Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:20-08-2015 Exécuté par Victor (2015-08-20 15:08:34) Exécuté depuis C:\Users\Victor.pc-PC.001\Desktop\Downloads Mode d'amorçage: Safe Mode (with Networking) ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-4262996136-3617272635-2497329360-500 - Administrator - Disabled) HomeGroupUser$ (S-1-5-21-4262996136-3617272635-2497329360-1002 - Limited - Enabled) Invité (S-1-5-21-4262996136-3617272635-2497329360-501 - Limited - Disabled) Victor (S-1-5-21-4262996136-3617272635-2497329360-1012 - Administrator - Enabled) => C:\Users\Victor.pc-PC.001 ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition 2015 (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} FW: AVG Internet Security 2015 (Disabled) {757AB44A-78C2-7D1A-E37F-CA42A037B368} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-4262996136-3617272635-2497329360-1012\...\uTorrent) (Version: 3.4.3.40760 - BitTorrent Inc.) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1216 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.0.1216 - CyberLink Corp.) Hidden Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.296 - Adobe Systems Incorporated) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.36 - Atheros Communications Inc.) ATI Catalyst Install Manager (HKLM\...\{EAC31886-EF21-15C7-1EB7-6DB86C65241E}) (Version: 3.0.804.0 - ATI Technologies, Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.3.2225 - AVAST Software) AVG 2015 (HKLM\...\AVG) (Version: 2015.0.5751 - AVG Technologies) AVG 2015 (Version: 15.0.4306 - AVG Technologies) Hidden AVG 2015 (Version: 15.0.5751 - AVG Technologies) Hidden Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.100.82.87 - Broadcom Corporation) ccc-core-static (x32 Version: 2010.1215.2206.39639 - Nom de votre société) Hidden Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) OpenOffice 4.1.1 (HKLM-x32\...\{121727D5-FDF3-4723-BA57-EB383440ED72}) (Version: 4.11.9775 - Apache Software Foundation) Qualcomm Atheros Fast Reconnect (HKLM-x32\...\{0CA2063D-D43F-41F2-A8AC-A3C4A4C722D2}) (Version: 1.0 - QualComm Atheros) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30122 - Realtek Semiconductor Corp.) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) WinRAR 5.20 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) WMV9/VC-1 Video Playback (Version: 1.00.0000 - ATI Technologies Inc.) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Points de restauration ========================= ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0FDC5FDE-5606-4E77-A97B-172530052A5B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {44375B0D-262A-4D71-A9EA-8A16D6EBC63B} - System32\Tasks\1014avtUpdateInfo => C:\ProgramData\Avg_Update_1014avt\1014avt_AVG-Secure-Search-Update.exe Task: {5D3ED4E3-26FB-4A00-ACAB-3369913CB47C} - System32\Tasks\{944E266A-29C6-4D24-ABFC-39BD8CC306B4} => pcalua.exe -a "C:\Users\Victor.pc-PC.000\Downloads\Nascar Thunder 2004\Nascar2004fr.exe" -d "C:\Users\Victor.pc-PC.000\Downloads\Nascar Thunder 2004" Task: {70B962EE-85AE-4240-A87E-905B0DF40869} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-08-18] (AVAST Software) Task: {A49C12A9-FC55-4803-B770-C3A17D9EF370} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\avast! Emergency Update.job => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe Task: C:\Windows\Tasks\EasyFix.job => c:\programdata\{589cf8ba-be49-247d-589c-cf8babe4e2ea}\nsy7850.tmp.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1d0a6d81ea41667.