Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 26-10-2016 Exécuté par Laurence (27-10-2016 16:38:50) Exécuté depuis C:\Users\Laurence\Desktop Windows 10 Home Version 1511 (X64) (2016-05-27 12:41:38) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3598442851-1422663116-1831931895-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3598442851-1422663116-1831931895-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3598442851-1422663116-1831931895-1003 - Limited - Enabled) Invité (S-1-5-21-3598442851-1422663116-1831931895-501 - Limited - Disabled) Laurence (S-1-5-21-3598442851-1422663116-1831931895-1001 - Administrator - Enabled) => C:\Users\Laurence ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.205 - Adobe Systems Incorporated) Adobe Reader XI (11.0.18) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.18 - Adobe Systems Incorporated) Avast Antivirus Gratuit (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software) Box Sync (HKLM\...\{5C15714C-1956-47D4-9C1D-452CC2C2C10B}) (Version: 4.0.7724.0 - Box, Inc.) Box Sync (x32 Version: 4.0.5309.0 - Box Inc.) Hidden Camtasia Studio 8 (HKLM-x32\...\{A2A41B60-D51F-4C04-BC94-B4C94F7B6DC0}) (Version: 8.6.0.2054 - TechSmith Corporation) ComicRack v0.9.160 (HKLM\...\ComicRack) (Version: v0.9.160 - cYo Soft) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.16.50 - Conexant) Configuration DivX (HKLM\...\DivX Setup) (Version: 3.0.0.83 - DivX, LLC) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.6.5.1 - Dolby Laboratories Inc) Dragon NaturallySpeaking 11 (HKLM-x32\...\{EFFA53BC-8C04-2E21-3D90-A13B1697B0CA}) (Version: 11.0.200 - Nuance Communications Inc.) Étude pour l'amélioration du produit HP ENVY 5640 series (HKLM\...\{9DA6AA50-3280-4C0A-A296-E260B61DC0E1}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) F.lux (HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\Flux) (Version: - ) Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.101 - Google Inc.) Google Update Helper (x32 Version: 1.3.21.169 - Google Inc.) Hidden HP ENVY 5640 series Aide (HKLM-x32\...\{50BB2714-5C7C-4040-965F-A23532545903}) (Version: 34.0.0 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation) K-Lite Codec Pack 10.9.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.9.5 - ) Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 3.15.0414.1 - Vimicro) Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0333}) (Version: 1.12.907.1 - Vimicro) Lenovo OneKey Recovery (Version: 8.0.0.1219 - CyberLink Corp.) Hidden Lenovo Transition (HKLM\...\Lenovo Transition) (Version: 1.4.2.25 - Lenovo) Logiciel de base du périphérique HP ENVY 5640 series (HKLM\...\{933E6CB3-157E-4258-8F4A-50A0793D875E}) (Version: 34.2.117.50647 - Hewlett-Packard Co.) Microsoft Office Famille et Etudiant 2013 - fr-fr (HKLM\...\HomeStudentRetail - fr-fr) (Version: 15.0.4867.1003 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: - ) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Motion Control (HKLM\...\Motion Control) (Version: 1.1.2.43 - Lenovo) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 49.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 fr)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla) Nitro Pro 8 (HKLM\...\{34BE77EE-B563-49D7-A8A0-FFD76D29BBD3}) (Version: 8.0.10.7 - Nitro) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4867.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4867.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4867.1003 - Microsoft Corporation) Hidden Open-Sankoré (HKLM-x32\...\{E63D17F8-D9DA-479D-B9B5-0D101A03703B}_is1) (Version: - Open-Sankore) Package de pilotes Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo) Paint.NET v3.5.11 (HKLM\...\{72EF03F5-0507-4861-9A44-D99FD4C41418}) (Version: 3.61.0 - dotPDN LLC) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden Scrivener (HKLM-x32\...\Scrivener 1900) (Version: 1900 - Literature and Latte) Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) <==== ATTENTION Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.23.2.4686 - Enigma Software Group, LLC) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.5 - Synaptics Incorporated) System NotifierV08.10 (HKLM-x32\...\System NotifierV08.10) (Version: 1.36.01.22 - HQ-VideoV08.10) <==== ATTENTION Transana 2.52 (HKLM-x32\...\Transana 2.52_is1) (Version: 2.52 - ) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Viber (HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\{7de2db6a-6f4b-4b45-82b9-57d5d7f1c952}) (Version: 5.4.0.1664 - Viber Media Inc.) Viber (x32 Version: 5.4.0.1664 - Viber Media Inc.) Hidden VideoPad Video Editor (HKLM-x32\...\VideoPad) (Version: 3.57 - NCH Software) Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64) (HKLM\...\{4A5A427F-BA39-4BF0-7777-9A47FBE60C9F}) (Version: 11.0.0 - Nuance Communications Inc.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Wacom (HKLM\...\Pen Tablet Driver) (Version: 5.3.3-3 - Wacom Technology Corp.) WebTablet FB Plugin 32 bit (HKLM-x32\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) WebTablet FB Plugin 64 bit (HKLM\...\Wacom WebTabletPlugin for Internet Explorer and Netscape) (Version: 2.1.0.3 - Wacom Technology Corp.) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.31 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.3) (Version: 1.3.3 - Xvid Team) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Laurence\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => Pas de fichier CustomCLSID: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001_Classes\CLSID\{092dfa86-5807-5a94-bf3b-5a53ba9e5308}\InprocServer32 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) CustomCLSID: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Laurence\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00032A14-B8F6-42EA-8067-6B0C2B561743} - System32\Tasks\YTDownloader => C:\Program Files (x86)\YTDownloader\YTDownloader.exe <==== ATTENTION Task: {0973FE08-EB43-4F67-9282-55F241A7A737} - System32\Tasks\DivXUpdate => C:\Program Files (x86)\Common Files\DivX Shared\Qt4.8\DivXUpdate.exe [2016-08-01] (DivX, LLC) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0D876822-2232-40AD-B2B4-7FD4B3FA4DE7} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {13A3D23E-DE19-490D-A8B5-3D8FD5CD657E} - System32\Tasks\gameo_update => C:\Users\Laurence\AppData\Roaming\Gameo\gameo.exe [2015-07-04] () <==== ATTENTION Task: {17189CAB-8276-4658-83E9-4641AE0AC7A0} - System32\Tasks\{1DF40D82-5CC5-4EC9-94B9-605CB24B4CC8} => Firefox.exe hxxp://ui.skype.com/ui/0/6.16.0.105/fr/abandoninstall?page=tsBing Task: {1B6A2562-D425-425E-8B2D-4CC0B2563A4D} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Laurence\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-25] (Microsoft Corporation) Task: {1BC6FE3B-9177-4EF6-BF97-E772DB6C7084} - System32\Tasks\{2F9C515D-4D0B-4BB4-A444-7AE291884AE0} => Firefox.exe hxxp://ui.skype.com/ui/0/6.21.0.104/fr/abandoninstall?page=tsMain Task: {1DF1A3E0-01DC-4CAA-8728-F2A6E804647E} - System32\Tasks\Optimizer Pro Schedule => C:\Program Files (x86)\Optimizer Pro 3.01\OptProLauncher.exe <==== ATTENTION Task: {1F45FFCC-F193-4C43-893C-2A47409FAE32} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09] (Google Inc.) Task: {247A1D02-3ADB-418A-9193-4594DB43163B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-10-04] (Microsoft Corporation) Task: {2ACE4B05-EF31-4315-8DD6-CE5AACD8730B} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: {2EA3E9EA-7B58-4930-8E96-A994934DEFF2} - System32\Tasks\HP AR Program Upload - de24b468217145c38a25347d6a4f5c1156216415b00b41e1bca44e82c952de5d => C:\Program Files\HP\HP ENVY 5640 series\bin\HPRewards.exe [2014-08-22] (Hewlett-Packard Development Company, LP) Task: {30489B7F-0F98-4E30-8E75-2D02330F8183} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {33C7B7FD-C7F7-4DB8-987C-ADC25464D305} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Pas de fichier <==== ATTENTION Task: {38C5FF42-3CEC-424B-824D-07BF4A2728E3} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {39EF065B-B91B-4724-B9E3-E2E1DEDDC1E9} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {3EF78C77-1667-49D3-8000-A4A220640A48} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {4424F824-8ED7-46EE-9352-B8E75CE2CA58} - \Microsoft\Windows\Setup\gwx\rundetector -> Pas de fichier <==== ATTENTION Task: {4A721CDB-15DA-4F2F-97FA-A568F45797EF} - System32\Tasks\{25A5E0C2-41F6-444F-90D3-E06356EF98BF} => Firefox.exe hxxp://ui.skype.com/ui/0/6.16.0.105/fr/abandoninstall?page=tsBing Task: {4ADF7AC1-278E-4467-A760-6CDF37EAC221} - System32\Tasks\{891ABCF9-631D-467E-A962-85FB093D6FD6} => Firefox.exe hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 Task: {4D8EA61F-95D7-4362-882A-305C51DAA09A} - System32\Tasks\{04589C96-5D2E-49B2-9923-EB2CA03365A7} => Firefox.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.14.0.104&LastError=12007 Task: {57642421-FF41-4C42-B184-82DA393EB48F} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {5880593C-B3FF-498E-8BA1-39AF584DD7FF} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION Task: {5B0BBDB5-5CC3-444F-883D-D2A79DA9735C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {5F72C594-655F-434D-91A5-C65EAC94278C} - System32\Tasks\runTask => C:\Users\Laurence\AppData\Local\Temp/Updater.exe Task: {62135E46-A351-4246-96B4-99FA05524B13} - System32\Tasks\HPCustParticipation HP ENVY 5640 series => C:\Program Files\HP\HP ENVY 5640 series\Bin\HPCustPartic.exe [2014-08-22] (Hewlett-Packard Development Company, LP) Task: {673EA43B-BB58-4544-AF5B-084F70562F4A} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-10-13] (Microsoft Corporation) Task: {69973F71-278C-48E2-8739-50E31F02940F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-09] (Google Inc.) Task: {70A3F819-0DA5-4545-B779-9D89C7930951} - System32\Tasks\{7D7CE6E1-255F-4460-AAFF-8B079C638EA0} => Firefox.exe hxxp://ui.skype.com/ui/0/7.2.0.103/fr/abandoninstall?page=tsMain Task: {712F9896-F003-4BF2-8824-ED5F4FC93CC8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {72DC91A9-98F8-455B-9CBD-2231563DDAE4} - System32\Tasks\{DB58197A-7917-4787-884F-FF32B4E076C8} => Firefox.exe hxxp://ui.skype.com/ui/0/6.18.0.105/fr/go/help.faq.installer?LastError=1638 Task: {793D4EEF-0037-4904-BB4D-F9DDA2A39447} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {7D612D73-D060-4DA8-9B8A-9C6D70C01639} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-01-13] () Task: {8C2803F4-475D-412C-8ECD-44139FB50AF4} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-26] (Adobe Systems Incorporated) Task: {8D45EFFE-315B-43AC-9D23-98D47FD16E77} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {9C574BFD-766E-4E0B-BD09-9C719042D345} - System32\Tasks\ShopperProJSUpd => C:\Program Files (x86)\ShopperPro\updater.exe <==== ATTENTION Task: {9C99B9BF-1B29-4C3B-B58A-7F012BFA1C53} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {A322566B-3511-49FD-98C7-04BD0A0658F3} - System32\Tasks\SPBIW_UpdateTask_Time_323136303830383433332d2a55456c2d5a34575b413234 => Wscript.exe //B "C:\ProgramData\ShopperPro\spbihe.js" spbiu.exe /invoke /f:check_services /l:0 <==== ATTENTION Task: {AC2DCE02-B963-4A93-88AE-4E8A6064D883} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2016-10-04] (Microsoft Corporation) Task: {B4BC3D41-5450-4C7F-9EDC-27D6CA015D2C} - System32\Tasks\{5B163434-AC76-4644-B1C2-3A5B42D560EB} => Firefox.exe hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 Task: {B82B5B3E-DE99-492E-A360-E9F4BB727CB3} - System32\Tasks\{2FDDDB44-26B5-4F15-8E1F-1DAA7BE6BBAC} => Firefox.exe hxxp://ui.skype.com/ui/0/7.16.0.102/fr/abandoninstall?page=tsProgressBar Task: {D2A258DD-9A60-4F9A-9A34-6683EF585463} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: {D386C535-E209-4C5A-9C06-6F372574DD3C} - System32\Tasks\SafeZone scheduled Autoupdate 1468478846 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software) Task: {D5546886-0EA1-45EA-82A6-A04D3629FF1E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {ECA4AFF2-AC5D-4181-981F-AFB2B656BFCA} - System32\Tasks\{4B24EEF5-A3A6-4B9B-95DB-08650543B3D3} => Firefox.exe hxxp://ui.skype.com/ui/0/6.14.0.104/fr/abandoninstall?source=lightinstaller&page=tsInstall Task: {F65FC041-4FE9-4BBA-A6B1-C2FE995926BA} - System32\Tasks\updateTask => c:\task.vbs [2015-10-09] () Task: {F6CC585C-4E10-4362-9B20-1FBFE208318B} - System32\Tasks\gze3012 => C:\PROGRA~2\FAST-S~1\gze3012.exe <==== ATTENTION Task: {F857EC9B-62E7-411F-A0BB-81DE2DC7C983} - System32\Tasks\avast! Emergency Update Task: {FAD075E5-D6B3-4037-AECB-68A4313E087B} - System32\Tasks\3b988e3d-477b-4b35-9f84-c985c15d8fb3-3 => C:\Program Files (x86)\CinePlus-1.44V08.10\3b988e3d-477b-4b35-9f84-c985c15d8fb3-3.exe <==== ATTENTION Task: {FB403D98-54FC-4E7B-987A-70829BF760B3} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {FBC528A4-6B2F-43A0-911E-706431947286} - System32\Tasks\{F82BAEF7-73B2-4511-BDDA-CD5840DDD09D} => Firefox.exe hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\3b988e3d-477b-4b35-9f84-c985c15d8fb3-10_user.job => C:\Program Files (x86)\CinePlus-1.44V08.10\3b988e3d-477b-4b35-9f84-c985c15d8fb3-10.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\3b988e3d-477b-4b35-9f84-c985c15d8fb3-3.job => C:\Program Files (x86)\CinePlus-1.44V08.10\3b988e3d-477b-4b35-9f84-c985c15d8fb3-3.