cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x86) Version:29-05-2016 02
Exécuté par Zéro-PC (2016-05-31 17:46:38)
Exécuté depuis C:\Users\Zéro-PC\Desktop
Microsoft Windows 8 Professionnel N (X86) (2015-11-08 13:11:45)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-493461314-785661750-2614819641-500 - Administrator - Disabled)
Invité (S-1-5-21-493461314-785661750-2614819641-501 - Limited - Disabled)
Zéro-PC (S-1-5-21-493461314-785661750-2614819641-1001 - Administrator - Enabled) => C:\Users\Zéro-PC

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

7-Zip 15.14 (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.242 - Adobe Systems Incorporated)
ALMohtarif ALArabi (HKLM\...\ALMohtarif ALArabi) (Version: - )
ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 7.6.303.207 - ALPS ELECTRIC CO., LTD.)
Apple Application Support (32 bits) (HKLM\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{9A629DCB-415D-4A50-85B9-5C2E4F8F74A8}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Avast Internet Security (HKLM\...\Avast) (Version: 11.2.2262 - AVAST Software)
Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.)
Camtasia Studio 8 (HKLM\...\{0B341FFF-66F9-4B82-A73A-C2317514A30F}) (Version: 8.4.3.1793 - TechSmith Corporation)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{4E5386F5-C0F6-4532-A54A-374865AEAB71}) (Version: 1.0.12 - Cisco Systems, Inc.)
Driver Booster 3.2 (HKLM\...\Driver Booster_is1) (Version: 3.2 - IObit)
EmbratoriaG1 (HKLM\...\EmbratoriaG1) (Version: V1.1 - Embratoria)
Freemake Video Converter version 4.1.9 (HKLM\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation)
GlassWire 1.2 (remove only) (HKLM\...\GlassWire 1.2) (Version: 1.2.64 - SecureMix LLC)
Google Chrome (HKLM\...\Google Chrome) (Version: 50.0.2661.102 - Google Inc.)
Google Update Helper (Version: 1.3.30.3 - Google Inc.) Hidden
HP USB Disk Storage Format Tool (HKLM\...\{0E0DF90C-D0BA-4C89-9262-AD78D1A3DE51}) (Version: - )
HSPA USB MODEM (HKLM\...\HSPA USB MODEM ALCATEL_is1) (Version: - Alcatel)
Inkscape 0.91 (HKLM\...\{81922150-317E-4BB0-A31D-FF1C14F707C5}) (Version: 0.91 - inkscape.org)
Internet Download Manager (HKLM\...\Internet Download Manager) (Version: - Tonec Inc.)
iRoot (HKLM\...\{1295E43F-382A-4CB2-9E0F-079C0D7401BB}_is1) (Version: 1.8.6.19461 - Shenzhen Xinyi Network Co.,Ltd.)
iTools 3 (HKLM\...\ThinkSky) (Version: - Shenzhen Thinksky Technology Co., Ltd.)
iTunes (HKLM\...\{2C741651-87E0-4479-9703-6DD0D7988B84}) (Version: 12.3.2.35 - Apple Inc.)
Java 7 Update 15 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217015FF}) (Version: 7.0.150 - Oracle)
Jumpstart Installation Program (HKLM\...\{B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13}) (Version: - Atheros)
K-Lite Mega Codec Pack 10.8.0 (HKLM\...\KLiteCodecPack_is1) (Version: 10.8.0 - )
Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Mixlr version 13 (HKLM\...\{F021F776-6BD4-4301-985D-0C1D27EEC8ED}_is1) (Version: 13 - Mixlr Ltd.)
Mozilla Firefox 44.0.2 (x86 fr) (HKLM\...\Mozilla Firefox 44.0.2 (x86 fr)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
MP3 Player Utilities 3.68 (HKLM\...\{5DFDB75C-DA8C-45DB-987C-67000BB6C3B9}) (Version: 1.0.0 - myMPxPlayer.org)
My WIFI Router (HKLM\...\My WIFI Router) (Version: 3.0.064-1201-001 - TxNetwork, Inc.)
Node.js (HKLM\...\{31052FA5-7A8C-4018-8B9E-3052464780B0}) (Version: 5.6.0 - Node.js Foundation)
Picasa 3 (HKLM\...\Picasa 3) (Version: 3.1 - Google, Inc.)
SafeZone Stable 1.48.2066.101 (Version: 1.48.2066.101 - Avast Software) Hidden
SDFormatter (HKLM\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association)
Snagit 11 (HKLM\...\{44BD21C2-9132-48DB-B65B-23817E4C6F4B}) (Version: 11.2.0 - TechSmith Corporation)
Sparkol VideoScribe (HKLM\...\Sparkol VideoScribe 2.2.2039) (Version: 2.2.2039 - Sparkol)
Sparkol VideoScribe (Version: 2.2.2039 - Sparkol) Hidden
SuperCopier2 (HKLM\...\SuperCopier2) (Version: - )
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.24.0 - Synaptics Incorporated)
UltraISO Premium V9.53 (HKLM\...\UltraISO_is1) (Version: - )
Utilitaire de configuration iPhone (HKLM\...\{B90FCEB7-2B0C-4D27-95B5-54238DF059ED}) (Version: 3.6.2.300 - Apple Inc.)
Vegas Pro 11.0 (HKLM\...\{E734208F-E930-11E0-A055-F04DA23A5C58}) (Version: 11.0.370 - Sony)
VMware Workstation (HKLM\...\VMware_Workstation) (Version: 10.0.3 - VMware, Inc)
VMware Workstation (Version: 10.0.3 - VMware, Inc.) Hidden
WinPcap 4.1.3 (HKLM\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - )
Your Freedom 20160120-02 (HKLM\...\Your_Deploy_0) (Version: - resolution GmbH)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{0BBFE402-CCA1-4f64-9322-13B66D841049}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{23102CBF-AC8D-4424-9364-A79738894850}\MSWord.dll (TechSmith Corporation)
CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{25D005BF-FE63-4cce-AA25-CE952B1D9381}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{638B203F-8FB6-49ec-A139-AB8C530F0CAB}\MSPowerPoint.dll (TechSmith Corporation)
CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{293600C7-E7B6-4f06-9329-D8522A33C7E8}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{B9E98D7E-F599-469d-95A7-0B6F86D082A0}\CamtasiaOutput.dll (TechSmith Corporation)
CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{54050FBB-F2AE-404b-8BFD-7EE3EC784A52}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{18AA4E21-D540-4a3a-9F9F-E6DE33D6F253}\MSExcel.dll (TechSmith Corporation)
CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{6B1948B3-9547-42F8-9B37-7AA9768134C4}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{23102CBF-AC8D-4424-9364-A79738894850}\MSWord.dll (TechSmith Corporation)
CustomCLSID: HKU\S-1-5-21-493461314-785661750-2614819641-1001_Classes\CLSID\{B9E98D7E-F599-469d-95A7-0B6F86D082A0}\InprocServer32 -> C:\Users\Zéro-PC\AppData\Local\TechSmith\SnagIt\Accessories\{B9E98D7E-F599-469d-95A7-0B6F86D082A0}\CamtasiaOutput.dll (TechSmith Corporation)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {05AF311D-EC35-4D05-86A5-924E1B31D6E4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-11-10] (Google Inc.)
Task: {14F5BDDD-F155-4255-AA81-739A5272536B} - System32\Tasks\iToolsDaemon => C:\Program Files\ThinkSky\iTools 3\iToolsDaemon.exe [2015-11-22] ()
Task: {1B43960D-3460-4C65-9A17-E6526A01FDB0} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\WatTask => C:\Windows Activation Technologies\wat.exe [2006-04-21] ()
Task: {1CFC8CCB-1357-4AC6-A48A-3245B5191064} - System32\Tasks\{F662AD1E-D69F-43F4-A508-03955E90DD53} => pcalua.exe -a C:\Users\Zéro-PC\Desktop\PD-Proxy_2.2.0\driver\x86\tapinstall.exe -d C:\Users\Zéro-PC\Desktop\PD-Proxy_2.2.0\driver\x86 -c remove tap0901
Task: {477F1B17-FB61-4737-8C71-4CB0C5864259} - \Windows Debugger -> Pas de fichier <==== ATTENTION
Task: {6DBC5F6C-D591-471D-AB31-AED3DF1BEA53} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.)
Task: {70B0A299-967C-45BA-A08B-7A993B7E6B86} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-05-28] (AVAST Software)
Task: {75AA7074-2F91-46F8-AFA4-986DB45109A4} - System32\Tasks\SafeZone scheduled Autoupdate 1460476045 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-04-15] (Avast Software)
Task: {9F9EE785-E620-4AC4-A1E3-EE5EAED898AF} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-15] (Adobe Systems Incorporated)
Task: {A9473263-60A0-4BF9-9079-3CBA04E5A16C} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-05-28] (AVAST Software)
Task: {F43F7CC2-8B98-49F7-96E7-18120093B232} - System32\Tasks\{4F378E4C-E3B0-40F3-A01B-BF05B9F24DD9} => pcalua.exe -a C:\Users\Zéro-PC\Desktop\TGv2.8.6.0_WIN_32Bit\TunnelGuru.exe -d C:\Users\Zéro-PC\Desktop\TGv2.8.6.0_WIN_32Bit

