Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:19-08-2015 Exécuté par Utilisateur (2015-08-19 20:56:21) Exécuté depuis C:\Users\Utilisateur\Downloads Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2439313772-215345767-324926408-500 - Administrator - Disabled) ASPNET (S-1-5-21-2439313772-215345767-324926408-1010 - Limited - Enabled) Invité (S-1-5-21-2439313772-215345767-324926408-501 - Limited - Disabled) Utilisateur (S-1-5-21-2439313772-215345767-324926408-1000 - Administrator - Enabled) => C:\Users\Utilisateur ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: avast! Antivirus (Enabled - Up to date) {C37D8F93-0602-E43C-40AA-47DAD597F308} AV: AntiVir Desktop (Disabled - Up to date) {090F9C29-64CE-6C6F-379C-5901B49A85B7} AS: avast! Antivirus (Enabled - Up to date) {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AntiVir Desktop (Disabled - Up to date) {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\uTorrent) (Version: 3.4.3.40298 - BitTorrent Inc.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.172 - Adobe Systems Incorporated) Adobe Flash Player 16 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 16.0.0.280 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe InDesign CS6 (HKLM-x32\...\{CFB770D7-8D43-1014-922B-CC2715FADE3F}) (Version: 8.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.8.158 - Adobe Systems, Inc.) Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.0.3 - IObit) AIDA64 Extreme v5.20 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.20 - FinalWire Ltd.) Akamai NetSession Interface (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Apple Mobile Device Support (HKLM\...\{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}) (Version: 7.0.0.117 - Apple Inc.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.10 - Michael Tippach) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bubble Dock (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Bubble Dock) (Version: - Nosibay) Canon MP280 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP280_series) (Version: - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform) CopyTrans Suite désinstallation uniquement (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\CopyTrans Suite) (Version: 2.27 - WindSolutions) CPUID CPU-Z 1.68 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) DeepBurner 1.9.0.228 (HKLM-x32\...\{F0A8E94F-1AD1-4428-873E-36CEEABA5FED}_is1) (Version: 1.9.0.228 - Astonsoft Ltd.) DeepBurner v1.9.0.228 (HKLM-x32\...\{2ADE2157-7A5E-122C-B51D-EB8A01B15943}) (Version: - ) Driver Booster 2.1 (HKLM-x32\...\Driver Booster_is1) (Version: 2.1 - IObit) FoxTab PDF Creator (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\FoxTab PDF Creator) (Version: - ) <==== ATTENTION Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Game Assistant (HKLM-x32\...\GameAssistant_is1) (Version: 1.0 - VTools) GamesDesktop 001.005010064 (HKLM-x32\...\gmsd_fr_005010064_is1) (Version: - GAMESDESKTOP) <==== ATTENTION GeoGebra 4.4 (HKLM-x32\...\GeoGebra 4.4) (Version: 4.4.45.0 - International GeoGebra Institute) GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.72.0 - International GeoGebra Institute) Gestionnaire pour appareils Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION Google Talk Plugin (HKLM-x32\...\{0C5C1177-94C5-3EFB-A8BE-3F6AF1AF887F}) (Version: 5.38.6.0 - Google) Gramblr (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Gramblr) (Version: 1.0.0 - Gramblr) IObit Malware Fighter 3 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 3.0 - IObit) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 4.1.5.24 - IObit) iTunes (HKLM\...\{A535111D-95C8-487F-869E-CE4C239972D2}) (Version: 11.1.1.11 - Apple Inc.) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) KMSpico v9.3 (HKLM\...\KMSpico_is1) (Version: 9.3 - ) LibreOffice 4.2.8.2 (HKLM-x32\...\{2D3234B2-FC7B-41CD-9FC8-4F9C2C20C131}) (Version: 4.2.8.2 - The Document Foundation) Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech) Ma-Config.com (64 bits) (HKLM\...\{E1322B8A-6F66-44ED-95D5-7FEBC50AC814}) (Version: 7.1.5.0 - Cybelsoft) Malwarebytes Anti-Malware version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation) Media Go (HKLM-x32\...\{F66C4A41-C3A8-4523-AB6C-BAA1DB38305C}) (Version: 2.7.357 - Sony) Media Go Network Downloader (HKLM-x32\...\{5562F05F-908C-4F15-9B3C-98D5FD32DCAB}) (Version: 1.5.19.0 - Sony) Media Go Video Playback Engine 2.4.112.12050 (HKLM-x32\...\{7C5AEEE1-6D7C-8922-4548-7BF9096077EC}) (Version: 2.4.112.12050 - Sony) Meeting Scheduler for Google Calendar (HKLM-x32\...\{BA5D43C9-D633-D0EC-CFEA-2ABA974B333D}) (Version: - "") MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.31211.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710F4C1C-CC18-4C49-8CBF-51240C89A1A2}) (Version: - ) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052B-02A4-4627-81F2-1818DA5D550D}) (Version: - ) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 (HKLM\...\{EE936C7A-EA40-31D5-9B65-8E3E089C3828}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 (HKLM\...\{8338783A-0968-3B85-AFC7-BAAE0A63DC50}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: - ) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: - ) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2008 Remote Debugger Light (x64) - Français (HKLM\...\Microsoft Visual Studio 2008 Remote Debugger Light (x64) - FRA) (Version: - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 Express Tools for .NET Framework (HKLM\...\{704C16B7-13DD-3656-96A0-4E456CCF75E6}) (Version: 3.5.21022 - Microsoft) Microsoft Windows SDK for Visual Studio 2008 Express Tools for Win32 (HKLM\...\{11EB1163-5761-4BC6-8F48-98DCF6A46BBF}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft Windows SDK for Visual Studio 2008 Headers and Libraries (HKLM\...\{5DE154DF-A55E-4FA5-BE59-32E78FCACF3E}) (Version: 6.1.5288.17011 - Microsoft Corporation) Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: - ) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: - ) Mises à jour NVIDIA 17.12.8 (Version: 17.12.8 - NVIDIA Corporation) Hidden Mount&Blade Warband (HKLM-x32\...\Mount&Blade Warband) (Version: - ) Music Database (HKLM-x32\...\{E370F69F-ED3F-925F-31FC-14D1329A713B}) (Version: - "") New Star GP 1.34 (HKLM-x32\...\{2AC22CBC-1E34-4942-BC27-890E5DD3F8BC}}_is1) (Version: - New Star Games Ltd) NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.12.5896 - NVIDIA Corporation) NVIDIA GeForce Experience 2.2.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.2.2 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.44 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA Pilote graphique 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.44 - NVIDIA Corporation) OCCT 4.4.1 (HKLM-x32\...\OCCT) (Version: 4.4.1 - Ocbase.com) Opera beta 32.0.1948.4 (HKLM-x32\...\Opera 32.0.1948.4) (Version: 32.0.1948.4 - Opera Software) Opera Stable 31.0.1889.174 (HKLM-x32\...\Opera 31.0.1889.174) (Version: 31.0.1889.174 - Opera Software) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Pack Commentaire 3 en 1 2013 version 2.6 (HKLM-x32\...\{5A9F43D2-A9F9-4373-8D06-D9C8B3196E17}_is1) (Version: 2.6 - cav1994) Package de pilotes Windows - Nokia pccsmcfd (08/22/2008 7.0.0.0) (HKLM\...\FCEC33AD40CEA5E0FC4CEE6E42041A0DA189652D) (Version: 08/22/2008 7.0.0.0 - Nokia) paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC) Panneau de configuration NVIDIA 341.44 (Version: 341.44 - NVIDIA Corporation) Hidden PCM Fast Editor (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\b4e96ac10814a05a) (Version: 2.1.0.0 - PCM Fast Editor) PCM.daily Expansion Pack 0.8 0.8 (HKLM-x32\...\PCM.daily Expansion Pack 0.8 0.8) (Version: 0.8 - PCM.daily) PCM.daily Expansion Pack V0.5 (HKLM-x32\...\PCM.daily Expansion Pack V0.5) (Version: 0.5 - PCM.daily) PDF Settings CS6 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Power Challenge Game Plugin (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Power Loader) (Version: - ) Pro Cycling Manager - Saison 2013 version 1.0.4.0 (HKLM-x32\...\Pro Cycling Manager 2013_is1) (Version: 1.0.4.0 - Cyanide) Pro Cycling Manager 2015 (HKLM-x32\...\Pro Cycling Manager 2015_is1) (Version: - ) PrtScr 1.5 (HKLM-x32\...\PrtScr_is1) (Version: - FireStarter) PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden Python 2.7 (HKLM-x32\...\{20c31435-2a0a-4580-be8b-ac06fc243ca4}) (Version: 2.7.150 - Python Software Foundation) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.89.716.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7503 - Realtek Semiconductor Corp.) Search Protect (HKLM-x32\...\SearchProtect) (Version: 3.0.30.5 - Client Connect LTD) <==== ATTENTION Selection Tools (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Selection Tools) (Version: - WTools) <==== ATTENTION Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) SHIELD Streaming (Version: 4.0.1000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 17.12.8 - NVIDIA Corporation) Hidden shopperz12082015 2.0.0.475 (HKLM\...\{3ea54411-9f2a-4a18-a93a-84312350f7c1}_is1) (Version: 2.0.0.475 - shopperz) <==== ATTENTION Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Smart Defrag 4 (HKLM-x32\...\Smart Defrag 4_is1) (Version: 4.0 - IObit) SmartWeb (HKLM-x32\...\SmartWeb) (Version: 8.0.9 - SoftBrain Technologies Ltd.) <==== ATTENTION Sony PC Companion 2.10.275 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.275 - Sony) Spotify (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\Spotify) (Version: 1.0.6.80.g2a801a53 - Spotify AB) SpyHunter 4 (HKLM-x32\...\SpyHunter) (Version: 4.20.9.4533 - Enigma Software Group, LLC) StanosCrossBase 2012-2013 v1.0a (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\StanosCrossBase 2012-2013 v1.0a) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.2 - IObit) swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: - ) System Requirements Lab (HKLM-x32\...\{8DCAB1D8-F20C-4733-9B5F-646DDFEB59C9}) (Version: 6.1.1.0 - Husdawg, LLC) Tennis Elbow Manager 1.0g (HKLM-x32\...\Tennis Elbow Manager) (Version: 1.0g - Mana Games) The Hat 3.0.9 (HKLM-x32\...\The Hat_is1) (Version: - Harmony Hollow Software) TrackMania Nations Forever (HKLM-x32\...\Steam App 11020) (Version: - Nadeo) Unity Web Player (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Vegas Pro 12.0 (64-bit) (HKLM\...\{A782B230-FE98-11E1-9A1E-F04DA23A5C58}) (Version: 12.0.367 - Sony) ViewSonic Monitor Drivers x64 (HKLM-x32\...\{48963B63-7A10-49D6-8B08-61E6132453D0}) (Version: - ) Web Bar 2.0.5659.26749 (HKLM\...\{0BCE8B0A-1E76-44E5-9909-3CF804D92E4D}_is1) (Version: 2.0.5659.26749 - Web Bar Media) <==== ATTENTION WindApp (HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\WindApp) (Version: - Store) <==== ATTENTION WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM-x32\...\x264vfw) (Version: - ) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2439313772-215345767-324926408-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2439313772-215345767-324926408-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Utilisateur\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2439313772-215345767-324926408-1000_Classes\CLSID\{f707cae5-5a7d-41bc-a3ba-3959f5b33436}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) ==================== Points de restauration ========================= 19-08-2015 13:06:18 Removed Google Chrome 19-08-2015 18:26:47 avast! antivirus system restore point ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2014-07-28 13:05 - 2015-01-26 14:39 - 00000212 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 onhax.net 127.0.0.2 www.onhax.net 127.0.0.2 forum.onhax.net 127.0.0.1 labs.onhax.net 127.0.0.1 do2dear.net ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {02F22D7B-1D23-4FFB-B1CD-D91B6A13B4F7} - System32\Tasks\AdobeAAMUpdater-1.0-Utilisateur-PC-Utilisateur => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-06-13] (Adobe Systems Incorporated) Task: {11C593A9-E692-4467-A85B-94813D48DF17} - System32\Tasks\Uninstaller_SkipUac_Utilisateur => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-11-04] (IObit) Task: {15257167-0E99-4D24-8A38-F9DE4C69BF7E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {295F2970-C524-45D1-8A36-29E4BA852D61} - System32\Tasks\Opera