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\3b988e3d-477b-4b35-9f84-c985c15d8fb3-5_user.job => C:\Program Files (x86)\CinePlus-1.44V08.10\3b988e3d-477b-4b35-9f84-c985c15d8fb3-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-1-6.job => C:\Program Files (x86)\Object Browser\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-1-6.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-1-7.job => C:\Program Files (x86)\Object Browser\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-1-7.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-5.job => C:\Program Files (x86)\Object Browser\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-5_user.job => C:\Program Files (x86)\Object Browser\c1cc1f21-d3ce-4157-ad2c-4c2026f9d741-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dca34410-9931-4fcb-a165-95ed69d77450-10_user.job => C:\Program Files (x86)\System NotifierV08.10\dca34410-9931-4fcb-a165-95ed69d77450-10.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dca34410-9931-4fcb-a165-95ed69d77450-5.job => C:\Program Files (x86)\System NotifierV08.10\dca34410-9931-4fcb-a165-95ed69d77450-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\dca34410-9931-4fcb-a165-95ed69d77450-5_user.job => C:\Program Files (x86)\System NotifierV08.10\dca34410-9931-4fcb-a165-95ed69d77450-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-1-6.job => C:\Program Files (x86)\iWebar\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-1-6.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-1-7.job => C:\Program Files (x86)\iWebar\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-1-7.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-5.job => C:\Program Files (x86)\iWebar\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-5_user.job => C:\Program Files (x86)\iWebar\e92106e9-cf5d-4ee3-b2f0-89b3e1394e1f-5.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\GNa2meN7YKoxv41ihLKbpQ.job => C:\Users\Laurence\AppData\Roaming\GNa2meN7YKoxv41ihLKbpQ.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\JxNcKfnS.job => C:\Users\Laurence\AppData\Roaming\JxNcKfnS.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\XFIOKxtCvx4SJma.job => C:\Users\Laurence\AppData\Roaming\XFIOKxtCvx4SJma.exe <==== ATTENTION ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Laurence\Favorites\NCH Software Download Site.lnk -> hxxp://www.nchsoftware.com/index.html ShortcutWithArgument: C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ShortcutWithArgument: C:\Users\Laurence\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ShortcutWithArgument: C:\Users\Laurence\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ShortcutWithArgument: C:\Users\Laurence\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WarThunder.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ShortcutWithArgument: C:\Users\Laurence\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> www.tohotweb.com?oem=sunadfrv3&uid=S15GNSAD504682_SAMSUNGMZMTD256HAGM-000L1&tm=1444354950 ==================== Modules chargés (Avec liste blanche) ============== 2015-07-01 09:45 - 2015-07-01 09:45 - 00022528 _____ () C:\WINDOWS\System32\us005lm.dll 2015-10-08 11:57 - 2015-10-08 11:57 - 00112560 _____ () C:\Program Files (x86)\YTDownloader\BrowserHelperSrv.exe 2014-03-19 08:40 - 2016-05-24 09:51 - 00116416 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-10-11 17:41 - 2013-10-11 17:41 - 00059472 _____ () C:\ProgramData\YogaSmartSwicth\Server\x64\dptf.dll 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-09-19 19:15 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-19 19:15 - 2016-09-07 07:39 - 02656952 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-08-25 22:26 - 2016-08-25 22:26 - 01864384 _____ () C:\Users\Laurence\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll 2016-02-13 14:52 - 2016-02-13 14:52 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-13 11:03 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2015-03-26 18:40 - 2014-01-13 08:24 - 01356568 _____ () C:\Program Files\Tablet\Pen\libxml2.dll 2016-09-19 19:12 - 2016-09-07 06:15 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-09-19 19:12 - 2016-09-07 06:10 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-19 19:12 - 2016-09-07 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-09-19 19:12 - 2016-09-07 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2013-10-11 17:41 - 2013-10-11 17:41 - 00209416 _____ () C:\ProgramData\YogaSmartSwicth\yogaserver.exe 2016-09-15 15:46 - 2016-09-15 15:46 - 01158032 _____ () C:\Program Files\Box\Box Sync\_hashlib.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00053648 _____ () C:\Program Files\Box\Box Sync\_socket.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 01751952 _____ () C:\Program Files\Box\Box Sync\_ssl.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00134544 _____ () C:\Program Files\Box\Box Sync\win32api.pyd 2012-10-27 07:27 - 2012-10-27 07:27 - 00137728 _____ () C:\Program Files\Box\Box Sync\pywintypes27.dll 2012-10-27 07:29 - 2012-10-27 07:29 - 00503808 _____ () C:\Program Files\Box\Box Sync\pythoncom27.dll 2016-09-15 15:46 - 2016-09-15 15:46 - 00118160 _____ () C:\Program Files\Box\Box Sync\_ctypes.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00050576 _____ () C:\Program Files\Box\Box Sync\_psutil_windows.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00695696 _____ () C:\Program Files\Box\Box Sync\unicodedata.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00009616 _____ () C:\Program Files\Box\Box Sync\clr.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00033168 _____ () C:\Program Files\Box\Box Sync\ujson.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00016784 _____ () C:\Program Files\Box\Box Sync\select.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00172944 _____ () C:\Program Files\Box\Box Sync\_elementtree.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00170384 _____ () C:\Program Files\Box\Box Sync\pyexpat.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00444816 _____ () C:\Program Files\Box\Box Sync\win32com.shell.shell.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00029072 _____ () C:\Program Files\Box\Box Sync\win32event.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00155536 _____ () C:\Program Files\Box\Box Sync\win32file.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00065424 _____ () C:\Program Files\Box\Box Sync\_sqlite3.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00142224 _____ () C:\Program Files\Box\Box Sync\win32security.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00050064 _____ () C:\Program Files\Box\Box Sync\win32process.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00036752 _____ () C:\Program Files\Box\Box Sync\win32cred.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00036240 _____ () C:\Program Files\Box\Box Sync\Crypto.Cipher._AES.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00014224 _____ () C:\Program Files\Box\Box Sync\Crypto.Util.strxor.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00016784 _____ () C:\Program Files\Box\Box Sync\Crypto.Random.OSRNG.winrandom.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00017296 _____ () C:\Program Files\Box\Box Sync\Crypto.Util._counter.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00059792 _____ () C:\Program Files\Box\Box Sync\win32service.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00032144 _____ () C:\Program Files\Box\Box Sync\_yappi.pyd 2016-09-15 15:46 - 2016-09-15 15:46 - 00037776 _____ () C:\Program Files\Box\Box Sync\_multiprocessing.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00027536 _____ () C:\Program Files\Box\Box Sync\win32clipboard.pyd 2016-09-15 15:45 - 2016-09-15 15:45 - 00229264 _____ () C:\Program Files\Box\Box Sync\win32gui.pyd 2016-09-15 15:43 - 2016-09-15 15:43 - 00030608 _____ () C:\Program Files\Box\Box Sync\BoxSyncMonitor.exe 2009-08-29 08:00 - 2009-08-29 08:00 - 00966656 _____ () C:\Users\Laurence\Local Settings\Apps\F.lux\flux.exe 2013-10-11 17:39 - 2013-10-11 17:39 - 00172112 _____ () C:\Program Files (x86)\Lenovo\MotionControl\MotionControl.exe 2016-05-27 17:46 - 2016-05-27 17:47 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-08-16 19:10 - 2016-08-16 19:11 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-08-16 19:10 - 2016-08-16 19:11 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-06-03 17:15 - 2016-06-03 17:16 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2016-05-27 16:04 - 2016-05-27 16:04 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2016-09-10 19:48 - 2016-09-10 19:48 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-09-10 19:49 - 2016-09-10 19:49 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-10-27 15:29 - 2016-10-27 15:29 - 03124112 _____ () C:\Program Files\AVAST Software\Avast\defs\16102701\algo.dll 2013-10-11 17:28 - 2012-06-25 04:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-10-11 17:41 - 2013-10-11 17:41 - 00269904 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\GuiSys.dll 2013-10-11 17:41 - 2013-10-11 17:41 - 00018000 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\SimpRes.dll 2013-10-11 17:41 - 2013-10-11 17:41 - 00018000 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\LangHlpr.dll 2016-08-25 22:26 - 2016-08-25 22:26 - 01383616 _____ () C:\Users\Laurence\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2016-08-25 22:27 - 2016-08-25 22:27 - 00118976 _____ () C:\Users\Laurence\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll 2013-10-11 17:39 - 2013-10-11 17:39 - 01623632 _____ () C:\Program Files (x86)\Lenovo\MotionControl\eyeKeys.dll 2013-10-11 17:39 - 2013-10-11 17:39 - 00030288 _____ () C:\Program Files (x86)\Lenovo\MotionControl\esmlib.dll 2016-09-22 09:00 - 2016-09-22 09:00 - 00325824 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll 2016-07-12 08:51 - 2016-07-12 08:51 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-05-27 17:46 - 2016-05-27 17:47 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-05-27 17:46 - 2016-05-27 17:47 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\Temp:5F64C164 [246] AlternateDataStreams: C:\ProgramData\Temp:7FFED16F [135] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\123simsen.com -> www.123simsen.com Il y a 7864 plus de sites. ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 15:25 - 2015-11-27 18:02 - 00001067 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Laurence\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 212.27.40.241 - 212.27.40.240 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu is disabled. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "DptfPolicyLpmServiceHelper" HKLM\...\StartupApproved\Run: => "ForteConfig" HKLM\...\StartupApproved\Run: => "HotKeysCmds" HKLM\...\StartupApproved\Run: => "Persistence" HKLM\...\StartupApproved\Run: => "yogaserver" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "YouCam Tray" HKLM\...\StartupApproved\Run32: => "DivXMediaServer" HKLM\...\StartupApproved\Run32: => "DivXUpdate" HKLM\...\StartupApproved\Run32: => "mcui_exe" HKLM\...\StartupApproved\Run32: => "DNS7reminder" HKLM\...\StartupApproved\Run32: => "YTDownloader" HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\StartupApproved\StartupFolder: => "SmartWeb.lnk" HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\StartupApproved\Run: => "Xvid" HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\StartupApproved\Run: => "Selection Tools" HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\StartupApproved\Run: => "WindApp" HKU\S-1-5-21-3598442851-1422663116-1831931895-1001\...\StartupApproved\Run: => "YTDownloader" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{B4D37F38-AD2C-4056-9AAD-2161CC8CF618}C:\users\laurence\appdata\roaming\utorrent\updates\3.4.7_42330.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\updates\3.4.7_42330.exe FirewallRules: [TCP Query User{4A1425E7-B78D-433A-A3DD-D0190BDB114C}C:\users\laurence\appdata\roaming\utorrent\updates\3.4.7_42330.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\updates\3.4.7_42330.exe FirewallRules: [{1923B304-012E-4301-968C-6A1E450735E4}] => (Allow) LPort=8317 FirewallRules: [{BA7132C1-A115-406F-9C90-089EAFAAC2C5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [UDP Query User{8B85C0A3-F8D5-4F0A-B4C7-C2ADF10B41D0}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe FirewallRules: [TCP Query User{C8B9A886-A85C-453B-9EA6-D4145D5C4CBC}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe FirewallRules: [UDP Query User{A9B7DC10-BAD0-4134-8FA3-FF5761B782E2}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe FirewallRules: [TCP Query User{CE1B18FF-EF24-47AB-8991-D68102661CA1}C:\program files\comicrack\comicrack.exe] => (Allow) C:\program files\comicrack\comicrack.exe FirewallRules: [UDP Query User{998D7246-EBD6-410B-B6D8-38465945FD0E}C:\users\laurence\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\utorrent.exe FirewallRules: [TCP Query User{B6CAEEE8-2EFA-4144-A419-00F43F182B43}C:\users\laurence\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{3CF6FDCC-55D1-4569-9DD3-BA24B62A3EE7}C:\users\laurence\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\utorrent.exe FirewallRules: [TCP Query User{2BD0707E-11F1-40D1-8E6C-17BCF02A493D}C:\users\laurence\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\laurence\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{59B6BA65-0359-44F5-AC98-7A5633910E6B}C:\users\laurence\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\laurence\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{4DB5B61F-405E-4D6B-A36A-ADA6E5066C3F}C:\users\laurence\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\laurence\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{93AE7522-0624-4720-9683-E63CF3348D2A}C:\users\laurence\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\laurence\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{A1CE8A33-9466-4551-8053-BE083934996E}C:\users\laurence\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\laurence\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{AB67D15A-AFF7-4D84-B2B2-7B3B7E2C3DF6}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe FirewallRules: [TCP Query User{FED6F649-BDD4-4326-8301-367423918779}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe FirewallRules: [{0DA8C8E0-00BC-4438-9F5A-ED6844F8DDA2}] => (Allow) C:\Users\Laurence\AppData\Local\Temp\7zS2EC0\HPDiagnosticCoreUI.exe FirewallRules: [{E682BFC5-323B-4D11-BFBA-74BBDAAE49A2}] => (Allow) C:\Users\Laurence\AppData\Local\Temp\7zS2EC0\HPDiagnosticCoreUI.exe FirewallRules: [{0F94A329-AE90-4B3D-BDC0-F79E683F8584}] => (Allow) C:\Program Files\HP\HP ENVY 5640 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{3CE6BED9-A29C-4143-AA14-DC409CFDC5B2}] => (Allow) LPort=5357 FirewallRules: [{BBC4EFC0-9538-4900-9C8E-DB66F5EDDF58}] => (Allow) C:\Program Files\HP\HP ENVY 5640 series\Bin\DeviceSetup.exe FirewallRules: [{752DC8BC-EB91-40AB-8272-8B3233209211}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe FirewallRules: [{0A9CE884-DCF1-4476-8A4D-6F57AFD62ABF}] => (Allow) C:\Program Files (x86)\Sony\PlayMemories Home\PMBBrowser.exe FirewallRules: [{DADC12F8-43A5-42FA-B3B9-E07282100882}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{369ACD56-3DAA-44AA-8EC5-77A221E3B14A}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{6158B1CA-9867-4C49-B4A0-C66B5B00C64C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{1D0D542E-B528-4A94-9119-196DEA74C5A4}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{B715CD85-15BD-4714-8A4A-1A5A8985A4F7}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{33BE24E8-A11D-4DDA-96BB-917BC77FDFDD}] => (Allow) C:\Users\Laurence\Downloads\uTorrent.exe FirewallRules: [{2C0123E4-A7BA-4224-A0A0-DBB5AD7FE89D}] => (Allow) C:\Users\Laurence\Downloads\uTorrent.exe FirewallRules: [{02C393F0-4537-4581-8248-F2596C6AFA26}] => (Allow) C:\Users\Laurence\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{CA7E1C17-D13A-4F02-8340-53F0C63478F6}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{783F9DC8-D0A8-4BE7-ABD8-DDFBC6C141BD}] => (Allow) C:\Users\Laurence\Downloads\BitTorrent.exe FirewallRules: [{78335D4E-EB1B-49CB-B78A-87E857E2E218}] => (Allow) C:\Users\Laurence\Downloads\BitTorrent.exe FirewallRules: [{FAF78B71-AE32-4C6D-B001-5B702338A867}] => (Allow) C:\Users\Laurence\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{2C9D9118-6311-4643-BFD7-FDE3328CD7DB}] => (Allow) C:\Users\Laurence\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [TCP Query User{686B8425-FDF8-4B46-912A-AC6D2AEFE59B}C:\users\laurence\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\laurence\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{08601DF0-5CA7-4E84-9C5D-324F6CAA8EE9}C:\users\laurence\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\laurence\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{E15C1159-10E6-43CF-ACC4-8712A9829307}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{BDE65818-BC94-47F8-88BD-7969F71C6BFC}] => (Allow) LPort=2869 FirewallRules: [{A5A52D2B-DCE1-4906-8196-8F05D8744542}] => (Allow) LPort=1900 FirewallRules: [{58D01D1B-0821-4C28-AE92-0FD25253956A}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe FirewallRules: [{0451BB9A-D0CE-404D-BEF1-B8A895671E56}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe FirewallRules: [{06DFB945-E8BE-4A07-A6CC-DD2603BAEFFB}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe FirewallRules: [{63C8A2DC-6A28-4F8F-8BED-E461A53949A6}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe FirewallRules: [{03A619A7-02D5-48BE-AB2F-4BE50D16CA32}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe FirewallRules: [{FD5FA038-8FB6-4EB9-9982-96656ABDEE6C}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe FirewallRules: [{CB41BB98-7454-4D9F-B745-9870A73E04CF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B0C3F022-B3AC-4D66-BF8E-63793FD78E8D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Points de restauration ========================= ATTENTION: La Restauration système est désactivée ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/27/2016 04:24:47 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/27/2016 03:56:05 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/27/2016 03:27:27 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme firefox.exe version 49.0.2.6136 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 2950 Heure de début : 01d230551ebff8ad Heure de fin : 59 Chemin d'accès de l'application : C:\Program Files (x86)\Mozilla Firefox\firefox.exe ID de rapport : fccfaead-9c48-11e6-bfa5-f215c0c920db Nom complet du package défaillant : ID de l'application relative au package défaillant : Error: (10/27/2016 03:21:48 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/27/2016 01:24:40 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/27/2016 12:59:52 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (10/27/2016 12:07:49 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/27/2016 11:09:18 AM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/26/2016 07:28:43 PM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Error: (10/26/2016 08:15:45 AM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10605.221) TYPE: ERROR DPTF Build Version: 8.1.10605.221 DPTF Build Date: Oct 23 2015 12:24:15 Source File: ..\..\..\..\Sources\Policies\ConfigTdpPolicy\ConfigTdpPolicy.cpp @ line 183 Executing Function: ConfigTdpPolicy::onDomainPowerControlCapabilityChanged Message: dataLength is invalid. Participant: TCPU [1] Domain: PKG [0] Policy: ConfigTDP Policy [0] Erreurs système: ============= Error: (10/27/2016 03:28:39 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 8 0x0 0x0 Error: (10/27/2016 03:28:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 2 0xdeaddeed 0xeeec Error: (10/27/2016 03:28:38 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 1 0xc 0x4 Error: (10/26/2016 09:55:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Accès aux données utilisateur_117e270 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/26/2016 09:55:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Stockage des données utilisateur_117e270 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/26/2016 09:55:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Données de contacts_117e270 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/26/2016 09:55:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_117e270 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/25/2016 09:38:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Accès aux données utilisateur_cbc69 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/25/2016 09:38:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Stockage des données utilisateur_cbc69 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (10/25/2016 09:38:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Données de contacts_cbc69 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. CodeIntegrity: =================================== Date: 2016-10-25 16:04:11.336 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-10-17 21:17:55.962 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-10-14 08:59:22.084 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-23 20:45:28.096 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-23 09:13:57.872 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-23 09:12:07.772 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-22 20:14:21.426 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-08-11 07:50:32.758 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 20:19:41.810 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 08:47:29.536 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume5\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-3227U CPU @ 1.90GHz Pourcentage de mémoire utilisée: 49% Mémoire physique - RAM - totale: 3975.27 MB Mémoire physique - RAM - disponible: 2022.17 MB Mémoire virtuelle totale: 4679.27 MB Mémoire virtuelle disponible: 2304.72 MB ==================== Lecteurs ================================ Drive c: (Windows8_OS) (Fixed) (Total:221.01 GB) (Free:55.41 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (LENOVO) (Fixed) (Total:4 GB) (Free:2.29 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: F638D666) Partition: GPT. ==================== Fin de Addition.txt ============================