Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 03-08-2016 Exécuté par raer (2016-08-08 01:58:17) Exécuté depuis C:\Users\raer\Downloads Windows 10 Pro Version 1511 (X64) (2016-01-01 02:47:40) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2797449410-1895347186-147589965-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2797449410-1895347186-147589965-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2797449410-1895347186-147589965-1002 - Limited - Enabled) Invité (S-1-5-21-2797449410-1895347186-147589965-501 - Limited - Disabled) raer (S-1-5-21-2797449410-1895347186-147589965-1000 - Administrator - Enabled) => C:\Users\raer ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 22.0.0.153 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Ansel (Version: 368.81 - NVIDIA Corporation) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{D4B07658-F443-4445-A261-E643996E139D}) (Version: 4.3.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{A6B0442B-E159-444B-B49D-6B9AC531EAE3}) (Version: 4.3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}) (Version: 9.3.0.15 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Archiveur WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ARK: Survival Evolved (HKLM\...\Steam App 346110) (Version: - Studio Wildcard) ARK: Survival Of The Fittest (HKLM\...\Steam App 407530) (Version: - Studio Wildcard) Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.4.4 - Atheros Communications Inc.) Avidemux 2.6 (32-bit) (HKLM-x32\...\Avidemux 2.6) (Version: 2.6.8.9046 - ) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.18.354 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{92a7fd6b-31e5-472f-862e-79214c5032ef}) (Version: 1.1.67.18988 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.1.67.18988 - Avira Operations GmbH & Co. KG) Hidden Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB) Bitcoin Core (64-bit) (HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\Bitcoin Core (64-bit)) (Version: 0.12.1 - Bitcoin Core project) BitComet 1.37 (HKLM-x32\...\BitComet) (Version: 1.37 - CometNetwork) BitComet 1.42 (HKLM-x32\...\BitComet_x64) (Version: 1.42 - CometNetwork) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.18 - Piriform) Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Cryptostorm Client (HKLM-x32\...\{35A52EE3-6D23-4AA6-B881-3F10658D626C}_is1) (Version: 2.22 - Cryptostorm) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd) Debut - Enregistreur de vidéo (HKLM-x32\...\Debut) (Version: 1.96 - NCH Software) DiskCryptor 1.1 (HKLM\...\DiskCryptor_is1) (Version: 1.1 - hxxp://diskcryptor.net/) Easy Tune 6 B12.0525.1 (HKLM-x32\...\InstallShield_{457D7505-D665-4F95-91C3-ECB8C56E9ACA}) (Version: 1.00.0000 - GIGABYTE) Easy Tune 6 B12.0525.1 (x32 Version: 1.00.0000 - GIGABYTE) Hidden EAX(tm) Unified (SHELL) (HKLM-x32\...\EAX(tm) Unified (SHELL)) (Version: - ) ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB) FINAL FANTASY IX (HKLM\...\Steam App 377840) (Version: - SQUARE ENIX) FINAL FANTASY VIII (HKLM-x32\...\FINAL FANTASY VIII) (Version: - ) Fraps (HKLM-x32\...\Fraps) (Version: - ) Google Chrome (HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\Google Chrome) (Version: 52.0.2743.82 - Google Inc.) Intel Security True Key (HKLM\...\TrueKey) (Version: 4.4.135.1 - Intel Security) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.4.225 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{6199B534-A1B6-46ED-873B-97B0ECF8F81E}) (Version: 1.23.216.0 - Intel Corporation) iTunes (HKLM\...\{E109B4A3-9883-4E6E-9A19-4D7E1A88AFE8}) (Version: 12.4.2.4 - Apple Inc.) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Lazarus (HKLM-x32\...\Lazarus) (Version: - ) Legacy of Kain: Soul Reaver (HKLM-x32\...\Kain 2) (Version: - ) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) marvell 91xx driver (HKLM-x32\...\MagniDriver) (Version: 1.2.0.1010 - Marvell) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Office Professionnel Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mises à jour NVIDIA 2.11.4.0 (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 33.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 33.0.2 (x86 fr)) (Version: 33.0.2 - Mozilla) Mozilla Firefox 47.0 (x86 fr) (HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\Mozilla Firefox 47.0 (x86 fr)) (Version: 47.0 - Mozilla) Mozilla Firefox 48.