cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 08-03-2020
Exécuté par LUC (21-03-2020 18:41:07)
Exécuté depuis C:\Users\LUC\Desktop
Windows 10 Home Version 1909 18363.720 (X64) (2019-12-17 14:23:48)
Mode d'amorçage: Safe Mode (minimal)
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-2770031576-96488936-1362846045-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2770031576-96488936-1362846045-503 - Limited - Disabled)
Invité (S-1-5-21-2770031576-96488936-1362846045-501 - Limited - Disabled)
LUC (S-1-5-21-2770031576-96488936-1362846045-1001 - Administrator - Enabled) => C:\Users\LUC
WDAGUtilityAccount (S-1-5-21-2770031576-96488936-1362846045-504 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Avira Antivirus (Enabled - Up to date) {88AE6B46-DC3C-455A-A21B-085F285A3546}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

AVG Secure Browser (HKLM-x32\...\AVG Secure Browser) (Version: 80.0.3624.134 - AVG Technologies)
Avira (HKLM-x32\...\{59215620-90F4-474B-AB7F-C6FD9CE4CC71}) (Version: 1.2.144.30330 - Avira Operations GmbH & Co. KG) Hidden
Avira (HKLM-x32\...\{7ff7e40a-a321-45a2-a6d4-2ab2ae8ce908}) (Version: 1.2.144.30330 - Avira Operations GmbH & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.2002.1755 - Avira Operations GmbH & Co. KG)
Avira Phantom VPN (HKLM-x32\...\Avira Phantom VPN) (Version: 2.32.2.34115 - Avira Operations GmbH & Co. KG)
Avira Privacy Pal (HKLM-x32\...\{F2BC8305-DFBE-4C02-A906-9BBD8EE299A3}_is1) (Version: 2.2.0.1945 - Avira Operations GmbH & Co. KG)
Avira Software Updater (HKLM-x32\...\{B1F4C85F-D3BD-4672-934B-1E10AEB5E50F}) (Version: 2.0.6.27476 - Avira Operations GmbH & Co. KG)
Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 6.4.1.10871 - Avira Operations GmbH & Co. KG)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.64 - Piriform)
Clavier+ 10.8.4 (HKLM\...\Clavier+_is1) (Version: 10.8.4 - Guillaume Ryder)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.12.0.1114 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\Discord) (Version: 0.0.306 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{6653362F-9365-4A3C-9BF8-71494529DE06}) (Version: 1.1.236.0 - Epic Games, Inc.)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.7.0.29455 - Foxit Software Inc.)
GIMP 2.10.14 (HKLM\...\GIMP-2_is1) (Version: 2.10.14 - The GIMP Team)
Howard E-Mail Notifier 1.71 (HKLM-x32\...\Howard E-Mail Notifier_is1) (Version: - the sz development)
IObit Malware Fighter 7 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 7.6.0.5846 - IObit)
IObit Uninstaller 9 (HKLM-x32\...\IObitUninstall) (Version: 9.3.0.11 - IObit)
K-Lite Codec Pack 15.2.6 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.2.6 - KLCP)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 6.3.4.2 (HKLM\...\{191F4D69-B671-4163-BB01-901B89A20D04}) (Version: 6.3.4.2 - The Document Foundation)
LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.)
MariaDB 10.4 (x64) (HKLM\...\{D1267C57-D131-43B8-A89A-AE416D14DAC3}) (Version: 10.4.11.0 - MariaDB Corporation Ab) Hidden
MariaDB 10.4 (x64) (HKLM\...\MariaDB 10.4 (x64)) (Version: 10.4.11.0 - MariaDB Corporation Ab)
Microsoft OneDrive (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.43.0 - Microsoft Corporation)
Mises à jour NVIDIA 38.0.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.4.0 - NVIDIA Corporation) Hidden
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 71.0 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.2.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.2.34 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA Pilote graphique 442.59 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 442.59 - NVIDIA Corporation)
Official Krunker.io Client 1.8.4 (HKLM\...\fe907c98-67eb-539c-836c-964506ccd1b7) (Version: 1.8.4 - Yendis Entertainment Pty Ltd)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.143.0.24 - Overwolf Ltd.)
Overwolf.Setup.VC100CRTx64.Dist (HKLM\...\{EC9D5554-6852-4A55-81BB-AC02C7A8CFED}) (Version: 1.0.0 - Overwolf)
Overwolf.Setup.VC100CRTx86.Dist (HKLM-x32\...\{8989DBC1-E87B-448F-9147-57EEEC5A24A5}) (Version: 1.0.0 - Overwolf) Hidden
PhotoMix 5.3 (HKLM-x32\...\PhotoMix_is1) (Version: - fCoder Group, Inc.)
PlanetSide 2 (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\DG0-PlanetSide 2) (Version: - Sony Online Entertainment)
Smart Defrag 6 (HKLM-x32\...\Smart Defrag_is1) (Version: 6.4.5 - IObit)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Sublime Text 3 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd)
SuperF4 (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\SuperF4) (Version: 1.4 - Stefan Sundin)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH)
TeamSpeak Overlay (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\Overwolf_jnabojaampcpfclojlbildognlnebnhfhibiielh) (Version: 1.0.0.2 - Overwolf app)
Tropico 6 (HKLM-x32\...\Tropico 6_is1) (Version: - )
Twitch (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
UE4 Prerequisites (x64) (HKLM\...\{F9EC45F9-074A-48BF-92E9-A8CADD56F693}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{4e242cc8-5e3c-4b08-9d55-dbc62ddd1208}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.8 - VideoLAN)
Windows Installer (HKLM-x32\...\{8DA41662-F681-47F9-B114-9657FC5799EF}) (Version: 4.98.0 - AdvancedWindowsManager)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft Classic (HKLM-x32\...\World of Warcraft Classic) (Version: - Blizzard Entertainment)
Zoo Tycoon: Ultimate Animal Collection [FULL REMOVAL] (HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\{4A0FF863-48CC-4955-A063-1D2B26A1B4A2}_is1) (Version: 1.1711.52116 - Microsoft Studios)

Packages:
=========
AudioWizard -> C:\Program Files\WindowsApps\ICEpower.AudioWizard_1.5.23.0_x64__dxp88312j1fgj [2019-12-17] (ICEpower)
Collage Maker - Photo Grid & Montage -> C:\Program Files\WindowsApps\35450PhotoCoolApps.CollageMaker-PhotoGridMontage_1.2.19.0_x64__61cxy7b35vdsg [2020-02-03] (Photo Cool Apps) [MS Ad]
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-02] (Microsoft Corporation)
Extension Photos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2020-03-02] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-12-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-12-20] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2019-12-20] (Microsoft Studios) [MS Ad]
MSN Météo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20503.0_x64__8wekyb3d8bbwe [2020-03-11] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2020-01-19] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.956.0_x64__56jybvy8sckqj [2019-12-17] (NVIDIA Corp.)
SmartAudio 2 -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio2_1.1.50.0_x86__qt57b6kdvhcfw [2019-12-17] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))
Speedtest by Ookla -> C:\Program Files\WindowsApps\Ookla.SpeedtestbyOokla_1.9.53.0_x64__43tkc6nmykmb6 [2020-03-20] (Ookla)
Zoo Tycoon: Ultimate Animal Collection -> D:\Jeux\Zoo Tycoon\Zoo Tycoon Ultimate Animal Collection [2020-03-17] (Microsoft Studios)

==================== Personnalisé CLSID (Avec liste blanche): ==============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

ShellIconOverlayIdentifiers: [ IMFSafeBox] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2020-01-16] (IObit Information Technology -> IObit)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers1: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2020-01-16] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-01-31] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2020-02-14] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers1: [SystemSpeedupFilesMenu] -> {14cb2bd0-2375-3d10-9b5d-5e18865c8959} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-01-24] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2020-01-16] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-01-31] (IObit Information Technology -> IObit)
ContextMenuHandlers4: [SystemSpeedupFoldersMenu] -> {700866bb-c8e9-3e71-b359-abb28baed0e8} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_43a967d5f6abee41\nvshext.dll [2020-03-05] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [SystemSpeedupDesktopMenu] -> {0cab5786-30e8-3185-9b3b-ccefbf1b8afe} => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
ContextMenuHandlers6: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2020-01-16] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => C:\Program Files (x86)\IObit\IObit Uninstaller\IUMenuRight.dll [2020-01-31] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2020-02-14] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\Windows\System32\IObitSmartDefragExtension.dll [2019-09-12] (IObit Information Technology -> IObit)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Avec liste blanche) ====================

==================== Raccourcis & WMI ========================

==================== Modules chargés (Avec liste blanche) =============

==================== Alternate Data Streams (Avec liste blanche) ========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)

AlternateDataStreams: C:\Users\LUC\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [130]

==================== Mode sans échec (Avec liste blanche) ==================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="1"

==================== Association (Avec liste blanche) =================

==================== Internet Explorer sites de confiance/sensibles ==========

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com
IE trusted site: HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\localhost -> localhost

==================== Hosts contenu: =========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Autres zones ===========================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKU\S-1-5-21-2770031576-96488936-1362846045-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LUC\Downloads\285990.jpg
DNS Servers: Le média n'est pas connecté à internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "IObit Malware Fighter"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\StartupFolder: => "Twitch.lnk"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "SuperF4"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "YoutubeDownloader"
HKU\S-1-5-21-2770031576-96488936-1362846045-1001\...\StartupApproved\Run: => "YoutubeDownloader_upd"

==================== RèglesPare-feu (Avec liste blanche) ================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [{C6D4CDB0-AF8C-4C62-9915-3FF09467FBDD}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe Pas de fichier
FirewallRules: [{D8694B89-4C43-459A-AB7D-17E64FF1605D}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{50A928D1-7C8F-47B1-8DF6-205FEFF34AB1}] => (Allow) D:\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{9440C36D-48F2-4E2C-8433-48ACABED6EF6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0D75AF2D-D211-4F2B-A989-9EA47FB13F20}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{A0BDFD9F-5640-416A-ACD1-B68D9CC8E776}] => (Allow) D:\Steam\steamapps\common\Squad\squad_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{5D35C204-02C7-4355-8BE0-678D87F02051}] => (Allow) D:\Steam\steamapps\common\Squad\squad_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{A6E29D47-837C-4584-893B-579D84BE1A76}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Fichier non signé]
FirewallRules: [{9D7091BB-A7BC-4D94-B604-F98F9B5307F2}] => (Allow) D:\Steam\steamapps\common\GarrysMod\hl2.exe () [Fichier non signé]
FirewallRules: [{2B8F116B-475D-49FD-B1C5-DF0BE33B93E4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3E6D143C-0E9A-4B58-BE90-60B23911DD63}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{64777295-8E6E-432A-9036-B00290FDC35C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4AB176DC-C0DE-4346-BCD9-79E46B25D8C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1C6B551D-F72E-4736-BEAF-4F2AF89D6519}] => (Allow) C:\SteamLibrary\steamapps\common\Onset\Onset.exe Pas de fichier
FirewallRules: [{E200D761-A19F-4C3D-BB84-C1E5F0544A2C}] => (Allow) C:\SteamLibrary\steamapps\common\Onset\Onset.exe Pas de fichier
FirewallRules: [{4C3CCBD7-AAC8-4956-BB18-53B51F955E8F}] => (Allow) C:\Program Files\MariaDB 10.4\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [{FC232CBC-E405-4F01-A00E-A16F9010381D}] => (Allow) D:\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{15DEFF74-F6D5-4777-A0AC-03C3C9361ADD}] => (Allow) D:\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{2CB76CD8-DA9C-43F4-825D-478D1D265CC3}] => (Allow) D:\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{93BA4C31-89F9-4D44-B87C-A9CF83809A1E}] => (Allow) D:\Epic Games\TheCycleEarlyAccess\Prospect\Binaries\Win64\Prospect-Win64-Shipping.exe (YAGER Development GmbH -> YAGER Development GmbH)
FirewallRules: [{2644B059-301A-4E5C-A4C0-4FA9FDE0E311}] => (Allow) C:\SteamLibrary\steamapps\common\Darwin Project\Darwin.exe Pas de fichier
FirewallRules: [{98F51DD2-193F-4C49-895C-9273C01AB2B2}] => (Allow) C:\SteamLibrary\steamapps\common\Darwin Project\Darwin.exe Pas de fichier
FirewallRules: [{3D2FAE42-CD94-4081-A5B1-39FE32298ED8}] => (Allow) C:\SteamLibrary\steamapps\common\Darwin Project\Darwin\Binaries\Win64\Darwin-Win64-Shipping.exe Pas de fichier
FirewallRules: [{43C59FDA-8990-4429-9EC5-1764B7963198}] => (Allow) C:\SteamLibrary\steamapps\common\Darwin Project\Darwin\Binaries\Win64\Darwin-Win64-Shipping.exe Pas de fichier
FirewallRules: [{CEFC0938-487C-4901-AD38-ACBB70A20091}] => (Allow) D:\Steam\steamapps\common\Paunch\Paunch.exe () [Fichier non signé]
FirewallRules: [{7ADB4CA5-D59E-4B18-9F25-D8086E196892}] => (Allow) D:\Steam\steamapps\common\Paunch\Paunch.exe () [Fichier non signé]
FirewallRules: [TCP Query User{2D04D7E9-77FA-44F6-9A7E-645874A69A79}D:\steam\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) D:\steam\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe (Offworld Industries -> Offworld Industries Ltd.)
FirewallRules: [UDP Query User{0F3DF39E-F690-4FEB-A463-0B9B10B84C54}D:\steam\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe] => (Allow) D:\steam\steamapps\common\squad\squadgame\binaries\win64\squadgame.exe (Offworld Industries -> Offworld Industries Ltd.)
FirewallRules: [{77E18FC3-BC9E-4128-96D7-7FCBEC465077}] => (Allow) D:\Steam\steamapps\common\Frostpunk\Frostpunk.exe (Marek Ziemak -> 11 bit studios S.A.)
FirewallRules: [{A64703AB-5C5A-4D03-83D4-2A2D940EB583}] => (Allow) D:\Steam\steamapps\common\Frostpunk\Frostpunk.exe (Marek Ziemak -> 11 bit studios S.A.)
FirewallRules: [{8CB1FA1B-AD6E-4CD2-9308-ADBDF1C756CA}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FD2CA0C2-BCA1-410E-9780-7F804E609C23}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FC2738A0-A1EA-4590-8CEF-4E4DC2198615}] => (Allow) C:\Users\LUC\AppData\Roaming\uTorrent\uTorrent.exe Pas de fichier
FirewallRules: [{90718392-F76D-4FB3-918A-08801C2CB4A4}] => (Allow) C:\Users\LUC\AppData\Roaming\uTorrent\uTorrent.exe Pas de fichier
FirewallRules: [{E876E99D-FB0C-4C47-901E-DD32D645CB3C}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{4080B058-A821-4A9C-8598-BAD85FDA97BA}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [TCP Query User{1FB3C596-636F-4B5E-BF03-701565203A82}C:\steamlibrary\steamapps\common\onset\onset\binaries\win64\onset-win64-shipping.exe] => (Allow) C:\steamlibrary\steamapps\common\onset\onset\binaries\win64\onset-win64-shipping.exe Pas de fichier
FirewallRules: [UDP Query User{4EF5ED28-385D-4444-8AD0-43093E68607A}C:\steamlibrary\steamapps\common\onset\onset\binaries\win64\onset-win64-shipping.exe] => (Allow) C:\steamlibrary\steamapps\common\onset\onset\binaries\win64\onset-win64-shipping.exe Pas de fichier
FirewallRules: [{C3882D1E-FAE4-4D66-B95B-72BB4F48D216}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [{AAE5B0FE-6A89-4DCC-8C10-E8378E991C03}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [TCP Query User{B765742F-5229-4BD1-9822-944725535FCC}D:\steam\steamapps\common\warface\gamecenter\gamecenter.exe] => (Allow) D:\steam\steamapps\common\warface\gamecenter\gamecenter.exe (Mail.Ru LLC -> )
FirewallRules: [UDP Query User{7BECB236-F9FB-4D16-9BA3-D137C458E09D}D:\steam\steamapps\common\warface\gamecenter\gamecenter.exe] => (Allow) D:\steam\steamapps\common\warface\gamecenter\gamecenter.exe (Mail.Ru LLC -> )
FirewallRules: [{3C8EC992-FA27-4B00-B64C-FAFE15D6DD2F}] => (Allow) D:\Steam\steamapps\common\Ironsight\launcher.exe (WIPLEGAMES Inc. -> WipleGames)
FirewallRules: [{65EAF9E0-233C-4216-AE90-C47502613E8A}] => (Allow) D:\Steam\steamapps\common\Ironsight\launcher.exe (WIPLEGAMES Inc. -> WipleGames)
FirewallRules: [{E7F42CD2-406A-4EE2-8799-2724BD95701B}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [{EBB0E44F-5653-4D00-A41C-E536D31D5DE6}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [{C664FF64-B418-4DDA-8FE1-818317C4617E}] => (Allow) D:\Steam\steamapps\common\WTLOnline\WTL.exe (Epic Games, Inc.) [Fichier non signé]
FirewallRules: [{A3F3D269-0FA9-4B24-B3C1-4DE2E3EF05BD}] => (Allow) D:\Steam\steamapps\common\WTLOnline\WTL.exe (Epic Games, Inc.) [Fichier non signé]
FirewallRules: [TCP Query User{72117457-47B9-459A-AD34-456498969342}D:\steam\steamapps\common\newz\newzlauncher.exe] => (Allow) D:\steam\steamapps\common\newz\newzlauncher.exe (Fredaikis AB -> )
FirewallRules: [UDP Query User{C5F7BEE4-F94D-4231-8AA4-3D8263CCF9CC}D:\steam\steamapps\common\newz\newzlauncher.exe] => (Allow) D:\steam\steamapps\common\newz\newzlauncher.exe (Fredaikis AB -> )
FirewallRules: [{936C4AE8-D352-497B-B46F-97E28F0115D3}] => (Block) D:\steam\steamapps\common\newz\newzlauncher.exe (Fredaikis AB -> )
FirewallRules: [{AE0AE9CA-249D-4767-9599-3E69EFDA039D}] => (Block) D:\steam\steamapps\common\newz\newzlauncher.exe (Fredaikis AB -> )
FirewallRules: [{A6726FEE-11E2-46DF-BDF2-36D9A124EB3E}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Launcher\APBLauncher.exe (Little Orbit LLC -> K2 Network, Inc.)
FirewallRules: [{7497E9D5-6695-46C4-89AE-77E2EF2C028F}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Launcher\APBLauncher.exe (Little Orbit LLC -> K2 Network, Inc.)
FirewallRules: [{BBCAD212-BD62-40BA-8395-ED864B05B09F}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\APB.exe (Little Orbit LLC -> Little Orbit LLC)
FirewallRules: [{2A50CEC5-BC2E-40CF-AB84-D138EB714DCD}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\APB.exe (Little Orbit LLC -> Little Orbit LLC)
FirewallRules: [{F513D760-9670-498E-9F79-C1C492E43F65}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\APB_EAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{B5E20BEA-4353-421B-9685-A078673F5EF9}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\APB_EAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{C31D4198-DC29-4822-A150-A6CA8DB2FFCB}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\VivoxVoiceService.exe (Little Orbit LLC -> Vivox Inc.)
FirewallRules: [{0B7B9F44-7227-4287-8C0B-DB7072201F34}] => (Allow) D:\Steam\steamapps\common\APB Reloaded\Binaries\VivoxVoiceService.exe (Little Orbit LLC -> Vivox Inc.)
FirewallRules: [{F0F71F77-A046-4328-BA6D-D32535ED49D8}] => (Allow) D:\Steam\steamapps\common\War Selection\SteamLauncher.exe () [Fichier non signé]
FirewallRules: [{5B766C8F-0E4C-4AEA-9964-7A56EA349916}] => (Allow) D:\Steam\steamapps\common\War Selection\SteamLauncher.exe () [Fichier non signé]
FirewallRules: [{7B5629B0-C23E-4C29-9EB9-5F6F825704EC}] => (Allow) D:\Steam\steamapps\common\QLBeta\Launch_Game.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{CEF20FED-17D2-4BB8-92A9-DD93D0326C5E}] => (Allow) D:\Steam\steamapps\common\QLBeta\Launch_Game.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{73C33119-2594-4FE5-A236-B189369C67AC}] => (Allow) D:\Steam\steamapps\common\QLBeta\TimeWatch.exe (Epic Games, Inc.) [Fichier non signé]
FirewallRules: [{A63663D4-BB4B-4501-946C-2FBC1EA8361C}] => (Allow) D:\Steam\steamapps\common\QLBeta\TimeWatch.exe (Epic Games, Inc.) [Fichier non signé]
FirewallRules: [{079BC237-D2FE-4DEE-A590-1A4A8FAFF906}] => (Allow) D:\Steam\steamapps\common\QLBeta\TimeWatch\Binaries\Win64\TimeWatch-Win64-Shipping.exe (Nimble Giant) [Fichier non signé]
FirewallRules: [{65FCE501-6767-4DAE-B9D1-F4B2CB5DD317}] => (Allow) D:\Steam\steamapps\common\QLBeta\TimeWatch\Binaries\Win64\TimeWatch-Win64-Shipping.exe (Nimble Giant) [Fichier non signé]
FirewallRules: [{B2A08C03-C60F-4C76-9799-51488365E0D4}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [{A6F7CE82-79FA-41D9-B5F1-EF2C668CC141}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [TCP Query User{8B3068B5-FF14-401B-BFA7-6AC2F45C916D}D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe] => (Allow) D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [UDP Query User{C246586E-C680-4976-8815-2F9D3A505423}D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe] => (Allow) D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [{4D650A2A-C49D-49CA-A1FC-40B959E9E6D3}] => (Block) D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [{FFFCCC6D-8649-4D2A-9855-D770A5BBE375}] => (Block) D:\steam\steamapps\common\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC) [Fichier non signé]
FirewallRules: [TCP Query User{F6E8B420-89B3-4B3B-9507-BBF87AF0E1D9}D:\battle.net\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\battle.net\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{F2C6B594-DE8C-48C5-BF7C-84E81BB5D80B}D:\battle.net\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\battle.net\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{C84280FE-4349-48F0-A19F-AF85490843B7}] => (Block) D:\battle.net\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{24079AE5-B0BB-4DEB-A773-EA25199559E8}] => (Block) D:\battle.net\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{A434A1D8-7A86-41F1-AE74-D40D3A06E692}D:\krunker\official krunker.io client\official krunker.io client.exe] => (Allow) D:\krunker\official krunker.io client\official krunker.io client.exe (Yendis Entertainment Pty Ltd) [Fichier non signé]
FirewallRules: [UDP Query User{835064C5-03B4-48CE-A1EF-068159A59119}D:\krunker\official krunker.io client\official krunker.io client.exe] => (Allow) D:\krunker\official krunker.io client\official krunker.io client.exe (Yendis Entertainment Pty Ltd) [Fichier non signé]
FirewallRules: [{A6DB7756-F8C4-4A4C-BBCA-691E838E5BED}] => (Block) D:\krunker\official krunker.io client\official krunker.io client.exe (Yendis Entertainment Pty Ltd) [Fichier non signé]
FirewallRules: [{BE8DEFE8-F9E1-4B09-8719-972880AF512A}] => (Block) D:\krunker\official krunker.io client\official krunker.io client.exe (Yendis Entertainment Pty Ltd) [Fichier non signé]
FirewallRules: [{A0829CB9-63FF-4E72-8F2F-38FADCB8CF44}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [{99A10B9D-C5B1-4236-BB28-393D6252C5F9}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [{C1E74CB8-88E4-49B3-AE12-70F6464FA8B2}] => (Allow) D:\Steam\steamapps\common\Holdfast Nations At War\Holdfast NaW.exe () [Fichier non signé]
FirewallRules: [{16D70B66-3367-4678-AFE0-478C14A8D11E}] => (Allow) D:\Steam\steamapps\common\Holdfast Nations At War\Holdfast NaW.exe () [Fichier non signé]
FirewallRules: [{45E15D31-17BD-4DCA-80CD-9D61F2823DFB}] => (Allow) C:\Program Files (x86)\Overwolf\0.143.0.24\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{C6C6A788-1606-49F4-9EE3-E7E65DF4AB47}] => (Allow) C:\Program Files (x86)\Overwolf\0.143.0.24\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{6BCD8F97-0682-40A6-8498-9B0923355EF2}] => (Block) C:\Program Files (x86)\Overwolf\0.143.0.24\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{AAFF4A16-12C9-48FC-A9CE-8AE8DCD0746B}] => (Block) C:\Program Files (x86)\Overwolf\0.143.0.24\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [TCP Query User{0FF3F3FD-3F6B-4ED8-867B-0834E6195084}D:\jeux\survivingtheaftermath\aftermath64.exe] => (Allow) D:\jeux\survivingtheaftermath\aftermath64.exe (Iceflake Studios Oy -> )
FirewallRules: [UDP Query User{8A2135A6-AF22-4DA6-8310-1EED6C0CACAB}D:\jeux\survivingtheaftermath\aftermath64.exe] => (Allow) D:\jeux\survivingtheaftermath\aftermath64.exe (Iceflake Studios Oy -> )
FirewallRules: [{3240A8A5-788B-4CDB-9F67-1A88A7AAD2C4}] => (Block) D:\jeux\survivingtheaftermath\aftermath64.exe (Iceflake Studios Oy -> )
FirewallRules: [{91BB8994-EDB9-4890-B68E-88DD6452732A}] => (Block) D:\jeux\survivingtheaftermath\aftermath64.exe (Iceflake Studios Oy -> )
FirewallRules: [{60CED27D-B294-4E55-9C79-85C538C5F600}] => (Allow) D:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe (Daybreak Game Company LLC -> Daybreak Game Company)
FirewallRules: [{0A57778F-36B0-4C01-AFCD-9D47B8A584EB}] => (Allow) D:\Steam\steamapps\common\PlanetSide 2\LaunchPad.exe (Daybreak Game Company LLC -> Daybreak Game Company)
FirewallRules: [TCP Query User{186D477B-3884-435B-BBF9-A8089976D43A}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe (Daybreak Game Company LLC -> Daybreak Game Company, LLC)
FirewallRules: [UDP Query User{386F7500-DF35-4C58-BD68-DB7D5453494B}D:\steam\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe (Daybreak Game Company LLC -> Daybreak Game Company, LLC)
FirewallRules: [{75A5C8D1-C4C3-4C7C-B024-1CD28B7BDF5B}] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe (Daybreak Game Company LLC -> Daybreak Game Company, LLC)
FirewallRules: [{C7970506-7572-4215-A82A-DE0AF0070C14}] => (Block) D:\steam\steamapps\common\planetside 2\planetside2_x64.exe (Daybreak Game Company LLC -> Daybreak Game Company, LLC)
FirewallRules: [{13EB9B16-8FB0-4B4A-BB28-1CF8AE5F70FD}] => (Allow) C:\SteamLibrary\steamapps\common\Rust\Rust.exe Pas de fichier
FirewallRules: [{128DA9AB-C8CF-466C-86A2-F5BA5C69F7B7}] => (Allow) C:\SteamLibrary\steamapps\common\Rust\Rust.exe Pas de fichier
FirewallRules: [{2FF8A413-5122-417F-BDC8-6C793F241E2C}] => (Allow) C:\Windows\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{66B2F0B3-AA4D-4101-8715-028661A74AFC}] => (Allow) C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe (AVG Technologies USA, LLC -> AVG Technologies)
FirewallRules: [{5CC819E0-95BB-4D56-8BAF-7602C457E854}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
FirewallRules: [{E01AD3A4-9085-4C3A-B2E9-BBC9832F9E90}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
FirewallRules: [{0934FF1D-C7A7-477D-A694-CE0D5500CCD0}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)

==================== Points de restauration =========================

21-03-2020 07:55:11 ZHPcleaner
21-03-2020 08:14:47 Optimisation Avira System Speedup

==================== Éléments en erreur du Gestionnaire de périphériques ============

Name: Pilote d’infrastructure de virtualisation Microsoft Hyper-V
Description: Pilote d’infrastructure de virtualisation Microsoft Hyper-V
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: Vid
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Erreurs du Journal des événements: ========================

Erreurs Application:
==================
Error: (03/21/2020 06:33:14 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT)
Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-UCEFLQB$ via https://AMD-KeyId-dc815760a4887a3abc0bfdc0cec1a0fbb5cdff78.microsoftaik.azure.net/templates/Aik/scep :

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-dc815760a4887a3abc0bfdc0cec1a0fbb5cdff78.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Cache-Control: no-cache
Date: Sat, 21 Mar 2020 17:33:13 GMT
Pragma: no-cache
Content-Length: 121
Content-Type: application/json; charset=utf-8
Expires: -1
x-ms-request-id: ebf8dd14-bb02-4cb3-b0c1-3ce7f3651738
Strict-Transport-Security: max-age=31536000;includeSubDomains
X-Content-Type-Options: nosniff

Méthode : GET(516ms)
Étape : GetCACaps
Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)

Error: (03/21/2020 06:32:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.18362.1, horodatage : 0x533f8404
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x3b24
Heure de début de l’application défaillante : 0x01d5ffa6c04cea1a
Chemin d’accès de l’application défaillante : C:\Windows\system32\backgroundTaskHost.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : de7874b0-55ac-4700-bb4c-14c7266f82cb
Nom complet du package défaillant : Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
ID de l’application relative au package défaillant : CortanaUI

Error: (03/21/2020 06:32:47 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.18362.1, horodatage : 0x533f8404
Nom du module défaillant : twinapi.appcore.dll, version : 10.0.18362.693, horodatage : 0xd9f9dc8c
Code d’exception : 0xc0000409
Décalage d’erreur : 0x00000000000ab865
ID du processus défaillant : 0x334
Heure de début de l’application défaillante : 0x01d5ffa6bca94c66
Chemin d’accès de l’application défaillante : C:\Windows\system32\backgroundTaskHost.exe
Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll
ID de rapport : dbc8659f-240c-4cb1-aad1-4e9ebe2ca235
Nom complet du package défaillant : Microsoft.MicrosoftOfficeHub_18.2002.1101.0_x64__8wekyb3d8bbwe
ID de l’application relative au package défaillant : Microsoft.MicrosoftOfficeHub

Error: (03/21/2020 06:32:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.18362.1, horodatage : 0x533f8404
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x728
Heure de début de l’application défaillante : 0x01d5ffa6badf48ac
Chemin d’accès de l’application défaillante : C:\Windows\system32\backgroundTaskHost.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : a463e647-127d-4764-9eeb-df222b25f4d3
Nom complet du package défaillant : Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
ID de l’application relative au package défaillant : CortanaUI

Error: (03/21/2020 06:32:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante LockApp.exe, version : 10.0.18362.329, horodatage : 0x5d65c0cf
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x1ebc
Heure de début de l’application défaillante : 0x01d5ffa6b755600e
Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : f8b65678-440d-4137-ac33-fb2cd9e5c85b
Nom complet du package défaillant : Microsoft.LockApp_10.0.18362.449_neutral__cw5n1h2txyewy
ID de l’application relative au package défaillant : WindowsDefaultLockScreen

Error: (03/21/2020 06:32:06 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.18362.1, horodatage : 0x533f8404
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x3770
Heure de début de l’application défaillante : 0x01d5ffa6a48c6744
Chemin d’accès de l’application défaillante : C:\Windows\system32\backgroundTaskHost.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : fb197cd0-40cb-44aa-9d8e-dddd03a12559
Nom complet du package défaillant : Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
ID de l’application relative au package défaillant : CortanaUI

Error: (03/21/2020 06:31:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.18362.719, horodatage : 0x5e62d62b
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x2ef4
Heure de début de l’application défaillante : 0x01d5ffa691db1057
Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : d2225e8e-1f15-415c-a01c-486ea49cc1e6
Nom complet du package défaillant : Microsoft.MicrosoftEdge_44.18362.449.0_neutral__8wekyb3d8bbwe
ID de l’application relative au package défaillant : MicrosoftEdge

Error: (03/21/2020 06:31:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante SearchUI.exe, version : 10.0.18362.693, horodatage : 0x5e4f5d3c
Nom du module défaillant : combase.dll, version : 10.0.18362.693, horodatage : 0x1fabb0ef
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000015d896
ID du processus défaillant : 0x290c
Heure de début de l’application défaillante : 0x01d5ffa690370064
Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Chemin d’accès du module défaillant: C:\Windows\System32\combase.dll
ID de rapport : f64598d6-dbd7-4b04-a1ec-2f421f362750
Nom complet du package défaillant : Microsoft.Windows.Cortana_1.13.0.18362_neutral_neutral_cw5n1h2txyewy
ID de l’application relative au package défaillant : CortanaUI


Erreurs système:
=============
Error: (03/21/2020 06:41:53 PM) (Source: DCOM) (EventID: 10005) (User: AUTORITE NT)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service EventSystem avec les arguments « Non disponible » pour exécuter le serveur :
{1BE1F766-5536-11D1-B726-00C04FB926AF}

Error: (03/21/2020 06:41:38 PM) (Source: DCOM) (EventID: 10005) (User: AUTORITE NT)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service netprofm avec les arguments « Non disponible » pour exécuter le serveur :
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (03/21/2020 06:41:08 PM) (Source: DCOM) (EventID: 10005) (User: AUTORITE NT)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service netprofm avec les arguments « Non disponible » pour exécuter le serveur :
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (03/21/2020 06:41:07 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-UCEFLQB)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service ShellHWDetection avec les arguments « Non disponible » pour exécuter le serveur :
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (03/21/2020 06:40:43 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-UCEFLQB)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service ShellHWDetection avec les arguments « Non disponible » pour exécuter le serveur :
{DD522ACC-F821-461A-A407-50B198B896DC}

Error: (03/21/2020 06:40:38 PM) (Source: DCOM) (EventID: 10005) (User: AUTORITE NT)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service netprofm avec les arguments « Non disponible » pour exécuter le serveur :
{A47979D2-C419-11D9-A5B4-001185AD2B89}

Error: (03/21/2020 06:40:28 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-UCEFLQB)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur :
{9E175B6D-F52A-11D8-B9A5-505054503030}

Error: (03/21/2020 06:40:28 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-UCEFLQB)
Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service VSS avec les arguments « Non disponible » pour exécuter le serveur :
{E579AB5F-1CC4-44B4-BED9-DE0991FF0623}


CodeIntegrity:
===================================

Date: 2020-03-21 07:32:07.597
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:32:04.180
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:32:02.289
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:31:34.842
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:31:25.396
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:31:21.313
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:31:21.308
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\snxhk.dll that did not meet the Microsoft signing level requirements.

Date: 2020-03-21 07:31:21.254
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.

==================== Infos Mémoire ===========================

BIOS: American Megatrends Inc. X570ZD.310 07/04/2019
Carte mère: ASUSTeK COMPUTER INC. X570ZD
Processeur: AMD Ryzen 5 2500U with Radeon Vega Mobile Gfx
Pourcentage de mémoire utilisée: 18%
Mémoire physique - RAM - totale: 7112.48 MB
Mémoire physique - RAM - disponible: 5806.43 MB
Mémoire virtuelle totale: 16840.48 MB
Mémoire virtuelle disponible: 15725.57 MB

==================== Lecteurs ================================

Drive c: () (Fixed) (Total:118.61 GB) (Free:56.16 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.51 GB) (Free:504.49 GB) NTFS

\\?\Volume{d1898fa1-836b-42c7-bc3b-8628d63e5b31}\ (Récupération) (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{dd662996-fdc0-49a7-9aa0-537fd8dd1185}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Table des partitions ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 76582BD5)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 9DE0BF08)

Partition: GPT.

==================== Fin de Addition.txt =======================

Publicité


Signaler le contenu de ce document

Publicité