cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 15-10-2017
Exécuté par hasan (16-10-2017 19:03:49)
Exécuté depuis C:\Users\hasan\Desktop
Windows 10 Pro Version 1703 170317-1834 (X64) (2017-04-14 08:26:59)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-3087169588-2766957360-1688633369-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3087169588-2766957360-1688633369-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-3087169588-2766957360-1688633369-1000 - Limited - Disabled) => C:\Users\defaultuser0
hasan (S-1-5-21-3087169588-2766957360-1688633369-1001 - Administrator - Enabled) => C:\Users\hasan
Hasan_2jhg0iy (S-1-5-21-3087169588-2766957360-1688633369-1002 - Limited - Enabled) => C:\Users\Hasan_2jhg0iy
Invité (S-1-5-21-3087169588-2766957360-1688633369-501 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

µTorrent (HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\uTorrent) (Version: 3.5.0.43580 - BitTorrent Inc.)
Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 385.69 - NVIDIA Corporation) Hidden
Application Blizzard (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.33.1 - Asmedia Technology)
Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.7.2314 - AVAST Software)
Blade & Soul (HKLM-x32\...\{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.260 - NC Interactive, LLC) Hidden
Blade & Soul (HKLM-x32\...\InstallShield_{C3F383C1-D050-4A40-843F-8171A6A02C3A}) (Version: 1.0.63.260 - NC Interactive, LLC)
cFosSpeed v10.11 (HKLM\...\cFosSpeed) (Version: 10.11 - cFos Software GmbH, Bonn)
Chromium (HKLM-x32\...\{FFD11711-AF51-C691-1ED1-B611CE516591}) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0220 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{886E86E6-6673-4EAD-A4FF-6E087A661F4E}) (Version: 1.1.123.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{7BAC3F7A-B963-468E-982E-B5608A87408D}) (Version: 4.4.4 - SEIKO EPSON CORPORATION)
EPSON XP-700 Series Printer Uninstall (HKLM\...\EPSON XP-700 Series) (Version: - SEIKO EPSON Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1025 - Intel Corporation)
Intel(R) Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
Java 8 Update 144 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180144F0}) (Version: 8.0.1440.1 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\{8E0BDF1C-26D9-4579-A677-53A4CC0D3693}) (Version: 4.1.2 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Malwarebytes version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes)
Microsoft MPI (5.0.12435.6) (HKLM\...\{8499ACD3-C1E3-45AB-BF96-DA491727EBE1}) (Version: 5.0.12435.6 - Microsoft Corporation)
Microsoft Office Professionnel Plus 2016 - fr-fr (HKLM\...\ProPlusRetail - fr-fr) (Version: 16.0.8528.2139 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\OneDriveSetup.exe) (Version: 17.3.7010.0912 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2013 - Update 1 (HKLM-x32\...\{39921a93-edf8-4cb0-b3b7-e121a719cd1a}) (Version: 12.0.30918 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mises à jour NVIDIA 28.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 28.0.0.0 - NVIDIA Corporation) Hidden
MSI Command Center (HKLM-x32\...\{85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1) (Version: 2.0.0.43 - MSI)
MSI Fast Boot (HKLM-x32\...\{0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1) (Version: 1.0.1.8 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.0.0.30 - MSI)
MSI Gaming Lan Manager (HKLM-x32\...\{3318282C-D4D6-4B29-BBD5-95FC34B54FF0}_is1) (Version: 1.0.0.25 - MSI)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.05 - MSI)
MSI RAMDisk (HKLM-x32\...\{F29CF050-7278-4CDB-9EF8-2DC6DAA87453}}_is1) (Version: 1.0.0.19 - MSI)
MSI Super Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.3.0.07 - MSI)
MSI USB Speed Up (HKLM-x32\...\{79D5FA63-7003-4398-B882-C70ED18778D1}_is1) (Version: 1.0.0.09 - MSI)
MSI(R) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{5D85C662-99AB-4B25-A6F0-ABB9D702F552}) (Version: 6.0.2.102 - Intel Corporation) Hidden
MSI(R) Intel(R) Extreme Tuning Utility (HKLM-x32\...\{bcbf202c-9746-4173-a49b-649bfd0adca6}) (Version: 6.0.2.102 - Intel Corporation)
MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.05 - MSI)
Mumble 1.2.19 (HKLM-x32\...\{9BCF5203-72BB-4425-A391-83BF298EF376}) (Version: 1.2.19 - Thorvald Natvig)
MyEpson Portal (HKLM-x32\...\{3361D415-BA35-4143-B301-661991BA6219}) (Version: 1.1.2.2 - SEIKO EPSON CORPORATION) Hidden
MyEpson Portal (HKLM-x32\...\MyEpson Portal) (Version: - SEIKO EPSON Corporation)
NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT)
NVIDIA GeForce Experience 3.9.0.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.0.97 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Pilote 3D Vision 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 385.69 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Pilote graphique 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 385.69 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.8326.2076 - Microsoft Corporation) Hidden
Ori and The Blind Forest - Definitive Edition (HKLM-x32\...\1384944984_is1) (Version: 2.0.0.2 - GOG.com)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Panneau de configuration NVIDIA 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 385.69 - NVIDIA Corporation) Hidden
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 2.6.4 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.00.721 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7960 - Realtek Semiconductor Corp.)
SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden
Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TI Connect™ CE (HKLM-x32\...\{30258E3F-5B74-4450-8188-3221682375F4}) (Version: 5.2.0.51 - Texas Instruments Inc.)
Uplay (HKLM-x32\...\Uplay) (Version: 22.1 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Wooxy version 1.5.0.7 (HKLM-x32\...\{C183CD14-47D8-4F98-AF06-4744CB834C8E}_is1) (Version: 1.5.0.7 - Chewy)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-09-16] (NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {035EF97E-E5C4-407A-8EB5-99369F3EAC20} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-09-19] (NVIDIA Corporation)
Task: {0D511507-7062-442B-A774-DDD8EEFE7EF3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-12] (Microsoft Corporation)
Task: {1A688D6C-F181-43F2-B900-05DB54B81E85} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-19] (NVIDIA Corporation)
Task: {1BA47D11-C182-4932-8F88-3CBD87D1C9AC} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {2BDF7672-A4F9-421D-81FD-B601FB14D205} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-19] (NVIDIA Corporation)
Task: {2DCE23A6-0895-4C4B-A653-9CC9427BBD26} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-10-14] (Microsoft Corporation)
Task: {3A3A6439-287D-4EE5-9703-99746ABB3D28} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {4C3045DD-20EE-4FCA-B64C-DD13368CA641} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-07-26] (Intel(R) Corporation)
Task: {692F95F0-A958-4E02-99AE-28CB48F4AF9C} - System32\Tasks\MSISW_Host => C:\Windows\SysWoW64\muachost.exe [2015-08-18] (MSI)
Task: {6DCEA42C-8273-461E-B7F0-B21573EF6C5F} - System32\Tasks\SafeZone scheduled Autoupdate 1477477294 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software)
Task: {70C2D58A-7CA8-4C09-A330-1C1A080F5A95} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-04] ()
Task: {76D1DCA7-A34C-4E3E-A5A4-F0A3FE079279} - System32\Tasks\{3D7415F2-100A-40EC-A842-0D6E012D9A24} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxps://ui.skype.com/ui/0/7.31.80.104/fr/abandoninstall?page=tsProgressBar
Task: {81266F48-ED09-4039-A429-10F1DC0AC827} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-04] ()
Task: {96AF3239-5493-41F5-8DE4-28F3DF234057} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-09-19] (NVIDIA Corporation)
Task: {990FFC7D-1E3B-4D23-A2F9-2898B0EC3519} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-09-19] (NVIDIA Corporation)
Task: {9AA03D7C-C873-4D7B-9BF4-F44633F2B4BC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-10-14] (Microsoft Corporation)
Task: {A996324F-86E6-4D0D-9D2F-7FE712D2E64E} - System32\Tasks\S-1-5-21-3087169588-2766957360-1688633369-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-03-18] (Microsoft Corporation)
Task: {A9CEEAB0-A496-4F10-A1FE-092BD3AE051D} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-19] (NVIDIA Corporation)
Task: {BE542447-23DE-4EE3-9183-312F623C6EF8} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [2015-05-05] (Intel Corporation)
Task: {C1EC83B7-C2D9-42CC-B99F-2E00C0DFBB20} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-19] (NVIDIA Corporation)
Task: {D03968E8-8170-4EF3-B3AF-A4B1C6E6EEFE} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-12] (Microsoft Corporation)
Task: {D6CE93F1-3B1A-41D3-A361-9B09AF7047FA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {EACCF51B-8632-4404-9077-4479E88E93FF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {F17A9E50-A94F-4225-B320-6DB9196E516B} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [2016-07-28] (Micro-Star INT'L CO., LTD.)
Task: {F3830A38-7B53-4239-85EF-AC1C15B2B3B9} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-09-19] (NVIDIA Corporation)
Task: {FF9C6FE0-2600-4CF7-8DEF-C7F0D9870505} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-10-11] (AVAST Software)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Raccourcis & WMI ========================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)


==================== Modules chargés (Avec liste blanche) ==============

2017-10-16 18:34 - 2017-10-04 13:15 - 002358728 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2017-10-16 18:34 - 2017-10-04 13:15 - 002289096 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2016-10-26 12:45 - 2017-09-19 09:23 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-07-20 00:09 - 2017-07-20 00:09 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2016-12-16 02:01 - 2016-11-09 21:07 - 000018360 _____ () C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\NahimicMonitor.exe
2016-12-16 02:01 - 2016-11-09 19:26 - 000025016 _____ () C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
2016-12-16 02:00 - 2016-06-14 17:35 - 000187392 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 22:59 - 2017-03-20 07:12 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000067408 _____ () C:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll
2017-10-16 06:29 - 2017-09-21 09:29 - 004022616 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libglesv2.dll
2017-10-16 06:29 - 2017-09-21 09:29 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libegl.dll
2017-10-16 18:04 - 2017-10-12 10:59 - 031229440 _____ () C:\Users\hasan\AppData\Local\Google\Chrome\User Data\PepperFlash\27.0.0.170\pepflashplayer.dll
2017-04-07 20:10 - 2017-04-07 20:11 - 001695440 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8600.40525.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll
2017-10-10 14:59 - 2017-10-10 14:59 - 001226416 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8600.40525.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll
2017-09-14 21:08 - 2017-09-14 21:09 - 003553704 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8600.40525.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2016-12-16 02:00 - 2016-06-14 17:35 - 000163328 _____ () C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll
2017-07-05 10:33 - 2017-07-05 10:33 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000217088 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000234280 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-10-11 17:57 - 2017-10-11 17:57 - 000700656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-10-26 12:45 - 2017-09-19 09:23 - 069807552 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2016-10-26 12:45 - 2017-09-19 09:23 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-08-30 01:19 - 2016-08-30 01:19 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)


==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BsScanner => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)


==================== Hosts contenu: ===============================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2016-07-16 13:47 - 2017-05-21 21:45 - 000000824 ____N C:\WINDOWS\system32\Drivers\etc\hosts


==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\hasan\Downloads\_Elder_Scrolls_Online__assassin_with_the_bow_045876_.jpg
DNS Servers: 192.168.0.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

