Format du document : text/plain
Prévisualisation
Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 17.02.2018
Exécuté par arnau_000 (18-02-2018 13:10:36)
Exécuté depuis C:\Users\arnau_000\Downloads
Windows 10 Home Version 1703 15063.786 (X64) (2017-07-28 10:56:57)
Mode d'amorçage: Normal
==========================================================
==================== Comptes: =============================
Administrateur (S-1-5-21-3286503035-1535481467-653880807-500 - Administrator - Disabled)
arnau_000 (S-1-5-21-3286503035-1535481467-653880807-1001 - Administrator - Enabled) => C:\Users\arnau_000
DefaultAccount (S-1-5-21-3286503035-1535481467-653880807-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3286503035-1535481467-653880807-1003 - Limited - Enabled)
Invité (S-1-5-21-3286503035-1535481467-653880807-501 - Limited - Disabled)
==================== Centre de sécurité ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Programmes installés ======================
(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)
µTorrent (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\uTorrent) (Version: 3.5.0.43580 - BitTorrent Inc.)
7-Zip 15.12 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1512-000001000000}) (Version: 15.12.00.0 - Igor Pavlov)
Apple Application Support (32 bits) (HKLM-x32\...\{05E07D23-91E9-4E70-A4CC-EF505088F967}) (Version: 5.4.1 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{741291DA-2B34-4D44-8FB6-58EDE21261D8}) (Version: 5.4.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brackets (HKLM-x32\...\{695E1E4F-E726-481B-BC5B-6728B0D678DC}) (Version: 1.7 - brackets.io)
ByteFence Anti-Malware (HKLM-x32\...\ByteFence) (Version: 3.14.0.10 - Byte Technologies LLC) <==== ATTENTION
Chromium (HKLM-x32\...\{5346BB86-03C6-6A06-B246-1A8662C6C906}) (Version: - )
CommView (HKLM-x32\...\CommView) (Version: 6.1 - TamoSoft)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.1.0232 - Disc Soft Ltd)
DRAGON BALL XENOVERSE 2 (HKLM-x32\...\DRAGON BALL XENOVERSE 2_is1) (Version: - )
DuelystLauncher (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\launcher) (Version: 0.0.9 - Counterplay Games Inc.)
Elgato Game Capture HD (HKLM-x32\...\{FEF7696C-E39A-4E1B-8E73-D242A7AB8DDE}) (Version: 1.42.24.539 - Elgato Systems GmbH)
Epic Games Launcher (HKLM-x32\...\{210AFD22-5ABF-48FD-AB9F-91B36E102CD8}) (Version: 1.1.135.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FileZilla Client 3.22.2.2 (HKLM-x32\...\FileZilla Client) (Version: 3.22.2.2 - Tim Kosse)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Git version 2.11.0.3 (HKLM\...\Git_is1) (Version: 2.11.0.3 - The Git Development Community)
Google Chrome (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Hearthstone Deck Tracker (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\HearthstoneDeckTracker) (Version: 1.5.12 - HearthSim)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.5.37.19 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{ED5CE45D-842B-4C18-A002-87E16EA39BB3}) (Version: 12.8.37.11 - Hewlett-Packard Company)
iTunes (HKLM\...\{9D0D2A8B-7E7B-4D88-8D50-24286ED6A5EB}) (Version: 12.5.5.5 - Apple Inc.)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.17 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\{31AC3B64-AB6C-4659-BB1A-EEDFBA9B98F7}) (Version: 4.1.2 - Riot Games) Hidden
League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games)
Logitech - Assistant pour jeux vidéo 8.88 (HKLM\...\Logitech Gaming Software) (Version: 8.88.30 - Logitech Inc.)
Microsoft Office 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.9001.2138 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\OneDriveSetup.exe) (Version: 17.3.7294.0108 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mises à jour NVIDIA 23.23.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 23.23.0.0 - NVIDIA Corporation) Hidden
Mozilla Firefox 48.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 48.0.2 (x86 fr)) (Version: 48.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0.2 - Mozilla)
NVIDIA GeForce Experience 3.3.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.3.0.95 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
NVIDIA PhysX v8.09.04 (HKLM-x32\...\{A7E07C2B-2220-4415-87E3-784D5814BC93}) (Version: 8.09.04 - NVIDIA Corporation)
NVIDIA Pilote 3D Vision 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.13 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.34.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.17 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
NVIDIA Pilote graphique 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.13 - NVIDIA Corporation)
NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.3.0.95 - NVIDIA Corporation) Hidden
NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.3.5.0 - NVIDIA Corporation) Hidden
NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.110.2.28 - Overwolf Ltd.)
Panneau de configuration NVIDIA 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.13 - NVIDIA Corporation) Hidden
PAYDAY 2 (HKLM-x32\...\PAYDAY 2_is1) (Version: - 505 Games)
PokerStars.fr (HKLM-x32\...\PokerStars.fr) (Version: - PokerStars.fr)
Razer Surround (HKLM-x32\...\Razer Surround) (Version: 1.05.26 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.15.1104 - Razer Inc.)
RogueKiller version 11 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 11 - Adlice Software)
SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0351 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.3.0.95 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation)
Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text Build 3114 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd)
Survarium-Steam (HKLM-x32\...\{A3D9343D-77CD-4bf4-A47A-F87B3BE985B4}_is1) (Version: 0.43d - )
Sweet Home 3D version 4.6 (HKLM\...\Sweet Home 3D_is1) (Version: - eTeks)
TeamSpeak 3 Client (HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9C4F3AF4-21D8-43BD-A69C-517BB96012CF}) (Version: 2.12.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
Wampserver64 3.0.6 (HKLM\...\{wampserver64}_is1) (Version: 3.0.6 - Dominique Ottello aka Otomatic)
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - )
WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
Yahoo! Powered (HKLM-x32\...\{C62D2EED-96AD-FF6D-272D-8FEDF7AD5C6D}) (Version: - ) <==== ATTENTION
ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman)
==================== Personnalisé CLSID (Avec liste blanche): ==========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-3286503035-1535481467-653880807-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\arnau_000\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll => Pas de fichier
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-11-19] (Igor Pavlov)
ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2013-05-24] (Cyberlink)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\ShellExt.dll [2017-03-18] (Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2014-09-04] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2014-09-04] (Alexander Roshal)
ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2013-05-24] (Cyberlink)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\ShellExt.dll [2017-03-18] (Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-11-19] (Igor Pavlov)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\ShellExt.dll [2017-03-18] (Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll -> Pas de fichier
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-10-27] (NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-11-19] (Igor Pavlov)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2014-09-04] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2014-09-04] (Alexander Roshal)
==================== Tâches planifiées (Avec liste blanche) =============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
Task: {080680C6-B291-493F-8515-440DA61C7503} - System32\Tasks\CLMLSvc_P2G8 => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-03-12] (CyberLink)
Task: {0AC25F33-DAC1-4B99-B1A3-108FF500E1CE} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001Core1d2586f602d6460 => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.)
Task: {0B2C540E-B757-408D-8B7C-86E77DF9AA7C} - System32\Tasks\CLVDLauncher => c:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.)
Task: {0D4CDAB4-68F8-43DC-806D-462E32A25A82} - \Advanced System Protector_startup -> Pas de fichier <==== ATTENTION
Task: {12D35A3D-F592-441E-BFDC-27BCF013865B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001UA => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.)
Task: {187F3D8D-418B-44FA-8696-8F9B9235CD73} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2018-01-17] (Microsoft Corporation)
Task: {19C2BD01-E265-4BC6-93DB-7A822C939458} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-01-20] (NVIDIA Corporation)
Task: {2EB9E247-723A-41F5-908C-1B529B98E8EB} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION
Task: {32813826-5641-41B9-9D88-BC6E88B1C769} - System32\Tasks\Yahoo! Powered fanol => C:\windows\system32\wscript.exe "C:\ProgramData\{1BFADE99-91B8-545F-177E-CA1D8D3C41D3}\male.txt" "68747470733a2f2f7761676e672e636f6d" "433a5c50726f6772616d446174615c7b31424641444539392d393142382d353435462d313737452d4341314438443343343144337d5c6365726f6665" "433a5c50726f6772616d446174615c7b31424641444539392d393142382d353435462d3137 (l'élément de données a 80 caractères en plus). <==== ATTENTION
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {41655D10-7103-4369-A357-0140CA0F4ACC} - \WPD\SqmUpload_S-1-5-21-3286503035-1535481467-653880807-1001 -> Pas de fichier <==== ATTENTION
Task: {419DE9C2-B352-4F72-A171-42ECD07B35C1} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation)
Task: {46CA5051-012F-445B-9797-F33B68B6E2B5} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {4E339993-F0EE-4037-96FC-18D5BF6ED9AA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.)
Task: {57CDDD83-BEAC-4699-95E2-C958AA8C2D4D} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION
Task: {5EDCBB02-F13E-4648-BC30-7CD82B9C868E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION
Task: {5FF02E43-B37D-492A-AB46-D1E766FC5D37} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.)
Task: {63E3F48D-0801-4860-AB90-02351658A6FA} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION
Task: {641F1567-D426-42C9-9F65-6BA0AB43C319} - System32\Tasks\Rulaf\{15806A95-4646-1262-A088-5CA15B4A712A} => C:\Users\arnau_000\AppData\Roaming\15806A95-4646-1262-A088-5CA15B4A712A\Rulaf.exe [2013-04-30] () <==== ATTENTION
Task: {67314326-BDEF-48E7-9E64-DE39EDE3B9E8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION
Task: {7B2FB9B2-974B-46C2-AEFF-21A57AF34AB8} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation)
Task: {7C3CAAB2-6589-4CFD-AB7C-54D032015F88} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation)
Task: {7D34A748-7C32-4C69-A29F-50756ECB3B7F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION
Task: {7F558D46-436F-492A-AD84-D59C9B2BA2BE} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe
Task: {8160624A-50AF-4FD7-B932-2A4F0E5FCBC3} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.)
Task: {841A13E6-D89A-4ACE-8086-6C784F747CED} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation)
Task: {8E48AC30-3A26-4A85-B0FF-D65D259DB387} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-02-17] (Microsoft Corporation)
Task: {8EA6C25F-3877-4352-A570-81376C5FD6B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
Task: {9654FCAA-DAFA-48E8-961A-327F16299971} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION
Task: {9C7A6E6F-AAE7-4111-B9A2-142BDED11B1C} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-20] (NVIDIA Corporation)
Task: {A067DAC4-93BA-4A4A-A22D-2D344D228301} - System32\Tasks\Secured Yahoo Powered fanol => wscript.exe "C:\ProgramData\{1815DD76-9257-57B0-1491-C9F28ED3423C}\male.txt" "68747470733a2f2f6275746170756a6f2e636f6d" "433a5c50726f6772616d446174615c7b31383135444437362d393235372d353742302d313439312d4339463238454433343233437d5c6365726f6665" "433a5c50726f6772616d446174615c7b31383135444437362d393235372d35374230 (l'élément de données a 86 caractères en plus). <==== ATTENTION
Task: {A58E5D22-7E17-43F0-8B8D-7567E5219ACF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION
Task: {A699F557-8C84-41C1-9C1A-FA5004FA9740} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION
Task: {B0F86810-4D32-413D-9E58-11CA0C8EF044} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION
Task: {B52DA99E-C6E0-42B0-8E91-EF9964750EFA} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
Task: {B647DBD8-9EB1-4E28-A6AE-B6557C120618} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001Core => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.)
Task: {B8AD02EE-F67A-429D-AC80-A762CCBB3F22} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-30] (Microsoft Corporation)
Task: {BB29DA80-13A9-4C1E-A8C8-0F6307F9F893} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2018-02-07] (Overwolf LTD)
Task: {C6F2BCEE-238A-43B5-AB8B-B3CC28CD6F46} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001UA1d2586f6050cf02 => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe [2015-12-30] (Google Inc.)
Task: {C84F2CF6-A3F8-484E-810F-7A2FA5485691} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.)
Task: {C9289B64-8628-45E7-8AB7-BF55589D97FE} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [2017-07-20] (Byte Technologies LLC) <==== ATTENTION
Task: {CD9BDCA2-41AA-4C34-BA94-79CF876920AC} - System32\Tasks\{85827D04-C2EE-40B1-B089-4A64EA7C6E9B} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\ByteFence\ByteFence.exe" -c /uninstall
Task: {D84D4121-A82D-4B0D-853A-7FB79C755CE8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION
Task: {D9389C19-9866-4C12-80ED-BFDD949357F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-12-21] (HP Inc.)
Task: {E1D433B4-A6FB-41BE-A120-69B1F10B4A52} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-02-17] (Microsoft Corporation)
Task: {F7DEB3D8-BE7C-4D38-B597-555E95C1F1F9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-30] (Microsoft Corporation)
Task: {F8A535BA-F99C-4EEF-8EED-1DF7812E8D06} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION
Task: {F8BA374C-9B61-431E-8528-161F1B6493F7} - System32\Tasks\ByteFence Scan => C:\Program Files\ByteFence\ByteFence.exe [2017-07-20] (Byte Technologies LLC) <==== ATTENTION
Task: {FFAA968E-2AD3-43AB-AF17-D448DF3BB7FE} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION
(Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001Core.job => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3286503035-1535481467-653880807-1001UA.job => C:\Users\arnau_000\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\Secured Yahoo Powered fanol.job => C:\ProgramData\{1815DD76-9257-57B0-1491-C9F28ED3423C}\male.txt <==== ATTENTION
Task: C:\WINDOWS\Tasks\Yahoo! Powered fanol.job => Wscript.exe C:\ProgramData\{1BFADE99-91B8-545F-177E-CA1D8D3C41D3}\male.txt <==== ATTENTION
==================== Raccourcis & WMI ========================
(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)
==================== Modules chargés (Avec liste blanche) ==============
2017-01-13 13:56 - 2017-01-13 13:56 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2017-03-16 15:08 - 2017-03-16 15:08 - 001354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2017-04-29 11:00 - 2017-08-25 09:47 - 000302920 _____ () C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe
2012-10-30 21:05 - 2012-10-30 21:05 - 000607744 _____ () C:\WINDOWS\system32\spool\DRIVERS\x64\3\JobCapsA.DLL
2017-07-28 11:24 - 2017-10-27 17:12 - 000133752 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2017-04-29 11:00 - 2017-08-25 09:47 - 000620872 _____ () C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe
2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2016-11-01 19:10 - 2016-11-01 19:10 - 000052400 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
2017-03-18 21:59 - 2017-03-20 06:11 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-03-07 01:07 - 2015-03-07 01:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll
2016-09-29 22:13 - 2016-09-29 22:13 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll
2015-03-07 01:07 - 2015-03-07 01:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll
2016-09-29 22:13 - 2016-09-29 22:13 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll
2016-12-26 22:36 - 2017-01-20 19:39 - 001147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-12-26 22:36 - 2017-01-20 19:39 - 004489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll
2018-02-17 16:58 - 2018-02-17 16:59 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2018-02-17 16:58 - 2018-02-17 16:59 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2018-02-17 16:58 - 2018-02-17 16:59 - 025135104 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2018-02-17 16:58 - 2018-02-17 16:59 - 002542592 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\skypert.dll
2018-02-17 16:58 - 2018-02-17 16:58 - 000667136 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1803.279.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2016-05-25 13:38 - 2016-05-25 13:38 - 000129304 _____ () C:\Program Files\ByteFence\x64\lz4_x64.dll
2017-03-07 19:18 - 2017-03-07 19:18 - 000582936 _____ () C:\Program Files\ByteFence\rsLggr.exe
2013-11-06 12:15 - 2012-07-18 09:50 - 001198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-11-06 12:20 - 2013-03-12 15:51 - 000626240 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2013-03-12 23:53 - 2013-03-12 23:53 - 000015424 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2016-11-01 08:58 - 2016-11-01 08:58 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2018-02-07 16:38 - 2018-02-07 16:38 - 069441864 _____ () C:\Program Files (x86)\Overwolf\0.110.2.28\libcef.DLL
2016-12-26 22:37 - 2017-01-20 19:38 - 064245184 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2018-02-07 16:38 - 2018-02-07 16:38 - 003110216 _____ () C:\Program Files (x86)\Overwolf\0.110.2.28\libglesv2.dll
2018-02-07 16:38 - 2018-02-07 16:38 - 000086856 _____ () C:\Program Files (x86)\Overwolf\0.110.2.28\libegl.dll
==================== Alternate Data Streams (Avec liste blanche) =========
(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)
AlternateDataStreams: C:\Users\Public\AppData:CSM [222]
==================== Mode sans échec (Avec liste blanche) ===================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)
==================== Association (Avec liste blanche) ===============
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.)
==================== Internet Explorer sites de confiance/sensibles ===============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)
==================== Hosts contenu: ==========================
(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)
2013-08-22 14:25 - 2018-02-17 11:33 - 000002103 _____ C:\WINDOWS\system32\Drivers\etc\hosts
0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly
0.0.0.0 tracking.opencandy.com.s3.amazonaws.com
0.0.0.0 media.opencandy.com
0.0.0.0 cdn.opencandy.com
0.0.0.0 tracking.opencandy.com
0.0.0.0 api.opencandy.com
0.0.0.0 api.recommendedsw.com
0.0.0.0 rp.yefeneri2.com
0.0.0.0 os.yefeneri2.com
0.0.0.0 os2.yefeneri2.com
0.0.0.0 installer.betterinstaller.com
0.0.0.0 installer.filebulldog.com
0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0 inno.bisrv.com
0.0.0.0 nsis.bisrv.com
0.0.0.0 cdn.file2desktop.com
0.0.0.0 cdn.goateastcach.us
0.0.0.0 cdn.guttastatdk.us
0.0.0.0 cdn.inskinmedia.com
0.0.0.0 cdn.insta.oibundles2.com
0.0.0.0 cdn.insta.playbryte.com
0.0.0.0 cdn.llogetfastcach.us
0.0.0.0 cdn.montiera.com
0.0.0.0 cdn.msdwnld.com
0.0.0.0 cdn.mypcbackup.com
0.0.0.0 cdn.ppdownload.com
0.0.0.0 cdn.riceateastcach.us
0.0.0.0 cdn.shyapotato.us
0.0.0.0 cdn.solimba.com
0.0.0.0 cdn.tuto4pc.com
==================== Autres zones ============================
(Actuellement, il n'y a pas de correction automatique pour cette section.)
HKU\S-1-5-21-3286503035-1535481467-653880807-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\arnau_000\Pictures\twd fde.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Le Pare-feu est activé.
==================== MSCONFIG/TASK MANAGER éléments désactivés ==
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "offerbox"
HKU\S-1-5-21-3286503035-1535481467-653880807-1001\...\StartupApproved\StartupFolder: => "MyPC Backup.lnk"
==================== RèglesPare-feu (Avec liste blanche) ===============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
FirewallRules: [UDP Query User{AF465B5B-A43F-494A-B00C-C266B1170B62}C:\games\outlast 2\binaries\win64\outlast2.exe] => (Allow) C:\games\outlast 2\binaries\win64\outlast2.exe
FirewallRules: [TCP Query User{263D4DDB-14B7-4663-B760-C96BFF616729}C:\games\outlast 2\binaries\win64\outlast2.exe] => (Allow) C:\games\outlast 2\binaries\win64\outlast2.exe
FirewallRules: [UDP Query User{7FA35C27-F435-455F-8FD2-625A16F5221B}C:\games\outlast 2\binaries\win64\outlast2.exe] => (Allow) C:\games\outlast 2\binaries\win64\outlast2.exe
FirewallRules: [TCP Query User{4EAC40A6-91C7-4AB5-8D38-F0064AA55505}C:\games\outlast 2\binaries\win64\outlast2.exe] => (Allow) C:\games\outlast 2\binaries\win64\outlast2.exe
FirewallRules: [UDP Query User{A057812A-8D6F-4815-9997-E3C46364E2D9}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [TCP Query User{B9CC0293-BB55-442A-9943-D0815C49BB9F}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{44F32F56-7CCF-4F66-BB05-CB25295B9436}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [TCP Query User{010EF19A-72B1-4D8D-A83B-C2F24E777F2F}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{68FC6364-A8D9-4A41-9DA8-B606DB7CC3E0}C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Block) C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [TCP Query User{0FA9372D-3409-410E-82D5-C81D41AF393E}C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Block) C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{A7DDE785-3FF4-4982-A27C-EABB69C0E971}C:\program files (x86)\payday 2\payday2_win32_release.exe] => (Allow) C:\program files (x86)\payday 2\payday2_win32_release.exe
FirewallRules: [TCP Query User{5013FA17-00E4-4942-B2B2-27282ECA0F9E}C:\program files (x86)\payday 2\payday2_win32_release.exe] => (Allow) C:\program files (x86)\payday 2\payday2_win32_release.exe
FirewallRules: [UDP Query User{1D5A7ED9-F665-4D56-B6EB-D46285912816}C:\users\arnau_000\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\arnau_000\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{DC1FDF04-E61B-4454-AECD-094C31CEF62F}C:\users\arnau_000\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\arnau_000\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [{EE323085-7A67-4968-A3DE-0A53131FEEEA}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [{5DD9BA53-16EB-44F8-BAEE-22C8ADC9DE4D}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Rogue Legacy\RogueLegacy.exe
FirewallRules: [UDP Query User{FCEE4758-6BFA-4A86-989A-4D9B4F1869D3}C:\users\arnau_000\desktop\yu-gi-oh! legacy of the duelist\yugioh.exe] => (Allow) C:\users\arnau_000\desktop\yu-gi-oh! legacy of the duelist\yugioh.exe
FirewallRules: [TCP Query User{836EBC90-D33F-4FBF-801C-9A697E966F58}C:\users\arnau_000\desktop\yu-gi-oh! legacy of the duelist\yugioh.exe] => (Allow) C:\users\arnau_000\desktop\yu-gi-oh! legacy of the duelist\yugioh.exe
FirewallRules: [{F1A36A15-C63E-4CBC-9804-FF75FAD308A2}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{ED4DA9D9-C82C-407B-BBA9-CF3C6C98D193}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{1E254CBA-03A7-4B49-AA25-FFDEB8B828A1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{8B4616A8-C022-4D28-BE31-EEAD708DEFCA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{870B2DBA-11C5-44F0-A5FE-B175F546F27D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{0A63AE87-6D87-4E24-A8F5-C3DA54F3EDD7}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{4504F1F8-BCE6-44BA-9EB0-1EC96917A445}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{FE1F54E7-2743-4556-82BC-531D830C6DF1}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe
FirewallRules: [{F59869E5-DCFC-4B5E-9449-5AD7E622FDEB}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe
FirewallRules: [UDP Query User{6E9C4680-3ABC-4E6B-9E4B-5148D18FB2A0}C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [TCP Query User{694FB4DB-0D75-4507-B824-CAEDE8859911}C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{14F9E860-BE1E-44FD-862B-A408AB853251}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{70A4323D-5A52-4DB0-9DAC-3C9DD2D58DE1}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{EB321544-AC7A-46A5-8C69-BB0FB51E6FE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{72C9F1F7-974D-485C-869E-8F12F1700AEC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{BF04133F-F780-47E8-91BD-7ECBFC0BE9A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{F259903F-E0C9-48CC-ADFD-957F92559D91}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{C5BB3EF8-0BED-4947-BBB7-A455750F86BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe
FirewallRules: [{5753CBAF-EB7F-40CD-98B8-EA92BA9BF0C4}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe
FirewallRules: [{5BB593C3-24B7-4F2A-9E6B-D975A1630069}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\SteamVRPerformanceTest\bin\win64\vr.exe
FirewallRules: [{7D3E2297-031C-4420-BF93-9B9F5445B6C2}] => (Allow) C:\Users\arnau_000\Desktop\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{C490DB89-DBCB-4587-B393-7DD2E22A3ED8}] => (Allow) C:\Users\arnau_000\Desktop\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{6E09F899-F4A1-464D-AAB6-5894834C0C4C}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{D89CD4F5-B30E-49E4-9F0E-56964850C015}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [UDP Query User{321F5B04-2CB1-4199-8BA0-7372E4BD1D51}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [TCP Query User{50D21B3C-2768-4875-9B67-AC9434F3204F}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [UDP Query User{B9E77BF4-BCBF-4025-B071-44BE2E3C65FD}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [TCP Query User{97641EE1-5960-43D0-9994-51C48F0028C5}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe
FirewallRules: [{782302C1-9C5C-44E3-BD6B-927D6AA80BC6}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [{481C43FB-59F1-4BCC-9979-23E2A4CC7765}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Left 4 Dead 2\left4dead2.exe
FirewallRules: [UDP Query User{602A2F2A-B2FB-452D-B1B1-93B97AAC1F9D}C:\users\arnau_000\desktop\steam\steamapps\common\thehunter\game\thehunter.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\thehunter\game\thehunter.exe
FirewallRules: [TCP Query User{C8A88C47-102E-4E4A-91AE-CF81A2DC8B6C}C:\users\arnau_000\desktop\steam\steamapps\common\thehunter\game\thehunter.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\thehunter\game\thehunter.exe
FirewallRules: [{64595B28-67F1-4EAA-9283-3D55BCAB521A}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{A7D42B69-3C08-4C72-8828-310F347F58E5}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Clicker Heroes\Clicker Heroes.exe
FirewallRules: [{2C23E956-D57E-4A32-94D1-E8D429C112B0}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [{7F6B31A3-B544-4EE1-9483-A9F04DE42BB2}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Unturned\Unturned_BE.exe
FirewallRules: [UDP Query User{9877D98E-DA9B-421C-93A9-00545D501489}C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe] => (Allow) C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe
FirewallRules: [TCP Query User{636D02DC-91B1-4087-A941-B23B242D7D92}C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe] => (Allow) C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe
FirewallRules: [UDP Query User{9D41FA2D-5781-4E86-BAD5-CEF13D31C3B4}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Block) C:\program files (x86)\pando networks\media booster\pmb.exe
FirewallRules: [TCP Query User{1D0C6F2F-5442-45BC-9763-68A494736D6A}C:\program files (x86)\pando networks\media booster\pmb.exe] => (Block) C:\program files (x86)\pando networks\media booster\pmb.exe
FirewallRules: [UDP Query User{47C0D92E-E276-4B8D-825B-7BC65DBB9709}C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{2CBBAFA1-D78B-401F-853A-84DD56C6F85C}C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [UDP Query User{C9372734-63E6-4590-AA08-A00A473DEDBE}C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [TCP Query User{1BD12C40-87C0-42BD-A348-F484D7E96593}C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe] => (Block) C:\users\arnau_000\appdata\local\google\chrome\application\chrome.exe
FirewallRules: [{312E6BEE-023F-426C-8063-811E424EC2C6}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{17FED1F1-C565-410C-8C4F-0D4356D6F22E}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Unturned\Unturned.exe
FirewallRules: [{E8809C63-9731-418D-AEAA-FA0197FF5646}] => (Allow) C:\Users\arnau_000\AppData\Local\Microsoft\OneDrive\OneDrive.exe
FirewallRules: [UDP Query User{0AD38A30-7BC1-43F4-A021-C7C39214E410}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [TCP Query User{28F85C5C-BAB9-4586-8B49-BF92C583A283}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [UDP Query User{A139D434-F39F-464A-A1EE-15935E845706}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [TCP Query User{693C0891-4660-4715-A01E-9E39F653BD10}C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_66\bin\javaw.exe
FirewallRules: [UDP Query User{5F20360D-D023-4365-B28C-64690B0540D0}C:\program files (x86)\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Block) C:\program files (x86)\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{E7F06E24-FF2D-4EF5-9C1D-8B6CE4B3D303}C:\program files (x86)\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe] => (Block) C:\program files (x86)\heroes of the storm\versions\base39271\heroesofthestorm_x64.exe
FirewallRules: [{6A1BB526-8C05-413E-99B3-8FE7A3B14382}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
FirewallRules: [{2AE4DC17-7BFC-43E7-936E-0C1250DDB014}] => (Allow) C:\Program Files (x86)\MediaStreamingAgent\MediaStreamingAgent\Node.exe
FirewallRules: [{BF12639D-E4AD-4EFB-B677-8DEEB4554426}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\Blockade3d\main.exe
FirewallRules: [{0FA035A7-91F3-446E-9376-01AB3D32D10C}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\Blockade3d\main.exe
FirewallRules: [UDP Query User{BC8998D9-5407-4E30-A764-3D47745715CB}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Block) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{64118A59-C451-4CAE-BBC4-5DB28A8481D3}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Block) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{979BD503-DF37-41E3-A115-33CD9C1FA4E0}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{5350CCE2-EEE3-4F12-A2EA-6D3A45ADB71B}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E53CA963-5E57-47AA-8D35-7A39A552DFC9}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [TCP Query User{189F0B74-2BF7-48C9-B7AE-5275F839897E}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{E389B773-0E99-4531-84A0-1FE429732880}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [TCP Query User{68E49152-AE4F-401E-9626-345649426F43}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [UDP Query User{6B13C3D1-FE16-4540-82F8-1841C945AA56}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [TCP Query User{AFD33C64-651B-4FFA-9139-F608D99B68A9}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [{222A1E27-D2D7-4E4D-8033-67411DA0260C}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{CDADB13C-7E5D-4A42-92CF-7CA6EF3C90B9}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{1836796F-BFB5-40F9-BFD9-962A28E46122}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\RPGXP\RPGXP.exe
FirewallRules: [{186D8EB5-C3BA-4EE6-BCD7-FC42BE6FB87C}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\RPGXP\RPGXP.exe
FirewallRules: [{E71108C4-1973-40A1-9DDA-F211819959AC}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{9F4BB7DE-05B2-42B5-AB2E-943DE4D75F2E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe
FirewallRules: [{B80892EC-5C84-427A-8D03-F988EEB4322E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{F04D3CE1-272C-4089-B876-BA588F2D5B9F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{EFFD841B-4EA0-4024-B4B3-B19627194FC1}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{84C387AB-FAAB-4279-BF22-8C8065A5F01A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3688\Agent.exe
FirewallRules: [{337008E8-194E-43AD-BEA9-2390442913B8}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{A9A05216-4BB9-4C7F-B687-C52FAD72E942}] => (Allow) C:\Users\arnau_000\Desktop\Steam\SteamApps\common\The Escapists\TheEscapists.exe
FirewallRules: [{C9B20323-8300-4DE2-AEEE-D8E55C3FD770}] => (Allow) C:\Users\arnau_000\Desktop\Steam\Steam.exe
FirewallRules: [{C0740E41-0044-4E68-AEA2-10DA2B4E4609}] => (Allow) C:\Users\arnau_000\Desktop\Steam\Steam.exe
FirewallRules: [{B0FD4707-CDC0-48CD-9D80-13D459538A32}] => (Allow) C:\Users\arnau_000\Desktop\Steam\bin\steamwebhelper.exe
FirewallRules: [{6E720CD9-BB27-4A32-A5DA-CBCEC0690EA6}] => (Allow) C:\Users\arnau_000\Desktop\Steam\bin\steamwebhelper.exe
FirewallRules: [TCP Query User{D4F11F5E-474E-4328-A022-EE3654B87CD1}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [UDP Query User{10228007-CE68-4CF2-A7CE-4ED9B37A5C29}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe
FirewallRules: [{75D39632-EBE4-466C-8BD7-01A93FAA40B5}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\60 Seconds!\60Seconds.exe
FirewallRules: [{32710C2D-5025-4EFC-A1D4-976F01F31449}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\60 Seconds!\60Seconds.exe
FirewallRules: [{3B99738D-EA96-4DEE-BFBC-399A5365ADCD}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Creativerse\Creativerse.exe
FirewallRules: [{15B2C40C-A103-4024-B979-F43C96940BA7}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Creativerse\Creativerse.exe
FirewallRules: [{AECFEF2E-AEB3-4A7E-AE7A-4256ED32236F}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{4B52DBDD-3477-4B3B-A08D-0B20207499DB}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{0F7AAAA9-0EAA-4A35-87AC-6CC39B0EB59B}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{50A89F76-4DCB-4DC3-97C9-C087FE2BEE74}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Game Dev Tycoon\nw.exe
FirewallRules: [{2AE185DB-D4FB-4578-AF1A-62F1C9AF3023}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DB7CF5FA-463F-4369-A1F1-3E3B9164F99D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [TCP Query User{BD16AC4B-FCA9-405F-BB98-E53E7BC83E9A}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [UDP Query User{9ACAB104-41BF-4C01-92F2-331FBFA0746C}C:\program files (x86)\brackets\node.exe] => (Allow) C:\program files (x86)\brackets\node.exe
FirewallRules: [{979B0961-4E22-4B09-93FC-EBBA3C27CB50}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Aftermath\AMLauncher.exe
FirewallRules: [{14FAD903-EF3D-4329-88A8-D2382BD66100}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Aftermath\AMLauncher.exe
FirewallRules: [TCP Query User{7567DA20-177E-4743-967F-8715BE5C7EA0}C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\amlauncher.exe.new.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\amlauncher.exe.new.exe
FirewallRules: [UDP Query User{122652F0-0D13-4CCE-9BA0-09774F2CCD16}C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\amlauncher.exe.new.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\amlauncher.exe.new.exe
FirewallRules: [TCP Query User{71DE6029-5CB9-46C1-9877-E8BD6CF6B874}C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\aftermath.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\aftermath.exe
FirewallRules: [UDP Query User{FA9F1F5F-689B-4A4C-ADE0-132A40428D9A}C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\aftermath.exe] => (Allow) C:\users\arnau_000\desktop\steam\steamapps\common\aftermath\aftermath.exe
FirewallRules: [{8880749F-0FA0-4765-9D26-674A6697083F}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\temp\survarium_launcher.exe
FirewallRules: [{6F144F95-39F6-45C6-BA1D-B8EA10D3988E}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\temp\survarium_updater.exe
FirewallRules: [{440750A4-1A3C-461B-AC44-E5BD1DB9F806}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\temp\survarium_updater.exe
FirewallRules: [{BF3C4197-BCBA-40E9-9D8B-052072BAD27E}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\temp\survarium_updater.exe
FirewallRules: [{E11047B5-39EA-4674-BA34-EDD624B9A78D}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\temp\survarium_updater.exe
FirewallRules: [{1F3E2401-29B4-47D2-BE77-83EF15041FC3}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe
FirewallRules: [{73C5D5C9-10D2-4AFD-ACF9-BDC38C06F58B}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\game\binaries\x86\survarium.exe
FirewallRules: [{573487CC-B683-47E2-87D2-E401C4494DF4}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\game\binaries\x86\survarium-2.exe
FirewallRules: [{390BC96F-1FED-4021-A086-5A806D19F95A}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\Survarium\game\binaries\x86\survarium-2.exe
FirewallRules: [{98417F8B-43E8-464F-B75C-EC98A0D7286F}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\NBA 2K17\NBA2K17.exe
FirewallRules: [{A372F95D-8ECB-4476-A51C-BC69E2ED6A38}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\NBA 2K17\NBA2K17.exe
FirewallRules: [{BA2BF502-5F70-48DC-8F12-E036B8420041}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{A8F0B90C-1BAC-4427-B207-80198C180844}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\theHunter\launcher\launcher.exe
FirewallRules: [{402C659D-355A-46E6-91A2-55C7B580629E}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [{367BF729-6CD6-4457-85B0-FC4AFC51F95B}] => (Allow) C:\Users\arnau_000\Desktop\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe
FirewallRules: [TCP Query User{198CDF3D-3583-4C90-9539-7FE197B53FC1}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{91C3964A-EB16-464A-A4D8-2932FC5DF535}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [{7730C664-661A-43E1-8103-CE2CCD9F0427}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [{0EF77303-BF59-40C7-A61F-7FC9B884BD6E}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{43EC5A4A-C53B-4AB5-BD6B-47C981737092}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{1B98FB38-6082-46B9-9C5B-4B7C8920FDD5}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{54E97F58-D610-4152-8855-4EBFC6F55602}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [{C6BBE18E-8788-4E1A-B2FF-A59FC138B22D}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{82AF99F9-EC94-4B5C-9857-0734F6E2E700}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{A3442619-BC3A-4E15-A8FB-6DE648000FB8}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{B3A5E285-8F0B-40A6-8164-712309ACA139}] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{9C63876D-C020-432E-983D-A6E61A30B1A5}] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [{3866EC2F-1F17-41D3-AC74-04DB9529C8D4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [{4B73339F-CD95-40C8-892B-6EC0CD53201F}] => (Allow) C:\Users\arnau_000\AppData\Local\Chromium\Application\chrome.exe
==================== Points de restauration =========================
12-01-2018 19:33:25 Point de contrôle planifié
17-01-2018 15:08:25 Windows Update
17-02-2018 13:10:06 Windows Update
==================== Éléments en erreur du Gestionnaire de périphériques =============
==================== Erreurs du Journal des événements: =========================
Erreurs Application:
==================
Error: (02/18/2018 01:03:06 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Échec de la procédure d’ouverture pour le service « WmiApRpl » dans la DLL « C:\WINDOWS\system32\wbem\wmiaprpl.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur.
Error: (02/18/2018 01:03:00 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état.
Error: (02/18/2018 01:02:58 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Échec de la procédure d’ouverture pour le service « Lsa » dans la DLL « C:\Windows\System32\Secur32.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur.
Error: (02/18/2018 01:02:58 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Échec de la procédure d’ouverture pour le service « ESENT » dans la DLL « C:\WINDOWS\system32\esentprf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur.
Error: (02/18/2018 01:02:57 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur.
Error: (02/18/2018 11:07:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 57084500
Error: (02/18/2018 11:07:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 57084500
Error: (02/18/2018 11:07:44 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Erreurs système:
=============
Error: (02/18/2018 01:09:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:11 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:10 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:08 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Error: (02/18/2018 01:09:07 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service Détection de services interactifs s’est arrêté avec l’erreur :
Fonction incorrecte.
Windows Defender:
===================================
Date: 2018-02-17 13:42:40.233
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:VBS/Mutuodo.A&threatid=2147724374&enterprise=0
Nom : Trojan:VBS/Mutuodo.A
ID : 2147724374
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\ARNAU_~1\AppData\Roaming\Hifobehadad
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : arnodinateur\arnau_000
Nom du processus : C:\Windows\SysWOW64\wscript.exe
Version de la signature : AV: 1.261.1303.0, AS: 1.261.1303.0, NIS: 118.2.0.0
Version du moteur : AM: 1.1.14500.5, NIS: 2.1.14202.0
Date: 2018-02-17 13:42:30.109
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:VBS/Mutuodo.A&threatid=2147724374&enterprise=0
Nom : Trojan:VBS/Mutuodo.A
ID : 2147724374
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\ARNAU_~1\AppData\Roaming\Hifobehadad
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : arnodinateur\arnau_000
Nom du processus : C:\Windows\SysWOW64\wscript.exe
Version de la signature : AV: 1.261.1303.0, AS: 1.261.1303.0, NIS: 118.2.0.0
Version du moteur : AM: 1.1.14500.5, NIS: 2.1.14202.0
Date: 2018-02-17 13:41:29.178
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:VBS/Mutuodo.A&threatid=2147724374&enterprise=0
Nom : Trojan:VBS/Mutuodo.A
ID : 2147724374
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\arnau_000\AppData\Roaming\Hifobehadad;file:_C:\Users\ARNAU_~1\AppData\Roaming\Hifobehadad
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : arnodinateur\arnau_000
Nom du processus : C:\Users\ARNAU_~1\AppData\Local\{2F891~1\rinaco.exe
Version de la signature : AV: 1.261.1303.0, AS: 1.261.1303.0, NIS: 118.2.0.0
Version du moteur : AM: 1.1.14500.5, NIS: 2.1.14202.0
Date: 2018-02-17 13:41:24.618
Description:
Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:VBS/Mutuodo.A&threatid=2147724374&enterprise=0
Nom : Trojan:VBS/Mutuodo.A
ID : 2147724374
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\ARNAU_~1\AppData\Roaming\Hifobehadad
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : arnodinateur\arnau_000
Nom du processus : C:\Users\ARNAU_~1\AppData\Local\{2F891~1\rinaco.exe
Version de la signature : AV: 1.261.1303.0, AS: 1.261.1303.0, NIS: 118.2.0.0
Version du moteur : AM: 1.1.14500.5, NIS: 2.1.14202.0
Date: 2018-02-17 11:55:47.616
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {F182AB58-9F04-4565-9881-15D968AF8B6C}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système
Date: 2018-02-17 11:44:35.202
Description:
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature :
Version précédente de la signature : 1.259.1741.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de signature : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.14405.2
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu
Date: 2018-02-17 11:44:35.202
Description:
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature :
Version précédente de la signature : 118.2.0.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de signature : Système d’inspection réseau
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 2.1.14202.0
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu
Date: 2018-02-17 11:44:35.198
Description:
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature :
Version précédente de la signature : 1.259.1741.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de signature : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.14405.2
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu
Date: 2018-02-17 11:44:35.198
Description:
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature :
Version précédente de la signature : 1.259.1741.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de signature : Logiciel anti-espion
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.14405.2
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu
Date: 2018-02-17 11:44:35.198
Description:
Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures.
Nouvelle version de la signature :
Version précédente de la signature : 1.259.1741.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de signature : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.14405.2
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu
CodeIntegrity:
===================================
Date: 2018-02-18 13:08:22.477
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\Drivers\WdBoot.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-02-18 13:08:22.473
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.12.17007.18011-0\Drivers\WdBoot.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-02-18 13:05:11.900
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2018-02-18 13:05:11.898
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2018-02-18 13:04:08.660
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2018-02-18 13:04:08.648
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2018-02-18 11:13:56.436
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2018-02-18 11:13:56.434
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Infos Mémoire ===========================
Processeur: Intel(R) Core(TM) i5-3350P CPU @ 3.10GHz
Pourcentage de mémoire utilisée: 53%
Mémoire physique - RAM - totale: 4051.37 MB
Mémoire physique - RAM - disponible: 1885.51 MB
Mémoire virtuelle totale: 10562.5 MB
Mémoire virtuelle disponible: 7261.29 MB
==================== Lecteurs ================================
Drive c: (Windows) (Fixed) (Total:1843.76 GB) (Free:1102.12 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]
Drive d: (Recovery Image) (Fixed) (Total:17.33 GB) (Free:2.16 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)]
\\?\Volume{c6f152ec-8fd0-4583-b0e5-25025d108de4}\ (Windows RE tools) (Fixed) (Total:1 GB) (Free:0.64 GB) NTFS
\\?\Volume{1abc7ffb-1617-4c2b-8717-578ac8b62cb5}\ () (Fixed) (Total:0.44 GB) (Free:0.06 GB) NTFS
==================== MBR & Table des partitions ==================
========================================================
Disk: 0 (Size: 1863 GB) (Disk ID: AD556AEA)
Partition: GPT.
==================== Fin de Addition.txt ============================