Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 23-02-2017 Exécuté par philippe.heit (23-02-2017 15:58:54) Exécuté depuis \\SRVSOLASTRA\RedirectedFolders\philippe.heit\Desktop Windows 7 Professional Service Pack 1 (X64) (2012-05-31 09:04:43) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3238012086-2211120890-3876196009-500 - Administrator - Disabled) emergency (S-1-5-21-3238012086-2211120890-3876196009-1000 - Administrator - Enabled) => C:\Users\emergency Invité (S-1-5-21-3238012086-2211120890-3876196009-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Trend Micro Security Agent (Enabled - Up to date) {6458A697-CD62-2062-F924-44AA7F87C1E7} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Trend Micro Security Agent Anti-spyware (Enabled - Up to date) {DF394773-EB58-2FEC-C394-7FD804008B5A} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKLM-x32\...\uTorrent) (Version: 2.2.1 - ) 64 Bit HP CIO Components Installer (Version: 15.2.1 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 21.2.1 - HP Inc.) Hidden ActiveState Komodo Edit 9.2.1 (HKLM-x32\...\{7925EF85-6AF6-40DD-89F8-6E2D9C488ED9}) (Version: 9.2.1 - ActiveState Software Inc.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.023.20070 - Adobe Systems Incorporated) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.03 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.1.3.121 - Adobe Systems Incorporated) Adobe Creative Suite 5 Master Collection (HKLM-x32\...\{1BBD8D70-721A-41AD-AC8F-7308A0C8FA92}) (Version: 5.0 - Adobe Systems Incorporated) Adobe Flash Player 24 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.221 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Illustrator CC 2015 (HKLM-x32\...\{5680D629-B263-49CC-821E-3CEBD4507B51}) (Version: 19.0 - Adobe Systems Incorporated) Adobe InDesign CS6 (HKLM-x32\...\{CFB770D7-8D43-1014-922B-CC2715FADE3F}) (Version: 8.0 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Apple Application Support (32 bits) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Application de bureau Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 6.1.0.137 - Autodesk) AutoCAD 2014 - Français (French) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2014 Language Pack - Français (French) (Version: 19.1.18.0 - Autodesk) Hidden Autodesk App Manager (HKLM-x32\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk) Autodesk AutoCAD 2014 - Français (French) (HKLM\...\AutoCAD 2014 - Français (French)) (Version: 19.1.18.0 - Autodesk) Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk) Autodesk Content Service (x32 Version: 3.1.3.0 - Autodesk) Hidden Autodesk Content Service Language Pack (x32 Version: 3.1.3.0 - Autodesk) Hidden Autodesk DWG TrueView 2016 - English (HKLM\...\DWG TrueView 2016 - English) (Version: 20.1.49.0 - Autodesk) Autodesk Featured Apps (HKLM-x32\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk) Autodesk License Service (x64) - 3.1 (HKLM\...\{EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D}) (Version: 3.1.26.0 - Autodesk) Autodesk Manufacturing Data Exchange Utility 2017 (HKLM\...\Autodesk Manufacturing Data Exchange Utility 8.6.10) (Version: 8.6.10 - Autodesk) Autodesk Manufacturing Data Exchange Utility Premium 2017 FCS Licence (HKLM\...\{B2DAAFB6-BC75-47BB-BAA8-CAFC3BACAD01}) (Version: 0.0.2 - Autodesk) Autodesk Netfabb Premium 2017 (HKLM\...\{64B110E3-3BC1-44DF-BB7D-E70CC594A1E5}}_is1) (Version: 2017.2 - Autodesk) Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.13 - Autodesk) Autodesk ReCap (Version: 1.0.43.13 - Autodesk) Hidden Autodesk ReCap Language Pack-English (Version: 1.0.43.13 - Autodesk) Hidden Autodesk_Netfabb_Premium_ADLM (Version: 1.0.0.0 - Autodesk) Hidden Batigest Evolution (x32 Version: 10.52 - Apibâtiment) Hidden Batigest Evolution (x32 Version: 12.00.01 - Apibâtiment) Hidden Batigest Evolution (x32 Version: 12.00.03 - Apibâtiment) Hidden Batigest Evolution (x32 Version: 12.20.00 - Apibâtiment) Hidden Blender (HKLM\...