HKLM\...\StartupApproved\StartupFolder: => "3DEXPERIENCE Launcher.lnk"
HKLM\...\StartupApproved\Run: => "DSSystemTray"
HKLM\...\StartupApproved\Run32: => "Live Update"
HKLM\...\StartupApproved\Run32: => "Fast Boot"
HKLM\...\StartupApproved\Run32: => "MSI Gaming Lan Manager"
HKLM\...\StartupApproved\Run32: => "Super Charger"
HKLM\...\StartupApproved\Run32: => "USB_Speed_Up"
HKLM\...\StartupApproved\Run32: => "Arc"
HKLM\...\StartupApproved\Run32: => "Razer Synapse"
HKLM\...\StartupApproved\Run32: => "Kraken71ChromaHelper"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\StartupFolder: => "Nexon Launcher.lnk"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000000"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "MyComGames"
HKU\S-1-5-21-3087169588-2766957360-1688633369-1001\...\StartupApproved\Run: => "Skype"

==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [{7D1F950D-A0E6-4685-9888-4D34B377C2F4}] => (Allow) C:\Program Files\Microsoft MPI\Bin\smpd.exe
FirewallRules: [{7873DB48-3B26-4879-B128-B9820A2612FA}] => (Allow) C:\Program Files\Microsoft MPI\Bin\smpd.exe
FirewallRules: [{CD2EA04A-FB6D-4E6D-A311-040D895E26F9}] => (Allow) C:\Program Files\Microsoft MPI\Bin\mpiexec.exe
FirewallRules: [{937E0430-8E5A-49B2-9D1F-DA72E0DA9E1A}] => (Allow) C:\Program Files\Microsoft MPI\Bin\mpiexec.exe
FirewallRules: [UDP Query User{F9D471CB-01FF-4D5B-9C1A-A19E5000E427}C:\users\hasan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hasan\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{B9E5E47B-67A8-4AC6-939C-C5E6F92C4CA2}C:\users\hasan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hasan\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{C4EF7AF3-9708-4CB2-B89D-A99FF607BCD9}D:\games\bin64\blackdesert64.exe] => (Allow) D:\games\bin64\blackdesert64.exe
FirewallRules: [TCP Query User{6C837167-BE50-4B53-8850-0298F58CE0CC}D:\games\bin64\blackdesert64.exe] => (Allow) D:\games\bin64\blackdesert64.exe
FirewallRules: [{34D28D59-4365-433C-B9FF-ADA4E6E95961}] => (Allow) C:\Users\hasan\AppData\Local\MyComGames\MyComGames.exe
FirewallRules: [{8E9F9FF1-B41F-4CE4-B7BD-A1C53CEB705E}] => (Allow) C:\Users\hasan\AppData\Local\MyComGames\MyComGames.exe
FirewallRules: [{0B3F7729-88C0-4870-BD46-7EC7DA99C53F}] => (Allow) C:\Users\hasan\Downloads\BlackDesert_Downloader.exe
FirewallRules: [{548B5256-21F8-4C26-BAD4-D349F53CE87B}] => (Allow) C:\Users\hasan\Downloads\BlackDesert_Launcher.exe
FirewallRules: [{9EF70650-0F4A-4596-B133-4EEA479F50C6}] => (Allow) C:\Users\hasan\Downloads\bin64\BlackDesert64.exe
FirewallRules: [{3671D78C-B170-4F58-B160-61CEE313965E}] => (Allow) C:\Users\hasan\Downloads\bin\BlackDesert32.exe
FirewallRules: [{C113EFF9-3609-489E-B9DE-68223B982CA9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{EA03F685-E73E-4B99-A360-8ACA1D056853}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{6B1DB8BA-6F7B-4111-A93F-B6CB28C258ED}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{B14627F0-2FF8-43A3-A9B2-2E45A79A37C6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{EA12E3DA-27B5-4EAA-82EE-779C36A1EFEF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{089AB357-3080-411B-97B9-91C6C5C2B391}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{EB671966-D616-48AB-8BEF-6F7FA2D2BF4C}] => (Allow) LPort=26789
FirewallRules: [{9C510F44-B0D1-4513-B071-1365065F2CB0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{8C1E9C86-0822-41A1-A97D-38B2E1850ECD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [UDP Query User{3D25C239-E6C4-4B53-8E3E-56892173B22C}D:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [TCP Query User{B39830A8-8010-4A71-AD86-E981EAFA8EA5}D:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{F195058A-906C-44A9-A881-56A4569194C7}] => (Allow) D:\steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{7949A34C-5EFE-41C3-876D-1B3EA19DB404}] => (Allow) D:\steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{58917F53-B5A4-4DCC-BB31-0C1509DBD252}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{57939D6C-B4EE-475C-B0E9-6E0647341454}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{13869D60-55DA-4933-8E4B-C066E6244E2A}] => (Allow) C:\Users\hasan\AppData\Local\Chromium\Application\chrome.exe
FirewallRules: [{2E6E7240-E7D0-486D-B2CA-A999E1DCCC4D}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{60DF9CB0-B0D2-4A73-89F2-F07FA9B60827}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [UDP Query User{D77FD875-E2D7-4CA8-8BA5-C64198932334}C:\users\hasan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\hasan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{445A49F5-DDA6-43C9-AB49-DECD15C844D1}C:\users\hasan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\hasan\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{676448B4-BF4D-4398-A2F3-A9A56A0B6A84}D:\blizzard\overwatch\overwatch.exe] => (Allow) D:\blizzard\overwatch\overwatch.exe
FirewallRules: [TCP Query User{2EA65712-0931-4ED9-A62A-F289F72A8A05}D:\blizzard\overwatch\overwatch.exe] => (Allow) D:\blizzard\overwatch\overwatch.exe
FirewallRules: [UDP Query User{780BDF9C-F69E-4F9F-84FE-3E37906B7E4E}D:\gameforgelive\games\fra_fra\tera\tera-launcher.exe] => (Allow) D:\gameforgelive\games\fra_fra\tera\tera-launcher.exe
FirewallRules: [TCP Query User{1FD95972-07C7-4CB7-AD80-9886144A7D23}D:\gameforgelive\games\fra_fra\tera\tera-launcher.exe] => (Allow) D:\gameforgelive\games\fra_fra\tera\tera-launcher.exe
FirewallRules: [UDP Query User{89618EE5-3665-4972-BF81-A4E2EC96A166}D:\neverwinter_fr\neverwinter\live\gameclient.exe] => (Allow) D:\neverwinter_fr\neverwinter\live\gameclient.exe
FirewallRules: [TCP Query User{B991FD5F-198F-493F-8026-E5E27E67F002}D:\neverwinter_fr\neverwinter\live\gameclient.exe] => (Allow) D:\neverwinter_fr\neverwinter\live\gameclient.exe
FirewallRules: [{B0C4C875-667A-46CA-A1CD-60EE35F8AF5A}] => (Allow) D:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{7FD031FB-4199-4273-B470-B15C606B6DB2}] => (Allow) D:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{39BAD62B-1492-416D-843D-E860EA00305D}] => (Allow) D:\steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{2BC49E41-68FC-4C91-B5DF-80A9FB458AFD}] => (Allow) D:\steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{A2AEA2AF-E8F6-4E03-BF98-C727112F3E33}] => (Allow) C:\Users\hasan\Desktop\Steam.exe
FirewallRules: [{5FD62C5F-CB2C-4D1A-89EA-067D6525ADC9}] => (Allow) C:\Users\hasan\Desktop\Steam.exe
FirewallRules: [{F4925839-10FD-4209-847A-93C7DB4FAD68}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{5E41D8FC-A464-4007-9418-6D531D71451B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{4B395461-77BA-45AC-8521-41877DE8F7D7}] => (Allow) D:\steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{5049AB86-277A-403C-80B5-14089755FD80}] => (Allow) D:\steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [TCP Query User{85895FA9-39DB-4B00-AEF6-78BF5FA5C8C2}C:\users\hasan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hasan\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{0878732C-FC24-4154-A1B9-0CAA5802FB56}C:\users\hasan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hasan\appdata\roaming\spotify\spotify.exe
FirewallRules: [{83DBF4A3-A4C2-4008-A3D3-F04DA7A40295}] => (Allow) D:\steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{7D7347B5-A956-4D21-A3AD-2945F7433EA4}] => (Allow) D:\steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [TCP Query User{B6E484FB-E250-455C-8D54-D50DB42CAFE6}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [UDP Query User{538071CE-AED5-4B71-AA9A-FCE1C103BDEA}D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [{A57E7E86-9D6D-4D23-BDA7-042308FFF35B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{0B79F1D7-2745-428B-8202-D0F884CF9268}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe
FirewallRules: [{D9D9354E-61B6-415A-BBB9-5EBCC5439E5C}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{00FE309A-9415-4240-A933-0FA39975B7C5}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix.exe
FirewallRules: [{00FF8402-756E-423B-8661-66ACB91EBB1A}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{123FA4B8-78AC-4D8C-89BC-BE7F4E4ADF3F}] => (Allow) D:\steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe
FirewallRules: [{BFC8AB07-1910-4C99-AF75-130872A03DC5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{22DC0F03-64CC-4C2B-BB00-3878DDD9A65A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{F667D855-4B0C-4A79-938D-177A0FA92936}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{EB8CD9C5-5945-4347-BA8A-39526BD037F2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{AEFC402B-3DF1-4734-B391-E77E2714E077}D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{50830CB6-CAF7-4153-885C-B96E18B1CB51}D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [{32224E50-657C-4AFA-8C1D-BDACB7AA8CB9}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe
FirewallRules: [{8E54768E-6E4B-4405-AE62-3CBDCB92DDA3}] => (Allow) D:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{BF20264F-7E4D-4A63-9C82-071B15D09AA9}] => (Allow) D:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{82A16D05-13CB-4505-BE65-D7583B42FEC4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{62EA00C7-298E-4FD9-8001-B3D3E9E839C8}D:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{EF840655-F36F-43C0-BA18-CA857AE7E8B4}D:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{D45DE2AF-033C-4985-A04C-13A10F30DCFA}D:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{1836027A-4C34-45EF-957B-1409FB332D38}D:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{CC2B23C2-FDA4-4BED-91B1-43A951DB1481}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Points de restauration =========================

16-10-2017 07:24:59 Fin de désinfection

==================== Éléments en erreur du Gestionnaire de périphériques =============

Name: Clavier standard PS/2
Description: Clavier standard PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Claviers standard)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Souris Microsoft PS/2
Description: Souris Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (10/16/2017 06:37:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MSIDDRService.exe, version : 3.0.0.8, horodatage : 0x58350289
Nom du module défaillant : MSIDDRService.exe, version : 3.0.0.8, horodatage : 0x58350289
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0002622f
ID du processus défaillant : 0xbd0
Heure de début de l’application défaillante : 0x01d3469d0b59a870
Chemin d’accès de l’application défaillante : C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
Chemin d’accès du module défaillant: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
ID de rapport : 9f75f93d-c873-4ebb-9d04-fb2173f77faa
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (10/16/2017 06:37:30 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MSI_LiveUpdate_Service.exe, version : 1.0.0.37, horodatage : 0x582449b8
Nom du module défaillant : NDA.dll_unloaded, version : 1.0.0.15, horodatage : 0x581aa4cc
Code d’exception : 0xc0000005
Décalage d’erreur : 0x000f650e
ID du processus défaillant : 0xbe8
Heure de début de l’application défaillante : 0x01d3469d0b5e299d
Chemin d’accès de l’application défaillante : C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
Chemin d’accès du module défaillant: NDA.dll
ID de rapport : 763cb44a-8b4f-454c-ae76-9f2031d93823
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (10/16/2017 05:57:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MSIDDRService.exe, version : 3.0.0.8, horodatage : 0x58350289
Nom du module défaillant : MSIDDRService.exe, version : 3.0.0.8, horodatage : 0x58350289
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0002622f
ID du processus défaillant : 0xafc
Heure de début de l’application défaillante : 0x01d346976f69e0a3
Chemin d’accès de l’application défaillante : C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
Chemin d’accès du module défaillant: C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe
ID de rapport : 5d04f2a1-3346-4272-a79b-940b269e6a73
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (10/16/2017 05:57:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MSI_LiveUpdate_Service.exe, version : 1.0.0.37, horodatage : 0x582449b8
Nom du module défaillant : NDA.dll_unloaded, version : 1.0.0.15, horodatage : 0x581aa4cc
Code d’exception : 0xc0000005
Décalage d’erreur : 0x000f650e
ID du processus défaillant : 0xb6c
Heure de début de l’application défaillante : 0x01d346976f749f39
Chemin d’accès de l’application défaillante : C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
Chemin d’accès du module défaillant: NDA.dll
ID de rapport : 7b5b749e-b366-4426-ab72-4877cbd6b62b
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (10/16/2017 05:55:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (10/16/2017 05:53:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Photos_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (10/16/2017 05:53:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (10/16/2017 05:51:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (10/16/2017 05:51:37 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (10/16/2017 05:45:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-B31HIDU)
Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.


Erreurs système:
=============
Error: (10/16/2017 06:37:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service MSI Command Center DDR Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (10/16/2017 06:37:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service MSI Live Update Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (10/16/2017 06:37:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur :
Cette demande n’est pas prise en charge.

Error: (10/16/2017 05:57:37 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service MSI Command Center DDR Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (10/16/2017 05:57:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service MSI Live Update Service s’est terminé de façon inattendue pour la 1ème fois.

Error: (10/16/2017 05:57:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Modules de génération de clés IKE et AuthIP s’est arrêté avec l’erreur :
La zone de données passée à un appel système est insuffisante.

Error: (10/16/2017 05:57:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur :
Cette demande n’est pas prise en charge.

Error: (10/16/2017 05:57:13 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: L’arrêt système précédant à 17:40:42 le ‎16/‎10/‎2017 n’était pas prévu.

Error: (10/16/2017 05:56:10 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-B31HIDU)
Description: Le serveur {DCAB0989-1301-4319-BE5F-ADE89F88581C} ne s’est pas enregistré sur DCOM avant la fin du temps imparti.

Error: (10/16/2017 05:41:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service cFosSpeed System Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service.


CodeIntegrity:
===================================
Date: 2017-09-07 14:39:31.466
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-12 12:57:14.421
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-12 00:20:35.909
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-11 13:31:54.478
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-10 14:22:24.135
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-10 14:22:21.175
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-07-03 10:51:57.027
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-06-28 21:30:36.916
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-06-28 19:34:35.188
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.

Date: 2017-06-16 18:26:49.644
Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume5\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements.


==================== Infos Mémoire ===========================

Processeur: Intel(R) Core(TM) i5-6500 CPU @ 3.20GHz
Pourcentage de mémoire utilisée: 28%
Mémoire physique - RAM - totale: 16343.65 MB
Mémoire physique - RAM - disponible: 11666.71 MB
Mémoire virtuelle totale: 18775.65 MB
Mémoire virtuelle disponible: 13557.45 MB

==================== Lecteurs ================================

Drive b: (RAMDisk) (Fixed) (Total:0.25 GB) (Free:0.25 GB) FAT
Drive c: () (Fixed) (Total:232.19 GB) (Free:157.29 GB) NTFS
Drive d: (Nouveau nom) (Fixed) (Total:931.39 GB) (Free:505.02 GB) NTFS

==================== MBR & Table des partitions ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité