Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 02-06-2017 Exécuté par Lou (05-06-2017 00:31:10) Exécuté depuis C:\Users\Lou\Desktop Windows 10 Home Version 1703 (X64) (2017-05-28 14:34:11) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3562873840-2852857786-3320494930-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3562873840-2852857786-3320494930-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3562873840-2852857786-3320494930-1007 - Limited - Enabled) Invité (S-1-5-21-3562873840-2852857786-3320494930-501 - Limited - Enabled) Lou (S-1-5-21-3562873840-2852857786-3320494930-1000 - Administrator - Enabled) => C:\Users\Lou ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 15.08 beta (x64) (HKLM\...\7-Zip) (Version: 15.08 - Igor Pavlov) 7-Zip 16.04 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1604-000001000000}) (Version: 16.04.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.1.335 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated) Adobe Illustrator CC (HKLM-x32\...\{F2321021-08A2-44D6-B1DF-BDB415F23EC3}) (Version: 17.0 - Adobe Systems Incorporated) Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: 10.0 - Adobe Systems Incorporated) Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.1.1 - Adobe Systems Incorporated) Adobe Photoshop CC 2015 (HKLM-x32\...\{793C2BF7-A4FE-4608-91C9-9282C5801C21}) (Version: 16.0 - Adobe Systems Incorporated) Ansel (Version: 382.05 - NVIDIA Corporation) Hidden ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach) Assistant Mise à niveau de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17387 - Microsoft Corporation) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.4.2294 - AVAST Software) Canon Utilities EOS Lens Registration Tool (HKLM-x32\...\EOS Lens Registration Tool) (Version: 1.3.0.1 - Canon Inc.) Canon Utilities EOS Utility 2 (HKLM-x32\...\EOS Utility 2) (Version: 2.14.20.0 - Canon Inc.) Canon Utilities EOS Web Service Registration Tool (HKLM-x32\...\EOS Web Service Registration Tool) (Version: 1.2.10.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) Classic Shell (HKLM\...\{383BB30A-B4A7-4666-9A83-22CFA8640097}) (Version: 4.3.0 - IvoSoft) CleanMem (HKLM-x32\...\CleanMem) (Version: v2.5.0 - PcWinTech.com) Diablo 1 & 2 Gold Edition version 1.0 (HKLM-x32\...\{6CCA68FC-CD53-4856-A3F3-CDB9B9C39F47}_is1) (Version: 1.0 - Blizzard Entertainment) Discord (HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\...\Discord) (Version: 0.0.297 - Hammer & Chisel, Inc.) Eraser 6.2.0.2979 (HKLM\...\{C5900DE9-D199-4C27-B692-354C9A6A6C8B}) (Version: 6.2.2979 - The Eraser Project) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.2.1000 - Intel Corporation) Intel(R) Network Connections 19.1.51.0 (HKLM\...\PROSetDX) (Version: 19.1.51.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.10.0.1016 - Intel Corporation) Intel(R) USB 3.0\3.1 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 5.0.3.42 - Intel Corporation) Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere) Live 8.0.4 (HKLM-x32\...\Live 8.0.4) (Version: - ) Logiciel pour périphérique à chipset Intel® (x32 Version: 10.0.17 - Intel(R) Corporation) Hidden Malwarebytes version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) Microsoft IntelliType Pro 8.2 (HKLM\...\Microsoft IntelliType Pro 8.2) (Version: 8.20.469.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Xbox 360 Accessories 1.2 (HKLM\...\{45CD67FD-3218-4207-A0A2-BC41245189E3}) (Version: 1.20.146.0 - Microsoft) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mises à jour NVIDIA 25.0.0.0 (Version: 25.0.0.0 - NVIDIA Corporation) Hidden NetBeans IDE 8.2 (HKLM\...\nbi-nb-base-8.2.0.0.201610071157) (Version: 8.2 - NetBeans.org) Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google) Node.js (HKLM\...\{2F9DD870-93DA-48D2-BEA5-A58D7C673EA5}) (Version: 6.10.3 - Node.js Foundation) NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.05 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.26 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) NvNodejs (Version: 3.6.0.74 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.4.10.0 - NVIDIA Corporation) Hidden NvvHci (Version: 2.02.0.5 - NVIDIA Corporation) Hidden OpenOffice 4.1.3 (HKLM-x32\...\{3E1679DA-5081-44AA-B4C2-BF8EE7E107E0}) (Version: 4.13.9783 - Apache Software Foundation) Panneau de configuration NVIDIA 382.05 (Version: 382.05 - NVIDIA Corporation) Hidden PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2) (Version: - ) PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8036 - Realtek Semiconductor Corp.) Revo Uninstaller Pro 3.1.9 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.9 - VS Revo Group, Ltd.) RogueKiller version 12.11.0.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.11.0.0 - Adlice Software) Ruby 2.3.3-p222-x64 (HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\...\{96A4CEEE-5ACC-4FB2-AAB6-8152D5AB0C9E}_is1) (Version: 2.3.3-p222 - RubyInstaller Team) SafeZone Stable 3.55.2393.607 (x32 Version: 3.55.2393.607 - Avast Software) Hidden SHIELD Streaming (Version: 7.1.0370 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.6.0.74 - NVIDIA Corporation) Hidden Skype Web Plugin (HKLM-x32\...\{CD62BCB9-02D2-443F-AC7A-443377DA5B38}) (Version: 7.31.0.56 - Skype Technologies S.A.) Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.) Sonic Radar II (HKLM\...\{203BCA8D-BC00-4DD5-85DF-2F84DB803B57}) (Version: 2.1.701 - ASUSTeKcomputer.Inc) SteelSeries Engine 3.10.2 (HKLM\...\SteelSeries Engine 3) (Version: 3.10.2 - SteelSeries ApS) Sublime Text Build 3126 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd) TP-LINK TL-WN881ND Driver (HKLM-x32\...\{FDA7E907-6539-42C1-9721-0239C281B336}) (Version: 1.3.1 - TP-LINK) TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WampServer 2.5 (HKLM-x32\...\WampServer 2_is1) (Version: - Hervé Leclerc (HeL)) WinDirStat 1.1.2 (HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\...\WinDirStat) (Version: - ) Windows 10 Wizard (HKLM-x32\...\{414CCA0E-CB88-430D-B77C-BAE4D408C041}) (Version: 1.0.2.0 - Digital Care Solutions) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3562873840-2852857786-3320494930-1000_Classes\CLSID\{A62E09B4-6467-4E0F-9B52-E61D8BC9FC69}\localserver32 -> C:\Users\Lou\AppData\Local\SkypePlugin\7.31.0.56\GatewayVersion-x64.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-3562873840-2852857786-3320494930-1000_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\Lou\AppData\Local\SkypePlugin\7.31.0.56\EdgeCalling.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-3562873840-2852857786-3320494930-1000_Classes\CLSID\{E5A7A7B5-9D06-4DBE-BAC0-04B69FF070B5}\InprocServer32 -> C:\Users\Lou\AppData\Local\SkypePlugin\7.31.0.56\GatewayActiveX-x64.dll (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-3562873840-2852857786-3320494930-1000_Classes\CLSID\{F09690BD-582D-4439-B6ED-5C2545D2F424}\InprocServer32 -> C:\WINDOWS\system32\kernel32.dll (Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {02DDEB05-0C64-4FB8-869A-8C2B4CCD057B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-24] (Google Inc.) Task: {0379140A-0F40-46A3-BDDE-C0C93429CC69} - System32\Tasks\EPSON XP-312 313 315 Series Update {62B3731D-4BF4-48A5-BE66-F18EA4C881BC} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE Task: {06AC99E1-2D84-48E4-8F3F-E3D40ED17949} - System32\Tasks\S-1-5-21-3562873840-2852857786-3320494930-1000\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-03-18] (Microsoft Corporation) Task: {0C702390-47AF-4924-94E5-3D13909B653F} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-18] (NVIDIA Corporation) Task: {0F12367D-9A71-4707-AD19-F012DECFAFA2} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {17E59028-CE0A-4110-A6CB-9A139357ABEB} - System32\Tasks\Sieste => E:\Seagate Expansion Drive\¨tout perso\musique\Fat Freddy's Drop\01 - Ernie.mp3 Task: {2147ACA3-E9F9-48F1-8D0B-C87E350B475F} - System32\Tasks\SafeZone scheduled Autoupdate 1453848600 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-05-17] (Avast Software) Task: {2AB88570-148D-4CFC-BC0A-79CE436A2E6A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-19] (Piriform Ltd) Task: {2CD94197-BEF0-4000-97A5-D26745FAA7F2} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-05-10] (AVAST Software) Task: {2DB2924F-84BB-43FC-BD76-3DD56EE6BF1B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-18] (NVIDIA Corporation) Task: {356B0461-A235-41EC-8563-B3DB167925C1} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {3D19A86C-A4C7-48A7-AFA1-D36269BC8770} - System32\Tasks\AdobeAAMUpdater-1.0-Lou-PC-Lou => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {3FB15F03-4496-4C05-B783-964510C30CF4} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {41CE0F02-0334-4651-8D3B-9B9A8386CA72} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => %SystemRoot%\ehome\ehPrivJob.exe Task: {48B9A045-0324-4151-9EA7-AED91A22180B} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {5118691F-C6C3-4610-8081-11ACD4AAB5B6} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {5AF5B7EB-EF5F-480C-98B5-04C2734B39EE} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-18] (NVIDIA Corporation) Task: {5BBFFD1B-1432-42C4-8BA3-ACED7EB383EF} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => %SystemRoot%\ehome\ehPrivJob.exe Task: {60DE1398-B376-47A4-A11E-EE525AE1A93D} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => %SystemRoot%\ehome\ehPrivJob.exe Task: {68BFC92A-8E5C-45D7-BE1D-E8F95FD24F8D} - System32\Tasks\CleanMem Mini Monitor => C:\Program Files (x86)\CleanMem\mini_monitor.exe [2012-10-04] (PcWinTech.com) Task: {68C45AF3-BA51-40D3-B7E1-50E062A3358B} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => %SystemRoot%\ehome\mcupdate.exe Task: {697974A5-8B55-47F1-8352-01438A790270} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => %SystemRoot%\ehome\ehPrivJob.exe Task: {6D3DBDA4-2E29-4444-AC91-E5CA2A80335D} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => C:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-08-10] (Microsoft Corporation) Task: {7C860F1A-76C6-4956-93A7-F094113BF4CB} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-04-13] (AVAST Software) Task: {83794EC3-A8BD-4E4B-99F1-2390CDB3B715} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-18] (NVIDIA Corporation) Task: {84A9BD54-1890-43D9-B4D4-4559B0DBCD4A} - \Microsoft\Windows\DeviceSettings\Anumosy -> Pas de fichier <==== ATTENTION Task: {88B6A245-A464-4D6D-AE2B-22A2BDBA9421} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-24] (Google Inc.) Task: {8E6B764A-914B-421E-9159-9A1E9CDFC0E2} - System32\Tasks\Windows10ToolUpdate => C:\Program Files (x86)\Digital Care Solutions\Windows 10 Wizard\Windows10Wizard.exe [2016-09-20] (Digital Care Solutions) Task: {937EECD0-BED8-4972-89C4-62D553A007F2} - System32\Tasks\Clean System Memory => C:\Windows\syswow64\CleanMem.exe [2014-08-20] (PcWinTech.com) Task: {94AA6FCC-40E8-4F0E-8299-8B7FDA856233} - System32\Tasks\EPSON XP-312 313 315 Series Invitation {62B3731D-4BF4-48A5-BE66-F18EA4C881BC} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE Task: {98DE51A3-3A88-4CE5-8316-7ACA8048D089} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => %SystemRoot%\ehome\ehPrivJob.exe Task: {9CFC2902-8869-40CE-8DFD-71436C9B845F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => %SystemRoot%\ehome\ehPrivJob.exe Task: {A0631431-AEA0-4CB0-96BE-67B444DA9FCB} - System32\Tasks\{5B4ECC55-AF55-49B9-B077-FB2ADE9296B8} => pcalua.exe -a C:\Users\Lou\AppData\Local\Temp\jre-8u101-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ATTENTION Task: {A0C27C76-84CC-4954-9167-AC95D44F1F6B} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => %SystemRoot%\ehome\mcupdate.exe Task: {A446F284-B0E1-4363-807B-EC55224EB4E9} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => %SystemRoot%\ehome\ehrec.exe Task: {A90127FD-5CE9-4AEF-9FD2-E03D1B1A9990} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {ABBB10D1-7870-4D2B-B2B4-3F0ABF51BEB8} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-18] (NVIDIA Corporation) Task: {AF309520-4229-4403-B032-30D0D0E5AE19} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => %SystemRoot%\ehome\ehPrivJob.exe Task: {CDB3EF18-E5DD-4FF0-9F4C-62DA93A853B0} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-18] (NVIDIA Corporation) Task: {D614DD74-7798-4D13-99DD-6B087E281939} - System32\Tasks\Oerent Cache => C:\Program Files (x86)\Aribetain\yaupdcache.exe Task: {D99927B8-9A44-4891-9B40-BA57E581965F} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-18] (NVIDIA Corporation) Task: {DA65D840-5C63-4CC8-9A85-934BCF5E6E09} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => %SystemRoot%\ehome\ehPrivJob.exe Task: {DC8BB244-9F7B-45B1-BAD6-3977C1CDA3D2} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-18] (NVIDIA Corporation) Task: {DE3EBA74-BB16-4C8B-9945-B974C1F24EC1} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => %SystemRoot%\ehome\ehPrivJob.exe Task: {E2213131-1FDB-476E-A3F0-66095C68A1A6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-09] (Adobe Systems Incorporated) Task: {E3CEA533-A1E2-44B0-B9DB-0CECBD131C7B} - System32\Tasks\{B1188B4E-C463-4AC8-9DDD-FCB77B37432F} => E:\Bibliotheque\Partage\C\Pendu\bin\Release\Pendu.exe Task: {EF2840A7-93AE-408B-B547-11B98FBCC85A} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => %windir%\ehome\MCUpdate.exe Task: {F059F574-D9E3-414B-95A2-E880E594BD21} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => %SystemRoot%\ehome\ehPrivJob.exe Task: {F2514D28-B4BD-4930-93AB-47D2FB701A9C} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => %SystemRoot%\ehome\mcupdate.exe Task: {F42B190F-CFB6-423F-A88E-7E69454BE0CD} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => %SystemRoot%\ehome\ehPrivJob.exe Task: {FC8A5059-C49F-451C-8B11-077515718DA9} - \Jehity -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Invitation {62B3731D-4BF4-48A5-BE66-F18EA4C881BC}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE Task: C:\WINDOWS\Tasks\EPSON XP-312 313 315 Series Update {62B3731D-4BF4-48A5-BE66-F18EA4C881BC}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLFE.EXE :/EXE:{62B3731D-4BF4-48A5-BE66-F18EA4C881BC} /F:Update Système ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\Windows10ToolUpdate.job => C:\Program Files (x86)\Digital Care Solutions\Windows 10 Wizard\Windows10Wizard.exe /update C:\Program Files (x86)\Digital Care Solutions\Windows 10 Wizard\Windows10Wizard.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Lou\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ruby 2.3.3-p222-x64\Start Command Prompt with Ruby.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /E:ON /K C:\Ruby23-x64\bin\setrbvars.bat ==================== Modules chargés (Avec liste blanche) ============== 2017-05-28 16:19 - 2014-01-28 05:16 - 00936728 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2015-12-24 23:05 - 2014-07-23 03:59 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2017-05-25 01:24 - 2017-05-18 09:33 - 01267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2010-07-15 06:44 - 2010-07-15 06:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2015-12-24 23:22 - 2013-04-09 12:05 - 00846848 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe 2017-05-28 16:19 - 2017-06-04 23:24 - 00038544 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2017-05-28 16:19 - 2014-01-28 05:16 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2017-05-25 01:24 - 2017-05-18 09:33 - 01040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00170216 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00997896 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 67717632 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00176992 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00223224 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00291824 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-05-10 12:19 - 2017-05-10 12:19 - 00684656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2015-12-24 23:22 - 2013-01-22 15:40 - 01411072 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll 2015-12-24 23:22 - 2013-04-02 14:41 - 00193024 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll 2015-12-24 23:22 - 2013-05-07 12:16 - 00138752 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF.dll 2015-12-24 23:22 - 2013-05-07 12:16 - 00115712 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJWF\WJWF_WPS_WIN7.DLL 2017-05-25 01:24 - 2017-05-18 09:33 - 65708992 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2014-04-29 17:23 - 2014-04-29 17:23 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\...\amazon.fr -> hxxps://amazon.fr ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 04:34 - 2017-06-03 02:31 - 00001316 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 activate.adobe.com 127.0.0.1 license.piriform.com 127.0.0.1 louis-bon.local www.louis-bon.local 127.0.0.1 localhost ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\Control Panel\Desktop\\Wallpaper -> E:\Bibliotheque\Mes Documents\Web\Arbo web type\www\bootstrap\img\labofond.jpg DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupfolder: C:^Users^Lou^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^EOS Utility.lnk => C:\Windows\pss\EOS Utility.lnk.Startup MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CanonQuickMenu => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE /logon MSCONFIG\startupreg: Chromium => c:\users\lou\appdata\local\chromium\application\chrome.exe --auto-launch-at-startup --profile-directory=Default --restore-last-session MSCONFIG\startupreg: Discord => C:\Users\Lou\AppData\Local\Discord\app-0.0.297\Discord.exe MSCONFIG\startupreg: IJNetworkScannerSelectorEX => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe /FORCE MSCONFIG\startupreg: Malwarebytes TrayApp => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "XboxStat" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run: => "Eraser" HKLM\...\StartupApproved\Run32: => "AdobeCEPServiceManager" HKLM\...\StartupApproved\Run32: => "SDTray" HKLM\...\StartupApproved\Run32: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "Eraser" HKU\S-1-5-21-3562873840-2852857786-3320494930-1000\...\StartupApproved\Run: => "CCleaner Monitoring" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{B84DED96-E32A-49E0-B139-3C5EA0615C50}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [TCP Query User{6F0CA1CE-01B0-4B6E-B741-ED2126BA8B82}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [{DCFF1596-380F-4F5F-842D-11B210A2E7E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{1DBA8E2D-7208-4003-A389-B985A6756DB0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F86C8FF3-3318-41F7-BC5C-24CC9B890CAD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{FE8F0DF5-70F8-4A56-8BF4-6368982D3230}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{C8471454-5D67-4BFD-9A95-3B2F9935CE33}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{2F02F247-8733-4E4A-AA7C-440694C0584C}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.596_0\SZBrowser.exe FirewallRules: [UDP Query User{90F3F39E-85E9-442B-A45F-56E43859CB21}C:\ruby23-x64\bin\ruby.exe] => (Allow) C:\ruby23-x64\bin\ruby.exe FirewallRules: [TCP Query User{6EB9B36A-1F3F-4E04-A032-5EBB7A9097BF}C:\ruby23-x64\bin\ruby.exe] => (Allow) C:\ruby23-x64\bin\ruby.exe FirewallRules: [{FC6BC20D-403A-4EE6-A77D-890C675BB1D8}] => (Allow) C:\Program Files\Adobe\Adobe InDesign CC 2014\InDesign.exe FirewallRules: [{327F6A7E-6F55-4367-AEAF-2D927FDD22C0}] => (Allow) C:\Program Files\Adobe\Adobe InDesign CC 2014\InDesign.exe FirewallRules: [{B79BCB93-4C8C-472D-99B8-6DD0B5913B36}] => (Allow) E:\Bibliotheque\Jeux\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{64E32EC3-31D1-4989-9DA2-B9C9377ED009}] => (Allow) E:\Bibliotheque\Jeux\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{E726D1A8-141C-4F0F-B263-9CD68CBDAC89}C:\users\lou\appdata\local\skypeplugin\pluginhost.exe] => (Block) C:\users\lou\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [TCP Query User{D7394BAA-EE93-4AE3-83EA-813FFA176586}C:\users\lou\appdata\local\skypeplugin\pluginhost.exe] => (Block) C:\users\lou\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [{CE9C6087-27FB-48EA-B0FD-40EADF26B7EC}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe FirewallRules: [{8D50B207-02E1-4DF7-993B-6CBDBF794378}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe FirewallRules: [{978D2C07-B807-45E4-AFD5-90DDD7AE5758}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [UDP Query User{75BEC48B-D8F4-4286-940C-8786ACBF371C}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Allow) C:\program files (x86)\qbittorrent\qbittorrent.exe FirewallRules: [TCP Query User{9B59421C-04EE-4E3F-8855-589BF5F3ED82}C:\program files (x86)\qbittorrent\qbittorrent.exe] => (Allow) C:\program files (x86)\qbittorrent\qbittorrent.exe FirewallRules: [UDP Query User{CD6FF403-D79F-4326-A01A-06ECFF79CA1E}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{50FF29AA-318E-4C4F-842B-105AEF74DA1B}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{DF6D637D-8B2C-4A42-A0CF-F78D8A684D75}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [TCP Query User{7B427B3A-416F-4082-BC2E-10F843500FA2}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [UDP Query User{B43E279C-19CD-44F6-B30B-2A796721A42C}C:\program files (x86)\activision\call of duty - black ops\blackopsmp.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackopsmp.exe FirewallRules: [TCP Query User{8C367C76-BFE7-4C59-8BED-EF1275197409}C:\program files (x86)\activision\call of duty - black ops\blackopsmp.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackopsmp.exe FirewallRules: [UDP Query User{0472B4CF-B202-4A14-B3CC-F922E9987B7B}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [TCP Query User{D6E5F485-39D0-4DC9-A623-CBDF19E9C1C3}C:\program files (x86)\activision\call of duty - black ops\blackops.exe] => (Allow) C:\program files (x86)\activision\call of duty - black ops\blackops.exe FirewallRules: [{570767ED-1349-4574-95F0-CA47548B45BA}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe FirewallRules: [{892AF2F6-B75F-4712-9C67-37350DCE553C}] => (Allow) C:\Program Files\Adobe\Adobe Photoshop CC 2015\Photoshop.exe FirewallRules: [TCP Query User{3C2A2C0C-B70B-4375-B1BE-15E22C81B883}C:\program files (x86)\diablo 1 & 2 gold edition\diablo ii - lord of destruction\game.exe] => (Allow) C:\program files (x86)\diablo 1 & 2 gold edition\diablo ii - lord of destruction\game.exe FirewallRules: [UDP Query User{C20E5A92-20F2-4D6D-9166-C3AADAD345A3}C:\program files (x86)\diablo 1 & 2 gold edition\diablo ii - lord of destruction\game.exe] => (Allow) C:\program files (x86)\diablo 1 & 2 gold edition\diablo ii - lord of destruction\game.exe FirewallRules: [{095A689E-DADD-4C80-A8C3-A8594F8E575B}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.607\SZBrowser.exe FirewallRules: [TCP Query User{E1BF3181-BDEF-4523-AEEE-05B3B69C008D}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Block) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [UDP Query User{2A0B53AF-65A1-4434-B603-0858D844C8B8}C:\program files\netbeans 8.2\bin\netbeans64.exe] => (Block) C:\program files\netbeans 8.2\bin\netbeans64.exe FirewallRules: [TCP Query User{FA866634-0F92-4243-84B0-D02253456FF4}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe FirewallRules: [UDP Query User{3E3189EF-4447-49FD-9C75-1BD1280CF8E7}C:\program files\nodejs\node.exe] => (Allow) C:\program files\nodejs\node.exe FirewallRules: [{7C79C725-905B-42F2-9E03-23C867F8E749}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{2F6AE764-1BEC-451E-8D9C-18781F985DDB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 01-06-2017 10:49:01 Windows Update 02-06-2017 17:08:10 Installed Classic Shell 03-06-2017 04:42:18 JRT Pre-Junkware Removal 04-06-2017 18:30:35 Revo Uninstaller Pro's restore point - Spybot - Search & Destroy 04-06-2017 18:34:04 Revo Uninstaller Pro's restore point - Adobe After 04-06-2017 18:34:16 Removed Adobe After. 04-06-2017 18:35:30 Revo Uninstaller Pro's restore point - Revo Uninstaller 1.95 04-06-2017 18:36:15 Revo Uninstaller Pro's restore point - RomStation 04-06-2017 18:37:23 Revo Uninstaller Pro's restore point - AdBlocker 04-06-2017 18:42:09 JRT Pre-Junkware Removal 04-06-2017 18:47:50 Revo Uninstaller Pro's restore point - SketchUp 2016 04-06-2017 18:48:00 SketchUp 2016 supprimé 04-06-2017 18:48:47 Revo Uninstaller Pro's restore point - QuickTime 7 04-06-2017 18:49:54 Revo Uninstaller Pro's restore point - quick time 04-06-2017 22:34:32 Revo Uninstaller Pro's restore point - untab 04-06-2017 22:37:17 Revo Uninstaller Pro's restore point - Google Chrome 04-06-2017 22:45:59 Revo Uninstaller Pro's restore point - Mozilla Firefox 53.0.3 (x86 fr) 04-06-2017 22:46:43 Revo Uninstaller Pro's restore point - Microsoft Edge 04-06-2017 22:47:28 Revo Uninstaller Pro's restore point - Opera Stable 45.0.2552.888 04-06-2017 22:49:08 Revo Uninstaller Pro's restore point - Internet Explorer 04-06-2017 22:50:59 Revo Uninstaller Pro's restore point - 04-06-2017 22:53:51 Programme d’installation pour les modules Windows 05-06-2017 00:13:14 Revo Uninstaller Pro's restore point - Tweaking.com - Windows Repair ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (06/05/2017 12:28:14 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Eraser.exe, version : 6.2.0.2979, horodatage : 0x57c2350a Nom du module défaillant : KERNELBASE.dll, version : 10.0.15063.296, horodatage : 0xa0527b0c Code d’exception : 0xc0020001 Décalage d’erreur : 0x0000000000069e08 ID du processus défaillant : 0x21c4 Heure de début de l’application défaillante : 0x01d2dd7d7fc02c80 Chemin d’accès de l’application défaillante : C:\Program Files\Eraser\Eraser.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 0ec38144-ca71-4beb-9341-778e1add18a8 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (06/05/2017 12:24:29 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/05/2017 12:24:29 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/05/2017 12:13:30 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/05/2017 12:13:14 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé. . Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {283b4eff-898b-42a3-bbaf-8a7aabc62f78} Error: (06/05/2017 12:12:47 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/05/2017 12:09:29 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/04/2017 11:49:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/04/2017 11:32:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (06/04/2017 11:30:34 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: Lou-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024629 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Erreurs système: ============= Error: (06/05/2017 12:24:29 AM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXtpp90jhw9p0njjb85kvhxpppgrqfp117.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (06/05/2017 12:24:29 AM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXx6k70zsprmq4gyf0kdqjpg0vzrf4f73d.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer Error: (06/05/2017 12:13:30 AM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXtpp90jhw9p0njjb85kvhxpppgrqfp117.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (06/05/2017 12:12:47 AM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXtpp90jhw9p0njjb85kvhxpppgrqfp117.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (06/05/2017 12:09:29 AM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXx6k70zsprmq4gyf0kdqjpg0vzrf4f73d.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer Error: (06/04/2017 11:49:18 PM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXx6k70zsprmq4gyf0kdqjpg0vzrf4f73d.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer Error: (06/04/2017 11:32:14 PM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXx6k70zsprmq4gyf0kdqjpg0vzrf4f73d.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe" -ServerName:RemindersServer Error: (06/04/2017 11:30:34 PM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXjytc7c0yvwb8n3cw0r82k4364sd1s7bv.mca en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (06/04/2017 11:24:43 PM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca Error: (06/04/2017 11:24:41 PM) (Source: DCOM) (EventID: 10001) (User: Lou-PC) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI en tant que Non disponible/Non disponible. L’erreur « 267 » s’est produite lors du démarrage de la commande : "C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca CodeIntegrity: =================================== Date: 2017-06-04 19:33:12.273 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-06-04 19:33:12.049 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvspcap64.dll that did not meet the Store signing level requirements. Date: 2017-06-04 18:29:54.606 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-04 18:29:54.603 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-04 18:24:51.172 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-03 14:36:59.154 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-03 14:36:59.152 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-03 14:36:47.381 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-03 14:36:47.379 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-06-03 14:36:47.377 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz Pourcentage de mémoire utilisée: 20% Mémoire physique - RAM - totale: 8135.03 MB Mémoire physique - RAM - disponible: 6428.3 MB Mémoire virtuelle totale: 16327.03 MB Mémoire virtuelle disponible: 14064.93 MB ==================== Lecteurs ================================ Drive c: (SSD) (Fixed) (Total:223.47 GB) (Free:72.11 GB) NTFS Drive e: (Donnees) (Fixed) (Total:928.46 GB) (Free:382.12 GB) NTFS Drive x: (Recovery) (Fixed) (Total:3.05 GB) (Free:2.8 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: CA8E9C7C) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=223.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: E54E1240) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=42) ==================== Fin de Addition.txt ============================