Format du document : text/plain
Prévisualisation
Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 08-07-2020 01
Exécuté par Dany (13-07-2020 14:44:27)
Exécuté depuis C:\Users\Dany\Desktop
Windows 10 Home Version 1903 18362.900 (X64) (2019-07-03 15:44:06)
Mode d'amorçage: Normal
==========================================================
==================== Comptes: =============================
Administrateur (S-1-5-21-1357299683-2353122941-1908117616-500 - Administrator - Disabled)
Dany (S-1-5-21-1357299683-2353122941-1908117616-1000 - Administrator - Enabled) => C:\Users\Dany
DefaultAccount (S-1-5-21-1357299683-2353122941-1908117616-503 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1357299683-2353122941-1908117616-1002 - Limited - Enabled)
Invité (S-1-5-21-1357299683-2353122941-1908117616-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1357299683-2353122941-1908117616-504 - Limited - Disabled)
==================== Centre de sécurité ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Bitdefender Antivirus (Enabled - Up to date) {0E17DB7D-A20F-62CE-B95B-17DB0CDFE318}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Antispyware (Enabled - Up to date) {B5763A99-8435-6D40-83EB-2CA97758A9A5}
FW: Bitdefender Pare-feu (Enabled) {362C5A58-E860-6396-9204-BEEEF20CA463}
==================== Programmes installés ======================
(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)
"Nero SoundTrax Help (HKLM-x32\...\{B96C2601-52F5-4D5D-816A-63469EA311EF}) (Version: 4.0.11.0 - Nero AG) Hidden
Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.387 - Adobe)
Advertising Center (HKLM-x32\...\{9F3523F8-DAD7-AE52-6DA7-45CDDDF33726}) (Version: 0.0.0.1 - Nero AG) Hidden
Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team)
Big Fish: Game Manager (HKLM-x32\...\BFGC) (Version: 3.3.0.2 - )
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 20.0.29.1517 - Bitdefender)
Bitdefender Device Management (HKLM\...\Bitdefender Device Management) (Version: 24.0.20.114 - Bitdefender)
Bitdefender Total Security (HKLM\...\Bitdefender) (Version: 22.0.1.1 - Bitdefender)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.)
Canon MG6400 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG6400_series) (Version: 1.01 - Canon Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.59 - Piriform)
Dark Romance: La Sonate du Cygne Édition Collector (HKLM-x32\...\BFG-Dark Romance - La Sonate du Cygne Edition Collector) (Version: - )
Directory List & Print (Pro) (HKLM-x32\...\{6336F23D-1D20-4E02-9FBD-20B3A8210E4D}_is1) (Version: 3.16 - Infonautics GmbH, Switzerland)
DolbyFiles (HKLM-x32\...\{56BE5CC9-95E6-4128-ABEA-968414CA9C80}) (Version: 2.0 - Nero AG) Hidden
Enregistrement utilisateur de Canon MG6400 series (HKLM-x32\...\Enregistrement utilisateur de Canon MG6400 series) (Version: - Canon Inc.)
FormatFactory 4.1.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.1.0.0 - Free Time)
Google Earth Pro (HKLM\...\{B6EAFE41-5723-40EB-869B-4AF44CA17B35}) (Version: 7.3.3.7699 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
ImagXpress (HKLM-x32\...\{A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D}) (Version: 7.0.74.0 - Nero AG) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4264 - Intel Corporation)
LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - )
Lost Lands: L'Or Maudit (HKLM-x32\...\BFG-Lost Lands - L Or Maudit) (Version: - )
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
Menu Templates - Starter Kit (HKLM-x32\...\{C99C89A3-119A-45E6-B26E-DD5643CAA0C5}) (Version: 9.0.4.0 - Nero AG) Hidden
Metric Collection SDK 35 (HKLM-x32\...\{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}) (Version: 1.2.0010.00 - Lenovo Group Limited) Hidden
Microsoft .NET Framework 2.0 fix Version 1.0.0.1 (HKLM-x32\...\{C12304D8-48C3-46C9-A62F-82FFAFC04170}_is1) (Version: 1.0.0.1 - Wondershare, Inc.)
Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.13001.20266 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 83.0.478.61 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.129.31 - )
Microsoft Office Word Viewer 2003 (HKLM-x32\...\{9085040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1357299683-2353122941-1908117616-1000\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Module de compatibilité pour Microsoft Office System 2007 (HKLM-x32\...\{90120000-0020-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Movie Templates - Starter Kit (HKLM-x32\...\{BCD82AB5-670D-4242-90FA-1F97103C16CD}) (Version: 9.0.4.0 - Nero AG) Hidden
Mozilla Firefox 78.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 78.0.2 (x64 fr)) (Version: 78.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 56.0.2 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
myCANAL (HKU\S-1-5-21-1357299683-2353122941-1908117616-1000\...\3737931576.player.canalplus.fr) (Version: - player.canalplus.fr)
MyTF1VOD-Player (HKLM-x32\...\tf1player_is1) (Version: 02.00.02 - TF1)
Nero 9 (HKLM-x32\...\{37951495-ecc0-4067-b0ab-9261b1431f2d}) (Version: - Nero AG)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13001.20266 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.13001.20144 - Microsoft Corporation) Hidden
Print Artist 2004 (HKLM-x32\...\Print Artist 2004) (Version: - )
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.61.0 - Samsung Electronics Co., Ltd.)
Samsung_MonSetup (HKLM-x32\...\{8EA79DBF-D637-448A-89D6-410A087A4493}) (Version: 1.00.0000 - Samsung)
SierraAddressBook 3.0 (HKLM-x32\...\{7CE979C6-E5FF-41C5-B6CC-4EE18071563B}) (Version: - )
SoundTrax (HKLM-x32\...\{3097B151-1F61-4211-A4CC-D70127B226AE}) (Version: 4.0.11.0 - Nero AG) Hidden
TomTom MyDrive Connect 4.2.8.4052 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.8.4052 - TomTom)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies)
Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.9.0.1_neutral__6e5tt8cgb93ep [2020-03-18] (Canon Inc.)
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-09-26] (Microsoft Corporation)
Extension Photos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2019-07-12] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-07-03] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-07-03] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.5012.0_x64__8wekyb3d8bbwe [2020-05-04] (Microsoft Studios) [MS Ad]
MSN Météo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-26] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c [2020-06-28] (Skype) [Startup Task]
==================== Personnalisé CLSID (Avec liste blanche): ==============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-11-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes)
==================== Codecs (Avec liste blanche) ====================
(Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKU\S-1-5-21-1357299683-2353122941-1908117616-1000\...\Drivers32: [vidc.iv50] => C:\Windows\SysWOW64\ir50_32.dll [9216 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
==================== Raccourcis & WMI ========================
(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
==================== Modules chargés (Avec liste blanche) =============
2015-01-18 14:38 - 2013-01-24 09:24 - 000359936 _____ (CANON INC.) [Fichier non signé] C:\WINDOWS\System32\CNMN6PPM.DLL
2015-11-29 17:49 - 2013-04-04 06:00 - 000394240 _____ (CANON INC.) [Fichier non signé] C:\WINDOWS\System32\CNMXLMBT.DLL
2020-04-20 15:29 - 2020-04-20 15:29 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\AppVIsvSubsystems32.dll
2020-04-20 15:29 - 2020-04-20 15:29 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\c2r32.dll
2016-11-24 18:08 - 2016-09-27 17:29 - 000489984 _____ (Newtonsoft) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\Newtonsoft.Json.dll