scheduled Autoupdate 1373906539 => C:\Program Files (x86)\Opera Next\launcher.exe [2015-08-12] (Opera Software) Task: {29D2B4A0-2E36-4CBB-8198-591072EA6E7C} - System32\Tasks\WebBarUpdateTask => C:\Program Files\WebBar\wbsvc.exe [2015-06-30] (Web Bar Media) <==== ATTENTION Task: {2EDF906C-35BF-4F46-A8E4-15AA88742794} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {2F57269B-1E09-4E2D-AB1E-B0FDAC7D279C} - \Microsoft\Windows\WindowsBackup\ConfigNotification -> Pas de fichier <==== ATTENTION Task: {48EDEC91-D9CB-4C79-8439-91E4E6D958C4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {4A1BEA96-9012-4975-97EC-99D135C4557F} - System32\Tasks\SmartDefrag4_Startup => C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe [2015-04-30] (IObit) Task: {56939EFD-771C-4412-ADA3-369A85408B0A} - System32\Tasks\WebBarLaunchTask => C:\Program Files\WebBar\wbsvc.exe [2015-06-30] (Web Bar Media) <==== ATTENTION Task: {579BBBE9-4A42-46E4-9791-4F10F9D03EBB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd) Task: {5C859520-97A7-44B4-883D-4B999896C3EA} - \Microsoft\Windows\Windows Activation Technologies\ValidationTask -> Pas de fichier <==== ATTENTION Task: {60B45378-7DF2-4C60-8B57-AF813E5477C5} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2014-11-10] (IObit) Task: {65C4BFD4-31B4-409A-8DBC-36F062C2B9E0} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-04-10] (Oracle Corporation) Task: {6A66E790-1B13-4D52-B22C-6AB70E5F274B} - System32\Tasks\Opera scheduled Autoupdate 1439982405 => C:\Program Files (x86)\Opera\launcher.exe [2015-08-17] (Opera Software) Task: {6D8C8196-FD93-45E3-B571-070E2A5AB82B} - System32\Tasks\ASC8_SkipUac_Utilisateur => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2014-11-07] (IObit) Task: {79097702-CAA2-4DD5-B414-8BD3D2A9D119} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2015-05-22] () Task: {7E371A31-48ED-4168-884A-708B148A936A} - System32\Tasks\WindApp Update => C:\Users\Utilisateur\AppData\Roaming\Store\WindApp\WindApp Update.exe [2015-03-20] (Nosibay) <==== ATTENTION Task: {7F3C9FB8-DDA7-4126-8361-1969AFF7A61D} - System32\Tasks\Jarmeee => C:\Program Files\shopperz12082015\Hvnkaufcv.bat [2015-08-12] () <==== ATTENTION Task: {81565F4B-B60F-45C4-8C83-0531C8E62ED9} - System32\Tasks\Driver Booster SkipUAC (Utilisateur) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2015-01-07] (IObit) Task: {8379B9E5-28CE-4B9D-A46F-C3CF0D88A732} - System32\Tasks\SmartDefrag4_Update => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe [2015-03-03] (IObit) Task: {87BA81DB-2D10-4152-A175-7CFD969735F3} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000Core => C:\Users\Utilisateur\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-16] (Facebook Inc.) Task: {87EC2089-47F2-4C3F-A203-ECEFE48C7E20} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000UA => C:\Users\Utilisateur\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-16] (Facebook Inc.) Task: {960B279F-39DA-474E-B44B-46896C61CD09} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-12-17] (IObit) Task: {986723F9-1E36-407D-9BC9-72B1319AE61A} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1003Core => C:\Users\Vic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-08-07] (Google Inc.) Task: {99F0BC76-FA8D-4C28-9D3E-9787FE5B63D8} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-11-04] (IObit) Task: {9B21F57F-F6C1-472C-87AF-E187482A54D9} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-12-09] (IObit) Task: {9C04673B-E869-4CBA-808B-7553B466623C} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000UA => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-18] (Google Inc.) Task: {A261CB1C-42C8-4AAA-9345-E0FCEDBB83C9} - System32\Tasks\Trojan Killer => C:\Program Files\GridinSoft Trojan Killer\trojankiller.exe Task: {AC4E5ACF-89F7-4220-BA21-81EE183975E2} - \Microsoft\Windows\Application Experience\AitAgent -> Pas de fichier <==== ATTENTION Task: {B08B9F9E-047F-479B-8302-FD450E466730} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Utilisateur-PC-Utilisateur Utilisateur-PC => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation) Task: {B53B903B-D7DE-43A7-8809-71D77E8729FD} - System32\Tasks\Selection Tools Update => C:\Users\Utilisateur\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe [2015-07-21] (Nosibay) <==== ATTENTION Task: {B543F55F-98A6-4FA2-87B9-D3B311D2F46F} - \Microsoft\Windows\Windows Activation Technologies\ValidationTaskDeadline -> Pas de fichier <==== ATTENTION Task: {B63726C1-F048-48CD-8434-4ED3A1C8FB85} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2014-06-22] (@ByELDI) Task: {BED55829-0A9D-4821-B687-A1EB3BBA095E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-19] (AVAST Software) Task: {C3DDFA42-77A1-4D83-8379-59695E27EF65} - System32\Tasks\Google Updater and Installer => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-18] (Google Inc.) Task: {CEE64558-E1A7-4D9D-80A7-2001912BE5B5} - \Microsoft\Windows\MemoryDiagnostic\CorruptionDetector -> Pas de fichier <==== ATTENTION Task: {D121E98B-6DA0-44E0-80D5-1C37A4DBE639} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Utilisateur\AppData\Local\SmartWeb\SmartWebHelper.exe [2015-02-17] (SoftBrain Technologies Ltd.) <==== ATTENTION Task: {D38F199A-1CE7-4E80-8AFC-98ED028CA525} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [2012-09-17] (TuneUp Software) Task: {DD8BA015-918A-4B31-BDF6-E5EA74291833} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-05-22] (Adobe Systems Incorporated) Task: {DE694511-5AAD-4B88-947C-EEB80CFEB2DF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000Core => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe [2012-09-18] (Google Inc.) Task: {E66F59B0-0145-44E0-A05D-1FD3A18A3271} - System32\Tasks\Adobe online update program => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {FA2BC0A6-8D4B-458A-85C8-2B8C72487513} - \Microsoft\Windows\MemoryDiagnostic\DecompressionFailureDetector -> Pas de fichier <==== ATTENTION Task: {FA490C19-3257-43C8-90F8-819928D3AC93} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {FAE21312-0D5A-44BE-AA52-ADF40B3E4BA9} - System32\Tasks\Microsoft\Windows\RVLKL\RVLKL => C:\ProgramData\rvlkl\rvlkl.exe <==== ATTENTION Task: {FCBF3140-26D5-4AA0-84D1-1402F4CBE718} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1003UA => C:\Users\Vic\AppData\Local\Google\Update\GoogleUpdate.exe [2011-08-07] (Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000Core.job => C:\Users\Utilisateur\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000UA.job => C:\Users\Utilisateur\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000Core.job => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1000UA.job => C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1003Core.job => C:\Users\Vic\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2439313772-215345767-324926408-1003UA.job => C:\Users\Vic\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Modules chargés (Avec liste blanche) ============== 2014-05-01 16:13 - 2014-05-01 16:13 - 00470016 _____ () C:\Users\Utilisateur\AppData\Local\MEGAsync\ShellExtX64.dll 2015-08-12 10:45 - 2015-08-12 10:45 - 00171848 _____ () C:\Program Files\shopperz12082015\LuacRouct.exe 2015-08-19 14:55 - 2015-08-19 14:55 - 00137728 _____ () C:\Program Files (x86)\CE715F00-1439988887-11DF-86D7-20CF308B6E25\hnsqDC8B.tmp 2015-08-19 18:17 - 2015-08-12 14:00 - 00174968 _____ () C:\Program Files\shopperz12082015\Ideie.exe 2015-08-19 16:42 - 2015-08-19 16:42 - 00760832 _____ () C:\Program Files (x86)\CE715F00-1439988887-11DF-86D7-20CF308B6E25\knspEC5C.tmp 2015-08-19 18:19 - 2015-08-18 15:45 - 03333776 _____ () C:\Users\Utilisateur\AppData\Local\gmsd_fr_005010064\upgmsd_fr_005010064.exe 2015-08-03 11:32 - 2014-07-11 16:04 - 01106720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\RealTimeProtector.exe 2015-08-19 19:48 - 2015-05-12 15:20 - 00808960 _____ () C:\Program Files\WebBar\2.0.5659.26749\ISightSDK_x64.dll 2015-08-19 20:48 - 2015-08-19 20:48 - 00003072 _____ () C:\Users\Utilisateur\AppData\Local\Temp\isdkQxNSX7OQ\ISightHost.exe 2015-08-19 20:48 - 2015-05-12 15:20 - 00808960 _____ () C:\Users\Utilisateur\AppData\Local\Temp\isdkQxNSX7OQ\ISightSDK.DLL 2015-08-19 18:17 - 2015-08-12 14:00 - 00464760 _____ () C:\Program Files\shopperz12082015\Tuejet64.exe 2015-08-19 18:17 - 2015-08-12 14:00 - 00277880 _____ () C:\Program Files\shopperz12082015\Uizoa64.DLL 2015-08-19 18:19 - 2015-08-18 15:45 - 03979920 _____ () C:\Program Files (x86)\gmsd_fr_005010064\gmsd_fr_005010064.exe 2015-08-03 11:32 - 2013-10-25 12:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\sqlite3.dll 2015-08-19 18:30 - 2015-08-19 18:30 - 00102864 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-08-19 18:30 - 2015-08-19 18:30 - 00123976 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2015-08-19 18:33 - 2015-08-19 18:33 - 02960384 _____ () C:\Program Files\AVAST Software\Avast\defs\15081901\algo.dll 2015-04-16 12:38 - 2015-01-09 18:46 - 00517408 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\sqlite3.dll 2014-06-16 20:13 - 2013-01-15 19:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2014-06-16 20:13 - 2013-01-15 19:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2014-06-16 20:13 - 2013-01-15 19:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2015-08-03 11:32 - 2013-01-15 18:48 - 00348992 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madExcept_.bpl 2015-08-03 11:32 - 2013-01-15 18:48 - 00183616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madBasic_.bpl 2015-08-03 11:32 - 2013-01-15 18:48 - 00051008 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\madDisAsm_.bpl 2015-08-03 11:32 - 2013-01-15 18:47 - 00893248 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 8\webres.dll 2015-05-13 15:38 - 2015-05-13 15:38 - 00003584 _____ () C:\Users\Utilisateur\AppData\Roaming\Nosibay\Bubble Dock\WindowsHook.dll 2015-08-19 18:30 - 2015-08-19 18:31 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-08-19 14:42 - 2015-08-17 17:01 - 58600568 _____ () C:\Program Files (x86)\Opera\31.0.1889.174_1\opera.dll 2009-07-24 19:28 - 2009-07-24 19:28 - 00524128 _____ () C:\Windows\SysWOW64\LcProxy.ax 2014-05-01 16:15 - 2014-05-01 16:15 - 00463360 _____ () C:\Users\Utilisateur\AppData\Local\MEGAsync\ShellExtX32.dll 2015-04-16 12:38 - 2015-01-09 18:46 - 00182048 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll 2015-04-16 12:38 - 2015-01-09 18:46 - 00145184 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll 2015-08-19 14:42 - 2015-08-17 17:01 - 01781368 _____ () C:\Program Files (x86)\Opera\31.0.1889.174_1\libglesv2.dll 2015-08-19 14:42 - 2015-08-17 17:01 - 00081528 _____ () C:\Program Files (x86)\Opera\31.0.1889.174_1\libegl.dll 2015-01-27 20:03 - 2015-01-27 20:04 - 14959792 _____ () C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_16_0_0_280.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CCL => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Uiviuuj => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vsmon => ""="Service" ==================== EXE Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) HKU\S-1-5-21-2439313772-215345767-324926408-1000\Software\Classes\exefile: "%1" %* <===== ATTENTION ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-2439313772-215345767-324926408-1000\...\sony.com -> sony.com IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Il y a 11150 plus de sites sensibles. ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2439313772-215345767-324926408-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu is disabled. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\Services: AdobeARMservice => 3 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AntiVirSchedulerService => 2 MSCONFIG\Services: AntiVirService => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: Application Updater => 2 MSCONFIG\Services: BitGuard => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: Browser Manager => 2 MSCONFIG\Services: GfExperienceService => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gusvc => 3 MSCONFIG\Services: IDriverT => 3 MSCONFIG\Services: IJPLMSVC => 2 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: LBTServ => 3 MSCONFIG\Services: LightScribeService => 2 MSCONFIG\Services: LiveUpdateSvc => 2 MSCONFIG\Services: MaConfigAgent => 3 MSCONFIG\Services: maconfservice => 3 MSCONFIG\Services: MyWebSearchService => 2 MSCONFIG\Services: NBService => 3 MSCONFIG\Services: NMIndexingService => 3 MSCONFIG\Services: NvNetworkService => 2 MSCONFIG\Services: NvStreamSvc => 2 MSCONFIG\Services: nvsvc => 2 MSCONFIG\Services: nvUpdatusService => 2 MSCONFIG\Services: Skype C2C Service => 2 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Sony PC Companion => 3 MSCONFIG\Services: Steam Client Service => 3 MSCONFIG\Services: Stereo Service => 2 MSCONFIG\Services: SwitchBoard => 3 MSCONFIG\Services: TuneUp.UtilitiesSvc => 3 MSCONFIG\Services: Update BrowseFox => 2 MSCONFIG\Services: Util BrowseFox => 2 MSCONFIG\Services: Web Assistant Updater => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^rvlkl.lnk => C:\Windows\pss\rvlkl.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Utilisateur^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Facebook Messenger.lnk => C:\Windows\pss\Facebook Messenger.lnk.Startup MSCONFIG\startupfolder: C:^Users^Utilisateur^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Game Assistant.lnk => C:\Windows\pss\Game Assistant.lnk.Startup MSCONFIG\startupfolder: C:^Users^Utilisateur^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnk.Startup MSCONFIG\startupreg: 24x7HELP => "C:\Program Files (x86)\24x7Help\App24x7Help.exe" /STARTUP MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Adobe Creative Cloud => "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS6ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Utilisateur\AppData\Local\Akamai\netsession_win.exe" MSCONFIG\startupreg: Anti-phishing Domain Advisor => "C:\ProgramData\Anti-phishing Domain Advisor\visicom_antiphishing.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: avast5 => "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui MSCONFIG\startupreg: avgnt => "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: CanonMyPrinter => C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon MSCONFIG\startupreg: CanonSolutionMenuEx => C:\Program Files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon MSCONFIG\startupreg: Clownfish => "C:\Program Files (x86)\Clownfish\Clownfish.exe" MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW MSCONFIG\startupreg: EvtMgr6 => C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming MSCONFIG\startupreg: Facebook Update => "C:\Users\Utilisateur\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver MSCONFIG\startupreg: FlashPlayerUpdate => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_13_0_0_182_Plugin.exe -update plugin MSCONFIG\startupreg: Freecorder FLV Service => "C:\Program Files (x86)\Freecorder\FLVSrvc.exe" /run MSCONFIG\startupreg: Google Update => "C:\Users\Utilisateur\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: Intermediate => "C:\Users\Utilisateur\AppData\Roaming\Intermediate\Intermediate.exe" MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: LightShot => C:\Users\Utilisateur\AppData\Local\Skillbrains\lightshot\Lightshot.exe Flags: uninsdeletevalue MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: My Web Search Bar Search Scope Monitor => "C:\PROGRA~2\MYWEBS~1\bar\2.bin\m3SrchMn.exe" /m=2 /w /h MSCONFIG\startupreg: MyWebSearch Email Plugin => C:\PROGRA~2\MYWEBS~1\bar\2.bin\mwsoemon.exe MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" MSCONFIG\startupreg: PCFixSpeed => "C:\Program Files (x86)\PCFixSpeed\PCFixTray.exe" /startup MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RtHDVCpl => "C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s MSCONFIG\startupreg: SCheck => "C:\Users\Utilisateur\AppData\Roaming\SCheck\SCheck.exe" check MSCONFIG\startupreg: SDP => C:\Program Files (x86)\FilesFrog Update Checker\update_checker.exe /auto MSCONFIG\startupreg: SearchSettings => "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Skytel => C:\Program Files\Realtek\Audio\HDA\Skytel.exe MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background MSCONFIG\startupreg: Spotify => "C:\Users\Utilisateur\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Utilisateur\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: uTorrent => "C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED MSCONFIG\startupreg: VDownloader => C:\Program Files\VDownloader\VDownloader.exe /silent MSCONFIG\startupreg: Windows Mobile Device Center => C:\Windows\WindowsMobile\wmdc.exe MSCONFIG\startupreg: Windows Update => C:\Users\Utilisateur\AppData\Roaming\updater\update.exe ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [TCP Query User{D239AAA6-114E-43AD-A00B-648D8858A860}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{CB8E8346-2654-4622-ABBA-0573DEB0432C}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{F36AB083-239F-49E5-A847-56AAD911922F}] => (Allow) LPort=2869 FirewallRules: [{369E3E24-0ECF-4950-9C07-B559A4CB6BA1}] => (Allow) LPort=1900 FirewallRules: [{DCCEAE83-67B0-45AE-A328-7619B629EEAB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{0E0A48F2-323D-4DDF-B039-4E7B5B81F1CF}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [TCP Query User{D4C552AB-7815-41F0-B0AF-7AF43972E606}C:\users\utilisateur\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\utilisateur\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{1074A026-4E7E-4B36-A717-BB29F6880A8D}C:\users\utilisateur\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\utilisateur\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{73247B33-D070-44DF-A3FC-D7FE0FCDAE75}C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe FirewallRules: [UDP Query User{56C163B4-395E-4E64-9811-D9DA1A63646D}C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe FirewallRules: [{7E2C5834-8B29-4C9C-AAAA-C678472AC8AE}] => (Block) C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe FirewallRules: [{E36F4D17-4F99-49D1-88D3-48DB77223361}] => (Block) C:\program files (x86)\steam\steamapps\garrysmod\hl2.exe FirewallRules: [{6145C31A-DE73-407B-8B68-10C8CE7AFD6F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3B049248-E068-4CBF-9799-8A6D9ABD7A71}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{46FB2ACE-BA27-49B3-B176-3601901B67B2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{E6EB53D8-726A-449B-86C8-50E24DA789FA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{ED30DE7E-D893-4E1C-B389-3D67C95F4858}] => (Allow) LPort=48113 FirewallRules: [{F3AF0AE0-D6B9-4A83-8FD2-5368EF19D7AF}] => (Allow) LPort=48113 FirewallRules: [{92B2C73D-A964-486F-9639-0CFBA7AD0447}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{16E6D4F3-57D6-424D-87B9-C73FD559AB24}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{BFC763BE-E96A-4E33-966B-E0AE72CC0E61}] => (Allow) LPort=1542 FirewallRules: [{2365624F-D2ED-45C6-A83D-3B0096DD9B8B}] => (Allow) LPort=1542 FirewallRules: [{7AAA2CEB-107B-45CE-BE55-AFF151372EE1}] => (Allow) LPort=53 FirewallRules: [{DACDD1C7-96C2-4209-AD65-C01C42963493}] => (Allow) LPort=53 FirewallRules: [{062AC9BB-3239-4EC6-9680-C429BF81FB2E}] => (Allow) LPort=48113 FirewallRules: [{03536986-A12E-4EB4-B2DD-9EE49D6D2360}] => (Allow) LPort=48113 FirewallRules: [{F168C19B-578F-40A4-BFB5-3879F5C900FE}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{911FA2D5-B2C5-4287-85AF-2BBFC778526D}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{C9D3D878-3ECB-42EC-884F-582D23775115}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{CE915926-0143-421B-B761-FC23212D4C79}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{2F128881-4ECB-4916-868D-135F20A351E2}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [TCP Query User{8B2690F1-A3D6-4F6D-99D7-93812176A4D0}C:\program files (x86)\cyanide\pro cycling manager - saison 2012\pcm.exe] => (Allow) C:\program files (x86)\cyanide\pro cycling manager - saison 2012\pcm.exe FirewallRules: [UDP Query User{32E7FD8B-517A-412D-8D3E-0790FB41D122}C:\program files (x86)\cyanide\pro cycling manager - saison 2012\pcm.exe] => (Allow) C:\program files (x86)\cyanide\pro cycling manager - saison 2012\pcm.exe FirewallRules: [{63656533-04EF-434C-9C3A-0CE2D81DB203}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013 Resource Archiver\Resource Archiver.exe FirewallRules: [{73360C19-CB2A-47BD-ACBE-A533C95D1477}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013 Resource Archiver\Resource Archiver.exe FirewallRules: [{88A13D86-ADCE-4535-83FE-3900FE90F721}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013 Editor\editor.exe FirewallRules: [{2FF4D4C0-B76C-4BC2-81E6-1C92AAC3CEE2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013 Editor\editor.exe FirewallRules: [{27115328-7E21-49C9-8A7E-28FFF936FE54}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{9BB4F44A-F343-4C32-975F-2E267E1161EC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{BF6D36E2-9DC8-4EDF-8AE5-8B29B65348F0}] => (Allow) C:\Users\Utilisateur\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{A0A1AE33-2693-4E3E-A942-1B0B77C99182}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{035CFA57-E44B-4929-BB5A-AF69E3F788A0}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\RtWLan.exe FirewallRules: [{A2958BB8-C70D-44BA-A002-21A7B3BA5E66}] => (Allow) LPort=1542 FirewallRules: [{45D68112-78F8-4594-8C00-F3AAC34019FB}] => (Allow) LPort=1542 FirewallRules: [{66BDA432-B2FE-407B-A3DA-66BD7B53DE6B}] => (Allow) LPort=67 FirewallRules: [{5A722E73-EE81-4652-A129-AD8ACAEF02FB}] => (Allow) LPort=68 FirewallRules: [{9A674ED6-5C08-4EDE-B6F3-2D2C0D14E2DF}] => (Allow) LPort=53 FirewallRules: [{4DFFE472-C9D7-4165-8DBC-A4B01D8B466D}] => (Allow) LPort=53 FirewallRules: [{D289B20F-920D-466B-ACC4-327D122475D9}] => (Allow) C:\Program Files (x86)\REALTEK\11n USB Wireless LAN Utility\Rtldhcp.exe FirewallRules: [{F70CFA73-D4AA-440D-9C2F-98672BCDC697}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{B7C42E33-0A51-4CEF-ABBF-DB31F5A79C99}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{3789B9E9-8D47-4976-8FC0-0E3D0B65DF54}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013\fm.exe FirewallRules: [{E3DA7B53-2C67-48F3-834A-0C35F3A9CCA6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013\fm.exe FirewallRules: [{A543DB6E-06C9-4886-9720-2E043A29404D}] => (Allow) LPort=48114 FirewallRules: [{C549B84C-4078-45AE-BFFE-4A1C35EDE53F}] => (Allow) C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{63699E08-DE08-444C-8646-C0042099905D}] => (Allow) C:\Users\Utilisateur\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{44683468-26A4-4B1B-AD08-3DAD3ADBDA3E}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{32153B37-EB58-467D-8319-A8B7B812BDFD}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{C239C8D9-38C6-4224-9BAE-1D69606231D6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [TCP Query User{EFDB7AAE-E583-46B2-AA69-E1C0E892D6EA}C:\program files (x86)\galactic cafe\the stanley parable\thestanleyparable.exe] => (Allow) C:\program files (x86)\galactic cafe\the stanley parable\thestanleyparable.exe FirewallRules: [UDP Query User{EBE818EB-FECC-4912-9D27-EB9F0D1EEC26}C:\program files (x86)\galactic cafe\the stanley parable\thestanleyparable.exe] => (Allow) C:\program files (x86)\galactic cafe\the stanley parable\thestanleyparable.exe FirewallRules: [{1C4634F8-3854-4F71-9A4F-5B0AF3DDA008}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{55904C12-7B4D-48CF-A184-97D65CFD320F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{42D1F3AE-1901-41D5-BC1D-61F45D08EEE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{1632C054-6DA4-4FA5-BA1E-A22D5DF4441A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{EB108F27-F631-4E2E-8A8C-CDE50F77952A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C1B821EA-DF78-4461-BD6A-AAF2113FD691}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{EC03B7D4-8367-4489-997A-2CD498A0989A}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe FirewallRules: [{6E00626E-AEC2-41EC-9B4E-EEDB8D54D7DE}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Source SDK Base 2013 Multiplayer\hl2.exe FirewallRules: [{DB742157-C402-4E7B-9C26-17401A3F07BA}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\PCM.exe FirewallRules: [{EA7B1A3F-F3B7-41B2-A133-84586BD1A3DA}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\PCM.exe FirewallRules: [{14D606A2-BDA0-45FC-ADDC-B37522524527}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\Autorun\Exe\Autorun.exe FirewallRules: [{0117C042-D142-4EB9-9F01-E986D2A288FA}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\Autorun\Exe\Autorun.exe FirewallRules: [{97A77E2B-B693-45D5-97E8-8E34FA38EE98}] => (Allow) LPort=48114 FirewallRules: [TCP Query User{96D91BCC-31B0-4BDF-96F4-8AB28AC231AF}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{48556B25-B84C-467A-9273-41478F0A753F}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe FirewallRules: [{82FEEC01-A666-4812-9845-BF65410CDD66}] => (Allow) C:\Program Files (x86)\RomStation\NetPlay\OpenVPN\bin\openvpn.exe FirewallRules: [{DCCA80C4-1DED-44B4-A205-AA1A26279E23}] => (Allow) C:\Program Files (x86)\RomStation\NetPlay\OpenVPN\bin\openvpn.exe FirewallRules: [{706A701D-2852-4A41-97E5-627FDC09C702}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{A4ED34B7-C25B-4D43-8A15-98A7D3CEDECB}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{BC696CE9-093D-41DB-84A3-2E22F3169D72}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [UDP Query User{3987D7A6-64DD-4B48-A908-C590E05DB029}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{073F4C5E-F952-4A49-96D1-77D55B15361E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C8F7F5F9-ACFF-431E-AE01-18BD395CA6F6}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\PCM.exe FirewallRules: [{B6B76610-2D84-4DBA-8341-9534EB97E2AA}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\PCM.exe FirewallRules: [{0C2AC0A0-03DC-470B-8441-BB194693A9CB}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\Autorun\Exe\Autorun.exe FirewallRules: [{C34C0343-AA3A-48A0-99E2-67D77F9FA069}] => (Allow) C:\Program Files (x86)\Cyanide\Pro Cycling Manager - Saison 2013\Autorun\Exe\Autorun.exe FirewallRules: [{4E36979E-FC10-406B-8011-02B6221280BA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{1D61226A-D314-482D-BFED-AA0E95758873}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{55B3142C-199F-4025-98A9-FCBE43508A14}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{B0EB1E78-E70C-4664-9DA2-F17941A480C0}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{2073A541-ADB8-446D-9D17-2BC8B8462E60}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{7821C1E4-8C5D-4659-8478-28E1A2883392}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{49BE6373-3F9D-410B-8E5C-61A65F6D9797}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{B25F7464-ECC9-4E01-9206-64E9BCB008B5}] => (Allow) C:\Program Files\KMSpico\Service_KMS.exe FirewallRules: [{5437FBEF-4AE8-4977-935D-781EC8B579EA}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{226B21DC-41E3-4C25-8CB8-E32ED3CB233A}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{8853A4A8-372E-43EA-8CC9-C76F24841EB8}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013\fm.exe FirewallRules: [{FFFBCD03-C884-4E30-901C-C12F4EF88BAF}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\Football Manager 2013\fm.exe FirewallRules: [{059514F1-81EC-4AD8-A124-DB051F5822C2}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TrackMania Nations Forever\TmForever.exe FirewallRules: [{3A3996F2-DD99-4BEB-9B10-E06A889ACCB6}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TrackMania Nations Forever\TmForever.exe FirewallRules: [{0B6176C8-2304-40AA-8930-71EF2ADF5D4D}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TrackMania Nations Forever\TmForeverLauncher.exe FirewallRules: [{7F710F8B-80B0-40EE-968E-7764F120B7E7}] => (Allow) C:\Program Files (x86)\Steam\SteamApps\common\TrackMania Nations Forever\TmForeverLauncher.exe FirewallRules: [{1D103508-7322-40DE-B178-52D38D861E92}] => (Allow) C:\Program Files (x86)\Crossbrowse\Crossbrowse\Application\crossbrowse.exe StandardProfile\AuthorizedApplications: [C:\Windows\TEMP\ldkcyhmu.exe] => Enabled:Policy StandardProfile\AuthorizedApplications: [C:\Windows\TEMP\825o70fv.exe] => Enabled:Policy StandardProfile\AuthorizedApplications: [C:\Windows\TEMP\o6jovlrha.exe] => Enabled:Policy ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (08/19/2015 08:48:26 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (2320) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué. Error: (08/19/2015 06:41:43 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (3948) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué. Error: (08/19/2015 05:47:03 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (2372) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué. Error: (08/19/2015 04:47:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante iiwjljrnpc64.exe, version : 0.0.0.0, horodatage : 0x551bf9ee Nom du module défaillant : ntdll.dll, version : 6.1.7601.18869, horodatage : 0x556366f2 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000005162c ID du processus défaillant : 0xeb8 Heure de début de l’application défaillante : 0xiiwjljrnpc64.exe0 Chemin d’accès de l’application défaillante : iiwjljrnpc64.exe1 Chemin d’accès du module défaillant: iiwjljrnpc64.exe2 ID de rapport : iiwjljrnpc64.exe3 Error: (08/19/2015 04:30:42 PM) (Source: Office Software Protection Platform Service) (EventID: 16385) (User: ) Description: Failed to schedule Software Protection service for re-start at 2015-08-25T16:56:42Z. Error Code: 0x80041321. Error: (08/19/2015 03:34:42 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (348) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué. Error: (08/19/2015 02:56:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante FreeAudioEditor.exe, version : 0.0.0.0, horodatage : 0x2a425e19 Nom du module défaillant : NCTAudioEditor2.dll, version : 2.6.1.391, horodatage : 0x425f7663 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00045706 ID du processus défaillant : 0xd34 Heure de début de l’application défaillante : 0xFreeAudioEditor.exe0 Chemin d’accès de l’application défaillante : FreeAudioEditor.exe1 Chemin d’accès du module défaillant: FreeAudioEditor.exe2 ID de rapport : FreeAudioEditor.exe3 Error: (08/19/2015 02:33:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante launcher.exe_Opera Internet Browser, version : 31.0.1889.174, horodatage : 0x55d1e5c2 Nom du module défaillant : launcher.exe, version : 31.0.1889.174, horodatage : 0x55d1e5c2 Code d’exception : 0x80000003 Décalage d’erreur : 0x000228d9 ID du processus défaillant : 0x938 Heure de début de l’application défaillante : 0xlauncher.exe_Opera Internet Browser0 Chemin d’accès de l’application défaillante : launcher.exe_Opera Internet Browser1 Chemin d’accès du module défaillant: launcher.exe_Opera Internet Browser2 ID de rapport : launcher.exe_Opera Internet Browser3 Error: (08/19/2015 02:32:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante launcher.exe_Opera Internet Browser, version : 31.0.1889.174, horodatage : 0x55d1e5c2 Nom du module défaillant : launcher.exe, version : 31.0.1889.174, horodatage : 0x55d1e5c2 Code d’exception : 0x80000003 Décalage d’erreur : 0x000228d9 ID du processus défaillant : 0xea0 Heure de début de l’application défaillante : 0xlauncher.exe_Opera Internet Browser0 Chemin d’accès de l’application défaillante : launcher.exe_Opera Internet Browser1 Chemin d’accès du module défaillant: launcher.exe_Opera Internet Browser2 ID de rapport : launcher.exe_Opera Internet Browser3 Error: (08/19/2015 12:11:55 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: ) Description: Descripteur non valide Erreurs système: ============= Error: (08/19/2015 08:50:01 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service avast! Antivirus. Error: (08/19/2015 08:47:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Server Operator n’a pas pu démarrer en raison de l’erreur : %%2 Error: (08/19/2015 08:47:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Kerning Down n’a pas pu démarrer en raison de l’erreur : %%2 Error: (08/19/2015 08:46:37 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 20:45:01 le ‎19/‎08/‎2015 n’était pas prévu. Error: (08/19/2015 08:26:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service TrustedInstaller n’a pas pu démarrer en raison de l’erreur : %%2 Error: (08/19/2015 08:26:24 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 2TrustedInstaller{752073A1-23F2-4396-85F0-8FDB879ED0ED} Error: (08/19/2015 07:40:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Server Operator n’a pas pu démarrer en raison de l’erreur : %%2 Error: (08/19/2015 07:40:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Kerning Down n’a pas pu démarrer en raison de l’erreur : %%2 Error: (08/19/2015 07:39:33 PM) (Source: volmgr) (EventID: 46) (User: ) Description: L'initialisation du fichier de vidage sur incident a échoué. Error: (08/19/2015 06:40:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Server Operator n’a pas pu démarrer en raison de l’erreur : %%2 Microsoft Office: ========================= Error: (08/19/2015 08:48:26 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail2320WindowsMail0: Error: (08/19/2015 06:41:43 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail3948WindowsMail0: Error: (08/19/2015 05:47:03 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail2372WindowsMail0: Error: (08/19/2015 04:47:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: iiwjljrnpc64.exe0.0.0.0551bf9eentdll.dll6.1.7601.18869556366f2c0000005000000000005162ceb801d0da89aa534878C:\Program Files (x86)\coupoon\iiwjljrnpc64.exeC:\Windows\SYSTEM32\ntdll.dll36164117-4681-11e5-956e-20cf308b6e25 Error: (08/19/2015 04:30:42 PM) (Source: Office Software Protection Platform Service) (EventID: 16385) (User: ) Description: 0x800413212015-08-25T16:56:42Z Error: (08/19/2015 03:34:42 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail348WindowsMail0: Error: (08/19/2015 02:56:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: FreeAudioEditor.exe0.0.0.02a425e19NCTAudioEditor2.dll2.6.1.391425f7663c000000500045706d3401d0da7e67a8aa34C:\Program Files (x86)\Free Audio Editor\FreeAudioEditor.exeC:\Windows\SysWow64\NCTAudioEditor2.dlla9153b1b-4671-11e5-bb81-20cf308b6e25 Error: (08/19/2015 02:33:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: launcher.exe_Opera Internet Browser31.0.1889.17455d1e5c2launcher.exe31.0.1889.17455d1e5c280000003000228d993801d0da7b44e9215aC:\Users\Utilisateur\Desktop\launcher.exeC:\Users\Utilisateur\Desktop\launcher.exe830a4fa8-466e-11e5-bb81-20cf308b6e25 Error: (08/19/2015 02:32:57 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: launcher.exe_Opera Internet Browser31.0.1889.17455d1e5c2launcher.exe31.0.1889.17455d1e5c280000003000228d9ea001d0da7b2c61b347C:\Users\Utilisateur\Desktop\launcher.exeC:\Users\Utilisateur\Desktop\launcher.exe6b6765af-466e-11e5-bb81-20cf308b6e25 Error: (08/19/2015 12:11:55 PM) (Source: AdvancedSystemCareService8) (EventID: 0) (User: ) Description: Descripteur non valide CodeIntegrity: =================================== Date: 2015-03-13 03:22:51.348 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-13 03:22:51.270 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-13 01:03:40.435 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-13 01:03:40.420 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-13 00:59:20.851 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-13 00:59:20.820 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-12 23:56:14.745 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-12 23:56:14.714 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-12 05:04:10.847 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-03-12 05:04:10.784 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.0\KLELAMX64\klelam.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. ==================== Infos Mémoire =========================== Processor: Intel(R) Core(TM)2 Duo CPU E7500 @ 2.93GHz Pourcentage de mémoire utilisée: 65% Mémoire physique - RAM - totale: 2047.18 MB Mémoire physique - RAM - disponible: 696.86 MB Mémoire virtuelle totale: 4094.36 MB Mémoire virtuelle disponible: 1732.3 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:185.21 GB) NTFS Drive e: (Pro Cycling Manager 2015) (CDROM) (Total:6.93 GB) (Free:0 GB) UDF ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 6F30F492) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== Fin de journal ============================