Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022 Exécuté par cipher (administrateur) sur DESKTOP-O88EPTV (Acer Predator PH315-52) (10-09-2022 10:48:11) Exécuté depuis C:\Users\cipher\Desktop Profils chargés: cipher Plate-forme: Microsoft Windows 10 Professionnel Version 21H2 19044.1889 (X64) Langue: Français (France) Navigateur par défaut: Opera Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (C:\Program Files (x86)\Origin\Origin.exe ->) (Electronic Arts, Inc. -> ) C:\Program Files (x86)\Origin\QtWebEngineProcess.exe <22> (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\cipher\AppData\Local\Programs\Opera\90.0.4480.84\opera_crashreporter.exe (C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe ->) (Overwolf Ltd -> Overwolf LTD) E:\Overwolf\Overwolf.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Utility Toolbox\cnqtbapp.exe (cmd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe <2> (Discord Inc. -> Discord Inc.) C:\Users\cipher\AppData\Local\Discord\app-1.0.9006\Discord.exe <6> (drivers\RivetNetworks\Killer\xTendUtilityService.exe ->) (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe (DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe (E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.204.0.1\OverwolfHelper.exe (E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.204.0.1\OverwolfHelper64.exe (E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Users\cipher\AppData\Local\Overwolf\ProcessCache\0.204.0.1\cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj\curseforge.exe (E:\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) E:\Overwolf\0.204.0.1\OverwolfBrowser.exe <3> (E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) E:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <6> (explorer.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\Origin.exe (explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (explorer.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe (explorer.exe ->) (ROCCAT GmbH Co., Ltd.) [Fichier non signé] C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (explorer.exe ->) (The NW.js Community) [Fichier non signé] C:\Users\cipher\AppData\Roaming\opensubtitles-uploader\opensubtitles-uploader.exe <7> (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (explorer.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSvc64.exe (iMobie Inc. -> iMobie Inc.) C:\Program Files (x86)\iMobie\AnyTrans\AirBackupHelper.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHDCPSvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_5.68.30003.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_5.68.30003.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (services.exe ->) (Plarium Global Ltd -> ) C:\Users\cipher\AppData\Local\PlariumPlay\8.0.0-0.0.3\PlariumPlayClientService\PlariumPlayClientService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe (services.exe ->) (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Windows\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSysSvc64.exe (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.192.647.0_x86__zpdnekdrzrea0\Spotify.exe <6> (svchost.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Voyetra Turtle Beach, Inc. -> ROCCAT) D:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe (taskhostw.exe ->) (Opera Norway AS -> Opera Software) C:\Users\cipher\AppData\Local\Programs\Opera\opera.exe <68> ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [WavesSvc] => C:\WINDOWS\System32\DriverStore\FileRepository\wavesapo77ac.inf_amd64_d5839c9d7c0bda64\WavesSvc64.exe [1464728 2019-01-31] (Waves Inc -> Waves Audio Ltd.) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [9336528 2022-03-03] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1082592 2020-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3071192 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [CanonQuickToolbox] => C:\Program Files (x86)\Canon\Quick Utility Toolbox\cnqtbapp.exe [2270120 2020-10-27] (Canon Inc. -> CANON INC.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [708840 2022-04-26] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [AirBackupHelper] => C:\Program Files (x86)\iMobie\AnyTrans\AirBackupHelper.exe [2740872 2022-06-09] (iMobie Inc. -> iMobie Inc.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234600 2022-08-20] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Discord] => C:\Users\cipher\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Battle.net] => C:\Program Files (x86)\Battle.net\Battle.net.exe [1089880 2022-08-26] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [EpicGamesLauncher] => E:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32681424 2022-09-06] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [Overwolf] => E:\Overwolf\OverwolfLauncher.exe [1802584 2022-08-04] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3149616 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-4112475713-5470514-2756610412-1001\...\Run: [opensubtitles-uploader] => C:\Users\cipher\AppData\Roaming\opensubtitles-uploader\opensubtitles-uploader.exe [2402304 2022-01-19] (The NW.js Community) [Fichier non signé] <==== ATTENTION HKLM\...\Windows x64\Print Processors\Canon MB2700 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDD0.DLL [30720 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor MB2700 series: C:\Windows\system32\CNCALD0.DLL [254464 2015-11-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MB2700 series: C:\Windows\system32\CNMLMD0.DLL [436736 2018-07-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2021-09-04] ShortcutTarget: ROCCAT Swarm Monitor.lnk -> C:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (Voyetra Turtle Beach, Inc. -> ROCCAT) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Roccat Talk.lnk [2021-09-07] ShortcutTarget: Roccat Talk.lnk -> C:\Program Files (x86)\ROCCAT\Roccat Talk\Roccat Talk.exe (ROCCAT GmbH Co., Ltd.) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {04CF84DE-0114-4A73-AE1B-167B2A915FF3} - System32\Tasks\Opera scheduled assistant Autoupdate 1596096035 => C:\Users\cipher\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\cipher\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {097CCD2B-0DF9-4F00-84E3-9CF46C8D2DE9} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {133FBE78-B467-45AB-89B4-9DB636DEF2D2} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342080 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog Task: {14215824-EC2D-4CB1-B34F-AAD4BE67EC4A} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector Task: {19649117-C833-4240-A906-43CA575355CE} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {214A7E0A-30DF-4B83-9252-0D578F1AB34F} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {31F417BC-876C-4C28-9484-BE354B72E717} - System32\Tasks\Opera scheduled Autoupdate 1596096032 => C:\Users\cipher\AppData\Local\Programs\Opera\launcher.exe [2538448 2022-09-05] (Opera Norway AS -> Opera Software) Task: {55AAF4CA-DB63-43CB-8DE6-378865010052} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [31903104 2022-08-31] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) Task: {56BEC16F-48A6-4369-834A-AED963414DC6} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD) Task: {7CCC324E-E113-4381-85B0-4C31B5B86ADC} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1645704 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) Task: {958D4189-825F-483D-95C0-1CDA547789FC} - System32\Tasks\ROCCAT DEVICE SERVICE => D:\Program Files (x86)\ROCCAT\ROCCAT Swarm\ROCCAT_dev_service.exe [442888 2021-04-19] (Voyetra Turtle Beach, Inc. -> ROCCAT) Task: {A9918167-E8C0-4CEF-9C04-C509307651AF} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [257312 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) Task: {AF86B8A8-1256-499D-9785-42D409A29D20} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {B7026B21-F2E5-49F9-9C6F-64652709A468} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {BC2CDCFB-8B16-4ECB-9F3F-9E4C7A84289F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {C353E073-FEC2-4404-A9AC-945A25770906} - System32\Tasks\chrome zoom => cmd /c powershell -WindowStyle Hidden -E "CgAKACQAZwBWAEEAUgA9ACQAbgB1AGwAbAA7AAoAJABzAHQAcgBfAGUAbgBjAF8AQQBzAGMAPQBbAFMAeQBzAHQAZQBtAC4AVABlAHgAdAAuAEUAbgBjAG8AZABpAG4AZwBdADoAOgBBAFMAQwBJAEkAOwAKAAoAJABsAF8AdgBhAHIAIAA9ACAAIgAxADkAIgA7AAoACgAkAHIAZQBtAFAAYQByACAAPQAgACIAVwB5AEkAeABNAFQAZwB5AE0AVABnAH (l'élément de données a 5363 caractères en plus). <==== ATTENTION Task: {D7A4FA81-DFE2-451B-B65D-25E7EC23CC74} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {DC88AFB6-FAB6-4B63-8482-D021133A1404} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) Task: {FF68C989-1B59-410E-BF9D-7B1A0F508528} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== ATTENTION (Restriction - Zones) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{ef7e6e94-3266-4f78-bf2b-ac88c7eb2c64}: [DhcpNameServer] 192.168.0.254 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\cipher\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-13] Edge Extension: (Avira Safe Shopping) - C:\Users\cipher\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2022-07-19] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\dtplugin\npDeployJava1.dll [2022-05-09] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.333.2 -> C:\Program Files\Java\jre1.8.0_333\bin\plugin2\npjp2.dll [2022-05-09] (Oracle America, Inc. -> Oracle Corporation) Chrome: ======= CHR Profile: C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default [2022-09-07] CHR Extension: (Slides) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-09] CHR Extension: (Docs) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-09] CHR Extension: (Google Drive) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-09] CHR Extension: (YouTube) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-09] CHR Extension: (Avira Password Manager) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2021-08-09] CHR Extension: (Avira Safe Shopping) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2021-08-09] CHR Extension: (Sheets) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-09] CHR Extension: (Google Docs hors connexion) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-09] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-09] CHR Extension: (Gmail) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-09] CHR Extension: (Chrome Media Router) - C:\Users\cipher\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-09] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] Opera: ======= OPR Profile: C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable [2022-09-10] OPR DownloadDir: E:\Mes Téléchargements OPR Notifications: Opera Stable -> hxxps://creator.nightcafe.studio OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-05] OPR Extension: (Twitch Previews) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\ghngjhgepijgppcajcajlndjofnncecf [2022-09-07] OPR Extension: (Opera Crypto Wallet) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-07-16] OPR Extension: (Youtube & Twitch - Alerts) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\hkahddfidmjhlnddcipglpgkjiannnbn [2022-07-09] OPR Extension: (Amazon Assistant Promotion) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-11] OPR Extension: (Instant Gaming) - C:\Users\cipher\AppData\Roaming\Opera Software\Opera Stable\Extensions\lbnoedlobifdhbpjkcfhcbdcjhampmne [2022-03-14] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.) R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3004688 2022-07-22] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [386864 2022-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [265416 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [284136 2022-08-29] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8930120 2022-02-22] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1134624 2022-07-31] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [584680 2022-08-24] (EasyAntiCheat Oy -> Epic Games, Inc.) R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8563200 2022-09-09] (Avira Operations GmbH -> Avira Operations GmbH) S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8563200 2022-09-09] (Avira Operations GmbH -> Avira Operations GmbH) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2357880 2021-07-21] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> ) R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2616424 2019-06-17] (Rivet Networks LLC -> Rivet Networks) R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [10827744 2022-03-03] (PARAMOUNT SOFTWARE UK LIMITED -> Paramount Software UK Ltd) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752 2022-08-04] (Overwolf Ltd -> Overwolf LTD) R2 Plarium Play Client Service; C:\Users\cipher\AppData\Local\PlariumPlay\8.0.0-0.0.3\PlariumPlayClientService\PlariumPlayClientService.exe [99912 2022-08-25] (Plarium Global Ltd -> ) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2022-03-06] (Even Balance, Inc. -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6255896 2022-08-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10450928 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\NisSrv.exe [2727416 2021-08-10] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2107.4-0\MsMpEng.exe [136656 2021-08-10] (Microsoft Windows Publisher -> Microsoft Corporation) S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [72808 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [72816 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_50ffce48b1e8519d\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AcerAirplaneModeController; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [30168 2020-05-12] (Acer Incorporated -> Acer Incorporated) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [230520 2022-06-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [11941392 2022-08-03] (EasyAntiCheat Oy -> EasyAntiCheat Oy) R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [162432 2019-06-17] (Rivet Networks LLC -> Rivet Networks, LLC.) R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [100128 2022-06-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [50248 2022-01-25] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [24024 2022-06-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH) R2 rtp_filesystem_filter; C:\WINDOWS\System32\DRIVERS\rtp_filesystem_filter.sys [205768 2022-09-01] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_process_monitor; C:\WINDOWS\system32\DRIVERS\rtp_process_monitor.sys [187496 2022-09-01] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [45672 2022-08-26] (Avira Operations GmbH -> Avira Operations GmbH) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8746536 2022-08-17] (Riot Games, Inc. -> Riot Games, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49568 2021-08-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [434424 2021-08-10] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [78072 2021-08-10] (Microsoft Windows -> Microsoft Corporation) S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-10 10:48 - 2022-09-10 10:48 - 000032298 _____ C:\Users\cipher\Desktop\FRST.txt 2022-09-10 10:48 - 2022-09-10 10:48 - 000000000 ____D C:\FRST 2022-09-10 10:47 - 2022-09-10 10:47 - 002371072 _____ (Farbar) C:\Users\cipher\Desktop\FRST64.exe 2022-09-09 17:22 - 2022-09-09 17:22 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Broken Arms Games Srls 2022-09-09 16:39 - 2022-09-09 16:39 - 000014808 _____ C:\WINDOWS\system32\Tasks\chrome zoom 2022-09-08 19:50 - 2022-09-08 19:50 - 000000000 ____D C:\Users\cipher\AppData\Local\chrome_profile 2022-09-07 20:33 - 2022-09-07 20:33 - 000003794 _____ C:\WINDOWS\system32\Tasks\AviraSystemSpeedupVerify 2022-09-05 17:41 - 2022-09-05 17:41 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance 2022-09-05 17:41 - 2022-09-05 17:41 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog 2022-09-05 17:41 - 2022-09-05 17:41 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray 2022-09-04 12:20 - 2022-09-04 12:20 - 000000000 ____D C:\Users\cipher\Documents\Outerverse 2022-09-03 19:58 - 2022-09-03 19:58 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Craneballs 2022-09-03 19:58 - 2022-09-03 19:58 - 000000000 ____D C:\Users\cipher\AppData\Local\GOG.com 2022-09-03 19:45 - 2022-09-03 19:45 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\AwakenRealms 2022-09-03 19:06 - 2022-09-03 19:06 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\LEGO SYSTEM A_S 2022-09-03 19:02 - 2022-09-03 19:02 - 000002913 _____ C:\Users\cipher\Desktop\Planet Nomads.lnk 2022-09-03 19:01 - 2022-09-03 19:01 - 000003220 _____ C:\Users\cipher\Desktop\Builder's Journey.lnk 2022-09-03 19:01 - 2022-09-03 19:01 - 000002931 _____ C:\Users\cipher\Desktop\NPLH.lnk 2022-09-03 17:22 - 2022-09-03 17:21 - 000001569 _____ C:\Users\cipher\Desktop\Stray.lnk 2022-09-03 11:55 - 2022-09-03 11:55 - 000000000 ____D C:\Users\cipher\AppData\Local\Hk_project 2022-09-02 22:17 - 2022-09-02 22:17 - 000001607 _____ C:\Users\cipher\Desktop\ALT F4.lnk 2022-09-02 21:23 - 2022-09-02 21:23 - 000000000 ____D C:\Users\cipher\AppData\Local\ALTF4_F 2022-09-01 14:05 - 2022-09-01 14:05 - 000000000 ____D C:\Users\cipher\AppData\Local\ElevatedDiagnostics 2022-09-01 14:01 - 2022-09-01 14:02 - 000000000 ____D C:\Users\cipher\Documents\NFS Most Wanted 2022-09-01 13:55 - 2022-09-01 13:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Need For Speed Most Wanted Remaster Edition 2022-09-01 13:54 - 2022-09-01 13:54 - 000000000 ____D C:\Program Files (x86)\DODI-Repacks 2022-09-01 13:31 - 2022-09-01 13:31 - 000000000 ____D C:\Users\cipher\AppData\Local\opensubtitles-uploader 2022-09-01 13:29 - 2022-09-01 13:35 - 000000000 ____D C:\Users\cipher\AppData\Roaming\opensubtitles-uploader 2022-09-01 10:23 - 2022-09-01 10:23 - 000000000 ____D C:\Users\Public\Documents\Steam 2022-09-01 10:21 - 2022-09-01 10:21 - 000003142 _____ C:\Users\cipher\Desktop\SatisFactory.lnk 2022-08-31 20:41 - 2022-08-31 20:42 - 000000000 ____D C:\Users\cipher\AppData\Local\FactoryGame 2022-08-31 17:18 - 2022-08-31 17:28 - 000000000 ____D C:\Users\cipher\Documents\Universe Sandbox 2022-08-31 17:18 - 2022-08-31 17:18 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Giant Army 2022-08-31 17:17 - 2022-08-31 17:17 - 000001795 _____ C:\Users\Public\Desktop\Universe Sandbox.lnk 2022-08-31 17:17 - 2022-08-31 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universe Sandbox [GOG.com] 2022-08-30 09:43 - 2022-08-30 09:43 - 000000000 ____D C:\Users\cipher\AppData\Local\Biomutant 2022-08-30 09:42 - 2022-08-30 09:42 - 000001677 _____ C:\Users\Public\Desktop\Biomutant.lnk 2022-08-30 09:42 - 2022-08-30 09:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biomutant [GOG.com] 2022-08-28 10:27 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\Documents\AnyTrans 2022-08-25 19:34 - 2022-08-25 19:34 - 000000000 ____D C:\Users\cipher\AppData\Local\ToastNotificationManagerCompat 2022-08-25 19:33 - 2022-08-25 19:34 - 000000000 ____D C:\Users\cipher\AppData\Local\PlariumPlay 2022-08-24 10:46 - 2022-08-24 10:46 - 000000000 ____D C:\Users\cipher\AppData\Local\MultiVersus 2022-08-24 10:46 - 2022-08-24 10:46 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat_EOS 2022-08-23 13:14 - 2022-08-23 13:14 - 000002293 _____ C:\Users\cipher\Desktop\teardown.lnk 2022-08-19 22:16 - 2022-08-19 22:16 - 000002499 _____ C:\Users\cipher\Desktop\MaD2.lnk 2022-08-19 15:26 - 2022-08-19 15:26 - 000002645 _____ C:\Users\cipher\Desktop\Horizon Zero Dawn.lnk 2022-08-19 11:28 - 2022-08-19 11:28 - 000003442 _____ C:\Users\cipher\Desktop\Getting Over It.lnk 2022-08-18 19:07 - 2022-08-18 19:07 - 000000000 ____D C:\Users\cipher\AppData\Local\Fallout76 2022-08-18 18:38 - 2022-08-18 18:38 - 000000000 ____D C:\Users\cipher\AppData\LocalLow\Bennett Foddy 2022-08-18 17:33 - 2022-08-18 17:33 - 000000223 _____ C:\Users\cipher\Desktop\Fallout 76.url 2022-08-17 22:31 - 2022-08-17 22:31 - 000000000 ____D C:\WINDOWS\SysWOW64\directx 2022-08-17 22:31 - 2022-08-17 22:31 - 000000000 ____D C:\Users\cipher\Documents\Horizon Zero Dawn 2022-08-17 16:05 - 2022-08-17 16:05 - 000001814 _____ C:\Users\Public\Desktop\SPORE™.lnk 2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\Users\cipher\Documents\My Spore Creations 2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Spore 2022-08-17 16:05 - 2022-08-17 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SPORE™ Collection [GOG.com] 2022-08-17 15:53 - 2022-08-17 15:53 - 001575742 ____N (Igor Pavlov) C:\Users\cipher\Desktop\7z2201-x64.exe 2022-08-17 15:53 - 2022-08-17 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2022-08-17 15:53 - 2022-08-17 15:53 - 000000000 ____D C:\Program Files\7-Zip 2022-08-16 19:57 - 2022-09-07 14:10 - 000000000 ____D C:\Users\cipher\AppData\Local\Teardown 2022-08-16 19:57 - 2022-08-16 19:57 - 000000000 ____D C:\Users\cipher\Documents\Teardown 2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\ProgramData\Apple 2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files\Common Files\Apple 2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files\Bonjour 2022-08-12 11:12 - 2022-08-12 11:12 - 000000000 ____D C:\Program Files (x86)\Bonjour 2022-08-12 11:11 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\AppData\Roaming\iMobie 2022-08-12 11:11 - 2022-08-28 10:27 - 000000000 ____D C:\Users\cipher\AppData\Local\iMobie_Inc 2022-08-12 11:11 - 2022-08-16 14:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iMobie 2022-08-12 11:11 - 2022-08-12 11:12 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Apple Computer 2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\Users\Public\Thunder Network 2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\ProgramData\Thunder Network 2022-08-12 11:11 - 2022-08-12 11:11 - 000000000 ____D C:\Program Files (x86)\iMobie ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2022-09-10 10:47 - 2020-07-30 15:34 - 000000000 ____D C:\Users\cipher\AppData\Roaming\discord 2022-09-10 10:46 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-09-10 10:45 - 2022-07-02 21:53 - 000000000 ____D C:\ProgramData\Origin 2022-09-10 10:45 - 2021-08-11 11:44 - 000000000 ____D C:\Program Files (x86)\Steam 2022-09-10 02:48 - 2022-01-26 17:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-09-10 02:48 - 2021-08-13 12:23 - 000000000 ____D C:\Users\cipher\AppData\Local\Discord 2022-09-09 22:17 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-09-09 22:16 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-09-09 17:29 - 2020-07-30 12:18 - 000000000 ____D C:\Users\cipher\AppData\Local\CrashDumps 2022-09-09 12:39 - 2021-08-12 10:41 - 000000000 ____D C:\ProgramData\NVIDIA 2022-09-08 16:48 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-09-07 21:24 - 2022-07-02 21:52 - 000000000 ____D C:\Users\cipher\AppData\Local\Origin 2022-09-07 18:37 - 2020-07-30 10:40 - 000000000 ____D C:\Users\cipher\AppData\Local\Battle.net 2022-09-07 16:00 - 2022-01-26 17:46 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-09-07 16:00 - 2019-12-07 16:50 - 000792972 _____ C:\WINDOWS\system32\perfh00C.dat 2022-09-07 16:00 - 2019-12-07 16:50 - 000150102 _____ C:\WINDOWS\system32\perfc00C.dat 2022-09-07 16:00 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-09-07 15:56 - 2022-06-15 19:50 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2022-09-07 15:54 - 2021-03-05 21:31 - 000001863 _____ C:\Users\cipher\Desktop\CurseForge.lnk 2022-09-07 15:53 - 2022-01-26 17:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-09-07 15:53 - 2021-08-09 19:12 - 000000000 __SHD C:\Users\cipher\IntelGraphicsProfiles 2022-09-07 15:53 - 2021-08-09 17:34 - 000000000 ____D C:\Intel 2022-09-07 15:53 - 2021-08-09 17:23 - 000008192 ___SH C:\DumpStack.log.tmp 2022-09-07 15:53 - 2021-03-05 21:28 - 000000000 ____D C:\Users\cipher\AppData\Local\Overwolf 2022-09-07 15:53 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-09-07 15:52 - 2022-06-29 19:42 - 009406432 _____ C:\WINDOWS\system32\rtp.db 2022-09-07 13:46 - 2022-01-26 17:49 - 000004240 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1596096032 2022-09-07 13:46 - 2020-07-30 10:00 - 000001404 _____ C:\Users\cipher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigateur Opera.lnk 2022-09-05 17:47 - 2020-08-10 18:12 - 000000000 ____D C:\Users\cipher\AppData\Local\D3DSCache 2022-09-05 17:45 - 2021-08-09 17:28 - 000000000 ____D C:\Users\cipher\AppData\Local\Packages 2022-09-05 17:41 - 2022-01-26 17:49 - 000003478 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update 2022-09-05 17:41 - 2021-08-13 08:34 - 000001078 _____ C:\Users\Public\Desktop\Avira.lnk 2022-09-05 17:41 - 2021-08-13 08:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2022-09-04 21:03 - 2021-08-09 17:24 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-09-03 11:55 - 2020-08-14 15:33 - 000000000 ____D C:\Users\cipher\AppData\Local\UnrealEngine 2022-09-02 20:13 - 2021-11-21 12:19 - 000153040 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 002835920 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 000443856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 000198120 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2022-09-02 20:13 - 2021-11-10 20:24 - 000067024 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe 2022-09-02 18:40 - 2020-11-01 13:28 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Twitch 2022-09-01 18:54 - 2022-01-26 17:49 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4112475713-5470514-2756610412-1001 2022-09-01 18:54 - 2022-01-26 17:49 - 000003376 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4112475713-5470514-2756610412-1001 2022-09-01 18:54 - 2022-01-26 17:45 - 000002416 _____ C:\Users\cipher\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-09-01 14:01 - 2021-08-09 17:28 - 000000000 ____D C:\Users\cipher\AppData\Local\VirtualStore 2022-09-01 11:28 - 2022-06-29 19:41 - 000205768 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filesystem_filter.sys 2022-09-01 11:28 - 2022-06-29 19:41 - 000187496 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_process_monitor.sys 2022-08-31 17:17 - 2021-08-11 11:51 - 000000000 ____D C:\ProgramData\Package Cache 2022-08-31 17:16 - 2022-08-04 16:58 - 000000000 ____D C:\GOG Games 2022-08-31 16:44 - 2021-08-12 13:30 - 000000000 ____D C:\Users\cipher\Documents\My Games 2022-08-28 10:27 - 2022-07-02 21:53 - 000000000 ____D C:\Users\cipher\AppData\Roaming\Origin 2022-08-28 10:27 - 2021-08-15 22:04 - 000000000 ____D C:\Program Files (x86)\Battle.net 2022-08-28 10:25 - 2022-06-15 19:38 - 000000000 ____D C:\Program Files\Riot Vanguard 2022-08-26 13:46 - 2020-08-11 09:08 - 000000000 ____D C:\Users\cipher\AppData\Roaming\.minecraft 2022-08-26 09:26 - 2022-06-29 19:41 - 000045672 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_traverse.sys 2022-08-25 19:47 - 2022-01-26 17:49 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2022-01-26 17:49 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-08-25 19:47 - 2021-08-12 10:41 - 000001439 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2022-08-25 19:47 - 2021-08-12 10:41 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-08-25 19:47 - 2021-08-10 09:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-08-25 19:47 - 2021-08-10 09:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-08-25 19:44 - 2020-12-28 15:27 - 000000000 ____D C:\Users\cipher\AppData\Local\WarThunder 2022-08-24 10:46 - 2022-06-25 08:51 - 000000000 ____D C:\Users\cipher\AppData\Roaming\EasyAntiCheat 2022-08-20 19:53 - 2022-07-24 10:26 - 000000000 ____D C:\Program Files (x86)\Origin Games 2022-08-17 20:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2022-08-17 11:25 - 2022-01-26 17:49 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-08-17 11:25 - 2022-01-26 17:49 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-08-16 14:23 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2022-08-11 23:43 - 2022-07-23 19:02 - 000000000 ____D C:\Program Files (x86)\Origin 2022-08-11 11:34 - 2020-09-06 18:37 - 000002228 _____ C:\Users\cipher\Desktop\Discord.lnk 2022-08-11 11:32 - 2022-01-26 17:44 - 000442424 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-08-11 11:31 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-08-11 11:31 - 2019-12-07 16:53 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-08-11 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr ==================== Fichiers à la racine de certains dossiers ======== 2021-09-11 08:52 - 2021-07-13 08:52 - 000000032 ____R () C:\ProgramData\hash.dat 2022-01-26 15:46 - 2022-01-26 15:47 - 000039048 _____ () C:\Users\cipher\AppData\Local\HDGraph.log 2022-07-05 20:26 - 2022-07-05 20:27 - 000005281 _____ () C:\Users\cipher\AppData\Local\krita-sysinfo.log 2022-07-05 20:26 - 2022-07-05 20:35 - 000001839 _____ () C:\Users\cipher\AppData\Local\krita.log 2022-07-05 20:35 - 2022-07-05 20:35 - 000000039 _____ () C:\Users\cipher\AppData\Local\kritadisplayrc 2022-07-05 20:26 - 2022-07-05 20:35 - 000016213 _____ () C:\Users\cipher\AppData\Local\kritarc 2020-10-26 12:47 - 2022-08-25 19:33 - 000021189 _____ () C:\Users\cipher\AppData\Local\PlariumPlay.log 2020-09-30 16:21 - 2020-09-30 16:21 - 000005838 _____ () C:\Users\cipher\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================