cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:07-11-2015
Exécuté par Bendjama (2015-11-12 21:06:59)
Exécuté depuis C:\Users\Bendjama\Downloads
Windows 10 Home (X64) (2015-10-17 07:21:29)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-176361497-183740551-3943458776-500 - Administrator - Disabled)
Bendjama (S-1-5-21-176361497-183740551-3943458776-1001 - Administrator - Enabled) => C:\Users\Bendjama
DefaultAccount (S-1-5-21-176361497-183740551-3943458776-503 - Limited - Disabled)
Invité (S-1-5-21-176361497-183740551-3943458776-501 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

7-Zip 9.38 beta (HKLM-x32\...\7-Zip) (Version: - )
Adobe Flash Player 19 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 19.0.0.245 - Adobe Systems Incorporated)
Athan Basic 4.4 (HKLM-x32\...\Athan) (Version: - )
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CyberLink DVD Suite Deluxe (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.3101 - CyberLink Corp.)
DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden
Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited)
Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 46.0.2490.86 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
HP Customer Experience Enhancements (HKLM-x32\...\{5B295588-59C1-4386-9F85-BB4BEDCB0D22}) (Version: 5.7.0.3036 - Hewlett-Packard)
HP MediaSmart DVD (HKLM-x32\...\InstallShield_{DCCAD079-F92C-44DA-B258-624FC6517A5A}) (Version: 3.0.3123 - Hewlett-Packard)
HP MediaSmart Movie Themes (HKLM-x32\...\InstallShield_{3023EBDA-BF1B-4831-B347-E5018555F26E}) (Version: 3.0.3102 - Hewlett-Packard)
HP MediaSmart Music/Photo/Video (HKLM-x32\...\InstallShield_{B2EE25B9-5B00-4ACF-94F0-92433C28C39E}) (Version: 3.0.3205 - Hewlett-Packard)
HP MediaSmart SmartMenu (HKLM\...\{26280024-DFB7-4967-90DB-7F9C6660D01E}) (Version: 3.0.28.2 - Hewlett-Packard)
HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard)
HP Remote Solution (HKLM-x32\...\HP Remote Solution) (Version: 1.1.9.0 - TopSeed)
HP Setup (HKLM-x32\...\{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}) (Version: 1.2.3220.3079 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{4F46FDB9-B906-47BF-B3D5-C62E01B3C5EE}) (Version: 4.1.11.3 - Hewlett-Packard)
HP Support Information (HKLM-x32\...\{B9A03B7B-E0FF-4FB3-BA83-762E58A1B0AA}) (Version: 10.1.0002 - Hewlett-Packard)
HP Support Solutions Framework (HKLM-x32\...\{E4B931AF-C59A-4D92-8767-8E2D5F53144E}) (Version: 12.0.30.81 - Hewlett-Packard Company)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPAsset component for HP Active Support Library (x32 Version: 3.0.2.2 - Hewlett-Packard) Hidden
IMVU Avatar Chat Software (HKU\S-1-5-21-176361497-183740551-3943458776-1001\...\IMVU Avatar chat client software BETA) (Version: - )
InstallShieldHiRezCurrent (HKLM-x32\...\{9433FC1C-7405-433C-A26D-81076293BBCE}) (Version: 3.0.0.0 - Hi-Rez Studios)
LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1901 - CyberLink Corp.)
LabelPrint (x32 Version: 2.5.1901 - CyberLink Corp.) Hidden
League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games)
LightScribe System Software (HKLM-x32\...\{DD6C316A-FE75-4FBB-9D22-4C1920232B72}) (Version: 1.18.5.1 - LightScribe)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (English) (HKLM-x32\...\{95120000-00AF-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint Viewer 2007 (French) (HKLM-x32\...\{95120000-00AF-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{3B160861-7250-451E-B5EE-8B92BF30A710}) (Version: 9.7.0621 - Microsoft Corporation)
Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft)
Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft)
Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft)
Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft)
Mises à jour NVIDIA 2.5.15.54 (Version: 2.5.15.54 - NVIDIA Corporation) Hidden
Module de compatibilité pour Microsoft Office System 2007 (HKLM-x32\...\{90120000-0020-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Mozilla Firefox 38.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 38.0.1 (x86 fr)) (Version: 38.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 37.0.2 - Mozilla)
MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.8.3 - Notepad++ Team)
NVIDIA GeForce Experience 2.5.15.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.15.54 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
NVIDIA Pilote 3D Vision 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.92 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation)
NVIDIA Pilote graphique 341.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.92 - NVIDIA Corporation)
Outils de diagnostic du matériel (HKLM\...\PC-Doctor for Windows) (Version: 6.0.5205.31 - PC-Doctor, Inc.)
Package de pilotes Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Panneau de configuration NVIDIA 341.92 (Version: 341.92 - NVIDIA Corporation) Hidden
Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3101 - CyberLink Corp.)
Power2Go (x32 Version: 6.0.3101 - CyberLink Corp.) Hidden
PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3101 - CyberLink Corp.)
PowerDirector (x32 Version: 7.0.3101 - CyberLink Corp.) Hidden
PowerRecover (x32 Version: 5.5.1923 - CyberLink Corp.) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15072.2 - Samsung Electronics Co., Ltd.)
Samsung Kies3 (x32 Version: 3.2.15072.2 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.33.0 - SAMSUNG Electronics Co., Ltd.)
SHIELD Streaming (Version: 4.1.500 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.15.54 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.5.0.9082 - Microsoft Corporation)
Skype™ 7.13 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.13.101 - Skype Technologies S.A.)
SMITE (HKLM-x32\...\Steam App 386360) (Version: - Hi-Rez Studios)
SoftActivity Keylogger Trial Version 8.0 (HKLM-x32\...\{F166CABE-0F32-4BE8-95BD-3E540C21A5DD}_is1) (Version: - Deep Software Inc.)
Source SDK Base 2013 Multiplayer (HKLM-x32\...\Steam App 243750) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH)
TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.16642 - TeamViewer)
TI Connect™ (HKLM-x32\...\{D06BA64C-4447-49B4-B99D-E85BEA9E1035}) (Version: 4.0.0.218 - Texas Instruments Inc.)
Unity Web Player (HKU\S-1-5-21-176361497-183740551-3943458776-1001\...\UnityWebPlayer) (Version: 5.2.0f3 - Unity Technologies ApS)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Version de démonstration de Microsoft Office Home and Student 2007 (HKLM\...\OfficeTrial) (Version: - )
VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.4.7.0 - Elaborate Bytes)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.)
Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.)
WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-176361497-183740551-3943458776-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Bendjama\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileCoAuth.exe (Microsoft Corporation)

==================== Points de restauration =========================

ATTENTION: La Restauration système est désactivée

==================== Hosts contenu: ===============================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {01F6DA98-C4C8-40D2-8EB8-751AC1CADCDE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-06-24] (Hewlett-Packard)
Task: {0A3C7D0A-22E1-45FB-8264-749412E61DC6} - System32\Tasks\Chromium => C:\Users\Bendjama\AppData\Local\Chromium\APPLIC~1\440238~1.0\INSTAL~1\UNINST~1.EXE
Task: {0A8C719A-B0AD-413B-AA94-6D462CEDD1C1} - System32\Tasks\{108CCBC6-4F4B-401A-898F-BE664F47C77A} => C:\Program Files (x86)\PlayDGN\dnlauncher.exe
Task: {0E7A3460-C629-4EFB-8F65-2A498AEE7717} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe
Task: {0F8974A0-2BF3-42E3-87C4-EA45114AD27C} - \easyVPN -> Pas de fichier <==== ATTENTION
Task: {179A6122-B9DB-4C18-88AA-8F0AA625E5D8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {1A0FB9FF-B8E4-47EE-B6BF-8247E44B237D} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe
Task: {1A53F4A4-8DBB-4771-A73B-E7B44F8AE33F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe
Task: {1D4636B5-7341-4D2F-9D41-0285A51ABB83} - System32\Tasks\{441C4E9D-26C9-4D8F-8CCD-F01C99EDA62C} => Chrome.exe hxxp://ui.skype.com/ui/0/6.14.0.104/fr/abandoninstall?source=lightinstaller&page=tsMain
Task: {1E18F2D4-03CB-4D5A-883B-A2928EDF142A} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {25F23DA3-59B9-4B06-B567-7F69441FE5AD} - System32\Tasks\Test TimeTrigger => C:\Users\Bendjama\AppData\Local\Temp\Runner.exe <==== ATTENTION
Task: {27EB3FCB-4EB0-47D0-9C4F-DF8C25A5D252} - System32\Tasks\{E33459DE-71F7-4B66-A6E5-C87BF347F3FF} => Chrome.exe
Task: {2913DC06-2516-4E21-927E-23ACD52D028A} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {2A7EF320-9CA1-47BE-9D55-D7F883E9643C} - System32\Tasks\{D28FB6B1-E35D-49C0-859D-1B4612A8A230} => pcalua.exe -a "C:\Program Files (x86)\Hi-Rez Studios\HiRezGamesDiagAndSupport.exe" -c uninstall=all
Task: {387C95CF-749B-4EDB-BFB7-0D36819BB85F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe
Task: {3B5F21CC-DE04-4EB9-B977-88958E4A8C3D} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe
Task: {3F520A69-9DC4-4702-B5BD-D52567101CFF} - System32\Tasks\{D13256F1-B735-4E30-8D21-926421A38306} => Chrome.exe hxxp://ui.skype.com/ui/0/6.1.0.129.259/fr/abandoninstall?page=tsProgressBar
Task: {3F74C1E1-0F58-4205-A454-A49DB605895C} - \Microsoft\Windows\RVLKL\RVLKL -> Pas de fichier <==== ATTENTION
Task: {46142A06-FE60-43AE-BF17-C6E805CB6671} - System32\Tasks\{BFC200F8-EA12-4EB0-842B-8ECFF18D4ECD} => pcalua.exe -a "C:\Program Files (x86)\Tencent\QQPCMgr\11.0.16794.227\Uninst.exe"
Task: {48B8568C-223F-4540-91AA-169F2ED96A50} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe
Task: {491BE3CC-C8B5-4F8A-B304-5B4363B0ABCE} - System32\Tasks\{DF538245-7FF9-4ABF-A17E-F43DEADCB0F0} => pcalua.exe -a "C:\Program Files (x86)\BlueStacks\HD-RuntimeUninstaller.exe"
Task: {53D9D4D4-2EBB-4937-A3BC-C373391F67C7} - System32\Tasks\{8FF16B62-CF04-47BD-90E0-92432A951B4A} => pcalua.exe -a C:\PROGRA~1\DIFX\F4092D~1\dpinst.exe -c /u C:\Windows\system32\DRVSTORE\pccsmcfdx6_95B9C4C4739674B910F22E6D0FB93B9D8DD7E72A\pccsmcfdx64.inf
Task: {6240906B-BA5E-4474-886E-A5D4499EF118} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe
Task: {6638DE09-9EC1-4352-A99B-DF042E2C082F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-10-28] (Adobe Systems Incorporated)
Task: {67445041-76DF-4F74-A242-5A71017E1606} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe
Task: {6A733122-1CD8-466D-992D-2B0FF5FB7CA0} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {6D4D628F-72AC-4042-B39A-967F22E0DD61} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION
Task: {766508D8-99E1-465F-9F5F-DC9582594CCE} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe
Task: {77E4B9EE-DB5B-42B7-80E4-9DF241B13F35} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Ghost Resign Task => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\HPResignFileLoader.exe
Task: {7C60D032-AA7A-4150-9091-A3C7E8B7CAC9} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe
Task: {7D2F40E6-44CE-451A-B693-B68CC66C41F9} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION
Task: {80B7546E-72EE-425D-94BB-58187F5B431E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe
Task: {80C48B55-37EC-417D-AEA2-E9C8C4577355} - System32\Tasks\{45C09EBC-A765-42ED-A5A5-11D1CD96981F} => Chrome.exe
Task: {86C77996-7873-4050-92D2-B3593D087F74} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-11-11] (Microsoft Corporation)
Task: {8847F310-1F24-4911-8A39-A650D49400E0} - System32\Tasks\DVDAgent => c:\Program Files (x86)\Hewlett-Packard\Media\DVD\DVDAgent.exe [2009-07-23] (CyberLink Corp.)
Task: {8A7C0F31-985E-4567-AF9F-504ACC102F79} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe
Task: {8FBF66B0-907C-4A28-9101-BC34ACA852BB} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe
Task: {9598CFEC-C221-40C7-ADA5-34B9BE542E45} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe
Task: {9E3C32CC-E921-434E-A2C4-48C432EA299F} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {9F658641-8C39-46C0-B7F5-457CFE1E0E68} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION
Task: {A7DBD631-CF53-4622-9821-EF71BF770EA5} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe
Task: {A7DF8AF1-DEFC-499F-80C0-F876F7F245F0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-11-11] (Adobe Systems Incorporated)
Task: {B0AE899F-4EF7-4609-95C0-93FC2257BA91} - System32\Tasks\{9625D29B-CAEA-418D-9911-744CF5639DFA} => Chrome.exe hxxp://ui.skype.com/ui/0/6.1.0.129.259/fr/abandoninstall?page=tsProgressBar
Task: {B0CD95D6-90FE-40CA-9934-183F087EB0CE} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-176361497-183740551-3943458776-1001UA => C:\Users\Bendjama\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-31] (Facebook Inc.)
Task: {B5886BB3-D9C2-4A87-A2EA-8CBFBB518E3C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe
Task: {B7702608-60C0-4FDA-9B73-AB9A8AA9AA16} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.)
Task: {B831750C-EB56-41D8-9C56-C0C3694FF112} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-176361497-183740551-3943458776-1001Core => C:\Users\Bendjama\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-07-31] (Facebook Inc.)
Task: {B9A9442B-54D0-4DB4-A171-AB12EDBF3717} - System32\Tasks\CLMLSvc => c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMLSvc.exe [2009-08-05] (CyberLink)
Task: {C72AE109-00E0-4F1D-9B6C-351966A07465} - System32\Tasks\PCDRScheduledMaintenance => C:\Program Files\PC-Doctor for Windows\pcdr5cuiw32.exe [2009-07-02] (PC-Doctor, Inc.)
Task: {CC8DB6EB-3260-4A0F-ACF4-08AB5D41096E} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe
Task: {CD01A411-F76E-4D40-8C82-BCD510845DB6} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe
Task: {CFDC8EDC-3DEC-4B98-83FC-0169D052BA57} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: {D0528268-3A56-4E72-B04E-18A4882B704F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe
Task: {D5A7EF2D-742B-4D5D-93BE-6DA313FFBFD6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION
Task: {EC4E71F0-3AC0-495C-9078-49AF8FF25C93} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {F1B2B5EB-7467-4598-AEA0-AFCD0F1415E6} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe
Task: {F4385271-0D3C-4F72-915C-443F474F01C9} - System32\Tasks\{A6A84417-19C1-45F7-8341-43104B644AC8} => Chrome.exe hxxp://ui.skype.com/ui/0/6.1.0.129.259/fr/abandoninstall?page=tsProgressBar
Task: {F723C1DC-4E53-49D3-A450-1EB92558AF4F} - System32\Tasks\{74BCE91B-8C4F-42A6-B773-F4FF84E3850E} => pcalua.exe -a C:\Users\Bendjama\AppData\Local\Temp\{EFFB5C16-0E48-4B35-884B-0E1C3020C625}\setup.exe -d "C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107"
Task: {FAF67302-D036-4053-A572-F6257CA47856} - \SW-Booster-S-5944234096 -> Pas de fichier <==== ATTENTION

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\Chromium.job => C:\Users\Bendjama\AppData\Local\Chromium\APPLIC~1\440238~1.0\INSTAL~1\UNINST~1.EXE
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-176361497-183740551-3943458776-1001Core.job => C:\Users\Bendjama\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-176361497-183740551-3943458776-1001UA.job => C:\Users\Bendjama\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\PCDRScheduledMaintenance.job => C:\Program Files\PC-Doctor for Windows\pcdr5cuiw32.exe5-fh scripts\monthly.xml

==================== Modules chargés (Avec liste blanche) ==============

2015-09-10 06:11 - 2015-09-10 06:11 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-10-16 23:05 - 2015-10-13 18:26 - 00125616 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-09-10 06:11 - 2015-09-10 06:11 - 00404480 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-07-12 00:46 - 2015-07-03 15:25 - 01108816 _____ () C:\Windows\syspkgwk\alsvc.exe
2015-10-16 23:52 - 2015-10-16 23:52 - 02494712 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 02494712 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 02028544 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RulesService.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 00619008 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SignalsManager.dll
2015-07-12 00:46 - 2015-07-03 15:25 - 00056656 _____ () C:\Windows\syspkgwk\alsys_hh.exe
2015-10-16 23:52 - 2015-10-16 23:52 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-07-10 04:13 - 2015-07-10 04:13 - 00143360 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\XamlTileRendering.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 01808384 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-10-16 23:52 - 2015-10-16 23:52 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2009-07-08 13:35 - 2009-07-08 13:35 - 00610360 _____ () C:\Program Files\Hewlett-Packard\HP MediaSmart\SmartMenu.exe
2009-05-26 09:36 - 2009-05-26 09:36 - 00656896 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Remote Solution\HP_Remote_Solution.exe
2015-07-12 00:46 - 2014-12-09 13:20 - 00211456 _____ () C:\Windows\syspkgwk\boost_serialization-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:17 - 00016896 _____ () C:\Windows\syspkgwk\boost_system-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:08 - 00041984 _____ () C:\Windows\syspkgwk\boost_date_time-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:10 - 00633856 _____ () C:\Windows\syspkgwk\boost_regex-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:27 - 00353792 _____ () C:\Windows\syspkgwk\boost_program_options-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:25 - 00103424 _____ () C:\Windows\syspkgwk\boost_filesystem-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:18 - 00084992 _____ () C:\Windows\syspkgwk\boost_thread-vc110-mt-1_57.dll
2015-07-12 00:46 - 2014-12-09 13:18 - 00025600 _____ () C:\Windows\syspkgwk\boost_chrono-vc110-mt-1_57.dll
2015-07-12 00:46 - 2015-07-03 15:23 - 00231936 _____ () C:\Windows\syspkgwk\Dbglog.dll
2015-07-12 00:46 - 2015-07-03 15:17 - 00223744 _____ () C:\Windows\syspkgwk\usrintr.dll
2015-07-12 00:46 - 2015-07-03 15:17 - 00272896 _____ () C:\Windows\syspkgwk\netintr_s.dll
2009-08-05 12:45 - 2009-08-05 12:45 - 00931112 _____ () c:\Program Files (x86)\Hewlett-Packard\TouchSmart\Media\Kernel\CLML\CLMediaLibrary.dll
2015-08-26 09:37 - 2015-10-12 04:05 - 00013088 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-11-11 04:54 - 2015-11-07 05:36 - 01532744 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libglesv2.dll
2015-11-11 04:54 - 2015-11-07 05:36 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\libegl.dll
2004-12-25 12:37 - 2004-12-25 12:37 - 00258121 _____ () C:\Program Files (x86)\Athan\vbh.dll
2010-03-08 21:08 - 2010-03-08 21:08 - 00282697 _____ () C:\Program Files (x86)\Athan\vbp.dll
2004-03-20 13:49 - 2004-03-20 13:49 - 00229444 _____ () C:\Program Files (x86)\Athan\vbq.dll
2015-11-11 04:54 - 2015-11-07 05:36 - 16496456 _____ () C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.86\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)


==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)


==================== EXE Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)


==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-176361497-183740551-3943458776-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Actuellement, il n'y a pas de correction automatique pour cette section.)


==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe
FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808
FirewallRules: [UDP Query User{0BC2DB65-11AE-4068-8916-F3070252784A}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Block) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [TCP Query User{4A6A7985-99C9-4825-A9B0-6EAF0D48DAB6}C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe] => (Block) C:\program files (x86)\steam\steamapps\common\smite\binaries\win32\smite.exe
FirewallRules: [{E83B98D0-CDC3-4CA3-99B0-4DD49426DE31}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [{E3BB09B4-C0DE-4531-B52B-D191098BDF1F}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\SMITE\Binaries\Win32\HirezBridge.exe
FirewallRules: [UDP Query User{EE8FD7A3-3E02-4BFA-91C9-74AF74B6A5E7}C:\windows\system32\dllhost.exe] => (Allow) C:\windows\system32\dllhost.exe
FirewallRules: [TCP Query User{9B025BCE-4F34-4542-9427-64060304321F}C:\windows\system32\dllhost.exe] => (Allow) C:\windows\system32\dllhost.exe
FirewallRules: [{8EDC2FCC-BC32-41FC-BEC8-5455326CD976}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{83F0DFE0-6704-409F-AAF3-C4FD80BB8465}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{8A0B0FF3-4DD1-4697-821A-DDEDFDB577C4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{2129A725-AD5B-41C2-A7E5-0093E9C4529F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7930588B-50A2-40D9-8A0D-B7257FA2539F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{500CDBDA-1A22-41B4-B35C-C15173F91086}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{CAEDD38B-5FA5-4A28-B1F8-48BE159DB5F8}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{DAE77F2F-6D21-43D9-BBFC-1D9A26DDB8C5}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [{C2EBBEEA-BBB1-4D8F-B0C4-0E94320BB3E9}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\GarrysMod\hl2.exe
FirewallRules: [UDP Query User{75ED7DAD-A60E-4EC6-96CF-A480B1E59C81}C:\program files (x86)\steam\steamapps\common\garrysmod\garrys mod\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\garrysmod\garrys mod\hl2.exe
FirewallRules: [TCP Query User{A021B9BC-EE4C-4F2B-82CD-8AF74F2CB42B}C:\program files (x86)\steam\steamapps\common\garrysmod\garrys mod\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\garrysmod\garrys mod\hl2.exe
FirewallRules: [UDP Query User{B83D03D3-15E1-44DF-A6C6-04C02834E096}C:\users\bendjama\desktop\whereismyhammer\binaries\win64\whereismyhammer.exe] => (Allow) C:\users\bendjama\desktop\whereismyhammer\binaries\win64\whereismyhammer.exe
FirewallRules: [TCP Query User{F96FD9B8-7AB9-483C-84DE-64008E88D595}C:\users\bendjama\desktop\whereismyhammer\binaries\win64\whereismyhammer.exe] => (Allow) C:\users\bendjama\desktop\whereismyhammer\binaries\win64\whereismyhammer.exe
FirewallRules: [UDP Query User{99FE364E-37DB-4749-9584-EC210561D939}C:\program files (x86)\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{53221BEF-B550-4F71-B4C0-56EA0AAF6896}C:\program files (x86)\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base36144\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{2D150784-848C-4F50-9DD1-9C570D0A42D3}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [TCP Query User{98C05145-C52E-4A84-884C-0C45DBAF7105}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe] => (Allow) C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe
FirewallRules: [UDP Query User{96FC93CB-367B-4608-89F7-EB25E17F9953}C:\users\bendjama\downloads\ffinstonline.exe] => (Allow) C:\users\bendjama\downloads\ffinstonline.exe
FirewallRules: [TCP Query User{AA1A3485-5DC9-4A39-8416-F6DDBA7E8220}C:\users\bendjama\downloads\ffinstonline.exe] => (Allow) C:\users\bendjama\downloads\ffinstonline.exe
FirewallRules: [{70226F20-92FD-407F-86F4-1F5A266F6855}] => (Allow) C:\Users\Bendjama\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [UDP Query User{4169C7FE-42D5-463F-9529-6E6C39A79436}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe] => (Block) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe
FirewallRules: [TCP Query User{FCE7114C-CD93-4EDD-B00D-1E87C46722A4}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe] => (Block) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartmusic.exe
FirewallRules: [{7FB80628-CC41-4294-9E22-A272366DD3F2}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{AC483596-2BF4-4032-B1B7-6D277CE366AE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe
FirewallRules: [{E8FDA033-43C8-4654-AADB-4343DE538745}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{3070D051-DF8F-44FA-B828-B074B87AA9D5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{BC977BE6-1295-4914-ADF5-0A87D20FE617}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [TCP Query User{C98044F6-5288-44D0-B53E-D89077B71018}C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe] => (Allow) C:\program files (x86)\starcraft ii\versions\base32283\sc2.exe
FirewallRules: [UDP Query User{6153B3F9-75C9-405B-9862-33D53B9F1B61}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe
FirewallRules: [TCP Query User{DFDF4381-41B6-424C-A054-452800B1A27F}C:\program files (x86)\diablo iii\diablo iii.exe] => (Block) C:\program files (x86)\diablo iii\diablo iii.exe
FirewallRules: [{09F79C41-9551-41C0-BA1D-A604860EC6C1}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{C0981B53-4C6E-479F-8776-8E8985CE14C8}] => (Allow) C:\Program Files (x86)\StarCraft II\StarCraft II.exe
FirewallRules: [{5D891216-4517-445D-B2A0-4B9493A05B08}] => (Allow) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe
FirewallRules: [{368E7480-6686-43F8-AA35-65E9BE846F53}] => (Allow) C:\Program Files (x86)\EasyVpn\app\EasyVpn.exe
FirewallRules: [{22ED436D-CD3A-40FD-BBE3-723EC747AB9B}] => (Allow) C:\Program Files (x86)\EasyVpn\app\EasyVpn.exe
FirewallRules: [UDP Query User{35104994-88CF-4F5A-B587-083732F0FA7C}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe
FirewallRules: [TCP Query User{CBA9DA05-FEA4-490F-A9A1-77791E3405A4}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe
FirewallRules: [{A3EDB4F7-3D06-4ADC-B7B3-D5C1C57CA41B}] => (Allow) C:\Program Files (x86)\WarThunder\bpreport.exe
FirewallRules: [{05FE59F7-A60F-42E0-9F8D-FD500A7D3B23}] => (Allow) C:\Program Files (x86)\WarThunder\bpreport.exe
FirewallRules: [UDP Query User{298842C4-B4BB-458F-9732-91CCAD37CBAD}C:\games\counter-strike\hl.exe] => (Allow) C:\games\counter-strike\hl.exe
FirewallRules: [TCP Query User{D07D347B-0741-4CDF-80BF-DAE2B0FDE531}C:\games\counter-strike\hl.exe] => (Allow) C:\games\counter-strike\hl.exe
FirewallRules: [UDP Query User{16D61AC4-5BEC-43AF-8AB0-EF8DF7CAD15D}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe] => (Allow) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe
FirewallRules: [TCP Query User{A0C6F468-F838-4851-AB06-A8B0E17FF6C1}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe] => (Allow) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartvideo.exe
FirewallRules: [{248B90A0-B4DF-4967-A911-D68282013FA4}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Action\bin\hlmv.exe
FirewallRules: [{F6E01BB8-5320-468B-BD0F-BEAD9013167A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Action\bin\hlmv.exe
FirewallRules: [{DD5D3DF6-61E5-40C6-934F-4AEDAEA4B892}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Action\bin\hammer.exe
FirewallRules: [{D060B6B2-3547-4F22-9E92-2DC75863CD4D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Double Action\bin\hammer.exe
FirewallRules: [{30D3F450-78C9-4F95-999D-8A71992E2A80}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe
FirewallRules: [{C44C24E0-6CA4-486A-A7C8-03C2B1B000AB}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe
FirewallRules: [{B9035854-F7D1-4833-BD44-2BB8BB25434C}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{7803CBA8-52DF-462B-927F-C0F484FCC561}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [UDP Query User{7806B561-2764-4244-9F55-1956A68136CA}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe
FirewallRules: [TCP Query User{7055EFE4-43CF-444F-B252-6CFCAA7A26A6}C:\program files\strogino cs portal\garrys mod\hl2.exe] => (Allow) C:\program files\strogino cs portal\garrys mod\hl2.exe
FirewallRules: [{F03B617D-F940-43C7-A85B-B935836877EE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [{97F1184C-F304-4FE4-B512-1FE6020539BE}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe
FirewallRules: [UDP Query User{1CE66639-FA9F-4CF9-ABF5-26500D6735E7}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [TCP Query User{BF7210DD-8840-44F8-BC28-4493ADF67ECA}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcherux.exe
FirewallRules: [UDP Query User{E4F54BBE-4358-48B7-955E-B491652511FD}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [TCP Query User{C640E13C-E20A-4056-96AD-C6B3A6BA8A82}C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe] => (Allow) C:\riot games\league of legends\rads\projects\lol_patcher\releases\0.0.0.14\deploy\lolpatcher.exe
FirewallRules: [{35B0B06F-EF8C-401E-A8B7-D06CFC54EC64}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [{E836421F-64B1-4CFB-8DE9-29635FE6FDB3}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3526\Agent.exe
FirewallRules: [UDP Query User{74583CD7-B41F-40CF-8681-4CBE2BD23A3B}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe] => (Block) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe
FirewallRules: [TCP Query User{9A3A26F1-063D-4C0C-B5A2-6BE2A142010F}C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe] => (Block) C:\program files (x86)\hewlett-packard\touchsmart\media\hptouchsmartphoto.exe
FirewallRules: [{E41AB20C-170C-42F7-ADD8-3C820233EC52}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{5A322D4C-1BA6-47AC-91FA-F0AFB548781E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3507\Agent.exe
FirewallRules: [{AEF4ED0C-F162-4DE1-BCF3-A856186A2CB5}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [{AD66C2B4-9917-4D50-B8ED-EC44D37CA7F4}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3478\Agent.exe
FirewallRules: [UDP Query User{B7D0C57A-BBED-421D-BD04-60FF5B976EFF}C:\programdata\battle.net\agent\agent.3454\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.3454\agent.exe
FirewallRules: [TCP Query User{82E5A934-AC8B-4947-9508-035A84E9E361}C:\programdata\battle.net\agent\agent.3454\agent.exe] => (Allow) C:\programdata\battle.net\agent\agent.3454\agent.exe
FirewallRules: [{F038412A-E1CC-4F2F-AC87-2C3ED00E5486}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{00758A06-A6FE-402B-AB4F-BD900C5D6C3B}] => (Allow) C:\Program Files (x86)\Hearthstone\Hearthstone.exe
FirewallRules: [{79393707-7D19-4622-9894-78A289FF9764}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{F3DDC345-652F-4E6F-8C3B-BA7E9887B0B7}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3427\Agent.exe
FirewallRules: [{958BC831-D88F-4D45-A8FF-AAA9A9BBB1B1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{9333C9AE-8634-4EA5-9566-38BD1052C731}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3372\Agent.exe
FirewallRules: [{290E74B0-C33C-42C4-9CDF-AF90DFF1C2CE}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{F43B3D02-EE80-417A-8C45-66892B94BC02}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{7562E8A6-F2AA-4FCB-B321-C308AB499A93}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{E9AFC9CD-1E9F-48AE-AFF4-E3596C9CEFB9}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3346\Agent.exe
FirewallRules: [{37EFB48B-4E2B-4DFB-AAF4-90D126CF8149}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{AF1E826C-B953-4862-9F7E-4C0B1EC8951F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2045\Agent.exe
FirewallRules: [{C44AA7F3-3AD9-43E6-9A8E-FADDB142D1DA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7FF373BB-DF35-4E9F-80C3-6BD29C557B14}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{C2614E15-274B-4FA4-A5B0-729DFBC78CB7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{87943F59-4F40-49A4-BBD4-26741A1C54DB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{D0FA1FB8-1D0D-4C04-8C4E-D0453525E542}C:\counter-strike 1.6\hl.exe] => (Allow) C:\counter-strike 1.6\hl.exe
FirewallRules: [TCP Query User{4E27388F-38BA-4260-B689-A73EEE7C8C1C}C:\counter-strike 1.6\hl.exe] => (Allow) C:\counter-strike 1.6\hl.exe
FirewallRules: [{E6967ABC-B28E-4EB0-932D-2517BEFBE5B1}] => (Allow) C:\Users\Bendjama\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
FirewallRules: [{D2946670-7209-4D35-B9D1-76EDFD91CC7C}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe
FirewallRules: [{042B1C35-1C7A-4835-A419-76A856F0F31C}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{A44796F1-FBCB-413B-830E-198EDC5A1EC3}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TBConsoleUI.exe
FirewallRules: [{8BCC1CD2-3A55-473C-B19E-1157864E39D5}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [{584D459E-1097-4E5D-8C9F-FF02CF71B731}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TbService.exe
FirewallRules: [UDP Query User{8CD486A6-1391-4172-BB2A-3B4FDEC32E3E}C:\users\bendjama\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\bendjama\appdata\local\akamai\netsession_win.exe
FirewallRules: [TCP Query User{04620879-AD24-4316-9D85-891B8006CE14}C:\users\bendjama\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\bendjama\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{371B3265-CD31-4E7E-8B0C-264C537BDB08}C:\crackandplay\goatsimulator\binaries\win32\goatgame-win32-shipping.exe] => (Allow) C:\crackandplay\goatsimulator\binaries\win32\goatgame-win32-shipping.exe
FirewallRules: [TCP Query User{51AF0667-230D-4B0C-9BA9-267F3631863D}C:\crackandplay\goatsimulator\binaries\win32\goatgame-win32-shipping.exe] => (Allow) C:\crackandplay\goatsimulator\binaries\win32\goatgame-win32-shipping.exe
FirewallRules: [UDP Query User{0B098FE8-D2C0-491F-923E-604777C381ED}C:\program files (x86)\mumble\murmur.exe] => (Allow) C:\program files (x86)\mumble\murmur.exe
FirewallRules: [TCP Query User{ACFD6384-3D11-4101-8B23-7E4EE247A161}C:\program files (x86)\mumble\murmur.exe] => (Allow) C:\program files (x86)\mumble\murmur.exe
FirewallRules: [{7A14FBF0-0FC0-4A6D-A95C-A0FD3A565E90}] => (Allow) C:\Users\Bendjama\AppData\Local\Temp\utt82A7.tmp.exe
FirewallRules: [{3511E386-724D-4FC4-A08C-67355638BEBD}] => (Allow) C:\Users\Bendjama\AppData\Local\Temp\utt82A7.tmp.exe
FirewallRules: [{647495B5-B804-4EBF-9993-1E5F2B7A7C7B}] => (Allow) C:\Users\Bendjama\AppData\Roaming\Allmyapps\Allmyapps.exe
FirewallRules: [UDP Query User{590BC0C3-2B63-466A-8DEA-D6C56598365B}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{232AA215-8916-4090-99F6-92B1A4F47191}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [{086B8101-2941-4C40-915A-8639D1C7F944}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{74897F8B-CE50-4293-9886-80152FED0FED}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{97157D0B-BE89-40E3-B09C-5481B2BA8DDE}] => (Allow) C:\Users\Bendjama\AppData\Roaming\Allmyapps\Allmyapps.exe
FirewallRules: [{58CF9A6C-CCF1-42CE-9CA5-94181716D40F}] => (Allow) C:\Program Files (x86)\eFusion\Dragon Nest Europe\DragonNest.exe
FirewallRules: [{62979B2A-F3FC-409F-BAC4-8FB6090EE2D7}] => (Allow) C:\Program Files (x86)\eFusion\Dragon Nest Europe\DragonNest.exe
FirewallRules: [UDP Query User{5444429E-3DF5-4E95-BA93-B17675B78318}C:\users\bendjama\appdata\roaming\cacaoweb\cacaoweb.exe] => (Block) C:\users\bendjama\appdata\roaming\cacaoweb\cacaoweb.exe
FirewallRules: [TCP Query User{38BFB857-A9E5-42C7-A5B7-DAD833042E7C}C:\users\bendjama\appdata\roaming\cacaoweb\cacaoweb.exe] => (Block) C:\users\bendjama\appdata\roaming\cacaoweb\cacaoweb.exe
FirewallRules: [UDP Query User{21158761-52E7-43C5-881D-27A20A7D5125}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{221FFABB-465C-4F0B-9773-18C85C4AC91B}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe
FirewallRules: [{15F2D771-169B-4F3E-BA84-14983573DE43}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [UDP Query User{5EB51725-0E1A-4372-9398-ED9D19BAC0A1}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{A3DD202C-8FF1-4D07-9342-EBF42C93AE25}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{F9DF974E-0801-482E-945A-466BDC9B5440}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [TCP Query User{2EF30315-7402-4620-BEFB-BE4D697216D1}C:\program files (x86)\guild wars 2\gw2.exe] => (Allow) C:\program files (x86)\guild wars 2\gw2.exe
FirewallRules: [UDP Query User{1C7A350B-14E7-46F6-8F7C-0B2F25BEF720}C:\users\bendjama\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\bendjama\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{F8107FD5-829D-4445-A8AE-141D015F4732}C:\users\bendjama\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\bendjama\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{14470BAA-EBAB-4E05-92DA-0FE02B95CB84}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{41261F48-A3D3-4ACE-B10D-9FF1E6B9B56C}] => (Allow) C:\Users\Bendjama\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe
FirewallRules: [{00135EE7-3C4B-4723-B297-EBD97D4AD9E2}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer.exe
FirewallRules: [{FB25E2E3-2C2B-400F-B288-EA676A172E9C}] => (Allow) C:\Users\Bendjama\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe
FirewallRules: [{76F2CA90-3121-4F15-BDBA-793836F723E7}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe
FirewallRules: [{208A72D6-8D04-484D-AFDD-73A59D12456D}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe
FirewallRules: [{68D2FB2C-0AF4-4269-8BC6-C03A3983C16C}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe
FirewallRules: [{803E142C-C01B-4791-8A8D-466A562F838A}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe
FirewallRules: [{947A77F2-F9FA-4B36-8C94-F59F1F8FD2D0}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{C1DD2D39-A303-49BA-8050-9436300D570C}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{5A4D9379-639E-46D0-AE66-6ED286E77022}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer.exe
FirewallRules: [{B75CBB83-098A-4F20-B9C6-F7E01911E91C}] => (Allow) C:\Users\Bendjama\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe
FirewallRules: [{02CDB4C7-2DDF-4F5E-BBF3-D2922530E354}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe
FirewallRules: [{D67EB884-946A-4D51-9932-38CD557860B6}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe
FirewallRules: [{853DD773-D0CD-491F-AF4E-52C14D581287}] => (Allow) C:\Users\Bendjama\AppData\Local\BoBrowser\Application\bobrowser.exe
FirewallRules: [{CD298020-2290-432F-9CFB-708A3D2F08F8}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{3EF62FA3-C212-495E-BD2F-2F0A7DC6EAAB}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe
FirewallRules: [{7E4410D8-14DB-4756-BD8F-96BD345E1E96}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe
FirewallRules: [{A8F71F67-791A-474D-83AB-9D1416DA6698}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe

==================== Éléments en erreur du Gestionnaire de périphériques =============


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (11/12/2015 08:29:29 PM) (Source: Adobe Reader) (EventID: 16) (User: )
Description:

Error: (11/12/2015 08:29:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme AcroRd32.exe version 15.7.20033.2203 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : 21f0

Heure de début : 01d11d803d134e9a

Heure de fin : 4

Chemin d'accès de l'application : C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe

ID de rapport : 8b7620f6-8973-11e5-8d73-90e6ba1c924e

Nom complet du package défaillant :

ID de l'application relative au package défaillant :

Error: (11/12/2015 08:19:08 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme WWAHost.exe version 10.0.10240.16425 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : f00

Heure de début : 01d11d7ef0a95311

Heure de fin : 4294967295

Chemin d'accès de l'application : C:\Windows\System32\WWAHost.exe

ID de rapport : 3d993da1-8972-11e5-8d73-90e6ba1c924e

Nom complet du package défaillant : Microsoft.ZuneMusic_3.6.15131.0_x64__8wekyb3d8bbwe

ID de l'application relative au package défaillant : Microsoft.ZuneMusic

Error: (11/12/2015 08:19:06 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Bendjama-PC)
Description: Le package Microsoft.ZuneMusic_3.6.15131.0_x64__8wekyb3d8bbwe+Microsoft.ZuneMusic a été interrompu, car sa suspension a été trop longue.

Error: (11/11/2015 11:13:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante NetworkUXBroker.exe, version : 10.0.10240.16384, horodatage : 0x559f3aa6
Nom du module défaillant : EthernetMediaManager.dll, version : 10.0.10240.16384, horodatage : 0x559f3dd5
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00000000000047ed
ID du processus défaillant : 0x31f8
Heure de début de l’application défaillante : 0xNetworkUXBroker.exe0
Chemin d’accès de l’application défaillante : NetworkUXBroker.exe1
Chemin d’accès du module défaillant: NetworkUXBroker.exe2
ID de rapport : NetworkUXBroker.exe3
Nom complet du package défaillant : NetworkUXBroker.exe4
ID de l’application relative au package défaillant : NetworkUXBroker.exe5

Error: (11/11/2015 10:10:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante AdwCleaner-5.019.exe, version : 5.0.1.9, horodatage : 0x563f5e9c
Nom du module défaillant : AdwCleaner-5.019.exe, version : 5.0.1.9, horodatage : 0x563f5e9c
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0001f3d9
ID du processus défaillant : 0xdac
Heure de début de l’application défaillante : 0xAdwCleaner-5.019.exe0
Chemin d’accès de l’application défaillante : AdwCleaner-5.019.exe1
Chemin d’accès du module défaillant: AdwCleaner-5.019.exe2
ID de rapport : AdwCleaner-5.019.exe3
Nom complet du package défaillant : AdwCleaner-5.019.exe4
ID de l’application relative au package défaillant : AdwCleaner-5.019.exe5

Error: (11/11/2015 10:10:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme adwcleaner_5.019.exe version 5.0.1.9 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : 30ac

Heure de début : 01d11cc49be35dee

Heure de fin : 21

Chemin d'accès de l'application : C:\Users\Bendjama\Downloads\adwcleaner_5.019.exe

ID de rapport : 68ca0bd6-88b8-11e5-8d72-90e6ba1c924e

Nom complet du package défaillant :

ID de l'application relative au package défaillant :

Error: (11/11/2015 10:04:29 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme adwcleaner_5.019.exe version 5.0.1.9 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : b90

Heure de début : 01d11cc339b345ee

Heure de fin : 14

Chemin d'accès de l'application : C:\Users\Bendjama\Downloads\adwcleaner_5.019.exe

ID de rapport : c93b8d02-88b7-11e5-8d72-90e6ba1c924e

Nom complet du package défaillant :

ID de l'application relative au package défaillant :

Error: (11/11/2015 10:04:15 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme QQPCRealTimeSpeedup.exe version 10.7.16065.215 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : 3410

Heure de début : 01d11cc21e7f0c23

Heure de fin : 67

Chemin d'accès de l'application : C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16065.215\QQPCRealTimeSpeedup.exe

ID de rapport : bcc2fbbc-88b7-11e5-8d72-90e6ba1c924e

Nom complet du package défaillant :

ID de l'application relative au package défaillant :

Error: (11/11/2015 09:56:07 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: Bendjama-PC)
Description: Le package Microsoft.WindowsStore_2015.21.12.0_x64__8wekyb3d8bbwe+App a été interrompu, car sa suspension a été trop longue.


Erreurs système:
=============
Error: (11/12/2015 08:58:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service updater_zkurwblqyk n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (11/12/2015 08:58:34 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Le service Adaptateur d'écouteur Net.Tcp dépend du service Service de partage de ports Net.Tcp qui n’a pas pu démarrer en raison de l’erreur :
%%1058

Error: (11/12/2015 08:56:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Accès aux données utilisateur_Session1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (11/12/2015 08:56:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Stockage des données utilisateur_Session1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (11/12/2015 08:56:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Données de contacts_Session1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (11/12/2015 08:56:33 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Hôte de synchronisation_Session1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (11/12/2015 08:55:41 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Le Gestionnaire de services de contrôle a essayé d’entreprendre une action corrective (Redémarrer le service) après la fin inattendue du service Windows Search, mais cette action a échoué en raison de l’erreur suivante :
%%1056

Error: (11/12/2015 08:55:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service NVIDIA Stereoscopic 3D Driver Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (11/12/2015 08:55:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service NVIDIA Display Driver Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (11/12/2015 08:55:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Windows Search s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service.


CodeIntegrity:
===================================
Date: 2015-11-12 06:42:22.957
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:22.858
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:22.781
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:22.634
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:22.592
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:22.558
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:20.958
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-12 06:42:20.352
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-11 23:49:22.885
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements.

Date: 2015-11-11 23:49:22.797
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements.


==================== Infos Mémoire ===========================

Processeur: Pentium(R) Dual-Core CPU E5300 @ 2.60GHz
Pourcentage de mémoire utilisée: 52%
Mémoire physique - RAM - totale: 4095.24 MB
Mémoire physique - RAM - disponible: 1937.43 MB
Mémoire virtuelle totale: 8191.24 MB
Mémoire virtuelle disponible: 5690.79 MB

==================== Lecteurs ================================

Drive c: (HP) (Fixed) (Total:912.2 GB) (Free:653.71 GB) NTFS
Drive d: (FACTORY_IMAGE) (Fixed) (Total:18.78 GB) (Free:0 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]

==================== MBR & Table des partitions ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 1549F232)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=912.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
Partition 4: (Not Active) - (Size=18.8 GB) - (Type=07 NTFS)

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité