cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:16-06-2016 01
Exécuté par Admin (2016-06-18 14:39:58)
Exécuté depuis C:\Users\Admin\Desktop
Windows 10 Home Version 1511 (X64) (2016-02-05 16:38:22)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Admin (S-1-5-21-1818586780-1967668082-842204500-1002 - Administrator - Enabled) => C:\Users\Admin
Administrateur (S-1-5-21-1818586780-1967668082-842204500-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1818586780-1967668082-842204500-503 - Limited - Disabled)
Invité (S-1-5-21-1818586780-1967668082-842204500-501 - Limited - Disabled)
UpdatusUser (S-1-5-21-1818586780-1967668082-842204500-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

µTorrent (HKU\S-1-5-21-1818586780-1967668082-842204500-1002\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.)
Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.016.20045 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.260 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated)
Allway Sync version 15.3.1 (HKLM\...\Allway Sync_is1) (Version: - Botkind Inc)
Assassin's Creed Unity (HKLM\...\Steam App 289650) (Version: - Ubisoft)
Avast Antivirus Gratuit (HKLM-x32\...\Avast) (Version: 11.2.2262 - AVAST Software)
BioShock Infinite (HKLM\...\Steam App 8870) (Version: - Irrational Games)
CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform)
Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.7.133.0 - Microsoft Corporation)
Centre Souris et Claviers Microsoft (Version: 2.7.133.0 - Microsoft Corporation) Hidden
Child of Light (HKLM-x32\...\Uplay Install 609) (Version: - Ubisoft)
Classic Shell (HKLM\...\{D4B3454F-7529-4F5F-851D-2C36933F7D64}) (Version: 4.2.5 - IvoSoft)
Disable AMT Profile Synchronization Pop-up for Windows XP/Vista/7/8 (HKLM\...\DisableAMTPopup) (Version: 1.00 - )
Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.3.1 - Dolby Laboratories Inc)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.)
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Guacamelee! Super Turbo Championship Edition (HKLM\...\Steam App 275390) (Version: - DrinkBox Studios)
INDEX EDUCATION - Client PRONOTE 2015 (HKLM-x32\...\{B3F19908-7061-4ACA-A71C-8D0572A31714}) (Version: 0.1.11 - Index Education)
Inst5676 (Version: 8.00.43 - Softex Inc.) Hidden
Integrated Camera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.5.7.13 - SunplusIT)
Intel Collaborative Processor Performance Control (HKLM-x32\...\0E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1156 - Intel Corporation)
Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 20.2 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1332.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0366 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation)
Intel(R) Update Manager (x32 Version: 1.6.3.70 - Intel Corporation) Hidden
Intel(R) WiDi (HKLM\...\{201B03D6-FDDA-4C70-8A15-887F5B3CE365}) (Version: 4.2.19.0 - Intel Corporation)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.01 - )
Lenovo Incrustation (HKLM\...\OnScreenDisplay) (Version: 8.78.00 - Lenovo)
Lenovo Patch Utility (x32 Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Patch Utility 64 bit (Version: 1.3.2.6 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.10.02 - Lenovo)
Lenovo Settings - Power (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 8.00.7 - Lenovo Group Limited)
LibreOffice 5.0.5.2 (HKLM-x32\...\{43D862C3-739D-4FF6-91C0-25612368CC81}) (Version: 5.0.5.2 - The Document Foundation)
LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere)
Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{313c06de-4aa7-4a1f-930a-f10f80380426}) (Version: 17.14.0 - Intel Corporation)
Logiciel pour périphérique à chipset Intel® (x32 Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Metric Collection SDK (x32 Version: 1.1.0008.00 - Lenovo Group Limited) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mise à jour automatique (HKLM-x32\...\{498D8130-B871-4D94-9ADC-C1F99E188F3A}) (Version: 0.0.65 - Index Education)
Mises à jour NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Mozilla Firefox 47.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 fr)) (Version: 47.0 - Mozilla)
NVIDIA Pilote graphique 345.20 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 345.20 - NVIDIA Corporation)
Oddworld: Abe's Oddysee (HKLM\...\Steam App 15700) (Version: - Oddworld Inhabitants)
OpenOffice 4.1.2 (HKLM-x32\...\{DCB1B348-C94E-4D6D-8CE0-7D9DA5CF663E}) (Version: 4.12.9782 - Apache Software Foundation)
Outland (HKLM\...\Steam App 305050) (Version: - Housemarque)
Package de pilotes Windows - Intel (e1dexpress) Net (05/06/2013 12.6.51.9427) (HKLM\...\EE65D5FC2879A33F6215CCBA14A4E08712271C7E) (Version: 05/06/2013 12.6.51.9427 - Intel)
Package de pilotes Windows - Intel Corporation (iaStorA) HDC (07/10/2013 12.7.1.1000) (HKLM\...\46401F4452DAF88AC0AE17DCC13122D50FA7A51A) (Version: 07/10/2013 12.7.1.1000 - Intel Corporation)
Package de pilotes Windows - Lenovo 1.67.00.02 (04/17/2013 1.67.00.02) (HKLM\...\907DA143458FE258EFEB416B946DE8DF2B87A0BA) (Version: 04/17/2013 1.67.00.02 - Lenovo)
Package de pilotes Windows - Synaptics (SmbDrv) System (08/08/2013 16.6.4.38) (HKLM\...\B8B0FB49BE368EB005D7A392C3F3F6EAE44D4895) (Version: 08/08/2013 16.6.4.38 - Synaptics)
Package de pilotes Windows - Synaptics (SynTP) Mouse (08/08/2013 16.6.4.38) (HKLM\...\18D3C88E5856BD23EE44DECE8557176A5BD3FBED) (Version: 08/08/2013 16.6.4.38 - Synaptics)
Panneau de configuration NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.21236 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7572 - Realtek Semiconductor Corp.)
SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Skype™ 7.24 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.24.104 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Super Meat Boy (HKLM\...\Steam App 40800) (Version: - Team Meat)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.27 - Synaptics Incorporated)
Synaptics WBF DDK 5011 (Advanced) (HKLM\...\{D342A8F4-B82B-4348-A407-F1F91CF44128}) (Version: 4.5.505.0 - Synaptics)
Uplay (HKLM-x32\...\Uplay) (Version: 17.1 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN)
WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH)
Zedeo version 1.2.4 (HKLM-x32\...\{095074AE-E4BD-41EC-AE78-21969805AB7C}_is1) (Version: 1.2.4 - ZedSoft)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-1818586780-1967668082-842204500-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Admin\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {021D6534-7995-4690-8429-23DB44649DD4} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-12-09] (Microsoft)
Task: {0F2A2042-C22F-4BDE-A409-3584102B9697} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2016-02-05] (Synaptics Incorporated)
Task: {1E519708-1AE5-4701-A321-5DA483F76856} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation)
Task: {1EC0CD49-FF72-48F3-B42A-5AEB4DF7078B} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-07-30] (Realtek Semiconductor)
Task: {274EB653-3DB8-45AB-9494-94FBDD8E38E8} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION
Task: {316D4B62-A264-4D83-A922-3C44D01EE65B} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation)
Task: {3AD37156-1CEF-424F-8040-47FE8629FDDD} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [2013-07-18] (Intel Corporation)
Task: {3E268FDD-5311-487F-8542-A95E433777E3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-16] (Google Inc.)
Task: {430531FF-8F33-431E-AEE7-AC16CDE645CA} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION
Task: {4D51752B-5674-45D7-973B-3C1379D6931B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd)
Task: {4EDCC16F-4E9A-4E65-87FA-23B3539FB710} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2015-07-30] (Realtek Semiconductor)
Task: {51E6A268-C971-44EF-B99C-FD2479BBC3BB} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation)
Task: {580255F6-C5C4-4EA1-B3A6-A01E6A4EB376} - System32\Tasks\avast! Emergency Update => C:\Program Files (x86)\Avast\AvastEmUpdate.exe [2016-05-19] (AVAST Software)
Task: {5B7FF171-4AD2-4F2A-B727-509CCA1B125E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION
Task: {774DEF96-606E-458B-8C53-C27F89A99577} - System32\Tasks\DolbySelectorTask => C:\Program Files\Dolby Digital Plus\ddp.exe
Task: {7E628D24-983F-4921-B25A-6D16155BF846} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-03-16] (Google Inc.)
Task: {946EBA2D-4140-46FA-A61E-797F449B938C} - System32\Tasks\RtHDVBg_LENOVO_MICPKEY => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-07-30] (Realtek Semiconductor)
Task: {9B40180D-2109-43D4-85FC-0C2AE92D1144} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe
Task: {A9F86AC0-AB98-4FE3-9A99-9A97F4225D76} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION
Task: {ADA3FB69-ECE0-444E-8E76-B3AB71303315} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION
Task: {AF76B940-69D9-444E-AB56-456B512B4A06} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION
Task: {B31E40A0-A19D-4526-9E7F-6A5C61280061} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-06-15] (Microsoft Corporation)
Task: {B38EB1AE-F42E-43EE-BA30-AED1F29493DC} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation)
Task: {D5CBBE35-D723-41BB-B80D-E7B50B0DBE0B} - System32\Tasks\ISM-UpdateService-e57b59e7-5862-4250-9ce0-76fb411dc0d2-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\Bootstrap.exe [2013-07-18] (Intel Corporation)
Task: {DD7D9085-CE17-4E01-8628-E5924E8BCE6F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION
Task: {E4707741-F37D-4839-922B-4F096E58B1F9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-04-22] (Adobe Systems Incorporated)
Task: {E540B792-C122-40EC-B001-EE13A7EDEDAF} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION
Task: {EB9E20F4-D472-42FB-83A1-01E09FCE48C8} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.dll",PwrMgrBkGndMonitor
Task: {EBD357EA-1CCA-4AB2-87B9-D8C7D9521246} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION
Task: {F63F5477-F497-4C9A-B3D5-BB5748765AFB} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION
Task: {F6438232-2AB8-4A85-8F62-24220C1320E3} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe
Task: {F9E73E10-9358-4A77-9067-F701789AB085} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Raccourcis =============================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

==================== Modules chargés (Avec liste blanche) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-02-05 18:32 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-04-13 08:30 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-02-05 18:13 - 2016-02-05 18:13 - 00402344 _____ () C:\WINDOWS\system32\igfxTray.exe
2016-04-13 08:30 - 2016-03-29 12:20 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2016-02-05 18:27 - 2016-02-05 18:27 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-05-13 07:28 - 2016-04-23 06:25 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-06-15 11:14 - 2016-05-28 05:59 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-06-15 11:14 - 2016-05-28 05:53 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-06-15 11:14 - 2016-05-28 05:54 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-06-15 11:14 - 2016-05-28 05:56 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-02-22 19:22 - 2015-10-14 09:00 - 00107008 ____N () C:\Program Files (x86)\ThinkPad\Utilities\US\PWMRT64V.DLL
2016-05-19 10:43 - 2016-05-19 10:43 - 00123344 _____ () C:\Program Files (x86)\Avast\log.dll
2016-05-19 10:43 - 2016-05-19 10:43 - 00135816 _____ () C:\Program Files (x86)\Avast\JsonRpcServer.dll
2016-06-17 00:10 - 2016-06-17 00:10 - 02934272 _____ () C:\Program Files (x86)\Avast\defs\16061601\algo.dll
2016-05-19 10:43 - 2016-05-19 10:43 - 00309912 _____ () C:\Program Files (x86)\Avast\browser_pass.dll
2016-05-19 10:43 - 2016-05-19 10:43 - 00479680 _____ () C:\Program Files (x86)\Avast\ffl2.dll
2016-03-16 22:09 - 2016-03-16 22:09 - 40539648 _____ () C:\Program Files (x86)\Avast\libcef.dll
2015-07-06 21:36 - 2015-07-06 21:36 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)

AlternateDataStreams: C:\Windows:nlsPreferences [386]

==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)


==================== Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)


==================== Hosts contenu: ==========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2013-08-22 15:25 - 2016-06-09 18:14 - 00002024 ____A C:\WINDOWS\system32\Drivers\etc\hosts

0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
0.0.0.0 media.opencandy.com
0.0.0.0 cdn.opencandy.com
0.0.0.0 tracking.opencandy.com
0.0.0.0 api.opencandy.com
0.0.0.0 api.recommendedsw.com
0.0.0.0 installer.betterinstaller.com
0.0.0.0 installer.filebulldog.com
0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0 inno.bisrv.com
0.0.0.0 nsis.bisrv.com
0.0.0.0 cdn.file2desktop.com
0.0.0.0 cdn.goateastcach.us
0.0.0.0 cdn.guttastatdk.us
0.0.0.0 cdn.inskinmedia.com
0.0.0.0 cdn.insta.oibundles2.com
0.0.0.0 cdn.insta.playbryte.com
0.0.0.0 cdn.llogetfastcach.us
0.0.0.0 cdn.montiera.com
0.0.0.0 cdn.msdwnld.com
0.0.0.0 cdn.mypcbackup.com
0.0.0.0 cdn.ppdownload.com
0.0.0.0 cdn.riceateastcach.us
0.0.0.0 cdn.shyapotato.us
0.0.0.0 cdn.solimba.com
0.0.0.0 cdn.tuto4pc.com
0.0.0.0 cdn.appround.biz
0.0.0.0 cdn.bigspeedpro.com
0.0.0.0 cdn.bispd.com

Il y a 4 plus de lignes.


==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-1818586780-1967668082-842204500-1001\Control Panel\Desktop\\Wallpaper ->
HKU\S-1-5-21-1818586780-1967668082-842204500-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\Pictures\kommunalka-24-06-2009-3-g.jpg
DNS Servers: 91.121.61.147 - 91.121.58.181
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\...\StartupApproved\Run: => "TpShocks"
HKLM\...\StartupApproved\Run: => "Integrated Camera_Monitor"
HKLM\...\StartupApproved\Run32: => "Integrated Camera_Monitor"
HKLM\...\StartupApproved\Run32: => "EaseUS Cleanup"
HKLM\...\StartupApproved\Run32: => "EaseUS EPM tray"
HKU\S-1-5-21-1818586780-1967668082-842204500-1002\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1818586780-1967668082-842204500-1002\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1818586780-1967668082-842204500-1002\...\StartupApproved\Run: => "Chromium"
HKU\S-1-5-21-1818586780-1967668082-842204500-1002\...\StartupApproved\Run: => "YDL"

==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{E49147CB-3704-495B-9C13-EE12B2AC64F2}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [{4543D6EA-96C4-4E78-A1AB-E39AB6C000D8}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{D0D74D17-253D-441A-BB9B-8F4C9E82ED0F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{39A6D768-239A-4930-9554-E0E0C4621794}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{3680EA52-D7BB-4208-ADB8-6E35C0E53DBE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{7B7CD29B-034E-47EC-A131-ABF4DCDFF8FE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{1E40D190-880D-4298-9AE3-9C99F1D40005}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{3E017D49-0D8A-4968-BA20-333A992ACBB2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{2A5CBBBC-8E13-4807-9D4D-3EB4D69D389D}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{608E9DD3-2B56-4528-9091-A0AB81A2355F}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{22D6E396-C832-436A-B9FA-F99C8DC8CC80}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DrinkBox_Game4\Game.exe
FirewallRules: [{01399619-4381-43E0-BC7F-B61335A9B34F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DrinkBox_Game4\Game.exe
FirewallRules: [{81FCFF58-0F71-4A3E-B042-FBFF46C0F2DB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{E6A67B1F-7E00-43DB-8495-35FD361D4F0C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BioShock Infinite\Binaries\Win32\BioShockInfinite.exe
FirewallRules: [{9E7A9181-B6D1-4AD7-9A01-10AB8BD72E05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{974DC0D6-6B3F-4451-BCE4-7112EAC40B86}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Super Meat Boy\SuperMeatBoy.exe
FirewallRules: [{A8ABEB49-7088-434E-8988-1ECCCB53A95E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oddworld Abes Oddysee\AbeWin.exe
FirewallRules: [{C1472721-64F2-4875-BFDC-BF38E754C52D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Oddworld Abes Oddysee\AbeWin.exe
FirewallRules: [{B1DFB15F-9D71-45CD-81E2-0139D2668997}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outland\Outland.exe
FirewallRules: [{B41CE29D-F67A-4BE8-AC61-5516BE28EDC2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outland\Outland.exe
FirewallRules: [{208966E4-6B53-49C9-909C-EE2FBB28B774}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed Unity\ACU.exe
FirewallRules: [{FB9CD08E-1863-4974-AAC1-F350D735539F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Assassin's Creed Unity\ACU.exe
FirewallRules: [{6ECBF450-790C-4779-BE7F-85CB4C9D3C1F}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{2A63DD47-E91A-43B0-9CEB-F5E2345B7BEE}] => (Allow) C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{281BB6ED-E68C-45B4-8912-ACEA2FC5EA63}] => (Allow) C:\Users\Admin\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{04F157D5-BD1A-4E48-918F-6C51A3B064C4}] => (Allow) C:\Users\Admin\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{B1388951-3D45-4DAF-8C3E-DA9424DED8B6}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Points de restauration =========================

06-05-2016 23:55:43 DCInstallRestorePoint
14-05-2016 16:54:42 Windows Update
09-06-2016 17:54:19 Installed SDFormatter.
15-06-2016 11:15:32 Windows Update
18-06-2016 14:14:14 zoek.exe restore point

==================== Éléments en erreur du Gestionnaire de périphériques =============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (06/18/2016 02:26:47 PM) (Source: BiometricSensorDataSynchronization) (EventID: 0) (User: )
Description: BiometricSensorDataSynchronizationWTSQueryUserToken failed with 0000003f0

Error: (06/18/2016 02:14:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante DaS_21.exe, version : 2.1.0.4, horodatage : 0x540c90b2
Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.306, horodatage : 0x571af331
Code d’exception : 0xe0434352
Décalage d’erreur : 0x0000000000071f28
ID du processus défaillant : 0x16f4
Heure de début de l’application défaillante : 0xDaS_21.exe0
Chemin d’accès de l’application défaillante : DaS_21.exe1
Chemin d’accès du module défaillant: DaS_21.exe2
ID de rapport : DaS_21.exe3
Nom complet du package défaillant : DaS_21.exe4
ID de l’application relative au package défaillant : DaS_21.exe5

Error: (06/18/2016 02:14:23 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application : DaS_21.exe
Version du Framework : v4.0.30319
Description : le processus a été arrêté en raison d'une exception non gérée.
Informations sur l'exception : System.ArgumentOutOfRangeException
à System.Console.SetWindowSize(Int32, Int32)
à DriverAndServicesOut.Program.Main(System.String[])

Error: (06/18/2016 02:14:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft.

System Error:
Accès refusé.
.

Error: (06/18/2016 11:14:42 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (06/17/2016 12:09:26 AM) (Source: BiometricSensorDataSynchronization) (EventID: 0) (User: )
Description: BiometricSensorDataSynchronizationWTSQueryUserToken failed with 0000003f0

Error: (06/17/2016 12:03:33 AM) (Source: BiometricSensorDataSynchronization) (EventID: 0) (User: )
Description: BiometricSensorDataSynchronizationWTSQueryUserToken failed with 0000003f0

Error: (06/16/2016 09:07:26 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8

Error: (06/15/2016 05:35:06 PM) (Source: BiometricSensorDataSynchronization) (EventID: 0) (User: )
Description: BiometricSensorDataSynchronizationWTSQueryUserToken failed with 0000003f0

Error: (06/15/2016 11:15:43 AM) (Source: Perflib) (EventID: 1008) (User: )
Description: BITSC:\Windows\System32\bitsperf.dll8


Erreurs système:
=============
Error: (06/18/2016 02:39:30 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (06/18/2016 02:26:22 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Hôte de synchronisation_73ad6e s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (06/18/2016 02:26:22 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible

Error: (06/18/2016 02:23:49 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Le service PEVSystemStart est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement.

Error: (06/18/2016 02:23:49 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Le service PEVSystemStart est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement.

Error: (06/18/2016 02:23:49 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Le service PEVSystemStart est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement.

Error: (06/18/2016 02:23:48 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Le service PEVSystemStart est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement.

Error: (06/18/2016 02:23:48 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Le service PEVSystemStart est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement.

Error: (06/18/2016 02:12:17 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}

Error: (06/18/2016 01:45:47 PM) (Source: DCOM) (EventID: 10010) (User: Lenovo)
Description: {DABF28BE-F6B4-4E40-8F40-C4FB26F3116C}


CodeIntegrity:
===================================
Date: 2016-06-18 11:30:53.995
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-06-15 17:35:12.766
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-05-30 19:36:11.607
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-05-19 10:49:09.654
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-05-15 15:40:03.002
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-04-24 17:16:39.212
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-04-15 15:05:28.896
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-25 01:27:52.616
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-19 08:46:01.818
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-17 07:59:50.474
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.


==================== Infos Mémoire ===========================

Processeur: Intel(R) Core(TM) i7-4600U CPU @ 2.10GHz
Pourcentage de mémoire utilisée: 26%
Mémoire physique - RAM - totale: 8071.78 MB
Mémoire physique - RAM - disponible: 5910.94 MB
Mémoire virtuelle totale: 9351.78 MB
Mémoire virtuelle disponible: 7239.02 MB

==================== Lecteurs ================================

Drive c: (Windows8_OS) (Fixed) (Total:217.44 GB) (Free:69.91 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]
Drive e: () (Removable) (Total:58.56 GB) (Free:13.33 GB) exFAT

==================== MBR & Table des partitions ==================

========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 8E660195)

Partition: GPT.

========================================================
Disk: 1 (Size: 58.6 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité