Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025 Ran by gasto (administrator) on STEFI (Acer Aspire A315-44P) (26-12-2025 17:30:31) Running from C:\Users\gasto\Downloads\FRST64English.exe Loaded Profiles: gasto Platform: Microsoft Windows 11 Famille Version 25H2 26200.7462 (X64) Language: Français (France) Default browser: Chrome Boot Mode: Safe Mode (with Networking) ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\HelpPane.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_9b2689b4e3586127\RtkAudUService64.exe [1673008 2023-05-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Nearby Share] => C:\Program Files\Google\NearbyShare\nearby_share_launcher.exe [2908824 2025-10-31] (Google LLC -> Google) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [197160896 2025-12-09] (Dropbox, Inc -> Dropbox, Inc.) HKU\S-1-5-21-1736615643-2553189397-190059909-1001\...\Run: [MicrosoftEdgeAutoLaunch_C75E23426BEABE86E553E7AC4FCCBDBD] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\143.0.7499.42\Installer\chrmstp.exe [2025-12-11] (Google LLC -> Google LLC) Startup: C:\Users\gasto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Envoyer à OneNote.lnk [2025-10-05] ShortcutTarget: Envoyer à OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION ==================== Scheduled Tasks (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {29B5DE3E-F33F-4E8D-9C6B-5CC90E6974CE} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [3089768 2023-02-03] (Acer Incorporated -> ) -> C:\Program Files (x86)\Acer\Care Center\-auto Task: {3A04CAD7-B365-4C8A-85C6-4E1E3D6B0701} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41832 2023-02-03] (Acer Incorporated -> ) Task: {32275841-AB7E-4F02-A9AE-5C968846CCD8} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4956008 2023-02-03] (Acer Incorporated -> ) Task: {35A19AA3-8DF9-45E1-A180-836F695F455C} - System32\Tasks\AcerCMUpdateTask2.9.25180 => C:\Program Files (x86)\Acer\Amundsen\2.9.25180\awc.exe [97480 2025-06-24] (Acer Incorporated -> ) Task: {80EED2A8-6309-4C96-A2FA-89D8BAF1CF25} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.) Task: {6882CC04-F7B3-4749-8970-0C160647387A} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1024440 2023-07-11] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {CEBE69B5-1A40-40EF-BB2B-508D3F564B58} - System32\Tasks\App Explorer => C:\Users\gasto\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe [10519592 2025-10-15] (SweetLabs Inc -> SweetLabs, Inc) <==== ATTENTION Task: {9B2FEBB3-8714-46FF-804B-A9074B8C9D30} - System32\Tasks\DelayStartCareCenter2 => C:\Program Files\AcerCCAgent\Launcher.exe [157512 2025-08-13] (I3D Technology Inc. -> I3D Technology Inc.) Task: {81BBEE4B-37B7-4F90-8A85-6114369474B4} - System32\Tasks\DelayStartDeviceInfo2 => C:\Program Files\AcerDIAgent\Launcher.exe AcerDIAgentSvis (No File) Task: {DA0AEE95-292B-45BD-BCCC-F5019853D967} - System32\Tasks\DelayStartQuickAccess2 => C:\Program Files\AcerQAAgent\Launcher.exe [157488 2025-08-13] (I3D Technology Inc. -> I3D Technology Inc.) Task: {18C32424-C085-4D70-B962-5140531AC8A2} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.141{4C1DCE15-AAD2-404A-815F-0AEE21736E0B} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.141\updater.exe [5898168 2025-10-31] (Dropbox, Inc -> Dropbox, Inc.) Task: {52987D31-EA7E-4B68-80B3-A719F2742E20} - System32\Tasks\Google Play Games Notifier => C:\Program Files\Google\Play Games\Bootstrapper.exe [374936 2025-12-01] (Google LLC -> Google LLC) Task: {85A8C858-94E7-41E1-BBAC-1C4DD36EB80A} - System32\Tasks\Google\Quick Share Relaunch => C:\Program Files\Google\NearbyShare\nearby_share_launcher.exe [2908824 2025-10-31] (Google LLC -> Google) Task: {EB620973-99D5-43B0-89B8-2C5A5325696C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.0{52E56653-AF98-489C-A978-182CA0AA5B0D} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.0\updater.exe [7056536 2025-11-26] (Google LLC -> Google LLC) Task: {24B057A4-AC6A-4495-8D15-2AF2E42175A8} - System32\Tasks\McAfee\WPS\McAfee Anti-tracker notification => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {32D29C55-7005-4BEA-915C-BD3D6D413302} - System32\Tasks\McAfee\WPS\McAfee Anti-Tracker Scanner => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} \\?\C:\Program Files\McAfee\wps\1.35.148.1\mc-fw-host.exe [2764624 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {32D29C55-7005-4BEA-915C-BD3D6D413302} - System32\Tasks\McAfee\WPS\McAfee Anti-Tracker Scanner => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\wps\1.35.148.1\mc-fw-host.exe [2764624 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {2F7AE8E6-20ED-4F19-84A5-E2C6D94C3DFF} - System32\Tasks\McAfee\WPS\McAfee Cloud Configuration Check => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {318E13A3-B7EC-41ED-B21B-0A845FFBEFFF} - System32\Tasks\McAfee\WPS\McAfee Fake Alert Blocker => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {D224E765-3710-4FBE-8E26-AE1616232EF3} - System32\Tasks\McAfee\WPS\McAfee Health Check => C:\Program Files\McAfee\wps\1.35.148.1\sustainability\mc-sustainability.exe [960864 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {899CB7D0-2A41-4CBF-B241-8C1E041C8C96} - System32\Tasks\McAfee\WPS\McAfee Hotfix => C:\Program Files\McAfee\wps\1.35.148.1\dad\mc-dad.exe [2733968 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {832DEE6E-2CAC-47FA-92FD-545A9401959D} - System32\Tasks\McAfee\WPS\McAfee Message Check => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {2D853EB5-D8CC-40F3-ACA6-28DB2534203F} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} \\?\C:\Program Files\McAfee\wps\1.35.148.1\mc-fw-host.exe [2764624 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {2D853EB5-D8CC-40F3-ACA6-28DB2534203F} - System32\Tasks\McAfee\WPS\McAfee PC Optimizer Task => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\wps\1.35.148.1\mc-fw-host.exe [2764624 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {4B05F87F-5FC1-48B3-A934-A4A27D35C982} - System32\Tasks\McAfee\WPS\McAfee restart of PC => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {820EB052-CD56-4D38-85BA-76E5C2EB5FE0} - System32\Tasks\McAfee\WPS\McAfee Scheduled AV Scan => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {F621084F-2AE8-4598-9D01-4B7F7322766A} - System32\Tasks\McAfee\WPS\McAfee Scheduled Tracker Remover => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {0FF010E1-789A-4090-A42B-94FF9DAC9509} - System32\Tasks\McAfee\wps\McAfee Updater => {81A7CB63-BB07-4DAD-8E72-07B3A9BB08E2} C:\Program Files\McAfee\wps\1.35.148.1\mc-update.exe [3457616 2025-11-16] (McAfee, LLC -> McAfee, LLC) Task: {484FD589-3359-4272-A426-E010C25A4654} - System32\Tasks\McAfee\WPS\McAfee Virus Definition Update => 1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D Task: {630347CE-9A68-4B53-ACB6-111C0E8F2B85} - System32\Tasks\McAfee\WPS\McAfee Windows Notification Token => \\?\C:\Program Files\McAfee\wps\1.35.148.1\mc-wns-client\mc-wns-client.exe [1067272 2025-11-16] (McAfee, LLC -> ) Task: {146DCB3D-49E3-45E9-B5CD-3C3284FB7C41} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {8FF600EF-15BC-4AD6-8843-E7A82FB41D92} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation) Task: {A0385611-0778-4375-80B6-750D22A03AFF} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70976 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {93932D97-0CA1-480F-B78E-B1C7900F398B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation) Task: {C67759EE-7292-438D-A0FD-107348C2E947} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {DCD24D51-CAEE-457F-862E-874FED43E15E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {BE21B1B7-2B16-4E1B-B931-FD204AC7FF42} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1347344 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {46571E7F-DDD8-4A8C-8AF1-FE06A18CFDC3} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-18] (Microsoft Corporation -> Microsoft Corporation) Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File) Task: {7BAEF091-B4BE-4283-8DEE-C2126EA7564D} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File) Task: {4C3397BC-E366-4D71-9A32-005EC9127FAB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F1B31947-F5D0-4FBE-A03A-EACF23D829AE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {342BA783-2585-458F-9121-2338CB215A12} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {06315DE2-3999-4485-979D-7EFC1089B993} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {88BE3DEC-65AE-4228-B8FB-81438D125A11} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1024440 2023-07-11] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) Task: {91B0E4D3-77B4-409B-BBD1-1922C89CF1F9} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1736615643-2553189397-190059909-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-17] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters). Task: {C2CADB78-512C-478A-A639-747F06AC4AC0} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-17] (Mozilla Corporation -> Mozilla Foundation) Task: {BB71101C-C7BF-4294-9AB6-D4E635D182E8} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe [70792 2022-08-15] (Acer Incorporated -> ) Task: {2BC03B99-FDD8-474A-BA59-9084A9ADB9DA} - System32\Tasks\Oem\wlanBrokerTask => C:\Program Files (x86)\Acer\ExpressVPN\wlanBroker.exe [20168 2025-09-11] (Acer Incorporated -> ) Task: {876CAFAA-288C-4E55-9639-AE65560FC1CA} - System32\Tasks\Oem\xvpnHelperTask => C:\Program Files (x86)\Acer\ExpressVPN\XvpnInstaller.exe [77000 2025-09-12] (Acer Incorporated -> ) Task: {0FF9EE05-05E0-466D-A361-4D9D60C8BD94} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1736615643-2553189397-190059909-1001 => C:\Users\gasto\AppData\Local\Microsoft\OneDrive\25.222.1112.0002_1\OneDriveLauncher.exe [745832 2025-12-14] (Microsoft Corporation -> Microsoft Corporation) Task: {2DDF9480-3D7A-4F1B-8CB4-A8DE4D8C9293} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461672 2023-02-03] (Acer Incorporated -> Acer Incorporated) Task: {C77F1FFE-24CF-471C-AC9C-3ADB0326E4CD} - System32\Tasks\StorPSCTL => C:\Program Files\Acer\StorPSCTL\StorPSCTL.exe [153640 2021-03-29] (Acer Incorporated -> Microsoft) Task: {C48769C1-A0A2-414C-B4F0-7F805AB0D9D5} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\TriggerFramework.exe [333152 2022-08-03] (Acer Incorporated -> Acer Incorporated) Task: {BFEE4010-73A8-4C56-A6DF-64CE7526538B} - System32\Tasks\UEIPInvitation => C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UEIPOOBECheck.exe [2218336 2022-08-03] (Acer Incorporated -> Acer Incorporated) Task: {6B03F06B-3D0B-447C-B4D1-E62E5ACD4BFE} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-1736615643-2553189397-190059909-1001 => C:\Users\gasto\AppData\Roaming\Zoom\bin\Zoom.exe [462768 2025-11-26] (Zoom Video Communications, Inc. -> Zoom Communications, Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\DelayStartCareCenter2.job => C:\Program Files\AcerCCAgent\Launcher.exe Task: C:\WINDOWS\Tasks\DelayStartDeviceInfo2.job => C:\Program Files\AcerDIAgent\Launcher.exe Task: C:\WINDOWS\Tasks\DelayStartQuickAccess2.job => C:\Program Files\AcerQAAgent\Launcher.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{33a4bc84-bb07-4303-8197-02e82b77247c}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{33a4bc84-bb07-4303-8197-02e82b77247c}: [DhcpDomain] lan Tcpip\..\Interfaces\{33a4bc84-bb07-4303-8197-02e82b77247c}\05968756C6F513239353: [DhcpNameServer] 10.223.219.185 Tcpip\..\Interfaces\{33a4bc84-bb07-4303-8197-02e82b77247c}\845514755494D273246464: [DhcpNameServer] 192.168.1.1 192.168.1.1 Edge: ======= Edge Profile: C:\Users\gasto\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-21] Edge Extension: (Norton Safe Search Enhanced) - C:\Users\gasto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ajdhedonkgfgpnmffnfdgdklaflfeagp [2025-12-21] [UpdateUrl:0] <==== ATTENTION Edge Extension: (Google Docs hors connexion) - C:\Users\gasto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-21] Edge Extension: (Edge relevant text changes) - C:\Users\gasto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-01-16] Edge crx: C:\Program Files (x86)\Microsoft\Edge\Application\Extensions\dsue.crx [2025-12-21] FireFox: ======== FF DefaultProfile: e0pgc8nz.default FF ProfilePath: C:\Users\gasto\AppData\Roaming\Mozilla\Firefox\Profiles\e0pgc8nz.default [2025-12-25] FF ProfilePath: C:\Users\gasto\AppData\Roaming\Mozilla\Firefox\Profiles\i35r76me.default-release [2025-12-26] FF Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\gasto\AppData\Roaming\Mozilla\Firefox\Profiles\i35r76me.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-12-25] FF Extension: (New Tab) - C:\Users\gasto\AppData\Roaming\Mozilla\Firefox\Profiles\i35r76me.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-25] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-12-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-12-06] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.21 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) Chrome: ======= CHR Profile: C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default [2025-12-26] CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-12-21] CHR Extension: (McAfee® WebAdvisor) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-12-21] CHR Extension: (Norton Safe Search Enhanced) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\fogonolbbomolgephaeddjdolcbfoglk [2025-12-21] [UpdateUrl:0] <==== ATTENTION CHR Extension: (Google Docs hors connexion) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-21] CHR Extension: (AdBlock - bloquez les publicités sur le web) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-12-21] CHR Extension: (Paiements via le Chrome Web Store) - C:\Users\gasto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-01-16] CHR Profile: C:\Users\gasto\AppData\Local\Google\Chrome\User Data\System Profile [2025-12-21] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKU\S-1-5-21-1736615643-2553189397-190059909-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259432 2023-02-03] (Acer Incorporated -> Acer Incorporated) S2 AcerARTAIMMXDriverService; C:\WINDOWS\System32\DriverStore\FileRepository\acerartaimmxdrivercomponent.inf_amd64_b81b7341e842129a\AAADSvc.exe [367936 2025-10-30] (Acer Incorporated -> Acer Incorporated) S2 AcerARTAIMMXService; C:\WINDOWS\System32\DriverStore\FileRepository\acerartaimmxdrivercomponent.inf_amd64_b81b7341e842129a\ARTAimmxService.exe [274752 2025-10-30] (Acer Incorporated -> Acer Inc.) S2 AcerCCAgentSvis; C:\WINDOWS\system32\AcerCCAgent.exe [6007088 2025-08-13] (I3D Technology Inc. -> I3D Technology Inc.) S2 AcerDeviceEnablingServiceV2; C:\WINDOWS\System32\DriverStore\FileRepository\acerdeviceenablingservicecomponent.inf_amd64_2cdf5cd411dbbf8e\ADESv2Svc.exe [667464 2024-10-14] (Acer Incorporated -> Acer Incorporated) S2 AcerDIAgentSvis; C:\WINDOWS\system32\AcerDIAgent.exe [5536064 2025-07-31] (I3D Technology Inc. -> I3D Technology Inc.) S2 AcerEZSvc; C:\WINDOWS\System32\DriverStore\FileRepository\ezservicecomponent.inf_amd64_b8ac8921d0de9689\AcerEZService.exe [12939112 2025-05-04] (ULIC TEK INC. -> ) S2 AcerGAICameraService; C:\WINDOWS\System32\DriverStore\FileRepository\acergaicameracomponent.inf_amd64_96e61d1a348ad182\AcerGAICameraService.exe [178960 2025-10-02] (Acer Incorporated -> Acer Inc.) S2 AcerPixyService; C:\WINDOWS\System32\DriverStore\FileRepository\acerartaimmxdrivercomponent.inf_amd64_b81b7341e842129a\AcerPixyService.exe [615744 2025-10-30] (Acer Incorporated -> Acer Inc.) S2 AcerQAAgentSvis; C:\WINDOWS\system32\AcerQAAgent.exe [6184776 2025-08-13] (I3D Technology Inc. -> I3D Technology Inc.) S2 AcerServiceSvc; C:\WINDOWS\System32\DriverStore\FileRepository\acerservicecomponent.inf_amd64_dc983e19363ee831\AcerServiceWrapper.exe [678712 2024-08-20] (ULIC TEK INC. -> CloudBees, Inc.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.) S2 ASMSvc; C:\WINDOWS\System32\DriverStore\FileRepository\sysmonitorservice.inf_amd64_58adec8bbcd5aac3\x64\AcerSystemCentralService.exe [327448 2025-05-18] (Acer Incorporated -> Acer Incorporated) S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13419408 2025-12-16] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [5898168 2025-10-31] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [5898168 2025-10-31] (Dropbox, Inc -> Dropbox, Inc.) S2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-04-29] (Dropbox, Inc -> Dropbox, Inc.) S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\238.4.6075\DropboxElevationService.exe [1659336 2025-12-09] (Dropbox, Inc -> Dropbox, Inc.) S2 DropboxUpdaterInternalService123.0.6299.141; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.141\updater.exe [5898168 2025-10-31] (Dropbox, Inc -> Dropbox, Inc.) S2 DropboxUpdaterService123.0.6299.141; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.141\updater.exe [5898168 2025-10-31] (Dropbox, Inc -> Dropbox, Inc.) S2 GooglePlayGamesServices-25.12.281.0; C:\Program Files\Google\Play Games Services\25.12.281.0\Service\GooglePlayGamesServices.exe [511128 2025-12-12] (Google LLC -> Google LLC) S2 mc-fw-host; C:\Program Files\McAfee\wps\1.35.148.1\mc-fw-host.exe [2764624 2025-11-16] (McAfee, LLC -> McAfee, LLC) S3 mc-wps-update; C:\Program Files\McAfee\wps\1.35.148.1\mc-update.exe [3457616 2025-11-16] (McAfee, LLC -> McAfee, LLC) S2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [958776 2025-12-11] (McAfee, LLC -> McAfee, LLC) S2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) S3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program Service\Framework\UBTService.exe [337760 2022-08-03] (Acer Incorporated -> Acer Incorporated) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R3 AcerAirplaneModeController; C:\WINDOWS\System32\DriverStore\FileRepository\acerairplanemodecontroller.inf_amd64_36869d4d52526b5b\AcerAirplaneModeController.sys [36200 2024-06-03] (Acer Incorporated -> Acer Incorporated) R3 AcerApplicationBaseDriver_Device; C:\WINDOWS\System32\DriverStore\FileRepository\acerapplicationbasedriver.inf_amd64_87fcd9ece24eed34\AcerApplicationBaseDriver.sys [28440 2025-10-26] (Acer Incorporated -> ) S3 AcerDeviceEnablingServiceComponentService; C:\WINDOWS\System32\DriverStore\FileRepository\acerdeviceenablingservicecomponent.inf_amd64_2cdf5cd411dbbf8e\x64\AcerDeviceEnablingServiceComponent.sys [37704 2024-10-14] (Acer Incorporated -> ) S3 AcerGAICameraComponentService; C:\WINDOWS\System32\DriverStore\FileRepository\acergaicameracomponent.inf_amd64_3d28e0967b3f8b98\AcerGAICameraComponent.sys [37216 2025-01-06] (Acer Incorporated -> ) S3 AMDAfdAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_3b0bcbf4407d2228\amdacpafd.sys [435928 2024-05-10] (Advanced Micro Devices -> Advanced Micro Devices) R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) S3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0395230.inf_amd64_85827d0eda6bae57\B394016\amdkmdag.sys [100395408 2023-08-22] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-02-02] (Microsoft Corporation) [File not signed] R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226688 2025-12-02] (Microsoft Windows -> Microsoft Corporation) S1 googlehaxm; C:\WINDOWS\system32\drivers\GoogleHaxm.sys [234688 2025-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Google) S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation) S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144768 2025-12-02] (Microsoft Windows -> Microsoft Corporation) S0 mfeelam; C:\WINDOWS\System32\DRIVERS\mfeelam.sys [20424 2025-11-16] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC) R0 mfesec; C:\WINDOWS\System32\DRIVERS\mfesec.sys [78184 2025-11-16] (McAfee, LLC -> McAfee, LLC) S3 MTKBTFilterX64; C:\WINDOWS\System32\drivers\mtkbtfilterx.sys [401880 2023-05-29] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) S3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_8f315cad529f1a9f\mtkwl6ex.sys [1710704 2024-06-12] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-05-30] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2025-12-26 14:48 - 2025-12-26 17:30 - 000029185 _____ C:\Users\gasto\Downloads\FRST.txt 2025-12-26 14:46 - 2025-12-26 14:46 - 002444288 _____ (Farbar) C:\Users\gasto\Downloads\FRST64English.exe 2025-12-25 23:02 - 2025-12-25 23:02 - 000792022 _____ C:\WINDOWS\system32\perfh00C.dat 2025-12-25 23:02 - 2025-12-25 23:02 - 000766932 _____ C:\WINDOWS\system32\perfh010.dat 2025-12-25 23:02 - 2025-12-25 23:02 - 000158734 _____ C:\WINDOWS\system32\perfc00C.dat 2025-12-25 23:02 - 2025-12-25 23:02 - 000151948 _____ C:\WINDOWS\system32\perfc010.dat 2025-12-25 18:44 - 2025-12-26 17:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-12-25 18:44 - 2025-12-25 18:44 - 000002010 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigation privée de Firefox.lnk 2025-12-25 18:44 - 2025-12-25 18:44 - 000001033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-12-25 18:44 - 2025-12-25 18:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2025-12-25 18:44 - 2025-12-25 18:44 - 000000000 ____D C:\Users\gasto\AppData\Roaming\Mozilla 2025-12-25 18:44 - 2025-12-25 18:44 - 000000000 ____D C:\Users\gasto\AppData\Local\Mozilla 2025-12-25 18:44 - 2025-12-25 18:44 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-12-25 18:44 - 2025-12-25 18:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-12-25 18:44 - 2025-12-17 18:02 - 000390272 _____ (Mozilla Foundation) C:\Users\gasto\Desktop\Firefox.exe 2025-12-25 18:43 - 2025-12-25 18:43 - 000383896 _____ (Mozilla) C:\Users\gasto\Downloads\Firefox Installer.exe 2025-12-25 18:39 - 2025-11-28 17:39 - 014503634 _____ C:\Users\gasto\Documents\20-recettes-au-four.pdf 2025-12-25 17:58 - 2025-12-26 17:30 - 001112792 _____ C:\WINDOWS\ntbtlog.txt 2025-12-25 17:58 - 2025-12-26 17:27 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2025-12-25 17:18 - 2025-12-25 18:40 - 000000000 ____D C:\Users\gasto\Desktop\Jardinage 2025-12-25 17:18 - 2025-12-25 17:18 - 000000000 ____D C:\Users\gasto\Desktop\LOIC CAPa 2025-12-25 17:18 - 2025-12-25 17:18 - 000000000 ____D C:\Users\gasto\Desktop\cité des métiers 2025-12-21 19:58 - 2025-12-26 17:30 - 000000000 ____D C:\FRST 2025-12-21 19:52 - 2025-11-18 20:47 - 000121160 _____ C:\Users\gasto\Desktop\spese.xlsx 2025-12-21 19:52 - 2025-01-20 14:24 - 000000877 _____ C:\Users\gasto\Desktop\Stefi.lnk 2025-12-21 19:52 - 2025-01-19 14:50 - 000000827 _____ C:\Users\gasto\Desktop\Dropbox.lnk 2025-12-21 19:52 - 2024-07-06 12:36 - 000018481 _____ C:\Users\gasto\Desktop\tableau sostituzioni.xlsx 2025-12-21 19:50 - 2025-12-21 19:50 - 000000690 _____ C:\Users\gasto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bureau.lnk 2025-12-21 18:55 - 2025-12-21 19:02 - 000000000 ____D C:\Users\gasto\AppData\Local\Avast Software 2025-12-21 18:51 - 2025-12-21 19:02 - 000000000 ____D C:\Users\gasto\AppData\Roaming\Avast Software 2025-12-21 18:51 - 2025-12-21 18:51 - 000000000 ____D C:\WINDOWS\system32\o2 2025-12-21 18:51 - 2025-12-21 18:51 - 000000000 ____D C:\Users\gasto\AppData\Local\CEF 2025-12-21 18:48 - 2025-12-21 18:48 - 000000000 ____D C:\Users\gasto\AppData\Local\DBG 2025-12-21 18:47 - 2025-12-21 18:47 - 000888600 _____ (Google LLC) C:\Users\Public\Documents\gcapi.dll 2025-12-21 18:46 - 2025-12-21 19:03 - 000000000 ____D C:\ProgramData\Avast Software 2025-12-21 18:26 - 2025-12-21 18:26 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2025-12-19 13:36 - 2025-12-25 20:42 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-12-15 17:29 - 2025-12-25 16:42 - 000007984 _____ C:\WINDOWS\system32\Drivers\mtkRunTimeDataWdi.bin 2025-12-11 18:37 - 2025-12-11 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2025-12-10 12:21 - 2025-12-10 12:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2025-12-09 18:20 - 2025-12-09 18:20 - 010720419 _____ C:\Users\gasto\Downloads\Photos-1-001 (9).zip 2025-12-09 17:12 - 2025-12-09 17:13 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT 2025-12-02 16:16 - 2025-12-02 16:16 - 000035602 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-12-02 16:16 - 2025-12-02 16:16 - 000035602 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-12-02 14:02 - 2025-12-02 14:02 - 000001181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Quick Share.lnk 2025-12-02 14:02 - 2025-12-02 14:02 - 000000000 ____D C:\WINDOWS\system32\Tasks\Google 2025-12-02 13:58 - 2025-12-02 13:58 - 000000000 ____D C:\ProgramData\Samsung 2025-11-28 17:12 - 2025-11-28 17:12 - 032924572 _____ C:\Users\gasto\Downloads\potagers urbains 20 sept. à 09-38.m4a 2025-11-28 16:06 - 2025-11-28 18:30 - 021473244 _____ C:\Users\gasto\Downloads\Photos-1-001 (8).zip 2025-11-26 10:07 - 2025-11-26 10:07 - 000000000 ____D C:\Users\gasto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2025-12-26 17:27 - 2025-02-02 19:30 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2025-12-26 17:27 - 2024-05-08 14:27 - 000012288 ___SH C:\DumpStack.log.tmp 2025-12-26 17:26 - 2025-02-02 19:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-12-26 17:26 - 2025-01-16 16:57 - 000000000 ____D C:\Users\gasto\AppData\Local\Google 2025-12-26 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-12-26 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-12-26 17:26 - 2024-04-01 08:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2025-12-26 17:25 - 2025-11-18 12:22 - 000003090 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate 2025-12-26 17:25 - 2025-01-16 16:31 - 000000000 _RDJL C:\Users\gasto\OneDrive 2025-12-26 17:25 - 2024-05-08 14:39 - 000000000 ____D C:\ProgramData\Acer 2025-12-26 17:25 - 2024-05-08 14:39 - 000000000 ____D C:\Program Files\AcerQAAgent 2025-12-26 17:24 - 2025-02-02 19:37 - 000010512 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2025-12-26 17:24 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps 2025-12-26 17:24 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-12-26 17:18 - 2025-02-02 19:30 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-12-26 17:18 - 2025-01-16 16:15 - 000000000 ___SD C:\Users\gasto\AppData\Roaming\Microsoft\Credentials 2025-12-26 14:45 - 2025-01-19 14:48 - 000000000 ____D C:\Users\gasto\AppData\Local\Dropbox 2025-12-26 14:45 - 2025-01-19 14:47 - 000000000 ____D C:\Users\gasto\AppData\Roaming\Dropbox 2025-12-26 14:45 - 2025-01-16 16:15 - 000000000 ____D C:\Users\gasto\AppData\Local\Host App Service 2025-12-25 23:02 - 2025-05-06 13:56 - 002693478 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-12-25 23:02 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF 2025-12-25 19:33 - 2025-01-16 16:30 - 000000000 ____D C:\Users\gasto\AppData\Local\Packages 2025-12-25 18:41 - 2025-02-02 19:34 - 000000000 ____D C:\Users\gasto 2025-12-25 18:38 - 2025-01-19 14:50 - 000000000 __DJL C:\Users\gasto\Dropbox 2025-12-25 17:27 - 2025-01-17 12:17 - 000000000 ____D C:\Users\gasto\AppData\Local\CrashDumps 2025-12-25 15:43 - 2025-02-02 19:41 - 000003688 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-12-25 15:43 - 2025-02-02 19:41 - 000003562 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-12-21 20:23 - 2025-01-16 16:30 - 000000000 ____D C:\Users\gasto\AppData\Local\D3DSCache 2025-12-21 19:13 - 2024-05-08 14:34 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2025-12-21 18:54 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2025-12-21 15:35 - 2025-01-16 17:04 - 000000000 ____D C:\Users\gasto\AppData\Local\PlaceholderTileLogoFolder 2025-12-21 15:35 - 2024-05-08 14:30 - 000000000 ____D C:\ProgramData\Packages 2025-12-20 14:00 - 2024-05-08 14:27 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-12-18 19:13 - 2024-05-08 14:44 - 000000000 ____D C:\Program Files\Microsoft Office 2025-12-18 19:04 - 2024-05-08 14:27 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-12-16 07:31 - 2024-04-01 17:37 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore 2025-12-16 07:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-12-14 18:13 - 2025-01-16 17:08 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-12-14 18:12 - 2025-02-06 12:00 - 000003574 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1736615643-2553189397-190059909-1001 2025-12-14 18:12 - 2025-02-02 19:41 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1736615643-2553189397-190059909-1001 2025-12-14 18:12 - 2025-02-02 19:41 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1736615643-2553189397-190059909-1001 2025-12-14 18:12 - 2025-01-16 16:31 - 000002383 _____ C:\Users\gasto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-12-14 14:11 - 2025-01-16 17:08 - 218369424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-12-11 19:21 - 2025-01-16 16:57 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-12-11 18:37 - 2025-01-19 14:47 - 000000000 ____D C:\Program Files (x86)\Dropbox 2025-12-10 13:26 - 2025-01-22 11:12 - 000000000 ____D C:\Users\gasto\AppData\Roaming\vlc 2025-12-10 12:58 - 2025-02-02 19:33 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-12-09 17:14 - 2025-02-02 19:30 - 000474440 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-12-09 17:13 - 2025-07-15 17:51 - 000000000 ____D C:\WINDOWS\system32\ruxim 2025-12-09 17:13 - 2025-02-02 19:26 - 000000000 ____D C:\WINDOWS\InboxApps 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack 2025-12-09 17:13 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System 2025-12-09 17:13 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing 2025-12-09 17:10 - 2025-01-17 18:01 - 000002077 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2025-12-02 16:08 - 2025-04-07 09:56 - 000000000 ____D C:\Users\gasto\CrossDevice 2025-12-02 14:02 - 2024-05-08 14:42 - 000000000 ____D C:\Program Files\Google 2025-12-02 13:32 - 2024-05-08 14:34 - 000000000 ____D C:\Program Files\AMD 2025-11-28 12:32 - 2025-02-19 16:50 - 000000000 ____D C:\Users\gasto\AppData\Roaming\Zoom 2025-11-26 10:07 - 2025-02-19 16:50 - 000004250 _____ C:\WINDOWS\system32\Tasks\ZoomUpdateTaskUser-S-1-5-21-1736615643-2553189397-190059909-1001 ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================