Résultats d'analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 14-11-2022
Exécuté par benji (administrateur) sur DESKTOP-QEBT0B0 (Micro-Star International Co., Ltd. MS-7B84) (15-11-2022 00:08:27)
Exécuté depuis B:\Benjamin\Téléchargement
Profils chargés: benji
Plate-forme: Microsoft Windows 10 Famille Version 22H2 19045.2251 (X64) Langue: Français (France)
Navigateur par défaut: Chrome
Mode d'amorçage: Safe Mode (with Networking)

==================== Processus (Avec liste blanche) =================

(Si un élément est inclus dans le fichier fixlist.txt, le processus sera arrêté. Le fichier ne sera pas déplacé.)

(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registre (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)

HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [754416 2019-09-26] (Acronis International GmbH -> )
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_d92d7bec4b020758\RtkAudUService64.exe [1372264 2021-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [iTunesHelper] => B:\Benjamin\Program Files (x86)\iTunes\iTunesHelper.exe [362056 2022-05-05] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32696784 2022-11-02] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [utweb] => C:\Users\benji\AppData\Roaming\uTorrent Web\utweb.exe [5327576 2019-07-30] (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Fichier non signé]
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [AceStream] => C:\Users\benji\AppData\Roaming\ACEStream\engine\ace_engine.exe [27960 2018-08-23] (INNOVATIVE DIGITAL TECHNOLOGIES LLC -> Innovative Digital Technologies)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-09-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2020-09-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2020-09-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2020-09-08] (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [365160 2020-03-13] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38502416 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [iFunBox] => C:\Program Files (x86)\i-Funbox DevTeam\iFunBox_x64.exe [9147392 2019-08-08] (i-Funbox.com) [Fichier non signé]
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [Spotify] => C:\Users\benji\AppData\Roaming\Spotify\Spotify.exe [20232568 2022-11-12] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [MicrosoftEdgeAutoLaunch_B9B057F13E8261F387166E937D6ED4AC] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3891624 2022-10-29] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Run: [Surfshark] => C:\Program Files (x86)\Surfshark\Surfshark.exe [11066440 2022-09-20] (Surfshark B.V. -> Surfshark)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\Installer\chrmstp.exe [2022-11-03] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{4B9CAC01-6732-40d0-8B8F-B5B340F9D44F}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2016-08-25] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{4EFD0F35-BFBA-44eb-8F25-2B3530203C1D}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2016-08-25] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{C1258FBC-F04F-4862-B78A-DDAAEF4A9707}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2016-08-25] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{EAB1A79F-DFAA-4faf-A7B9-A6652E97EE16}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2016-08-25] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Provider Filters: [{3884BCAA-C611-4e2d-9105-E11B1203294E}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2016-08-25] (Pulse Secure, LLC -> )
Startup: C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeepL auto-start.lnk [2022-07-26]
ShortcutTarget: DeepL auto-start.lnk -> C:\Users\benji\AppData\Roaming\0install.net\desktop-integration\stubs\1eae01f3cdb5ff0ecf683b15a60a1489573c1188cb34abc205fcf7a924b4e54d\auto-start.exe () [Fichier non signé]
Startup: C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2021-12-19]
ShortcutTarget: MEGAsync.lnk -> C:\Users\benji\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)

==================== Tâches planifiées (Avec liste blanche) ============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {0C120A7B-076E-4C37-8D98-12EFEF626543} - System32\Tasks\HFS+ Updater => C:\Program Files (x86)\Paragon Software\HFS+ for Windows\Updater.exe [966336 2018-10-22] (Paragon Software GmbH -> Paragon Software)
Task: {1C0A9BE5-D1B5-40D9-9CA8-778051E9A5BC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-09-12] (Piriform Software Ltd -> Piriform)
Task: {1DD39EF7-2AC0-473E-836F-1409BB917DD8} - System32\Tasks\Microsoft\Windows\WaaSMedic\MaintenanceWork => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32}
Task: {21F4FE82-0231-4803-9B3A-35AEDDD908E9} - System32\Tasks\HFS+ GUI => C:\Program Files (x86)\Paragon Software\HFS+ for Windows\Paragon HFS for Windows.exe -tray (Pas de fichier)
Task: {2538011F-65C4-4A0D-A13E-32D9989A2538} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-05-13] (Google Inc -> Google LLC)
Task: {26A70FBC-B89D-4129-844A-FD8F32A10AE0} - System32\Tasks\CCleanerSkipUAC - benji => C:\Program Files\CCleaner\CCleaner.exe [32204304 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {2C095BC9-92E6-47AA-B126-2156C686B787} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2F79FDA6-06A9-4D3A-8536-D507C5711988} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {33408F65-D72C-4526-A0CE-44CCCC309F54} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {41310EE0-8E20-46F7-97E3-4983FBA20060} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156456 2019-05-13] (Google Inc -> Google LLC)
Task: {415953FE-E5EA-47DA-BF04-A22420F143E2} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {49C1F7DE-D126-4EDE-B2F3-9F728F593590} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-3252580798-3812781471-3762038546-1001 => C:\Users\benji\AppData\Local\MEGAsync\MEGAupdater.exe [2531504 2021-11-14] (Mega Limited -> )
Task: {4A4F6E97-AC6B-46C4-8A41-3CD4205F42C6} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {64E0B5E6-D7C2-4A61-817E-16A72C36A2CC} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {667C316E-572A-42B5-B7FD-85A006BCEBBA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DD97860-8C69-47B1-86DE-6C516CA1ABEE} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {7C89E122-6946-47B4-A410-D1570815F128} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A2465B75-F662-4272-9C1F-EAD90586100F} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [661240 2018-08-02] (Advanced Micro Devices Inc. -> )
Task: {A7F06DD5-A545-460F-AAEA-9F22A86A14F7} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {A884E51E-D3C7-4AD2-B9FC-2FA0AD0AD39C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ACA20B40-7F5E-4374-B9F3-4FCB827B6C16} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.)
Task: {B5ED75A7-D660-44B9-A426-9C1F13AB45B1} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {C3069F7C-5FDE-448A-8C7C-9B46076FF534} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6637512 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {C84E23BF-9B91-4744-B233-496F35F1FE05} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {D755DF4D-0F95-4876-BAA7-822A4122F583} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {E1A3D3EB-E5B1-4CCA-BBAB-8B3CA1E01615} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114600 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {E588D949-265A-4097-A3E7-07E4D868ADE7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4666896 2022-09-12] (Piriform Software Ltd -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "0283fbcf-511c-4998-a632-f7357fce254c" --version "6.04.10044" --silent
Task: {ED5BEE30-7167-45CD-ABE8-BBAD3D23E3FD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EF451899-A35B-4BBE-8955-9A8AE660A71B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
Task: {F848302F-113C-42F7-8F5D-478CCD0B2817} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-10-21] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Avec liste blanche) ====================

(Si un élément est inclus dans le fichier fixlist.txt, s'il s'agit d'un élément du Registre, il sera supprimé ou restauré à la valeur par défaut.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 195.130.130.3 195.130.131.3
Tcpip\..\Interfaces\{1ec6fbfa-d0f4-4629-ae8a-340d2bfc1e14}: [NameServer] 10.155.0.1
Tcpip\..\Interfaces\{3c719106-7287-484b-b075-0872f6984c50}: [DhcpNameServer] 195.130.130.3 195.130.131.3

Edge:
=======
DownloadDir: B:\Benjamin\Téléchargement
Edge DefaultProfile: Default
Edge Profile: C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-15]
Edge HomePage: Default -> hxxp://google.com/
Edge StartupUrls: Default -> "hxxp://google.be/"
Edge DefaultSearchURL: Default -> {bing:baseURL}search?q={searchTerms}&{bing:cvid}{bing:msb}{google:assistedQueryStats}
Edge Extension: (Dark Reader) - C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ifoakfbpdcdoeenechcleahebpibofpc [2022-11-12]
Edge Extension: (Tampermonkey) - C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2022-10-05]
Edge Extension: (uBlock Origin) - C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2022-11-12]
Edge Extension: (ModHeader - Modify HTTP headers) - C:\Users\benji\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opgbiafapkbbnbnjcdomjaghbckfkglc [2022-11-12]

FireFox:
========
FF DefaultProfile: 3pktm9gb.default
FF ProfilePath: C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\3pktm9gb.default [2022-11-12]
FF ProfilePath: C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release [2022-11-12]
FF Extension: (Dark Reader) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\addon@darkreader.org.xpi [2022-10-28]
FF Extension: (Hola Free VPN Proxy Unblocker) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\jid1-4P0kohSJxU1qGg@jetpack.xpi [2021-08-06]
FF Extension: (Avast SafePrice | Comparateur de prix, offres, coupons) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\sp@avast.com.xpi [2022-09-05]
FF Extension: (uBlock Origin) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-10-05]
FF Extension: (Avast Online Security & Privacy) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\wrc@avast.com.xpi [2022-10-05]
FF Extension: (Video Ad-Block, for Twitch) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\{3385c2d8-dcfd-4f92-adb7-5d8429dee164}.xpi [2022-03-09]
FF Extension: (Video DownloadHelper) - C:\Users\benji\AppData\Roaming\Mozilla\Firefox\Profiles\r5t7hzsn.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-12-15]
FF HKU\S-1-5-21-3252580798-3812781471-3762038546-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\benji\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi
FF Extension: (Ace Script) - C:\Users\benji\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26]
FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-07-07] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin HKU\S-1-5-21-3252580798-3812781471-3762038546-1001: @acestream.net/acestreamplugin,version=3.1.32 -> C:\Users\benji\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default [2022-11-14]
CHR DownloadDir: B:\Benjamin\Téléchargement
CHR Notifications: Default -> hxxps://chatsupport.apple.com; hxxps://meet.google.com; hxxps://www.facebook.com
CHR HomePage: Default -> hxxp://www.google.be/
CHR StartupUrls: Default -> "hxxp://www.google.be/"
CHR Extension: (Adblock Plus - bloqueur de publicités gratuit) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-09-05]
CHR Extension: (uBlock Origin) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-09-19]
CHR Extension: (Tampermonkey) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2022-10-23]
CHR Extension: (Dark Reader) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2022-11-10]
CHR Extension: (Google Docs hors connexion) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-09]
CHR Extension: (Violentmonkey) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\jinjaccalgkegednnccohejagnlnfdag [2022-10-18]
CHR Extension: (Twitch Adblock) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljhnljhabgjcihjoihakgdiicdjncpkd [2022-10-26]
CHR Extension: (Video DownloadHelper) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-14]
CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\benji\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\benji\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-11-12]
CHR Profile: C:\Users\benji\AppData\Local\Google\Chrome\User Data\System Profile [2022-11-12]

==================== Services (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

S2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1157592 2019-09-26] (Acronis International GmbH -> )
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S2 apmwinsrv; C:\Program Files (x86)\Paragon Software\HFS+ for Windows\apmwinsrv.exe [1962176 2018-10-22] (Paragon Software GmbH -> Paragon Software)
S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [100424 2022-05-02] (Apple Inc. -> Apple Inc.)
S2 Backupper Service; C:\Program Files (x86)\AOMEI\AOMEI Backupper 6.4.0\ABService.exe [995760 2021-01-27] (AOMEI International Network Limited -> AOMEI International Network Limited)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9712432 2022-09-18] (BattlEye Innovations e.K. -> )
S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12516280 2022-11-01] (Microsoft Corporation -> Microsoft Corporation)
S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [785408 2022-11-11] (Microsoft Windows -> Microsoft Corporation)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4506728 2020-03-13] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [57416040 2022-11-08] (Electronic Arts, Inc. -> )
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [9870440 2022-11-03] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2021-12-05] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
S2 ExpressVPNService; C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [437104 2021-04-26] (EXPRSVPN LLC -> ExpressVPN)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8347832 2022-10-26] (Malwarebytes Inc -> Malwarebytes)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2019-09-26] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1753704 2019-09-26] (Acronis International GmbH -> )
S2 PulseSecureService; C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe [182232 2016-08-25] (Pulse Secure, LLC -> Pulse Secure, LLC)
S3 Rockstar Service; B:\Benjamin\Program Files (x86)\Rockstar Games\Launcher\RockstarService.exe [2072408 2022-10-12] (Rockstar Games, Inc. -> Rockstar Games)
S2 Surfshark Service; C:\Program Files (x86)\Surfshark\Surfshark.Service.exe [3591240 2022-09-20] (Surfshark B.V. -> Surfshark)
S3 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited -> Windscribe Limited)
S2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_df0bee9f4cb9436e\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_df0bee9f4cb9436e\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Pilotes (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
S2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> )
S2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [31760 2021-03-16] (AOMEI International Network Limited -> )
R0 apmwin; C:\WINDOWS\System32\DRIVERS\apmwin.sys [48088 2018-10-15] (Paragon Software GmbH -> Paragon Software Group)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S2 csvol; C:\WINDOWS\system32\DRIVERS\csvol.sys [46552 2018-10-15] (Paragon Software GmbH -> Paragon Software Group)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2020-03-13] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2020-03-13] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 expressvpnsplittunnel; C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys [37024 2021-04-26] (ExprsVPN LLC -> ExpressVPN)
R3 expressvpnwintun; C:\WINDOWS\System32\drivers\expressvpn-wintun.sys [46824 2021-04-26] (Express VPN International Ltd. -> ExpressVPN)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [390592 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [182832 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R0 gpt_loader; C:\WINDOWS\System32\DRIVERS\gpt_loader.sys [79832 2018-10-15] (Paragon Software GmbH -> )
S3 Hfsplus; C:\WINDOWS\System32\DRIVERS\hfsplus.sys [218072 2018-10-15] (Paragon Software GmbH -> Paragon Software Group)
S3 HfsplusRec; C:\WINDOWS\System32\DRIVERS\hfsplusrec.sys [35288 2018-10-15] (Paragon Software GmbH -> Paragon Software Group)
R1 jnprns; C:\WINDOWS\system32\DRIVERS\jnprns.sys [507192 2016-08-25] (Juniper Networks, Inc. -> Juniper Networks)
S4 jnprTdi_824_597; C:\Windows\system32\Drivers\jnprTdi_824_597.sys [106176 2016-06-01] (Pulse Secure, LLC -> Pulse Secure, LLC)
S3 jnprva; C:\WINDOWS\System32\drivers\jnprva.sys [30072 2016-08-25] (Juniper Networks, Inc. -> Juniper Networks, Inc.)
R3 JnprVaMgr; C:\WINDOWS\System32\drivers\jnprvamgr.sys [45352 2016-08-25] (Juniper Networks, Inc. -> Juniper Networks, Inc.)
S2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-11-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239560 2022-11-15] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R0 mounthlp; C:\WINDOWS\System32\DRIVERS\mounthlp.sys [64472 2018-10-15] (Paragon Software GmbH -> Paragon Software Group)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2016-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S3 SurfsharkSplitTunnelDriver; C:\Program Files (x86)\Surfshark\Resources\x64\SurfsharkSplitTunnelCalloutDriver.sys [39648 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 tapexpressvpn; C:\WINDOWS\System32\drivers\tapexpressvpn.sys [52904 2021-04-26] (ExprsVPN LLC -> The OpenVPN Project)
R3 tapsurfshark; C:\WINDOWS\System32\drivers\tapsurfshark.sys [38728 2022-02-01] (WDKTestCert Lenovo,131775874531219913 -> The OpenVPN Project)
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1310552 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S2 tib_mounter; C:\WINDOWS\system32\DRIVERS\tib_mounter.sys [213336 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2016-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [49152 2021-02-08] (Microsoft Corporation) [Fichier non signé]
S2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [331976 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [243472 2021-03-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-11-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [469288 2022-11-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-12] (Microsoft Windows -> Microsoft Corporation)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2022-09-26] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X]

==================== NetSvcs (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation)

==================== Un mois (créés) (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-11-14 21:50 - 2022-11-15 00:08 - 000580284 _____ C:\WINDOWS\ntbtlog.txt
2022-11-14 21:50 - 2022-11-15 00:07 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2022-11-12 20:06 - 2022-11-15 00:07 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2022-11-12 18:49 - 2022-11-15 00:08 - 000000000 ____D C:\FRST
2022-11-12 18:49 - 2022-11-12 18:49 - 000000000 ____D C:\Users\benji\AppData\Local\OneDrive
2022-11-12 18:35 - 2022-11-12 18:35 - 000000000 ___HD C:\$WinREAgent
2022-11-12 18:23 - 2022-11-12 18:23 - 000000000 ____D C:\Users\benji\AppData\Local\BraveSoftware
2022-11-11 22:42 - 2022-11-11 22:42 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-11-11 22:42 - 2022-11-11 22:42 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-11-11 22:42 - 2022-11-11 22:42 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll
2022-11-11 22:42 - 2022-11-11 22:42 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-11-10 23:57 - 2022-11-10 23:57 - 000000000 ____D C:\Users\benji\AppData\Local\IsolatedStorage
2022-11-07 18:31 - 2022-11-10 21:55 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-10-19 23:09 - 2022-10-19 23:09 - 000002232 _____ C:\Users\benji\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigation privée de Firefox.lnk

==================== Un mois (modifiés) ==================

(Si un élément est inclus dans le fichier fixlist.txt, le fichier/dossier sera déplacé.)

2022-11-15 00:07 - 2022-10-05 14:23 - 000239560 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-11-15 00:07 - 2021-02-08 12:48 - 000008192 ___SH C:\DumpStack.log.tmp
2022-11-15 00:07 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-11-15 00:06 - 2021-03-16 18:59 - 000000150 _____ C:\WINDOWS\SysWOW64\winsevr.dat
2022-11-15 00:06 - 2021-02-08 12:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-11-15 00:06 - 2019-05-13 19:01 - 000000000 ____D C:\ProgramData\NVIDIA
2022-11-14 23:23 - 2020-05-20 02:54 - 000000000 ____D C:\Users\benji\AppData\LocalLow\Mozilla
2022-11-14 22:36 - 2021-02-08 12:58 - 001770906 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-11-14 22:36 - 2019-12-07 15:49 - 000791756 _____ C:\WINDOWS\system32\perfh00C.dat
2022-11-14 22:36 - 2019-12-07 15:49 - 000149922 _____ C:\WINDOWS\system32\perfc00C.dat
2022-11-14 22:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2022-11-14 22:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-11-14 21:55 - 2021-02-03 23:58 - 000000000 ___DC C:\WINDOWS\Panther
2022-11-14 21:30 - 2021-02-08 12:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-11-14 21:12 - 2022-10-05 05:32 - 000000000 ____D C:\Users\benji\AppData\Local\CrashDumps
2022-11-12 21:51 - 2021-02-08 12:50 - 000000000 ____D C:\Users\benji
2022-11-12 20:49 - 2019-05-14 19:33 - 000000000 ____D C:\Users\benji\AppData\Roaming\Spotify
2022-11-12 20:42 - 2019-05-14 19:33 - 000000000 ____D C:\Users\benji\AppData\Local\Spotify
2022-11-12 20:17 - 2021-09-24 19:36 - 000000000 ____D C:\WINDOWS\Minidump
2022-11-12 20:17 - 2019-05-14 00:50 - 000609588 ____N C:\WINDOWS\Minidump\111222-8937-01.dmp
2022-11-12 20:08 - 2022-10-07 06:14 - 000000000 _____ C:\Recovery.txt
2022-11-12 20:07 - 2019-05-14 00:50 - 000554700 ____N C:\WINDOWS\Minidump\111222-9578-01.dmp
2022-11-12 20:05 - 2019-08-06 17:51 - 000000000 ____D C:\Users\benji\AppData\LocalLow\Temp
2022-11-12 20:02 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2022-11-12 18:41 - 2019-05-14 00:50 - 000335272 ____N C:\WINDOWS\Minidump\111222-8765-01.dmp
2022-11-12 18:38 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-11-12 18:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-11-12 18:03 - 2019-05-14 00:50 - 000637320 ____N C:\WINDOWS\Minidump\111222-8562-01.dmp
2022-11-12 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-11-12 17:38 - 2019-05-14 00:50 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2022-11-12 17:11 - 2022-10-07 05:27 - 000000000 ____D C:\Users\benji\AppData\Local\Origin
2022-11-12 00:10 - 2019-05-14 00:50 - 000479510 ____N C:\WINDOWS\Minidump\111222-8109-01.dmp
2022-11-12 00:08 - 2021-02-08 12:48 - 000474744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-11-12 00:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-11-11 22:41 - 2021-02-08 12:51 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-11-11 22:19 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-11-11 22:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-11-11 22:19 - 2019-05-13 22:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-11-11 22:16 - 2019-05-13 22:46 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-11-11 14:01 - 2019-07-08 22:26 - 000000000 ____D C:\Users\benji\AppData\Roaming\TeamViewer
2022-11-11 12:59 - 2021-06-22 01:36 - 000002231 _____ C:\Users\benji\Desktop\Discord.lnk
2022-11-11 01:11 - 2022-09-26 16:25 - 000000000 ____D C:\ProgramData\Surfshark
2022-11-10 21:55 - 2020-05-20 02:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-11-09 19:20 - 2022-09-26 15:38 - 000000000 ____D C:\Program Files\EA
2022-11-09 19:19 - 2022-10-07 05:26 - 000000000 ____D C:\ProgramData\Package Cache
2022-11-07 19:18 - 2022-02-09 03:23 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-11-07 19:17 - 2021-10-12 19:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-11-07 19:17 - 2020-05-20 02:54 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-11-07 18:26 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-11-04 19:10 - 2019-05-13 19:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-11-04 16:07 - 2021-06-22 01:36 - 000000000 ____D C:\Users\benji\AppData\Roaming\discord
2022-11-04 14:58 - 2021-06-22 01:36 - 000000000 ____D C:\Users\benji\AppData\Local\Discord
2022-11-01 22:34 - 2019-08-18 14:19 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-10-31 21:20 - 2020-06-08 13:23 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-10-27 20:22 - 2019-05-14 00:50 - 000621862 _____ C:\DUMP1879.tmp
2022-10-26 22:46 - 2021-03-10 16:13 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2022-10-26 22:46 - 2019-09-09 16:21 - 000103888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2022-10-23 21:36 - 2022-09-21 19:55 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2022-10-23 21:19 - 2022-09-21 19:55 - 000003108 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2022-10-23 21:19 - 2021-08-26 19:57 - 000002314 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - benji
2022-10-23 21:19 - 2021-02-08 12:59 - 000003678 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-23 21:19 - 2021-02-08 12:59 - 000003454 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-23 19:55 - 2020-06-15 00:23 - 000000000 ____D C:\Program Files\CCleaner
2022-10-19 15:04 - 2020-01-20 03:45 - 000000000 ___RD C:\Users\benji\iCloudDrive
2022-10-19 02:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-10-19 02:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-10-19 02:18 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-10-19 02:12 - 2019-05-13 19:19 - 000000000 ____D C:\Users\benji\AppData\Local\Comms
2022-10-18 19:22 - 2019-12-07 10:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2022-10-18 19:22 - 2019-12-07 10:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll

==================== Fichiers à la racine de certains dossiers ========

2021-12-19 03:07 - 2021-12-19 03:07 - 000000017 _____ () C:\Users\benji\AppData\Local\resmon.resmoncfg
2021-08-27 04:17 - 2021-08-27 04:17 - 000017408 _____ () C:\Users\benji\AppData\Local\WebpageIcons.db
2022-03-01 20:17 - 2022-03-01 20:17 - 000000000 _____ () C:\Users\benji\AppData\Local\{54687B3A-A5F3-48A4-8681-558D9C1FEACC}

==================== SigCheck ============================

(Il n'y a pas de correction automatique pour les fichiers qui ne satisfont pas à la vérification.)

==================== Fin de FRST.txt ========================