Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 13-06-2022
Exécuté par natha (administrateur) sur NATHANPRO (HP HP ProBook x360 11 G1 EE) (13-06-2022 19:04:30)
Exécuté depuis C:\Users\natha\Desktop
Profils chargés: natha
Plate-forme: Microsoft Windows 11 Professionnel Version 21H2 22000.708 (X64) Langue: Français (France)
Navigateur par défaut: "C:\Users\natha\AppData\Local\Microsoft\Edge SxS\Application\msedge.exe" --single-argument %1
Mode d'amorçage: Normal

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(C:\Program Files\Restoro\bin\RestoroProtection.exe ->) (Restoro Ltd -> Restoro) C:\Program Files\Restoro\bin\RestoroService.exe
(C:\Program Files\WindowsApps\microsoftteams_22133.500.1346.3200_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\102.0.1245.33\msedgewebview2.exe <7>
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCopyAccelerator.exe
(cmd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Dism.exe
(Dism.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Users\natha\AppData\Local\Temp\7B656295-3DC7-4594-AD99-036130259D31\DismHost.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_9a1f4aa4acb26331\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9a1f4aa4acb26331\igfxEM.exe
(DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\dptf_helper.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\natha\AppData\Local\Microsoft\Edge SxS\Application\msedge.exe <28>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(explorer.exe ->) (Realtek Corporation) [Fichier non signé] C:\Users\natha\Music\Realtek\Hd Audio\Realtek.exe
(explorer.exe ->) (Restoro Ltd -> Restoro) C:\Program Files\Restoro\bin\RestoroApp.exe
(Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Conexant Systems, Inc) [Fichier non signé] C:\Windows\CxSvc\CxMonSvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9a1f4aa4acb26331\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2e3733a2508c0806\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2e3733a2508c0806\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe
(services.exe ->) (Piriform Software Ltd -> ) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Restoro Ltd -> Restoro) C:\Program Files\Restoro\bin\RestoroProtection.exe
(svchost.exe ->) (IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Driver Booster\9.4.0\Scheduler.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\pacjsworker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22000.702_none_04dc3df74c65e3e2\TiWorker.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3666536 2018-02-22] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
HKLM\...\Run: [Restoro] => C:\Program Files\Restoro\bin\RestoroApp.ex (Pas de fichier) <==== ATTENTION
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [288184 2022-05-09] (Intel Corporation -> Intel)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [Realtek] => C:\Users\natha\Music\Realtek\Hd Audio\Realtek.exe [99840 2022-06-12] (Realtek Corporation) [Fichier non signé]
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [Internet Explorer Updater] => C:\Users\natha\AppData\Roaming\Microsoft\Internet Explorer\Internet Explorer Updater.exe [93696 2022-06-12] () [Fichier non signé]
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [Skype] => C:\Users\natha\AppData\Roaming\Microsoft\Skype\Skype.exe [696364544 2022-06-12] (Microsoft Corporation) [Fichier non signé]
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [Gufpepfa] => "C:\Users\natha\AppData\Roaming\Ptkguhvp\Gufpepfa.exe" (Pas de fichier)
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [Microsoft Edge Update] => C:\Users\natha\AppData\Local\Microsoft\EdgeUpdate\1.3.163.19\MicrosoftEdgeUpdateCore.exe [252848 2022-06-13] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [MicrosoftEdgeAutoLaunch_402EF0E6E9E833940960236D524553E7] => "C:\Users\natha\AppData\Local\Microsoft\Edge SxS\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3778448 2022-06-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1215500683-709161993-4273955323-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [36836592 2022-05-11] (Piriform Software Ltd -> Piriform Software Ltd)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {06545D1A-F512-4532-970E-A81690FFA45A} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Pas de fichier)
Task: {0E8D242C-3863-4F83-874C-58B6FC7A06CA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {166F5214-BA67-4731-9803-97BA6A83D6D9} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {1BDCEEFD-9C6E-4EFD-B167-02DAAB653EA0} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\9.4.0\Scheduler.exe [157784 2022-04-19] (IObit CO., LTD -> IObit)
Task: {34B39AA1-15C4-4B38-BF2B-F960E610330E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {36D42A2F-D19A-4B8E-880D-22DB3BE1C033} - System32\Tasks\Driver Booster SkipUAC (natha) => C:\Program Files (x86)\IObit\Driver Booster\9.4.0\DriverBooster.exe [8662112 2022-06-06] (IObit CO., LTD -> IObit)
Task: {52CC8AF4-42BF-48E0-9E6B-EBC64125002D} - System32\Tasks\Service\Diagnostic => C:\Users\natha\AppData\Roaming\ServiceGet\Gamividu.exe [893608 2022-06-13] (AutoIt Consulting Ltd -> AutoIt Team) -> "C:\Users\natha\AppData\Roaming\ServiceGet\Gamividu.dat" <==== ATTENTION
Task: {7AF9CE26-5968-4F54-A507-A26180FEAAF2} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-1215500683-709161993-4273955323-1001Core => C:\Users\natha\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205768 2022-06-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {7B1803B9-41C7-47EC-A9BE-E4D0524E015F} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {7E95ED87-9B3B-494D-B0AA-0600C28F349E} - System32\Tasks\chrome => "C:\Users\natha\AppData\Roaming\Google\GoogleUpdate\chrome.exe" (Pas de fichier)
Task: {7FE24111-0FBB-41E3-80FD-D96FDB9D6DE2} - System32\Tasks\CCleanerSkipUAC - natha => C:\Program Files\CCleaner\CCleaner.exe [30924528 2022-05-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {89C54552-18E1-4732-9CD2-93158A440529} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-05-11] (Piriform Software Ltd -> Piriform)
Task: {9C651AA5-7B04-482A-A407-E7583FE12F2E} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-1215500683-709161993-4273955323-1001UA => C:\Users\natha\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205768 2022-06-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {9E0E2CE1-BE22-49FE-A42B-38451D804EA6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B4EA2840-D0CF-4D96-A8E9-583A8D277461} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B98F534A-006D-43BC-952B-4DD6450C895F} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {E6DE0EB8-678D-4884-B12A-18CEA1665625} - System32\Tasks\Microsoft\Windows\Clip\LicenseImdsIntegration => C:\WINDOWS\system32\fclip.exe [480720 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

AutoConfigURL: [{EDBDA4AC-07D9-4B5B-8735-2E542D94C7E1}] => hxxp://104.155.207.188/win.pac
AutoConfigURL: [S-1-5-21-1215500683-709161993-4273955323-1001] => hxxp://104.155.207.188/win.pac
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{3295f991-84dd-466b-af81-404972baba88}: [DhcpNameServer] 192.168.1.1
ManualProxies: 0hxxp://104.155.207.188/win.pac

Edge:
=======
Edge Profile: C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default [2022-06-13]
Edge HomePage: Default -> hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
Edge Extension: (Avira Safe Shopping) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caiblelclndcckfafdaggpephhgfpoip [2022-06-13]
Edge Extension: (Avira Password Manager) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2022-06-13]
Edge Extension: (Windscribe - Free Proxy and Ad Blocker) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkkdbpgldnmkhcliffjpajcfdjkcaddf [2022-06-13]
Edge Extension: (Native HLS Playback) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emnphkkblegpebimobpbekeedfgemhof [2022-06-13]
Edge Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2022-06-13]
Edge Extension: (IGRAAL : Cashback & codes promo) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hgfjoaookbahbhinopgfoiajfijfcdhm [2022-06-13]
Edge Extension: (Stadia Enhanced) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ldeakaihfnkjmelifgmbmjlphdfncbfg [2022-06-13]
Edge Extension: (Speedtest by Ookla) - C:\Users\natha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pgjjikdiikihdfpoppgaidccahalehjh [2022-06-13]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AppServicev; C:\WINDOWS\system32\ZP93C2UZDY.tmp [6144 2022-06-13] (Microsoft Corporation) [Fichier non signé] <==== ATTENTION
R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [789744 2022-05-11] (Piriform Software Ltd -> )
R2 CxMonSvc; C:\WINDOWS\CxSvc\CxMonSvc.exe [25088 2017-05-04] (Conexant Systems, Inc) [Fichier non signé]
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [39352 2022-05-09] (Intel Corporation -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [184248 2022-05-09] (Intel Corporation -> Intel)
R2 RestoroActiveProtection; C:\Program Files\Restoro\bin\RestoroProtection.exe [9310216 2021-02-07] (Restoro Ltd -> Restoro) <==== ATTENTION
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6207704 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [98304 2021-06-05] (Microsoft Corporation) [Fichier non signé]
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-12-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [111960 2022-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 MpKslea21fb4d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5F19970F-C211-4975-B2AB-98FF0EA83E29}\MpKslDrv.sys [137464 2022-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_3ae4233b59b42991\rt68cx21x64.sys [620472 2022-06-13] (Realtek Semiconductor Corp. -> Realtek)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-06-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [443664 2022-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90384 2022-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [37280 2021-11-23] (HP Inc. -> HP)

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)


==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-06-13 19:04 - 2022-06-13 19:05 - 000018183 _____ C:\Users\natha\Desktop\FRST.txt
2022-06-13 19:03 - 2022-06-13 19:05 - 000000000 ____D C:\FRST
2022-06-13 19:03 - 2022-06-13 19:03 - 002368000 _____ (Farbar) C:\Users\natha\Desktop\FRST64.exe
2022-06-13 19:03 - 2022-06-13 19:03 - 000000000 _____ C:\Users\natha\Downloads\Non confirmé 840815.crdownload
2022-06-13 18:38 - 2022-06-13 18:50 - 000000000 ____D C:\ProgramData\Restoro
2022-06-13 18:38 - 2022-06-13 18:49 - 000000151 _____ C:\WINDOWS\restoro.ini
2022-06-13 18:38 - 2022-06-13 18:38 - 000932808 _____ (Restoro) C:\Users\natha\Downloads\Restoro.exe
2022-06-13 18:38 - 2022-06-13 18:38 - 000001759 _____ C:\Users\Public\Desktop\Restoro.lnk
2022-06-13 18:38 - 2022-06-13 18:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Restoro
2022-06-13 18:38 - 2022-06-13 18:38 - 000000000 ____D C:\Program Files\Restoro
2022-06-13 18:38 - 2022-06-13 18:38 - 000000000 _____ C:\Users\natha\Downloads\Non confirmé 134514.crdownload
2022-06-13 18:21 - 2022-06-13 18:21 - 000000000 ____D C:\Users\natha\AppData\Local\PeerDistRepub
2022-06-13 18:13 - 2022-06-13 18:13 - 000000000 ____D C:\ProgramData\Piriform
2022-06-13 18:12 - 2022-06-13 18:12 - 000002892 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - natha
2022-06-13 18:11 - 2022-06-13 18:59 - 000000000 ____D C:\Program Files\CCleaner
2022-06-13 18:11 - 2022-06-13 18:11 - 048717048 _____ (Piriform Software Ltd) C:\Users\natha\Downloads\ccsetup600_pro_trial.exe
2022-06-13 18:11 - 2022-06-13 18:11 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-06-13 18:11 - 2022-06-13 18:11 - 000000877 _____ C:\Users\Public\Desktop\CCleaner.lnk
2022-06-13 18:11 - 2022-06-13 18:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2022-06-13 18:11 - 2022-06-13 18:11 - 000000000 _____ C:\Users\natha\Downloads\Non confirmé 281544.crdownload
2022-06-13 18:06 - 2022-06-13 18:20 - 000000000 ____D C:\Users\natha\AppData\Local\ElevatedDiagnostics
2022-06-13 17:45 - 2022-06-13 17:45 - 000003827 _____ C:\Users\natha\Downloads\wuauserv.zip
2022-06-13 17:40 - 2022-06-13 17:40 - 000001695 _____ C:\Users\natha\Downloads\Windows_Update.zip
2022-06-13 17:34 - 2022-06-13 17:34 - 000004572 _____ C:\Users\natha\Downloads\Windows10FIXUpdateCode (2).reg
2022-06-13 17:34 - 2022-06-13 17:34 - 000004534 _____ C:\Users\natha\Downloads\Windows10FIXUpdateCode.reg
2022-06-13 17:33 - 2022-06-13 17:33 - 318274770 _____ C:\Users\natha\Documents\backupregedit.reg
2022-06-13 16:37 - 2022-06-13 16:37 - 000002567 _____ C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Edge Canary.lnk
2022-06-13 16:37 - 2022-06-13 16:37 - 000002530 _____ C:\Users\natha\Desktop\Microsoft Edge Canary.lnk
2022-06-13 16:36 - 2022-06-13 16:42 - 000003950 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-1215500683-709161993-4273955323-1001UA
2022-06-13 16:36 - 2022-06-13 16:42 - 000003886 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-1215500683-709161993-4273955323-1001Core
2022-06-13 16:36 - 2022-06-13 16:36 - 000000000 _____ C:\Users\natha\Downloads\Non confirmé 502920.crdownload
2022-06-13 16:28 - 2022-06-13 16:28 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2022-06-13 16:26 - 2022-06-13 16:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music, Photos and Videos
2022-06-13 16:23 - 2016-09-20 13:51 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.dat
2022-06-13 16:13 - 2022-05-05 17:44 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2022-06-13 16:12 - 2022-06-13 16:12 - 000003670 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2022-06-13 16:11 - 2022-06-13 16:12 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2022-06-13 16:11 - 2022-06-13 16:12 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2022-06-13 16:11 - 2022-06-13 16:11 - 000000000 ____D C:\Users\natha\AppData\Local\Intel
2022-06-13 16:10 - 2022-06-13 16:10 - 006351832 _____ (Intel) C:\Users\natha\Downloads\Intel-Driver-and-Support-Assistant-Installer.exe
2022-06-13 16:10 - 2022-06-13 16:10 - 000001524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2022-06-13 16:10 - 2022-06-13 16:10 - 000000000 ____D C:\Program Files\Intel
2022-06-13 16:10 - 2022-06-13 16:10 - 000000000 ____D C:\Program Files (x86)\Intel
2022-06-13 16:10 - 2022-06-13 16:10 - 000000000 _____ C:\Users\natha\Downloads\Non confirmé 817432.crdownload
2022-06-13 16:06 - 2022-06-13 18:56 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ZP93C2UZDY.tmp
2022-06-13 16:05 - 2022-06-13 16:05 - 000466456 _____ (Creative Labs) C:\WINDOWS\system32\wrap_oal.dll
2022-06-13 16:05 - 2022-06-13 16:05 - 000444952 _____ (Creative Labs) C:\WINDOWS\SysWOW64\wrap_oal.dll
2022-06-13 16:05 - 2022-06-13 16:05 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\system32\OpenAL32.dll
2022-06-13 16:05 - 2022-06-13 16:05 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\WINDOWS\SysWOW64\OpenAL32.dll
2022-06-13 16:05 - 2022-06-13 16:05 - 000000000 ____D C:\Program Files (x86)\OpenAL
2022-06-13 16:04 - 2022-06-13 16:04 - 000000000 ____D C:\Program Files (x86)\Microsoft XNA
2022-06-13 16:03 - 2022-06-13 16:20 - 000000000 ____D C:\ProgramData\Package Cache
2022-06-13 16:03 - 2022-06-13 16:03 - 000263808 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
2022-06-13 15:59 - 2022-06-13 15:59 - 008756328 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw04.sys
2022-06-13 15:59 - 2022-06-13 15:59 - 001626192 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter04.dll
2022-06-13 15:57 - 2022-06-13 15:57 - 009899960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2022-06-13 15:41 - 2022-06-13 15:41 - 025763240 _____ (IObit ) C:\Users\natha\Downloads\driver_booster_setup_trial.exe
2022-06-13 15:36 - 2022-06-13 18:48 - 000000000 ____D C:\Users\natha\AppData\Roaming\Ptkguhvp
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\WINDOWS\system32\Tasks\Service
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\xU5H70GUMB
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\WNPrbb
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\shftool
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\ServiceGet
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\Sajepifo
2022-06-13 15:34 - 2022-06-13 15:34 - 000000000 ____D C:\Users\natha\AppData\Roaming\IUSdH53x
2022-06-13 15:34 - 2022-06-13 15:31 - 000561152 _____ C:\Users\natha\AppData\Roaming\c56efad7-5514-4498-b6cc-de3d50c325be
2022-06-13 15:33 - 2022-06-13 16:09 - 000000000 ____D C:\ProgramData\ProductData
2022-06-13 15:33 - 2022-06-13 15:33 - 000314368 _____ C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Iwmm2.exe
2022-06-13 15:33 - 2022-06-13 15:33 - 000000000 ____D C:\Users\natha\AppData\Local\Yandex
2022-06-13 15:32 - 2022-06-13 15:43 - 000002379 _____ C:\Users\Public\Desktop\Driver Booster 9.lnk
2022-06-13 15:32 - 2022-06-13 15:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 9
2022-06-13 15:32 - 2022-06-13 15:33 - 000000000 ____D C:\Users\natha\AppData\LocalLow\IObit
2022-06-13 15:32 - 2022-06-13 15:32 - 000003292 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (natha)
2022-06-13 15:32 - 2022-06-13 15:32 - 000003180 _____ C:\WINDOWS\system32\Tasks\Driver Booster Scheduler
2022-06-13 15:32 - 2022-06-13 15:32 - 000000000 ____D C:\Program Files (x86)\IObit
2022-06-13 15:31 - 2022-06-13 15:34 - 000000000 ____D C:\ProgramData\IObit
2022-06-13 15:31 - 2022-06-13 15:32 - 000000000 ____D C:\Users\natha\AppData\Roaming\IObit
2022-06-13 15:31 - 2022-06-13 15:31 - 025763240 _____ (IObit ) C:\Users\natha\Downloads\driver_booster_setup.exe
2022-06-13 15:30 - 2022-06-13 15:30 - 005081786 _____ C:\Users\natha\Downloads\Driver Booster Pro License Keys.zip
2022-06-13 15:30 - 2022-06-13 15:30 - 000000000 ____D C:\Users\natha\Downloads\Driver Booster Pro License Keys
2022-06-13 15:28 - 2022-06-13 15:29 - 000000000 ____D C:\Users\natha\AppData\Roaming\Google
2022-06-13 15:28 - 2022-06-13 15:28 - 000003358 _____ C:\WINDOWS\system32\Tasks\chrome
2022-06-13 15:27 - 2022-06-13 15:28 - 000000000 ___HD C:\Users\natha\AppData\Local\5e241c64c45abcf1c79328a266b25658
2022-06-13 15:26 - 2022-06-13 15:26 - 000000000 ____D C:\Users\natha\Downloads\R3P4CK
2022-06-13 15:26 - 2022-06-13 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2022-06-13 15:26 - 2022-06-13 15:26 - 000000000 ____D C:\Program Files\7-Zip
2022-06-13 15:25 - 2022-06-13 15:25 - 001533613 _____ (Igor Pavlov) C:\Users\natha\Downloads\7z2107-x64.exe
2022-06-13 15:23 - 2022-06-13 15:23 - 003062142 _____ C:\Users\natha\Downloads\R3P4CK.rar
2022-06-13 15:05 - 2022-06-13 14:35 - 000000000 ____D C:\WINDOWS\Panther
2022-06-13 15:01 - 2022-06-13 15:02 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2022-06-13 14:58 - 2022-06-13 14:58 - 000000000 ____D C:\Users\natha\AppData\Local\Comms
2022-06-13 14:55 - 2022-06-13 15:02 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-06-13 14:53 - 2022-06-13 14:53 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-06-13 14:52 - 2022-06-13 14:52 - 000000000 ___HD C:\$WinREAgent
2022-06-13 14:48 - 2022-06-13 14:48 - 000557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-06-13 14:48 - 2022-06-13 14:48 - 000524288 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-06-13 14:48 - 2022-06-13 14:48 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-06-13 14:48 - 2022-06-13 14:48 - 000254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2022-06-13 14:48 - 2022-06-13 14:48 - 000208896 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\system32\l3codecp.acm
2022-06-13 14:48 - 2022-06-13 14:48 - 000196096 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\WINDOWS\SysWOW64\l3codecp.acm
2022-06-13 14:48 - 2022-06-13 14:48 - 000167936 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2022-06-13 14:48 - 2022-06-13 14:48 - 000088064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remotesp.tsp
2022-06-13 14:48 - 2022-06-13 14:48 - 000057344 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-06-13 14:48 - 2022-06-13 14:48 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hidphone.tsp
2022-06-13 14:47 - 2022-06-13 14:47 - 000831488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Bubbles.scr
2022-06-13 14:47 - 2022-06-13 14:47 - 000774144 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-06-13 14:47 - 2022-06-13 14:47 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-06-13 14:47 - 2022-06-13 14:47 - 000442368 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2022-06-13 14:47 - 2022-06-13 14:47 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2022-06-13 14:47 - 2022-06-13 14:47 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2022-06-13 14:47 - 2022-06-13 14:47 - 000253952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ssText3d.scr
2022-06-13 14:47 - 2022-06-13 14:47 - 000180224 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-06-13 14:47 - 2022-06-13 14:47 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Ribbons.scr
2022-06-13 14:47 - 2022-06-13 14:47 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Mystify.scr
2022-06-13 14:47 - 2022-06-13 14:47 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\remotesp.tsp
2022-06-13 14:47 - 2022-06-13 14:47 - 000079192 _____ C:\WINDOWS\system32\Drivers\NDKPerf.sys
2022-06-13 14:47 - 2022-06-13 14:47 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidphone.tsp
2022-06-13 14:47 - 2022-06-13 14:47 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\format.com
2022-06-13 14:47 - 2022-06-13 14:47 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-06-13 14:47 - 2022-06-13 14:47 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\more.com
2022-06-13 14:47 - 2022-06-13 14:47 - 000019456 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-06-13 14:47 - 2022-06-13 14:47 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-06-13 14:47 - 2022-06-13 14:47 - 000009522 _____ C:\WINDOWS\system32\ResPriUHMImageList
2022-06-13 14:47 - 2022-06-13 14:47 - 000009522 _____ C:\WINDOWS\system32\ResPriImageList
2022-06-13 14:47 - 2022-06-13 14:47 - 000009522 _____ C:\WINDOWS\system32\ResPriHMImageList
2022-06-13 14:47 - 2022-06-13 14:47 - 000009402 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
2022-06-13 14:47 - 2022-06-13 14:47 - 000008964 _____ C:\WINDOWS\system32\ResPriLMImageList
2022-06-13 14:47 - 2022-06-13 14:47 - 000008870 _____ C:\WINDOWS\system32\ResPriImageListLowCost
2022-06-13 14:46 - 2022-06-13 14:46 - 002080992 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000617648 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-06-13 14:46 - 2022-06-13 14:46 - 000425984 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000299008 _____ C:\WINDOWS\system32\EsclScan.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000267264 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Dialogs.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000247808 _____ C:\WINDOWS\SysWOW64\pku2u.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000051712 _____ C:\WINDOWS\SysWOW64\CredProvCommonCore.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com
2022-06-13 14:46 - 2022-06-13 14:46 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-06-13 14:46 - 2022-06-13 14:46 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-06-13 14:46 - 2022-06-13 14:46 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kmddsp.tsp
2022-06-13 14:46 - 2022-06-13 14:46 - 000015004 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-06-13 14:46 - 2022-06-13 14:46 - 000013824 _____ C:\WINDOWS\SysWOW64\prxyqry.dll
2022-06-13 14:46 - 2022-06-13 14:46 - 000006656 _____ C:\WINDOWS\SysWOW64\nrtapi.dll
2022-06-13 14:45 - 2022-06-13 18:57 - 000000000 ___RD C:\Users\natha\OneDrive
2022-06-13 14:45 - 2022-06-13 15:55 - 000000000 ____D C:\Users\natha\AppData\Local\Conexant
2022-06-13 14:45 - 2022-06-13 14:45 - 000460800 _____ C:\WINDOWS\SysWOW64\SettingSyncDownloadHelper.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000339968 _____ C:\WINDOWS\system32\pku2u.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000335872 _____ C:\WINDOWS\system32\Windows.Internal.UI.Dialogs.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000294912 _____ C:\WINDOWS\system32\pnpdiag.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000221184 _____ C:\WINDOWS\SysWOW64\Microsoft.Internal.FrameworkUdk.System.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000121344 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-06-13 14:45 - 2022-06-13 14:45 - 000098304 _____ C:\WINDOWS\system32\sstpcfg.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000086016 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\kmddsp.tsp
2022-06-13 14:45 - 2022-06-13 14:45 - 000041594 _____ C:\WINDOWS\SysWOW64\ctac.json
2022-06-13 14:45 - 2022-06-13 14:45 - 000040960 _____ C:\WINDOWS\system32\prxyqry.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000038760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msgsm32.acm
2022-06-13 14:45 - 2022-06-13 14:45 - 000036864 _____ C:\WINDOWS\system32\umpodev.dll
2022-06-13 14:45 - 2022-06-13 14:45 - 000034112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imaadp32.acm
2022-06-13 14:45 - 2022-06-13 14:45 - 000033568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msadp32.acm
2022-06-13 14:45 - 2022-06-13 14:45 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrnsave.scr
2022-06-13 14:45 - 2022-06-13 14:45 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1215500683-709161993-4273955323-1001
2022-06-13 14:45 - 2022-06-13 14:45 - 000003366 _____ C:\WINDOWS\SysWOW64\AppxProvisioning.xml
2022-06-13 14:45 - 2022-06-13 14:45 - 000000000 ___HD C:\OneDriveTemp
2022-06-13 14:44 - 2022-06-13 17:27 - 000000000 ____D C:\Users\natha\AppData\Local\PlaceholderTileLogoFolder
2022-06-13 14:44 - 2022-06-13 14:45 - 000003366 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1215500683-709161993-4273955323-1001
2022-06-13 14:44 - 2022-06-13 14:45 - 000002415 _____ C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-06-13 14:44 - 2022-06-13 14:44 - 002125824 _____ C:\WINDOWS\system32\dwmscene.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000372736 _____ C:\WINDOWS\system32\hwreqchk.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000356352 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000286720 _____ C:\WINDOWS\system32\AggregatorHost.exe
2022-06-13 14:44 - 2022-06-13 14:44 - 000208896 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000180224 _____ C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000099560 _____ C:\WINDOWS\system32\wow64con.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000086016 _____ C:\WINDOWS\system32\CredProvCommonCore.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000077824 _____ C:\WINDOWS\system32\runexehelper.exe
2022-06-13 14:44 - 2022-06-13 14:44 - 000069632 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\format.com
2022-06-13 14:44 - 2022-06-13 14:44 - 000042752 _____ C:\WINDOWS\system32\wow64base.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000040960 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000024576 _____ C:\WINDOWS\system32\nrtapi.dll
2022-06-13 14:44 - 2022-06-13 14:44 - 000003366 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2022-06-13 14:44 - 2022-06-13 14:44 - 000000000 ____D C:\Users\natha\AppData\Local\VirtualStore
2022-06-13 14:44 - 2022-06-13 14:44 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-06-13 14:43 - 2022-06-13 19:01 - 001800026 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-06-13 14:43 - 2022-06-13 14:43 - 002550832 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000727576 _____ C:\WINDOWS\system32\TextShaping.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000643072 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000614400 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000311296 _____ C:\WINDOWS\system32\Microsoft.Internal.FrameworkUdk.System.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000210432 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll
2022-06-13 14:43 - 2022-06-13 14:43 - 000172032 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-06-13 14:43 - 2022-06-13 14:43 - 000167936 _____ C:\WINDOWS\system32\TpmTool.exe
2022-06-13 14:43 - 2022-06-13 14:43 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrnsave.scr
2022-06-13 14:43 - 2022-06-13 14:43 - 000000000 ____D C:\Users\natha\AppData\LocalLow\Intel
2022-06-13 14:43 - 2022-06-13 14:43 - 000000000 ____D C:\Users\natha\AppData\Local\Publishers
2022-06-13 14:42 - 2022-06-13 18:57 - 000000000 __SHD C:\Users\natha\IntelGraphicsProfiles
2022-06-13 14:42 - 2022-06-13 17:38 - 000000000 ____D C:\Users\natha\AppData\Local\Packages
2022-06-13 14:42 - 2022-06-13 17:38 - 000000000 ____D C:\ProgramData\Packages
2022-06-13 14:42 - 2022-06-13 16:39 - 000000000 ____D C:\Users\natha\AppData\Local\D3DSCache
2022-06-13 14:42 - 2022-06-13 15:21 - 000002368 _____ C:\Users\natha\Desktop\Microsoft Edge.lnk
2022-06-13 14:42 - 2022-06-13 15:04 - 000000000 ____D C:\Users\natha\AppData\Local\ConnectedDevicesPlatform
2022-06-13 14:42 - 2022-06-13 14:44 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-06-13 14:42 - 2022-06-13 14:42 - 000335872 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-06-13 14:42 - 2022-06-13 14:42 - 000286720 _____ C:\WINDOWS\system32\Microsoft.Bluetooth.Audio.dll
2022-06-13 14:42 - 2022-06-13 14:42 - 000258048 _____ C:\WINDOWS\system32\CoreMas.dll
2022-06-13 14:42 - 2022-06-13 14:42 - 000208896 _____ C:\WINDOWS\system32\IHDS.dll
2022-06-13 14:42 - 2022-06-13 14:42 - 000067528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msgsm32.acm
2022-06-13 14:42 - 2022-06-13 14:42 - 000063392 _____ (Microsoft Corporation) C:\WINDOWS\system32\imaadp32.acm
2022-06-13 14:42 - 2022-06-13 14:42 - 000059264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msadp32.acm
2022-06-13 14:42 - 2022-06-13 14:42 - 000041594 _____ C:\WINDOWS\system32\ctac.json
2022-06-13 14:42 - 2022-06-13 14:42 - 000032768 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2022-06-13 14:42 - 2022-06-13 14:42 - 000000000 ____D C:\Users\natha\AppData\Roaming\Adobe
2022-06-13 14:39 - 2022-06-13 14:45 - 000000000 ____D C:\Users\natha
2022-06-13 14:39 - 2022-06-13 14:39 - 000000020 ___SH C:\Users\natha\ntuser.ini
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Voisinage réseau
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Voisinage d'impression
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Modèles
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Mes documents
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Menu Démarrer
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Documents\Mes vidéos
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Documents\Mes images
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\Documents\Ma musique
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2022-06-13 14:39 - 2022-06-13 14:39 - 000000000 _SHDL C:\Users\natha\AppData\Local\Historique
2022-06-13 14:39 - 2021-06-05 14:04 - 000001281 _____ C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk
2022-06-13 14:39 - 2021-06-05 14:04 - 000000407 _____ C:\Users\natha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk
2022-06-13 14:35 - 2022-06-13 16:10 - 000000000 ____D C:\ProgramData\Intel
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Public\Documents\Mes vidéos
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Public\Documents\Mes images
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Public\Documents\Ma musique
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Voisinage réseau
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Voisinage d'impression
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Modèles
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Mes documents
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Menu Démarrer
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Documents\Mes vidéos
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Documents\Mes images
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\Documents\Ma musique
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programmes
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historique
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\ProgramData\Modèles
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programmes
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\ProgramData\Menu Démarrer
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\ProgramData\Bureau
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Program Files\Fichiers communs
2022-06-13 14:35 - 2022-06-13 14:35 - 000000000 _SHDL C:\Documents and Settings
2022-06-13 14:34 - 2022-06-13 14:34 - 000000000 ____D C:\WINDOWS\CSC
2022-06-13 14:33 - 2022-06-13 14:33 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2022-06-13 14:33 - 2022-06-13 14:33 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-06-13 14:33 - 2022-06-13 14:33 - 000000000 ____D C:\Program Files\MSBuild
2022-06-13 14:33 - 2022-06-13 14:33 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-06-13 14:33 - 2022-06-13 14:33 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-06-13 14:31 - 2022-06-13 18:57 - 000000000 ____D C:\Intel
2022-06-13 14:31 - 2022-06-13 14:31 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01011.Wdf
2022-06-13 14:30 - 2022-06-13 16:26 - 000000000 ____D C:\WINDOWS\CxSvc
2022-06-13 14:29 - 2022-06-13 16:28 - 001705080 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2022-06-13 14:29 - 2022-06-13 15:52 - 000000000 ____D C:\ProgramData\UIU
2022-06-13 14:28 - 2022-06-13 18:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-06-13 14:28 - 2022-06-13 16:28 - 000000000 ____D C:\Program Files\CONEXANT
2022-06-13 14:28 - 2022-06-13 15:31 - 000003690 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-06-13 14:28 - 2022-06-13 15:31 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-06-13 14:28 - 2022-06-13 15:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-06-13 14:28 - 2022-06-13 14:28 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-06-13 14:28 - 2022-06-13 14:28 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf
2022-06-13 14:28 - 2022-06-13 14:28 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_esif_lf_01011.Wdf
2022-06-13 14:28 - 2022-06-13 14:28 - 000000000 ____D C:\WINDOWS\system32\Intel
2022-06-13 14:28 - 2022-06-13 14:28 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2022-06-13 14:27 - 2022-06-13 18:57 - 000012288 ___SH C:\DumpStack.log.tmp
2022-06-13 14:27 - 2022-06-13 18:57 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-06-13 14:27 - 2022-06-13 14:27 - 000292776 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-06-13 14:27 - 2022-06-13 14:27 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-06-13 14:26 - 2022-06-13 14:31 - 000000000 ____D C:\Program Files\Elantech
2022-06-13 14:00 - 2022-06-13 14:00 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-06-13 12:31 - 2022-06-13 15:07 - 000000000 ___HD C:\$SysReset
2022-06-13 10:53 - 2022-06-13 16:02 - 000053632 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDSMBus.sys
2022-06-13 10:53 - 2018-02-22 23:01 - 000239712 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCoInstaller15018.dll
2022-06-13 10:53 - 2018-02-22 23:00 - 000610856 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys
2022-06-13 02:18 - 2021-11-05 01:59 - 000510560 _____ (Intel) C:\WINDOWS\system32\libvpl.dll
2022-06-13 02:18 - 2021-11-05 01:59 - 000443808 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 001870368 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2022-06-13 02:18 - 2021-11-05 01:58 - 001870368 _____ C:\WINDOWS\system32\vulkaninfo.exe
2022-06-13 02:18 - 2021-11-05 01:58 - 001450016 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-06-13 02:18 - 2021-11-05 01:58 - 001450016 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2022-06-13 02:18 - 2021-11-05 01:58 - 000959256 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000717984 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000459056 _____ C:\WINDOWS\system32\ze_tracing_layer.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000378176 _____ C:\WINDOWS\system32\ze_loader.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000148800 _____ C:\WINDOWS\system32\ze_validation_layer.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000048120 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2022-06-13 02:18 - 2021-11-05 01:58 - 000045448 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 027896648 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 020639048 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 001115640 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 001115640 _____ C:\WINDOWS\system32\vulkan-1.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 000969216 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2022-06-13 02:18 - 2021-11-05 01:57 - 000969216 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2022-06-13 02:18 - 2021-11-05 01:56 - 000436424 _____ C:\WINDOWS\system32\ControlLib.dll
2022-06-13 02:16 - 2017-03-13 18:33 - 000355224 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\esif_lf.sys
2022-06-13 02:16 - 2017-03-13 18:33 - 000067992 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\dptf_cpu.sys
2022-06-13 02:15 - 2017-03-13 18:33 - 000072600 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\dptf_acpi.sys
2022-06-13 01:38 - 2022-06-13 13:53 - 000000000 ____D C:\Windows.old(1)

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-06-13 19:07 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-06-13 19:06 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-06-13 19:03 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-06-13 19:03 - 2021-06-05 14:09 - 000000000 ____D C:\WINDOWS\INF
2022-06-13 19:01 - 2021-06-05 20:15 - 000809232 _____ C:\WINDOWS\system32\perfh00C.dat
2022-06-13 19:01 - 2021-06-05 20:15 - 000156838 _____ C:\WINDOWS\system32\perfc00C.dat
2022-06-13 18:57 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ServiceState
2022-06-13 18:57 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-06-13 18:56 - 2021-06-05 14:01 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-06-13 17:38 - 2021-06-05 14:10 - 000000000 ___HD C:\Program Files\WindowsApps
2022-06-13 16:03 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-06-13 16:01 - 2016-08-12 16:22 - 000041560 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\VirtualButtons.sys
2022-06-13 15:57 - 2020-09-15 01:35 - 001334200 _____ (Realtek Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys
2022-06-13 15:50 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2022-06-13 15:14 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Windows Defender
2022-06-13 15:05 - 2021-06-05 14:08 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-06-13 15:02 - 2021-06-05 20:23 - 000000000 ___SD C:\WINDOWS\system32\AppV
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SystemResources
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\setup
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\id-ID
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Com
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2022-06-13 15:02 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-06-13 15:01 - 2021-06-05 20:23 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-06-13 15:01 - 2021-06-05 20:23 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-06-13 15:01 - 2021-06-05 20:23 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\Provisioning
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\IME
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-06-13 15:01 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Common Files\System
2022-06-13 14:59 - 2021-06-05 20:23 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2022-06-13 14:59 - 2021-06-05 20:23 - 000021047 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2022-06-13 14:59 - 2021-06-05 14:10 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-06-13 14:59 - 2021-06-05 14:08 - 000245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2022-06-13 14:59 - 2021-06-05 14:08 - 000207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-06-13 14:59 - 2021-06-05 14:08 - 000114688 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll
2022-06-13 14:59 - 2021-06-05 14:08 - 000078336 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2022-06-13 14:58 - 2021-06-05 14:01 - 000000000 ____D C:\WINDOWS\servicing
2022-06-13 14:42 - 2021-06-05 14:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-06-13 14:42 - 2021-06-05 14:04 - 000058896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll
2022-06-13 14:42 - 2021-06-05 14:04 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcPseDMA.dll
2022-06-13 14:42 - 2021-06-05 14:04 - 000054800 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll
2022-06-13 14:37 - 2021-06-05 20:22 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2022-06-13 14:37 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\spool
2022-06-13 14:35 - 2021-06-05 14:10 - 000000000 ____D C:\ProgramData\USOPrivate
2022-06-13 14:35 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files\Windows NT
2022-06-13 14:34 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\OCR
2022-06-13 14:33 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2022-06-13 14:33 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\MUI
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\system32\winrm
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\system32\WCN
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\system32\slmgr
2022-06-13 14:31 - 2021-06-05 20:15 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2022-06-13 14:31 - 2021-06-05 14:10 - 000000000 ___SD C:\WINDOWS\system32\dsc
2022-06-13 14:31 - 2021-06-05 14:10 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-06-13 14:29 - 2021-06-05 14:01 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-06-13 14:28 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-06-13 14:28 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\appcompat

==================== Fichiers à la racine de certains dossiers ========

2022-06-13 15:34 - 2022-06-13 15:31 - 000561152 _____ () C:\Users\natha\AppData\Roaming\c56efad7-5514-4498-b6cc-de3d50c325be

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================