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\iToolsDaemon.job => C:\Program Files\ThinkSky\iTools 3\iToolsDaemon.exe

==================== Raccourcis =============================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

==================== Modules chargés (Avec liste blanche) ==============

2016-05-28 18:12 - 2016-05-28 18:12 - 00123344 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-05-28 18:12 - 2016-05-28 18:12 - 00135816 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-05-29 11:17 - 2016-05-29 11:17 - 02982040 _____ () C:\Program Files\AVAST Software\Avast\defs\16052900\algo.dll
2016-05-28 18:12 - 2016-05-28 18:12 - 00309912 _____ () C:\Program Files\AVAST Software\Avast\browser_pass.dll
2016-05-28 18:12 - 2016-05-28 18:12 - 00479680 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2015-12-17 18:39 - 2015-12-17 18:39 - 00073512 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 18:39 - 2015-12-17 18:39 - 01040144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-03-28 21:52 - 2009-11-17 11:44 - 00040960 _____ () C:\Program Files\Common Files\DeviceHelper\DeviceManager.exe
2014-11-18 03:59 - 2014-11-18 03:59 - 00047464 _____ () C:\Program Files\Wi-Fi\WiFiGxSvc.exe
2014-06-12 18:22 - 2014-06-12 18:22 - 01261272 _____ () C:\Program Files\VMware\VMware Workstation\libxml2.dll
2015-11-08 14:13 - 2008-05-29 22:22 - 00132608 _____ () C:\Program Files\WinRAR\rarext.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00485240 _____ () C:\Program Files\ThinkSky\iTools 3\iToolsDaemon.exe
2015-11-22 04:18 - 2015-11-22 04:18 - 02038136 _____ () C:\Program Files\ThinkSky\iTools 3\iOSDevice.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 01308024 _____ () C:\Program Files\ThinkSky\iTools 3\MiscCore.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00402808 _____ () C:\Program Files\ThinkSky\iTools 3\TSLib.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00644472 _____ () C:\Program Files\ThinkSky\iTools 3\UICore.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00044920 _____ () C:\Program Files\ThinkSky\iTools 3\Common.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00156536 _____ () C:\Program Files\ThinkSky\iTools 3\Network.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00385912 _____ () C:\Program Files\ThinkSky\iTools 3\MediaUtil.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00548728 _____ () C:\Program Files\ThinkSky\iTools 3\Sqlite.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00103288 _____ () C:\Program Files\ThinkSky\iTools 3\ZLib.dll
2015-11-22 04:18 - 2015-11-22 04:18 - 00167288 _____ () C:\Program Files\ThinkSky\iTools 3\MiscMods.dll
2016-04-12 16:37 - 2016-04-12 16:37 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-05-14 14:31 - 2016-05-11 12:48 - 01738904 _____ () C:\Program Files\Google\Chrome\Application\50.0.2661.102\libglesv2.dll
2016-05-14 14:31 - 2016-05-11 12:48 - 00086168 _____ () C:\Program Files\Google\Chrome\Application\50.0.2661.102\libegl.dll
2013-02-21 16:01 - 2013-02-21 16:01 - 00095232 _____ () C:\Program Files\TechSmith\Snagit 11\VideoRecording.dll
2013-02-21 16:00 - 2013-02-21 16:00 - 00089088 _____ () C:\Program Files\TechSmith\Snagit 11\SDKRecorder.dll
2013-02-21 15:54 - 2013-02-21 15:54 - 04710400 ____R () C:\Program Files\TechSmith\Snagit 11\PDFNetC.dll
2016-05-14 14:31 - 2016-05-11 12:48 - 17565848 _____ () C:\Program Files\Google\Chrome\Application\50.0.2661.102\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)


==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)


==================== Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)


==================== Hosts contenu: ==========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2012-07-26 05:17 - 2016-05-29 22:52 - 00001119 ____A C:\Windows\system32\Drivers\etc\hosts

212.227.67.195 we9stun.winning-eleven.net # Stunserver
103.250.80.146 pes6gate-ec.winning-eleven.net # Pes6Stars Server

==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-493461314-785661750-2614819641-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Zéro-PC\AppData\Roaming\Microsoft\Windows Photo Viewer\Papier peint de la Visionneuse de photos Windows.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\...\StartupApproved\Run: => "QuickTime Task"
HKLM\...\StartupApproved\Run: => "ProductUpdater"
HKLM\...\StartupApproved\Run: => "PD-Proxy"
HKLM\...\StartupApproved\Run: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run: => "ModemListener"
HKLM\...\StartupApproved\Run: => "Qsocial"
HKU\S-1-5-21-493461314-785661750-2614819641-1001\...\StartupApproved\Run: => "Download Accelerator Manager"
HKU\S-1-5-21-493461314-785661750-2614819641-1001\...\StartupApproved\Run: => "Qsocial"

==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{7B3B6DD5-2657-49D1-AF35-D28675ECA60A}] => (Allow) C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{6EF6DE7E-1EA0-47C0-82D7-BCAEB8E9B100}] => (Allow) C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
FirewallRules: [{E7A0613C-CDDD-44DB-8BB9-1C493D3A2F91}] => (Allow) C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{DCF1DA22-1587-4345-AEB8-CEB48AA07767}] => (Allow) C:\Program Files\VMware\VMware Workstation\vmware-hostd.exe
FirewallRules: [{DAFEE0FC-BA6F-4C86-9C1F-4B017AE0B9AE}] => (Allow) C:\Program Files\Wi-Fi\Wi-Fi.exe
FirewallRules: [TCP Query User{ABE86498-8637-49E9-B8DA-C9AB85575A9D}D:\myegy.com - pes.6\pes6.exe] => (Allow) D:\myegy.com - pes.6\pes6.exe
FirewallRules: [UDP Query User{90EA3A98-D7AD-4D82-A60F-2440EA160187}D:\myegy.com - pes.6\pes6.exe] => (Allow) D:\myegy.com - pes.6\pes6.exe
FirewallRules: [{D358DF87-F182-4562-AA0B-77944A19599C}] => (Allow) C:\Program Files\Wi-Fi\TX_Httpd.exe
FirewallRules: [{4E2EA055-7628-4544-AFFC-0BD99AC11F26}] => (Allow) LPort=8317
FirewallRules: [{D3ADF179-7D76-467E-97E7-58766E0C6D2C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{83BD3ABE-D95A-4D68-87A4-05E987EF0129}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe
FirewallRules: [{45067EF2-4D3D-4DE9-BA33-ECF540CE832E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{899D3191-ADCD-46C2-9D28-05B9B4946F8D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{14EEB1B1-B6D4-4FC3-89F3-98D767729982}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{640C7F12-800D-4F07-B063-6D7DD4AF2FDB}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe
FirewallRules: [{45386E44-4E97-44B3-B1B6-74002AFB1513}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe
FirewallRules: [{C5880226-9ACF-4271-8091-C57F1B5A2E25}] => (Allow) C:\Program Files\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{43295D02-5E1F-40B1-9509-E8C7037C60FD}] => (Allow) C:\Program Files\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{7BC29000-3555-4F43-AACD-3E4FEDF6B398}] => (Allow) C:\Program Files\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{54237A6B-D26D-4157-AA6D-9C774A61F4C5}] => (Allow) C:\Program Files\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{CF06C95F-6D01-491C-B244-78938F97C055}] => (Allow) C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{62A89004-7AA8-4F1C-A70B-345A6068F0C5}] => (Allow) C:\Program Files\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [TCP Query User{EB56DAFE-87F6-4946-B192-B3993E67F4C1}C:\users\zéro-pc\appdata\local\temp\rar$ex00.966\http tunnel genius.exe] => (Allow) C:\users\zéro-pc\appdata\local\temp\rar$ex00.966\http tunnel genius.exe
FirewallRules: [UDP Query User{D03EB9C2-C7F5-45FF-ABD8-BFC926153048}C:\users\zéro-pc\appdata\local\temp\rar$ex00.966\http tunnel genius.exe] => (Allow) C:\users\zéro-pc\appdata\local\temp\rar$ex00.966\http tunnel genius.exe
FirewallRules: [TCP Query User{8A2E7BC1-D7F3-4D4A-A2E6-867D593F293A}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [UDP Query User{34A3BA59-1133-4815-948E-AA1467084ECB}C:\windows\system32\javaw.exe] => (Allow) C:\windows\system32\javaw.exe
FirewallRules: [TCP Query User{795E8BF2-B3B8-4B02-8574-109FE0DABD59}C:\program files\embratoria\embratoriag1\embrastreamer.exe] => (Allow) C:\program files\embratoria\embratoriag1\embrastreamer.exe
FirewallRules: [UDP Query User{9A723700-212D-41B7-969D-C64DFF7921EE}C:\program files\embratoria\embratoriag1\embrastreamer.exe] => (Allow) C:\program files\embratoria\embratoriag1\embrastreamer.exe
FirewallRules: [TCP Query User{BDC47D0C-367D-4952-A9AE-E241397CABEB}C:\users\zéro-pc\desktop\embratoriag2_beta\es.exe] => (Allow) C:\users\zéro-pc\desktop\embratoriag2_beta\es.exe
FirewallRules: [UDP Query User{5B25F9BF-79AE-47FF-96A5-C4CFE904974E}C:\users\zéro-pc\desktop\embratoriag2_beta\es.exe] => (Allow) C:\users\zéro-pc\desktop\embratoriag2_beta\es.exe
FirewallRules: [{4755120E-2F35-4730-8C4E-87F502AA8075}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{723F9474-E84B-48CC-9606-21180186D80F}C:\users\zéro-pc\desktop\nouveau dossier (6)\es.exe] => (Allow) C:\users\zéro-pc\desktop\nouveau dossier (6)\es.exe
FirewallRules: [UDP Query User{A85FDF3A-0003-46A7-AA30-FD657EDEA948}C:\users\zéro-pc\desktop\nouveau dossier (6)\es.exe] => (Allow) C:\users\zéro-pc\desktop\nouveau dossier (6)\es.exe
FirewallRules: [{76DEAA67-7C72-4C31-9D51-3830AA7ECB40}] => (Allow) C:\Program Files\GlassWire\GWCtlSrv.exe
FirewallRules: [{0DA83061-9B97-418B-BE37-452FA4CC6405}] => (Allow) C:\Program Files\GlassWire\GWCtlSrv.exe

