Additional scan result of Farbar Recovery Scan Tool (x64) Version:20-07-2015 Ran by Thomas at 2015-07-23 10:54:44 Running from C:\Users\Thomas\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-4114777646-3135281240-2147078551-500 - Administrator - Disabled) Invité (S-1-5-21-4114777646-3135281240-2147078551-501 - Limited - Disabled) Thomas (S-1-5-21-4114777646-3135281240-2147078551-1001 - Administrator - Enabled) => C:\Users\Thomas ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) @BIOS B14.1003.1 (HKLM-x32\...\InstallShield_{C9D46F25-5F9D-4E25-B24F-BC00E9EDF529}) (Version: 3.00.0000 - GIGABYTE) @BIOS B14.1003.1 (x32 Version: 3.00.0000 - GIGABYTE) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9120 - Adobe Systems Inc.) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Illustrator CC 2014 (HKLM-x32\...\{2B4B4082-8043-4646-8334-B0A29E641211}) (Version: 18.1.0 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.7.1 64-bit (HKLM\...\{BC86B82C-8C0E-4408-9AC1-6B0F2D636963}) (Version: 5.7.1 - Adobe Systems Incorporated) APP Center (HKLM-x32\...\InstallShield_{F3D47276-0E35-42CF-A677-B45118470E21}) (Version: 1.15.0417 - Gigabyte) APP Center (x32 Version: 1.15.0417 - Gigabyte) Hidden Avira (HKLM-x32\...\{a5e00a72-db4a-4f77-8874-d1265b8fcd7e}) (Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.42.10415 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.11.579 - Avira Operations GmbH & Co. KG) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Burnout Paradise - The Ultimate Box (HKLM-x32\...\Burnout Paradise - The Ultimate Box_is1) (Version: - ) Capture NX 2 (HKLM\...\Capture NX 2) (Version: 2.4.7 - NIKON CORPORATION) CCleaner (HKLM\...\CCleaner) (Version: 5.05 - Piriform) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DJ_AIO_06_F4500_SW_MIN (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Dropbox (HKU\S-1-5-21-4114777646-3135281240-2147078551-1001\...\Dropbox) (Version: 3.6.9 - Dropbox, Inc.) EA SPORTS™ FIFA 15 (HKLM-x32\...\{3D4ADA2B-F028-4307-ADF4-6F9AA44725DA}) (Version: 1.4.0.0 - Electronic Arts) EZSetup B14.0416.1 (HKLM-x32\...\InstallShield_{9EAB60B6-70FE-4EC7-8DF4-54773E4EAC05}) (Version: 1.00.0000 - GIGABYTE) EZSetup B14.0416.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden F4500 (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Fast Boot (HKLM-x32\...\InstallShield_{FA8FB4F2-F524-48E1-A06C-45602FBF26CD}) (Version: 1.00.0000 - GIGABYTE) Fast Boot (x32 Version: 1.00.0000 - GIGABYTE) Hidden FIFA 15 Ultimate Team Edition version Update 4 (HKLM-x32\...\FIFA 15 Ultimate Team Edition_is1) (Version: Update 4 - GMT-MAX.ORG) FlashBoot 2.1s (HKLM\...\FlashBoot_is1) (Version: - Mikhail Kupchik) GIGABYTE FORCE Driver (HKLM-x32\...\GMouse) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.134 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F4500 All-in-One Driver 14.0 Rel. 6 (HKLM\...\{0AFFEA39-60AF-4C4F-BB47-4A1F7CB12129}) (Version: 14.0 - HP) HP Deskjet F4500 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{FD126052-310E-4364-937B-6B5564F24578}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden i1Profiler (HKLM-x32\...\i1Profiler_is1) (Version: 1.6.1 - X-Rite) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.0.1204 - Intel Corporation) Intel(R) Network Connections 18.8.136.0 (HKLM\...\PROSetDX) (Version: 18.8.136.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4170 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.3.1001 - Intel Corporation) Intel® Watchdog Timer Driver (Intel® WDT) (HKLM-x32\...\{3FD0C489-0F02-481a-A3E1-9754CD396761}) (Version: - Intel Corporation) Logiciel pour périphérique à chipset Intel® (x32 Version: 10.0.20 - Intel(R) Corporation) Hidden MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mises à jour NVIDIA 2.5.11.45 (Version: 2.5.11.45 - NVIDIA Corporation) Hidden Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.1 - Nikon) NVIDIA GeForce Experience 2.5.11.45 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.11.45 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA Pilote graphique 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Panneau de configuration NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden Pantone Color Manager 1.0.0 (HKLM-x32\...\Pantone Color Manager_is1) (Version: - PANTONE) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Picture Control Utility 2 (HKLM\...