Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 27-07-2016 Exécuté par nonox88 (2016-07-30 19:53:58) Exécuté depuis C:\Users\nonox88\Downloads Windows 10 Pro Version 1511 (X64) (2016-07-25 15:47:34) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3479429645-407056864-3191445915-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3479429645-407056864-3191445915-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3479429645-407056864-3191445915-1002 - Limited - Enabled) Invité (S-1-5-21-3479429645-407056864-3191445915-501 - Limited - Disabled) nonox88 (S-1-5-21-3479429645-407056864-3191445915-1000 - Administrator - Enabled) => C:\Users\nonox88 ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 60 Seconds! (HKLM-x32\...\Steam App 368360) (Version: - Robot Gentleman) 8GadgetPack (HKLM-x32\...\{F60DAD2D-8625-4467-AE01-EA0382187621}) (Version: 19.0.0 - Helmut Buhler) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.017.20050 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.4.194 - Adobe Systems, Inc.) Aftermath (HKLM\...\Steam App 349700) (Version: - Free Reign Entertainment) AMD Catalyst Install Manager (HKLM\...\{FD8FD2BD-A82D-C528-EDA0-A6635F47C19C}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) AMD Settings (HKLM\...\WUCCCApp) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) ASUS GPU Tweak (HKLM-x32\...\InstallShield_{532F6E8A-AF97-41C3-915F-39F718EC07D1}) (Version: 2.8.3.0 - ASUSTek COMPUTER INC.) ASUS GPU Tweak (x32 Version: 2.8.3.0 - ASUSTek COMPUTER INC.) Hidden Avast Internet Security (HKLM-x32\...\Avast) (Version: 12.1.2272 - AVAST Software) AVS Video Editor 7.1 (HKLM-x32\...\AVS Video Editor_is1) (Version: 7.1.2.262 - Online Media Technologies Ltd.) Catalyst Control Center Next Localization BR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Commandos - Le Sens du Devoir (HKLM-x32\...\Commandos - Le Sens du Devoir) (Version: - DotEmu) Curse (HKLM-x32\...\{F36ED29E-33E1-48AB-95DA-2498AD41A9A0}) (Version: 6.0.0.0 - Curse) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.1.0.0074 - Disc Soft Ltd) DiscAuthor (x32 Version: 9.3.00 - Sony Corporation) Hidden DVD Shrink 3.2 (HKLM-x32\...\DVD Shrink_is1) (Version: - DVD Shrink) DVD Slim Free 2.7.0.9 (HKLM-x32\...\DVD Slim Free_is1) (Version: 2.7.0.9 - Marcello Pietrelli & Gianni Baini) Easy Tune 6 B13.1111.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) Easy Tune 6 B13.1111.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden Freemake Video Converter version 4.1.9 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.9 - Ellora Assets Corporation) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 51.0.2704.103 - Google Inc.) Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden HP Photo Creations (HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\HP Photo Creations) (Version: 1.0.0.18702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HydraVision (x32 Version: 4.2.252.0 - Advanced Micro Devices, Inc.) Hidden ImgBurn 2.3.2.0 Fr (HKLM-x32\...\{75ADEFA2-D4FF-4B37-9E93-4306E6AC176B}_is1) (Version: 2.3.2.0 - ) IncrediMail (x32 Version: 6.6.0.5288 - IncrediMail) Hidden IncrediMail 2.5 (HKLM-x32\...\IncrediMail) (Version: 6.6.0.5288 - IncrediMail Ltd.) Infestation: Survivor Stories (HKLM-x32\...\Steam App 226700) (Version: - OP Productions LLC) InfestationWorld (HKLM-x32\...\{07651D6B-514A-4CC1-B897-7C17709BBDB6}_is1) (Version: 1.0.1 - Electronics Extreme Co., Ltd.) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JunkFilterPlus (x32 Version: 6.0.0.1167 - IncrediMail) Hidden KMSpico v9.2.3 (HKLM\...\KMSpico_is1) (Version: 9.2.3 - ) League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games) League of Legends (x32 Version: 3.0.1 - Riot Games) Hidden Les Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.69.43.024017 - Electronic Arts Inc.) Les Sims™ 3 Ambitions (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) Les Sims™ 3 Saisons (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) Les Sims™ 3 Destination Aventure (HKLM-x32\...\{BA26FFA5-6D47-47DB-BE56-34C357B5F8CC}) (Version: 2.0.86 - Electronic Arts) Les Sims™ 3 Animaux & Cie (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Les Sims™ 3 Île de Rêve (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts) Les Sims™ 3 Super-pouvoirs (HKLM-x32\...\{B37DAFA5-717D-41F8-BDFB-3A4B68C0B3A1}) (Version: 15.0.135 - Electronic Arts) Les Sims™ 3 University (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) Life Is Strange (HKLM-x32\...\Life Is Strange_is1) (Version: - SQUARE ENIX) Life Is Strange Episode 4 (HKLM-x32\...\Life Is Strange Episode 4_is1) (Version: - ) Logiciel de base du périphérique HP ENVY 5530 series (HKLM\...\{CEF6164C-1BFD-4215-A750-D78916BC6D1F}) (Version: 32.3.198.49673 - Hewlett-Packard Co.) LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.493 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.493 - LogMeIn, Inc.) Hidden MergeModule_x64 (Version: 9.3.00 - Sony Corporation) Hidden MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden Microsoft Money (HKLM-x32\...\Money2005b) (Version: 14 - Microsoft) Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mozilla Firefox 47.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 47.0 (x86 fr)) (Version: 47.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 47.0.0.5999 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Nero 7 Premium (HKLM-x32\...\{22FB6750-ADDF-4726-B67F-6901E1991036}) (Version: 7.03.0993 - Nero AG) ON_OFF Charge 2 B13.1028.1 (HKLM-x32\...\InstallShield_{6B4ED6F7-BB88-4945-B0C6-01410E1BAC3A}) (Version: 1.00.0000 - GIGABYTE) ON_OFF Charge 2 B13.1028.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden Origin (HKLM-x32\...\Origin) (Version: 9.0.14.2148 - Electronic Arts, Inc.) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Photo Notifier and Animation Creator (HKLM-x32\...\Photo Notifier and Animation Creator) (Version: 1.0.0.1009 - IncrediMail Ltd.) PhotoFiltre 7 (HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\PhotoFiltre 7) (Version: - ) Platform (x32 Version: 1.42 - VIA Technologies, Inc.) Hidden PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 5.1.00.12260 - Sony Corporation) Plex Media Server (HKLM-x32\...\{e948767e-a48f-4fd1-9eb1-1d0f0708d8e3}) (Version: 1.0.0.2261 - Plex, Inc.) Plex Media Server (x32 Version: 1.0.213 - Plex, Inc.) Hidden PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden PMB_ServiceUploader (x32 Version: 10.1.00 - Sony Corporation) Hidden puush (HKLM-x32\...\{C3592426-531E-4110-911D-BFECE2CE284B}) (Version: 1.0.0.0 - Dean Herbert) QuickSearch (HKLM-x32\...\QuickSearch) (Version: 3.0.2.3 - Winthrop Donatello) <==== ATTENTION Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.19.24735 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.49.927.2011 - Realtek) Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.6650 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7106 - Realtek Semiconductor Corp.) SafeZone Stable 1.48.2066.114 (x32 Version: 1.48.2066.114 - Avast Software) Hidden scrabbleproB 1.1.3 (HKLM-x32\...\scrabbleproB_is1) (Version: - scrabblepro) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation) Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\Spotify) (Version: 1.0.25.127.g58007b4c - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stopping Plex (x32 Version: 1.0.213 - Plex, Inc.) Hidden swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamSpeak 3 Client (HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Witcher 3 - Wild Hunt (HKLM-x32\...\The Witcher 3 - Wild Hunt_is1) (Version: - ) Tomb Raider: Legend 1.2 (HKLM-x32\...\Tomb Raider: Legend) (Version: - ) Tomb Raider: Underworld 1.1 (HKLM-x32\...\Tomb Raider: Underworld) (Version: - ) TomTom HOME (HKLM-x32\...\{0E09BE17-EDEA-42CA-8974-42A587F51510}) (Version: 2.9.8 - Nom de votre société) TomTom HOME (HKLM-x32\...\{5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Trials Evolution Gold Edition (HKLM-x32\...\InstallShield_{07D857B8-C956-401D-BC8F-EDA8459AF037}) (Version: 1.0.0.5 - Ubisoft) Trials Evolution Gold Edition (x32 Version: 1.0.0.5 - Ubisoft) Hidden Trials Fusion (HKLM-x32\...\Uplay Install 297) (Version: - Ubisoft) TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - ) Uplay (HKLM-x32\...\Uplay) (Version: 7.0 - Ubisoft) VIA Gestionnaire de périphériques de plate-forme (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.42 - VIA Technologies, Inc.) VSO ConvertXToDVD (HKLM-x32\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.2.0.39 - VSO Software) WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - ) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3479429645-407056864-3191445915-1000_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\nonox88\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) CustomCLSID: HKU\S-1-5-21-3479429645-407056864-3191445915-1000_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\nonox88\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) CustomCLSID: HKU\S-1-5-21-3479429645-407056864-3191445915-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\nonox88\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01E0C193-FA12-4832-A9C3-A4AE41B7EEA0} - System32\Tasks\SafeZone scheduled Autoupdate 1458749949 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-06-17] (Avast Software) Task: {0236FE5A-01CE-46D5-B027-76BAC647E815} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {02B35A7E-66D0-4505-8D47-8B753BDB111B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {0377E2EC-53D4-41EF-B74F-6946A62836F6} - System32\Tasks\ParetoLogic Update Version3 => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-12-08] () Task: {03D13607-2FC6-4912-83E1-80BD63A6E2F6} - System32\Tasks\{37603838-3883-4CE2-855C-D4AF9DFE3F40} => C:\Program Files (x86)\Tomb Raider - Legend\trl.exe [2016-06-28] (Eidos Inc.) Task: {117FC5D7-D68D-4EF0-B7A2-A9260BE80411} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {151F8070-6426-4B80-B9EF-A938E767AE48} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {154F4E8D-7AB5-4D9C-8253-D31D4E288B48} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {16A3EE9E-E842-4363-B99C-2847D9BA5C05} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {17BA9A97-D6A9-4F87-89C5-3AC5A77F632C} - System32\Tasks\Wscanner Secure => C:\Program Files (x86)\Wscanner\secure\secureupdater.exe Task: {219D74B0-FFCE-4B5E-8B6E-86355AB43D13} - System32\Tasks\ParetoLogic Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns Task: {23FA968C-43F3-420A-B378-5E6D7D6E2F2A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {24703AF3-CDBA-4603-9B26-FC62BBEB96B8} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {2654AC6F-5E32-4CED-A188-CBC4B3842612} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-16] (Adobe Systems Incorporated) Task: {2E926499-5CF4-460D-999F-095D4BCD2C69} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {312023D7-70F0-4CF4-B750-9D7EB3ED624F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {333458E9-6D61-4FCB-BA27-3DC21203028A} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {34124045-E66B-43AC-911D-F8CB86D166D9} - System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 => C:\Program Files\Bitdefender\Bitdefender 2015\bdproductdata.exe Task: {362DAAB3-9212-4BE2-AD76-F975FE97B0C6} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {373D06D4-602F-40FC-9353-A40FE2EA2023} - System32\Tasks\Microsoft Office 15 Sync Maintenance for nonox88-pc-nonox88 nonox88-pc => C:\Program Files\Microsoft Office\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation) Task: {3FCE9023-BBB7-4791-9A90-D20EBF6A889B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {3FE3F4C1-8C7F-4A1C-99EF-30C2C5637CCD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {4069A04F-87B9-4BD4-B23C-1A3DBD8E7CA9} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {4113BE3E-8E97-41DB-A705-9E44E1BE08A1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {43349B77-A5D2-460C-BEBC-29A122F2B7EC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {440B70A0-969E-4E99-9460-EE5F550EE6AD} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {515C6CDE-F996-46F2-AA87-3415A90D2034} - System32\Tasks\Wscanner Updater => C:\Program Files (x86)\Wscanner\WscannerUpdater.exe Task: {52A11630-D693-4797-943E-F36EA5DD4537} - \Microsoft\Windows\Setup\EOONotify -> Pas de fichier <==== ATTENTION Task: {53192B6A-9534-4A70-ACA7-40C6009BD09B} - \Microsoft\Windows\Setup\gwx\rundetector -> Pas de fichier <==== ATTENTION Task: {53776E80-22E0-439C-9F29-B2558FCB8ABF} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {5469EF91-E9C6-4417-A417-2E325E194603} - System32\Tasks\{2C7BF907-8092-4A44-9D09-711F57946E45} => Firefox.exe hxxp://ui.skype.com/ui/0/7.8.0.102/fr/abandoninstall?page=tsProgressBar Task: {56B40186-040D-4AA8-A641-9E2A18286DEE} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {5C1B6795-ABA8-4EDF-8DF9-2060EB6C35BE} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {5F4F362C-1562-4844-B691-2D2B9C453CB3} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {622763B2-5069-4424-8D0D-4F59499FDFC4} - System32\Tasks\updateTask => c:\task.vbs Task: {67101621-0620-4E51-A700-A3F403AAC671} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-12-08] () Task: {68791234-52E8-4893-B6CC-38BA5F1DD0CD} - System32\Tasks\Run_dregol => C:\Users\nonox88\AppData\Roaming\RUN_DR~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {69595756-66AE-412D-AD35-50B9CEC2E122} - System32\Tasks\{253372E2-9D0B-4B14-B286-8DEB04A40057} => C:\Program Files (x86)\Tomb Raider - Legend\trl.exe [2016-06-28] (Eidos Inc.) Task: {714B1D47-A7FC-48BF-AFC8-0BE894702553} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {758B252A-C0B3-4897-BCFD-47E0BC8C2341} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [2014-03-02] () Task: {7AC32FEF-984D-4498-BD80-28772C4AE9B0} - System32\Tasks\{D35789CB-FA5A-4D7F-B111-420B899746F2} => Firefox.exe hxxp://ui.skype.com/ui/0/7.23.0.105/fr/go/help.faq.installer?LastError=1603 Task: {7F701DB4-275E-43B0-8B82-041F03A856E5} - System32\Tasks\HP AR Program Upload - bd3d7046f18342b0931adf0c8051453347a78ffd1d01415a94cef8bad4bb1a9b => C:\Program Files\HP\HP ENVY 5530 series\bin\HPRewards.exe [2014-07-21] (TODO: ) Task: {800F19DE-55D2-4050-839B-B8B602319FD9} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {81051C2B-1736-492E-A57B-C011865F1AEE} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {899DD7D1-5E5C-4530-AFE8-F3F644D70739} - System32\Tasks\HP AR Program Upload - 1d3999db19ec44b1b60abf7dfb1e8ea2518dcbcf1ff6495694020928ff382824 => C:\Program Files\HP\HP ENVY 5530 series\bin\HPRewards.exe [2014-07-21] (TODO: ) Task: {9495932F-6A1E-4E75-B081-AE56DE318C8B} - System32\Tasks\Selection Tools Update => C:\Users\nonox88\AppData\Roaming\WTools\Selection Tools\Selection Tools Update.exe <==== ATTENTION Task: {9557BB8D-F588-4A9A-9C80-42D305357D1B} - System32\Tasks\DNS Monitoring => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~2\DNSUNL~1\DNSMON~1.DLL" <==== ATTENTION Task: {96700CE7-5BA8-4F83-9D9C-3B7A5C77D7EA} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {9E6C29C6-D439-495E-BA76-D2E9983B2435} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {A23BC5BF-6E05-4AC0-891E-20B19645CDE5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {A278FB19-2A8E-482D-93D1-BE567D35BC8F} - System32\Tasks\DNSCERES => dnsceres.exe <==== ATTENTION Task: {A9043DD3-CF33-4AAE-98C8-8C0FB8E881DF} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-06-30] (AVAST Software) Task: {ABFD040B-4742-4635-9E7A-061261E4B100} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {B0F81E2E-EB5A-4A1B-BCD7-AD9AAB498E7B} - System32\Tasks\runTask => C:\Users\nonox88\AppData\Local\Temp/Updater.exe Task: {B16EA8B7-BF5C-4AF1-BD87-B3AAE53842D1} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {BB0E73C5-DAE5-4B58-8D76-DED035368906} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {BB2F061F-3B29-447D-B748-5547EAAC200C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {C5738488-0D70-4F30-8095-E1ACD233B6AE} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {C6AAF402-C957-42B7-9B38-6FD7EEF4E66C} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {C854201C-83E4-403D-A156-8DB1F6A9FC72} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {CAFBA6B8-7438-4D4C-815F-66ED258646F9} - System32\Tasks\Dregol tone => C:\ProgramData\{4A74A2B7-1AF6-7331-AB70-03B37BF2D03D}\1.17.0.1\f <==== ATTENTION Task: {D30F93B5-0FB5-4753-BC0A-6E6CE51FBCE3} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe Task: {DB887666-71C2-4E48-B4A3-805BC1412231} - System32\Tasks\{780E7A47-7F78-790C-0C11-0E0F7E7D1179} => powershell.exe -nologo -executionpolicy bypass -noninteractive -windowstyle hidden -EncodedCommand IAAgACQARQByAHIAbwByAEEAYwB0AGkAbwBuAFAAcgBlAGYAZQByAGUAbgBjAGUAPQAiAHMAdABvAHAAIgA7ACQAcwBjAD0AIgBTAGkAbABlAG4AdABsAHkAQwBvAG4AdABpAG4AdQBlACIAOwAkAFcAYQByAG4AaQBuAGcAUAByAGUAZgBlAHIAZQBuAGMAZQA9ACQAcwBjADsAJABQAHIA (l'élément de données a 9304 caractères en plus). <==== ATTENTION Task: {DEB0AE5D-F6A8-49C2-9068-A7B41582E80B} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {E51B94E4-5216-43F5-BEC6-67B30697E402} - \WindApp Update -> Pas de fichier <==== ATTENTION Task: {E58E2D12-ECED-4063-86BA-7F53376028A2} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {E5F2098D-DD91-48D3-9817-0CFC4C1C125B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {E9BEB024-0F3C-4AA8-87F0-AA76EA19715E} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Pas de fichier <==== ATTENTION Task: {EB325DD6-CB05-4D3F-B2CD-9AAB5A74EA95} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {F0DFE315-5DB5-4A4F-8ABD-756142441668} - System32\Tasks\{A72915DC-3F34-4236-9341-1361B7881B8C} => C:\Program Files (x86)\Tomb Raider - Legend\trl.exe [2016-06-28] (Eidos Inc.) Task: {F1E80AD4-F04B-4ABA-9DFD-10DE3E183BC6} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {F29D2506-E3CE-42E5-A595-2B6CD2BF2919} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION Task: {F3D866AA-73EF-4A41-A5A7-36447C187834} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {FED4D9C0-1B3E-457B-A1FD-D91E4FEA1E94} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\ParetoLogic Registration3.job => rundll32.exe C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll Task: C:\WINDOWS\Tasks\ParetoLogic Update Version3 Startup Task.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe Task: C:\WINDOWS\Tasks\ParetoLogic Update Version3.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\nonox88\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet-Explorer Browser.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dmysearch.com/?prd=set_epc&s=G36zftptn095001,37787397-553f-430c-af0c-3685dcd3e58c, ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://www%2dmysearch.com/?prd=set_epc&s=G36zftptn095001,37787397-553f-430c-af0c-3685dcd3e58c, ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-mysearch.com/?prd=set_epc&s=G36zftptn095001,37787397-553f-430c-af0c-3685dcd3e58c, ==================== Modules chargés (Avec liste blanche) ============== 2012-01-16 20:24 - 2012-01-16 20:24 - 00055296 _____ () C:\Windows\SysWOW64\ASGT.exe 2015-02-05 01:24 - 2015-02-05 01:25 - 00187072 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2015-11-29 23:07 - 2015-11-29 23:07 - 00138752 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-07-25 17:18 - 2016-07-25 17:18 - 02656408 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-07-25 17:18 - 2016-07-25 17:18 - 02656408 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-07-25 17:52 - 2016-07-25 17:52 - 00959168 _____ () C:\Users\nonox88\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll 2016-04-27 07:16 - 2016-04-27 07:16 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2016-07-25 21:56 - 2016-07-25 22:27 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-07-26 11:08 - 2016-07-26 12:00 - 00017920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-07-26 11:08 - 2016-07-26 12:00 - 13105152 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-07-26 11:08 - 2016-07-26 12:00 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2016-07-26 09:42 - 2016-07-26 09:42 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.526.11220.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2016-07-26 11:08 - 2016-07-26 12:00 - 10256384 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11602.1.26.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-07-25 17:19 - 2016-07-25 17:19 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-06-30 17:22 - 2016-06-30 17:22 - 00146232 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-06-30 17:22 - 2016-06-30 17:22 - 00479288 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-07-30 11:38 - 2016-07-30 11:38 - 03002880 _____ () C:\Program Files\AVAST Software\Avast\defs\16073000\algo.dll 2016-06-23 19:03 - 2016-06-23 19:03 - 00792904 _____ () C:\Program Files (x86)\Plex\Plex Media Server\tag.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 01759560 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_imgproc2411.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 01989960 _____ () C:\Program Files (x86)\Plex\Plex Media Server\opencv_core2411.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 00033608 _____ () C:\Program Files (x86)\Plex\Plex Media Server\lyric_lite.dll 2016-06-23 19:03 - 2016-06-23 19:03 - 00091464 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 01092424 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxml2.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 00123208 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_core-vc80-3_0.dll 2016-06-23 19:03 - 2016-06-23 19:03 - 00068424 _____ () C:\Program Files (x86)\Plex\Plex Media Server\soci_sqlite3-vc80-3_0.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 00211272 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll 2016-06-30 17:22 - 2016-06-30 17:22 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-06-23 19:03 - 2016-06-23 19:03 - 00058184 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_socket.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00040264 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ssl.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00030024 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_hashlib.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00049992 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\simplejson\_speedups.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00939336 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\etree.pyd 2016-06-23 19:02 - 2016-06-23 19:02 - 00082760 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libexslt.dll 2016-06-23 19:02 - 2016-06-23 19:02 - 00198984 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libxslt.dll 2016-06-23 19:03 - 2016-06-23 19:03 - 00226120 _____ () C:\Program Files (x86)\Plex\Plex Media Server\Exts\lxml\objectify.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00026952 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\select.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00103752 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\_ctypes.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00151880 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\pyexpat.pyd 2016-06-23 19:03 - 2016-06-23 19:03 - 00702792 _____ () C:\Program Files (x86)\Plex\Plex Media Server\DLLs\unicodedata.pyd 2016-07-25 21:56 - 2016-07-25 22:27 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-07-25 21:56 - 2016-07-25 22:27 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2016-01-02 10:57 - 2016-01-02 10:57 - 00072104 _____ () C:\Program Files (x86)\IncrediMail\Bin\wlessfp1.dll 2016-01-02 10:57 - 2016-01-02 10:57 - 00272808 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImLookExU.dll 2016-01-02 10:57 - 2016-01-02 10:57 - 00033128 _____ () C:\Program Files (x86)\IncrediMail\Bin\IMHttpComm.dll 2016-01-02 10:57 - 2016-01-02 10:57 - 00080296 _____ () C:\Program Files (x86)\IncrediMail\bin\ImAppRU.dll 2016-01-02 10:57 - 2016-01-02 10:57 - 00133544 _____ () C:\Program Files (x86)\IncrediMail\Bin\ImComUtlU.dll 2016-07-25 17:52 - 2016-07-25 17:52 - 00679624 _____ () C:\Users\nonox88\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\nonox88\Downloads\deepburner_deepburner_1.9.0.228_francais_12674.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\DTLiteInstaller(1).exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\ImgBurn_2.3.2.0_Fr.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\pf7-setup-fr-7.2.1.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\PMHOME_5100DL.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\serialnumberdetectiontool.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\SetupCloneCD_51696.exe:BDU [0] AlternateDataStreams: C:\Users\nonox88\Downloads\SkypeSetup(1).exe:BDU [0] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 04:34 - 2016-03-23 14:29 - 00000967 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 down.baidu2016.com 127.0.0.1 123.sogou.com 127.0.0.1 www.czzsyzgm.com 127.0.0.1 www.czzsyzxl.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3479429645-407056864-3191445915-1000\Control Panel\Desktop\\Wallpaper -> c:\users\nonox88\desktop\eléna\hp wall.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FAH.lnk => C:\Windows\pss\FAH.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^WinZip Préchargeur.lnk => C:\Windows\pss\WinZip Préchargeur.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^nonox88^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Alertes de surveillance de l'encre - HP ENVY 5530 series.lnk => C:\Windows\pss\Alertes de surveillance de l'encre - HP ENVY 5530 series.lnk.Startup MSCONFIG\startupfolder: C:^Users^nonox88^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Curse.lnk => C:\Windows\pss\Curse.lnk.Startup MSCONFIG\startupfolder: C:^Users^nonox88^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Envoyer à OneNote.lnk => C:\Windows\pss\Envoyer à OneNote.lnk.Startup MSCONFIG\startupfolder: C:^Users^nonox88^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^wscanner.lnk => C:\Windows\pss\wscanner.lnk.Startup MSCONFIG\startupreg: AdAwareTray => "C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.10.767.8917\AdAwareTray.exe" MSCONFIG\startupreg: BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA} => "C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe" MSCONFIG\startupreg: Bitdefender Agent Wallet => "C:\Program Files\Bitdefender\Bitdefender 2016\bdwtxag.exe" MSCONFIG\startupreg: boincmgr => "C:\Program Files (x86)\BOINC\charityengine.exe" /a /s MSCONFIG\startupreg: boinctray => "C:\Program Files (x86)\BOINC\boinctray.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: DeskBar => C:\Users\nonox88\AppData\Local\DeskBar\dblaunch.exe MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: HydraVisionDesktopManager => "C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe" MSCONFIG\startupreg: InstallerLauncher => "C:\Program Files\Common Files\Bitdefender\SetupInformation\{09FE2C2E-BB0D-4848-A706-AA244FA25FEA}\setuplauncher.exe" /run:"C:\Program Files\Common Files\Bitdefender\SetupInformation\{09FE2C2E-BB0D-4848-A706-AA244FA25FEA}\Installer.exe" MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start MSCONFIG\startupreg: MTview => C:\Program Files (x86)\MTV20160128\MTView.exe -mini MSCONFIG\startupreg: PCSpeedUp => C:\Program Files (x86)\Accelerer PC\PCSUNotifier.exe MSCONFIG\startupreg: PMBVolumeWatcher => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe /SysAutoRun MSCONFIG\startupreg: ProductUpdater => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe MSCONFIG\startupreg: Prt => C:\Users\nonox88\AppData\Local\TECHP-Browser\prtsvc.exe startup=1 MSCONFIG\startupreg: puush => C:\Program Files (x86)\puush\puush.exe MSCONFIG\startupreg: Razer Synapse => "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: Selection Tools => "C:\Users\nonox88\AppData\Roaming\WTools\Selection Tools\Selection Tools.exe" /winstartup MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: Spotify => "C:\Users\nonox88\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\nonox88\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" -s MSCONFIG\startupreg: un => C:\Users\nonox88\AppData\Local\Temp\un.exe /start HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\StartupApproved\StartupFolder: => "Sidebar118.lnk" HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3479429645-407056864-3191445915-1000\...\StartupApproved\Run: => "Sidebar" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [UDP Query User{99254203-2A62-48D4-81C0-590CD8BB000D}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe FirewallRules: [TCP Query User{54D7DEAC-4E25-4FB6-ABAF-04408D13C4AF}C:\program files (x86)\plex\plex media server\plex dlna server.exe] => (Allow) C:\program files (x86)\plex\plex media server\plex dlna server.exe FirewallRules: [{37F525D9-4224-4754-94FA-FA6951125458}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe FirewallRules: [{26043724-21D9-4D03-9A8F-75A869CB62A4}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe FirewallRules: [{B8F0DA0E-1CC3-4DAA-968E-5539C79367C5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [UDP Query User{FB85D94A-4CB5-4119-9E45-AB4BBCFFCC08}C:\program files (x86)\steam\steamapps\common\aftermath\aftermath.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\aftermath\aftermath.exe FirewallRules: [TCP Query User{1A9A666A-005D-4608-BFA3-3A7D2E1EF4FB}C:\program files (x86)\steam\steamapps\common\aftermath\aftermath.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\aftermath\aftermath.exe FirewallRules: [UDP Query User{488A5449-53B6-48D6-8401-9FC473804F7F}C:\program files (x86)\steam\steamapps\common\aftermath\amlauncher.exe.new.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\aftermath\amlauncher.exe.new.exe FirewallRules: [TCP Query User{5D09F1C1-FB9C-440D-9C4C-79A408135B81}C:\program files (x86)\steam\steamapps\common\aftermath\amlauncher.exe.new.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\aftermath\amlauncher.exe.new.exe FirewallRules: [{714D4555-5456-4015-A693-37816829E65E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aftermath\AMLauncher.exe FirewallRules: [{FE24AEEF-4C51-44CF-93AD-B88E6C6120B0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Aftermath\AMLauncher.exe FirewallRules: [UDP Query User{9AB90E2C-4EF8-434A-9146-FE3AA922D1FF}C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe FirewallRules: [TCP Query User{16AC89CE-D043-45EB-B688-CB19E0B82C14}C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the war z\infestation.exe FirewallRules: [{E916F727-C45F-4F9E-BFF6-B7F032FA1752}] => (Allow) C:\Program Files (x86)\Electronics Extreme\InfestationWorld\Infestation.exe FirewallRules: [{7A52AAA9-B715-45D9-8509-9FA503AFAE46}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe FirewallRules: [{1634DD8C-C4BC-443C-99CB-BEA8E3A98893}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe FirewallRules: [{076DD1C1-E5EB-4738-A52C-609FC5C1F45D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The War Z\WarZlauncher.exe FirewallRules: [{6ED0BB75-FAD3-4722-B527-573F57C330E9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The War Z\WarZlauncher.exe FirewallRules: [{8244FC8D-5217-4DC1-8732-F83FDD726DC2}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{B226CE7F-D0FF-4555-90AA-3B9DFBF3B6CE}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{029B8A9F-76A9-46E3-BDAB-EC959EF61FDF}] => (Allow) C:\Program Files (x86)\Common Files\Baidu\BDDownload\108\bddownloader.exe FirewallRules: [UDP Query User{D6718090-4E7E-4F3A-B117-9EF55135A7FB}C:\users\nonox88\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nonox88\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{20283162-A38A-4AD6-A85B-66714D245671}C:\users\nonox88\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nonox88\appdata\roaming\spotify\spotify.exe FirewallRules: [{395B4B48-70A9-4A6C-AEA7-C4752F155D14}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{FCF3CB10-3A66-4B82-BAAB-171166448D36}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe FirewallRules: [{B8A3E476-E7ED-4BAB-9C00-56FF4EDCFE0C}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{EFF80631-7AE1-4717-9534-E20294B90F67}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe FirewallRules: [{E576ECBE-805A-436D-9F55-4A591D7F72E6}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{3E3302D1-61CF-493D-A6DB-58E31F465F36}] => (Allow) C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe FirewallRules: [{DF4F600C-8231-4AC8-BFB7-C633B45A1CDA}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{7AEF6092-A842-4FA5-B05C-7CC364229138}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{625C62A6-EE64-42D6-A63F-2F32DFF8F6E7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{7A1C8806-7A83-4F88-93E4-72E69A3D35CD}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ECD15934-E67B-4EA0-AF67-19E6038B3E99}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{ED947B52-81DD-40BC-85FA-885C9B71D4A3}] => (Allow) C:\Program Files\KMSpico\AutoPico.exe FirewallRules: [{8DB73CDA-526A-4C8D-BC47-664DF4105BA0}] => (Allow) C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\Trials_launcher.exe FirewallRules: [{14ABEFA1-9FC9-49D2-B6BA-9105447920B4}] => (Allow) C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\Trials_launcher.exe FirewallRules: [{41491940-D9C2-4D31-9321-1C2E3D246609}] => (Allow) C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\trialsFMX.exe FirewallRules: [{0D769774-76B8-4DD5-8169-AFDA09DFC5E1}] => (Allow) C:\Program Files (x86)\Ubisoft\Trials Evolution Gold Edition\datapack\trialsFMX.exe FirewallRules: [{DC5E70D3-759F-43CD-8B67-D29B7D84C717}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{C25F07BF-68B8-4AE2-891C-6085541DEC95}] => (Allow) C:\Program Files\HP\HP ENVY 5530 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{64C445B4-29C7-45C5-B100-96270991C299}] => (Allow) LPort=5357 FirewallRules: [{2685ABF6-E97B-4FB6-93BA-0E2788CCF920}] => (Allow) C:\Program Files\HP\HP ENVY 5530 series\Bin\DeviceSetup.exe FirewallRules: [{FB8FA04B-7D51-4E4F-9A8D-A7685EFBB91E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{DA22D193-ADB9-4575-938D-118C2AB5831D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{4ED31F40-4055-474E-B75A-F9BE643105C8}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{54B90E59-FAE2-42C1-936B-ED015E24F3B6}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{BCBA2862-A8BC-4B3F-9B9C-9D9641A3033B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{29C40427-2249-4836-8A24-342E8F7AB828}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [UDP Query User{034B0A07-8AC9-45EC-9BC9-DC8E00BA12BE}C:\users\nonox88\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nonox88\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{B1330CD0-AB37-4718-B166-32DA467BA96F}C:\users\nonox88\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\nonox88\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{8DD96831-AB37-4090-99D8-72560B2E4565}C:\program files (x86)\jdownloader\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\jdownloader\jre\bin\javaw.exe FirewallRules: [TCP Query User{47BA3692-F468-49AA-802D-841229034686}C:\program files (x86)\jdownloader\jre\bin\javaw.exe] => (Allow) C:\program files (x86)\jdownloader\jre\bin\javaw.exe FirewallRules: [UDP Query User{40AB1642-9BED-4898-A8A7-A83210144BD0}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [TCP Query User{F52AF576-5F9E-49D3-8F73-D4EF0CA6A946}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{98C57072-51D4-410E-A4DF-CE9EBCDC72B8}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{2D64A492-153B-4A75-9CD1-694E3193B1C7}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{27886C95-F5E3-4452-B175-5D09C83F9E89}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{F74623B5-BB37-4BBE-914C-DBDD168FB376}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{4E934D88-04B6-476B-999C-DF0A88EEE2AC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C15DF7B3-BD64-49DC-89FF-82C4BFE697C0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6F0CE4B4-E5A1-4B06-B781-B627B5C93A3F}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{6BE4073E-EF2A-48ED-A4AB-3802BACAF062}] => (Allow) C:\Program Files\KMSpico\KMSELDI.exe FirewallRules: [{51847FFF-DA5D-4108-9968-BA154EACB74E}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{4AD2D3BE-5E8D-4386-9340-555C3BE90A74}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{2DB94D0C-6664-406E-93C9-FEAB01367FF2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{AD4A861C-6AFD-40D4-8B61-61ABC85C717D}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe ==================== Points de restauration ========================= 25-07-2016 19:17:38 PROPLUS 27-07-2016 17:01:57 ASU_MSI_TRAN ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (07/30/2016 06:41:24 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante WUDFHost.exe, version : 10.0.10586.0, horodatage : 0x5632d175 Nom du module défaillant : ntdll.dll, version : 10.0.10586.306, horodatage : 0x571af2eb Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000ee6fc ID du processus défaillant : 0x7f4c Heure de début de l’application défaillante : 0xWUDFHost.exe0 Chemin d’accès de l’application défaillante : WUDFHost.exe1 Chemin d’accès du module défaillant: WUDFHost.exe2 ID de rapport : WUDFHost.exe3 Nom complet du package défaillant : WUDFHost.exe4 ID de l’application relative au package défaillant : WUDFHost.exe5 Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="amd64",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="amd64",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 08:00:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="amd64",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="amd64",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 07:49:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 07:49:04 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/28/2016 07:49:03 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1"1 ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Erreurs système: ============= Error: (07/30/2016 05:36:08 PM) (Source: DCOM) (EventID: 10016) (User: nonox88-pc) Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}nonox88-pcnonox88S-1-5-21-3479429645-407056864-3191445915-1000LocalHost (avec LRPC)Microsoft.Windows.FeatureOnDemand.InsiderHub_10.0.10586.0_neutral_neutral_cw5n1h2txyewyS-1-15-2-4016783169-893401051-2237370320-274899566-412088533-2398988950-2155762795 Error: (07/30/2016 12:43:07 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: ) Description: 5 Error: (07/30/2016 12:42:47 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Hôte de synchronisation_6ea3b1b. Error: (07/30/2016 12:42:47 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Stockage des données utilisateur_6ea3b1b. Error: (07/30/2016 12:42:41 AM) (Source: DCOM) (EventID: 10010) (User: nonox88-pc) Description: {F2F6A7B0-0E74-49BF-ABDF-8A0778554472} Error: (07/30/2016 12:42:41 AM) (Source: DCOM) (EventID: 10010) (User: nonox88-pc) Description: {F2F6A7B0-0E74-49BF-ABDF-8A0778554472} Error: (07/30/2016 12:42:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Accès aux données utilisateur_6ea3b1b s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (07/30/2016 12:42:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Stockage des données utilisateur_6ea3b1b s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (07/30/2016 12:42:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Données de contacts_6ea3b1b s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (07/30/2016 12:42:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_6ea3b1b s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. CodeIntegrity: =================================== Date: 2016-07-27 11:59:04.041 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-27 11:00:44.170 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-26 18:27:12.054 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-26 18:13:54.063 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:54.007 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:53.949 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:53.849 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:53.807 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:53.730 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2016-07-26 18:13:52.819 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\stdole\7.0.3300.0__b03f5f7f11d50a3a\stdole.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: AMD FX(tm)-8350 Eight-Core Processor Pourcentage de mémoire utilisée: 37% Mémoire physique - RAM - totale: 8156.66 MB Mémoire physique - RAM - disponible: 5070.64 MB Mémoire virtuelle totale: 16348.66 MB Mémoire virtuelle disponible: 12942.37 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:930.97 GB) (Free:606.01 GB) NTFS Drive e: (TOSHIBA EXT) (Fixed) (Total:931.51 GB) (Free:616.78 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 4D9B7C70) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or Vista) (Size: 931.5 GB) (Disk ID: D2652AD7) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================