\Blender) (Version: 2.67 - Blender Foundation) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.20 - Piriform) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Cracklock 3.9.45 (HKLM-x32\...\Cracklock_is1) (Version: 3.9.45 - William Blum) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd) Defraggler (HKLM\...\Defraggler) (Version: 2.18 - Piriform) Dropbox (HKU\S-1-5-21-1222139310-837356833-1376051784-1169\...\Dropbox) (Version: 6.4.14 - Dropbox, Inc.) DWG TrueView 2016 - English (Version: 20.1.49.0 - Autodesk) Hidden Extension d'application Sage Apibâtiment (HKLM-x32\...\{08549BFD-D589-4024-A803-1D8C8DB7743E}) (Version: 2.0.01 - Sage Apibâtiment) FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production) FARO LS 1.1.501.0 (HKLM-x32\...\{8F196892-666A-4A40-8587-6AE38F78A5C2}) (Version: 5.1.0.30630 - FARO Scanner Production) Fences (HKLM-x32\...\Fences) (Version: - Stardock Corporation) Fences (Version: 1.0 - Stardock Corporation) Hidden FileZilla Client 3.24.0 (HKLM-x32\...\FileZilla Client) (Version: 3.24.0 - Tim Kosse) Financier Apibâtiment Evolution (x32 Version: 12.00.02 - Apibâtiment) Hidden Financier Apibâtiment Evolution (x32 Version: 12.20.00 - Apibâtiment) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 56.0.2924.87 - Google Inc.) Google Drive (HKLM-x32\...\{07A12123-B717-496B-B471-48AF6407B433}) (Version: 1.32.4066.7445 - Google, Inc.) Google Drive (HKLM-x32\...\{709316AD-161C-4D5C-9AE7-0B3A822DA271}) (Version: 1.30.2170.0459 - Google, Inc.) Google Photos Backup (HKU\S-1-5-21-1222139310-837356833-1376051784-1169\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.) Google SketchUp 8 (HKLM-x32\...\{E3F4EA31-41D7-4789-9AC4-F26CDAF797BA}) (Version: 3.0.14354 - Google, Inc.) Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden hubiC - x64 (Version: 2.1.1.145 - OVH) Hidden hubiC (HKLM-x32\...\{51fea8cc-5bb6-4312-86f5-1802a10e030d}) (Version: 2.1.1.145 - OVH) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.17.10.4229 - Intel Corporation) iTunes (HKLM\...\{554C62C7-E6BB-40F1-892B-F0AE02D3C135}) (Version: 12.5.3.17 - Apple Inc.) Java 8 Update 91 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418091F0}) (Version: 8.0.910.14 - Oracle Corporation) Java 8 Update 91 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218091F0}) (Version: 8.0.910.14 - Oracle Corporation) JavaFX 2.1.0 (HKLM-x32\...\{1111706F-666A-4037-7777-210328764D10}) (Version: 2.1.0 - Oracle Corporation) Macro Compléments Excel Scribe Version 1.11.0 (HKLM-x32\...\Compléments Excel Scribe_is1) (Version: - S.A.S EDISYS) Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes) Meshmixer (HKLM\...\Meshmixer_x64) (Version: 11.0.544 - Autodesk, Inc.) Microsoft .NET Framework 4.6.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft Access database engine 2010 (French) (HKLM-x32\...\{90140000-00D1-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Access 2016 - fr-fr (HKLM\...\AccessRetail - fr-fr) (Version: 16.0.4266.1003 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{DD8FF2F3-0D97-4CF3-AF78-FA0E1B242244}) (Version: 2.0.60926.0 - Microsoft Corporation) Microsoft Excel 2016 - fr-fr (HKLM\...\ExcelRetail - fr-fr) (Version: 16.0.4266.1003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1222139310-837356833-1376051784-1169\...\OneDriveSetup.exe) (Version: 17.3.4604.0120 - Microsoft Corporation) Microsoft Outlook 2016 - fr-fr (HKLM\...\OutLookRetail - fr-fr) (Version: 16.0.4266.1003 - Microsoft Corporation) Microsoft PowerPoint 2016 - fr-fr (HKLM\...\PowerPointRetail - fr-fr) (Version: 16.0.4266.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Word 2016 - fr-fr (HKLM\...\WordRetail - fr-fr) (Version: 16.0.4266.1003 - Microsoft Corporation) Mozilla Firefox 51.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 51.0.1 (x86 fr)) (Version: 51.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 51.0.1.6234 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.8 - Notepad++ Team) Office 16 Click-to-Run Extensibility Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (Version: 16.0.4266.1003 - Microsoft Corporation) Hidden PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Poedit (HKLM-x32\...