cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Exécuté par Luydmila (2016-03-09 16:10:52)
Exécuté depuis C:\Users\Luydmila\Desktop
Windows 10 Home Version 1511 (X64) (2015-11-18 18:25:13)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-908847729-3257692200-3215671018-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-908847729-3257692200-3215671018-503 - Limited - Disabled)
Invité (S-1-5-21-908847729-3257692200-3215671018-501 - Limited - Disabled)
Luydmila (S-1-5-21-908847729-3257692200-3215671018-1001 - Administrator - Enabled) => C:\Users\Luydmila

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: ESET NOD32 Antivirus 9.0.375.1 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET NOD32 Antivirus 9.0.375.1 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

Antidote 9 - English module (HKLM-x32\...\{BFA17B4C-70D3-480F-8476-76197F614AB8}) (Version: 9.03.3747 - Druide informatique inc.)
Antidote 9 - Module français (HKLM-x32\...\{BFA17B4C-70D3-480F-8476-76197F614AB7}) (Version: 9.03.3747 - Druide informatique inc.)
Antidote 9 (HKLM-x32\...\{BFA17B4C-70D3-480F-8476-76197F614AB6}) (Version: 9.03.3757 - Druide informatique inc.)
Assetto Corsa (HKLM-x32\...\{4277DEAA-5A4E-4409-A9B0-4A27609940B9}_is1) (Version: 1.0.2.0 - Kunos Simulazioni)
Assistant de téléchargement (HKLM-x32\...\{92154A3C-9BB7-49D7-A571-4EB6373FA5AD}) (Version: 6.65.13 - Druide informatique inc.)
Assistant de téléchargement (HKLM-x32\...\{93154A3C-9BB7-49D7-A571-4EB6373FA600}) (Version: 6.1.0 - Druide informatique inc.)
AudioFXSetup (Version: 1.2.201 - Nahimic) Hidden
Battery Calibration (HKLM-x32\...\InstallShield_{634AC01E-49DB-4AD2-B87C-90D4DCC6AFA1}) (Version: 1.0.1505.2901 - Micro-Star International Co., Ltd.)
Battery Calibration (x32 Version: 1.0.1505.2901 - Micro-Star International Co., Ltd.) Hidden
Boot Configure (HKLM-x32\...\{A8174BDF-1401-4314-A350-B10B7277DCD7}) (Version: 20.015.07202 - Micro-Star International Co., Ltd.)
BurnRecovery (HKLM-x32\...\InstallShield_{92A6B009-1343-4C44-AFB1-8849137CA3F0}) (Version: 5.0.1507.1901 - Application)
BurnRecovery (x32 Version: 5.0.1507.1901 - Application) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.15 - Piriform)
Cheat Engine 6.4 (HKLM-x32\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine)
CheckDevicesConfigurator (Version: 1.2.201 - Nahimic) Hidden
Cordial 20 Référence, correcteur et analyseur de la langue française (HKLM-x32\...\Cordial14) (Version: - )
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5509.52 - CyberLink Corp.)
DEAD OR ALIVE 5 Last Round version [1.04] (HKLM-x32\...\DEAD OR ALIVE 5 Last Round_is1) (Version: [1.04] - Alucard73)
Dragon Gaming Center (HKLM-x32\...\InstallShield_{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}) (Version: 1.0.1501.2801 - Micro-Star International Co., Ltd.)
Dragon Gaming Center (x32 Version: 1.0.1501.2801 - Micro-Star International Co., Ltd.) Hidden
Driver Booster 3.2 (HKLM-x32\...\Driver Booster_is1) (Version: 3.2 - IObit)
Dying Light (HKLM-x32\...\{F7B2E17E-4A27-4CFB-A7AC-210A6DD083BC}_is1) (Version: 1.2.0.0 - Warner Bros Games)
ESET NOD32 Antivirus (HKLM\...\{7E8993FA-21CA-4179-8B83-FCBF4392A279}) (Version: 9.0.375.1 - ESET, spol. s r.o.)
Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.05 - Ubisoft)
Far Cry 4 Complete Edition version 1.0.0 (HKLM-x32\...\Far Cry 4 Complete Edition_is1) (Version: 1.0.0 - Ubisoft)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 7.2.5.930 - Foxit Software Inc.)
Future Pinball (HKLM-x32\...\Future Pinball_is1) (Version: Version 1.9.1.20101231 - Chris Leathley)
Glary Utilities 5.44 (HKLM-x32\...\Glary Utilities 5) (Version: 5.44.0.64 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.116 - Google Inc.)
Google Update Helper (x32 Version: 1.3.21.115 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games)
Grand Theft Auto IV (x32 Version: 1.0.0013.131 - Rockstar Games Inc.) Hidden
Intel(R) Chipset Device Software (x32 Version: 10.1.1.8 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1153 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4331 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{240E5DBF-63FA-4331-BC9D-1705B3C33E38}) (Version: 17.1.1531.1764 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Java 8 Update 74 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218074F0}) (Version: 8.0.740.2 - Oracle Corporation)
KB9X Radio Switch Driver (HKLM\...\EC950B206B0E7722C96A318DF396BABFBB057BC0) (Version: 1.1.2.0 - ENE TECHNOLOGY INC.)
Killer Bandwidth Control Filter Driver (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer E220x Drivers (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer Network Manager (Version: 1.1.54.1095 - Rivet Networks) Hidden
Killer Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.54.1095 - Rivet Networks)
LauncherSetup (Version: 1.2.201 - Nahimic) Hidden
Le Petit Robert 2014 (HKLM-x32\...\PR1CD2014) (Version: - Le Robert)
Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{a2733506-e526-4bae-bc12-b2d37e2016ec}) (Version: 18.30.0 - Intel Corporation)
Malwarebytes Anti-Ransomware version 0.9.14.361 (HKLM\...\{6CA75021-FBB0-41A5-B95C-FC1C9E0421F0}_is1) (Version: 0.9.14.361 - Malwarebytes)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{59E4543A-D49D-4489-B445-473D763C79AF}) (Version: 2.0.672.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{45CD67FD-3218-4207-A0A2-BC41245189E3}) (Version: 1.20.146.0 - Microsoft)
Minecraft: Story Mode - A Telltale Games Series (HKLM\...\bWluZWNyYWZ0c3Rvcnltb2RlYXRlbGx0YWxlZ2FtZXNzZXJpZXM_is1) (Version: 1 - )
Minecraft: Story Mode - A Telltale Games Series (HKLM\...\TWluZWNyYWZ0U3RvcnlNb2RlQVRlbGx0YWxlR2FtZXNTZXJpZXM=_is1) (Version: 1 - )
Minecraft1.8 (HKLM-x32\...\Minecraft1.8) (Version: - )
Mises à jour NVIDIA 2.10.2.40 (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Monopoly Deluxe (HKLM-x32\...\Monopoly Deluxe) (Version: 1.0.0 - Zylom Games)
Mortal Kombat X (HKLM-x32\...\{F2A03CF3-F5BD-4702-B150-4C210C3A3378}_is1) (Version: 1.2015.07.09 - Warner Bros)
Mousotron 10.0 (HKLM-x32\...\Mousotron_is1) (Version: 10.0 - Blacksun Software)
Mozilla Firefox 43.0 (x64 en-US) (HKLM\...\Mozilla Firefox 43.0 (x64 en-US)) (Version: 43.0 - Mozilla)
Mozilla Firefox 44.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 fr)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
MSI Remind Manager (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.0.1506.0801 - Micro-Star International Co., Ltd.)
MSI Remind Manager (x32 Version: 1.0.1506.0801 - Micro-Star International Co., Ltd.) Hidden
MSI Social Media Collection (HKLM-x32\...\{7ADEC426-BE95-48EF-84D4-086BD0F4D331}) (Version: 1.14.2251 - Micro-Star International Co., Ltd.)
MXGP (HKLM-x32\...\TVhHUA==_is1) (Version: 1 - )
Nahimic for MSI (HKLM-x32\...\{1fd8e4b4-0aa8-4ade-afb4-b4ea2cbd6179}) (Version: 1.2.2 - Nahimic)
NahimicSettingsConfigurator (Version: 1.2.201 - Nahimic) Hidden
NVIDIA GeForce Experience 2.10.2.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.10.2.40 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
NVIDIA Pilote graphique 364.47 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.47 - NVIDIA Corporation)
Panneau de configuration NVIDIA 364.47 (Version: 364.47 - NVIDIA Corporation) Hidden
Pinball Arcade version [1.39.7] (HKLM-x32\...\Pinball Arcade_is1) (Version: [1.39.7] - Alucard73)
Pinball FX2 (HKLM-x32\...\{B3966049-83E2-4E4A-96AB-00F8F8F21AB2}_is1) (Version: 1.0.13.0 - Microsoft)
PowerISO (HKLM-x32\...\PowerISO) (Version: 6.4 - Power Software Ltd)
ProductDaemonSetup (Version: 1.2.201 - Nahimic) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7714 - Realtek Semiconductor Corp.)
Robert Correcteur 1.1.2 x64 (HKLM\...\{7BF123B6-D9A0-4467-9061-6D07C6D38801}) (Version: 1.12.800 - Diagonal)
Rockstar Games Social Club (HKLM-x32\...\{08B3869E-D282-424C-9AFC-870E04A4BA14}) (Version: 1.00.0000 - Rockstar Games)
RomStation (HKLM-x32\...\{223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1) (Version: - RomStation)
Sandboxie 5.10 (64-bit) (HKLM\...\Sandboxie) (Version: 5.10 - Sandboxie Holdings, LLC)
SCM (HKLM\...\{EC3EEFE5-DFBE-4535-8A2A-CAEC82A9BB83}) (Version: 13.015.04213 - Application)
SetupMonOrthographe (x32 Version: 1.0.0 - Synapse Développement) Hidden
SHIELD Streaming (Version: 5.1.0270 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.10.2.40 - NVIDIA Corporation) Hidden
Sine Mora (HKLM-x32\...\Sine Mora_is1) (Version: - )
Skype™ 7.14 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.14.106 - Skype Technologies S.A.)
SteelSeries Engine 3.6.5.1 (HKLM\...\SteelSeries Engine 3) (Version: 3.6.5.1 - SteelSeries ApS)
SUPER CHARGER (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.024 - MSI)
Superb Game Boost 1.0 (HKLM-x32\...\SuperbGameBoost_is1) (Version: 1.0 - )
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.22.0 - Synaptics Incorporated)
The House of The Dead 2 (HKLM-x32\...\{5A9F33AE-2B11-42F8-A081-D188EC8B472B}) (Version: - )
THE HOUSE OF THE DEAD 3 (HKLM-x32\...\{B418F434-15CD-4B68-A022-CFE0DB92A6F9}) (Version: 1.00.000 - SEGA)
Torrent2Exe (HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\Torrent2Exe) (Version: 2.0.120 - www.torrent2exe.com)
UIInstallUpgrade (Version: 1.2.201 - Nahimic) Hidden
Ultra Street Fighter IV (HKLM-x32\...\VWx0cmFTdHJlZXRGaWdodGVySVY=_is1) (Version: 1 - )
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
Valiant Hearts: The Great War (HKLM-x32\...\VmFsaWFudEhlYXJ0c1RoZUdyZWF0V2Fy_is1) (Version: 1 - )
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.)
WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
Wise Care 365 3.98 (HKLM-x32\...\Wise Care 365_is1) (Version: 3.98 - WiseCleaner.com, Inc.)
XSplit Gamecaster (HKLM-x32\...\{D7BEC6E9-5E86-44FF-AA21-23DA71ED676B}) (Version: 2.4.1506.1243 - SplitmediaLabs)
XWidget 1.932 (HKLM-x32\...\{A6E16998-A241-438F-A916-5CD59B5506C0}_is1) (Version: - XWidget Software)
Zombi version 1.0.0 (HKLM-x32\...\Zombi_is1) (Version: 1.0.0 - Ubisoft Studios)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-908847729-3257692200-3215671018-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Luydmila\AppData\Local\Microsoft\OneDrive\17.3.6201.1019_1\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-908847729-3257692200-3215671018-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-908847729-3257692200-3215671018-1001_Classes\CLSID\{A12A9CAB-1C75-4AA3-A980-74F25AB94C8E}\localserver32 -> C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\AgentAntidote.exe (Druide informatique inc.)
CustomCLSID: HKU\S-1-5-21-908847729-3257692200-3215671018-1001_Classes\CLSID\{A12A9CAB-1C75-4AA3-A980-74F25AB94C8F}\localserver32 -> C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\Antidote.exe (Druide informatique inc.)
CustomCLSID: HKU\S-1-5-21-908847729-3257692200-3215671018-1001_Classes\CLSID\{AD630E0F-BF29-4791-AD3B-A289E884E37C}\localserver32 -> C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\Antidote.exe (Druide informatique inc.)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {16692DD7-A500-4C15-B89A-0DBC5862C96E} - System32\Tasks\{702013E4-DDD3-4456-85DC-70BA78DAB9C2} => pcalua.exe -a "D:\THE HOUSE OF THE DEAD3_EU\hod3launch.exe" -d "D:\THE HOUSE OF THE DEAD3_EU"
Task: {189B63B2-A548-4B94-AB46-CE3A4B7C8117} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-03-08] (Microsoft Corporation)
Task: {227DBE6C-33BB-4D37-992E-79B6E8D106B8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-02-12] (Piriform Ltd)
Task: {3582C677-D830-4FB1-BCAB-773836627544} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK
Task: {36B36114-1EEC-4EF2-8C0A-B6790EE9953E} - System32\Tasks\{1429E2B3-20B5-4430-A640-746A682BF2CE} => launchwinapp.exe hxxp://ui.skype.com/ui/0/7.14.0.106/fr/abandoninstall?source=lightinstaller&page=tsInstall
Task: {474A53A3-B2C6-4AD3-8B9E-EBC3555D9ED7} - System32\Tasks\Driver Booster SkipUAC (Luydmila) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2016-01-18] (IObit)
Task: {58DB854A-BFA5-4017-9EE8-E60D6C43D2A3} - System32\Tasks\Wise Turbo Checker.job => C:\Program Files (x86)\Wise\Wise Care 365\WiseTurbo.exe [2016-01-19] (WiseCleaner.COM)
Task: {69549618-D55F-4249-96A1-96DC16D8B3A4} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [2015-06-23] ()
Task: {69D9CF37-2308-4870-9253-2CA207D7C681} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [2015-06-23] ()
Task: {7D263718-B812-45BD-836D-F366D1A5FC90} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2016-01-13] (IObit)
Task: {875C6288-4702-4758-BDE1-3EC5D864FE5C} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2016-02-01] (Glarysoft Ltd)
Task: {8FA8CF1C-D1CA-4FDE-B124-F7E5CDAC2AD0} - System32\Tasks\{E97C8313-EE1E-4E2F-AB0B-54C2A329B12E} => pcalua.exe -a "C:\Users\Luydmila\Desktop\Nouveau dossier (2)\SETUP.EXE" -d "C:\Users\Luydmila\Desktop\Nouveau dossier (2)"
Task: {A4F855D9-10D1-41D8-B912-CD6A00B77A95} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-23] (Google Inc.)
Task: {A86AA494-6EA2-4298-9F19-41578ECBB873} - System32\Tasks\SuperbGameBoost => C:\Program Files (x86)\SuperBoost\Superb Game Boost\SuperbGameBoostMain.exe [2016-02-03] (SuperBoost Software)
Task: {AFD5E208-72E9-415F-BCAD-2C07E4D8C55C} - System32\Tasks\{CA59B708-9C4F-4DC8-84B4-89846EEC7F13} => pcalua.exe -a F:\hod3pc.exe -d F:\
Task: {B6988AC8-FEE7-4B50-8883-92FD4CDD7649} - System32\Tasks\MSI_Dragon Gaming Center => C:\Program Files (x86)\MSI\Dragon Gaming Center\mDispatch.exe [2014-01-23] (TODO: <公司名稱>)
Task: {C3EDB3AD-57DC-44CD-B66E-EE33B016C664} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-12-13] (Synaptics Incorporated)
Task: {FAEFB965-6FF2-4A91-8A6E-010A9C4E5F39} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [2015-06-23] ()
Task: {FE6124EA-3319-46F0-9303-BEF3079D85F3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-23] (Google Inc.)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Raccourcis =============================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

Shortcut: C:\Users\Luydmila\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Minecraft\Minecraft Debugger.lnk -> C:\Users\Luydmila\AppData\Roaming\.minecraft\minecraft launcher\Debug.bat ()

==================== Modules chargés (Avec liste blanche) ==============

2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-11-18 19:07 - 2016-03-03 10:54 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-05-19 17:11 - 2015-05-19 17:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
2016-03-01 06:35 - 2016-02-11 13:41 - 01144800 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-RANSOMWARE\arwlib.dll
2016-02-22 17:52 - 2016-02-17 07:56 - 01416064 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll
2015-12-20 14:21 - 2016-02-17 07:56 - 00299392 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-02-22 17:52 - 2016-02-17 07:56 - 03613056 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll
2016-03-01 20:08 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2015-07-01 12:50 - 2015-07-01 12:50 - 00308992 _____ () C:\Program Files\Le Robert Correcteur\Libs\DiagonalLib.dll
2016-03-01 20:08 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-12-18 09:46 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-01 20:08 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-01-13 07:33 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-01-13 07:33 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-01-28 06:38 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-01-28 06:38 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2015-11-12 06:15 - 2015-12-19 01:08 - 00402344 _____ () C:\WINDOWS\system32\igfxTray.exe
2015-10-21 18:49 - 2015-10-21 18:49 - 00087368 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\libQtDispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00106824 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\libwebsocketsDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00467784 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\boost_locale-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00088392 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\libxdispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00063816 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\libdispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00025928 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\boost_system-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00036168 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\boost_chrono-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00108360 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\boost_thread-vc120-mt-1_58-Druide9.dll
2015-12-07 12:06 - 2015-12-07 12:06 - 00078664 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\LibrairiesQt\libEGL.dll
2015-12-07 12:06 - 2015-12-07 12:06 - 01793352 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin64\LibrairiesQt\libGLESv2.dll
2016-02-24 13:05 - 2016-02-24 13:05 - 00116688 _____ () C:\Program Files (x86)\Druide\Antidote 9\LingEN\Bin64\libYamChaDruide9.dll
2015-07-01 12:50 - 2015-07-01 12:50 - 00308992 _____ () C:\Program Files\Le Robert Correcteur\Libs\diagonalLib.dll
2014-01-22 18:44 - 2014-01-22 18:44 - 00075912 _____ () C:\Program Files (x86)\MSI\Dragon Gaming Center\WinIo64.dll
2015-06-24 09:07 - 2015-06-24 09:07 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2015-08-06 22:29 - 2016-02-17 08:02 - 00020352 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00076616 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\libQtDispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00091976 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\libwebsocketsDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00373576 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\boost_locale-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00077128 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\libxdispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00054600 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\libdispatchDruide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00022856 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\boost_system-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00033096 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\boost_chrono-vc120-mt-1_58-Druide9.dll
2015-10-21 18:49 - 2015-10-21 18:49 - 00089928 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\boost_thread-vc120-mt-1_58-Druide9.dll
2015-12-07 12:06 - 2015-12-07 12:06 - 00065352 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\LibrairiesQt\libEGL.dll
2015-12-07 12:06 - 2015-12-07 12:06 - 01463624 _____ () C:\Program Files (x86)\Druide\Antidote 9\Application\Bin32\LibrairiesQt\libGLESv2.dll
2016-02-15 14:20 - 2009-08-12 12:09 - 00077824 _____ () C:\Program Files (x86)\XWidget\Res\Lib\lib.dll
2015-07-01 12:51 - 2015-07-01 12:51 - 00257792 _____ () C:\Program Files\Le Robert Correcteur\wow64\Libs\diagonalLib.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)

AlternateDataStreams: C:\Users\Luydmila:zylomtest [0]
AlternateDataStreams: C:\Users\Luydmila:zylomtr{000HQ7FF-AD7A-3FG3-VK8A-25GG67KOIVUS} [36]

==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)


==================== EXE Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

Il y a 7870 plus de sites.

IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\123simsen.com -> www.123simsen.com

Il y a 7870 plus de sites.


==================== Hosts contenu: ===============================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2016-03-02 18:28 - 2016-03-02 18:28 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-908847729-3257692200-3215671018-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Luydmila\Pictures\fond d'ecran (jolis)\Bonus\Paysage-HD (47).jpg
DNS Servers: 109.0.66.20 - 109.0.66.10
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk"
HKLM\...\StartupApproved\StartupFolder: => "SteelSeries Engine 3.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Malwarebytes Anti-Ransomware.lnk"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run: => "SCM"
HKLM\...\StartupApproved\Run: => "XboxStat"
HKLM\...\StartupApproved\Run: => "PWRISOVM.EXE"
HKLM\...\StartupApproved\Run32: => "Malwarebytes Anti-Exploit"
HKLM\...\StartupApproved\Run32: => "ELITE-M5"
HKLM\...\StartupApproved\Run32: => "PWRISOVM.EXE"
HKLM\...\StartupApproved\Run32: => "NahimicMSIUILauncher"
HKLM\...\StartupApproved\Run32: => "RazerGameBooster"
HKLM\...\StartupApproved\Run32: => "AvgUi"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\StartupFolder: => "Wipe Tray Agent.lnk"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "SynapseUpdate"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "Integration de Cordial"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "SandboxieControl"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "RGSC"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "GUDelayStartup"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "Wipe Maintance"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => " Maintance"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "Advanced SystemCare 9"
HKU\S-1-5-21-908847729-3257692200-3215671018-1001\...\StartupApproved\Run: => "CCleaner Monitoring"

==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{BF1824EB-1F22-4B38-A9CA-561B11A26DB9}] => (Allow) D:\FarCry 3\bin\FC3Editor.exe
FirewallRules: [{C3887FE1-878E-402F-B4A2-1F6087804BC2}] => (Allow) D:\FarCry 3\bin\FC3Editor.exe
FirewallRules: [{C32C4886-263A-4E9B-B37C-0B7C9518AA2C}] => (Allow) D:\FarCry 3\bin\FC3Updater.exe
FirewallRules: [{23ED7A91-8C07-4E16-A44B-A101A364FE22}] => (Allow) D:\FarCry 3\bin\FC3Updater.exe
FirewallRules: [{E27B4044-7A80-4911-9716-B41F1A8516FD}] => (Allow) D:\FarCry 3\bin\farcry3_d3d11.exe
FirewallRules: [{04C3CC6F-2869-45F1-BB95-9BE0B194743B}] => (Allow) D:\FarCry 3\bin\farcry3_d3d11.exe
FirewallRules: [{97F46093-EB37-48C4-A604-1F9D305144F4}] => (Allow) D:\FarCry 3\bin\farcry3.exe
FirewallRules: [{4A1F4755-3380-48C5-A186-E6CEAD8DDE8A}] => (Allow) D:\FarCry 3\bin\farcry3.exe
FirewallRules: [{90CC2247-674A-4051-8B1C-DFBB4AEE4C28}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{17FB2458-3629-4987-B9BA-D98B960C0B13}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{ECAAB8D5-ED8B-4491-A2F6-B72DA9CBC166}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{F3B18F2D-3155-4E7B-BC92-C7FD12FD0D4D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{AFAFF0C4-6A61-4BB1-A2EE-68C93E03A0CC}] => (Allow) D:\FarCry 3\bin\FC3Editor.exe
FirewallRules: [{F546D092-8583-43F2-A33B-7473A175DC67}] => (Allow) D:\FarCry 3\bin\FC3Editor.exe
FirewallRules: [{6E43A203-0B68-4C5B-B2CF-5A50DEBD8A99}] => (Allow) D:\FarCry 3\bin\FC3Updater.exe
FirewallRules: [{E3D03E8D-6F7B-472B-89CC-64BED8397CEA}] => (Allow) D:\FarCry 3\bin\FC3Updater.exe
FirewallRules: [{D090B6F8-CABD-4487-AE3E-DEFEE5D1C6AB}] => (Allow) D:\FarCry 3\bin\farcry3_d3d11.exe
FirewallRules: [{04F039F4-CAC9-48FD-A8EF-C86CF7E3EF07}] => (Allow) D:\FarCry 3\bin\farcry3_d3d11.exe
FirewallRules: [{D6F83E26-FC4A-427A-B5EA-5658E3865D08}] => (Allow) D:\FarCry 3\bin\farcry3.exe
FirewallRules: [{8B97D19E-5105-4C15-AFC7-4DBF0759F2B9}] => (Allow) D:\FarCry 3\bin\farcry3.exe
FirewallRules: [{6ACC19FB-DA06-48F1-A774-98962D950C99}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0A49BDAA-9F61-4A85-AE2D-BA75E4639985}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{7518C420-5F31-4C13-95F9-2576FF15941F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{0F752C8E-C674-4A3B-BECC-82D95E3F2474}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{47F61141-E186-4E28-ABFF-CAA2E4273471}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [UDP Query User{57460FC3-B62E-452C-B92A-5E9DB5387D04}C:\program files (x86)\le robert\le petit robert 2014\petitrobertha.exe] => (Block) C:\program files (x86)\le robert\le petit robert 2014\petitrobertha.exe
FirewallRules: [TCP Query User{89FD15CF-B22B-4E3A-A8B0-545EB5DEB613}C:\program files (x86)\le robert\le petit robert 2014\petitrobertha.exe] => (Block) C:\program files (x86)\le robert\le petit robert 2014\petitrobertha.exe
FirewallRules: [UDP Query User{1762633C-15DE-4B55-BCFA-CD297F0FA3EE}C:\program files (x86)\le robert\le petit robert 2014\prnet.exe] => (Block) C:\program files (x86)\le robert\le petit robert 2014\prnet.exe
FirewallRules: [TCP Query User{0632C0CF-B6CC-4BF6-B12A-531CE3FE0E1B}C:\program files (x86)\le robert\le petit robert 2014\prnet.exe] => (Block) C:\program files (x86)\le robert\le petit robert 2014\prnet.exe
FirewallRules: [{68439560-853C-4B79-89F9-2D5B461570E2}] => (Allow) C:\Program Files\Torrent2Exe\T2E.exe
FirewallRules: [{C288333E-6F28-48DD-984D-7D4D7697E974}] => (Allow) C:\Program Files\Torrent2Exe\T2E.exe
FirewallRules: [{A48EB2AD-CD47-42C0-82B5-BDE0AA1C6C70}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F2D493CC-7D31-49E1-9050-B3E0205547CB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A8FA28A0-29B4-4A30-ACDE-A211727A3C30}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{DDDCA1FC-7767-477C-B3FC-215C887B52AF}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [{2C40932A-09E0-4BF8-A03F-5BF5DFC7C883}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{2A616D20-1DBE-4AD7-9DAD-3D2AF68D76A7}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{8F9CF976-5FEC-4DE0-A5BE-9CD06F088322}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{5D6A032D-D078-4B84-BE9D-A537BCF5A8D4}] => (Allow) LPort=48113
FirewallRules: [{949D0B83-459B-4880-A803-DDCF4CE4DC12}] => (Allow) LPort=48113
FirewallRules: [TCP Query User{CC8335EB-1982-4C85-A989-4FA975613676}D:\mxgp\mxgp.exe] => (Block) D:\mxgp\mxgp.exe
FirewallRules: [UDP Query User{48E351F8-D399-4AB8-AAEC-6DAB450852FF}D:\mxgp\mxgp.exe] => (Block) D:\mxgp\mxgp.exe
FirewallRules: [TCP Query User{188B2E3A-AD13-42D1-AA54-DF0DCC1FDD2F}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [UDP Query User{A720FAA9-B40A-4865-A83A-8F219CC43D24}D:\assetto corsa\acs.exe] => (Block) D:\assetto corsa\acs.exe
FirewallRules: [{26898CA4-0C59-41A8-9E76-B5F30701C436}] => (Block) D:\Assetto Corsa\acs.exe
FirewallRules: [TCP Query User{FA9FC93F-28C4-4AC9-8822-B24AB2B3A3CE}C:\program files (x86)\cheat engine 6.4\cheatengine-x86_64.exe] => (Block) C:\program files (x86)\cheat engine 6.4\cheatengine-x86_64.exe
FirewallRules: [UDP Query User{2BADC1C1-814D-42AD-9421-A0EF82D0EABC}C:\program files (x86)\cheat engine 6.4\cheatengine-x86_64.exe] => (Block) C:\program files (x86)\cheat engine 6.4\cheatengine-x86_64.exe
FirewallRules: [{EE318800-9B91-4120-B44C-47C9E4599CFB}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{D210A9C0-21CC-4C99-9EFB-0FE032884383}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{B00A481F-30A5-4ED4-AEBD-0CE8446CF8C4}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{4815CCD0-0936-46BD-B6A2-6E964BF48722}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{9C8BC519-1663-42B4-96DA-12F709E7A04E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{A98B5358-F9E2-424D-9B4A-F26785C05EE2}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{1C204B03-B46B-4AF9-9886-D316A175508B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{A1DE1D84-2DFA-4BC4-9AFF-58D54D13CC89}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{B3A84739-60F5-4483-9FCD-A7B1BEC47E5B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{D51010E7-F094-41BE-97D4-F030C822EC77}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{68825754-46AA-4A44-A678-D0087F5C5F80}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{32B4578B-F55B-4AFC-9D46-0A8916395584}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{8706806E-83E8-444E-8865-3FD7067E682A}D:\dying light\dyinglightgame.exe] => (Block) D:\dying light\dyinglightgame.exe
FirewallRules: [TCP Query User{487B38B3-63E2-42DD-A906-6853CE16989C}D:\far cry 4 complete edition\bin\farcry4.exe] => (Block) D:\far cry 4 complete edition\bin\farcry4.exe
FirewallRules: [UDP Query User{98B3680E-9E8B-4410-9D05-0747335E506A}D:\far cry 4 complete edition\bin\farcry4.exe] => (Block) D:\far cry 4 complete edition\bin\farcry4.exe
FirewallRules: [{9FB9DEB2-BD30-4E1A-90FD-C0FCC02B7866}] => (Block) %ProgramFiles% (x86)\Ubisoft Studios\Zombi\ZOMBI.exe
FirewallRules: [{83735A65-02C1-4110-AA87-38B9EC93967A}] => (Allow) D:\Rockstar Games Social Club\RGSCLauncher.exe
FirewallRules: [{9CEDAC97-FAA8-4C07-872C-DA3DEB1F8145}] => (Allow) D:\Rockstar Games Social Club\RGSCLauncher.exe
FirewallRules: [{BF507948-C403-408A-929C-E9179B5A1E0B}] => (Allow) D:\Grand Theft Auto IV\LaunchGTAIV.exe
FirewallRules: [{B0608EE3-2A31-489E-8E0A-0D25D58F26AD}] => (Allow) D:\Grand Theft Auto IV\LaunchGTAIV.exe
FirewallRules: [{F1C0937F-8ECA-4CF6-9E4F-07BF6411B77A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Points de restauration =========================

02-03-2016 07:31:13 luydmila fifi
04-03-2016 05:37:46 Driver Booster : Realtek High Definition Audio
08-03-2016 16:09:38 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501
08-03-2016 18:05:10 Antidote 9 - English module supprimé.
08-03-2016 18:06:49 Antidote 9 supprimé.
08-03-2016 18:08:53 Antidote 9 supprimé.
08-03-2016 18:12:32 Installé Antidote 9.
08-03-2016 18:14:12 Installé Antidote 9.
08-03-2016 18:16:29 Installé Antidote 9 - Module français.
09-03-2016 01:33:49 ESET NOD32 Antivirus a été supprimé

==================== Éléments en erreur du Gestionnaire de périphériques =============


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (03/09/2016 04:07:04 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8

Error: (03/09/2016 03:45:31 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme MiniReg.exe version 0.0.0.0 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : cbc

Heure de début : 01d179ada5739ea6

Heure de fin : 15

Chemin d'accès de l'application : C:\Users\Luydmila\AppData\Local\Temp\is-EGR93.tmp\MiniReg.exe

ID de rapport : f67ac43b-e5a0-11e5-9c4c-d8cb8a811a9f

Nom complet du package défaillant :

ID de l'application relative au package défaillant :

Error: (03/09/2016 01:33:54 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft.

System Error:
Accès refusé.
.

Error: (03/09/2016 01:33:14 AM) (Source: MsiInstaller) (EventID: 10005) (User: MYRTILLE)
Description: Product: ESET NOD32 Antivirus -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2502. The arguments are: , ,

Error: (03/09/2016 01:33:13 AM) (Source: MsiInstaller) (EventID: 10005) (User: MYRTILLE)
Description: Product: ESET NOD32 Antivirus -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2503. The arguments are: , ,

Error: (03/08/2016 11:28:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante ekrn.exe, version : 9.0.349.0, horodatage : 0x564dbef6
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0x80000003
Décalage d’erreur : 0x0000022cf0cbed88
ID du processus défaillant : 0x478
Heure de début de l’application défaillante : 0xekrn.exe0
Chemin d’accès de l’application défaillante : ekrn.exe1
Chemin d’accès du module défaillant: ekrn.exe2
ID de rapport : ekrn.exe3
Nom complet du package défaillant : ekrn.exe4
ID de l’application relative au package défaillant : ekrn.exe5

Error: (03/08/2016 10:51:54 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (03/08/2016 10:16:26 PM) (Source: ESENT) (EventID: 454) (User: )
Description: SettingSyncHost (6580) {E3F3A88F-65E5-41DF-92DC-B24D3E862152}: La récupération/restauration de la base de données a échoué en raison d’une erreur inattendue -543.

Error: (03/08/2016 10:16:26 PM) (Source: ESENT) (EventID: 453) (User: )
Description: SettingSyncHost (6580) {E3F3A88F-65E5-41DF-92DC-B24D3E862152}: La base de données C:\Users\Luydmila\AppData\Local\Microsoft\Windows\SettingSync\metastore\meta.edb requiert les fichiers journaux 20-21 (C:\Users\Luydmila\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00014.log - C:\Users\Luydmila\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb.log) pour récupérer. Le processus de récupération a seulement pu repérer les fichiers journaux à partir de 20(SettingSyncHost0).

Error: (03/08/2016 10:16:26 PM) (Source: ESENT) (EventID: 413) (User: )
Description: SettingSyncHost (6580) Impossible de créer le fichier journal, car la base de données ne peut pas écrire sur le lecteur. Ce lecteur est probablement en lecture seule, mal configuré ou endommagé ou son espace disque est insuffisant. Erreur -1032.


Erreurs système:
=============
Error: (03/09/2016 04:03:15 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SecDrv n’a pas pu démarrer en raison de l’erreur :
%%1275

Error: (03/09/2016 04:03:15 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS

Error: (03/09/2016 04:02:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: L’arrêt système précédant à 04:56:55 le ‎09/‎03/‎2016 n’était pas prévu.

Error: (03/09/2016 03:39:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Accès aux données utilisateur_6e77df s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (03/09/2016 03:39:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Stockage des données utilisateur_6e77df s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (03/09/2016 03:39:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Données de contacts_6e77df s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (03/09/2016 03:39:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Hôte de synchronisation_6e77df s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (03/09/2016 03:39:17 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible

Error: (03/09/2016 05:01:39 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Accès aux données utilisateur_c1cc1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (03/09/2016 05:01:39 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Stockage des données utilisateur_c1cc1 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.


CodeIntegrity:
===================================
Date: 2016-03-08 22:49:52.459
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-01 20:21:48.357
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-01 20:10:29.597
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-29 10:48:22.742
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-14 15:46:32.243
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-02-12 03:19:45.275
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Luydmila\Desktop\PCHunter_free\kbjzpqwecqtlfn.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-02-12 03:19:45.227
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Luydmila\Desktop\PCHunter_free\kbjzpqwecqtlfn.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-02-12 03:19:45.214
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Luydmila\Desktop\PCHunter_free\bropqoexrzgoucjnp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-02-12 03:19:45.200
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Luydmila\Desktop\PCHunter_free\bropqoexrzgoucjnp.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2016-02-12 03:19:45.185
Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Users\Luydmila\Desktop\PCHunter_free\titnzmtxfisrkryf.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Infos Mémoire ===========================

Processeur: Intel(R) Core(TM) i5-4210H CPU @ 2.90GHz
Pourcentage de mémoire utilisée: 29%
Mémoire physique - RAM - totale: 8113.27 MB
Mémoire physique - RAM - disponible: 5694.81 MB
Mémoire virtuelle totale: 9393.27 MB
Mémoire virtuelle disponible: 7030.45 MB

==================== Lecteurs ================================

Drive c: (OS_Install) (Fixed) (Total:558.91 GB) (Free:454.71 GB) NTFS
Drive d: (Data) (Fixed) (Total:351.46 GB) (Free:167.89 GB) NTFS

==================== MBR & Table des partitions ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: B6B056FE)

Partition: GPT.

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité