Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version:10-04-2016 01 Exécuté par admin (2016-04-12 14:02:45) Exécuté depuis C:\Users\admin\Desktop Windows 10 Home Version 1511 (X64) (2016-04-01 11:07:49) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= admin (S-1-5-21-416078408-3508283-517122801-1000 - Administrator - Enabled) => C:\Users\admin Administrateur (S-1-5-21-416078408-3508283-517122801-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-416078408-3508283-517122801-503 - Limited - Disabled) Invité (S-1-5-21-416078408-3508283-517122801-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.0.0.17 - Absolute Software) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.293 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.5 - Adobe Systems Incorporated) Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Reader X (10.1.16) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.16 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.3.633 - Adobe Systems, Inc.) Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) AuthenTec TrueAPI 64-bit (Version: 1.6.0.87 - AuthenTec, Inc.) Hidden AVS Video Editor 6 (HKLM-x32\...\AVS Video Editor_is1) (Version: 6.3.2.234 - Online Media Technologies Ltd.) Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: 5.100.82.140 - Broadcom Corporation) Broadcom Bluetooth Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.2300 - Broadcom Corporation) Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Contour Storyteller (HKLM-x32\...\Contour Storyteller 3.4.2) (Version: 3.5.2 - Contour) Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Creative Pack Volume 1 (HKLM-x32\...\{05181A78-3BA6-4B63-BCE8-888A4BCAACFA}) (Version: 3.0.0 - Avid Technology, Inc.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.3.5010 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Désinstaller l'imprimante EPSON SX510W Series (HKLM\...\EPSON SX510W Series) (Version: - SEIKO EPSON Corporation) DiskAid 6.7.6.0 (HKLM\...\DiskAid_is1) (Version: 6.7.6.0 - DigiDNA) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - ) ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{7DA9DD7F-F4D9-40FB-BD27-69B7731DEDD9}) (Version: 5.1.3 - Hewlett-Packard) Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden Farmscapes (x32 Version: 2.2.0.98 - WildTangent) Hidden Filmmaker's Toolkit for Studio (HKLM-x32\...\InstallShield_{4CF172C5-F121-41FA-B0B0-0D49840BF003}) (Version: 1.00.0000 - Red Giant) Filmmaker's Toolkit for Studio (x32 Version: 1.00.0000 - Red Giant) Hidden Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM\...\{F9E399CB-046F-45FD-A67F-CF399E2128E4}) (Version: 4.2.9.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{DF2D7B73-3E53-4241-B6B5-64D8344AEF6B}) (Version: 1.1.0.0 - Hewlett-Packard) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent) HP Launch Box (HKLM\...\{5A847522-375C-4D05-BD3D-88C450CC047F}) (Version: 1.1.5 - Hewlett-Packard Company) HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company) HP Power Manager (HKLM-x32\...\{7E799992-5DA0-4A1A-9443-B1836B063FEC}) (Version: 1.4.8 - Hewlett-Packard Company) HP Quick Launch (HKLM-x32\...\{E5823036-6F09-4D0A-B05C-E2BAA129288A}) (Version: 3.0.6 - Hewlett-Packard Company) HP Security Assistant (HKLM\...\{42719DC3-4982-47DD-B025-B21C4BDD504D}) (Version: 3.0.3 - Hewlett-Packard Company) HP Setup (HKLM-x32\...\{438363A8-F486-4C37-834C-4955773CB3D3}) (Version: 9.1.15430.4033 - Hewlett-Packard Company) HP SimplePass (HKLM-x32\...\{34C821CA-6B55-44A0-8A9B-2EF471D6019E}) (Version: 6.0.100.272 - Hewlett-Packard) HP Software Framework (HKLM-x32\...\{98D5A5FA-1AA3-4CBE-B26C-A737E20F8A6D}) (Version: 4.6.10.1 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.2.8.25 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{ED5CE45D-842B-4C18-A002-87E16EA39BB3}) (Version: 12.2.8.17 - Hewlett-Packard Company) iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6395.0 - IDT) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2653 - Intel Corporation) Intel(R) Rapid Start Technology (HKLM-x32\...\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 1.0.0.1021 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.3.214 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Jewel Quest II (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office « Démarrer en un clic » 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Français (HKLM-x32\...\{90140011-0066-040C-0000-0000000FF1CE}) (Version: 14.0.5139.5005 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Motion Graphics Toolkit for Studio (HKLM-x32\...\InstallShield_{178D71F4-DFB1-40EC-9D95-326FD8A3E7A0}) (Version: 1.00.0000 - Red Giant) Motion Graphics Toolkit for Studio (x32 Version: 1.00.0000 - Red Giant) Hidden Movavi Screen Capture Studio 4 (HKLM-x32\...\Movavi Screen Capture Studio 4) (Version: 4.3.3 - MOVAVI) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 45.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 45.0.1 (x86 fr)) (Version: 45.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0.1.5918 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.2 - Notepad++ Team) opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.27012 - Realtek Semiconductor Corp.) Shape Collage (HKLM-x32\...\ShapeCollage) (Version: - Shape Collage Inc.) Skype™ 7.17 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.17.105 - Skype Technologies S.A.) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.12 - Synaptics Incorporated) Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden VIP Access SDK (1.1.0.4) (HKLM-x32\...\VIP Access SDK) (Version: 1.1.0.4 - Symantec Inc.) Virtual Families (x32 Version: 2.2.0.98 - WildTangent) Hidden Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games App (HP Games) (x32 Version: 4.0.5.36 - WildTangent) Hidden Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 3.10.0) (Version: 3.10.0 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 3.7.0) (Version: 3.7.0 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 3.8.1) (Version: 3.8.1 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 3.9.0) (Version: 3.9.0 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 4.2.3) (Version: 4.2.3 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 4.4.2) (Version: 4.4.2 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 4.6.2) (Version: 4.6.2 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 4.6.3) (Version: 4.6.3 - Winamax) Winamax (HKU\S-1-5-21-416078408-3508283-517122801-1000\...\Winamax 4.7.0) (Version: 4.7.0 - Winamax) Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-416078408-3508283-517122801-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\admin\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0035F14D-C815-479B-B3BE-EC1FC882ADDF} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install Task: {0497F754-0F81-42DB-B842-CAB738C63CD9} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {057EE519-6A3B-4B87-B21F-17C339A3EED4} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {05FDD156-E9A6-46F6-A859-269BE36FBBCD} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {074AE107-2807-436F-AF53-37732F361449} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {077A1D51-9170-4527-9088-23B309A8D5C2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {0C9EEDBB-F722-4469-8223-175023604BE8} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {0D9BB20C-3B3C-494F-834E-400CC7ADC336} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {10656867-C84F-41B7-B6AE-5E7638D7FBEC} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {1202CA9E-6314-4912-9D29-A9BED6B7CE7A} - \MirageAgent -> Pas de fichier <==== ATTENTION Task: {16D8A1DE-0043-436E-993A-F359E9944C6E} - System32\Tasks\Absolute Reminder => C:\Program Files (x86)\Absolute Software\Absolute Reminder\AbsoluteReminder.exe [2011-07-12] (Absolute Software) Task: {1F45EA4F-491B-432D-A1D9-D9777FBB7248} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {2626C224-F8F6-476A-912A-A3B762DC314B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company) Task: {2DDED6AF-8A20-4266-8FC9-0431E9AFA881} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard) Task: {34AEE9DB-1E8D-4FB8-99B4-59A195820498} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording Task: {34E3CFF8-83D6-4D77-9F6F-B15989D1F166} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install Task: {350786E7-A54C-432A-953F-3EB0705E911D} - System32\Tasks\Adobe Acrobat Update Task Task: {36089F4A-D134-4517-B218-8E436B3C25D0} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot Task: {3749263C-9A22-4FDC-8B6F-43975C9455CC} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {418EAB16-9F87-4665-95A9-E73E66FF93E0} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {4336AC58-B3BA-4106-8562-66FEE688F521} - System32\Tasks\réveil => C:\Users\admin\Music\Reincarnated\08 Smoke The Weed.mp3 [2013-06-02] () Task: {47A00B90-829D-45BF-B2F6-EF135621092C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {4A41E886-A996-4D3A-A605-6F3B30FA1E51} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {50F715DE-C09B-4CCF-B202-E01FFFD92C8C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {5712BDCB-9F26-4E3F-A1DA-02FDFC45A84D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {5DABB4EE-DE62-4DE3-BA29-D5F070CEB344} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {61E97BCB-528E-4B3C-A43A-CDFC978E48E7} - System32\Tasks\Microsoft\Windows\AppID\PolicyConverter Task: {67A08D99-1C5A-4E14-8BD3-FC7EA02130CD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-12] (Google Inc.) Task: {6AE2F605-214C-4B7B-ABC4-7D0D72C3D30E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance Task: {7505C9F8-4048-45D6-B5A8-C0149C8C1057} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {772DCFD2-BCBA-436E-A584-345DBC7CDB84} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {8370CC2C-9B66-4485-B021-2B467C6162DE} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {85E56F00-EA9B-4A0C-A10C-0325CCCC9043} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe Task: {86DBC22B-4F20-4FAF-9434-D15360F74B21} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {882B63B0-AB1A-471A-BFCF-745CDE4D5210} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-03-11] (Hewlett-Packard) Task: {8E413BDC-E25C-489D-A392-F2BBC9EEFB22} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {8E5376DB-4DC4-4996-ADB6-72C2738E3948} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {9563EFA5-0612-4BFE-B933-E29497F2157A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-03-07] (Hewlett-Packard) Task: {9A500DA7-3BE1-478D-A8FB-309AFB72A317} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {9BBEB5AA-C17F-4C8C-832B-1332996F32D3} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {9C6E6E4B-41E8-4AA5-926A-2A42C4D9B2C2} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2012-11-05] (Hewlett-Packard Development Company, L.P.) Task: {9E044950-1518-4473-B53E-86C5CD0A4306} - System32\Tasks\HPCeeScheduleForadmin => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {A3A9C894-E698-4C7B-8DB8-1CE6A5394711} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-12] (Google Inc.) Task: {A7CD8E99-E4DF-4869-8949-782772E153F1} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {A87F3920-E2A1-47BF-8657-55ADF7809BF1} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {A9A93A48-5A3C-48EC-AE0D-2A8096EA32A8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-03-02] (Hewlett-Packard) Task: {B0AB6555-0A62-4667-B477-F84CEA0D117A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {B27E4CEC-98CC-4C31-86A5-313F6A870FFD} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {BD739C64-7644-4E56-A2A4-891D0956B7B6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-09] () Task: {C3641F63-8980-49A2-8E97-20ED0B77CCF8} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {C64CB690-9D1B-4616-8153-4A1FF8B448D2} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {D52C40E7-7678-4DA1-9D70-925A43DE280C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {DDA41E8A-63CE-410D-8E78-2338E0FDB2ED} - System32\Tasks\{FF33DB62-87FD-41E9-BE11-2703AD34E0C2} => C:\Program Files (x86)\Movie Maker 2.6\MOVIEMK.exe [2007-03-30] (Microsoft Corporation) Task: {DFEC17D2-6C31-494E-A7A4-A097E8605147} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-03-07] (Hewlett-Packard) Task: {F130FBD0-C7A3-40DC-85AB-A79CDDC562C8} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver Task: {F2341244-5F02-41C5-BA40-4FBADCD67206} - System32\Tasks\Microsoft\Windows\Autochk\Proxy Task: {F3CB18ED-2D19-428A-8046-02034C0F379D} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {F4BF89A9-8488-4988-B163-F7F0341D521B} - System32\Tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck Task: {F54BB984-EF62-48C9-801A-0503A456A61E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-02-18] (Hewlett-Packard Company) Task: {F8ACAC39-1957-4CF5-9E4A-7E767DDBC062} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {FBD86AB9-334B-4FDE-AF2C-6BB40EF6BE8A} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION Task: {FC52F032-45F0-4B04-99DA-5A5F43CB0392} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\ehome\ehPrivJob.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForadmin.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-04-01 13:24 - 2016-04-01 13:24 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-04-01 13:24 - 2016-04-01 13:24 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2013-02-07 09:19 - 2013-02-07 09:19 - 04073768 _____ () C:\Program Files (x86)\HP SimplePass\IEWebSiteLogon.exe 2015-06-01 22:00 - 2015-06-01 22:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-11-27 17:37 - 2013-03-25 21:48 - 00233112 _____ () C:\Program Files (x86)\ContourStoryteller\ContourAutoplay.exe 2016-04-01 13:59 - 2016-04-01 13:59 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 00218456 _____ () c:\windows\system32\WerEtw.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-07-07 07:53 - 2012-02-08 19:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2013-02-07 09:19 - 2013-02-07 09:19 - 00019240 _____ () C:\Program Files (x86)\HP SimplePass\DownloadManager.dll 2016-04-01 13:59 - 2016-04-01 13:59 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-01 13:59 - 2016-04-01 13:59 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service" ==================== EXE Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-416078408-3508283-517122801-1000\...\debrideurstreaming.com -> hxxp://www.debrideurstreaming.com ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-416078408-3508283-517122801-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\admin\Desktop\Iph\IMG_1789.JPG DNS Servers: Le média n'est pas connecté à internet. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) MpsSvc => Le service Pare-feu n'est pas actif. bfe => Le service Pare-feu n'est pas actif. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\...\StartupApproved\Run32: => "HP Quick Launch" HKLM\...\StartupApproved\Run32: => "HPOSD" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Easybits Recovery" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKU\S-1-5-21-416078408-3508283-517122801-1000\...\StartupApproved\Run: => "EPSON SX510W Series" HKU\S-1-5-21-416078408-3508283-517122801-1000\...\StartupApproved\Run: => "Pando Media Booster" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{6CBC7343-BA07-4280-ADAB-761011903DF0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F8B45B61-B86A-4551-863E-BCC7C65945D0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{68906CE5-294E-47F6-9B96-7618ADBA31DA}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [UDP Query User{97A92DF0-CB54-44FD-9103-2852F15684B7}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [TCP Query User{F0B6D456-2D8A-405A-A57E-09D20936DED7}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [UDP Query User{DBDE201E-82E2-4CBC-8A30-AB4F21CA2DB8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{E0235F7C-8F6F-4B00-9768-02A5FF9E43FC}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{9491D795-CBCE-441D-B9AF-2457CCF46202}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{FB2AE5E7-1845-4D0A-BFBA-FB5CE51F8E7C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F6D00309-D469-4147-AFD1-8AE41F30C84E}] => (Allow) LPort=1900 FirewallRules: [{F3D4FD74-57C4-409E-B382-A82AFC35CDEC}] => (Allow) LPort=2869 FirewallRules: [{3B839FB3-18D7-4D1B-9D39-68664A629A20}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [UDP Query User{4960F49B-C260-4421-A2F3-EEFE4EB5E6A0}C:\program files (x86)\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre7\bin\jp2launcher.exe FirewallRules: [TCP Query User{E6135E75-5000-4E71-83B1-DC6C6677048E}C:\program files (x86)\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre7\bin\jp2launcher.exe FirewallRules: [UDP Query User{9201B10E-B791-4E80-A304-318F44DE3030}C:\program files (x86)\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre7\bin\jp2launcher.exe FirewallRules: [TCP Query User{DC6DFBCC-6566-4B3C-B93F-2A19FFBB094A}C:\program files (x86)\java\jre7\bin\jp2launcher.exe] => (Block) C:\program files (x86)\java\jre7\bin\jp2launcher.exe FirewallRules: [UDP Query User{BB59B11C-C791-48AF-A9F3-8A40E4EB16B5}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [TCP Query User{A8DFADA1-64E3-49FB-8968-F50F641F6BA6}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [{44E5F7C5-4DA2-4296-B807-820A8DEA06D6}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [UDP Query User{29B2E04E-9EF5-483D-9BC1-8A3648A3BFBC}C:\program files (x86)\logitech touch mouse server\itouch-server-win.exe] => (Block) C:\program files (x86)\logitech touch mouse server\itouch-server-win.exe FirewallRules: [TCP Query User{23BF3026-32F7-4158-858F-7EDE74786127}C:\program files (x86)\logitech touch mouse server\itouch-server-win.exe] => (Block) C:\program files (x86)\logitech touch mouse server\itouch-server-win.exe FirewallRules: [{D2843EE9-34AF-4A7A-93AA-D55E47876150}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [{F9895CBA-2599-46BD-8BC9-4BB3C6EAC47F}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [{EB2A657B-64C3-4C4E-A184-41C76D450729}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{6334134E-801A-45EB-A58F-89D886C4D5DD}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{4F0A85C8-CE2E-4121-84D7-7C73430DC3FB}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [{99217CEC-B02D-4067-BC1A-F2C69599B288}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [{5ADDB5AD-B4B8-4A46-88FF-C7C34057A641}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{054B70A4-057D-46E9-B134-2BA79A4922F1}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{44059690-F194-4798-BAE8-E4CCB3F0A6A9}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{BC64FB12-765F-4C0C-AED8-A9FAAD08EB03}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{9EA339A1-00BA-4E06-8472-331004EA9D35}] => (Allow) C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe FirewallRules: [{51260E97-F0C5-48C7-963F-F63399A21B3C}] => (Allow) C:\Program Files (x86)\Logitech Touch Mouse Server\iTouch-Server-Win.exe FirewallRules: [{2EB33594-E9E4-4ACB-8E48-7F96FDE33AD7}] => (Allow) C:\Program Files (x86)\Logitech Touch Mouse Server\iTouch-Server-Win.exe FirewallRules: [{5B4E1D52-9047-49EF-B642-2AC6F19E90C1}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [{F847C394-C179-414F-A212-6D1E81B8B31D}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\UMI.exe FirewallRules: [{E3E719F8-818D-41D0-8DCD-56E46B3575C2}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{85C89635-CBF9-4851-8596-553B184A254B}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\NGStudio.exe FirewallRules: [{59587DFE-C573-46E4-94EF-64472612F3D0}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [{946BB832-902E-4336-9241-D98D6DB2EBE7}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 16\programs\RM.exe FirewallRules: [UDP Query User{736F65FA-489A-414E-94CC-D2B47DFE1315}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [TCP Query User{87955A12-F551-4792-8F43-38F2AA79CCC6}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [{C0AF3DFB-0AA0-4996-AA70-8B5A21B957F9}] => (Allow) C:\Users\admin\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{7329E583-AB5A-4A19-908A-E13C5A01E0F8}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{AAF1B769-2C55-432D-AD5C-770BA23C2A22}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{C79306AE-1B09-4AF2-8484-C77FE795141D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EAB34343-4337-41D1-AFE8-995F3CC48DA4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{B719863E-F4DE-4A7A-91BA-1D09B824E131}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe FirewallRules: [{7C8534B6-A1CC-4C8E-ADC0-532C93E1CD48}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe FirewallRules: [{82470A08-B7B2-4B64-9E96-44A63F86E1E5}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe ==================== Points de restauration ========================= Vérifiez le service "winmgmt" ou réparez WMI. ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: HP Wireless Button Driver Description: HP Wireless Button Driver Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da} Manufacturer: HP Service: WirelessButtonDriver64 Problem: : Windows cannot load the device driver for this hardware. The driver may be corrupted or missing. (Code 39) Resolution: Reasons for this error include a driver that is not present; a binary file that is corrupt; a file I/O problem, or a driver that references an entry point in another binary file that could not be loaded. Uninstall the driver, and then click "Scan for hardware changes" to reinstall or upgrade the driver. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (04/12/2016 02:00:50 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:49 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:48 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:47 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:46 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:45 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:44 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:43 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:42 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Error: (04/12/2016 02:00:41 PM) (Source: ESENT) (EventID: 412) (User: ) Description: svchost (2292) TILEREPOSITORYS-1-5-21-416078408-3508283-517122801-1000: Impossible de lire l’en-tête du fichier journal C:\Users\admin\AppData\Local\TileDataLayer\Database\EDB.log. Erreur -501. Erreurs système: ============= Error: (04/12/2016 02:03:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Client DHCP s’est arrêté avec l’erreur : %%5 Error: (04/12/2016 02:03:18 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Service de découverte automatique de Proxy Web pour les services HTTP Windows dépend du service Client DHCP qui n’a pas pu démarrer en raison de l’erreur : %%0 Error: (04/12/2016 02:03:18 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 1004) (User: AUTORITE NT) Description: Une erreur s’est produite lors de l’arrêt du service client DHCPv4. Le code d’erreur est 5. La valeur de l’indicateur d’arrêt est 0 Error: (04/12/2016 02:03:18 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 17270) (User: AUTORITE NT) Description: Une erreur s’est produite lors de l’initialisation de DHCPv4. Le code d’erreur est 5 Error: (04/12/2016 02:03:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Client DHCP s’est arrêté avec l’erreur : %%5 Error: (04/12/2016 02:03:18 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Service de découverte automatique de Proxy Web pour les services HTTP Windows dépend du service Client DHCP qui n’a pas pu démarrer en raison de l’erreur : %%0 Error: (04/12/2016 02:03:18 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 1004) (User: AUTORITE NT) Description: Une erreur s’est produite lors de l’arrêt du service client DHCPv4. Le code d’erreur est 5. La valeur de l’indicateur d’arrêt est 0 Error: (04/12/2016 02:03:18 PM) (Source: Microsoft-Windows-Dhcp-Client) (EventID: 17270) (User: AUTORITE NT) Description: Une erreur s’est produite lors de l’initialisation de DHCPv4. Le code d’erreur est 5 Error: (04/12/2016 02:03:18 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Client DHCP s’est arrêté avec l’erreur : %%5 Error: (04/12/2016 02:03:18 PM) (Source: DCOM) (EventID: 10005) (User: AUTORITE NT) Description: 1068netprofmNon disponible{A47979D2-C419-11D9-A5B4-001185AD2B89} CodeIntegrity: =================================== Date: 2016-04-10 02:25:44.987 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.912 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.803 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.725 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.596 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.521 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.381 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.303 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.209 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-04-10 02:25:44.131 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-2367M CPU @ 1.40GHz Pourcentage de mémoire utilisée: 32% Mémoire physique - RAM - totale: 3998.31 MB Mémoire physique - RAM - disponible: 2690.54 MB Mémoire virtuelle totale: 8094.31 MB Mémoire virtuelle disponible: 6863.86 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:445.69 GB) (Free:167.81 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (Recovery) (Fixed) (Total:19.77 GB) (Free:2.12 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive e: (CADWORK4096) (Removable) (Total:3.6 GB) (Free:3.59 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 1028E9FA) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=445.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=19.8 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=108 MB) - (Type=0C) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 4 GB) (Disk ID: BB9D4B07) Partition 1: (Not Active) - (Size=4 GB) - (Type=84) ======================================================== Disk: 2 (Size: 3.7 GB) (Disk ID: 0C2A3C5B) Partition 1: (Active) - (Size=3.6 GB) - (Type=0B) ==================== Fin de Addition.txt ============================