2016-11-24 18:08 - 2016-10-10 10:50 - 000072704 _____ (Wondershare) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\WsAppCollect.dll
2016-11-24 18:08 - 2016-10-10 10:50 - 000331776 _____ (Wondershare) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Wondershare\WAF\2.3.1.1\WsAppCommon.dll
==================== Alternate Data Streams (Avec liste blanche) ========
(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)
AlternateDataStreams: C:\ProgramData\TEMP:00AFE22A [143]
AlternateDataStreams: C:\ProgramData\TEMP:0173E37F [288]
AlternateDataStreams: C:\ProgramData\TEMP:01E20268 [472]
AlternateDataStreams: C:\ProgramData\TEMP:02595A25 [312]
AlternateDataStreams: C:\ProgramData\TEMP:032A1138 [128]
AlternateDataStreams: C:\ProgramData\TEMP:036AA5DD [244]
AlternateDataStreams: C:\ProgramData\TEMP:03DF8432 [492]
AlternateDataStreams: C:\ProgramData\TEMP:064CCE41 [151]
AlternateDataStreams: C:\ProgramData\TEMP:06CB6BB8 [258]
AlternateDataStreams: C:\ProgramData\TEMP:098D44FC [231]
AlternateDataStreams: C:\ProgramData\TEMP:0C988F7D [120]
AlternateDataStreams: C:\ProgramData\TEMP:0E372F11 [140]
AlternateDataStreams: C:\ProgramData\TEMP:0FE3297C [248]
AlternateDataStreams: C:\ProgramData\TEMP:10CB85CA [468]
AlternateDataStreams: C:\ProgramData\TEMP:13674722 [510]
AlternateDataStreams: C:\ProgramData\TEMP:138F1549 [248]
AlternateDataStreams: C:\ProgramData\TEMP:160ADF0B [120]
AlternateDataStreams: C:\ProgramData\TEMP:1613CC83 [124]
AlternateDataStreams: C:\ProgramData\TEMP:1EE5EBCB [104]
AlternateDataStreams: C:\ProgramData\TEMP:206470A5 [231]
AlternateDataStreams: C:\ProgramData\TEMP:20C75F17 [132]
AlternateDataStreams: C:\ProgramData\TEMP:2163E78C [492]
AlternateDataStreams: C:\ProgramData\TEMP:2243E7D8 [135]
AlternateDataStreams: C:\ProgramData\TEMP:271E16B0 [121]
AlternateDataStreams: C:\ProgramData\TEMP:2AC4B958 [141]
AlternateDataStreams: C:\ProgramData\TEMP:2AE74FF9 [233]
AlternateDataStreams: C:\ProgramData\TEMP:2CB9631F [134]
AlternateDataStreams: C:\ProgramData\TEMP:2D865613 [242]
AlternateDataStreams: C:\ProgramData\TEMP:2EAD4F23 [494]
AlternateDataStreams: C:\ProgramData\TEMP:2FBB2B9B [109]
AlternateDataStreams: C:\ProgramData\TEMP:30863DF2 [123]
AlternateDataStreams: C:\ProgramData\TEMP:315B8CFE [278]
AlternateDataStreams: C:\ProgramData\TEMP:3238A36D [145]
AlternateDataStreams: C:\ProgramData\TEMP:329BA65B [124]
AlternateDataStreams: C:\ProgramData\TEMP:333D382A [147]
AlternateDataStreams: C:\ProgramData\TEMP:33B5D2C9 [125]
AlternateDataStreams: C:\ProgramData\TEMP:3473F385 [115]
AlternateDataStreams: C:\ProgramData\TEMP:362B2EB3 [152]
AlternateDataStreams: C:\ProgramData\TEMP:362E7FE6 [145]
AlternateDataStreams: C:\ProgramData\TEMP:389C880C [124]
AlternateDataStreams: C:\ProgramData\TEMP:38FF076E [138]
AlternateDataStreams: C:\ProgramData\TEMP:39BBE6A9 [508]
AlternateDataStreams: C:\ProgramData\TEMP:3EDD136B [462]
AlternateDataStreams: C:\ProgramData\TEMP:3F2AAF1C [500]
AlternateDataStreams: C:\ProgramData\TEMP:43734825 [127]
AlternateDataStreams: C:\ProgramData\TEMP:43D2A298 [458]
AlternateDataStreams: C:\ProgramData\TEMP:447856CD [460]
AlternateDataStreams: C:\ProgramData\TEMP:44FAB20C [462]
AlternateDataStreams: C:\ProgramData\TEMP:4618ABB0 [149]
AlternateDataStreams: C:\ProgramData\TEMP:490B67EC [286]
AlternateDataStreams: C:\ProgramData\TEMP:4AEF705D [251]
AlternateDataStreams: C:\ProgramData\TEMP:4F49DA66 [234]
AlternateDataStreams: C:\ProgramData\TEMP:4FE3FB06 [231]
AlternateDataStreams: C:\ProgramData\TEMP:506698B2 [508]
AlternateDataStreams: C:\ProgramData\TEMP:52CA4081 [456]
AlternateDataStreams: C:\ProgramData\TEMP:5430D891 [494]
AlternateDataStreams: C:\ProgramData\TEMP:55E82CAF [244]
AlternateDataStreams: C:\ProgramData\TEMP:566B9179 [232]
AlternateDataStreams: C:\ProgramData\TEMP:5A9A0A54 [292]
AlternateDataStreams: C:\ProgramData\TEMP:5AF3C873 [476]
AlternateDataStreams: C:\ProgramData\TEMP:5E209A50 [150]
AlternateDataStreams: C:\ProgramData\TEMP:6294B369 [286]
AlternateDataStreams: C:\ProgramData\TEMP:6327ECAF [130]
AlternateDataStreams: C:\ProgramData\TEMP:639BB5E9 [127]
AlternateDataStreams: C:\ProgramData\TEMP:64B8197A [500]
AlternateDataStreams: C:\ProgramData\TEMP:6522294D [147]
AlternateDataStreams: C:\ProgramData\TEMP:6BC1EB44 [138]
AlternateDataStreams: C:\ProgramData\TEMP:6EB8C6CD [502]
AlternateDataStreams: C:\ProgramData\TEMP:72DDC498 [488]
AlternateDataStreams: C:\ProgramData\TEMP:74849EC6 [130]
AlternateDataStreams: C:\ProgramData\TEMP:79EAEF54 [472]
AlternateDataStreams: C:\ProgramData\TEMP:7F52B4C6 [139]
AlternateDataStreams: C:\ProgramData\TEMP:807012A3 [286]
AlternateDataStreams: C:\ProgramData\TEMP:811002CF [492]
AlternateDataStreams: C:\ProgramData\TEMP:82896823 [143]
AlternateDataStreams: C:\ProgramData\TEMP:841E05D6 [470]
AlternateDataStreams: C:\ProgramData\TEMP:865E594E [231]
AlternateDataStreams: C:\ProgramData\TEMP:89A5891E [121]
AlternateDataStreams: C:\ProgramData\TEMP:900EBAFA [123]
AlternateDataStreams: C:\ProgramData\TEMP:90F3D431 [284]
AlternateDataStreams: C:\ProgramData\TEMP:922DA2DB [492]
AlternateDataStreams: C:\ProgramData\TEMP:92EE4120 [259]
AlternateDataStreams: C:\ProgramData\TEMP:977CBCA1 [234]
AlternateDataStreams: C:\ProgramData\TEMP:9A1F9537 [119]
AlternateDataStreams: C:\ProgramData\TEMP:9B43DD66 [124]
AlternateDataStreams: C:\ProgramData\TEMP:A12BD8C3 [286]
AlternateDataStreams: C:\ProgramData\TEMP:A1EB942C [498]
AlternateDataStreams: C:\ProgramData\TEMP:A1FD5369 [146]
AlternateDataStreams: C:\ProgramData\TEMP:A31B5E9B [98]
AlternateDataStreams: C:\ProgramData\TEMP:A543EB0F [131]
AlternateDataStreams: C:\ProgramData\TEMP:A5CF529A [249]
AlternateDataStreams: C:\ProgramData\TEMP:A688DC0C [123]
AlternateDataStreams: C:\ProgramData\TEMP:ABC84E05 [276]
AlternateDataStreams: C:\ProgramData\TEMP:AD450465 [508]
AlternateDataStreams: C:\ProgramData\TEMP:B304AFE5 [124]
AlternateDataStreams: C:\ProgramData\TEMP:B81DDDF6 [230]
AlternateDataStreams: C:\ProgramData\TEMP:BACC4A79 [136]
AlternateDataStreams: C:\ProgramData\TEMP:BE0654D6 [498]
AlternateDataStreams: C:\ProgramData\TEMP:C0A086B3 [130]
AlternateDataStreams: C:\ProgramData\TEMP:C11E2442 [118]
AlternateDataStreams: C:\ProgramData\TEMP:C3014350 [138]
AlternateDataStreams: C:\ProgramData\TEMP:C7BCD3CB [498]
AlternateDataStreams: C:\ProgramData\TEMP:CBAF0C30 [466]
AlternateDataStreams: C:\ProgramData\TEMP:CD419F5D [128]
AlternateDataStreams: C:\ProgramData\TEMP:CF82DADF [137]
AlternateDataStreams: C:\ProgramData\TEMP:D03C606E [456]
AlternateDataStreams: C:\ProgramData\TEMP:D0A3EF28 [138]
AlternateDataStreams: C:\ProgramData\TEMP:D5FAD04A [134]
AlternateDataStreams: C:\ProgramData\TEMP:D7F3F733 [119]
AlternateDataStreams: C:\ProgramData\TEMP:D961A0A7 [133]
AlternateDataStreams: C:\ProgramData\TEMP:D9A178E1 [450]
AlternateDataStreams: C:\ProgramData\TEMP:DA4249B0 [130]
AlternateDataStreams: C:\ProgramData\TEMP:DBE046F5 [484]
AlternateDataStreams: C:\ProgramData\TEMP:DD2A5D70 [243]
AlternateDataStreams: C:\ProgramData\TEMP:E0140213 [133]
AlternateDataStreams: C:\ProgramData\TEMP:E402E439 [490]
AlternateDataStreams: C:\ProgramData\TEMP:E4D1253F [288]
AlternateDataStreams: C:\ProgramData\TEMP:E7425CF3 [147]
AlternateDataStreams: C:\ProgramData\TEMP:EA6182AB [456]
AlternateDataStreams: C:\ProgramData\TEMP:ED6AD551 [466]
AlternateDataStreams: C:\ProgramData\TEMP:ED92736E [502]
AlternateDataStreams: C:\ProgramData\TEMP:EF69BA58 [500]
AlternateDataStreams: C:\ProgramData\TEMP:F512B2D9 [498]
AlternateDataStreams: C:\ProgramData\TEMP:F8206E98 [129]
AlternateDataStreams: C:\ProgramData\TEMP:F8E816AE [248]
==================== Mode sans échec (Avec liste blanche) ==================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Avec liste blanche) =================
==================== Internet Explorer sites de confiance/sensibles ==========
==================== Hosts contenu: =========================
(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)
2009-07-14 04:34 - 2020-07-13 14:30 - 000000000 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Autres zones ===========================
(Actuellement, il n'y a pas de correction automatique pour cette section.)
HKU\S-1-5-21-1357299683-2353122941-1908117616-1000\Control Panel\Desktop\\Wallpaper -> E:\Nos escapades\Thaïlande\Thaïlande 02-2007 213.JPG
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Pas de fichier)
Le Pare-feu est activé.
==================== MSCONFIG/TASK MANAGER éléments désactivés ==
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
MSCONFIG\startupreg: Amazon Music Helper => "C:\Users\Dany\AppData\Local\Amazon Music\Amazon Music Helper.exe"
==================== RèglesPare-feu (Avec liste blanche) ================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
FirewallRules: [{2550DA5E-3791-4A7A-9E81-CE39B89F7C0F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{56463B00-2AC3-4450-8DEB-B7B4EFD71CA5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2A0D98BB-7BA2-4E4C-8786-7AEAB948A99D}] => (Allow) C:\Program Files (x86)\AOMEI Backupper\ABService.exe => Pas de fichier
FirewallRules: [{0EE84608-0A63-4E34-AE29-8A48825B60F9}] => (Allow) C:\Program Files (x86)\AOMEI Backupper\ABService.exe => Pas de fichier
FirewallRules: [{099E305C-922C-4DE7-9E59-EA3E76B657AE}] => (Allow) C:\Program Files (x86)\AOMEI Backupper\PxeUi.exe => Pas de fichier
FirewallRules: [{5D92E5C9-8410-45C8-9196-75B9A6E9FB4C}] => (Allow) C:\Users\Dany\AppData\Local\MyTF1VOD-Player\nw.exe (Viaccess SA -> TF1)
FirewallRules: [{352AC696-D8FD-4019-8495-2159FF656678}] => (Allow) C:\Users\Dany\AppData\Local\MyTF1VOD-Player\tf1launcher.exe (Viaccess SA -> TF1)
FirewallRules: [{9971519E-9114-4096-95D7-DE5AEC4DC4BD}] => (Allow) C:\Users\Dany\AppData\Local\MyTF1VOD-Player\nw.exe (Viaccess SA -> TF1)
FirewallRules: [{97AE23B4-915D-4B5D-9858-DDDF4F5EBE33}] => (Allow) C:\Users\Dany\AppData\Local\MyTF1VOD-Player\tf1launcher.exe (Viaccess SA -> TF1)
FirewallRules: [{6483E70E-D48B-4E98-89D3-D447A6F64200}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2EC4EFB7-A4C4-4327-986C-B4C7C211D31C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A1D569C0-8793-4C4A-9D13-B094BBF63D93}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{104BD026-013F-41AB-B0B3-F3D0C4579F4B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{63834644-5272-422D-953B-52F98BFF56A9}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3FE55CBF-3672-46E7-8BDD-80B9A57B7F4F}] => (Allow) C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.8.0\ABService.exe => Pas de fichier
FirewallRules: [{C27905D8-9F9B-4C42-8C35-8C983F50A900}] => (Allow) C:\Program Files (x86)\AOMEI\AOMEI Backupper 5.8.0\ABService.exe => Pas de fichier
==================== Points de restauration =========================
ATTENTION: La Restauration système est désactivée (Total:118.38 GB) (Free:67.33 GB) (57%)
==================== Éléments en erreur du Gestionnaire de périphériques ============
==================== Erreurs du Journal des événements: ========================
Erreurs Application:
==================
Error: (07/13/2020 02:43:50 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4980,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 02:34:13 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9880,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 02:24:14 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7292,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 12:49:33 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8204,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 12:01:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4088,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 11:55:14 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5004,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 11:43:50 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9504,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Error: (07/13/2020 11:34:15 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13292,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log.
Erreurs système:
=============
Error: (07/13/2020 01:10:52 PM) (Source: Microsoft-Windows-FilterManager) (EventID: 3) (User: AUTORITE NT)
Description: Le gestionnaire de filtres n’a pas réussi à s’attacher au volume « \Device\HarddiskVolume13 ». Ce volume ne sera pas disponible pour le filtrage avant un redémarrage. L’état final était 0xc03a001c.
Error: (07/13/2020 01:10:52 PM) (Source: Microsoft-Windows-FilterManager) (EventID: 3) (User: AUTORITE NT)
Description: Le gestionnaire de filtres n’a pas réussi à s’attacher au volume « \Device\HarddiskVolume13 ». Ce volume ne sera pas disponible pour le filtrage avant un redémarrage. L’état final était 0xc03a001c.
Error: (07/13/2020 11:29:58 AM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (07/13/2020 11:29:01 AM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (07/13/2020 05:49:30 AM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (07/12/2020 07:58:16 PM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (07/12/2020 07:29:31 PM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (07/12/2020 07:28:30 PM) (Source: DCOM) (EventID: 10010) (User: Soleil)
Description: Le serveur Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
CodeIntegrity:
===================================
Date: 2020-04-27 10:58:41.196
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-04-16 15:37:00.688
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-03-21 15:27:20.567
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-03-14 13:33:24.494
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-02-14 19:31:32.196
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-02-02 06:22:59.231
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-01-23 08:44:44.548
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2020-01-16 15:44:30.530
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\bdservicehost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Infos Mémoire ===========================
BIOS: American Megatrends Inc. P1.60 07/03/2014
Carte mère: ASRock B85M-HDS
Processeur: Intel(R) Core(TM) i3-4130 CPU @ 3.40GHz
Pourcentage de mémoire utilisée: 88%
Mémoire physique - RAM - totale: 3746.75 MB
Mémoire physique - RAM - disponible: 428.67 MB
Mémoire virtuelle totale: 7586.75 MB
Mémoire virtuelle disponible: 2999 MB
==================== Lecteurs ================================
Drive c: (Seven) (Fixed) (Total:118.38 GB) (Free:67.33 GB) NTFS
Drive e: (Etoile) (Fixed) (Total:931.51 GB) (Free:822.96 GB) NTFS
Drive f: (WD externe) (Fixed) (Total:931.48 GB) (Free:539.34 GB) NTFS
\\?\Volume{3c280d43-9cbc-11e4-8313-806e6f6e6963}\ (Réservé au système) (Fixed) (Total:0.34 GB) (Free:0.29 GB) NTFS
\\?\Volume{f1d52d93-0000-0000-0000-00ae1d000000}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
==================== MBR & Table des partitions ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 119.2 GB) (Disk ID: F1D52D93)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=118.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=534 MB) - (Type=27)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 9CCE2DD9)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 806B3B4D)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== Fin de Addition.txt =======================