cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 19-11-2017
Exécuté par seb-c (22-11-2017 14:32:28)
Exécuté depuis C:\Users\seb-c\Desktop
Windows 10 Home Version 1703 15063.726 (X64) (2017-05-21 09:24:37)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-2005456809-2863052708-1362612016-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2005456809-2863052708-1362612016-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2005456809-2863052708-1362612016-1000 - Limited - Disabled) => C:\Users\defaultuser0
Invité (S-1-5-21-2005456809-2863052708-1362612016-501 - Limited - Disabled)
seb-c (S-1-5-21-2005456809-2863052708-1362612016-1001 - Administrator - Enabled) => C:\Users\seb-c

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

Adobe Flash Player 27 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 27.0.0.187 - Adobe Systems Incorporated)
Apple Application Support (32 bits) (HKLM-x32\...\{05E07D23-91E9-4E70-A4CC-EF505088F967}) (Version: 5.4.1 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{741291DA-2B34-4D44-8FB6-58EDE21261D8}) (Version: 5.4.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{DB18F1C0-846F-46F5-A074-5B97C8AF5C8E}) (Version: 10.3.1.2 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.)
ArmA3Sync 1.5.80 (HKLM-x32\...\{F097E7D7-D093-4394-9EED-43AFCCD12B7A}_is1) (Version: 1.5.80 - The [S.o.E] team)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.27 - Piriform)
Discord (HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\Discord) (Version: 0.0.298 - Discord Inc.)
Dolphin (HKLM-x32\...\Dolphin) (Version: 5.0 - Dolphin Team)
Driver Booster 4.3 (HKLM-x32\...\Driver Booster_is1) (Version: 4.3.0 - IObit)
DriversCloud.com (64 bits) (HKLM\...\{D3536C71-00CD-457F-8624-CBD51FD43F1C}) (Version: 10.0.2.0 - Cybelsoft)
Epic Games Launcher (HKLM-x32\...\{886E86E6-6673-4EAD-A4FF-6E087A661F4E}) (Version: 1.1.123.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESL Wire 1.19.0 (HKLM\...\ESL Wire_is1) (Version: - Turtle Entertainment GmbH)
FACEIT Client version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden
Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games)
iCloud (HKLM\...\{6096C0CC-7E19-4355-87F0-627EC5AA146D}) (Version: 4.0.3.56 - Apple Inc.)
iTunes (HKLM\...\{6C01A0A7-7440-4D48-93C6-2927A1E93FE6}) (Version: 12.6.0.100 - Apple Inc.)
Java 8 Update 141 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180141F0}) (Version: 8.0.1410.15 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\{11B73856-A062-4E6B-A80E-A3F380BBAB65}) (Version: 4.2.1 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games)
LibreOffice 5.2.7.2 (HKLM-x32\...\{C89BB248-1889-4D6B-B310-A744A0545123}) (Version: 5.2.7.2 - The Document Foundation)
Low Specs Experience version 6.1.3 (HKLM-x32\...\{069A3908-0420-4D05-A12F-47CFEBC005CE}_is1) (Version: 6.1.3 - RagnoTech™ Software Solutions)
Malwarebytes version 3.0.6.1469 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.6.1469 - Malwarebytes)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang)
Mises à jour NVIDIA 29.1.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 29.1.0.0 - NVIDIA Corporation) Hidden
MotioninJoy Gamepad tool 0.7.0000 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.0000 - www.motioninjoy.com)
Mozilla Firefox 57.0 (x64 fr) (HKLM\...\Mozilla Firefox 57.0 (x64 fr)) (Version: 57.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 57.0.0.6525 - Mozilla)
NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Pilote 3D Vision 388.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.31 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Pilote graphique 388.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.31 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 18.0.1 - OBS Project)
Origin (HKLM-x32\...\Origin) (Version: 10.5.6.6235 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{81b3405b-329b-423a-b356-ba65ca67b48a}) (Version: latest - ppy Pty Ltd)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Panneau de configuration NVIDIA 388.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.31 - NVIDIA Corporation) Hidden
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.27.3-r125362-release - Plays.tv, LLC)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.992 - Even Balance, Inc.)
RagnoTech ReSwitch version 1.0.0 (HKLM-x32\...\{600BC422-1F0A-4C4B-B6F7-A9B88461F9B0}_is1) (Version: 1.0.0 - RagnoTech™ Software Solutions)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games)
Spotify (HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\Spotify) (Version: 1.0.63.617.g5aca9a2a - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steam Customizer (HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\Steam Customizer) (Version: 1.00.00.00 - Blumont)
SteelSeries Engine 3.11.4 (HKLM\...\SteelSeries Engine 3) (Version: 3.11.4 - SteelSeries ApS)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.3 - TeamSpeak Systems GmbH)
TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.83369 - TeamViewer)
Twitch (HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 7.0.0.0 - Twitch Interactive, Inc.)
Uplay (HKLM-x32\...\Uplay) (Version: 27.0 - Ubisoft)
Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

==================== Personnalisé CLSID (Avec liste blanche): ==========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2014-08-11] (Apple Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-01-20] (Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-11-14] (NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-01-20] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal)

==================== Tâches planifiées (Avec liste blanche) =============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

Task: {06CBACB8-DB04-44BF-B687-FB43DD309DEE} - System32\Tasks\Driver Booster SkipUAC (seb-c) => C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DriverBooster.exe [2017-03-16] (IObit)
Task: {06F50574-AC98-414C-B945-D1EBD57C7808} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation)
Task: {08F56649-C739-4202-8D91-3ABA05590E6B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-10-11] (NVIDIA Corporation)
Task: {0E6D3751-9F6D-4C2D-B11A-3FA485AC60DB} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-11-14] (Adobe Systems Incorporated)
Task: {1F09129C-EA66-4225-861C-D397CF3025E0} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation)
Task: {28EE998B-A425-4DEA-843A-F4D212B7B75B} - System32\Tasks\Open Hardware Monitor\Startup => C:\OpenHardwareMonitor\OpenHardwareMonitor.exe [2016-11-06] ()
Task: {437B73FC-C5D6-468C-B5BC-BB2674902B4D} - System32\Tasks\FACEIT Client => C:\Program Files\FACEIT Client\faceitclient.exe [2017-07-17] ()
Task: {4BAB16EE-378A-48BC-BE6E-249456F748A9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-01] (Google Inc.)
Task: {5ADC3126-BA94-447B-A812-3C351A6BA9A4} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2014-08-25] (Apple Inc.)
Task: {5E211870-2BDD-465C-BFAC-8AB191FDD2DE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.)
Task: {752325F6-C523-41CE-AD2E-F84775D75710} - System32\Tasks\Eteindre le pc => shutdown [Argument = /S]
Task: {AACB8B39-83DB-40E7-811F-4A9D30AA43BB} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-10-11] (NVIDIA Corporation)
Task: {AC39D5D8-7D3F-44E1-8697-822167BA0F01} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation)
Task: {AF653FE9-C1F7-4458-B0C7-387C5417C79D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-10-11] (NVIDIA Corporation)
Task: {B8965C66-97B6-458E-9BE3-5D0D6F9C90C4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-09-01] (Google Inc.)
Task: {B8B26353-848C-45FD-9C0D-68348AB5A9CE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-02-08] (Piriform Ltd)
Task: {CBAD1DAB-065B-4639-87B6-2A3A7D3FD9CC} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation)
Task: {E5A6B3EA-914B-4D14-B2C8-4F100538D097} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2017-09-06] (Realtek Semiconductor)
Task: {E885C464-E0A6-4885-B7DB-97CEFF6A681A} - System32\Tasks\RtHDVBg_SOUNDEDGE => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2017-09-06] (Realtek Semiconductor)
Task: {F1EA8585-902D-4D53-AB35-DAF356465FF6} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11] (NVIDIA Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)


==================== Raccourcis & WMI ========================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)


==================== Modules chargés (Avec liste blanche) ==============

2017-03-16 15:08 - 2017-03-16 15:08 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-03-16 15:08 - 2017-03-16 15:08 - 001354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2017-06-28 03:06 - 2017-06-28 03:06 - 000189248 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe
2017-06-28 03:06 - 2017-06-28 03:06 - 000076888 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe
2017-06-20 14:45 - 2016-04-12 13:39 - 000663056 _____ () C:\Program Files\EslWire\service\WireHelperSvc.exe
2017-06-20 14:45 - 2016-04-14 09:38 - 000214016 _____ () C:\Program Files\EslWire\service\NocIPC64.dll
2017-01-27 02:50 - 2017-10-11 02:01 - 001267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-03-05 18:07 - 2017-05-01 08:37 - 002271520 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll
2017-05-21 10:03 - 2017-11-14 20:56 - 000133752 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-18 21:59 - 2017-03-20 06:11 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000020184 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\QtWebEngineProcess.exe
2017-11-20 23:17 - 2016-11-06 17:15 - 000494592 _____ () C:\OpenHardwareMonitor\OpenHardwareMonitor.exe
2017-11-07 22:13 - 2017-11-07 22:13 - 000033280 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000103424 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000111616 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000041984 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000405504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000173568 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 001934336 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000077824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 001780736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000505856 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 003812864 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2017-01-27 02:50 - 2017-10-11 02:01 - 001040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2017-08-09 03:04 - 2017-08-08 14:13 - 001893880 _____ () C:\Users\seb-c\AppData\Local\Discord\app-0.0.298\ffmpeg.dll
2017-08-09 03:05 - 2017-08-09 03:05 - 001577976 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_toaster\discord_toaster.node
2017-07-24 23:10 - 2017-09-09 20:25 - 000688416 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2017-07-24 23:10 - 2016-09-01 02:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2017-07-24 23:10 - 2017-10-31 04:22 - 002546976 _____ () C:\Program Files (x86)\Steam\video.dll
2017-07-24 23:10 - 2016-09-01 02:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2017-07-24 23:10 - 2016-09-01 02:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2017-07-24 23:10 - 2016-01-27 08:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2017-07-24 23:10 - 2016-01-27 08:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2017-07-24 23:10 - 2016-01-27 08:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2017-07-24 23:10 - 2016-01-27 08:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2017-07-24 23:10 - 2016-01-27 08:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2017-07-24 23:10 - 2017-10-31 04:22 - 000901408 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2017-07-24 23:10 - 2016-07-04 23:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-08-09 03:04 - 2017-08-08 14:13 - 001938424 _____ () C:\Users\seb-c\AppData\Local\Discord\app-0.0.298\libglesv2.dll
2017-08-09 03:04 - 2017-08-08 14:13 - 000095736 _____ () C:\Users\seb-c\AppData\Local\Discord\app-0.0.298\libegl.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000021504 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32event.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000113171 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlc.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 002396691 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libvlccore.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000124416 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32file.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000084992 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtSvg.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000152064 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebEngineWidgets.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000033792 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebEngineCore.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000032256 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWebChannel.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000035328 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\simplejson._speedups.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000372736 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\win32com.shell.shell.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000013824 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libEGL.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 001983488 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\libGLESv2.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 002658512 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\ltc_host_ex.DLL
2017-11-07 22:13 - 2017-11-07 22:13 - 000090112 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWinExtras.pyd
2017-11-07 22:13 - 2017-11-07 22:13 - 000027667 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libdirectsound_plugin.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000031251 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\audio_output\libwaveout_plugin.dll
2017-11-07 22:13 - 2017-11-07 22:13 - 000066579 _____ () C:\Program Files (x86)\Raptr Inc\PlaysTV\plugins\video_output\libdirectdraw_plugin.dll
2017-08-09 03:05 - 2017-10-06 06:43 - 009722360 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_voice\discord_voice.node
2017-08-09 03:05 - 2017-11-10 17:16 - 001471992 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_utils\discord_utils.node
2017-11-22 12:25 - 2017-11-22 12:25 - 000148992 _____ () \\?\C:\Users\seb-c\AppData\Local\Temp\8F7E.tmp.node
2017-08-09 03:04 - 2017-08-09 03:04 - 002658296 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_rpc\discord_rpc.node
2017-11-22 12:24 - 2017-11-22 12:24 - 001505272 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_game_utils\discord_game_utils.node
2017-08-09 04:46 - 2017-08-09 04:46 - 002673656 _____ () \\?\C:\Users\seb-c\AppData\Roaming\discord\0.0.298\modules\discord_contact_import\discord_contact_import.node
2017-07-24 23:12 - 2017-09-07 03:04 - 000678400 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2017-07-24 23:12 - 2017-08-16 23:28 - 073130272 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2017-07-24 23:10 - 2015-09-25 00:52 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2017-01-27 02:50 - 2017-10-11 02:00 - 070806136 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2017-03-16 15:09 - 2017-03-16 15:09 - 001041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2017-03-16 15:09 - 2017-03-16 15:09 - 000080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll

==================== Alternate Data Streams (Avec liste blanche) =========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)


==================== Mode sans échec (Avec liste blanche) ===================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)


==================== Association (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)


==================== Internet Explorer sites de confiance/sensibles ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)

IE trusted site: HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\localhost -> localhost

==================== Hosts contenu: ===============================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2017-01-27 01:50 - 2017-01-27 01:48 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts


==================== Autres zones ============================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\seb-c\OneDrive\Images\gnar.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Malwarebytes TrayApp"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "Spotify Web Helper"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "ESL Wire"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "ApplePhotoStreams"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "iCloudDrive"
HKU\S-1-5-21-2005456809-2863052708-1362612016-1001\...\StartupApproved\Run: => "iCloudServices"

