Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x86) Version:27-04-2016 Exécuté par med (2016-04-27 11:03:30) Exécuté depuis C:\Users\med\Desktop Microsoft Windows 7 Édition Intégrale (X86) (2015-07-26 11:28:47) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2697187738-2720219308-4257335587-500 - Administrator - Disabled) Invité (S-1-5-21-2697187738-2720219308-4257335587-501 - Limited - Disabled) med (S-1-5-21-2697187738-2720219308-4257335587-1000 - Administrator - Enabled) => C:\Users\med ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: AVG AntiVirus Free Edition (Enabled - Up to date) {4D41356F-32AD-7C42-C820-63775EE4F413} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG AntiVirus Free Edition (Enabled - Up to date) {F620D48B-1497-73CC-F290-58052563BEAE} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) ActivePresenter (HKLM\...\{A2A40277-D807-4754-95A3-2F294C2C51D3}_is1) (Version: 5.5.5 - Atomi Systems, Inc.) Adobe Flash Player 10 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 10.1.53.64 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated) Adobe Reader 9.1 - Français (HKLM\...\{AC76BA86-7AD7-1036-7B44-A91000000001}) (Version: 9.1.0 - Adobe Systems Incorporated) Apple Application Support (32 bits) (HKLM\...\{A50679D9-6CBD-4FCD-BACB-62EF3894F6F3}) (Version: 4.0.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{A75CA58D-DB9C-4D14-9428-E0C7B0F623DC}) (Version: 9.0.0.26 - Apple Inc.) Apple Software Update (HKLM\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) ATI Catalyst Install Manager (HKLM\...\{67CF7639-4707-23D3-C032-EF59B92F24FF}) (Version: 3.0.624.0 - ATI Technologies, Inc.) AVG (HKLM\...\AvgZen) (Version: 1.51.2.3593 - AVG Technologies) AVG (Version: 16.61.7539 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4563 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.61.7539 - AVG Technologies) AVG Zen (Version: 1.51.58 - AVG Technologies) Hidden Camtasia Studio 8 (HKLM\...\{AF33D0D2-2627-4AC8-8473-FDBB7892129C}) (Version: 8.6.0.2079 - TechSmith Corporation) Canon LBP6020 (HKLM\...\Canon LBP6020) (Version: - ) ccc-core-static (Version: 2007.0613.2249.38957 - Nom de votre société) Hidden Citrix Online Launcher (HKLM\...\{09DA5EE2-7E46-4DC4-96F9-BFEE50D40659}) (Version: 1.0.408 - Citrix) DriverPack Solution Updater (HKU\S-1-5-21-2697187738-2720219308-4257335587-1000\...\DRPSu Updater) (Version: 0.0.25 - DriverPack Solution) FMW 1 (Version: 1.73.2 - AVG Technologies) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 49.0.2623.112 - Google Inc.) Google Chrome (HKU\.DEFAULT\...\Google Chrome) (Version: 6.0.427.0 - Google Inc.) Google Update Helper (Version: 1.3.21.123 - Google Inc.) Hidden Google Update Helper (Version: 1.3.29.5 - Google Inc.) Hidden GoToMeeting 7.16.0.4800 (HKU\S-1-5-21-2697187738-2720219308-4257335587-1000\...\GoToMeeting) (Version: 7.16.0.4800 - CitrixOnline) Intel Security True Key (HKLM\...\TrueKey) (Version: 3.9.141.1 - Intel Security) iTunes (HKLM\...\{F325DCA0-307C-4924-859A-E25A6DE08C15}) (Version: 12.3.0.44 - Apple Inc.) iVocalize Web Conference 4 (HKLM\...\iVocalize Web Conference 4) (Version: - ) Java(TM) 6 Update 20 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83216020FF}) (Version: 6.0.200 - Sun Microsystems, Inc.) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.226.1 - McAfee, Inc.) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office 365 ProPlus - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.6001.1073 - Microsoft Corporation) Microsoft Office 365 ProPlus - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.6001.1073 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2697187738-2720219308-4257335587-1000\...\OneDriveSetup.exe) (Version: 17.3.5951.0827 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41105.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Module linguistique de Microsoft .NET Framework 4.5 - FRA (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50709 - Microsoft Corporation) Mozilla Firefox 45.0.2 (x86 ar) (HKLM\...\Mozilla Firefox 45.0.2 (x86 ar)) (Version: 45.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 45.0.2.5941 - Mozilla) Office 16 Click-to-Run Extensibility Component (Version: 16.0.6001.1073 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.6001.1073 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (Version: 16.0.6001.1073 - Microsoft Corporation) Hidden Office Mix (HKLM\...\{9c7fb62c-70e4-4bd0-b9f1-d84aa18ff93d}) (Version: 0.1.5720.0 - Microsoft Corporation) Office Mix 32-bit (Version: 0.1.5720.0 - Microsoft) Hidden QQPlayer2.4 (HKU\S-1-5-21-2697187738-2720219308-4257335587-1000\...\QQPlayer) (Version: 2.4 - Tencent) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Skins (Version: 2007.0613.2249.38957 - ATI) Hidden Skype™ 4.2 (HKLM\...\{5C474A83-A45F-470C-9AC8-2BD1C251BF9A}) (Version: 4.2.155 - Skype Technologies S.A.) SWF Opener (HKLM\...\{01386D1F-ADE7-43B4-A4E9-312FC5BC726F}_is1) (Version: 1.3 - UnH Solutions) Synfig Studio (HKLM\...\synfigstudio) (Version: 1.0.2 - ) Video to Video (HKLM\...\{7F95A744-78DA-4AED-A8F0-A0AF330B8411}_is1) (Version: - Media Converters) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VUE 3.3.0 (HKLM\...\VUE) (Version: 3.3.0 - Tufts University) WinRAR 4.20 (32-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2697187738-2720219308-4257335587-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\G2MOutlookAddin.dll (Citrix Online, a division of Citrix Systems, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {021B6E54-C3E3-4B2C-AFD2-ADDCA3E46858} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2016-04-03] (Microsoft Corporation) Task: {2CD7F453-D384-4A3C-9C04-AF4DEF6FC7F7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.) Task: {2D6E2485-6FFD-4374-90F7-5AA01D00B7B0} - System32\Tasks\WinTaske => C:\Program Files\WinTaske\WinTaske\WinTaske.exe <==== ATTENTION Task: {30AADFBF-83F6-4D9A-BC43-12BF2CB27AEE} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.) Task: {3E0D3093-4B25-446B-BEAB-07A6C3815516} - System32\Tasks\iToolsDaemon => C:\Program Files\ThinkSky\iTools 3\iToolsDaemon.exe Task: {3F97320B-79CB-4D07-9D49-2680DFF9423D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-04-02] (Microsoft Corporation) Task: {3FD83D7C-D081-45BB-A405-B050D485060D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2016-04-02] (Microsoft Corporation) Task: {47F5F61D-7BC9-49ED-890A-5CEBE74B315F} - System32\Tasks\{B95790F7-86B9-43CE-B0C7-FC889B9A2150} => pcalua.exe -a C:\Users\med\Downloads\Msvbvm50.exe -d C:\Users\med\Downloads Task: {5F789585-07A2-4FAC-AA86-F3894DEE61DE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2016-04-03] (Microsoft Corporation) Task: {85945D2F-AF8F-4BC2-B205-27D752E5BB4F} - System32\Tasks\ASP => C:\Program Files\RCP\systweakasp.exe Task: {8D0909A0-BB10-4350-839F-D5E79A79E76A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2016-04-03] (Microsoft Corporation) Task: {917EC2AB-6791-4A11-A7F2-92BEDE61352B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.) Task: {C116EFBE-6057-4829-80D2-E4BC6B8D10ED} - System32\Tasks\Format Factory => C:\Users\med\AppData\Local\Temp\is-36KNB.tmp\prsetup.exe <==== ATTENTION Task: {C8AB9F1B-66FE-4B0C-ADF8-7B6891095B7C} - System32\Tasks\G2MUpdateTask-S-1-5-21-2697187738-2720219308-4257335587-1000 => C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\g2mupdate.exe [2016-04-17] (Citrix Online, a division of Citrix Systems, Inc.) Task: {CF073593-7BCF-49CE-AC9B-415731C7C465} - System32\Tasks\{31969CC8-0546-4638-85C2-A4024C5EA459} => pcalua.exe -a "C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" -c /uninstall PROPLUS /dll OSETUP.DLL Task: {DDACF1AD-399F-4F38-B399-AEB75A5C8699} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2016-01-05] () Task: {E0A8FB41-B31E-4405-BCFC-E8E42E6B796A} - System32\Tasks\G2MUploadTask-S-1-5-21-2697187738-2720219308-4257335587-1000 => C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\g2mupload.exe [2016-04-17] (Citrix Online, a division of Citrix Systems, Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2697187738-2720219308-4257335587-1000.job => C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\g2mupdate.exe Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2697187738-2720219308-4257335587-1000.job => C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\g2mupload.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\iToolsDaemon.job => ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\med\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\Users\med\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox 3.6 Beta 3.lnk -> C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe (Mozilla Corporation) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\Users\med\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\Users\med\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe (Mozilla Corporation) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe (Mozilla Corporation) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\Users\Public\Desktop\Google Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe (Mozilla Corporation) -> hxxp://www.so-v.com/?type=ll&uid=ddbbc71f-029b-49ff-849a-581450dc0650 ==================== Modules chargés (Avec liste blanche) ============== 2016-03-26 00:09 - 2010-07-29 18:19 - 00234496 _____ () C:\Program Files\Total Video Converter\TVCShellExt.dll 2007-03-02 09:44 - 2007-03-02 09:44 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\atiacmxx.dll 2015-05-15 16:27 - 2015-05-15 16:27 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-09-23 16:47 - 2015-09-23 16:47 - 01040144 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-03-10 14:31 - 2016-04-02 21:53 - 00143552 _____ () C:\Program Files\Common Files\Microsoft Shared\ClickToRun\ApiClient.dll 2016-04-19 15:42 - 2016-04-19 15:42 - 19403968 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_21_0_0_213.dll 2015-07-28 18:37 - 2014-02-10 12:44 - 04592128 _____ () C:\Users\med\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libglesv2.dll 2015-07-28 18:37 - 2014-02-10 12:44 - 00112128 _____ () C:\Users\med\AppData\Local\Google\Chrome\User Data\SwiftShader\3.2.6.45159\libegl.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== EXE Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-04-10 14:38 - 2016-04-10 14:40 - 00000984 ____A C:\Windows\system32\Drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com 127.0.0.1 activation.cloud.techsmith.com 127.0.0.1 oscount.techsmith.com 127.0.0.1 65.52.240.48 127.0.0.1 69.167.144.18 ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2697187738-2720219308-4257335587-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\med\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" MSCONFIG\startupreg: ApowersoftScreenRecorder => C:\Program Files\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe /autoStart MSCONFIG\startupreg: AvgUi => "C:\Program Files\AVG\Framework\Common\avguirnx.exe" /lps=fmw MSCONFIG\startupreg: BCSSync => "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices MSCONFIG\startupreg: BingSvc => C:\Users\med\AppData\Local\Microsoft\BingSvc\BingSvc.exe MSCONFIG\startupreg: CNAP2 Launcher => C:\Windows\system32\spool\DRIVERS\W32X86\3\CNAP2LAK.EXE MSCONFIG\startupreg: DelaypluginInstall => C:\ProgramData\Wondershare\AllMyTube\DelayPluginI.exe MSCONFIG\startupreg: DrvUpdater => C:\Users\med\AppData\Roaming\DRPSu\DrvUpdater.exe /hide MSCONFIG\startupreg: GoToMeeting => "C:\Users\med\AppData\Local\Citrix\GoToMeeting\4800\g2mstart.exe" "/Trigger RunAtLogon" MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Skype => "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized MSCONFIG\startupreg: StartCCC => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe MSCONFIG\startupreg: vProt => "C:\Program Files\AVG Web TuneUp\vprot.exe" MSCONFIG\startupreg: Wondershare Helper Compact.exe => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{FC21FEFE-B625-4C7F-AB10-DFE0C1C116DD}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{16390E49-1CAD-48A9-B2F7-26B74F01B38D}] => (Allow) C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe FirewallRules: [{19AD7422-771F-4B99-BCB0-646488487831}] => (Allow) C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe FirewallRules: [{95902D25-5F41-4A2A-97B4-E2AE12E790D8}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [{F1AEB326-3D8C-4207-8E41-2C39BCE7D1BD}] => (Allow) C:\Program Files\AVG\AVG2015\avgmfapx.exe FirewallRules: [{764A1EA5-A452-4F96-B377-D13335C30960}] => (Allow) LPort=48113 FirewallRules: [{52524CDC-829B-4B21-849E-0E192A7416E0}] => (Allow) C:\Program Files\ma-config.com\MCDetection.exe FirewallRules: [{AF1B27FE-3C1F-44E0-8F56-ED3F0D7AE826}] => (Allow) C:\Program Files\ma-config.com\MCDetection.exe FirewallRules: [{02A6273F-FA9D-4C38-857B-DEA9A2BF0A2E}] => (Allow) C:\Program Files\Tencent\QQPlayer\QQDeskUpdate.exe FirewallRules: [{5C7067CF-2A95-41CC-A15F-0F166028AAB6}] => (Allow) C:\Program Files\Tencent\QQPlayer\QQDeskUpdate.exe FirewallRules: [{92FE7B97-15BC-4AC0-8248-A5D76723AEA9}] => (Allow) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe FirewallRules: [{A6825DB9-703B-4CD7-8052-E9E74BB889AA}] => (Allow) C:\Program Files\Tencent\QQPlayer\QQPlayer.exe FirewallRules: [{C6E57963-4E80-44EF-AB9F-33583F0740AE}] => (Allow) C:\Program Files\Tencent\QQPlayer\QPUp.exe FirewallRules: [{9EAAF0F5-6F10-42B7-A0EE-52ED3DF8F838}] => (Allow) C:\Program Files\Tencent\QQPlayer\QPUp.exe FirewallRules: [{2131F2EF-F255-4489-AA81-1CEC199D21A2}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{787041BC-965D-4F14-89B0-09BE17F06128}] => (Allow) C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe FirewallRules: [{93A808C9-0ECE-4141-BC13-BD0DCBB0ED38}] => (Allow) C:\Program Files\Mozilla Firefox 3.6 Beta 3\firefox.exe FirewallRules: [{12CE01D1-D444-47E9-8508-01EF56AAF0CA}] => (Allow) C:\Program Files\AVG\Av\avgmfapx.exe FirewallRules: [{8FC16024-2500-4BE5-A550-8F8CC077F66A}] => (Allow) C:\Program Files\AVG\Av\avgmfapx.exe FirewallRules: [{2149F112-1EDC-487D-891B-B767B681A20A}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [TCP Query User{82C193A2-5E34-4A59-9D36-FB29C4943836}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{4456779A-2114-4E9B-B496-0A9C4E900379}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{615E6376-E9A2-48B2-8980-35AF3EA149E3}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{5F6D3CCC-B8AF-4EB9-A32B-20D07D5F79F8}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{4C65F25E-B015-4627-9AC5-228FA48CE6C5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{E9BE77D0-89A5-4A7F-BF93-300BA17A9D2B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{5EDBD9E3-6C53-4D39-9530-965DF6A23DAF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{7F75C36C-3027-4EBB-9E51-A7900C99166B}] => (Allow) C:\Program Files\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{0D1AC987-27C4-457B-98A3-E1C3B7CBCD83}] => (Allow) C:\Program Files\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe FirewallRules: [{CBC66E6C-66CD-43A8-B071-406C09391E51}] => (Allow) C:\Program Files\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [{27E836A2-28F0-4F0C-BA46-20833FBD5566}] => (Allow) C:\Program Files\Apowersoft\Video Converter Studio\Video Converter Studio.exe FirewallRules: [{81FCED38-D922-4DA8-85BB-B02E7A868FE3}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{2D23783E-6EFC-40A4-A160-483C4C9FF9F5}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{6E4CED7F-9095-4CF9-A214-8A25D8F03309}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe FirewallRules: [{FC637F6C-2193-4A49-B8D1-444DC781A5A1}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{CF09994A-39F3-4069-80E7-8DBE07A3E6E0}] => (Allow) C:\Program Files\FormatFactory\FFModules\Package\PTInstOnline.exe FirewallRules: [TCP Query User{230A7225-F2B2-411E-A2CF-865973CD6EDE}C:\program files\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files\wondershare\youtube-downloader\allmytube.exe FirewallRules: [UDP Query User{568ACF46-FE09-40D8-9203-1F103AD5234A}C:\program files\wondershare\youtube-downloader\allmytube.exe] => (Allow) C:\program files\wondershare\youtube-downloader\allmytube.exe FirewallRules: [{D79D7886-197D-4BE5-8D8F-0AC5AB9193FD}] => (Allow) LPort=8317 FirewallRules: [{37BD08F2-AF2C-40D5-B810-BF6E626ABD58}] => (Allow) LPort=8317 FirewallRules: [{E9E7BEF7-38E3-46D9-AC32-1D7FAFF473FD}] => (Allow) LPort=8317 FirewallRules: [{E3856E38-0AFD-4F2E-83B9-8851707DEF57}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{A8A7A637-D608-4525-BCF6-BEB54B0F0DF0}] => (Allow) C:\Program Files\AVG\Av\avgnsx.exe FirewallRules: [{A3EF0B81-1263-4D52-AAE9-65F106A3482F}] => (Allow) C:\Program Files\AVG\Av\avgnsx.exe FirewallRules: [{E7BE8F88-687D-43D6-864B-AC668C1C7786}] => (Allow) C:\Program Files\AVG\Av\avgdiagex.exe FirewallRules: [{CDEC035F-8564-4900-B981-DD257C5B2052}] => (Allow) C:\Program Files\AVG\Av\avgdiagex.exe FirewallRules: [{4A284A5E-E0F2-4C95-A30E-1D384C72CAAA}] => (Allow) C:\Program Files\AVG\Av\avgemcx.exe FirewallRules: [{3F3BD520-EBBD-4C7E-96D6-156DBDFC1423}] => (Allow) C:\Program Files\AVG\Av\avgemcx.exe FirewallRules: [{50329D83-4E0D-4132-BBA8-53C81A6559C6}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\ActivePresenter.exe FirewallRules: [{CADEEFDD-6807-4DED-A8F4-F5687B038378}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\ActivePresenter.exe FirewallRules: [{49EF4D1F-0AEC-4666-A11C-6840F285A97E}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlhtmlrenderer.exe FirewallRules: [{A00F7762-52AA-440D-BA80-C04321EB883A}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlhtmlrenderer.exe FirewallRules: [{41032C68-0570-4876-8D54-F42768CF9D15}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlactivator.exe FirewallRules: [{187E29F5-FB37-483D-81D8-C618C4799AEF}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlactivator.exe FirewallRules: [{176974DA-E772-47D1-B23F-443F10DB1F1C}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlupdater.exe FirewallRules: [{CF451376-4A25-444B-91D2-7FF580A81CB2}] => (Allow) C:\Program Files\ATOMI\ActivePresenter\rlupdater.exe ==================== Points de restauration ========================= 24-04-2016 13:46:54 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: NetGroup Packet Filter Driver Description: NetGroup Packet Filter Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: npf Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (04/27/2016 10:39:30 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Nom du module défaillant : desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Code d’exception : 0x40000015 Décalage d’erreur : 0x00013cf7 ID du processus défaillant : 0x9b0 Heure de début de l’application défaillante : 0xdesktop173.exe0 Chemin d’accès de l’application défaillante : desktop173.exe1 Chemin d’accès du module défaillant: desktop173.exe2 ID de rapport : desktop173.exe3 Error: (04/27/2016 10:34:43 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418220 Error: (04/27/2016 10:27:14 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Nom du module défaillant : desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Code d’exception : 0x40000015 Décalage d’erreur : 0x00013cf7 ID du processus défaillant : 0x988 Heure de début de l’application défaillante : 0xdesktop173.exe0 Chemin d’accès de l’application défaillante : desktop173.exe1 Chemin d’accès du module défaillant: desktop173.exe2 ID de rapport : desktop173.exe3 Error: (04/26/2016 09:55:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Nom du module défaillant : desktop173.exe, version : 1.0.0.10, horodatage : 0x56e96567 Code d’exception : 0x40000015 Décalage d’erreur : 0x00013cf7 ID du processus défaillant : 0x944 Heure de début de l’application défaillante : 0xdesktop173.exe0 Chemin d’accès de l’application défaillante : desktop173.exe1 Chemin d’accès du module défaillant: desktop173.exe2 ID de rapport : desktop173.exe3 Error: (04/26/2016 09:48:48 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {AB0155C0-0054-4417-8A0C-BCAFFF5EF80B} Error: (04/26/2016 09:48:48 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {AB0155C0-0054-4417-8A0C-BCAFFF5EF80B} Error: (04/26/2016 09:38:56 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {40D20661-3446-4AB3-A48F-7786CF167B8B} Error: (04/26/2016 09:38:56 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {40D20661-3446-4AB3-A48F-7786CF167B8B} Error: (04/26/2016 09:18:27 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {67FF95AB-3CEF-45BE-BEDA-997C37508016} Error: (04/26/2016 09:18:27 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: ) Description: Office Subscription licensing exception: Error Code: 0x803D0010; CorrelationId: {67FF95AB-3CEF-45BE-BEDA-997C37508016} Erreurs système: ============= Error: (04/27/2016 10:39:43 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service DeskTop DispalyName s’est terminé de façon inattendue pour la 1ème fois. Error: (04/27/2016 10:37:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service NetGroup Packet Filter Driver n’a pas pu démarrer en raison de l’erreur : %%2 Error: (04/27/2016 10:37:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Installer TrueKey n’a pas pu démarrer en raison de l’erreur : %%2 Error: (04/27/2016 10:35:24 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (04/27/2016 10:27:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service DeskTop DispalyName s’est terminé de façon inattendue pour la 1ème fois. Error: (04/27/2016 10:25:17 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service NetGroup Packet Filter Driver n’a pas pu démarrer en raison de l’erreur : %%2 Error: (04/27/2016 10:25:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Installer TrueKey n’a pas pu démarrer en raison de l’erreur : %%2 Error: (04/26/2016 10:38:03 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (04/26/2016 10:00:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Le service Windows Update est en attente de démarrage. Error: (04/26/2016 09:56:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service DeskTop DispalyName s’est terminé de façon inattendue pour la 1ème fois. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM)2 Duo CPU T5750 @ 2.00GHz Pourcentage de mémoire utilisée: 87% Mémoire physique - RAM - totale: 1790.11 MB Mémoire physique - RAM - disponible: 227.59 MB Mémoire virtuelle totale: 3580.22 MB Mémoire virtuelle disponible: 1633.82 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:58.5 GB) (Free:14.63 GB) NTFS Drive d: () (Fixed) (Total:44.56 GB) (Free:3.4 GB) NTFS Drive e: () (Fixed) (Total:45.9 GB) (Free:30.85 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: C3CE1185) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=58.5 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=44.6 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=45.9 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================