\{D4893C47-704F-4B84-8486-9DE4974ACA6F}) (Version: 2.0.2 - Nikon) Picture Control Utility x64 (HKLM\...\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}) (Version: 1.5.1 - Nikon) PTLens (HKLM\...\{B39D3046-E2F0-4FD6-A2F7-A5D5447A4D74}) (Version: 3.0.784 - ePaperPress) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7200 - Realtek Semiconductor Corp.) Scan (x32 Version: 140.0.80.000 - Hewlett-Packard) Hidden SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.5.11.45 - NVIDIA Corporation) Hidden SIV (HKLM-x32\...\InstallShield_{AAA057C3-10DC-4EB9-A3D6-8208C1BB7411}) (Version: 1.00.0000 - GIGABYTE) SIV (x32 Version: 1.00.0000 - GIGABYTE) Hidden SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform) Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Toolbox (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.10.3 - Nikon) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) XRD i1d3 (x32 Version: 1.0.135 - X-Rite) Hidden X-Rite Device Services Manager (HKLM-x32\...\{36E19D34-6BA7-4BD1-B5CB-7B0DA85713C4}) (Version: 2.3.101 - X-Rite) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Thomas\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) ==================== Restore Points ========================= 05-07-2015 12:41:23 Point de contrôle planifié 09-07-2015 10:44:46 Windows Update 15-07-2015 15:22:15 Windows Update 22-07-2015 07:47:35 Windows Update 23-07-2015 10:46:57 ZHPFix Restore System Point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2015-06-25 20:04 - 2015-06-25 20:04 - 00001849 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 wip3.adobe.com 127.0.0.1 hl2rcv.adobe.com 127.0.0.1 na2m-pr.adobe.com 127.0.0.1 na4r.services.adobe.com 127.0.0.1 ims-na1-prprod.adobelogin.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 ereg.adobe.com 127.0.0.1 activate.wip3.adobe.com 127.0.0.1 wip3.adobe.com 127.0.0.1 3dns-3.adobe.com 127.0.0.1 3dns-2.adobe.com 127.0.0.1 adobe-dns.adobe.com 127.0.0.1 adobe-dns-2.adobe.com 127.0.0.1 adobe-dns-3.adobe.com 127.0.0.1 ereg.wip3.adobe.com 127.0.0.1 activate-sea.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 activate-sjc0.adobe.com 127.0.0.1 wwis-dubc1-vip60.adobe.com 127.0.0.1 sams.nikonimaging.com 127.0.0 sams.nikonimaging.com 0.0.0.0 sams.nikonimaging.com ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {06A4A1DF-CC20-43C0-B403-8B7C05F6A88E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.) Task: {094C98F2-4D19-4C4E-BEDA-4810024A5610} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {21F46340-5B35-4D0E-982F-4D1B52B36EDF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {28CEEBCC-53CA-4853-BF59-FA45299889CB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-19] (Google Inc.) Task: {2DF23DC8-1136-449A-8DB3-142424A07DF3} - System32\Tasks\{99B988E6-DAB2-42B2-9761-097DBFD34C75} => pcalua.exe -a "C:\Program Files (x86)\Malwarebytes Anti-Malware\unins000.exe" Task: {51C44DBA-4642-4A79-9526-6F657510658C} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [2013-01-14] () Task: {528E7968-F81A-4FE1-A384-4A2A45CE02FD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {5A437372-1220-4973-8A1D-D76C99D8A48A} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-4114777646-3135281240-2147078551-1001UA => C:\Users\Thomas\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {70966F62-86B3-4270-BD97-6725D74282DC} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [2015-03-05] (X-Rite Inc.) Task: {8686985F-0933-4C4F-A81A-3188CF2CE76E} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {A8F17650-7F84-49A6-9854-B6EDF61E456D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {AAC96C0F-A896-48B6-8F98-CE0B06DC74D6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-04-23] (Piriform Ltd) Task: {B60B4F91-6206-4D07-8ED3-4B56E2533D08} - System32\Tasks\AdobeAAMUpdater-1.0-ASUSG10AC-Thomas => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {C71C0404-C3D6-477D-8920-F3B743F9F918} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-4114777646-3135281240-2147078551-1001Core => C:\Users\Thomas\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {D88118FD-0D0C-46A9-9B2F-9810C27B116D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {DE468E59-E04D-4597-A64C-98A12ADEBC10} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-4114777646-3135281240-2147078551-1001Core.job => C:\Users\Thomas\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-4114777646-3135281240-2147078551-1001UA.job => C:\Users\Thomas\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe ==================== Loaded Modules (Whitelisted) ============== 2015-04-19 11:15 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-04-24 14:13 - 2013-01-14 16:37 - 01406776 ____N () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe 2015-04-14 15:27 - 2015-04-14 15:27 - 00016896 _____ () C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe 2015-04-14 13:50 - 2015-04-14 13:50 - 01243944 _____ () C:\Program Files (x86)\Gigabyte\AppCenter\ApCent.exe 2015-04-08 21:53 - 2015-04-08 21:53 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2015-04-20 18:19 - 2014-06-18 15:06 - 02519552 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\i1ProfilerTray.exe 2011-11-08 08:31 - 2011-11-08 08:31 - 00667648 _____ () C:\GIGABYTE FORCE\GIGABYTE FORCE.exe 2015-04-21 14:51 - 2015-06-01 19:50 - 03556352 _____ () C:\Users\Thomas\Documents\Config manette jeux\DS4Windows.exe 2015-06-02 14:57 - 2015-04-21 14:51 - 00749568 _____ () C:\Users\Thomas\Documents\Config manette jeux\fr-FR\DS4Windows.resources.dll 2015-04-23 20:31 - 2015-04-23 20:31 - 00920736 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2015-04-24 14:13 - 2013-01-14 17:16 - 05771136 ____N () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzULIB.dll 2015-04-24 14:13 - 2010-06-21 15:21 - 00208896 ____N () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\ImageHelper.dll 2014-06-23 16:06 - 2014-06-23 16:06 - 01588224 _____ () C:\Program Files (x86)\X-Rite\Devices\rm200\GoldenEye.dll 2014-06-23 16:06 - 2014-06-23 16:06 - 02633728 _____ () C:\Program Files (x86)\X-Rite\Devices\colormunki\colormunki.dll 2015-04-19 12:08 - 2015-07-14 21:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2014-01-22 13:53 - 2014-01-22 13:53 - 01607680 _____ () C:\Program Files (x86)\Gigabyte\AppCenter\BDR_info.dll 2012-11-27 08:03 - 2012-11-27 08:03 - 00102400 _____ () C:\Program Files (x86)\Gigabyte\AppCenter\ycc.dll 2015-04-20 18:19 - 2015-04-16 00:43 - 44689920 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\Prism.dll 2015-04-20 18:19 - 2015-04-16 02:25 - 07982592 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtGui4.dll 2015-04-20 18:19 - 2015-04-16 02:25 - 02147328 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\QtCore4.dll 2015-04-20 18:19 - 2015-04-16 02:25 - 03449344 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\CxF2_VC90MD_2.1.dll 2015-04-20 18:19 - 2015-04-16 02:25 - 00898560 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\libxml2.dll 2015-04-20 18:19 - 2015-04-16 02:25 - 00073728 _____ () C:\Program Files (x86)\X-Rite\i1Profiler\zlib1.dll 2015-07-23 10:50 - 2015-07-23 10:50 - 00043008 _____ () d:\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5jzq8n.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00750080 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00047616 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00865280 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00200704 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00726016 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Thomas\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2015-04-23 20:31 - 2015-05-13 15:13 - 00026624 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2015-04-23 20:31 - 2015-04-23 20:53 - 00104448 ____N () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2014-03-20 11:43 - 2014-03-20 11:43 - 01241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\.Trashes:AFP_AfpInfo ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001\...\ma-config.com -> hxxp://ma-config.com IE trusted site: HKU\S-1-5-21-4114777646-3135281240-2147078551-1001\...\ma-config.com -> hxxps://ma-config.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-4114777646-3135281240-2147078551-1001\Control Panel\Desktop\\Wallpaper -> D:\PHOTOTHEQUE DIVERS\BALADE VELO CONFLUENCE\sélection\tiff\DSC_7556.tif DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk" HKLM\...\StartupApproved\Run32: => "Nikon Message Center 2" HKU\S-1-5-21-4114777646-3135281240-2147078551-1001\...\StartupApproved\Run: => "Steam" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{251D09A3-584C-4B94-85AD-8C25CD641ACE}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{CC731254-AEE4-4C7F-9D49-8DF2719489C9}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{27140A6D-57BB-413A-A517-B5888F122911}] => (Allow) LPort=48113 FirewallRules: [{70239D9E-B483-4B27-B8CD-1DBE803C85E6}] => (Allow) LPort=48114 FirewallRules: [{55C4AB67-7B68-45FA-B93E-E395B8D02C17}] => (Allow) C:\Program Files (x86)\Pantone Color Manager\PantoneColorManager.exe FirewallRules: [{C5A221AC-B938-489C-8E5A-307FC2B4A82F}] => (Allow) C:\Program Files (x86)\Pantone Color Manager\PantoneColorManager.exe FirewallRules: [{B3415FF7-C4A7-4409-8591-146943946749}] => (Allow) C:\Users\Thomas\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{81312548-E1BC-49E7-A92B-900FF4F7A092}] => (Allow) C:\Users\Thomas\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{3EEC0B70-67EA-4C9D-88F1-85DC60EC09D3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{8A3E5D6F-86FD-4F33-9491-8D327B4D5FFD}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3BC8E0B9-90D5-4C3E-838C-68401B7944BC}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{DC977A8A-F345-4A40-B03E-D749C3A7796E}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{2DD1ED6A-0819-4628-A509-3BBAAF9FEF70}] => (Allow) E:\JEUX\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{ADEDC3E4-93D5-4064-A089-ADA314A6BB0C}] => (Allow) E:\JEUX\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [TCP Query User{19C073CB-D04A-4A1F-AFD8-07AB6AD576B8}C:\users\thomas\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\thomas\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{9957BDB7-DA7F-41E8-8BA2-AF336BD71F0A}C:\users\thomas\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\thomas\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{EEC9FAED-A3BD-4A32-9D37-9877898D4687}] => (Allow) LPort=1980 FirewallRules: [{0D446618-B3BF-4F10-B55F-1F39635F54B7}] => (Allow) LPort=1980 FirewallRules: [{28FF1364-142C-4D54-931D-40246580C2E0}] => (Allow) LPort=1980 FirewallRules: [{DC6F5D8C-2EC9-4A3E-B83C-B59345FB4019}] => (Allow) LPort=8107 FirewallRules: [{515B96BE-A6CE-4BDD-B920-6E28EAB1048F}] => (Allow) LPort=1980 FirewallRules: [TCP Query User{D3235C3C-E07D-4229-9B5B-F4C713F9A1A3}C:\program files (x86)\gigabyte\appcenter\gbupdate.exe] => (Allow) C:\program files (x86)\gigabyte\appcenter\gbupdate.exe FirewallRules: [UDP Query User{BC6432C0-9AA5-44F2-8F34-8C90E061AC9E}C:\program files (x86)\gigabyte\appcenter\gbupdate.exe] => (Allow) C:\program files (x86)\gigabyte\appcenter\gbupdate.exe FirewallRules: [{FDDF083E-AA5D-42BE-913E-3DFC6872FE06}] => (Allow) LPort=5454 FirewallRules: [{F9ED7336-5416-4D55-8C74-D606BB120288}] => (Allow) C:\Windows\system32\hasplms.exe FirewallRules: [{FC7EAE90-E127-4FB5-9860-6684270ADD33}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{B5B6DCE2-DBB0-4367-94DB-903A47897FC2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{633303E7-D40F-4ECC-887E-70685E7C6B8D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{DD050DC5-28EC-4874-87C0-777D8DCBFEED}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{EB9ACCFC-24FC-4347-98DB-745A3B8DAEDF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{7318C6B9-B967-4794-89A0-966A8AC7EA11}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{720D0DBC-9153-464D-9852-21BB6DC3A389}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{E6D1C438-0F83-46C5-8341-1E5556F852CB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{92094520-0340-4AF5-B962-7E8D2B88C27B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{4913931E-4067-479D-8462-275E58B2E652}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{F7FEDC5F-E357-4B83-868B-3BDE9660971F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{D7EF952D-B998-474C-B16C-D93FF47C9175}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{65C9F6E7-8CD6-4973-8970-2A2678529280}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{EFAC3814-4FCD-4012-BD12-14CB63DF13DB}] => (Allow) E:\JEUX\FIFA 15 Ultimate Team Edition\fifasetup\fifaconfig.exe FirewallRules: [{DD105D81-8FEB-4235-A9CF-11BEB55B8638}] => (Allow) E:\JEUX\FIFA 15 Ultimate Team Edition\fifasetup\fifaconfig.exe FirewallRules: [TCP Query User{653F20B3-4CBF-4C64-85AA-F0B157B57625}E:\jeux\fifa 15 ultimate team edition\fifa15.exe] => (Allow) E:\jeux\fifa 15 ultimate team edition\fifa15.exe FirewallRules: [UDP Query User{45855322-DFC4-418E-B1BF-57DEFF29D851}E:\jeux\fifa 15 ultimate team edition\fifa15.exe] => (Allow) E:\jeux\fifa 15 ultimate team edition\fifa15.exe FirewallRules: [{CE513F70-E8EE-4451-A40A-082E5F42F377}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{91BE14F5-26C3-4918-A0BD-2EDFBC7F13A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{DFBC123A-2378-4C58-9142-ED542A39DD08}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{AB2D98D1-4E58-472A-8713-B9C7E788F0F9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{B3F6818B-8311-463E-87F3-C880993C26CA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{677CA017-CA1E-48AB-A96F-B7C11D28F553}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/22/2015 07:07:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe_fb-x64.dll, version : 6.3.9600.17415, horodatage : 0x54504eb8 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000002e75c ID du processus défaillant : 0x14a8 Heure de début de l’application défaillante : 0xrundll32.exe_fb-x64.dll0 Chemin d’accès de l’application défaillante : rundll32.exe_fb-x64.dll1 Chemin d’accès du module défaillant: rundll32.exe_fb-x64.dll2 ID de rapport : rundll32.exe_fb-x64.dll3 Nom complet du package défaillant : rundll32.exe_fb-x64.dll4 ID de l’application relative au package défaillant : rundll32.exe_fb-x64.dll5 Error: (07/22/2015 06:48:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe_fb-x64.dll, version : 6.3.9600.17415, horodatage : 0x54504eb8 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000002e75c ID du processus défaillant : 0xee0 Heure de début de l’application défaillante : 0xrundll32.exe_fb-x64.dll0 Chemin d’accès de l’application défaillante : rundll32.exe_fb-x64.dll1 Chemin d’accès du module défaillant: rundll32.exe_fb-x64.dll2 ID de rapport : rundll32.exe_fb-x64.dll3 Nom complet du package défaillant : rundll32.exe_fb-x64.dll4 ID de l’application relative au package défaillant : rundll32.exe_fb-x64.dll5 Error: (07/21/2015 06:59:31 PM) (Source: thermald) (EventID: 0) (User: ) Description: System.NotSupportedException: La méthode spécifiée n'est pas prise en charge. à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx.InitObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx..ctor() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx2..ctor(MotherboardHealthIdentification healthid) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitIntelObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitObjects(String productName) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl..ctor() à thermald.MainWindow.InitHardwareMonitorObjects() Error: (07/21/2015 06:59:31 PM) (Source: ThermalConsole) (EventID: 0) (User: ) Description: System.NotSupportedException: La méthode spécifiée n'est pas prise en charge. à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx.InitObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx..ctor() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx2..ctor(MotherboardHealthIdentification healthid) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitIntelObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitObjects(String productName) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl..ctor() à ThermalConsole.MainWindow.InitObjects() Error: (07/21/2015 03:45:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe_fb-x64.dll, version : 6.3.9600.17415, horodatage : 0x54504eb8 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000002e75c ID du processus défaillant : 0x12e0 Heure de début de l’application défaillante : 0xrundll32.exe_fb-x64.dll0 Chemin d’accès de l’application défaillante : rundll32.exe_fb-x64.dll1 Chemin d’accès du module défaillant: rundll32.exe_fb-x64.dll2 ID de rapport : rundll32.exe_fb-x64.dll3 Nom complet du package défaillant : rundll32.exe_fb-x64.dll4 ID de l’application relative au package défaillant : rundll32.exe_fb-x64.dll5 Error: (07/20/2015 07:22:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Nom du module défaillant : AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000dfb8d ID du processus défaillant : 0x1d24 Heure de début de l’application défaillante : 0xAcroRd32.exe0 Chemin d’accès de l’application défaillante : AcroRd32.exe1 Chemin d’accès du module défaillant: AcroRd32.exe2 ID de rapport : AcroRd32.exe3 Nom complet du package défaillant : AcroRd32.exe4 ID de l’application relative au package défaillant : AcroRd32.exe5 Error: (07/20/2015 02:20:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe_fb-x64.dll, version : 6.3.9600.17415, horodatage : 0x54504eb8 Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f4336 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000002e75c ID du processus défaillant : 0x1a2c Heure de début de l’application défaillante : 0xrundll32.exe_fb-x64.dll0 Chemin d’accès de l’application défaillante : rundll32.exe_fb-x64.dll1 Chemin d’accès du module défaillant: rundll32.exe_fb-x64.dll2 ID de rapport : rundll32.exe_fb-x64.dll3 Nom complet du package défaillant : rundll32.exe_fb-x64.dll4 ID de l’application relative au package défaillant : rundll32.exe_fb-x64.dll5 Error: (07/20/2015 09:54:38 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Nom du module défaillant : AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000dfb8d ID du processus défaillant : 0x1648 Heure de début de l’application défaillante : 0xAcroRd32.exe0 Chemin d’accès de l’application défaillante : AcroRd32.exe1 Chemin d’accès du module défaillant: AcroRd32.exe2 ID de rapport : AcroRd32.exe3 Nom complet du package défaillant : AcroRd32.exe4 ID de l’application relative au package défaillant : AcroRd32.exe5 Error: (07/19/2015 09:51:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Nom du module défaillant : AcroRd32.exe, version : 15.8.20082.15957, horodatage : 0x55960b88 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000dfb8d ID du processus défaillant : 0x1624 Heure de début de l’application défaillante : 0xAcroRd32.exe0 Chemin d’accès de l’application défaillante : AcroRd32.exe1 Chemin d’accès du module défaillant: AcroRd32.exe2 ID de rapport : AcroRd32.exe3 Nom complet du package défaillant : AcroRd32.exe4 ID de l’application relative au package défaillant : AcroRd32.exe5 Error: (07/16/2015 09:24:10 PM) (Source: MsiInstaller) (EventID: 1024) (User: FRACTALR4) Description: Produit : Adobe Acrobat Reader DC - Français - La mise à jour ‘{AC76BA86-7AD7-0000-2550-AC0F084E7200}’ n’a pas pu être installée. Code d’erreur 1625. Windows Installer peut créer des journaux pour faciliter la résolution des éventuelles erreurs d’installation des packages logiciels. Utilisez le lien suivant pour afficher des instructions concernant l’activation des journaux : http://go.microsoft.com/fwlink/?LinkId=23127 System errors: ============= Error: (07/23/2015 10:48:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service GhFlt n’a pas pu démarrer en raison de l’erreur : %%2 Error: (07/23/2015 10:47:03 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\D:\TEMP\catchme.sys Error: (07/23/2015 08:52:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service GhFlt n’a pas pu démarrer en raison de l’erreur : %%2 Error: (07/23/2015 08:41:24 AM) (Source: DCOM) (EventID: 10010) (User: FRACTALR4) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (07/23/2015 08:40:54 AM) (Source: DCOM) (EventID: 10010) (User: FRACTALR4) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (07/23/2015 08:15:58 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service GhFlt n’a pas pu démarrer en raison de l’erreur : %%2 Error: (07/23/2015 08:15:30 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x8024001e : Mise à jour des définitions pour Windows Defender – KB2267602 (Définition 1.203.125.0). Error: (07/23/2015 07:54:40 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service GhFlt n’a pas pu démarrer en raison de l’erreur : %%2 Error: (07/23/2015 07:52:30 AM) (Source: DCOM) (EventID: 10010) (User: FRACTALR4) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (07/23/2015 07:26:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service GhFlt n’a pas pu démarrer en raison de l’erreur : %%2 Microsoft Office: ========================= Error: (07/22/2015 07:07:38 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: rundll32.exe_fb-x64.dll6.3.9600.1741554504eb8ntdll.dll6.3.9600.17736550f4336c0000005000000000002e75c14a801d0c4a0e95a49b3C:\Windows\system32\rundll32.exeC:\Windows\SYSTEM32\ntdll.dll2706d59d-3094-11e5-8378-74d435bd3e0d Error: (07/22/2015 06:48:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: rundll32.exe_fb-x64.dll6.3.9600.1741554504eb8ntdll.dll6.3.9600.17736550f4336c0000005000000000002e75cee001d0c49e3e59de02C:\Windows\system32\rundll32.exeC:\Windows\SYSTEM32\ntdll.dll7c08cc5d-3091-11e5-8378-74d435bd3e0d Error: (07/21/2015 06:59:31 PM) (Source: thermald) (EventID: 0) (User: ) Description: System.NotSupportedException: La méthode spécifiée n'est pas prise en charge. à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx.InitObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx..ctor() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx2..ctor(MotherboardHealthIdentification healthid) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitIntelObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitObjects(String productName) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl..ctor() à thermald.MainWindow.InitHardwareMonitorObjects() Error: (07/21/2015 06:59:31 PM) (Source: ThermalConsole) (EventID: 0) (User: ) Description: System.NotSupportedException: La méthode spécifiée n'est pas prise en charge. à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx.InitObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx..ctor() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.Intel.FanRegulatorEx2..ctor(MotherboardHealthIdentification healthid) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitIntelObjects() à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl.InitObjects(String productName) à Gigabyte.EnvironemntControl.CoolingDevice.Fan.FanControl..ctor() à ThermalConsole.MainWindow.InitObjects() Error: (07/21/2015 03:45:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: rundll32.exe_fb-x64.dll6.3.9600.1741554504eb8ntdll.dll6.3.9600.17736550f4336c0000005000000000002e75c12e001d0c3bb7be6f5d0C:\Windows\system32\rundll32.exeC:\Windows\SYSTEM32\ntdll.dllb99620cc-2fae-11e5-836c-74d435bd3e0d Error: (07/20/2015 07:22:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AcroRd32.exe15.8.20082.1595755960b88AcroRd32.exe15.8.20082.1595755960b88c0000409000dfb8d1d2401d0c31097d6d79bC:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exeC:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exed5a137df-2f03-11e5-836b-74d435bd3e0d Error: (07/20/2015 02:20:45 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: rundll32.exe_fb-x64.dll6.3.9600.1741554504eb8ntdll.dll6.3.9600.17736550f4336c0000005000000000002e75c1a2c01d0c2e68118a930C:\Windows\system32\rundll32.exeC:\Windows\SYSTEM32\ntdll.dllbec93b79-2ed9-11e5-836b-74d435bd3e0d Error: (07/20/2015 09:54:38 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: AcroRd32.exe15.8.20082.1595755960b88AcroRd32.exe15.8.20082.1595755960b88c0000409000dfb8d164801d0c2c14bac9bb8C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exeC:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe9159ff1f-2eb4-11e5-836a-74d435bd3e0d Error: (07/19/2015 09:51:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: AcroRd32.exe15.8.20082.1595755960b88AcroRd32.exe15.8.20082.1595755960b88c0000409000dfb8d162401d0c25c40c766a4C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exeC:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe84b13cca-2e4f-11e5-8368-74d435bd3e0d Error: (07/16/2015 09:24:10 PM) (Source: MsiInstaller) (EventID: 1024) (User: FRACTALR4) Description: Adobe Acrobat Reader DC - Français{AC76BA86-7AD7-0000-2550-AC0F084E7200}1625(NULL)(NULL)(NULL) CodeIntegrity Errors: =================================== Date: 2015-07-23 10:47:03.579 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume8\TEMP\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-4770 CPU @ 3.40GHz Percentage of memory in use: 6% Total physical RAM: 32628.77 MB Available physical RAM: 30610.8 MB Total Virtual: 37492.77 MB Available Virtual: 35420.63 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:221.81 GB) (Free:178.71 GB) NTFS Drive d: (STOCKAGE HDD) (Fixed) (Total:1862.89 GB) (Free:1727.97 GB) NTFS Drive e: (STOCKAGE SSD) (Fixed) (Total:238.47 GB) (Free:156.08 GB) NTFS Drive f: (Burnout Paradise) (CDROM) (Total:2.84 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 5532AD8D) Partition: GPT Partition Type. ======================================================== Disk: 1 (Size: 238.5 GB) (Disk ID: E8148318) Partition 1: (Not Active) - (Size=238.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End of log ============================