==================== RèglesPare-feu (Avec liste blanche) ===============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [UDP Query User{A2603F40-EFC7-4758-898D-5045AE3BF633}C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [TCP Query User{C5674E15-87E0-4CEF-9C98-2692D61369FA}C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\rising storm 2\binaries\win64\vngame.exe
FirewallRules: [{8647A6EB-6D2F-471E-8097-C2D764579C1C}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{7ED606D3-9319-47E6-9BD4-2B072004B327}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{F7EE0CE1-567F-451F-AB68-89A49E8CA484}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{8ECBCA1A-E32B-4EAF-AED5-8E63D95B5B72}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{DC6A2A84-8A41-40CA-8D76-BEBF14A12D58}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{99505469-977B-4597-967B-4B4EBA251B2D}] => (Allow) C:\Users\seb-c\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [UDP Query User{CB8C3ECC-9F76-4935-86E1-41F111033D0D}C:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) C:\program files (x86)\origin games\fifa 17\fifa17.exe
FirewallRules: [TCP Query User{0E95A894-2295-488F-874D-487FF145E7B8}C:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) C:\program files (x86)\origin games\fifa 17\fifa17.exe
FirewallRules: [UDP Query User{605AE08F-A814-4678-AFD9-37F87CB87612}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{C9698E1B-2142-45C8-A7AB-A60713903D4E}C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [{6FCA7361-8625-465B-9CE1-F2CF6D2ABC20}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{26E81185-89FF-4D2C-B213-916957B3BE4E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{EF7B95DB-18E5-4FF0-9E98-61CE63F72949}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{E94E3802-4E15-4F5C-B909-652E7DA59356}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{6F3AE218-C747-4CD5-82F0-AE582918D8BC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [UDP Query User{695E8487-8CD0-488E-8055-956E8F3204B0}C:\mes dossiers\téléchargements\fivem\fivem.exe] => (Allow) C:\mes dossiers\téléchargements\fivem\fivem.exe
FirewallRules: [TCP Query User{D99F2FD8-8D5E-4C9C-9EBF-462DAB2F15BD}C:\mes dossiers\téléchargements\fivem\fivem.exe] => (Allow) C:\mes dossiers\téléchargements\fivem\fivem.exe
FirewallRules: [UDP Query User{5E399580-C98C-46CB-8B5F-6C2F9147D1EE}C:\program files (x86)\steam\steamapps\common\freestylefootball\fsefootball.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\freestylefootball\fsefootball.exe
FirewallRules: [TCP Query User{39214118-6BE1-461D-A9C4-88814ECA92B4}C:\program files (x86)\steam\steamapps\common\freestylefootball\fsefootball.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\freestylefootball\fsefootball.exe
FirewallRules: [UDP Query User{20F0242A-9A9F-446D-B58B-D228AE9D1D90}C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [TCP Query User{397A6099-B674-4873-9C38-D527B6092952}C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\newz\thenewz.exe
FirewallRules: [UDP Query User{DFC1C37E-2781-40D9-A024-34124B6B58F7}C:\users\seb-c\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\seb-c\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{C317D8F4-FE28-4071-845C-4DCBB130A5F3}C:\users\seb-c\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\seb-c\appdata\roaming\spotify\spotify.exe
FirewallRules: [{3E298EDD-4247-4BD7-B21A-B6253570D350}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\AutoUpdate.exe
FirewallRules: [{0AD5BD04-980B-4BD3-83A3-52DE1DFCFEF7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\AutoUpdate.exe
FirewallRules: [{7801F9A9-F962-4A37-9CD5-5051DDB7814A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DBDownloader.exe
FirewallRules: [{7D8EB9F0-9BA4-4956-A924-6D44E380A068}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DBDownloader.exe
FirewallRules: [{1EAA5F9D-B9D5-44DC-980F-7E2618C5B664}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DriverBooster.exe
FirewallRules: [{D0D522B8-3455-4CB7-97EB-3E4D001EFE61}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.3.0\DriverBooster.exe
FirewallRules: [UDP Query User{68610180-8104-4B48-9558-4DABFF3C57F8}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [TCP Query User{FD315689-B0C2-414D-AA63-E2D62010F422}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [UDP Query User{6E8969DD-7085-459D-A132-8BBA165CB5FB}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Block) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [TCP Query User{E1FDCE8F-9C24-4D43-8F86-A9E6C2B957FF}C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Block) C:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe
FirewallRules: [UDP Query User{AED64F5F-1558-415C-9C6D-38F92FA9AE0C}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [TCP Query User{AC30728A-C700-4F6A-A0EE-C68FC9136A8C}C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{F9B2316E-3BC3-4619-91C2-C90649A8D341}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{6AE98087-CDB4-407E-A2C8-FA831BCFD2E0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe
FirewallRules: [{9C59F815-69C8-4E01-A910-D70F51354304}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{01A004A2-3D6C-4B6C-9707-B549602A0E68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe
FirewallRules: [{7E52BD71-EF44-454A-8500-8E180A10431A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
FirewallRules: [{A9A2F36A-AA4F-454D-B53F-4B4E0224D451}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Tom Clancy's Rainbow Six Siege\rainbowsix.exe
FirewallRules: [UDP Query User{B2C31615-F8FB-474B-A11C-0EDEB7F71DB6}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{A6FD069D-9493-472F-9AB6-2B267E578E28}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [{95A91DEA-1E79-4627-A327-19CD80EBDDF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{4E064A28-4AE7-4CA5-9835-0B54F3BE4405}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe
FirewallRules: [{1A7E1657-64CF-4EB8-83CB-74A2B3FC3D1C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [{0982A3E4-30FE-4EC8-A878-83C704F3CE10}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe
FirewallRules: [UDP Query User{211855CE-210F-434C-9EFE-8011EB07DED8}C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [TCP Query User{B4C151BD-B7B1-4E5B-9D6F-65594EF78E44}C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\squad\squad\binaries\win64\squad.exe
FirewallRules: [{80ED3C5B-CDE0-4252-BFAD-A478BB7DF0B3}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe
FirewallRules: [{D6992883-5C24-4DAC-9E17-49269EE99150}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe
FirewallRules: [{22184C01-BCEC-4B42-AF7C-8F3AB8C1E64A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{B60196E4-3970-4519-8390-6A20E5ADB277}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [UDP Query User{35D52AAF-E1AD-41F0-876A-D0E697EC3D13}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [TCP Query User{A1203006-32FC-47C4-81E2-087681D73F8B}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{BF3B583A-66CD-4101-953C-0C704B85A140}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{2618FB00-5F73-453D-8CA0-6E400BD1C8E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{65B50760-9208-48A7-BF0E-DACE04F29BB2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3A5E9063-ABE9-460C-830D-7072C25EBC53}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{90FD5EE8-0D6A-4CF2-91CE-C93B99F4D9C9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{004ABCD6-FC50-4E9F-9739-9F73F1266074}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{8F2D8763-08D8-49E7-9AD5-830B3AC6C496}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{23EA556E-730F-4E02-8ED5-921E7B3FDA0A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{E31F5A04-86DC-4E37-A3B4-EF6E8AFE1997}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{9CBBEF30-B322-43D1-9BF2-AF96F3782BCF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FB8BD27D-C76B-44E0-AE2D-6FB32823E76D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{6046D84F-E5F7-44C2-8501-2C02E4A1ADFB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A8A7B089-F679-4963-807D-F19EA5A206C5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{17809459-89EF-419D-A686-C7D5AB66C3CE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe
FirewallRules: [{5870FC6B-4FE8-4CA4-A508-8ED638D11AD6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Orchestra 2\Binaries\Win32\ROGame.exe
FirewallRules: [{F85E6593-D01D-4A1A-996C-AA34C31ED9E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [{0AC3459E-6B6F-4E9F-A8C7-CB5BD5F4E196}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe
FirewallRules: [TCP Query User{B84A4250-2F71-4D07-93B8-CDC90F7E4B56}C:\program files (x86)\steam\steamapps\common\lms\lms.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lms\lms.exe
FirewallRules: [UDP Query User{2EF42AC0-7B9D-4770-B66B-06FCA35EA475}C:\program files (x86)\steam\steamapps\common\lms\lms.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\lms\lms.exe
FirewallRules: [{ED76E7EC-10BD-4EA7-93D4-D7BE91DF482B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{F960AA4B-2971-4D17-9678-E4346996C50B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{EF64F990-D110-4892-B39C-DBE721B865A0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crossout\launcher.exe
FirewallRules: [{35D9B6DC-B379-4893-9383-6126EF99A4CC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Crossout\launcher.exe
FirewallRules: [{6D0C60FA-CCED-43F5-B55C-5F9CD4DF3B76}] => (Allow) C:\Program Files\EslWire\wire.exe
FirewallRules: [{40773254-D7A9-44B9-8A26-6ECBF261793E}] => (Allow) C:\Program Files\EslWire\wire.exe
FirewallRules: [TCP Query User{BE92D947-077E-4477-8A6F-21F25282CC98}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [UDP Query User{54698827-56F6-4758-B227-723EE8DA5347}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Block) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe
FirewallRules: [{C6C93BB5-BBC7-4AD5-A4C4-2E83FFD1AB7B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{CFFC06CF-9F06-4F9D-A905-C3E2E7E72895}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe
FirewallRules: [{702A56C0-8428-49B2-95E3-6E4A1E87B91D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{E5AB1BE3-3A79-418B-A95C-E6764157FD1D}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe
FirewallRules: [{A16A8B66-25E7-4EA0-B2FE-C165B0430A3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [{CA9D05CA-9B82-441C-824C-11521CA65411}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DayZ\DayZ_BE.exe
FirewallRules: [TCP Query User{17126E8E-B609-4017-929E-AA8E687BBBAC}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [UDP Query User{76978F69-8207-4828-A8CD-1B524A6C7371}C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz.exe
FirewallRules: [{A1AE4941-1A9F-4633-A30B-DAF356FF6F8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{7AAD5E08-BFA6-4184-ADC8-F12D109F63BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hurtworld\Hurtworld.exe
FirewallRules: [{1EDAA4CE-6D6B-46F8-9342-69A2DB5EBEF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{D5FF13D9-0E66-42C8-A513-38C969315CE2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Hurtworld\HurtworldClient.exe
FirewallRules: [{972515E0-C0D4-4E06-BD4C-DE9754BA5DCC}] => (Allow) C:\Program Files (x86)\Nox\bin\Nox.exe
FirewallRules: [{D6929FFE-DD4D-45E5-9DEB-56B3C75B2FB0}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe
FirewallRules: [TCP Query User{3AB663EE-567E-45B5-8DA0-AD2E51FD93F6}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{67A53061-4036-4E43-B5CE-1D2E4BE79611}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [{95B77A95-E020-4B3C-91E1-9D510F9F2CEA}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe
FirewallRules: [TCP Query User{5FD3A828-B76F-4CEE-8D25-16784445D2B3}C:\games\world_of_warships\wowslauncher.exe] => (Allow) C:\games\world_of_warships\wowslauncher.exe
FirewallRules: [UDP Query User{65A3A229-F365-4062-94D1-8437F98D5587}C:\games\world_of_warships\wowslauncher.exe] => (Allow) C:\games\world_of_warships\wowslauncher.exe
FirewallRules: [{D1CB8120-B781-4C74-A9BF-8CEF2D6ECBA2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [{A8CBAF4D-9857-4073-908D-1211E47BEA62}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Battlerite\Battlerite.exe
FirewallRules: [TCP Query User{54FE7ECA-C2B7-44F1-98F5-CFB63BA96046}C:\program files\dying light the following enhanced edition\dyinglightgame.exe] => (Allow) C:\program files\dying light the following enhanced edition\dyinglightgame.exe
FirewallRules: [UDP Query User{BE7CA32F-4425-40B7-AF70-8E126B344418}C:\program files\dying light the following enhanced edition\dyinglightgame.exe] => (Allow) C:\program files\dying light the following enhanced edition\dyinglightgame.exe
FirewallRules: [TCP Query User{D57C047E-172E-4306-9C77-A4949CCD8223}C:\games\portal 2\portal2.exe] => (Allow) C:\games\portal 2\portal2.exe
FirewallRules: [UDP Query User{F743A865-A6BB-485F-96C4-490883298F45}C:\games\portal 2\portal2.exe] => (Allow) C:\games\portal 2\portal2.exe
FirewallRules: [TCP Query User{045D4C3D-D8E9-4D8A-B680-A35CEB97310C}C:\program files (x86)\valve\portal 2\portal2.exe] => (Allow) C:\program files (x86)\valve\portal 2\portal2.exe
FirewallRules: [UDP Query User{9E570E48-D931-453F-802E-84A211E7D115}C:\program files (x86)\valve\portal 2\portal2.exe] => (Allow) C:\program files (x86)\valve\portal 2\portal2.exe
FirewallRules: [{F64E9662-CB57-4825-BF6D-616276FA9E8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{B4FFE58C-114C-4541-BA51-5AAFE48E2B40}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8A32B7E7-9244-4529-80F5-E7C92D4473A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{0913374B-9680-4FA1-8672-8673CB2F78EF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{627E829A-DC21-47B8-A5F3-5F23069C1748}C:\program files (x86)\battle.net\battle.net.9262\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9262\battle.net.exe
FirewallRules: [UDP Query User{6B830493-490B-489C-95C8-63273DC7A555}C:\program files (x86)\battle.net\battle.net.9262\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9262\battle.net.exe
FirewallRules: [{D4D88338-3BB9-4E37-AE06-0A90FE74B580}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{58063976-8D61-4E09-B86D-552C739FD3DE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [TCP Query User{91562377-1839-4699-8000-8D5989877DFF}C:\users\seb-c\appdata\local\temp\rar$exa0.329\outlast\binaries\win64\olgame.exe] => (Allow) C:\users\seb-c\appdata\local\temp\rar$exa0.329\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{E09BD6BF-C626-4829-B42B-D8D3AF3794FF}C:\users\seb-c\appdata\local\temp\rar$exa0.329\outlast\binaries\win64\olgame.exe] => (Allow) C:\users\seb-c\appdata\local\temp\rar$exa0.329\outlast\binaries\win64\olgame.exe
FirewallRules: [TCP Query User{D35CE781-5F74-4C01-9960-235F249C8D93}C:\users\seb-c\appdata\local\temp\rar$exa0.097\outlast\binaries\win64\olgame.exe] => (Allow) C:\users\seb-c\appdata\local\temp\rar$exa0.097\outlast\binaries\win64\olgame.exe
FirewallRules: [UDP Query User{52E7C7F5-BCC8-4C79-9C70-249D38ABF5A1}C:\users\seb-c\appdata\local\temp\rar$exa0.097\outlast\binaries\win64\olgame.exe] => (Allow) C:\users\seb-c\appdata\local\temp\rar$exa0.097\outlast\binaries\win64\olgame.exe
FirewallRules: [{B2D82DB7-7EC6-4D10-97FA-066C3169B899}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [{90184637-9EEC-4767-A8FC-10495FBD450D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe
FirewallRules: [TCP Query User{D4B9207E-A44E-4FED-9B70-638C071244BD}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{253D87C2-F083-48BE-92B6-315A0D90D0D1}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{D6D5DA94-2537-4AE4-AF55-8EB1E7CDF540}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{11D22A97-E518-4496-9DDC-C11BA03B0345}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{F00B1893-8D12-4E5D-9285-026C88DF3F1F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{9C7FF554-5FDF-4BFC-8522-C614838A68CD}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{285D6EF9-269D-4C83-BC1E-D7201441D8D3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{46820255-C6BD-4DD2-BFEC-0719F98AF194}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{3F4B1960-26BF-4D5B-A592-7386A4B0310B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{6FADC6F8-905E-4713-BD4F-2703E1F8B020}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [TCP Query User{1B1224DB-65D3-4C81-827D-82B3063CD8F8}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{58AE124A-B27D-4428-9D70-6361256A15B1}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{41710C0C-7F5F-45E1-A6DF-36247E31B1CA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{7DD8F2C6-9AAB-4C0D-9B6C-5AB90FA5D3A0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead by Daylight\DeadByDaylight.exe
FirewallRules: [{D6CFF862-3AB8-4B1D-AAA7-C5C044262A00}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{3D9860CA-D363-437D-96E5-EDC658E1D6A6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Brawlhalla\Brawlhalla.exe
FirewallRules: [{D7654769-BA20-48DD-BE73-CD8CCCB90237}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{59E120CD-C24F-4FA8-8D86-D6453A39C90C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\dota 2 beta\game\bin\win64\dota2.exe
FirewallRules: [{F6C90467-ECB4-4E05-AC4D-43F119050C3F}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [{6CC8E810-24C7-4EE4-8659-E8A63FF9FA2C}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe
FirewallRules: [TCP Query User{AD9DBC4A-E530-4261-BB5E-DE6F3FE0E8D5}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [UDP Query User{4FA3D73A-CE87-4E9E-9F42-24D134651135}C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe
FirewallRules: [{A15CE54F-4AD0-42EB-A241-E14E696F30BA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{EFA1808D-E277-4E69-9339-C0095B1D04DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{229BCFD8-9D1A-49F3-8BAB-ECC433A3D67F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [{61307BF5-54E0-4A02-AA21-9E4A733C067C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Squad\squad_launcher.exe
FirewallRules: [TCP Query User{C5636ECA-74FF-4A49-94F5-F41C48C1521C}C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe
FirewallRules: [UDP Query User{60A9EF59-F33D-4D66-8408-8BDF4686EFC2}C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dayz\dayz_x64.exe

==================== Points de restauration =========================

22-11-2017 14:05:19 Avant désinfection

==================== Éléments en erreur du Gestionnaire de périphériques =============


==================== Erreurs du Journal des événements: =========================

Erreurs Application:
==================
Error: (11/21/2017 03:02:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc000041d
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x594
Heure de début de l’application défaillante : 0x01d362d15e02e6f3
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-Q0CQ7.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : ac973ce6-ac83-48e0-b122-af6bdb7ad80c
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 03:02:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x594
Heure de début de l’application défaillante : 0x01d362d15e02e6f3
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-Q0CQ7.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : b6d20afc-016c-4af4-bbcc-cb9642b7dba8
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 02:59:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc000041d
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x2ca4
Heure de début de l’application défaillante : 0x01d362c1e41244e7
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-OE6F0.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : f7d26c6a-2157-41a0-85bf-75844fd357fe
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 02:59:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x2ca4
Heure de début de l’application défaillante : 0x01d362c1e41244e7
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-OE6F0.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : 5c39f8bc-b953-4a29-983c-8c2c53ed82fb
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 01:19:10 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-969P94G)
Description: Le package Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy+App a été interrompu, car sa suspension a été trop longue.

Error: (11/21/2017 01:18:14 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-969P94G)
Description: Échec de l’activation de l’application Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error: (11/21/2017 01:11:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc000041d
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x1dfc
Heure de début de l’application défaillante : 0x01d362c181890706
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-O4TKU.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : fda53985-b204-4adc-89a5-5925fda202c4
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 01:11:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante setup.tmp, version : 51.1052.0.0, horodatage : 0x506a75b5
Nom du module défaillant : botva2.dll_unloaded, version : 0.9.7.151, horodatage : 0x2a425e19
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00005514
ID du processus défaillant : 0x1dfc
Heure de début de l’application défaillante : 0x01d362c181890706
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-O4TKU.tmp\setup.tmp
Chemin d’accès du module défaillant: botva2.dll
ID de rapport : cf25ad59-5a72-4037-a94c-4a669dea6224
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/21/2017 01:10:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante cls-lollypop_x64.exe, version : 0.0.0.0, horodatage : 0x59f73781
Nom du module défaillant : cls-lollypop_x64.exe, version : 0.0.0.0, horodatage : 0x59f73781
Code d’exception : 0xc0000005
Décalage d’erreur : 0x000000000001638a
ID du processus défaillant : 0xd28
Heure de début de l’application défaillante : 0x01d362c1ac674cf6
Chemin d’accès de l’application défaillante : C:\Users\seb-c\AppData\Local\Temp\is-84JLH.tmp\cls-lollypop_x64.exe
Chemin d’accès du module défaillant: C:\Users\seb-c\AppData\Local\Temp\is-84JLH.tmp\cls-lollypop_x64.exe
ID de rapport : b6eeb16d-9aea-469f-9c43-6c3a8d60e4a8
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/20/2017 08:42:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme explorer.exe version 10.0.15063.674 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance.

ID de processus : edc

Heure de début : 01d3623428aa2a66

Heure de fin : 14

Chemin d'accès de l'application : C:\Windows\explorer.exe

ID de rapport : 508b9f63-13f0-4948-b044-8f689efa99be

Nom complet du package défaillant :

ID de l'application relative au package défaillant :


Erreurs système:
=============
Error: (11/22/2017 02:11:23 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
et l’APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.

Error: (11/21/2017 08:20:38 AM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (11/20/2017 11:15:48 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
et l’APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.

Error: (11/20/2017 11:15:13 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT)
Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
et l’APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.

Error: (11/20/2017 11:13:25 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-969P94G)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
et l’APPID
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
au SID DESKTOP-969P94G\seb-c de l’utilisateur (S-1-5-21-2005456809-2863052708-1362612016-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.

Error: (11/20/2017 11:12:50 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-969P94G)
Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID
{C2F03A33-21F5-47FA-B4BB-156362A2F239}
et l’APPID
{316CDED5-E4AE-4B15-9113-7055D84DCC97}
au SID DESKTOP-969P94G\seb-c de l’utilisateur (S-1-5-21-2005456809-2863052708-1362612016-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants.

Error: (11/20/2017 11:11:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur :
Cette demande n’est pas prise en charge.

Error: (11/20/2017 09:05:00 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Le service Optimisation de livraison est en attente de démarrage.

Error: (11/20/2017 09:01:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Origin Web Helper Service n’a pas pu démarrer en raison de l’erreur :
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.

Error: (11/20/2017 09:01:00 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Origin Web Helper Service.


CodeIntegrity:
===================================
Date: 2017-11-22 14:21:45.284
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 14:21:45.280
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 14:07:05.802
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 14:07:05.799
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 12:44:06.032
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 12:44:06.029
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2017-11-22 12:30:46.512
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-125356.dll that did not meet the Microsoft signing level requirements.

Date: 2017-11-22 12:30:46.509
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-125356.dll that did not meet the Microsoft signing level requirements.

Date: 2017-11-22 12:30:46.506
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-125356.dll that did not meet the Microsoft signing level requirements.

Date: 2017-11-22 12:30:41.458
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Raptr Inc\PlaysTV\ltc_help64-125356.dll that did not meet the Microsoft signing level requirements.


==================== Infos Mémoire ===========================

Processeur: Intel(R) Core(TM) i7-4790 CPU @ 3.60GHz
Pourcentage de mémoire utilisée: 44%
Mémoire physique - RAM - totale: 12244.77 MB
Mémoire physique - RAM - disponible: 6738.23 MB
Mémoire virtuelle totale: 20113.09 MB
Mémoire virtuelle disponible: 13505.34 MB

==================== Lecteurs ================================

Drive c: (Windows) (Fixed) (Total:912.65 GB) (Free:400.35 GB) NTFS
Drive d: (Recovery Image) (Fixed) (Total:16.95 GB) (Free:2.14 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]
Drive i: (PIRATES DES CARAIBES) (CDROM) (Total:4.36 GB) (Free:0 GB) UDF

==================== MBR & Table des partitions ==================

==================== Fin de Addition.txt ============================

Publicité


Signaler le contenu de ce document

Publicité