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Inst_Rep.job => C:\Users\Normal\AppData\Local\Installer\Install_22533\DCytdieamodc_amodc_setup.exe Task: C:\Windows\Tasks\Launch 14408.job => C:\Program Files (x86)\YTDownloader\YTDownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\LaunchPreSignup.job => C:\Program Files (x86)\OLBPre\OLBPre.exe <==== ATTENTION Task: C:\Windows\Tasks\PCPrivacyDock_Master.job => C:\Program Files (x86)\PC Privacy Dock\InstAct.exe Task: C:\Windows\Tasks\PCPrivacyDock_Popup.job => C:\Program Files (x86)\PC Privacy Dock\Splash.exe Task: C:\Windows\Tasks\PCPrivacyDock_Popup3.job => C:\Program Files (x86)\PC Privacy Dock\PopUP.exe Task: C:\Windows\Tasks\PhraseProfessor Auto Updater 1.10.0.21 Core.job => C:\Program Files (x86)\PhraseProfessor_1.10.0.21\Update\PhraseProfessorAutoUpdateClient.exe <==== ATTENTION Task: C:\Windows\Tasks\PostPoneInstall.job => C:\Users\Normal\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe C:\Users\Normal\AppData\Local\Temp\ce98ac2e-20c0-4a93-86f6-bdb3e61caf55.exe /INSTALL /dwlurl=http:/dl.newstatsdemosrv.com/appsi/icinem/setup.exe <==== ATTENTION Task: C:\Windows\Tasks\Run_Bobby_Browser.job => C:\Users\Normal\AppData\Local\BoBrowser\Application\bobrowser.exe <==== ATTENTION Task: C:\Windows\Tasks\Run_Browser.job => C:\Users\Normal\AppData\Local\UnicoBrowser\Application\unicobrowser.exe <==== ATTENTION Task: C:\Windows\Tasks\SidebarExecute.job => 0x00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000 ==================== Modules chargés (Avec liste blanche) ============== 2015-06-14 22:23 - 2014-02-10 13:44 - 04592128 _____ () C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll 2015-06-14 22:23 - 2014-02-10 13:44 - 00112128 _____ () C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll 2015-07-16 22:00 - 2015-07-13 10:14 - 16307888 _____ () C:\Users\Victor.pc-PC.001\AppData\Local\Google\Chrome\User Data\PepperFlash\18.0.0.209\pepflashplayer.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData:NT AlternateDataStreams: C:\ProgramData:NT2 AlternateDataStreams: C:\Users\All Users:NT AlternateDataStreams: C:\Users\All Users:NT2 AlternateDataStreams: C:\ProgramData\Application Data:NT AlternateDataStreams: C:\ProgramData\Application Data:NT2 AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2 ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== EXE Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{481FA81F-F9A2-4DBE-8870-337E5AC71E5E}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [{5F47DE08-83E5-4EA3-BCD0-646290B00E0D}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe FirewallRules: [TCP Query User{A6270AB2-FC1C-44DF-8530-B889E52614CC}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [UDP Query User{130D29A7-0583-41C1-ADFA-0A60846FBA2C}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [TCP Query User{120811BB-230D-4DD5-B27C-B534F8C7B715}C:\users\victor.pc-pc.000\downloads\utorrent.exe] => (Allow) C:\users\victor.pc-pc.000\downloads\utorrent.exe FirewallRules: [UDP Query User{B49BFF82-4AA4-4909-9027-231525355AEF}C:\users\victor.pc-pc.000\downloads\utorrent.exe] => (Allow) C:\users\victor.pc-pc.000\downloads\utorrent.exe FirewallRules: [{B0CC3A8F-B360-4028-B26A-BDF413E517CA}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{F50DFE7E-7B67-452E-B9D7-F05F614DDEB3}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe FirewallRules: [{5EAE24DB-E65D-472D-8A68-6372460F744D}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{FCC620CA-4641-4494-BFB7-1DF22B31F6A5}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgdiagex.exe FirewallRules: [{0859A2F1-057B-407A-ABC5-3F41DF441086}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{94D5E466-77F2-4E1C-BD3C-AAE89430D92F}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgemca.exe FirewallRules: [{3D1BA696-236F-4F2C-B0BB-E6A04CF187C8}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{2800FE76-1D92-4E37-A001-3BE65CA83F5A}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{D0A3EB72-6F92-4BF4-8E2D-2A34AC3A4B6F}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [{DE0BCEB2-2D05-46F0-A19E-5255E26D3454}] => (Allow) C:\Program Files (x86)\Electronic Arts\BioWare\Star Wars - The Old Republic\launcher.exe FirewallRules: [TCP Query User{93F1D9F8-0543-4030-B315-5CFF8C32326F}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [UDP Query User{08C1BB5F-DCD3-47D8-9FAE-1D3693F5B4A8}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{E5F73D55-94BC-428A-A53F-22EA95058D8D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{013BFE5B-3A24-423D-9E27-0AB435E403BC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{82B99103-494B-42C3-9466-5DDAD59CDE4E}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{3529C044-0A4B-407E-A703-90A6690E2CCC}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{85DDE622-6938-44CE-B6BE-679A07AD47E4}] => (Allow) C:\Users\Normal\AppData\Local\BoBrowser\Application\bobrowser.exe FirewallRules: [{84FD772B-AD09-436F-BC05-BE952771FFE0}] => (Allow) C:\Users\Normal\AppData\Local\UnicoBrowser\Application\unicobrowser.exe FirewallRules: [TCP Query User{E0DA3744-71C5-4F28-94C9-BD766E054CB9}C:\users\victor.pc-pc.001\appdata\roaming\utorrent\updates\3.4.3_40298.exe] => (Allow) C:\users\victor.pc-pc.001\appdata\roaming\utorrent\updates\3.4.3_40298.exe FirewallRules: [UDP Query User{FA40F516-FD48-42B3-A8C7-64732F630ED0}C:\users\victor.pc-pc.001\appdata\roaming\utorrent\updates\3.4.3_40298.exe] => (Allow) C:\users\victor.pc-pc.001\appdata\roaming\utorrent\updates\3.4.3_40298.exe FirewallRules: [{5F15CCE9-BDE5-46F9-A568-5899554FE18C}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe FirewallRules: [{8A24346A-1AF8-4C2C-B8BC-102DDEE39C92}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe FirewallRules: [TCP Query User{860246AA-FB36-4C5C-AE29-AB2FB3736E80}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe FirewallRules: [UDP Query User{6199EC4B-556D-4FA9-A261-EBE2FD81E553}C:\program files (x86)\ares\ares.exe] => (Allow) C:\program files (x86)\ares\ares.exe FirewallRules: [TCP Query User{0CFA2ED4-6802-4C09-8C42-C40FB61BF07D}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe FirewallRules: [UDP Query User{D13B1AB5-9867-4486-9C91-C13161048DEA}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe FirewallRules: [{7DDACFB9-9C94-49D0-B4E1-064D1B5CA7C0}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{B55842F2-DBE3-4CC8-982F-AD763FC460A8}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{6466CD2C-B3C5-48A8-99FA-56992929378A}] => (Allow) LPort=10393 FirewallRules: [{1D2EF5C3-1F0C-439E-BDEE-6087B5A1F5AF}] => (Allow) LPort=10393 FirewallRules: [{26B25C04-E847-4C60-8E62-12DE22D81CDE}] => (Allow) C:\Users\Victor.pc-PC.001\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{63EE4D49-D499-477B-B6D1-8717C3EFB827}] => (Allow) C:\Users\Victor.pc-PC.001\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7371C08F-C914-41D9-95E2-EDAA5CC53B95}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{722F262E-C0EC-43AE-BAFC-376F5138A8AB}] => (Allow) C:\ProgramData\EnobbQeubj\tydeacuz.exe FirewallRules: [{2A8C0F00-3294-4709-8260-875129411EA8}] => (Allow) C:\ProgramData\EnobbQeubj\tydeacuz.exe FirewallRules: [{2DDE5A31-D97F-4FD8-89F3-5360CB71F00F}] => (Allow) C:\ProgramData\EnobbQeubj\tydeacuz.exe FirewallRules: [{C40BAD1C-C456-46B3-B0EA-D9C5AF406D50}] => (Allow) C:\ProgramData\EnobbQeubj\tydeacuz.exe ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: avast! VM Monitor Description: avast! VM Monitor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswVmm Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: avast! Revert Description: avast! Revert Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswRvrt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (08/20/2015 03:03:59 PM) (Source: Windows Search Service Profile Notification) (EventID: 2) (User: ) Description: Impossible de supprimer les données indexées par le service Windows Search pour l’utilisateur 'S-1-5-21-4262996136-3617272635-2497329360-1011' suite à la suppression du profil utilisateur. Code d’erreur 0x8007043C. Ce service ne peut pas être démarré en mode sans échec . Error: (08/20/2015 02:55:39 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 07:43:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 07:39:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 06:52:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 10:17:46 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:55:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:20:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:06:20 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Users\VICTOR~1.001\AppData\Local\Temp\_av_iup.tm~a01236\New\instup.exe /cookie:mmm_ava_tst_000_706_b /edition:1 /ga_clientid:3dbfe56d-f90c-4c85-8689-78b68f6e8d65 /guid:3e5d757c-a510-42c9-afbf-d3d811b2b03e /prod:ais /sfx /sfxstorage:C:\Users\VICTOR~1.001\AppData\Local\Temp\_av_iup.tm~a01236 ; Description = avast! antivirus system restore point ; Erreur = 0x8007043c). Error: (08/18/2015 08:22:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Erreurs système: ============= Error: (08/20/2015 02:54:41 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (08/20/2015 02:54:41 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (08/20/2015 02:54:37 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (08/20/2015 02:54:29 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC} Error: (08/20/2015 02:54:17 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger : aswRvrt aswSnx aswSP aswVmm Avgdiska AVGIDSDriver Avgldx64 Avgloga discache spldr Wanarpv6 Error: (08/20/2015 02:54:06 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 20:41:37 le ‎19/‎08/‎2015 n’était pas prévu. Error: (08/19/2015 07:42:25 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{9E175B6D-F52A-11D8-B9A5-505054503030} Error: (08/19/2015 07:42:24 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084WSearch{7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} Error: (08/19/2015 07:42:19 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084EventSystem{1BE1F766-5536-11D1-B726-00C04FB926AF} Error: (08/19/2015 07:42:12 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: 1084ShellHWDetection{DD522ACC-F821-461A-A407-50B198B896DC} Microsoft Office: ========================= Error: (08/20/2015 03:03:59 PM) (Source: Windows Search Service Profile Notification) (EventID: 2) (User: ) Description: S-1-5-21-4262996136-3617272635-2497329360-10110x8007043CCe service ne peut pas être démarré en mode sans échec Error: (08/20/2015 02:55:39 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 07:43:34 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 07:39:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2015 06:52:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 10:17:46 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:55:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:20:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2015 09:06:20 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: C:\Users\VICTOR~1.001\AppData\Local\Temp\_av_iup.tm~a01236\New\instup.exe /cookie:mmm_ava_tst_000_706_b /edition:1 /ga_clientid:3dbfe56d-f90c-4c85-8689-78b68f6e8d65 /guid:3e5d757c-a510-42c9-afbf-d3d811b2b03e /prod:ais /sfx /sfxstorage:C:\Users\VICTOR~1.001\AppData\Local\Temp\_av_iup.tm~a01236avast! antivirus system restore point0x8007043c Error: (08/18/2015 08:22:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Infos Mémoire =========================== Processor: AMD E-350 Processor Pourcentage de mémoire utilisée: 26% Mémoire physique - RAM - totale: 3818.9 MB Mémoire physique - RAM - disponible: 2807.32 MB Mémoire virtuelle totale: 7635.99 MB Mémoire virtuelle disponible: 6679.78 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:272.98 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 526CF2BE) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== Fin de journal ============================