==================== Points de restauration =========================

31-05-2016 17:43:30 test

==================== Éléments en erreur du Gestionnaire de périphériques =============

Name: VMware Virtual Ethernet Adapter for VMnet1
Description: VMware Virtual Ethernet Adapter for VMnet1
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: VMware Virtual Ethernet Adapter for VMnet8
Description: VMware Virtual Ethernet Adapter for VMnet8
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: VMware, Inc.
Service: VMnetAdapter
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (05/31/2016 05:49:17 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:52:16Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:48:46 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:51:46Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:48:16 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:52:16Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:47:46 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:51:46Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:47:16 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:52:16Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:46:46 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:51:46Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:46:16 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:52:16Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:45:46 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:51:46Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:45:16 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:52:16Z. Code d’erreur : 0x80041316.

Error: (05/31/2016 05:44:46 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Échec de la planification du redémarrage du service de protection logicielle à 2016-06-01T15:51:46Z. Code d’erreur : 0x80041316.


Erreurs système:
=============
Error: (05/31/2016 01:07:06 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (05/30/2016 01:51:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
%%1

Error: (05/30/2016 01:47:02 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Le service VMware Workstation Server s’est arrêté avec l’erreur spécifique au service suivante :
%%4294967295

Error: (05/30/2016 01:45:42 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 6) (User: AUTORITE NT)
Description: 0xc000014d0

Error: (05/30/2016 01:45:40 PM) (Source: Application Popup) (EventID: 875) (User: )
Description: sfdrv01.sys

Error: (05/30/2016 01:45:40 PM) (Source: Application Popup) (EventID: 875) (User: )
Description: sfvfs02.sys

Error: (05/30/2016 01:45:40 PM) (Source: Application Popup) (EventID: 875) (User: )
Description: sfsync02.sys

Error: (05/30/2016 01:18:06 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Le service Client de stratégie de groupe ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture.

Error: (05/30/2016 12:57:18 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (05/30/2016 12:49:42 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
%%1


CodeIntegrity:
===================================
Date: 2016-05-30 13:45:52.464
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-30 12:43:59.752
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 23:06:25.738
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 21:30:44.706
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 19:08:01.064
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 13:35:44.813
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 11:55:25.611
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 11:35:41.626
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-29 11:09:42.064
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.

Date: 2016-05-28 23:01:58.769
Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\smss.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\shell32.dll with signing level Unsigned while the system requires signing level Windows or better to load.


==================== Infos Mémoire ===========================

Processeur: Intel(R) Core(TM)2 Duo CPU T6570 @ 2.10GHz
Pourcentage de mémoire utilisée: 75%
Mémoire physique - RAM - totale: 1976.26 MB
Mémoire physique - RAM - disponible: 484.28 MB
Mémoire virtuelle totale: 3704.26 MB
Mémoire virtuelle disponible: 1515.41 MB

==================== Lecteurs ================================

Drive c: () (Fixed) (Total:48.91 GB) (Free:3.07 GB) NTFS
Drive d: () (Fixed) (Total:249.16 GB) (Free:9.26 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]

==================== MBR & Table des partitions ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: A7795EF8)
Partition 1: (Not Active) - (Size=48.9 GB) - (Type=OF Extended)
Partition 2: (Active) - (Size=249.2 GB) - (Type=07 NTFS)

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité