Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022 Exécuté par Christophe LENSKI (administrateur) sur DESKTOP-S27V57K (Gigabyte Technology Co., Ltd. Z370 AORUS Gaming 7) (31-08-2022 00:11:25) Exécuté depuis C:\Users\Christophe LENSKI\Desktop Profils chargés: Christophe LENSKI Plate-forme: Microsoft Windows 10 Professionnel Version 21H1 19043.1889 (X64) Langue: Français (France) Navigateur par défaut: FF Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files (x86)\MSI\Dragon Center\APP_Dragon_Center_Keeper.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Dragon Center\CC_Engine_x64.exe (C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (explorer.exe ->) (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12124.1.57017.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (explorer.exe ->) (Telegram FZ-LLC -> Telegram FZ-LLC) C:\Users\Christophe LENSKI\AppData\Roaming\Telegram Desktop\Telegram.exe (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (G.SKILL International Enterprise Co., Ltd. -> G.SKILL Inc.) C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\hid.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <27> (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_6e5ebc9aa39ff298\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\Creative.UWPRPCService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Center\DragonCenter_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Dragon Center\Mystic_Light\LightKeeperService.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_246e95e4066041ad\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.542.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Center\APP_Dragon_Center_Keeper.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Center\Mystic_Light\LEDKeeper2.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Dragon Center\StorageMonitor\StorageMonitor.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102808 2021-12-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [Spectrum] => C:\Program Files (x86)\G.SKILL\Trident Z Lighting Control\HID.exe [1744912 2019-08-01] (G.SKILL International Enterprise Co., Ltd. -> G.SKILL Inc.) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [601784 2019-11-01] (Razer USA Ltd. -> Razer Inc.) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [289560 2022-08-16] (Intel Corporation -> Intel) HKLM\...\Policies\Explorer: [NoWindowsUpdate] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-2173155708-1760663588-717993867-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3535416 2022-06-28] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2173155708-1760663588-717993867-1002\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32703952 2022-08-30] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2173155708-1760663588-717993867-1002\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1802584 2022-08-04] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-2173155708-1760663588-717993867-1002\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Christophe LENSKI\AppData\Local\Microsoft\Teams\Update.exe [2508520 2022-08-19] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2173155708-1760663588-717993867-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234600 2022-08-20] (Valve Corp. -> Valve Corporation) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3535416 2022-06-28] (Razer USA Ltd. -> Razer Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.102\Installer\chrmstp.exe [2022-08-23] (Google LLC -> Google LLC) Startup: C:\Users\loizel dylan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GIGABYTE AORUS GRAPHICS ENGINE.lnk [2018-05-24] ShortcutTarget: GIGABYTE AORUS GRAPHICS ENGINE.lnk -> C:\Program Files (x86)\GIGABYTE\AORUS GRAPHICS ENGINE\autorun.exe () [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {06C81DC2-D8E5-488D-925E-C7F453632E4E} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe [3993592 2022-05-12] (Easeware Technology Limited -> Easeware) Task: {12DB2953-440E-45FA-9806-CABC6A984F98} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD) Task: {1E94AADF-57D8-424A-90A9-A10B363F545F} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {3567A529-91D9-4D8D-AB69-93D0C2B1B6F6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3B14398C-19B7-4344-8EA7-5CCE9AB0C776} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe -runmode=checkupdate (Pas de fichier) Task: {68E5757A-94EA-44FE-9DE4-A08891E2AE93} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {8429A608-BF68-4CBD-9F2D-AED6E2DA85D4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-24] (Google Inc -> Google Inc.) Task: {A6C91509-D111-4B8F-8657-273ECDF245CF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {b5f872b6-cec0-4bed-a61e-dd8da0199e36} - pas de chemin du fichier Task: {B932380F-14FC-43C7-B3C8-AF4C32BAFD70} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {BBF0B787-4455-4AF2-B95A-DEA6BC4BECBC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-05-24] (Google Inc -> Google Inc.) Task: {BC5D2776-E91F-4DF4-8D56-1304D833208D} - System32\Tasks\Launcher GIGABYTE AORUS GRAPHICS ENGINE => C:\Program Files (x86)\GIGABYTE\AORUS GRAPHICS ENGINE\AORUS.exe [20076688 2018-05-14] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGABYTE Technology Co.,Ltd.) Task: {DD003336-D3EC-4078-AE13-BF9DBB25468A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F8253E1B-12D3-46F8-BC68-07B5C470E952} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4dec8e15-4310-41b9-a819-ea347d84ca4a}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{a21c991a-6d57-4966-8247-c5c9caedf165}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{cc5ca0f7-b104-41ec-85fa-d4e8e9afe922}: [DhcpNameServer] 192.168.1.1 Edge: ======= DownloadDir: C:\Users\Christophe LENSKI\Downloads Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\Christophe LENSKI\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-29] FireFox: ======== FF DefaultProfile: metgj6el.default FF ProfilePath: C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\73gwy82d.default-release-1 [2022-07-01] FF ProfilePath: C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\metgj6el.default [2020-05-31] FF ProfilePath: C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release [2022-08-31] FF Session Restore: Mozilla\Firefox\Profiles\9n7we4l6.default-release -> est activé. FF Extension: (Facebook Container) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\@contain-facebook.xpi [2022-03-17] FF Extension: (Ghostery – Bloqueur de publicité protégeant la vie privée) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\firefox@ghostery.com.xpi [2022-07-12] FF Extension: (Tampermonkey) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\firefox@tampermonkey.net.xpi [2022-05-12] FF Extension: (Avast Online Security & Privacy) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\wrc@avast.com.xpi [2022-07-20] FF Extension: (Search by Image) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [2022-03-16] FF Extension: (Calm Sunrise by MaDonna) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{389b9555-dbf1-4ac0-b302-336ff129fc63}.xpi [2021-05-31] FF Extension: (Instant Gaming) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{b5dd9324-33b6-4ef0-81b6-97496dd6e81d}.xpi [2022-01-04] FF Extension: (Hacker (Animated)) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{ba344789-d1ee-4222-9c4b-5208529b0ee6}.xpi [2022-01-04] FF Extension: (Galaxia) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{cb450604-c5ea-45d8-a8e6-4c6231419ef2}.xpi [2022-04-12] FF Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\Christophe LENSKI\AppData\Roaming\Mozilla\Firefox\Profiles\9n7we4l6.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-08-30] FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-08-02] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Christophe LENSKI\AppData\Local\Google\Chrome\User Data\Default [2022-08-29] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7356680 2018-10-11] (BattlEye Innovations e.K. -> ) R2 DragonCenter_Service; C:\Program Files (x86)\MSI\Dragon Center\DragonCenter_Service.exe [142512 2019-04-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [40728 2022-08-16] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [188696 2022-08-16] (Intel Corporation -> Intel) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [812520 2022-03-24] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-06-08] (EasyAntiCheat Oy -> Epic Games, Inc.) R2 LightKeeperService; C:\Program Files (x86)\MSI\Dragon Center\Mystic_Light\LightKeeperService.exe [81552 2019-08-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8765464 2022-08-29] (Malwarebytes Inc. -> Malwarebytes) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [451200 2018-05-08] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [943752 2018-04-24] (Razer USA Ltd. -> Razer Inc.) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [254224 2021-11-16] (Razer USA Ltd. -> Razer Inc) R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300600 2022-06-28] (Razer USA Ltd. -> Razer Inc.) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [534440 2022-04-28] (Razer USA Ltd. -> Razer Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [14585248 2022-06-23] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 UWPService; C:\WINDOWS\SysWOW64\Creative.UWPRPCService.exe [357288 2020-10-27] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-08-28] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_246e95e4066041ad\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_246e95e4066041ad\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-07-06] (Intel Corporation -> Intel Corporation) S3 gdrv; C:\Windows\gdrv.sys [26792 2018-05-25] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 gdrv3; C:\WINDOWS\gdrv3.sys [36352 2021-05-09] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.) S3 GLCKIO; C:\ProgramData\ASUS\GLKIO\690b33e1-0462-4e84-9bea-c7552b45432a.sys [18712 2020-05-20] (ASUSTeK Computer Inc. -> ) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-08-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-08-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBfilt; C:\WINDOWS\system32\drivers\MBfilt64.sys [43456 2019-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd.) R3 MpKslb259aa0c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9768F0DD-C265-46EB-AF42-918EC2453399}\MpKslDrv.sys [141576 2022-08-30] (Microsoft Windows -> Microsoft Corporation) R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\Dragon Center\Mystic_Light\Lib\NTIOLib_X64.sys [14288 2019-08-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [12176568 2021-12-31] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation) R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [55128 2021-06-11] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0060; C:\WINDOWS\System32\drivers\RzDev_0060.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0221; C:\WINDOWS\System32\drivers\RzDev_0221.sys [54168 2020-08-24] (Razer USA Ltd. -> Razer Inc) R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) R3 VwKeyboardDriver; C:\WINDOWS\System32\drivers\VwKeyboardDriver.sys [47528 2021-08-09] (Vieworks Co., Ltd -> Vieworks) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-08-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-08-28] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-08-28] (Microsoft Windows -> Microsoft Corporation) S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X] S3 cpuz149; \??\C:\Users\CHRIST~1\AppData\Local\Temp\cpuz149\cpuz149_x64.sys [X] <==== ATTENTION S3 GPU-Z-v2; \??\C:\Users\CHRIST~1\AppData\Local\Temp\GPU-Z-v2.sys [X] <==== ATTENTION S3 HWiNFO_170; \??\C:\Users\CHRIST~1\AppData\Local\Temp\HWiNFO64A_170.SYS [X] <==== ATTENTION S3 HWiNFO_171; \??\C:\Users\CHRIST~1\AppData\Local\Temp\HWiNFO64A_171.SYS [X] <==== ATTENTION S2 TCI2XX; \SystemRoot\System32\drivers\TCI2XX.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Trois mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-08-31 00:11 - 2022-08-31 00:11 - 000024851 _____ C:\Users\Christophe LENSKI\Desktop\FRST.txt 2022-08-31 00:10 - 2022-08-31 00:10 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\FRST-OlderVersion 2022-08-31 00:06 - 2022-08-31 00:06 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\test 29_08_2022 2022-08-29 13:47 - 2022-08-29 13:47 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\mbam 2022-08-29 13:46 - 2022-08-29 13:46 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-08-29 13:46 - 2022-08-29 13:46 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2022-08-29 13:46 - 2022-08-29 13:46 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2022-08-29 13:46 - 2022-08-29 13:46 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-08-29 13:46 - 2022-08-29 13:46 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-08-29 13:46 - 2022-08-29 13:46 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-08-29 13:46 - 2022-08-29 13:46 - 000000000 ____D C:\Program Files\Malwarebytes 2022-08-29 13:34 - 2022-08-29 13:38 - 000000000 ____D C:\AdwCleaner 2022-08-29 13:34 - 2022-08-29 13:34 - 008551608 _____ (Malwarebytes) C:\Users\Christophe LENSKI\Desktop\adwcleaner_8.3.2.exe 2022-08-29 13:29 - 2022-08-29 13:29 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\LocalLow\NVIDIA 2022-08-29 12:59 - 2022-08-29 12:59 - 000000932 _____ C:\Users\Christophe LENSKI\Desktop\ZHPCleaner.lnk 2022-08-29 12:58 - 2022-08-29 12:58 - 003303624 _____ (Nicolas Coolman) C:\Users\Christophe LENSKI\Desktop\ZHPCleaner.exe 2022-08-28 00:01 - 2022-08-31 00:11 - 000000000 ____D C:\FRST 2022-08-28 00:00 - 2022-08-31 00:10 - 002371072 _____ (Farbar) C:\Users\Christophe LENSKI\Desktop\FRST64.exe 2022-08-27 23:44 - 2022-08-27 23:49 - 000000135 _____ C:\Users\Christophe 2022-08-27 23:42 - 2022-08-29 13:27 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\ZHP 2022-08-27 23:42 - 2022-08-29 12:59 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\ZHP 2022-08-27 23:42 - 2022-08-27 23:42 - 000000922 _____ C:\Users\Christophe LENSKI\Desktop\ZHPSuite.lnk 2022-08-27 00:15 - 2022-08-27 00:15 - 000099869 _____ C:\Users\Christophe LENSKI\Desktop\DxDiag.txt 2022-08-22 10:40 - 2022-08-22 10:40 - 000275134 _____ C:\Users\Christophe LENSKI\Downloads\Dossierdecandidature Christophe LENSKI_2022.pdf 2022-08-22 10:17 - 2022-08-22 10:17 - 000250197 _____ C:\Users\Christophe LENSKI\Downloads\DossierdecandidatureModifiable.pdf 2022-08-17 19:01 - 2022-08-17 19:01 - 000593065 _____ C:\Users\Christophe LENSKI\Downloads\Numérisation_20220801 (5).pdf 2022-08-17 12:11 - 2022-08-17 12:11 - 000001510 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2022-08-16 10:19 - 2022-08-16 10:19 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2022-08-16 10:19 - 2022-08-16 10:19 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2022-08-16 10:19 - 2022-08-16 10:19 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-08-16 10:19 - 2022-08-16 10:19 - 000162304 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-08-16 10:19 - 2022-08-16 10:19 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2022-08-16 10:19 - 2022-08-16 10:19 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2022-08-16 10:19 - 2022-08-16 10:19 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2022-08-16 10:19 - 2022-08-16 10:19 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-08-16 10:15 - 2022-08-16 10:15 - 000000000 ___HD C:\$WinREAgent 2022-07-31 17:27 - 2022-06-24 02:17 - 000172304 _____ (Razer Inc) C:\WINDOWS\system32\RazerS2S3CoinstallerEx.dll 2022-07-26 17:18 - 2022-07-26 17:18 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\HoYoverse 2022-07-21 23:04 - 2022-07-21 23:04 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\NVIDIA 2022-07-21 18:01 - 2022-07-21 18:01 - 000611442 _____ C:\Users\Christophe LENSKI\Downloads\ID-MOP4238701.pdf 2022-07-20 04:41 - 2022-07-20 04:41 - 002172852 _____ C:\WINDOWS\Minidump\072022-12687-01.dmp 2022-07-19 05:59 - 2022-07-19 05:59 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\76561198065303129 save Elden Ring avant Chaos 2022-07-13 20:53 - 2022-07-13 20:53 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\My Games 2022-07-13 20:52 - 2022-07-13 20:52 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\2K 2022-07-13 20:52 - 2022-07-13 20:52 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\2K 2022-07-13 10:09 - 2022-07-13 10:09 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-07-13 10:09 - 2022-07-13 10:09 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-07-13 10:09 - 2022-07-13 10:09 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com 2022-07-13 10:09 - 2022-07-13 10:09 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll 2022-07-13 10:09 - 2022-07-13 10:09 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com 2022-07-13 10:09 - 2022-07-13 10:09 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com 2022-07-13 10:08 - 2022-07-13 10:08 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-07-13 10:08 - 2022-07-13 10:08 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com 2022-07-13 10:08 - 2022-07-13 10:08 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll 2022-07-13 10:08 - 2022-07-13 10:08 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com 2022-07-13 10:08 - 2022-07-13 10:08 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com 2022-07-13 03:43 - 2022-07-13 03:43 - 001953316 _____ C:\WINDOWS\Minidump\071322-8765-01.dmp 2022-07-09 23:13 - 2022-08-01 04:04 - 000000000 _____ C:\WINDOWS\system32\reimage.nat 2022-07-09 21:10 - 2022-07-20 04:41 - 1591758170 _____ C:\WINDOWS\MEMORY.DMP 2022-07-09 21:10 - 2022-07-09 21:10 - 001426796 _____ C:\WINDOWS\Minidump\070922-8046-01.dmp 2022-07-09 17:29 - 2022-07-09 17:29 - 000000000 ____D C:\ProgramData\Apple Computer 2022-07-09 17:29 - 2022-07-09 17:29 - 000000000 ____D C:\ProgramData\Apple 2022-07-06 19:47 - 2022-08-18 05:04 - 000317120 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-07-06 19:47 - 2022-07-06 19:47 - 000000000 ____D C:\WINDOWS\Panther 2022-07-06 19:46 - 2022-07-06 19:46 - 051097454 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2022-07-06 19:46 - 2022-07-06 19:46 - 000039704 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ICCWDT.sys 2022-06-30 13:17 - 2022-06-30 13:17 - 000000000 ____D C:\Users\Christophe LENSKI\.ms-ad 2022-06-29 21:34 - 2022-08-26 01:12 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\D3DSCache 2022-06-29 21:34 - 2022-06-29 21:34 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\NVIDIA Corporation 2022-06-29 21:34 - 2022-06-29 21:34 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\NVIDIA 2022-06-29 21:31 - 2022-08-30 23:26 - 000000000 ____D C:\ProgramData\NVIDIA 2022-06-29 21:31 - 2022-06-29 21:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2022-06-29 21:31 - 2022-06-24 05:05 - 000129032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2022-06-29 21:31 - 2022-06-24 05:05 - 000041984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-06-29 21:30 - 2022-06-29 21:30 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-06-29 21:30 - 2022-06-29 21:30 - 000000000 ____D C:\NVIDIA 2022-06-29 21:30 - 2022-06-24 17:26 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-06-29 21:30 - 2022-06-24 17:26 - 001905936 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-06-29 21:30 - 2022-06-24 17:26 - 001478384 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-06-29 21:30 - 2022-06-24 17:26 - 001478384 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-06-29 21:30 - 2022-06-24 17:26 - 001472552 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-06-29 21:30 - 2022-06-24 17:26 - 001432304 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-06-29 21:30 - 2022-06-24 17:26 - 001432304 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-06-29 21:30 - 2022-06-24 17:26 - 001213416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-06-29 21:30 - 2022-06-24 17:26 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-06-29 21:30 - 2022-06-24 17:26 - 001145584 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-06-29 21:30 - 2022-06-24 17:23 - 000866344 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-06-29 21:30 - 2022-06-24 17:23 - 000687592 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-06-29 21:30 - 2022-06-24 17:22 - 001537064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-06-29 21:30 - 2022-06-24 17:22 - 001182696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-06-29 21:30 - 2022-06-24 17:22 - 000771560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-06-29 21:30 - 2022-06-24 17:22 - 000715304 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-06-29 21:30 - 2022-06-24 17:21 - 002127864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-06-29 21:30 - 2022-06-24 17:21 - 001608232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-06-29 21:30 - 2022-06-24 17:21 - 001059904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-06-29 21:30 - 2022-06-24 17:21 - 000845304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-06-29 21:30 - 2022-06-24 17:21 - 000456168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-06-29 21:30 - 2022-06-24 17:20 - 010270256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-06-29 21:30 - 2022-06-24 17:20 - 008804400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-06-29 21:30 - 2022-06-24 17:20 - 005734392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-06-29 21:30 - 2022-06-24 17:20 - 005363248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-06-29 21:30 - 2022-06-24 17:20 - 003067440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-06-29 21:30 - 2022-06-24 17:19 - 000853568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-06-29 21:30 - 2022-06-24 16:40 - 007483904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-06-29 21:30 - 2022-06-24 16:40 - 006366896 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-06-29 21:30 - 2022-06-24 05:05 - 000093241 _____ C:\WINDOWS\system32\nvinfo.pb 2022-06-29 13:11 - 2022-06-29 21:29 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2022-06-29 13:10 - 2022-06-29 13:10 - 000000000 ____D C:\WINDOWS\pss 2022-06-29 12:50 - 2022-06-29 12:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Easy 2022-06-29 12:45 - 2022-06-29 12:50 - 000001012 _____ C:\Users\Public\Desktop\Driver Easy.lnk 2022-06-29 05:17 - 2022-08-26 10:31 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-06-27 15:07 - 2022-06-27 15:07 - 000001335 _____ C:\Users\Christophe LENSKI\Desktop\FurMark.lnk 2022-06-27 15:07 - 2022-06-27 15:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geeks3D 2022-06-27 15:07 - 2022-06-27 15:07 - 000000000 ____D C:\Program Files (x86)\Geeks3D 2022-06-27 15:04 - 2022-06-27 15:04 - 000000000 ____D C:\Users\Christophe LENSKI\Documents\FeedbackHub 2022-06-27 15:01 - 2022-08-29 13:44 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\Outils 2022-06-20 18:44 - 2022-08-16 03:56 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS 2022-06-17 12:36 - 2022-06-17 12:36 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-17 12:36 - 2022-06-17 12:36 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2022-06-17 12:36 - 2022-06-17 12:36 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-17 12:36 - 2022-06-17 12:36 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2022-06-17 12:35 - 2022-06-17 12:35 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-10 00:01 - 2022-06-10 00:01 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\redout 2022-06-08 02:47 - 2022-08-18 22:38 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\EldenRing 2022-06-08 02:43 - 2022-06-08 02:43 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\vortex-updater ==================== Trois mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-08-31 00:10 - 2018-05-24 20:32 - 000000000 ____D C:\Program Files (x86)\Google 2022-08-31 00:08 - 2020-05-31 20:59 - 000000000 ____D C:\Program Files (x86)\Steam 2022-08-30 22:09 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-08-30 20:44 - 2020-08-20 23:37 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-08-30 20:05 - 2020-05-31 16:25 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\LocalLow\Mozilla 2022-08-30 12:09 - 2020-08-20 23:47 - 001771910 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-08-30 12:09 - 2019-12-07 16:50 - 000792000 _____ C:\WINDOWS\system32\perfh00C.dat 2022-08-30 12:09 - 2019-12-07 16:50 - 000150166 _____ C:\WINDOWS\system32\perfc00C.dat 2022-08-30 12:09 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-08-30 12:05 - 2020-05-31 22:47 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\Telegram Desktop 2022-08-30 12:04 - 2022-02-10 14:02 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-08-30 12:02 - 2020-08-20 23:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-08-30 12:02 - 2020-08-20 23:37 - 000008192 ___SH C:\DumpStack.log.tmp 2022-08-30 12:02 - 2020-05-31 23:26 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-08-30 12:02 - 2020-05-31 15:50 - 000000000 ___RD C:\Users\Christophe LENSKI\OneDrive 2022-08-30 05:45 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2022-08-30 04:07 - 2020-06-03 22:26 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\CrashDumps 2022-08-30 04:05 - 2020-08-20 23:44 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-08-30 04:05 - 2020-08-20 23:44 - 000003466 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-08-30 02:45 - 2020-05-31 15:51 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\Battle.net 2022-08-30 02:38 - 2022-04-29 19:01 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\Téléchargement 2022-08-29 23:15 - 2020-05-31 17:01 - 000000000 ____D C:\Program Files (x86)\Diablo III 2022-08-29 13:51 - 2022-03-12 04:05 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\Innovative Solutions 2022-08-29 13:51 - 2022-03-12 04:05 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\Innovative Solutions 2022-08-29 13:51 - 2022-03-12 04:05 - 000000000 ____D C:\Program Files (x86)\Innovative Solutions 2022-08-29 13:46 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-08-29 13:43 - 2020-08-28 22:15 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\vlc 2022-08-29 12:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\System 2022-08-29 12:52 - 2020-06-22 12:40 - 000000059 _____ C:\Users\Christophe LENSKI\AppData\Local\UserProducts.xml 2022-08-29 12:49 - 2020-06-19 17:03 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\AVAST Software 2022-08-29 12:49 - 2020-05-31 17:36 - 000000000 ____D C:\ProgramData\Avast Software 2022-08-29 12:48 - 2019-10-26 12:03 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2022-08-29 12:45 - 2021-05-29 17:32 - 000000000 ____D C:\Program Files (x86)\Diablo II 2022-08-29 12:45 - 2020-05-31 16:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-08-29 12:44 - 2021-11-14 07:29 - 000000000 ____D C:\Program Files\7th Heaven 2022-08-29 12:43 - 2020-08-28 22:24 - 000000000 ____D C:\Program Files\7-Zip 2022-08-29 12:31 - 2022-03-08 20:33 - 000000462 _____ C:\WINDOWS\Tasks\Driver Easy Scheduled Scan.job 2022-08-29 12:31 - 2020-06-22 12:40 - 000000444 _____ C:\WINDOWS\Tasks\update-sys.job 2022-08-29 05:40 - 2020-07-21 20:02 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\discord 2022-08-29 05:39 - 2020-07-21 20:02 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Local\Discord 2022-08-29 01:54 - 2021-11-29 23:14 - 000000000 ____D C:\Program Files (x86)\Overwolf 2022-08-28 23:56 - 2020-03-18 22:42 - 000000000 ____D C:\Program Files (x86)\Battle.net 2022-08-28 22:35 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2022-08-28 22:25 - 2022-03-08 20:33 - 000003586 _____ C:\WINDOWS\system32\Tasks\Driver Easy Scheduled Scan 2022-08-28 22:25 - 2020-11-21 23:00 - 000003270 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task 2022-08-28 22:25 - 2020-08-20 23:44 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-08-28 22:25 - 2020-08-20 23:44 - 000002824 _____ C:\WINDOWS\system32\Tasks\update-sys 2022-08-28 22:25 - 2020-08-20 23:44 - 000002616 _____ C:\WINDOWS\system32\Tasks\Launcher GIGABYTE AORUS GRAPHICS ENGINE 2022-08-28 22:25 - 2018-12-07 15:04 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-08-28 16:33 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-08-28 16:33 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-08-28 15:40 - 2020-05-31 22:11 - 000000000 ____D C:\Users\Christophe LENSKI\Desktop\Documents Pro 2022-08-27 14:17 - 2020-07-04 15:51 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-08-27 14:14 - 2021-12-11 21:39 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2173155708-1760663588-717993867-1002 2022-08-27 14:14 - 2020-08-20 23:44 - 000003402 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2173155708-1760663588-717993867-1002 2022-08-27 14:14 - 2020-08-20 23:37 - 000002498 _____ C:\Users\Christophe LENSKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-08-25 12:42 - 2021-10-06 12:53 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-08-25 12:42 - 2020-05-31 16:25 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-08-19 12:22 - 2021-09-02 18:01 - 000002469 _____ C:\Users\Christophe LENSKI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2022-08-18 05:04 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-08-18 05:04 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-08-18 05:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-08-17 19:40 - 2020-06-23 02:33 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-08-17 12:12 - 2018-05-24 20:29 - 000000000 ____D C:\ProgramData\Package Cache 2022-08-17 12:11 - 2020-10-07 21:58 - 000000000 ____D C:\Program Files\dotnet 2022-08-17 12:11 - 2020-08-20 23:44 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-08-17 12:11 - 2020-08-20 23:44 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-08-17 12:11 - 2018-05-25 16:38 - 000000000 ____D C:\Program Files (x86)\Intel 2022-08-16 10:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-08-16 10:19 - 2020-08-20 23:38 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-08-16 10:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2022-08-16 10:04 - 2018-05-24 19:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-08-16 10:02 - 2018-05-24 19:00 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-08-16 03:56 - 2022-02-08 23:45 - 000000000 ____D C:\Users\Christophe LENSKI\AppData\Roaming\EasyAntiCheat ==================== Fichiers à la racine de certains dossiers ======== 2020-06-22 12:40 - 2020-06-22 12:40 - 000000003 _____ () C:\Users\Christophe LENSKI\AppData\Local\updater.log 2020-06-22 12:40 - 2022-08-29 12:52 - 000000059 _____ () C:\Users\Christophe LENSKI\AppData\Local\UserProducts.xml ==================== SigCheckExt ========================= 2018-05-25 16:38 - 2015-06-02 10:50 - 000005120 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\acpimof_ocpanel.dll 2021-11-12 07:31 - 2004-02-17 06:23 - 000090169 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atla.dll 2021-11-12 07:31 - 2004-02-17 06:24 - 000074810 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atlu.dll 2021-11-12 07:31 - 1995-07-26 01:00 - 000136704 _____ (Apex Software Corporation) C:\WINDOWS\SysWOW64\grdkrn32.dll 2021-11-12 07:31 - 2012-06-06 00:56 - 000209200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSDBLIB3.DLL 2021-11-12 07:31 - 2014-06-30 16:54 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm50.dll 2021-11-12 07:31 - 1997-02-19 18:29 - 000263440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OLEMSG32.DLL 2021-11-12 07:31 - 1995-07-26 01:00 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SCP32.DLL 2021-11-12 07:31 - 2014-06-30 16:54 - 000722192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Vb40032.dll 2021-11-09 04:47 - 2021-11-09 04:47 - 001399727 _____ C:\Users\Christophe LENSKI\Desktop\3d_pinball_for_windows_space_cadet.exe 2022-08-28 00:00 - 2022-08-31 00:10 - 002371072 _____ (Farbar) C:\Users\Christophe LENSKI\Desktop\FRST64.exe 2020-05-31 22:11 - 2007-10-28 01:57 - 003546740 _____ (Aurelain) C:\Users\Christophe LENSKI\Desktop\Skillwheel.exe 2022-08-29 12:58 - 2022-08-29 12:58 - 003303624 _____ (Nicolas Coolman) C:\Users\Christophe LENSKI\Desktop\ZHPCleaner.exe ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de d‚marrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {b9b671d8-fa1f-11e8-aafe-91f3a5628321} timeout 1 Gestionnaire de d‚marrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {a3f3b020-e335-11ea-a266-bde4cb13df27} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Application logicielle (101fffff) -------------------------------- identificateur {b9b671d8-fa1f-11e8-aafe-91f3a5628321} description Hard Drive Chargeur de d‚marrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {a3f3b022-e335-11ea-a266-bde4cb13df27} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {a3f3b020-e335-11ea-a266-bde4cb13df27} nx OptIn bootmenupolicy Standard Chargeur de d‚marrage Windows ----------------------------- identificateur {a3f3b022-e335-11ea-a266-bde4cb13df27} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{a3f3b023-e335-11ea-a266-bde4cb13df27} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{a3f3b023-e335-11ea-a266-bde4cb13df27} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre … partir de la mise en veille prolong‚e ------------------------------------------------- identificateur {a3f3b020-e335-11ea-a266-bde4cb13df27} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {a3f3b022-e335-11ea-a266-bde4cb13df27} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de m‚moire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics m‚moire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes ParamŠtres EMS -------------- identificateur {emssettings} bootems No ParamŠtres du d‚bogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de m‚moire RAM ---------------------- identificateur {badmemory} ParamŠtres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} ParamŠtres du chargeur de d‚marrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} ParamŠtres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 ParamŠtres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de p‚riph‚rique ----------------------- identificateur {a3f3b023-e335-11ea-a266-bde4cb13df27} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================