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 48.0 (x86 fr)) (Version: 48.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 48.0 - Mozilla) Mumble 1.2.8 (HKLM-x32\...\{5D198290-6E7D-426C-9AF0-8DA34CC7E596}) (Version: 1.2.8 - Thorvald Natvig) NVIDIA GeForce Experience 2.11.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.4.0 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 368.81 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.15 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 364.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 364.44 - NVIDIA Corporation) NVIDIA Pilote graphique 368.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 368.81 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 9.7.2.53208 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 368.81 (Version: 368.81 - NVIDIA Corporation) Hidden PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2-r5350) (Version: - ) PDF Editeur 4 (HKLM-x32\...\PDF Editeur 4) (Version: - ) PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC) Platform (x32 Version: 1.39 - VIA Technologies, Inc.) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Questy 2 (HKLM-x32\...\ST6UNST #1) (Version: - ) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.4.0 - NVIDIA Corporation) Hidden Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.47484 - TeamViewer) Tomb Raider II (HKLM-x32\...\Tomb Raider II) (Version: - ) Tomb Raider III: Adventures of Lara Croft (HKLM\...\Steam App 225320) (Version: - Core Design) Uplay (HKLM-x32\...\Uplay) (Version: 17.0 - Ubisoft) VIA Gestionnaire de périphériques de plate-forme (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.39 - VIA Technologies, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) X'nStop 2.5 (HKLM-x32\...\X'nStop_is1) (Version: - Graphys © 2001-2006) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2797449410-1895347186-147589965-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\raer\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-2797449410-1895347186-147589965-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\raer\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2797449410-1895347186-147589965-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\raer\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2797449410-1895347186-147589965-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\raer\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll (Google Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {05332440-8E45-40E4-BA16-C479EFB0F948} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {171F1436-8941-4189-A83D-C8D467472A0F} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {1C020229-B27D-4406-96E3-D87FD63BFED5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {1E8A49B1-36E2-460D-9DD0-51628DEF6C24} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {1F6A66CE-CBCD-4C97-9A54-A5501E42A54C} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {20C57F8D-C4D6-4C1A-826C-87B2DD10CBA1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {27608CCA-F09F-497C-B022-6CE07C0BE6CB} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {285167EF-D5AD-43F5-840B-F21CD0085AEF} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {29BD81FD-ED84-46DD-835A-E6C5E1BA3A6D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {326F6CEF-1B54-4E1F-8F59-B8A1ACF68502} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {33D88C6A-E65C-4892-ACE4-B67A04770108} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {3781AA52-66D2-42C1-9252-E80BC44A1466} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {3B6A5E3D-4937-4037-8E77-F7342E14D9EC} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {475113D0-8DEC-47B8-B15F-ACA69F339A65} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-07-13] (Microsoft Corporation) Task: {47E06A8D-1642-4EB1-A755-0A4730018EC7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {4A9986FD-40D4-4790-9083-9F62BD14E48F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {4CDDDEB6-4A3B-4BC1-A640-526B872DCA90} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {5476FAED-260D-4513-AE17-59BBB8C38DE1} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {5CD5D022-D342-4C4A-A92D-A897CDF2C26D} - System32\Tasks\{BE9F73E9-CFA6-41C0-860E-0C8B23D7CEF1} => Chrome.exe hxxp://ui.skype.com/ui/0/7.5.64.102/fr/abandoninstall?page=tsProgressBar Task: {6378B8C5-BFE6-4EFF-B6F1-5E51794D4C6F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {7AF0DBFD-1AB7-4A5F-BFC8-06B691B90E90} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {7C4B1433-7D8C-4A8D-945F-391090D5BDFD} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {7E1539EB-FB62-4746-9645-ADD21432E94A} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {85920CB3-9DE3-4B8B-9195-480B6764EF8E} - System32\Tasks\{0F9CD61A-4340-45B3-8C8C-092D660F434A} => pcalua.exe -a C:\Windows\IsUninst.exe -c -fd:\UninstSR.isu Task: {85FCF823-9A13-4579-9D48-6839920E3CD9} - System32\Tasks\{B21BE32A-5B00-492C-A594-B038C0986983} => pcalua.exe -a "D:\uninstall\Uninstall The Elder Scrolls Online.exe" Task: {87A19A34-A485-46CF-BC52-E057572F8DDA} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {87A42EE4-3ED3-4599-9598-379C9B82A05F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {90291DAE-6511-49C0-8D25-2762C782DB7E} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-07-12] (Adobe Systems Incorporated) Task: {9629CD5E-ABCA-4A87-B2CA-78A22D622ABB} - System32\Tasks\{A16EF4DC-6B5D-4740-88CD-CD699D7E533E} => pcalua.exe -a E:\STARTUP.EXE -d E:\ Task: {9AE4A2F6-69C6-4761-AAC9-6C5EECEB3099} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-06-01] (Piriform Ltd) Task: {A6CB150C-0961-4F25-8CB0-3529745CC59E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {A7DFB1A4-F519-45A0-A1E7-E2364CF2E443} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2797449410-1895347186-147589965-1000UA => C:\Users\raer\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {AF426FA3-391B-4362-BEE7-4CD2FEF177FD} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {B59D95CC-271B-40C9-A98D-AC2A72249383} - System32\Tasks\{01493520-E2BC-4697-9412-3E6A06717AE9} => pcalua.exe -a I:\STARTUP.EXE -d I:\ Task: {BE8860A2-0FFA-48EE-9902-D7C3A3BEFFEB} - System32\Tasks\{880DF5F4-15D3-4421-A293-A3DB4AB9B899} => Chrome.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=6.3.0.105&LastError=404 Task: {C00A0188-8D35-47A9-AACC-F03E99B3DD23} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {C53751D5-A2F6-42AE-93B3-81713ED882A2} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {C5FCCB0A-C4C4-4402-80DF-8D79615220A9} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {C7E79AD0-B87B-4ED9-90FA-D6C61579ED9B} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {D30DB183-2D17-4A11-B9F5-8D27100226C4} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {DF364163-A2E2-4557-A979-950BA887F0FA} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe Task: {E2FD7F19-CEAC-4284-98E9-3C7975AAE3D0} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {E6138ED5-8B2F-4B9B-81B3-505280C90904} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {F4AD5C5F-44E7-4684-96F7-652C612F0E65} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {F6A3F274-2C2A-4B16-8414-15893ACDC19F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2797449410-1895347186-147589965-1000Core => C:\Users\raer\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {F87909D0-A8CD-4889-AD53-1A2083212226} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2797449410-1895347186-147589965-1000Core.job => C:\Users\raer\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2797449410-1895347186-147589965-1000UA.job => C:\Users\raer\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\raer\Favorites\Site de téléchargement NCH Software.lnk -> hxxp://www.nchsoftware.com/fr/index.html Shortcut: C:\Users\raer\AppData\Local\Microsoft\Windows\GameExplorer\{6652CBB6-31F0-46A2-82F7-C32AB3B9C820}\SupportTasks\1\Support.lnk -> hxxp://www.eidos.com/ Shortcut: C:\Users\raer\AppData\Local\Microsoft\Windows\GameExplorer\{6652CBB6-31F0-46A2-82F7-C32AB3B9C820}\SupportTasks\0\Autres jeux de Microsoft.lnk -> hxxp://www.eidosinteractive.com/legacyofkain/ Shortcut: C:\Users\raer\AppData\Local\Microsoft\Windows\GameExplorer\{287066A5-5E1E-4D88-8537-0FB2DA3632E3}\SupportTasks\1\Support.lnk -> hxxp://www.eidos.com/ Shortcut: C:\Users\raer\AppData\Local\Microsoft\Windows\GameExplorer\{287066A5-5E1E-4D88-8537-0FB2DA3632E3}\SupportTasks\0\Autres jeux de Microsoft.lnk -> hxxp://www.eidosinteractive.com/legacyofkain/ ShortcutWithArgument: C:\Users\raer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk -> C:\Users\raer\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxp://feed.helperbar.com/?publisher=YahooSM&dpid=YahooSM&co=FR&userid=67bedb0c-3c2a-3246-7efd-1154f5a57605&searchtype=sc&fr=linkury-tb&installDate=01/11/2014&barcodeid=145243&um=0&type=hp15000 ==================== Modules chargés (Avec liste blanche) ============== 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-01-01 04:41 - 2016-07-11 00:58 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-07-05 15:23 - 2016-07-05 15:23 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-07-05 15:23 - 2016-07-05 15:23 - 01354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-07-03 20:55 - 2016-02-03 14:34 - 00585666 _____ () c:\dnscrypt-proxy-win32\dnscrypt-proxy.exe 2016-06-29 00:18 - 2016-06-14 22:03 - 00367552 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\MessageBus.dll 2016-06-29 00:06 - 2016-06-14 22:03 - 00288192 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\libprotobuf.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 03611584 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Poco.dll 2014-11-02 13:10 - 2015-10-18 18:19 - 00076152 _____ () C:\WINDOWS\system32\PnkBstrA.exe 2016-06-29 00:18 - 2016-06-14 22:03 - 02665920 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvMdnsPlugin.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 01988544 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\NvPortForwardPlugin.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 01840576 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\Plugins\NSS\RtspPlugin.dll 2016-06-29 00:06 - 2016-06-14 22:03 - 00207296 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\RtspServer.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 00034240 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2016-06-29 00:18 - 2016-06-14 22:03 - 00920000 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2016-07-13 16:17 - 2016-07-01 06:48 - 02656408 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-07-13 16:17 - 2016-07-01 06:48 - 02656408 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-05-18 00:45 - 2016-05-18 00:45 - 00959168 _____ () C:\Users\raer\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\amd64\ClientTelemetry.dll 2013-09-05 01:17 - 2013-09-05 01:17 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-11-01 19:39 - 2008-06-20 01:41 - 00062464 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2016-04-19 23:26 - 2016-04-19 23:26 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe 2016-01-02 01:13 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-13 16:18 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-07-13 16:18 - 2016-07-01 05:49 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll 2016-06-28 09:58 - 2016-06-28 09:58 - 03790336 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1605.1582.0_x64__8wekyb3d8bbwe\Calculator.exe 2015-12-15 09:33 - 2015-12-15 09:33 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1605.1582.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2015-07-10 18:32 - 2015-07-10 18:32 - 00117920 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_3.6.23041.0_x64__8wekyb3d8bbwe\GNSDK_FP.DLL 2016-04-30 15:01 - 2016-04-30 15:01 - 10256384 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11602.1.26.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2016-04-30 15:01 - 2016-04-30 15:01 - 02637312 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11602.1.26.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2016-07-13 16:17 - 2016-07-01 05:27 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-07-13 16:17 - 2016-07-01 05:21 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-07-13 16:17 - 2016-07-01 05:22 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-07-13 16:17 - 2016-07-01 05:24 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-07-15 15:10 - 2016-07-15 15:10 - 04650288 _____ () C:\Program Files\Intel Security\True Key\Application\truekey.exe 2016-07-15 15:11 - 2016-07-15 15:11 - 66162440 _____ () C:\Program Files\Intel Security\True Key\Application\libcef.dll 2016-07-03 20:55 - 2016-02-03 14:34 - 00732745 _____ () c:\dnscrypt-proxy-win32\libsodium-18.dll 2016-07-03 20:55 - 2016-02-03 14:34 - 00119988 _____ () c:\dnscrypt-proxy-win32\libgcc_s_dw2-1.dll 2014-11-01 13:36 - 2011-12-16 11:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2016-04-19 23:26 - 2016-04-19 23:26 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll 2016-04-19 23:26 - 2016-04-19 23:26 - 22284800 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkyWrap.dll 2015-04-04 01:11 - 2016-06-14 22:03 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-05-18 00:44 - 2016-05-18 00:44 - 00679624 _____ () C:\Users\raer\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\ClientTelemetry.dll 2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2016-07-20 21:00 - 2016-07-19 04:26 - 01771336 _____ () C:\Users\raer\AppData\Local\Google\Chrome\Application\52.0.2743.82\libglesv2.dll 2016-07-20 21:00 - 2016-07-19 04:25 - 00094024 _____ () C:\Users\raer\AppData\Local\Google\Chrome\Application\52.0.2743.82\libegl.dll 2016-07-05 15:23 - 2016-07-05 15:23 - 01041208 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2016-07-05 15:24 - 2016-07-05 15:24 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2797449410-1895347186-147589965-1000\Control Panel\Desktop\\Wallpaper -> F:\images\vacance crête\photos appareil 154.JPG DNS Servers: 212.27.40.241 - 212.27.40.240 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: Google Update => "C:\Users\raer\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: X'nStop => HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Malwarebytes Anti-Malware (cleanup)" HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-2797449410-1895347186-147589965-1000\...\StartupApproved\Run: => "DAEMON Tools Lite" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{46B1D5A4-B393-4448-A1E8-EBEA2B3CD8B7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{EC02B6C4-DF7E-46E3-B873-71219CB8C79E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{801DF3D4-D9DD-412D-B2F9-8F1F68C49045}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D5626F3D-95BB-4B52-BCF4-0CEB8DA335B2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [UDP Query User{CE8EEEA8-BE59-4438-BB8F-C1CA9466426D}D:\program files\videolan\vlc\vlc.exe] => (Allow) D:\program files\videolan\vlc\vlc.exe FirewallRules: [TCP Query User{92444330-A6F4-4EEF-9108-ADE7CB0F9E6A}D:\program files\videolan\vlc\vlc.exe] => (Allow) D:\program files\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{A0E0BBB1-4023-4843-BF04-01A8A1A3EC3A}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [TCP Query User{8F9511B0-AFD8-41C0-81CA-C95A37FFDEC8}D:\program files (x86)\origin games\battlefield 4\bf4.exe] => (Allow) D:\program files (x86)\origin games\battlefield 4\bf4.exe FirewallRules: [{A4046E98-A20C-4488-9EDD-877DC0D9B5B4}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{E7236FFD-1C24-449C-B1D1-EBCCE466DF87}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe FirewallRules: [{F89E121A-4564-4DD8-ABE9-569D4F288181}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{4AAAFAA9-2FEC-4DA4-91F5-BE17484DC811}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{5F1EB5F5-6292-4D60-BA5C-80C359EC825C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{AF9E5AEF-9E53-4583-9B57-560776B2C140}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{ADCE1FBA-0A8D-4542-BD6A-958CBD850DA9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{2EF9106A-F557-46B4-92A9-29ECBC08D3FE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{D736B40C-16C5-4FA3-8718-1790B801C1D7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{BAA95F22-C547-43D3-AC86-6CEE00C7175D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{C3BA51B7-1B36-42E7-B439-83B71CE19941}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FD8E85A9-8FF2-4383-9CA3-A5E791C8D22F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{08231B09-80D2-45F1-9D58-54D5E7975181}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{7E7F057F-97FD-446A-8E49-7A706ABC1A3A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{2353E7E2-31AD-45D9-A565-13BFD960E981}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{884B1896-FD5D-4B09-81D1-A564CC36FA41}] => (Allow) D:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{DD15FF51-C142-4D26-A2C4-29320925837E}] => (Allow) D:\Program Files (x86)\BitComet\BitComet.exe FirewallRules: [{5505088F-E82F-4280-9A04-7C1B33634698}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{DBEDDB9E-2E2E-401A-8DBB-F43D9D6086EB}] => (Allow) D:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{BCE530DC-2241-43D9-AA8C-BA399CF28903}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{9152C5A8-DF86-48BC-A036-A1C1298EF72D}] => (Allow) D:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{4879C928-D1F6-44A4-BAA8-8CCD88D3E451}D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe FirewallRules: [UDP Query User{4BAD0BE6-0EB7-4D18-BABB-8932402FA32C}D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\dayz\dayz.exe FirewallRules: [{0F01768D-8B17-41C9-8FFB-E91C1204E695}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{B728FE11-BF3E-46F3-BF30-4DE70A548467}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [TCP Query User{93ADADE8-B7C2-47D1-871E-6A2C57387179}D:\program files (x86)\mozilla firefox\firefox.exe] => (Block) D:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{6259E25A-567C-4B61-A123-7E2E258C4C05}D:\program files (x86)\mozilla firefox\firefox.exe] => (Block) D:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{8CFE1655-47C4-4EDE-AE27-C2A6F3AB8849}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{D704AD4B-FFD0-415F-95DA-F52538C1EB2E}D:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [UDP Query User{83BD00C7-8A0B-4757-A4CE-A298910D3826}D:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\arma 3\arma3.exe FirewallRules: [{F74AF249-7EA7-418E-B654-9627B47C41B1}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{AD4ED7D2-DDCA-487C-90B8-732D27FA018B}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{B5944959-249F-4ADD-AB68-36B691442B6E}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider (I)\dosbox.exe FirewallRules: [{3C3D05CC-5D34-4504-A9B3-029F0FEEB8BF}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider (I)\dosbox.exe FirewallRules: [{5123307A-E61A-453E-8347-F666D7AFCC63}] => (Allow) F:\SteamLibrary\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [{CEDB2845-8A16-4CCE-9EE4-423EAF501592}] => (Allow) F:\SteamLibrary\steamapps\common\Dying Light\DyingLightGame.exe FirewallRules: [{497D1CA3-1EF4-428E-92C9-7DEAE8F1CE6B}] => (Allow) F:\SteamLibrary\steamapps\common\Syberia\Game.exe FirewallRules: [{34E939E6-93F2-4654-A5D1-9308990B41E4}] => (Allow) F:\SteamLibrary\steamapps\common\Syberia\Game.exe FirewallRules: [{50B53CC5-F620-44BC-A81A-4357BACFA561}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider (IV) The Last Revelation\tomb4.exe FirewallRules: [{7D4EDBC3-AB0A-4AC8-A0AE-21912751807D}] => (Allow) F:\SteamLibrary\steamapps\common\Tomb Raider (IV) The Last Revelation\tomb4.exe FirewallRules: [{A3FCAAC0-717E-407C-ABB6-96865D1C5AE7}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe FirewallRules: [{29E6BD9B-A2BE-40E0-85AC-1A2F4938FF0E}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe FirewallRules: [TCP Query User{829B0116-7B56-433B-852C-9AB1CAAC1C51}F:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) F:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [UDP Query User{ABE13775-9AF6-4E8F-BCC0-5E0373571AE2}F:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) F:\steamlibrary\steamapps\common\h1z1\h1z1.exe FirewallRules: [{8D1318C8-4ED4-4985-B50C-D5EA52A99482}] => (Allow) F:\SteamLibrary\steamapps\common\TombRaider (III)\tomb3.exe FirewallRules: [{15420300-5FF7-478A-9759-035E7F7FA875}] => (Allow) F:\SteamLibrary\steamapps\common\TombRaider (III)\tomb3.exe FirewallRules: [{41749C2B-ED56-46CC-8268-568CEA5FF2BA}] => (Allow) F:\SteamLibrary\steamapps\common\FINAL FANTASY IX\FF9_Launcher.exe FirewallRules: [{80385ACE-9745-4E4D-9451-F55B70BB7F00}] => (Allow) F:\SteamLibrary\steamapps\common\FINAL FANTASY IX\FF9_Launcher.exe FirewallRules: [{41F18D3C-E0A3-4D8D-BF54-E7DA569B2AAF}] => (Allow) F:\SteamLibrary\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{19FD3DD6-B6A5-4FAB-A7D7-6D182B84B640}] => (Allow) F:\SteamLibrary\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [TCP Query User{FD887691-D2FF-4521-A201-900D04C21FC9}F:\bitcoin\bitcoin-qt.exe] => (Allow) F:\bitcoin\bitcoin-qt.exe FirewallRules: [UDP Query User{8362DE2B-354F-4F1C-B810-5F5D51983915}F:\bitcoin\bitcoin-qt.exe] => (Allow) F:\bitcoin\bitcoin-qt.exe FirewallRules: [TCP Query User{7F6E35FB-B145-4118-904F-01DD6C913C5F}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe FirewallRules: [UDP Query User{9E9636DE-4166-4A4B-945B-2DDE4B127558}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe FirewallRules: [{F518B6EF-742C-44B8-905F-C27D808E1F35}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY IX\FF9_Launcher.exe FirewallRules: [{1514DD2C-D202-4969-9F5D-2D71925EEC67}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\FINAL FANTASY IX\FF9_Launcher.exe FirewallRules: [{2AEBFA0A-1621-4377-ADE3-B3A08738C0FB}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{1ECABF6B-0A28-465C-9804-18A9E8F066E9}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{25F96B1A-F947-4B01-A344-060C67B82DA5}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{7085A74B-AB4C-4A2B-8DA5-19DD8BF6F61B}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{5D102001-50C1-463A-85F4-9EC9BEEC20CD}] => (Allow) D:\Program Files (x86)\Steam\SteamApps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{7C68AC91-A05C-40F7-8AC7-CA70CE848463}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{E116CAF8-D33C-4DD8-9DD0-C0C30B36C467}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3A5A6A8F-9A03-4145-93E5-8F4281EFE99E}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{2DFD2985-729A-497A-AFBB-04430E489AE8}] => (Allow) F:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{6394EB09-DCFD-4B84-B6E9-8B1B21A399E8}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{495FF5F2-98F3-4B39-8C3A-52F562007B50}] => (Allow) F:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{F72F99B8-A4E1-43A4-95AB-63F5739C52E0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{5D5AA6EA-013F-4703-931B-455188A637E0}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame_BE.exe FirewallRules: [{337538F3-18FC-4E97-8CDC-2C16FDF50902}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{7E524366-0508-4356-9FBE-6A31EFA23A3A}] => (Allow) F:\Program Files (x86)\Steam\steamapps\common\ARK\ShooterGame\Binaries\Win64\ShooterGame.exe FirewallRules: [{3FB9B099-3B35-4A63-A32C-8865A445CD04}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{96FA8647-221C-4C95-8D43-DFC0D7BC303C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E6E10AAF-6D66-45AB-897C-8647A0525070}] => (Allow) D:\Program Files\BitComet\BitComet.exe FirewallRules: [{DADE3697-BEF0-4E47-BCC3-E3B9B91DDCD4}] => (Allow) D:\Program Files\BitComet\BitComet.exe ==================== Points de restauration ========================= ATTENTION: La Restauration système est désactivée ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (08/07/2016 10:13:19 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante client.exe, version : 2.22.2015.83, horodatage : 0x503fe78c Nom du module défaillant : msvcrt.dll, version : 7.0.10586.0, horodatage : 0x5632d722 Code d’exception : 0xc000041d Décalage d’erreur : 0x0006054e ID du processus défaillant : 0x1a90 Heure de début de l’application défaillante : 0xclient.exe0 Chemin d’accès de l’application défaillante : client.exe1 Chemin d’accès du module défaillant: client.exe2 ID de rapport : client.exe3 Nom complet du package défaillant : client.exe4 ID de l’application relative au package défaillant : client.exe5 Error: (08/07/2016 10:13:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante client.exe, version : 2.22.2015.83, horodatage : 0x503fe78c Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0x80000026 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x1a90 Heure de début de l’application défaillante : 0xclient.exe0 Chemin d’accès de l’application défaillante : client.exe1 Chemin d’accès du module défaillant: client.exe2 ID de rapport : client.exe3 Nom complet du package défaillant : client.exe4 ID de l’application relative au package défaillant : client.exe5 Error: (08/07/2016 09:59:10 PM) (Source: MsiInstaller) (EventID: 11905) (User: raer-PC) Description: Produit : Adobe Reader 9.1 - Français -- Erreur 1905. Impossible d'annuler l'inscription du module D:\Program Files (x86)\Adobe\Reader 9.0\Reader\authplay.dll. HRESULT -2147220472. Contactez votre service de support technique. Error: (08/07/2016 03:58:18 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Photos_8wekyb3d8bbwe!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/06/2016 12:37:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application Microsoft.WindowsStore_8wekyb3d8bbwe!App avec l’erreur : -2147024865 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/06/2016 12:37:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/06/2016 12:37:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application Microsoft.WindowsStore_8wekyb3d8bbwe!App avec l’erreur : -2147024865 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/06/2016 12:37:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application Microsoft.WindowsStore_8wekyb3d8bbwe!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/06/2016 12:37:04 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: raer-PC) Description: Échec de l’activation de l’application Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (08/05/2016 02:47:26 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: WmiApRplC:\WINDOWS\system32\wbem\wmiaprpl.dll8 Erreurs système: ============= Error: (08/07/2016 10:15:22 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Détection de services interactifs s’est arrêté avec l’erreur : %%1 = Fonction incorrecte. Error: (08/07/2016 12:09:13 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service NetTcpActivator dépend du service NetTcpPortSharing qui n’a pas pu démarrer en raison de l’erreur : %%1058 = Le service ne peut pas être démarré parce qu’il est désactivé ou qu’aucun périphérique activé ne lui est associé. Error: (08/07/2016 03:58:18 AM) (Source: DCOM) (EventID: 10010) (User: raer-PC) Description: App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca Error: (08/07/2016 03:58:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_21f1f32 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (08/06/2016 12:37:05 AM) (Source: DCOM) (EventID: 10010) (User: raer-PC) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (08/06/2016 12:37:04 AM) (Source: DCOM) (EventID: 10001) (User: raer-PC) Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca31App.AppX65azfy60a5wn91mcvdd3dr2y0wj02n39.mcaNon disponibleNon disponible Error: (08/06/2016 12:37:04 AM) (Source: DCOM) (EventID: 10010) (User: raer-PC) Description: microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca Error: (08/06/2016 12:37:04 AM) (Source: DCOM) (EventID: 10001) (User: raer-PC) Description: "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXe9cvj1thv1hmcw0cs98xm3r97tyzy2xs.mca31App.AppX65azfy60a5wn91mcvdd3dr2y0wj02n39.mcaNon disponibleNon disponible Error: (08/06/2016 12:37:04 AM) (Source: DCOM) (EventID: 10010) (User: raer-PC) Description: App.AppX65azfy60a5wn91mcvdd3dr2y0wj02n39.mca Error: (08/06/2016 12:37:04 AM) (Source: DCOM) (EventID: 10010) (User: raer-PC) Description: App.AppXryc2qd338f5728r9gzzazav8206ba77s.mca CodeIntegrity: =================================== Date: 2016-07-14 22:56:34.606 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-13 21:02:01.599 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-10 22:25:09.071 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-18 11:22:35.236 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-16 21:10:11.008 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-14 12:53:24.890 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-13 09:04:52.068 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-12 10:59:43.156 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-16 10:32:10.209 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-04-15 09:35:40.263 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-3570K CPU @ 3.40GHz Pourcentage de mémoire utilisée: 46% Mémoire physique - RAM - totale: 8152.23 MB Mémoire physique - RAM - disponible: 4331.49 MB Mémoire virtuelle totale: 16344.23 MB Mémoire virtuelle disponible: 11437.6 MB ==================== Lecteurs ================================ Drive c: (Floride) (Fixed) (Total:111.35 GB) (Free:56.56 GB) NTFS Drive d: (Californie) (Fixed) (Total:232.79 GB) (Free:232.64 GB) NTFS Drive f: () (Fixed) (Total:465.76 GB) (Free:417.73 GB) NTFS Drive g: (Réservé au système) (Fixed) (Total:0.1 GB) (Free:0.06 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 111.8 GB) (Disk ID: 45BE1E9D) Partition 1: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: BCCACF08) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.8 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 465.8 GB) (Disk ID: AF5EAF5E) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================