Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 05.01.2024 01 Exécuté par jean- (administrateur) sur DESKTOP-V5QG97R (Hewlett-Packard p6-2430ef) (05-01-2024 18:49:35) Exécuté depuis C:\Users\jean-\Desktop\FRST64.exe Profils chargés: jean- & Le Chef Plate-forme: Microsoft Windows 10 Professionnel Version 22H2 19045.3803 (X64) Langue: Français (France) Navigateur par défaut: Chrome Mode d'amorçage: Normal ==================== Processus (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.) (C:\Program Files\Common Files\Logishrd\sp6\LU1\LULnchr.exe ->) (Logitech -> Logitech, Inc.) C:\Program Files\Common Files\Logishrd\sp6\LU1\LogitechUpdate.exe (C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3> (C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\85.0.25.0\crashpad_handler.exe (C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe <6> (C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\85.0.26.0\crashpad_handler.exe (C:\Program Files\Logitech\SetPointP\SetPoint.exe ->) (Logitech -> Logitech, Inc.) C:\Program Files\Common Files\Logishrd\sp6\LU1\LULnchr.exe (C:\Program Files\Logitech\SetPointP\SetPoint.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <10> (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\85.0.25.0\GoogleDriveFS.exe (explorer.exe ->) (IDT, Inc.) [Fichier non signé] C:\Program Files\IDT\WDM\sttray64.exe (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (services.exe ->) (Check Point Software Technologies Ltd. -> ) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe (services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\EFRService.exe (services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\RemediationService.exe (services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe (services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe (services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ICM\ICM-Service-NET.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (IDT, Inc.) [Fichier non signé] C:\Program Files\IDT\WDM\stacsv64.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Shanghai Microvirt Software Technology Co., Ltd. -> ) D:\Program Files\Microvirt\MEmu\MemuService.exe (svchost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe ==================== Registre (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [374680 2023-11-03] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-20] (IDT, Inc.) [Fichier non signé] HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [41664 2013-11-20] (Integrated Device Technology Inc. -> Hewlett-Packard) [Fichier non signé] HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136 2020-11-20] (Logitech Inc -> Logitech, Inc.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3500056 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) HKLM-x32\...\Run: [ZaAntiRansomware] => C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe [4231392 2021-04-19] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) HKLM-x32\...\Run: [ZANG] => C:\Program Files (x86)\CheckPoint\ZANG\UI\UI_Main.exe (Pas de fichier) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2024-01-05] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2024-01-05] (Google LLC -> Google, Inc.) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2595344 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\Run: [AvastBrowserAutoLaunch_C7AA158FB1A21DCF776CF297BF5C22DA] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3364272 2023-03-28] (Avast Software s.r.o. -> AVAST Software) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\Run: [Spotify] => C:\Users\jean-\AppData\Roaming\Spotify\Spotify.exe [20403576 2023-06-09] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2024-01-05] (Google LLC -> Google, Inc.) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\Run: [NoxMultiPlayer] => "D:\Program Files\Nox\bin\MultiPlayerManager.exe" -startSource:auto_start (Pas de fichier) HKU\S-1-5-21-112198760-865738071-172339648-1001\...\MountPoints2: {05acd9a2-6d83-11ec-8be1-806e6f6e6963} - "F:\InstallNavi.exe" HKU\S-1-5-21-112198760-865738071-172339648-1004\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2595344 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-112198760-865738071-172339648-1004\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2024-01-05] (Google LLC -> Google, Inc.) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.26.0\GoogleDriveFS.exe [58654496 2024-01-05] (Google LLC -> Google, Inc.) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\120.0.6099.199\Installer\chrmstp.exe [2024-01-05] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\111.0.20716.147\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level GroupPolicy: Restriction ? <==== ATTENTION Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION ==================== Tâches planifiées (Avec liste blanche) ================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1A9C40E1-A122-4FEC-9E4A-A1B111CA692A} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [4096992 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {B920AC9F-8F58-46EE-B239-7EF792B7D11C} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [4434400 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {7D111298-CDEB-4722-A5BF-49871382DA7D} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5153176 2023-11-03] (Avast Software s.r.o. -> AVAST Software) Task: {C29EA87C-B486-4BD4-82C7-929B87FF49F7} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3364272 2023-03-28] (Avast Software s.r.o. -> AVAST Software) Task: {B5A8DF88-5D86-4A5B-BBAA-F0F1FD74EF7E} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3364272 2023-03-28] (Avast Software s.r.o. -> AVAST Software) Task: {E8E6638C-D8CF-4E33-BCA1-5547182B3B54} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-09-20] (Avast Software s.r.o. -> Avast Software) Task: {7B73B79A-6790-43F0-9FCC-A0619245815C} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\jean-\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2023-12-17] (ESET, spol. s r.o. -> ESET) Task: {7E47CD44-B5C1-498F-87A2-69DA190141AE} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\jean-\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2023-12-17] (ESET, spol. s r.o. -> ESET) Task: {0E13D228-DDC0-4733-93BB-FA0DCE4EE538} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-04] (Google LLC -> Google LLC) Task: {C3927BFE-67E3-4D85-9778-7E6A3C41C533} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-01-04] (Google LLC -> Google LLC) Task: {7987F33C-8095-4779-806A-DA90F8FD761A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175440 2023-12-06] (Microsoft Corporation -> Microsoft Corporation) Task: {7AF6D731-84B0-4F77-8C0A-D9DA9E2E36D9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175440 2023-12-06] (Microsoft Corporation -> Microsoft Corporation) Task: {25FB22AB-7DCD-496F-9EBB-43AB21C25CFD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306728 2024-01-05] (Microsoft Corporation -> Microsoft Corporation) Task: {1A07A6BA-EFF7-4142-8D64-C9D13DC0ECF2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306728 2024-01-05] (Microsoft Corporation -> Microsoft Corporation) Task: {461027D9-4EAB-4EEC-A69F-16C541DA23E2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [169144 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) Task: {E22E246C-A07C-412A-86C8-E8C0047E7AD5} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) Task: {47367202-BC5E-4692-A75D-505EA19418F2} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-112198760-865738071-172339648-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) Task: {2ECD5791-F80C-436E-BD68-23FF3D044F3C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-112198760-865738071-172339648-1004 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) Task: {89FB3F2E-01A6-403A-A5A8-8241E73C247B} - System32\Tasks\Opera scheduled assistant Autoupdate 1686491948 => C:\Users\jean-\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\jean-\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {67F88570-1896-4C1D-A803-CBA705033274} - System32\Tasks\Opera scheduled Autoupdate 1686491943 => C:\Users\jean-\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Pas de fichier) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Internet (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{6cf612b2-cd52-4c55-a8dd-1ce5d5031394}\451607F6F53416D6F533641344: [DhcpNameServer] 192.168.191.1 Tcpip\..\Interfaces\{e558d23e-1a12-42b9-923c-3b42a7ecb361}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{e558d23e-1a12-42b9-923c-3b42a7ecb361}: [DhcpDomain] lan HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default [2023-12-17] Edge HomePage: Default -> hxxp://www.google.fr/ Edge Extension: (Avast Online Security & Privacy) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2023-04-10] Edge Extension: (Google Docs hors connexion) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-06] Edge Extension: (AdBlock — le meilleur bloqueur de pubs) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-12-16] Edge Extension: (Edge relevant text changes) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-06] Edge Extension: (AdBlocker Stands) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lgblnfidahcdcjddiepkckcfdhpknnjh [2023-12-16] Edge Extension: (AdBlocker Ultimate) - C:\Users\jean-\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ohahllgiabjaoigichmmfljhkcfikeof [2023-12-16] FireFox: ======== FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2017-11-01] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2022-01-09] [non signé] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-12-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-12-15] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default [2024-01-05] CHR Notifications: Default -> hxxps://www.bricorama.fr; hxxps://www.decathlon.fr; hxxps://www.francebleu.fr; hxxps://www.laboutiqueduvolet.com; hxxps://www.manomano.fr; hxxps://www.peinturevoiture.fr CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms} CHR DefaultSearchKeyword: Default -> duckduckgo.com CHR DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list CHR Extension: (uBlock Origin) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-12-15] CHR Extension: (Adobe Acrobat : outils de modification, de conversion et de signature de PDF) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-12-15] CHR Extension: (Google Docs hors connexion) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-06] CHR Extension: (Avast Online Security & Privacy) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2023-06-11] CHR Extension: (Online Security) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2024-01-05] CHR Extension: (Lanceur d'applications pour Drive (par Google)) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-10-06] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\jean-\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-01-04] CHR HKLM\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKU\S-1-5-21-112198760-865738071-172339648-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKU\S-1-5-21-112198760-865738071-172339648-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-11-01] CHR HKLM-x32\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] ==================== Services (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82640 2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [4555744 2023-11-07] (Adobe Inc. -> Adobe Systems, Incorporated) R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9111960 2023-12-15] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [806296 2023-11-03] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [839064 2023-11-03] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-01-04] (Avast Software s.r.o. -> AVAST Software) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233744 2023-11-24] (Microsoft Corporation -> Microsoft Corporation) R2 CPEFR; C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\EFRService.exe [3274432 2021-04-10] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) R2 CpSbaCipolla; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33984 2021-04-19] (Check Point Software Technologies Ltd. -> ) R2 CpSbaUpdater; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33984 2021-04-19] (Check Point Software Technologies Ltd. -> ) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncHelper.exe [3514384 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [218272 2022-04-15] (HP Inc. -> HP Inc.) R2 MEmuSVC; D:\Program Files\Microvirt\MEmu\MemuService.exe [85304 2019-09-12] (Shanghai Microvirt Software Technology Co., Ltd. -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\OneDriveUpdaterService.exe [3851280 2023-12-15] (Microsoft Corporation -> Microsoft Corporation) R2 RemediationService; C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\RemediationService.exe [18624 2021-03-29] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-11-20] (IDT, Inc.) [Fichier non signé] R2 TESvc; C:\Program Files (x86)\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe [137920 2021-04-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S3 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [4576208 2022-08-22] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ZA NET ICM Service; C:\Program Files (x86)\CheckPoint\ICM\ICM-Service-NET.exe [42208 2020-03-13] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) R2 ZAARUpdateService; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe [51936 2021-04-19] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S3 