\{68EB2C37-083A-4303-B5D8-41FA67E50B8F}_is1) (Version: 1.8.10 - Vaclav Slavik) Prezi (HKLM-x32\...\{63B8F931-2BF3-4D5D-9C28-E2EF88D83DFD}) (Version: 5.2.7 - Nom de votre société) Quoter Plan (HKLM-x32\...\Quoter Plan_is1) (Version: 2.0.8 - Logiciels Quoter) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6428 - Realtek Semiconductor Corp.) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Sage Apibâtiment Batigest Evolution (HKLM-x32\...\{A79278BA-2FBA-479F-B22C-DAB0631EB81F}) (Version: 12.20.00 - Sage) Sage Apibâtiment Financier Evolution (HKLM-x32\...\{68DC0D97-540B-4991-BBCE-2101D9C8A464}) (Version: 12.20.00 - Sage) SketchUp 2017 (HKLM\...\{48C6B671-0B9A-4534-BBBB-370D2E760B07}) (Version: 17.1.174 - Trimble Navigation Limited) SketchUp Import for AutoCAD 2014 (HKLM-x32\...\{644E9589-F73A-49A4-AC61-A953B9DE5669}) (Version: 1.1.0 - Autodesk) Skypeâ„¢ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) SOS Mas Informatique (HKLM-x32\...\{A22B8513-EA8C-46A1-9735-F5BE971C368D}) (Version: 7.4.515 - LogMeIn, Inc.) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) TomTom MyDrive Connect 4.1.2.2862 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.2.2862 - TomTom) TreeSize V6.3.4 (64 bit) (HKLM\...\TreeSize_is1) (Version: 6.3.4 - JAM Software) Trend Micro Worry-Free Business Security Agent (HKLM\...\Wofie) (Version: 19.0.4103 - Trend Micro Inc.) Trend Micro Worry-Free Business Security Agent (Version: 9.0 - Trend Micro Inc.) Hidden UsbFix (HKLM-x32\...\Usbfix) (Version: 9.001 - www.SOSVirus.Net) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player 2.0.2 (HKLM-x32\...\VLC media player) (Version: 2.0.2 - VideoLAN) Windows Small Business Server 2008 ClientAgent (HKLM\...\{E4FF4DF1-F99C-49AC-B398-BE0887432846}) (Version: 6.0.5601.6 - Microsoft Corporation) Windows Small Business Server 2008 Desktop Links Gadget (HKLM\...\{F5E5D7CA-0F94-41A3-8106-66473C2F3728}) (Version: 6.0.5601.6 - Microsoft Corporation) Windows Small Business Server 2011 Standard ClientAgent (HKLM\...\{5C72F8A3-BF39-4733-B41E-0ED7EF622E37}) (Version: 6.1.7900.1 - Microsoft Corporation) WinHTTrack Website Copier 3.48-22 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.48.22 - HTTrack) WinRAR 4.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) x264vfw - H.264/MPEG-4 AVC codec for x64 (remove only) (HKLM-x32\...\x264vfw64) (Version: - ) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{149DD748-EA85-45A6-93C5-AC50D0260C98}\localserver32 -> C:\Program Files\Autodesk\DWG TrueView 2016 - English\dwgviewr.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{3faa4380-a399-11cf-a466-00805fe418f6}\InprocServer32 -> C:\Program Files\Autodesk\DWG TrueView 2016 - English\en-US\dwgviewrficn.dll (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\philippe.heit\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\philippe.heit\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> C:\Program Files\Blender Foundation\Blender\BlendThumb64.dll () CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\philippe.heit\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1222139310-837356833-1376051784-1169_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {07219FD1-2239-4060-AF36-3ED3FEB53972} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-09] (Google Inc.) Task: {5E407E51-3874-4A53-A7A6-07C02D230AF0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-09] (Google Inc.) Task: {6735E506-7B22-4928-89EC-37AEE0A2932D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation) Task: {70F1182A-A19A-4D79-AADB-873CE84ADF66} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-01-25] (Microsoft Corporation) Task: {9E4E4E19-E327-4DA9-905D-C3B273185E51} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169UA => C:\Users\philippe.heit\AppData\Local\Google\Update\GoogleUpdate.exe [2016-06-07] (Google Inc.) Task: {9EAB51C8-97CC-4E9F-85E1-53C106CF3E89} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {A9AE84AE-1926-479D-B9CF-ED6A2D478E44} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169Core => C:\Users\philippe.heit\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.) Task: {BE18813D-25DA-414D-8E00-CE2D68C676A2} - System32\Tasks\{C692E785-4C56-44E1-9C18-937EBE0E39B7} => pcalua.exe -a "E:\Adobe Muse CC 5.0 Build 704\muse_5-0_install_win.exe" -d "E:\Adobe Muse CC 5.0 Build 704" Task: {BF27DDAB-0A44-4391-8CD6-97905F0AF9D3} - System32\Tasks\AdobeAAMUpdater-1.0-SOLASTRA-SA-philippe.heit => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-05-25] (Adobe Systems Incorporated) Task: {C14CF526-DD79-43C9-81CE-34DC344FA99F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-02-15] (Adobe Systems Incorporated) Task: {C423F880-1FEB-4A8F-A516-626FA38DED7E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {C598C73D-8A4A-4829-8B2A-48A9C5B471BD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2015-08-16] (Microsoft Corporation) Task: {CD9B3448-368A-4ED8-88BA-CA39AA9FC04F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-01-25] (Microsoft Corporation) Task: {CDE6E996-9CFF-4848-BE97-88D89C1309BD} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169UA => C:\Users\philippe.heit\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-19] (Dropbox, Inc.) Task: {D42A61C7-8478-4E92-ABD4-D97DE9F251A0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-07-13] (Piriform Ltd) Task: {D80D52BF-9D12-4B00-820E-E68395546366} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169Core => C:\Users\philippe.heit\AppData\Local\Google\Update\GoogleUpdate.exe [2016-06-07] (Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169Core.job => C:\Users\philippe.heit\AppData\Local\Dropbox\Update\DropboxUpdate.exe/cphilippe.hei Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1222139310-837356833-1376051784-1169UA.job => C:\Users\philippe.heit\AppData\Local\Dropbox\Update\DropboxUpdate.exe/ua /installsource schedulerphilippe.hei ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2016-09-01 17:12 - 2016-09-01 17:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-01-25 11:31 - 2015-08-16 00:21 - 00162880 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll 2011-08-31 12:55 - 2011-08-31 12:55 - 00801792 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\sqlite3.dll 2009-07-02 15:32 - 2009-07-02 15:32 - 00089088 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\zlibwapi.dll 2017-02-23 11:36 - 2017-01-20 07:47 - 02264352 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2015-03-31 18:08 - 2015-03-31 18:08 - 00026408 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\boost_system-vc110-mt-1_57.dll 2015-03-31 18:08 - 2015-03-31 18:08 - 00058320 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\boost_date_time-vc110-mt-1_57.dll 2015-03-31 18:09 - 2015-03-31 18:09 - 00686608 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\sqlite3.dll 2015-03-31 18:09 - 2015-03-31 18:09 - 01314920 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\libprotobuf.dll 2015-03-31 18:08 - 2015-03-31 18:08 - 00110320 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\boost_thread-vc110-mt-1_57.dll 2015-03-31 18:08 - 2015-03-31 18:08 - 00036160 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\boost_chrono-vc110-mt-1_57.dll 2013-01-16 09:19 - 2013-01-16 09:19 - 00048128 _____ () C:\Program Files (x86)\Trend Micro\Security Agent\CCSF\boost_date_time-vc110-mt-1_49.dll 2015-06-13 13:17 - 2015-06-13 13:17 - 00803488 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2017-01-13 20:10 - 2017-01-13 20:10 - 00052400 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-05-12 10:49 - 2014-05-12 10:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2012-05-08 19:30 - 2015-06-01 21:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-06-04 09:15 - 2007-09-02 12:58 - 00495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe 2016-07-13 20:42 - 2016-07-13 20:42 - 00069632 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2017-01-16 09:34 - 2016-04-19 08:11 - 00061968 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_Service-head.dll 2017-01-16 09:34 - 2016-04-19 08:11 - 00110608 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson0.dll 2012-06-04 09:15 - 2007-09-02 12:57 - 00069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2017-01-16 09:34 - 2015-11-05 13:07 - 00052224 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qoauth_Ad_1.dll 2017-01-16 09:34 - 2015-11-05 13:07 - 00742400 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qca_Ad_2.dll 2017-01-16 09:34 - 2015-11-05 13:07 - 00195584 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\qjson_Ad_0.dll 2017-01-16 09:34 - 2013-09-23 18:52 - 00043912 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\QtSolutions_MFCMigrationFramework_Ad_2.dll 2017-01-16 09:34 - 2016-04-19 05:54 - 00286144 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\fr-FR\AdWingManRes.dll 2017-01-16 09:34 - 2015-09-08 07:31 - 40640808 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libcef.dll 2017-01-16 09:34 - 2014-09-03 01:29 - 00912384 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libglesv2.dll 2017-01-16 09:34 - 2014-09-03 01:29 - 00134144 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\libegl.dll 2017-01-16 09:34 - 2014-09-03 01:29 - 00950272 _____ () C:\Program Files (x86)\Autodesk\Autodesk Desktop App\acwebbrowser\ffmpegsumo.dll 2017-02-07 09:04 - 2017-02-01 10:01 - 01870168 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libglesv2.dll 2017-02-07 09:04 - 2017-02-01 10:01 - 00085848 _____ () C:\Program Files (x86)\Google\Chrome\Application\56.0.2924.87\libegl.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Windows:nlsPreferences [386] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0] AlternateDataStreams: C:\ProgramData\TEMP:054203E4 [149] AlternateDataStreams: C:\ProgramData\TEMP:6DAA43DB [219] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) HKU\S-1-5-21-1222139310-837356833-1376051784-1169\Software\Classes\.scr: DWGTrueViewScriptFile => C:\Windows\system32\notepad.exe "%1" ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-1222139310-837356833-1376051784-1169\...\fm-ged.com -> hxxp://mory.neopod.fm-ged.com IE trusted site: HKU\S-1-5-21-1222139310-837356833-1376051784-1169\...\morygroup.com -> hxxp://chargeur.morygroup.com ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:34 - 2014-10-16 10:42 - 00001267 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1222139310-837356833-1376051784-1169\Control Panel\Desktop\\Wallpaper -> C:\Users\philippe.heit\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.10.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupreg: Acrobat Assistant 8.0 => "C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe" MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeBridge => MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: Dropbox Update => "C:\Users\philippe.heit\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c MSCONFIG\startupreg: Google Photos Backup => "C:\Users\philippe.heit\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe" /autostart MSCONFIG\startupreg: Google Update => "C:\Users\philippe.heit\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe FirewallRules: [{60BFC958-BB91-4A04-A6D2-5A7CC7BEC0C2}] => (Allow) LPort=50248 FirewallRules: [{A5ECD631-47F0-407A-B613-A8B17009D7C3}] => (Allow) C:\ProgramData\Sage\FBE\Crun\Crun.exe FirewallRules: [{06A0AC23-94BC-4B31-81E9-01C232BC8FB1}] => (Allow) C:\ProgramData\Sage\FBE\Crun\Crun.exe FirewallRules: [{78602E97-8D98-4744-9DE8-AB7E611E39B1}] => (Allow) C:\ProgramData\Sage\BTGEVO\Crun\Crun.exe FirewallRules: [{43CAF049-D628-4C1A-A40C-F9D5EA24730C}] => (Allow) C:\ProgramData\Sage\BTGEVO\Crun\Crun.exe FirewallRules: [TCP Query User{2C6F3B62-78AA-488F-87F4-5A1FA4246B3E}C:\program files (x86)\logmein rescue calling card\callingcard.exe] => (Block) C:\program files (x86)\logmein rescue calling card\callingcard.exe FirewallRules: [UDP Query User{01926E1E-90F7-46E7-9761-1DF4D0375483}C:\program files (x86)\logmein rescue calling card\callingcard.exe] => (Block) C:\program files (x86)\logmein rescue calling card\callingcard.exe FirewallRules: [{92453E40-37A5-46A9-B653-72D866CCAA45}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D4951C87-EC04-47BB-B0D5-71361D95F562}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BCE6CE24-2B45-4B58-8D53-EBCD5F8FC92D}] => (Allow) C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{3D18C2A9-3E6A-44BC-A601-E8EEAA1F2F17}] => (Allow) C:\Users\philippe.heit\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{EDD29982-3FE2-47ED-B68D-91D4F32D19FB}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [{6ECC313B-4539-4D03-AE14-B2452F89CD1E}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{3312293B-BCF6-4B90-84BA-140AA8A6B766}C:\users\philippe.heit\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\philippe.heit\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{09BE1E49-82B6-43DA-8BE0-68D0637D0BF2}C:\users\philippe.heit\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\philippe.heit\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{680DA8D2-FD64-44A2-ADED-65D3CC692CD4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6332D748-BE91-4350-AF50-60EA017133F7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{58D695CE-3710-413D-A429-D9CEA5AEABDE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2692212C-72AF-4DDD-A9FE-C2F37C8FD195}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{5F935D06-E0B5-461A-9DFB-6B747215414A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{77A8348C-1C26-4196-AFC2-65F09F4547BE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{6BD01525-0CD9-4667-B810-F37A03B4A853}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{3EEA1829-FD39-49FB-88DB-8D6BE78E5CDB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{4FCFAC18-C4A0-405B-BE6E-7724B9D4F73F}] => (Allow) C:\Users\philippe.heit\AppData\Local\Microsoft\OneDrive\OneDrive.exe FirewallRules: [{12747A9E-60B2-4485-9B43-2ABFADB4FACD}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{FFECAEEC-7BCF-4DE9-9EC1-4CFC724C1231}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{A8070C07-7D31-464D-A6C1-B3370D7FEBCD}] => (Allow) LPort=15360 ==================== Points de restauration ========================= 14-02-2017 18:00:05 Windows Update 15-02-2017 17:02:25 Windows Update 17-02-2017 08:57:08 Windows Update 17-02-2017 13:59:42 Windows Update 20-02-2017 18:00:48 Windows Update 21-02-2017 18:07:23 Windows Update 22-02-2017 11:02:31 Windows Update 22-02-2017 17:03:38 Windows Update 23-02-2017 09:40:15 Opération de restauration 23-02-2017 09:56:39 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Souris Microsoft PS/2 Description: Souris Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (02/23/2017 11:39:36 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbam.exe, version : 3.0.0.912, horodatage : 0x58811df5 Nom du module défaillant : Qt5Core.dll, version : 5.6.2.0, horodatage : 0x5849a177 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00192df1 ID du processus défaillant : 0xdd0 Heure de début de l’application défaillante : 0x01d28dc10a9bd040 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Chemin d’accès du module défaillant: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll ID de rapport : 5e8d7015-f9b4-11e6-8c83-001999d1e177 Error: (02/23/2017 11:38:48 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbam.exe, version : 3.0.0.912, horodatage : 0x58811df5 Nom du module défaillant : Qt5Core.dll, version : 5.6.2.0, horodatage : 0x5849a177 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00192df1 ID du processus défaillant : 0x1408 Heure de début de l’application défaillante : 0x01d28dc0cc005cd6 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe Chemin d’accès du module défaillant: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll ID de rapport : 41c5cf8b-f9b4-11e6-8c83-001999d1e177 Error: (02/23/2017 11:37:50 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbamservice.exe, version : 3.1.0.415, horodatage : 0x5881b7a1 Nom du module défaillant : mbae-api-na.dll, version : 1.9.2.186, horodatage : 0x58751d46 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000003ebb ID du processus défaillant : 0x199c Heure de début de l’application défaillante : 0x01d28dc0c0755ff6 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbae-api-na.dll ID de rapport : 1f42ea8a-f9b4-11e6-8c83-001999d1e177 Error: (02/23/2017 11:13:56 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (02/23/2017 10:10:27 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Explorer.EXE, version : 6.1.7601.23537, horodatage : 0x57c44efe Nom du module défaillant : msi.dll, version : 5.0.7601.23593, horodatage : 0x58235055 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000001f16ce ID du processus défaillant : 0x560 Heure de début de l’application défaillante : 0x01d28db3cfb1c08f Chemin d’accès de l’application défaillante : C:\Windows\Explorer.EXE Chemin d’accès du module défaillant: C:\Windows\system32\msi.dll ID de rapport : ea61783d-f9a7-11e6-9dc7-001999d1e177 Error: (02/22/2017 04:49:57 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: Un problème a empêché l’envoi des données du Programme d’amélioration des services à Microsoft (erreur 80004005). Error: (02/22/2017 04:42:47 PM) (Source: MSSOAP) (EventID: 16) (User: ) Description: Soap error: Unspecified HTTP error.. Error: (02/22/2017 04:18:45 PM) (Source: MSSOAP) (EventID: 16) (User: ) Description: Soap error: Unspecified HTTP error.. Error: (02/22/2017 03:58:44 PM) (Source: MSSOAP) (EventID: 16) (User: ) Description: Soap error: Unspecified HTTP error.. Error: (02/22/2017 03:50:43 PM) (Source: MSSOAP) (EventID: 16) (User: ) Description: Soap error: Unspecified HTTP error.. Erreurs système: ============= Error: (02/23/2017 02:31:08 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Le service Windows Update est en attente de démarrage. Error: (02/23/2017 02:23:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Malwarebytes Service s’est terminé de façon inattendue pour la 2ème fois. Error: (02/23/2017 02:23:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Disc Soft Lite Bus Service s’est terminé de façon inattendue pour la 1ème fois. Error: (02/23/2017 02:23:28 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Service de l’iPod s’est terminé de façon inattendue pour la 1ème fois. Error: (02/23/2017 02:23:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Windows Search s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service. Error: (02/23/2017 02:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Service Microsoft Office « Démarrer en un clic » s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service. Error: (02/23/2017 02:23:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Service Bonjour s’est terminé de façon inattendue pour la 1ème fois. Error: (02/23/2017 02:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Autodesk Content Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (02/23/2017 02:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Apple Mobile Device Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error: (02/23/2017 02:23:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Adobe Acrobat Update Service s’est terminé de façon inattendue pour la 1ème fois. ==================== Infos Mémoire =========================== Processeur: Intel(R) Pentium(R) CPU G850 @ 2.90GHz Pourcentage de mémoire utilisée: 61% Mémoire physique - RAM - totale: 6048.39 MB Mémoire physique - RAM - disponible: 2358.51 MB Mémoire virtuelle totale: 12094.97 MB Mémoire virtuelle disponible: 8228.44 MB ==================== Lecteurs ================================ Drive c: (System) (Fixed) (Total:450.37 GB) (Free:224.91 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 71765B60) Partition 1: (Active) - (Size=2 GB) - (Type=27) Partition 2: (Not Active) - (Size=463.8 GB) - (Type=OF Extended) ==================== Fin de Addition.txt ============================