5E501D-B347-4E00-ABBD-9133272F5047} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-03-04] (Google LLC -> Google LLC) Task: {AF8EC2D4-EFCF-424B-98D8-B63B613E7716} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {AFE67E25-1457-4C02-98F6-262704CAED82} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B2444755-3075-47EC-8868-F544862B4300} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {C28DA350-5A5B-4FF4-A519-AAEE535FC3B3} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation) Task: {D0B14FAC-3DB7-40C2-B9A2-A41248C31E1D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E540101F-7C32-4065-9E33-2C52657188F5} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-02-14] (Piriform Software Ltd -> Piriform) Task: {E9832163-1B23-462B-A1E0-42A910D21C34} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2323928 2021-02-02] (Microsoft Corporation -> Microsoft) Task: {EDEA0F35-59DA-4862-8362-9155C4C17582} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [32704 2021-02-02] (Microsoft Corporation -> Microsoft) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{672bac3b-169e-41a0-bccd-9cdb0195ef34}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\quign\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-18] FireFox: ======== FF DefaultProfile: 710p40cr.default FF ProfilePath: C:\Users\quign\AppData\Roaming\Mozilla\Firefox\Profiles\710p40cr.default [2021-03-04] FF ProfilePath: C:\Users\quign\AppData\Roaming\Mozilla\Firefox\Profiles\kojilv75.default-release-1645448139807 [2022-03-20] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2022-03-16] [non signé] FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2022-03-16] [] [non signé] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\quign\AppData\Local\Google\Chrome\User Data\Default [2022-03-25] CHR StartupUrls: Default -> "hxxp://eurosport.fr/" CHR Session Restore: Default -> est activé. CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-03-16] CHR Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-03-16] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-16] CHR Extension: (Gmail) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-03-07] CHR Profile: C:\Users\quign\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-03-16] CHR Profile: C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-03-23] CHR Extension: (Slides) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-03-16] CHR Extension: (Docs) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2022-03-16] CHR Extension: (Google Drive) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-12-13] CHR Extension: (YouTube) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-12-13] CHR Extension: (Sheets) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-03-16] CHR Extension: (Google Docs hors connexion) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-03-19] CHR Extension: (Web Safety) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mfhcmdonhekjhfbjmeacdjbhlfgpjabp [2022-03-16] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-16] CHR Extension: (Gmail) - C:\Users\quign\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-12-13] CHR Profile: C:\Users\quign\AppData\Local\Google\Chrome\User Data\System Profile [2022-03-16] CHR HKLM-x32\...\Chrome\Extension: [mfhcmdonhekjhfbjmeacdjbhlfgpjabp] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 EpsonScanSvc; C:\WINDOWS\system32\EscSvc64.exe [144560 2012-05-16] (SEIKO EPSON Corporation -> Seiko Epson Corporation) S4 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.) R4 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8019640 2022-03-12] (Malwarebytes Inc -> Malwarebytes) S3 myCANAL Server; C:\ProgramData\myCANAL\nssm.exe [294912 2019-06-26] () [Fichier non signé] S3 MyEpson Portal Service; C:\Program Files (x86)\EPSON\MyEpson Portal\mepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2563288 2022-02-22] (Electronic Arts, Inc. -> Electronic Arts) S4 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3481824 2022-02-22] (Electronic Arts, Inc. -> Electronic Arts) R2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [14419440 2022-03-07] (ADLICE -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6228008 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe [3046608 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe [132504 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33216 2021-10-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R3 CSRBC; C:\WINDOWS\System32\Drivers\csrbcx64.sys [38400 2021-09-01] (Microsoft Windows Hardware Compatibility Publisher -> CSR plc.) S3 HidGuardian; C:\WINDOWS\System32\drivers\HidGuardian.sys [35728 2018-12-02] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [221096 2022-03-12] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-08-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-10-01] (Malwarebytes Inc -> Malwarebytes) R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [12152784 2021-08-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation) U5 TMUSB; C:\WINDOWS\System32\DRIVERS\TMUSB64.SYS [63096 2020-08-25] (SEIKO EPSON Corporation Test Signing -> Seiko Epson Corporation) U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [38032 2022-03-23] (Adlice -> ) R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [439544 2022-03-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-03-15] (Microsoft Windows -> Microsoft Corporation) R2 WiseFs; C:\Windows\WiseFs64.sys [62200 2021-05-27] (Lespeed Technology Co., Ltd -> WiseCleaner.com) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-25 16:48 - 2022-03-25 16:50 - 000019403 _____ C:\Users\quign\Desktop\FRST.txt 2022-03-25 16:48 - 2022-03-25 16:48 - 000000000 ____D C:\Users\quign\Desktop\FRST-OlderVersion 2022-03-24 18:56 - 2022-03-25 07:39 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-03-23 17:34 - 2022-03-23 17:34 - 000000000 ___HD C:\$WinREAgent 2022-03-23 08:15 - 2022-03-23 08:15 - 000038032 _____ C:\WINDOWS\system32\Drivers\truesight.sys 2022-03-22 18:07 - 2022-03-22 18:07 - 000001345 _____ C:\Users\quign\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk 2022-03-22 18:07 - 2022-03-22 18:07 - 000000000 ____D C:\Users\quign\AppData\Local\PCHealthCheck 2022-03-22 18:04 - 2022-03-22 18:04 - 014233600 _____ C:\Users\quign\Downloads\WindowsPCHealthCheckSetup.msi 2022-03-22 18:03 - 2022-03-22 18:03 - 000000000 ___HD C:\$GetCurrent 2022-03-22 18:03 - 2022-03-22 18:03 - 000000000 ____D C:\Program Files (x86)\WindowsInstallationAssistant 2022-03-20 19:00 - 2022-03-20 19:00 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2022-03-20 18:52 - 2022-03-20 18:52 - 000000000 ____D C:\ProgramData\Piriform 2022-03-20 18:51 - 2022-03-21 15:43 - 000000000 ____D C:\Program Files\Recuva 2022-03-20 18:51 - 2022-03-20 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2022-03-20 18:38 - 2022-03-20 18:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2022-03-20 18:38 - 2022-03-20 18:38 - 000000000 ____D C:\Program Files\CrystalDiskInfo 2022-03-20 18:37 - 2022-03-20 18:37 - 004628000 _____ (Crystal Dew World ) C:\Users\quign\Downloads\CrystalDiskInfo8_15_2.exe 2022-03-20 09:19 - 2022-03-20 09:19 - 011667032 _____ (Piriform Software Ltd) C:\Users\quign\Downloads\rcsetup153.exe 2022-03-19 12:08 - 2022-03-19 12:08 - 000065589 _____ C:\Users\quign\Downloads\Shortcut.txt 2022-03-19 12:04 - 2022-03-19 12:08 - 000048060 _____ C:\Users\quign\Downloads\Addition.txt 2022-03-19 11:58 - 2022-03-19 12:08 - 000054114 _____ C:\Users\quign\Downloads\FRST.txt 2022-03-19 11:55 - 2022-03-19 11:55 - 002364928 _____ (Farbar) C:\Users\quign\Downloads\FRST64.exe 2022-03-18 10:56 - 2022-03-18 10:56 - 070260720 _____ (Eassos Co., Ltd. ) C:\Users\quign\Downloads\DGEngSetup5431328.exe 2022-03-18 10:15 - 2022-03-18 10:41 - 004278272 _____ C:\Users\quign\Desktop\budget 2020 .xls 2022-03-18 10:13 - 2022-03-25 07:53 - 001223595 _____ C:\Users\quign\Desktop\Budget 2022.xlsx 2022-03-17 15:41 - 2022-02-05 10:52 - 000000000 ____D C:\testdisk-7.2-WIP 2022-03-17 15:40 - 2022-03-17 16:47 - 029661804 _____ C:\Users\quign\Downloads\testdisk-7.2-WIP.win64.zip 2022-03-16 19:21 - 2022-03-21 08:14 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2022-03-12 10:18 - 2022-03-12 10:18 - 000221096 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-03-12 08:50 - 2022-03-12 08:50 - 000000085 _____ C:\WINDOWS\wininit.ini 2022-03-11 16:43 - 2021-10-22 09:36 - 000021180 _____ C:\Users\quign\Desktop\certificat situation administrative.pdf 2022-03-11 16:43 - 2021-10-22 09:27 - 000021180 _____ C:\Users\quign\Desktop\certificat administration.pdf 2022-03-11 16:43 - 2021-10-22 08:14 - 000021027 _____ C:\Users\quign\Desktop\facture recherche de fuite.pdf 2022-03-10 12:19 - 2022-03-10 12:19 - 000011911 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-03-10 08:44 - 2022-03-16 18:30 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2022-03-10 08:44 - 2022-03-12 08:50 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy 2022-03-10 08:44 - 2022-03-10 08:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2022-03-10 08:43 - 2022-03-10 08:43 - 069910960 _____ (Safer-Networking Ltd. ) C:\Users\quign\Downloads\spybotsd-2.7.64.0.exe 2022-03-09 17:12 - 2022-03-16 18:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClamWin Antivirus 2022-03-09 17:10 - 2022-03-09 17:11 - 236832861 _____ (alch ) C:\Users\quign\Downloads\clamwin-0.103.2.1-setup.exe 2022-03-06 20:20 - 2022-03-06 20:20 - 000000000 ____D C:\Users\quign\AppData\Local\Logitech 2022-03-06 19:40 - 2022-03-16 18:30 - 000000000 ____D C:\Program Files\Logitech Gaming Software 2022-03-06 19:39 - 2022-03-06 19:39 - 125871888 _____ (Logitech Inc.) C:\Users\quign\Desktop\LGS_9.02.65_x64_Logitech.exe 2022-03-06 11:23 - 2022-03-20 19:01 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2022-03-06 11:22 - 2022-03-06 11:22 - 000000000 ____D C:\WINDOWS\PCHEALTH 2022-03-06 11:19 - 2022-03-20 18:59 - 000000000 ____D C:\WINDOWS\SHELLNEW 2022-03-06 11:19 - 2022-03-16 16:05 - 000000000 ____D C:\Program Files\Microsoft Analysis Services 2022-03-06 11:19 - 2022-03-16 16:02 - 000000000 ____D C:\Program Files (x86)\Microsoft Analysis Services 2022-03-06 11:18 - 2022-03-16 16:02 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-03-05 12:24 - 2022-03-05 12:24 - 000195584 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2022-03-05 12:23 - 2022-03-05 12:23 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2022-03-05 12:23 - 2022-03-05 12:23 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2022-03-05 12:22 - 2022-03-05 12:22 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-03-05 12:22 - 2022-03-05 12:22 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe 2022-03-04 11:10 - 2022-03-04 11:11 - 000212214 _____ C:\WINDOWS\ntbtlog.txt 2022-03-04 10:43 - 2022-03-09 08:07 - 000003634 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-04 10:43 - 2022-03-09 08:07 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-03-03 15:33 - 2022-03-03 15:33 - 000000000 ____D C:\WINDOWS\Panther ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-03-25 16:49 - 2019-04-07 11:10 - 000000000 ____D C:\FRST 2022-03-25 16:48 - 2019-10-07 14:02 - 002365440 _____ (Farbar) C:\Users\quign\Desktop\FRST64.exe 2022-03-25 16:47 - 2021-03-04 18:03 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-25 16:46 - 2021-03-04 16:56 - 000000000 ____D C:\Users\quign\AppData\LocalLow\Mozilla 2022-03-25 16:46 - 2019-06-06 15:34 - 000000000 ____D C:\Users\quign\Desktop\Raccourcis 2022-03-25 16:06 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-25 16:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-03-25 15:58 - 2021-03-04 16:56 - 000000000 ____D C:\ProgramData\Mozilla 2022-03-25 15:57 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-25 07:47 - 2021-03-05 16:30 - 000000000 ____D C:\Program Files\CCleaner 2022-03-25 07:39 - 2022-02-21 13:55 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-03-25 07:39 - 2022-02-21 13:55 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-03-25 07:39 - 2021-03-04 18:21 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-03-24 17:10 - 2021-03-04 16:50 - 000000000 ____D C:\Users\quign\AppData\Local\Packages 2022-03-23 18:43 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-03-23 17:42 - 2021-03-04 17:35 - 000000000 ____D C:\Users\quign\AppData\Local\AMD_Common 2022-03-23 13:58 - 2021-03-04 17:46 - 000000000 ____D C:\Users\quign\AppData\Roaming\vlc 2022-03-23 08:24 - 2021-03-04 18:04 - 000002245 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-03-23 08:24 - 2021-03-04 18:04 - 000002204 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-03-23 08:14 - 2021-03-06 17:58 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-03-23 08:13 - 2020-06-07 08:17 - 000008192 ___SH C:\DumpStack.log.tmp 2022-03-22 19:25 - 2021-03-04 16:52 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2022-03-22 19:25 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-03-22 19:20 - 2021-03-06 17:54 - 001770910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-03-22 19:20 - 2019-12-07 15:50 - 000791762 _____ C:\WINDOWS\system32\perfh00C.dat 2022-03-22 19:20 - 2019-12-07 15:50 - 000149928 _____ C:\WINDOWS\system32\perfc00C.dat 2022-03-22 19:20 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-03-21 08:16 - 2021-03-06 17:41 - 000472824 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-03-20 19:00 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-03-20 18:56 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2022-03-20 18:56 - 2019-03-19 05:49 - 000000167 _____ C:\WINDOWS\win.ini 2022-03-19 18:58 - 2021-10-17 16:13 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-03-19 11:45 - 2022-02-21 13:55 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-03-18 18:07 - 2021-03-04 17:35 - 000000000 ____D C:\Users\quign\AppData\Local\CrashDumps 2022-03-18 17:53 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\FileZilla 2022-03-18 17:52 - 2019-06-06 15:34 - 000000000 ____D C:\Users\quign\Desktop\18 mars 2022-03-18 10:57 - 2021-03-06 16:02 - 000000000 ____D C:\Users\quign 2022-03-17 16:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2022-03-16 19:03 - 2022-01-31 10:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com 2022-03-16 19:03 - 2021-05-13 14:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TagScanner 2022-03-16 18:52 - 2021-03-06 17:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ___SD C:\WINDOWS\system32\AppV 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Portable Devices 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-03-16 18:50 - 2019-12-07 15:53 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2022-03-16 18:50 - 2019-12-07 15:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2022-03-16 18:50 - 2019-12-07 15:52 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2022-03-16 18:50 - 2019-12-07 15:51 - 000000000 ____D C:\WINDOWS\addins 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 __RSD C:\WINDOWS\Media 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\Nui 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\dsc 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ta-lk 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ta-in 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\si-lk 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ras 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\my-mm 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\icsxml 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ias 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\downlevel 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\am-et 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\L2Schemas 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IdentityCRL 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Cursors 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-03-16 18:50 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\Services 2022-03-16 18:50 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2022-03-16 18:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\TextInput 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\WaaS 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Licenses 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2022-03-16 18:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemApps 2022-03-16 18:44 - 2019-12-07 15:53 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2022-03-16 18:44 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Licenses 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\IME 2022-03-16 18:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\System 2022-03-16 18:44 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\system32\SMI 2022-03-16 18:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2022-03-16 18:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2022-03-16 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-03-16 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\security 2022-03-16 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\schemas 2022-03-16 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources 2022-03-16 18:31 - 2022-01-09 10:44 - 000000000 ____D C:\Users\quign\Documents\FIFA 22 2022-03-16 18:31 - 2022-01-05 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Origin 2022-03-16 18:31 - 2021-08-25 08:30 - 000000000 ____D C:\Users\quign\AppData\LocalLow\IGDump 2022-03-16 18:31 - 2021-07-08 12:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\PhotoFiltre 7 2022-03-16 18:31 - 2021-07-08 12:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 2022-03-16 18:31 - 2021-04-01 15:43 - 000000000 ____D C:\Users\quign\AppData\Roaming\Mp3tag 2022-03-16 18:31 - 2021-03-05 17:49 - 000000000 ____D C:\Users\quign\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\TagScanner 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goto.Games 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Macromedia 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Epson 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\dvdcss 2022-03-16 18:31 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Burnaware 2022-03-16 18:31 - 2021-03-04 17:46 - 000000000 ____D C:\Users\quign\AppData\Roaming\ZHP 2022-03-16 18:31 - 2021-03-04 17:46 - 000000000 ____D C:\Users\quign\AppData\Roaming\Wise Folder Hider 2022-03-16 18:31 - 2021-03-04 17:46 - 000000000 ____D C:\Users\quign\AppData\Roaming\AMD 2022-03-16 18:31 - 2021-03-04 17:45 - 000000000 ____D C:\Users\quign\AppData\Roaming\TagScanner_old 2022-03-16 18:31 - 2021-03-04 17:43 - 000000000 ____D C:\Users\quign\AppData\Local\Microsoft Help 2022-03-16 18:31 - 2021-03-04 17:34 - 000000000 ____D C:\Users\quign\AppData\Local\wureset 2022-03-16 18:31 - 2021-03-04 17:33 - 000000000 ____D C:\Users\quign\AppData\Local\PrivaZer 2022-03-16 18:31 - 2021-03-04 17:32 - 000000000 ____D C:\Users\quign\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me 2022-03-16 18:31 - 2021-03-04 16:56 - 000000000 ____D C:\Users\quign\AppData\Roaming\Thunderbird 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PLA 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\InputMethod 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Globalization 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Containers 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Branding 2022-03-16 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2022-03-16 18:31 - 2019-06-06 15:34 - 000000000 ____D C:\Users\quign\Desktop\imprimante 2022-03-16 18:30 - 2022-02-01 18:17 - 000000000 ____D C:\Program Files\ViGEm HidGuardian 2022-03-16 18:30 - 2022-02-01 17:22 - 000000000 ____D C:\Program Files\ViGEm ViGEmBus 2022-03-16 18:30 - 2022-02-01 17:20 - 000000000 ____D C:\ProgramData\X360CE 2022-03-16 18:30 - 2022-02-01 10:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com 2022-03-16 18:30 - 2022-01-31 10:37 - 000000000 ____D C:\Program Files\Microsoft Mouse and Keyboard Center 2022-03-16 18:30 - 2022-01-13 08:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed 2022-03-16 18:30 - 2022-01-13 08:53 - 000000000 ____D C:\Program Files\WhoCrashed 2022-03-16 18:30 - 2021-12-29 16:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule 2022-03-16 18:30 - 2021-12-29 16:37 - 000000000 ____D C:\Program Files (x86)\eMule 2022-03-16 18:30 - 2021-11-05 08:14 - 000000000 ____D C:\Program Files\PCHealthCheck 2022-03-16 18:30 - 2021-09-11 09:00 - 000000000 ____D C:\Users\quign\AppData\Local\iMobie_Inc 2022-03-16 18:30 - 2021-09-11 09:00 - 000000000 ____D C:\Users\quign\.android 2022-03-16 18:30 - 2021-08-29 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Pro Settings 2022-03-16 18:30 - 2021-08-29 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Link For Windows 2022-03-16 18:30 - 2021-08-29 22:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool 2022-03-16 18:30 - 2021-07-08 12:47 - 000000000 ____D C:\Program Files (x86)\PhotoFiltre 7 2022-03-16 18:30 - 2021-05-27 16:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Folder Hider 2022-03-16 18:30 - 2021-05-16 09:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2022-03-16 18:30 - 2021-05-16 09:28 - 000000000 ____D C:\Program Files\Microsoft Silverlight 2022-03-16 18:30 - 2021-05-16 09:28 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2022-03-16 18:30 - 2021-05-15 10:10 - 000000000 ____D C:\ProgramData\myCANAL 2022-03-16 18:30 - 2021-05-13 14:14 - 000000000 ____D C:\Program Files\TagScanner 2022-03-16 18:30 - 2021-04-01 15:43 - 000000000 ____D C:\Program Files (x86)\Mp3tag 2022-03-16 18:30 - 2021-03-18 17:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber 2022-03-16 18:30 - 2021-03-18 17:25 - 000000000 ____D C:\Program Files (x86)\Audiograbber 2022-03-16 18:30 - 2021-03-18 17:19 - 000000000 ____D C:\Program Files (x86)\misc 2022-03-16 18:30 - 2021-03-18 17:19 - 000000000 ____D C:\Program Files (x86)\ACM 2022-03-16 18:30 - 2021-03-11 14:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EpsonNet 2022-03-16 18:30 - 2021-03-08 17:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software 2022-03-16 18:30 - 2021-03-08 17:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON 2022-03-16 18:30 - 2021-03-08 17:13 - 000000000 ____D C:\Program Files\Common Files\EPSON 2022-03-16 18:30 - 2021-03-06 18:03 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2022-03-16 18:30 - 2021-03-06 15:11 - 000000000 ____D C:\Program Files\MSBuild 2022-03-16 18:30 - 2021-03-06 15:11 - 000000000 ____D C:\Program Files (x86)\MSBuild 2022-03-16 18:30 - 2021-03-06 12:53 - 000000000 ____D C:\ProgramData\RogueKiller 2022-03-16 18:30 - 2021-03-06 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller 2022-03-16 18:30 - 2021-03-06 12:53 - 000000000 ____D C:\Program Files\RogueKiller 2022-03-16 18:30 - 2021-03-05 17:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2022-03-16 18:30 - 2021-03-05 17:51 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2022-03-16 18:30 - 2021-03-05 17:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2022-03-16 18:30 - 2021-03-05 17:49 - 000000000 ____D C:\Program Files (x86)\WinRAR 2022-03-16 18:30 - 2021-03-05 17:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UCheck 2022-03-16 18:30 - 2021-03-05 17:45 - 000000000 ____D C:\Program Files\UCheck 2022-03-16 18:30 - 2021-03-05 17:17 - 000000000 ____D C:\ProgramData\Package Cache 2022-03-16 18:30 - 2021-03-05 17:03 - 000000000 ____D C:\Program Files\Common Files\LogiShrd 2022-03-16 18:30 - 2021-03-05 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech 2022-03-16 18:30 - 2021-03-05 16:53 - 000000000 ____D C:\Program Files\Common Files\Logitech 2022-03-16 18:30 - 2021-03-05 16:38 - 000000000 ____D C:\Program Files (x86)\TagScanner 2022-03-16 18:30 - 2021-03-05 16:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2022-03-16 18:30 - 2021-03-05 15:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2022-03-16 18:30 - 2021-03-05 15:59 - 000000000 ____D C:\Program Files\FileZilla FTP Client 2022-03-16 18:30 - 2021-03-05 01:13 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-03-16 18:30 - 2021-03-04 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2022-03-16 18:30 - 2021-03-04 19:19 - 000000000 ____D C:\Program Files (x86)\Steam 2022-03-16 18:30 - 2021-03-04 19:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applications Serif 2022-03-16 18:30 - 2021-03-04 17:35 - 000000000 ____D C:\Users\quign\AppData\Local\Disc_Soft_Ltd 2022-03-16 18:30 - 2021-03-04 16:50 - 000000000 ___RD C:\Users\quign\3D Objects 2022-03-16 18:30 - 2021-03-04 16:49 - 000000000 ____D C:\Users\quign\AppData\Local\ConnectedDevicesPlatform 2022-03-16 18:30 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Security 2022-03-16 18:30 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2022-03-16 18:30 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows NT 2022-03-16 18:28 - 2021-06-27 08:35 - 000000000 ____D C:\WINDOWS\Minidump 2022-03-16 18:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\registration 2022-03-16 17:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Web 2022-03-16 17:40 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Vss 2022-03-16 17:35 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2022-03-16 17:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2022-03-16 17:17 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2022-03-16 17:16 - 2021-03-04 16:52 - 000000000 ____D C:\WINDOWS\system32\AMD 2022-03-16 17:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SKB 2022-03-16 16:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\rescache 2022-03-16 16:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Performance 2022-03-16 16:10 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Serif 2022-03-16 16:10 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\MediaInfo 2022-03-16 16:10 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Goto.Games 2022-03-16 16:10 - 2021-03-04 17:47 - 000000000 ____D C:\Users\quign\AppData\Roaming\Digiarty 2022-03-16 16:10 - 2021-03-04 17:34 - 000000000 ____D C:\Users\quign\AppData\Local\ZHP 2022-03-16 16:10 - 2021-03-04 17:33 - 000000000 ____D C:\Users\quign\AppData\Local\Steam 2022-03-16 16:10 - 2021-03-04 16:56 - 000000000 ____D C:\Users\quign\AppData\Roaming\Mozilla 2022-03-16 16:10 - 2021-03-04 16:50 - 000000000 ____D C:\Users\quign\AppData\Roaming\Adobe 2022-03-16 16:10 - 2021-03-04 16:50 - 000000000 ____D C:\Users\quign\AppData\Local\VirtualStore 2022-03-16 16:10 - 2020-04-01 15:16 - 000000000 ____D C:\Users\quign\Desktop\Selection 2022-03-16 16:10 - 2019-06-06 15:34 - 000000000 ____D C:\Users\quign\Desktop\Biblio 2022-03-16 16:09 - 2022-01-05 17:46 - 000000000 ____D C:\Users\quign\AppData\Local\Origin 2022-03-16 16:09 - 2021-03-04 17:32 - 000000000 ____D C:\Users\quign\AppData\Local\Mozilla 2022-03-16 16:08 - 2021-03-04 17:35 - 000000000 ____D C:\Users\quign\AppData\Local\eMule 2022-03-16 16:08 - 2021-03-04 17:11 - 000000000 ____D C:\Users\quign\AppData\Local\Google 2022-03-16 16:08 - 2021-03-04 16:55 - 000000000 ____D C:\Users\quign\AppData\Local\AMD 2022-03-16 16:07 - 2022-01-05 17:47 - 000000000 ____D C:\ProgramData\Origin 2022-03-16 16:07 - 2021-03-08 16:20 - 000000000 ____D C:\ProgramData\EPSON 2022-03-16 16:07 - 2021-03-05 17:52 - 000000000 ____D C:\Program Files\VS Revo Group 2022-03-16 16:07 - 2021-03-05 17:03 - 000000000 ____D C:\ProgramData\Logishrd 2022-03-16 16:07 - 2021-03-05 16:52 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-03-16 16:07 - 2021-03-05 08:29 - 000000000 ____D C:\Program Files\VideoLAN 2022-03-16 16:06 - 2021-03-06 15:11 - 000000000 ____D C:\Program Files\Reference Assemblies 2022-03-16 16:06 - 2021-03-04 19:03 - 000000000 ____D C:\Program Files\Serif 2022-03-16 16:05 - 2022-01-31 10:28 - 000000000 ____D C:\Program Files\Cybelsoft 2022-03-16 16:05 - 2021-04-08 14:50 - 000000000 ____D C:\Program Files\Microsoft Office 2022-03-16 16:05 - 2021-03-05 16:53 - 000000000 ____D C:\Program Files\Logitech 2022-03-16 16:05 - 2021-03-05 16:51 - 000000000 ____D C:\Program Files\Malwarebytes 2022-03-16 16:05 - 2021-03-04 18:04 - 000000000 ____D C:\Program Files\Google 2022-03-16 16:04 - 2022-01-05 18:21 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller 2022-03-16 16:04 - 2021-05-27 16:17 - 000000000 ____D C:\Program Files (x86)\Wise 2022-03-16 16:04 - 2021-03-04 16:52 - 000000000 ____D C:\Program Files\AMD 2022-03-16 16:03 - 2022-02-01 10:56 - 000000000 ____D C:\Program Files (x86)\Tweaking.com 2022-03-16 16:03 - 2021-03-06 15:11 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2022-03-16 16:03 - 2021-03-05 17:51 - 000000000 ____D C:\Program Files (x86)\Realtek 2022-03-16 16:02 - 2021-03-13 11:29 - 000000000 ____D C:\Program Files (x86)\Goto.Games 2022-03-16 16:02 - 2021-03-11 14:54 - 000000000 ____D C:\Program Files (x86)\EpsonNet 2022-03-16 16:01 - 2021-08-29 22:04 - 000000000 ____D C:\Program Files (x86)\AMD 2022-03-16 16:01 - 2021-03-08 17:21 - 000000000 ____D C:\Program Files (x86)\Epson Software 2022-03-16 16:01 - 2021-03-08 17:21 - 000000000 ____D C:\Program Files (x86)\EPSON 2022-03-16 16:00 - 2021-04-08 14:49 - 000000000 __RHD C:\MSOCache 2022-03-16 07:55 - 2021-03-04 17:34 - 000007609 _____ C:\Users\quign\AppData\Local\Resmon.ResmonCfg 2022-03-15 17:39 - 2021-03-04 16:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-03-15 16:23 - 2021-03-04 16:55 - 000000000 ____D C:\Users\quign\AppData\Local\D3DSCache 2022-03-14 17:20 - 2021-03-04 16:41 - 000000000 ____D C:\WINDOWS\CSC 2022-03-14 11:20 - 2021-03-04 17:35 - 000000000 ____D C:\Users\quign\AppData\Local\ElevatedDiagnostics 2022-03-12 17:51 - 2022-01-05 17:52 - 000000000 ____D C:\Program Files (x86)\Origin Games 2022-03-12 17:51 - 2022-01-05 17:48 - 000000000 ____D C:\Program Files (x86)\Origin 2022-03-12 09:46 - 2021-03-05 16:53 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-03-10 12:29 - 2021-03-05 01:07 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-03-10 12:25 - 2021-03-05 01:06 - 145666720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-03-10 12:18 - 2021-03-06 17:44 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-03-06 18:44 - 2022-01-05 18:21 - 000001220 _____ C:\Users\Public\Desktop\FIFA 22.lnk 2022-03-04 10:10 - 2021-03-06 17:58 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-03-02 10:20 - 2021-03-05 17:04 - 000018960 _____ (Logitech, Inc.) C:\WINDOWS\system32\Drivers\LNonPnP.sys ==================== Fichiers à la racine de certains dossiers ======== 2022-02-21 13:54 - 2022-02-21 13:54 - 000334000 _____ (Mozilla) C:\Program Files (x86)\Firefox Installer.exe 2021-03-04 17:46 - 2020-03-19 09:54 - 000007859 _____ () C:\Users\quign\AppData\Roaming\pcouffin.cat 2021-03-04 17:46 - 2020-03-19 09:54 - 000001167 _____ () C:\Users\quign\AppData\Roaming\pcouffin.inf 2021-03-04 17:46 - 2020-03-19 09:54 - 000000055 _____ () C:\Users\quign\AppData\Roaming\pcouffin.log 2021-03-04 17:46 - 2020-03-19 09:54 - 000082816 _____ (VSO Software) C:\Users\quign\AppData\Roaming\pcouffin.sys 2021-03-04 17:34 - 2022-03-16 07:55 - 000007609 _____ () C:\Users\quign\AppData\Local\Resmon.ResmonCfg ==================== FLock ============================== 2022-03-16 18:30 C:\Users\quign\AppData\Local\History ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {f9f59690-7cfb-11eb-9645-e38e820ddaac} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Chargeur de d‚marrage Windows ----------------------------- identificateur {bc24d716-371a-11e2-948d-e98d0cdf253d} device ramdisk=[C:]\Recovery\bc24d716-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d717-371a-11e2-948d-e98d0cdf253d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\bc24d716-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d717-371a-11e2-948d-e98d0cdf253d} systemroot \windows nx OptIn winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {bc24d71d-371a-11e2-948d-e98d0cdf253d} device ramdisk=[C:]\Recovery\bc24d71d-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d71e-371a-11e2-948d-e98d0cdf253d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\bc24d71d-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d71e-371a-11e2-948d-e98d0cdf253d} systemroot \windows nx OptIn winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {bc24d721-371a-11e2-948d-e98d0cdf253d} device ramdisk=[C:]\Recovery\bc24d721-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d722-371a-11e2-948d-e98d0cdf253d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\bc24d721-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d722-371a-11e2-948d-e98d0cdf253d} systemroot \windows nx OptIn winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {bc24d725-371a-11e2-948d-e98d0cdf253d} device ramdisk=[C:]\Recovery\bc24d725-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d726-371a-11e2-948d-e98d0cdf253d} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\bc24d725-371a-11e2-948d-e98d0cdf253d\Winre.wim,{bc24d726-371a-11e2-948d-e98d0cdf253d} systemroot \windows nx OptIn winpe Yes Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {f9f59693-7cfb-11eb-9645-e38e820ddaac} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {f9f59690-7cfb-11eb-9645-e38e820ddaac} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {f9f59693-7cfb-11eb-9645-e38e820ddaac} device ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{f9f59694-7cfb-11eb-9645-e38e820ddaac} path \windows\system32\winload.exe description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[C:]\Recovery\WindowsRE\Winre.wim,{f9f59694-7cfb-11eb-9645-e38e820ddaac} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {f9f59690-7cfb-11eb-9645-e38e820ddaac} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {f9f59693-7cfb-11eb-9645-e38e820ddaac} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {bc24d717-371a-11e2-948d-e98d0cdf253d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\bc24d716-371a-11e2-948d-e98d0cdf253d\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {bc24d71e-371a-11e2-948d-e98d0cdf253d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\bc24d71d-371a-11e2-948d-e98d0cdf253d\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {bc24d722-371a-11e2-948d-e98d0cdf253d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\bc24d721-371a-11e2-948d-e98d0cdf253d\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {bc24d726-371a-11e2-948d-e98d0cdf253d} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\bc24d725-371a-11e2-948d-e98d0cdf253d\boot.sdi Options de p‚riph‚rique ----------------------- identificateur {f9f59694-7cfb-11eb-9645-e38e820ddaac} description Windows Recovery ramdisksdidevice partition=C: ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================