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [129216 2022-08-22] (Check Point Software Technologies Ltd. -> Check Point Software Technologies, Ltd.) S3 AvastSecureBrowserElevationService; "C:\Program Files (x86)\AVAST Software\Browser\Application\111.0.20716.147\elevation_service.exe" [X] ===================== Pilotes (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) R3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [136760 2019-05-07] (Alcorlink Corp. -> ) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [31528 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [240688 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393904 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [297984 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [96064 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [39752 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [275280 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [561888 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [105352 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [80528 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [952232 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [710128 2023-12-15] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [213296 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [319672 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [284672 2021-04-09] (Microsoft Corporation) [Fichier non signé] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Fichier non signé] R2 cpbak; C:\WINDOWS\System32\DRIVERS\cpbak.sys [83248 2020-09-03] (Check Point Software Technologies Ltd. -> Check Point Software Technologies) R0 cpdiskflt; C:\WINDOWS\System32\DRIVERS\cpdiskflt.sys [21968 2023-02-17] (Microsoft Windows Hardware Compatibility Publisher -> Check Point Software Technologies) R1 CPEPMon; C:\WINDOWS\System32\DRIVERS\CPEPMon.sys [153040 2021-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Check Point Software Technologies) R1 epnetflt; C:\WINDOWS\system32\drivers\epnetflt.sys [135984 2020-12-06] (Check Point Software Technologies Ltd. -> Check Point Software Technologies) R1 epregflt; C:\WINDOWS\system32\drivers\epregflt.sys [133416 2020-12-02] (Check Point Software Technologies Ltd. -> Check Point Software Technologies) R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) R2 ISWKL; C:\Program Files (x86)\CheckPoint\Endpoint Security\Endpoint Common\bin\ISWKL.sys [56184 2021-01-28] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) R1 klbackupdisk; C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys [111064 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [212464 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [41656 2022-08-22] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab) R1 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [529896 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R1 klgse; C:\WINDOWS\System32\DRIVERS\klgse.sys [657696 2022-08-22] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\WINDOWS\system32\DRIVERS\klhk.sys [1447712 2022-08-22] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klifsdk; C:\WINDOWS\System32\DRIVERS\klifsdk.sys [1041544 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R0 klupd_klifsdk_arkmon; C:\WINDOWS\System32\Drivers\klupd_klifsdk_arkmon.sys [384656 2023-11-04] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) S3 klupd_klifsdk_klark; C:\WINDOWS\System32\Drivers\klupd_klifsdk_klark.sys [354640 2023-11-04] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R0 klupd_klifsdk_klbg; C:\WINDOWS\System32\Drivers\klupd_klifsdk_klbg.sys [183120 2023-11-04] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) S3 klupd_klifsdk_mark; C:\WINDOWS\System32\Drivers\klupd_klifsdk_mark.sys [262712 2023-11-04] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [326112 2022-08-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab) R1 Ld9BoxNetLwf; C:\WINDOWS\system32\DRIVERS\Ld9BoxNetLwf.sys [252232 2023-06-10] (Shanghai Chang Zhi Network Technology Co,. Ltd. -> Oracle Corporation) R2 Ld9BoxSup; C:\Program Files\ldplayer9box\Ld9BoxSup.sys [376144 2023-06-24] (Shanghai Chang Zhi Network Technology Co,. Ltd. -> Oracle Corporation) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222272 2023-11-03] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MEmuDrv; D:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [320360 2021-01-04] (Shanghai Microvirt Software Technology Co., Ltd. -> Maiwei Corporation) R3 STHDA; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [551936 2013-11-20] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.) R3 tilfilter; C:\WINDOWS\System32\drivers\TIxHCIlfilter.sys [34424 2016-08-20] (Texas Instruments, Inc. -> Texas Instruments, Inc.) R3 tiufilter; C:\WINDOWS\System32\drivers\TIxHCIufilter.sys [39032 2016-08-20] (Texas Instruments, Inc. -> Texas Instruments, Inc.) S3 usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [49152 2021-04-09] (Microsoft Corporation) [Fichier non signé] R1 Vsdatant; C:\WINDOWS\System32\drivers\vsdatant.sys [461432 2022-08-22] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) U3 iswSvc; pas de ImagePath S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X] ==================== NetSvcs (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Un mois (créés) (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-01-05 18:49 - 2024-01-05 18:50 - 000035142 _____ C:\Users\jean-\Desktop\FRST.txt 2024-01-05 18:44 - 2024-01-05 18:50 - 000000000 ____D C:\FRST 2024-01-05 18:42 - 2024-01-05 18:42 - 002388992 _____ (Farbar) C:\Users\jean-\Desktop\FRST64.exe 2024-01-05 18:41 - 2024-01-05 18:42 - 002388992 _____ (Farbar) C:\Users\jean-\Downloads\FRST64.exe 2024-01-05 18:26 - 2024-01-05 18:26 - 000000000 ____D C:\Users\jean-\OneDrive\Documents\MAGIX Téléchargements 2024-01-05 18:26 - 2024-01-05 18:26 - 000000000 ____D C:\Users\jean-\OneDrive\Documents\MAGIX 2024-01-05 18:25 - 2024-01-05 18:25 - 000000000 ____D C:\Users\jean-\OneDrive\Documents\XuanZhi9 2024-01-05 18:25 - 2023-12-28 11:01 - 000023485 _____ C:\Users\jean-\OneDrive\Documents\img20231228_11012160.pdf 2024-01-05 18:25 - 2023-12-20 09:18 - 000034913 _____ C:\Users\jean-\OneDrive\Documents\img20231220_09182598.pdf 2023-12-17 16:44 - 2023-12-17 17:04 - 000003016 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2023-12-17 16:44 - 2023-12-17 17:04 - 000002636 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2023-12-17 15:52 - 2023-12-17 17:13 - 000001321 _____ C:\Users\jean-\Desktop\ESET Online Scanner.lnk 2023-12-16 20:03 - 2023-12-16 20:03 - 000000824 _____ C:\Users\jean-\Downloads\DuckDuckGo (1).appinstaller 2023-12-16 19:47 - 2023-12-16 19:47 - 000000824 _____ C:\Users\jean-\Downloads\DuckDuckGo.appinstaller 2023-12-15 23:19 - 2023-12-15 23:19 - 000000000 ____D C:\WINDOWS\InboxApps 2023-12-15 23:13 - 2023-12-15 23:13 - 000016707 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-12-15 22:59 - 2023-12-15 22:59 - 000000000 ___HD C:\$WinREAgent 2023-12-15 22:11 - 2023-12-15 22:11 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2023-12-15 22:02 - 2023-12-15 22:02 - 015274968 _____ (ESET) C:\Users\jean-\Desktop\esetonlinescanner.exe 2023-12-15 22:00 - 2023-12-17 17:13 - 000001427 _____ C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2023-12-15 22:00 - 2023-12-15 22:00 - 000000000 ____D C:\Users\jean-\AppData\Local\ESET ==================== Un mois (modifiés) ================== (Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.) 2024-01-05 18:48 - 2022-01-04 15:37 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-05 18:44 - 2022-01-06 17:04 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-01-05 18:44 - 2022-01-04 18:34 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-05 18:39 - 2022-01-04 17:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2024-01-05 18:38 - 2022-01-04 17:40 - 000000000 ____D C:\Program Files\Microsoft Office 2024-01-05 18:35 - 2022-01-04 17:09 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-05 18:35 - 2022-01-04 17:09 - 000002289 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2024-01-05 18:35 - 2022-01-04 15:37 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-05 18:35 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-01-05 18:34 - 2022-01-17 11:43 - 000002182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2024-01-05 18:34 - 2022-01-17 11:43 - 000002085 _____ C:\Users\jean-\Desktop\Google Slides.lnk 2024-01-05 18:34 - 2022-01-17 11:43 - 000002085 _____ C:\Users\jean-\Desktop\Google Sheets.lnk 2024-01-05 18:34 - 2022-01-17 11:43 - 000002073 _____ C:\Users\jean-\Desktop\Google Docs.lnk 2024-01-05 18:26 - 2022-01-04 17:25 - 000000000 ___RD C:\Users\jean-\OneDrive 2024-01-05 18:25 - 2022-01-04 17:21 - 000000000 ___SD C:\Users\jean-\AppData\Roaming\Microsoft\Credentials 2024-01-05 18:24 - 2022-01-04 17:10 - 000000000 ____D C:\ProgramData\NVIDIA 2023-12-17 17:57 - 2022-01-04 17:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-12-17 17:04 - 2023-10-06 18:43 - 000002508 _____ C:\WINDOWS\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 2023-12-17 17:04 - 2023-06-11 14:59 - 000003852 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1686491948 2023-12-17 17:04 - 2023-06-11 14:59 - 000003624 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1686491943 2023-12-17 17:04 - 2022-10-23 09:21 - 000002596 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2023-12-17 17:04 - 2022-02-18 21:23 - 000003058 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-112198760-865738071-172339648-1004 2023-12-17 17:04 - 2022-02-18 10:05 - 000002004 _____ C:\WINDOWS\system32\Tasks\{B08EE1C0-1212-4416-8BD9-4A3B767DDFAD} 2023-12-17 17:04 - 2022-01-17 11:40 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-12-17 17:04 - 2022-01-04 18:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2023-12-17 17:04 - 2022-01-04 18:34 - 000003526 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-12-17 17:04 - 2022-01-04 18:34 - 000003302 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-12-17 17:04 - 2022-01-04 17:26 - 000003058 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-112198760-865738071-172339648-1001 2023-12-17 17:04 - 2022-01-04 17:09 - 000003616 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-12-17 17:04 - 2022-01-04 17:09 - 000003392 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-12-17 17:01 - 2022-01-06 11:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-12-17 16:52 - 2022-01-06 11:26 - 170078616 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-12-17 16:51 - 2023-06-11 10:39 - 000000000 ____D C:\Users\jean-\.MemuHyperv 2023-12-17 16:23 - 2022-01-04 17:58 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Excel 2023-12-16 22:11 - 2022-01-04 17:16 - 001681370 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-12-16 22:11 - 2022-01-04 15:40 - 000755174 _____ C:\WINDOWS\system32\perfh00C.dat 2023-12-16 22:11 - 2022-01-04 15:40 - 000141980 _____ C:\WINDOWS\system32\perfc00C.dat 2023-12-16 22:11 - 2022-01-04 15:36 - 000000000 ____D C:\WINDOWS\INF 2023-12-16 22:04 - 2022-01-04 18:40 - 000000000 ____D C:\ProgramData\Avast Software 2023-12-16 22:04 - 2022-01-04 17:09 - 000008192 ___SH C:\DumpStack.log.tmp 2023-12-16 22:04 - 2022-01-04 17:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-12-16 22:04 - 2022-01-04 15:33 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-12-16 20:49 - 2022-01-04 17:23 - 000000000 ____D C:\Users\jean-\AppData\Local\Packages 2023-12-16 19:58 - 2022-01-04 17:23 - 000000000 ____D C:\ProgramData\Packages 2023-12-16 12:17 - 2022-01-04 18:42 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2023-12-15 23:21 - 2022-01-17 11:40 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-12-15 23:21 - 2022-01-04 17:09 - 000306456 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\SystemResources 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\Provisioning 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-12-15 23:19 - 2022-01-04 15:37 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-12-15 23:19 - 2022-01-04 15:33 - 000000000 ____D C:\WINDOWS\servicing 2023-12-15 23:18 - 2022-01-04 15:33 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-12-15 23:17 - 2022-01-04 15:38 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-12-15 23:17 - 2022-01-04 15:38 - 000020827 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2023-12-15 23:13 - 2022-01-04 17:13 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-12-15 23:02 - 2022-01-11 16:15 - 000000000 ____D C:\Users\jean-\AppData\Local\CrashDumps 2023-12-15 22:58 - 2022-01-06 11:30 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-12-15 22:16 - 2023-06-10 12:21 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LDPlayer9 2023-12-15 22:14 - 2023-06-10 12:21 - 000000000 ____D C:\Users\jean-\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LDMultiPlayer 2023-12-15 22:11 - 2022-01-04 15:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2023-12-15 21:27 - 2022-01-17 11:40 - 000002179 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-12-15 21:21 - 2022-01-04 18:42 - 000710128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys ==================== Fichiers à la racine de certains dossiers ======== 2023-06-10 12:21 - 2023-06-10 12:21 - 000000068 _____ () C:\Users\jean-\AppData\Roaming\changzhi_leidian.data 2022-12-17 09:29 - 2022-12-17 09:29 - 000000000 _____ () C:\Users\jean-\AppData\Local\oobelibMkey.log ==================== SigCheck ============================ (Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.) ==================== Fin de FRST.txt ========================