Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 25-05-2023 Exécuté par amand (administrateur) sur DESKTOP-Q8QFGNQ (LENOVO 81EK) (25-05-2023 16:28:45) Exécuté depuis C:\Users\amand\OneDrive\Bureau\FRST64 (1).exe Profils chargés: amand Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.2846 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (20E7E2C9-A2A9-4A02-BB29-6FCFB9E042BB -> Lenovo(beijing) Limited) C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.4.12.0_x64__5grkq8ppsgwt4\LaunchUtility\utility.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12128.2.57059.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.242\GoogleCrashHandler.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.242\GoogleCrashHandler64.exe (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(DeviceSettingsSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(LenovoBoostAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(LenovoBoostSystemAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(MultimediaAddin).exe (C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantage-(VantageCoreAddin).exe (C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe (C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe <2> (C:\Windows\SoftwareDistribution\Download\Install\Windows-KB890830-x64-V5.113.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MRT.exe (cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\amand\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Discord Inc. -> Discord Inc.) C:\Users\amand\AppData\Local\Discord\app-1.0.9013\Discord.exe <6> (DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxEM.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <8> (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2> (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_b117548b2e075ba1\aesm_service.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7c484f80872e1cd8\jhi_service.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0d8dab4470c5524b\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a9a2dde7124f013f\OneApp.IGCC.WinService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_8f079a8a5c196b5d\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_8f079a8a5c196b5d\IntelCpHeciSvc.exe (services.exe ->) (Intel(R) Trust Services -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_a93205b6238060e4\lib\SocketHeciServer.exe (services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\LenovoVantageService.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\ymc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (services.exe ->) (Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_ef793e242527b727\WTabletServiceISD.exe <2> (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.97.3204.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <6> (svchost.exe ->) (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21422.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotification.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (wuauclt.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\Windows-KB890830-x64-V5.113.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3091136 2020-09-10] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [292104 2023-05-10] (Intel Corporation -> Intel) HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [30870320 2019-12-07] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [30870320 2019-12-07] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION HKU\S-1-5-21-1288344464-3783213887-496619624-1001\...\Run: [KeePass Password Safe 2] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3091136 2020-09-10] (Open Source Developer, Dominik Reichl -> Dominik Reichl) <==== ATTENTION HKU\S-1-5-21-1288344464-3783213887-496619624-1001\...\Run: [Discord] => C:\Users\amand\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub) <==== ATTENTION HKU\S-1-5-21-1288344464-3783213887-496619624-1001\...\Run: [MicrosoftEdgeAutoLaunch_C200C58E66B3714422807FD31641314E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4152216 2023-05-18] (Microsoft Corporation -> Microsoft Corporation) <==== ATTENTION HKLM\...\Windows x64\Print Processors\Canon MG2500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBX.DLL [30208 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor MG2500 series: C:\WINDOWS\system32\CNMLMBX.DLL [391168 2013-03-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\113.0.5672.127\Installer\chrmstp.exe [2023-05-23] (Google LLC -> Google LLC) ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {02965C1C-7706-4C6F-8930-FEE090BCEC96} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {05EF810B-3543-4C4D-A723-F1FD3042CC64} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [5002480 2023-02-21] (Intel Corporation -> Intel Corporation) Task: {1A9A51FD-2D00-455F-AB75-04B245876CBB} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {1D6AC667-AA7E-4FA3-8221-F138AE43C53E} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {3A7895E9-E1D1-451B-A080-DDDADED63EDE} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [123872 2023-05-14] (Microsoft Corporation -> Microsoft Corporation) Task: {4392C228-B2A9-493D-8262-DA7B410897B6} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService Task: {45305104-9035-4DE0-8515-20D63C8A9CE4} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1288344464-3783213887-496619624-1001 => C:\Users\amand\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [89096 2023-04-10] (Lenovo (Beijing) Limited -> Lenovo Group Limited) Task: {4E43F7D9-0855-43B3-BE25-681E3C29B1A7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {50CDDF0B-8E2E-4AC6-88D2-CD00AAB841FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-02] (Google Inc -> Google Inc.) Task: {5B800E68-75A0-4B09-A52F-6649C825E4AF} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {729ADD48-4E1C-4974-AEE4-B0FA94DDD324} - System32\Tasks\LenovoUtility Task => C:\Windows\explorer.exe [5249688 2023-04-29] (Microsoft Windows -> Microsoft Corporation) Task: {77DDBBDE-372A-447A-AA46-357F5573AD97} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718752 2023-04-08] (Mozilla Corporation -> Mozilla Foundation) Task: {7AE1B372-D2DD-4332-956E-A6B85580FC96} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {7BC6B774-8F15-4467-83DD-E78760B3F45A} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [5002480 2023-02-21] (Intel Corporation -> Intel Corporation) Task: {7CF2DBC0-0EFB-4731-9299-B12A31248431} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {8ACF3455-0DD8-4610-8231-0B58A7AD8BE0} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [74952 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {8BEB7F8F-834D-4784-89E6-A55038A2C28C} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-04-08] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {972F90C9-6098-43C3-AF93-4F3D63A46AF0} - System32\Tasks\OneDrive Standalone Update Task v2 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Pas de fichier) Task: {986A0BBA-4994-4E14-80D4-CB0395975418} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [123872 2023-05-14] (Microsoft Corporation -> Microsoft Corporation) Task: {A262595C-741F-4579-ADBF-CF79AABC7312} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {A72E3803-D3BE-4D19-B7A3-B6935B7FCE40} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-02] (Google Inc -> Google Inc.) Task: {ADB7EFD8-048C-4E6F-8801-5F156E2EB05C} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-1288344464-3783213887-496619624-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {AE747BD3-A8DC-4714-84B9-793E33CB6066} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\5f75a9d8-b4ae-451e-a83f-299efa43404e => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {AF4262C6-3A5C-4E47-8A0B-26FDF121B2C2} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\ff9fba52-e39d-4ad2-a870-fc6be9f517e0 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {AFD229FB-0D21-45F1-B748-22866E5F6650} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B3019CAF-CDAD-48E1-913E-A9619633AD12} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Pas de fichier) Task: {B48C82EC-F2A9-42FE-969C-9BD134047A48} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984 2011-06-01] (Apple Inc. -> Apple Inc.) Task: {B4D9C0D1-0EDC-47F0-9824-52103FF81B77} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26513416 2023-05-14] (Microsoft Corporation -> Microsoft Corporation) Task: {B7CAD22D-623F-4D6A-925A-F25DBB258426} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26513416 2023-05-14] (Microsoft Corporation -> Microsoft Corporation) Task: {BA291813-1E7A-4BDA-9FCF-0D56AA859FC2} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.6.15.0\ScheduleEventAction.exe VantageTelemetryAddinTask (Pas de fichier) Task: {BFD19C52-1134-4D5B-85CB-36C03D1142F2} - System32\Tasks\Lenovo\Lenovo YMC Uninstall Task => C:\Windows\System32\ymc.exe [56048 2018-03-22] (Lenovo -> Lenovo) Task: {C1612C9F-1DC1-4041-A671-0C88B1AAA3D9} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService Task: {C475D0A5-36D6-4FB8-8E49-DF57AD4D1264} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C93CB236-D2C8-40FC-8444-E522D16BD703} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CFDB4579-9C85-417B-9AB7-50DA6050E557} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [77312 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {DE93B8F5-A833-4EC0-8339-EB8A418EEB81} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {E22EECB4-86D6-4CA5-80EE-426AA6722284} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\3.13.43.0\ScheduleEventAction.exe [28888 2022-11-29] (Lenovo -> Lenovo Group Ltd.) Task: {E3331EFC-3F32-471D-AA85-DD8FC40D71C4} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\3b2508f1-9c12-44fb-ba7f-faebe10524ac => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {EB6AC20D-BFCA-44A7-BFF6-5F585C57E5CD} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b4618b1d-9b36-418d-994b-a62087e3bb49 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) Task: {EED465C4-3253-4004-B8E9-FB3854DB90F8} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\WINDOWS\System32\Wscript.exe [170496 2021-09-28] (Microsoft Windows -> Microsoft Corporation) -> //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {F726F35E-4575-4C5A-BBD1-E8A6FB9A5CEB} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1900320 2023-01-19] (Lenovo -> ) Task: {F7708EE6-41A6-444F-A2EB-B725062C17ED} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1900320 2023-01-19] (Lenovo -> ) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) ProxyServer: [S-1-5-21-1288344464-3783213887-496619624-1001] => 43.240.112.243:8080 Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-31] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-31] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{14196b85-f75a-41be-b4c5-f02127c914fb}: [DhcpNameServer] 89.2.0.1 89.2.0.2 Tcpip\..\Interfaces\{8dbf4ad8-3c1b-4efe-9f73-7d868a32e9a7}: [DhcpNameServer] 150.202.1.2 Edge: ======= Edge Extension: (Pas de nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [non trouvé(e)] Edge Extension: (Pas de nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [non trouvé(e)] Edge Extension: (Pas de nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [non trouvé(e)] Edge Extension: (Pas de nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [non trouvé(e)] Edge DefaultProfile: Default Edge Profile: C:\Users\amand\AppData\Local\Microsoft\Edge\User Data\Default [2023-05-25] Edge Extension: (Edge relevant text changes) - C:\Users\amand\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-05-23] FireFox: ======== FF DefaultProfile: 2ij5ozo1.default FF ProfilePath: C:\Users\amand\AppData\Roaming\Mozilla\Firefox\Profiles\2ij5ozo1.default [2021-11-26] FF Plugin: @videolan.org/vlc,version=3.0.7 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-05-24] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-13] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\amand\AppData\Local\Google\Chrome\User Data\Default [2023-05-25] CHR Notifications: Default -> hxxps://meet.google.com; hxxps://teams.microsoft.com; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.zt-za.com CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?FORM=ZQSRDL&PC=ZQ01&q={searchTerms} CHR DefaultSearchKeyword: Default -> bing.com CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?query={searchTerms} CHR Extension: (Google Docs hors connexion) - C:\Users\amand\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-25] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\amand\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-08] CHR Extension: (Assistant Amazon pour Chrome) - C:\Users\amand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2023-04-29] CHR Extension: (Canvas Capture) - C:\Users\amand\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnhaaddlgbpchligciolcdjgndcpelee [2020-06-21] CHR Profile: C:\Users\amand\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-09-26] CHR Profile: C:\Users\amand\AppData\Local\Google\Chrome\User Data\System Profile [2022-04-15] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11749376 2023-05-14] (Microsoft Corporation -> Microsoft Corporation) R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [598384 2019-01-17] (Dolby Laboratories, Inc. -> ) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [42760 2023-05-10] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [213256 2023-05-10] (Intel Corporation -> Intel) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [339536 2019-01-11] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [93896 2022-11-20] (Lenovo -> Lenovo Group Ltd.) R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\\3.13.43.0\LenovoVantageService.exe [32464 ] (Lenovo -> Lenovo Group Ltd.) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe [3216064 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe [133544 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation) R2 YMC; C:\WINDOWS\System32\ymc.exe [56048 2018-03-22] (Lenovo -> Lenovo) ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] R3 MpKsl79f34074; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{90FE38FA-B080-457F-8273-8BD1DC86A09B}\MpKslDrv.sys [212264 2023-05-14] (Microsoft Windows -> Microsoft Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 WacHIDRouterISD; C:\WINDOWS\System32\drivers\WacHIDRouterISD.sys [85440 2018-05-23] (Wacom Technology Corporation -> Wacom Technology, Corp.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2023-05-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [498944 2023-05-03] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99608 2023-05-03] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-05-23 22:40 - 2023-05-23 22:40 - 000000000 ___HD C:\$WinREAgent 2023-05-14 19:37 - 2023-05-14 19:37 - 000001521 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2023-05-14 19:36 - 2023-05-14 19:36 - 000000000 ____D C:\Program Files (x86)\Intel 2023-05-03 20:42 - 2023-05-03 20:42 - 000081965 _____ C:\Users\amand\Downloads\ALLOCS FEV 2023.pdf 2023-05-03 20:42 - 2023-05-03 20:42 - 000081964 _____ C:\Users\amand\Downloads\ALLOCS JANVIER 2023.pdf 2023-05-03 20:41 - 2023-05-03 20:41 - 000081978 _____ C:\Users\amand\Downloads\ALLOCS MARS 2023.pdf 2023-05-03 20:39 - 2023-05-03 20:39 - 000087508 _____ C:\Users\amand\Downloads\PE ACTIVITE REDUITE.pdf 2023-04-30 00:35 - 2023-04-30 00:37 - 000045003 _____ C:\Users\amand\OneDrive\Documents\schema bac.pptx 2023-04-29 20:14 - 2023-04-30 17:06 - 000000000 ____D C:\Users\amand\AppData\Roaming\RVReefTools 2023-04-29 20:14 - 2023-04-29 20:14 - 000775256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\temp.001 2023-04-29 20:14 - 2023-04-29 20:14 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\temp.000 2023-04-29 20:14 - 2023-04-29 20:14 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\temp.002 2023-04-29 20:14 - 2023-04-29 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RV Reef Tools 2023-04-29 20:14 - 2023-04-29 20:14 - 000000000 ____D C:\Program Files (x86)\RV Reef Tools 2023-04-29 20:13 - 2023-04-29 20:14 - 000000000 ____D C:\Program Files (x86)\RVReefTools 2023-04-29 20:13 - 2023-04-29 20:13 - 000286720 ____N (Microsoft Corporation) C:\WINDOWS\Setup1.exe 2023-04-29 20:13 - 2023-04-29 20:13 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\ST6UNST.EXE 2023-04-29 20:12 - 2023-04-29 20:12 - 000045056 _____ (RCL) C:\Users\amand\Downloads\RVRTDeploy.exe ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2023-05-25 16:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-05-25 16:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-05-25 16:29 - 2019-06-10 11:56 - 000000000 ____D C:\FRST 2023-05-25 16:28 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-05-25 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-05-25 16:27 - 2019-03-02 15:58 - 000000000 ____D C:\Program Files (x86)\Google 2023-05-25 16:21 - 2020-10-29 02:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-05-23 22:42 - 2019-08-26 20:35 - 000000000 ____D C:\Users\amand\AppData\Roaming\Microsoft\Word 2023-05-23 22:40 - 2019-03-02 00:08 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-05-23 22:39 - 2020-06-24 00:41 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-05-23 22:39 - 2019-03-02 00:08 - 159583304 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-05-20 15:27 - 2020-10-29 02:24 - 000003884 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-05-20 15:27 - 2020-10-29 02:24 - 000003760 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-05-14 19:49 - 2022-02-02 16:18 - 000000000 ____D C:\Users\amand\AppData\Local\Discord 2023-05-14 19:37 - 2018-10-13 08:07 - 000000000 ____D C:\ProgramData\Package Cache 2023-05-14 19:30 - 2019-08-26 19:53 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2023-05-14 19:24 - 2020-10-29 02:24 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-05-14 19:24 - 2020-10-29 02:24 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-05-03 21:08 - 2020-11-30 23:46 - 000000000 ____D C:\Users\amand\AppData\Roaming\KeePass 2023-05-03 20:52 - 2020-10-29 02:24 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2023-05-03 20:51 - 2020-10-29 02:17 - 001681434 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-05-03 20:51 - 2019-12-07 16:49 - 000757894 _____ C:\WINDOWS\system32\perfh00C.dat 2023-05-03 20:51 - 2019-12-07 16:49 - 000142648 _____ C:\WINDOWS\system32\perfc00C.dat 2023-05-03 20:50 - 2019-07-13 22:29 - 000000000 ____D C:\Users\amand\AppData\Local\D3DSCache 2023-05-03 20:48 - 2022-02-02 16:19 - 000000000 ____D C:\Users\amand\AppData\Roaming\discord 2023-05-03 20:47 - 2019-07-12 21:20 - 000000000 __SHD C:\Users\amand\IntelGraphicsProfiles 2023-05-03 20:46 - 2023-04-08 23:50 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-05-03 20:46 - 2020-10-29 02:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-05-03 20:46 - 2020-10-29 02:13 - 000438080 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-05-03 20:46 - 2020-10-29 02:13 - 000008192 ___SH C:\DumpStack.log.tmp 2023-05-03 20:46 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-05-03 20:46 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-05-03 20:46 - 2019-10-15 02:00 - 000000134 _____ C:\WINDOWS\system32\regtest.txt 2023-05-03 20:46 - 2019-07-12 21:20 - 000000000 ____D C:\Intel 2023-05-03 20:46 - 2019-04-07 22:09 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-05-03 20:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-05-03 20:41 - 2018-04-17 21:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-04-30 17:01 - 2019-10-15 01:43 - 000000000 ____D C:\Users\amand\AppData\Local\LenovoServiceBridge 2023-04-30 00:26 - 2019-09-04 15:20 - 000000000 ____D C:\Users\amand\AppData\Roaming\Microsoft\PowerPoint 2023-04-30 00:12 - 2019-03-12 19:33 - 000000000 ____D C:\Users\amand\AppData\Local\ElevatedDiagnostics 2023-04-30 00:10 - 2019-10-15 01:29 - 000000000 ____D C:\Users\amand\AppData\Roaming\Microsoft\MMC 2023-04-29 20:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-04-29 20:14 - 2020-10-29 02:17 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-04-29 15:50 - 2019-04-07 22:09 - 000000000 ____D C:\Users\amand\AppData\LocalLow\Mozilla ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== BCD ================================ Gestionnaire de démarrage du microprogramme ------------------------------------------- identificateur {fwbootmgr} displayorder {bootmgr} {7e24658d-9243-11ea-adf7-806e6f6e6963} {7e24658a-9243-11ea-adf7-806e6f6e6963} {7e24658b-9243-11ea-adf7-806e6f6e6963} {7e24658c-9243-11ea-adf7-806e6f6e6963} timeout 0 Gestionnaire de démarrage Windows --------------------------------- identificateur {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale fr-FR inherit {globalsettings} default {current} resumeobject {79283303-197b-11eb-be8b-c228a76b7f89} displayorder {current} toolsdisplayorder {memdiag} timeout 0 Application logicielle (101fffff) -------------------------------- identificateur {281ec95f-cefe-11e8-b759-806e6f6e6963} description EFI Network 0 for IPv4 (00-80-9B-00-42-C4) Application logicielle (101fffff) -------------------------------- identificateur {281ec960-cefe-11e8-b759-806e6f6e6963} description EFI Network 0 for IPv6 (00-80-9B-00-42-C4) Application logicielle (101fffff) -------------------------------- identificateur {7e24658a-9243-11ea-adf7-806e6f6e6963} description EFI USB Device Application logicielle (101fffff) -------------------------------- identificateur {7e24658b-9243-11ea-adf7-806e6f6e6963} description EFI DVD/CDROM Application logicielle (101fffff) -------------------------------- identificateur {7e24658c-9243-11ea-adf7-806e6f6e6963} description EFI Network Application logicielle (101fffff) -------------------------------- identificateur {7e24658d-9243-11ea-adf7-806e6f6e6963} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager Chargeur de démarrage Windows ----------------------------- identificateur {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale fr-FR inherit {bootloadersettings} recoverysequence {79283305-197b-11eb-be8b-c228a76b7f89} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {79283303-197b-11eb-be8b-c228a76b7f89} nx OptIn bootmenupolicy Standard Chargeur de démarrage Windows ----------------------------- identificateur {79283305-197b-11eb-be8b-c228a76b7f89} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{79283306-197b-11eb-be8b-c228a76b7f89} path \windows\system32\winload.efi description Windows Recovery Environment locale fr-FR inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{79283306-197b-11eb-be8b-c228a76b7f89} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Reprendre à partir de la mise en veille prolongée ------------------------------------------------- identificateur {79283303-197b-11eb-be8b-c228a76b7f89} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale fr-FR inherit {resumeloadersettings} recoverysequence {79283305-197b-11eb-be8b-c228a76b7f89} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Testeur de mémoire Windows -------------------------- identificateur {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostics mémoire Windows locale fr-FR inherit {globalsettings} badmemoryaccess Yes Paramètres EMS -------------- identificateur {emssettings} bootems No Paramètres du débogueur ----------------------- identificateur {dbgsettings} debugtype Local Erreurs de mémoire RAM ---------------------- identificateur {badmemory} Paramètres globaux ------------------ identificateur {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Paramètres du chargeur de démarrage ----------------------------------- identificateur {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Paramètres de l'hyperviseur ------------------- identificateur {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Paramètres du chargeur de reprise --------------------------------- identificateur {resumeloadersettings} inherit {globalsettings} Options de périphérique ----------------------- identificateur {79283306-197b-11eb-be8b-c228a76b7f89} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Fin de FRST.txt ========================