Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 31-08-2016 Exécuté par Marcel (05-09-2016 13:57:50) Exécuté depuis C:\Users\Marcel\Desktop Windows 10 Home Version 1511 (X64) (2015-12-22 03:40:57) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2309373691-3350229377-2939869057-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2309373691-3350229377-2939869057-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2309373691-3350229377-2939869057-1002 - Limited - Enabled) Invité (S-1-5-21-2309373691-3350229377-2939869057-501 - Limited - Disabled) Marcel (S-1-5-21-2309373691-3350229377-2939869057-1000 - Administrator - Enabled) => C:\Users\Marcel ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Panda GOLD Protection (Enabled - Up to date) {AAF74A68-8713-CDF1-004F-30003398BE9E} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Panda GOLD Protection (Enabled - Up to date) {1196AB8C-A129-C27F-3AFF-0B72481FF423} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Panda Firewall (Enabled) {92CCCB4D-CD7C-CCA9-2B10-9935CD4BF9E5} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 64 Bit HP CIO Components Installer (Version: 1.2.0 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.017.20053 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 15.0.0.249 - Adobe Systems Incorporated) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 1.01.13 - ASUSTeK) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.10.0.0 - Asmedia Technology) Assistance Livebox (HKLM-x32\...\Assistance Livebox) (Version: 1.3.1.0 - Orange) AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.4.628 - ASUSTEK) Avery Wizard 5.0 (HKLM-x32\...\{FC3B3A5D-7058-4627-9F1E-F95CC38B6054}) (Version: 5.0.5 - Avery) B209a-m (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden C6300 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden CA VMN Anti-Spyware (remove only) (HKLM-x32\...\CA_VMN_antispyware) (Version: - Visicom Media inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.14 - Piriform) CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5306 - CDBurnerXP) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Creative Pack Volume 1 (HKLM\...\{3D1688AB-3440-4C7A-8CBB-5D77CD3C02D7}) (Version: 3.1.1 - Corel Corporation) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DDR - Memory Card Recovery(Demo) (HKLM-x32\...\{B3858956-75BD-483D-8025-73819FEEA1B7}_is1) (Version: 5.4.1.2 - Pro Data Doctor Pvt. Ltd.) Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DirectX 9 Runtime (x32 Version: 1.00.0000 - Sonic Solutions) Hidden DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden Dropbox (HKU\S-1-5-21-2309373691-3350229377-2939869057-1000\...\Dropbox) (Version: 9.4.49 - Dropbox, Inc.) Filmmaker's Toolkit for Studio (HKLM-x32\...\InstallShield_{4CF172C5-F121-41FA-B0B0-0D49840BF003}) (Version: 1.00.0000 - Red Giant) Filmmaker's Toolkit for Studio (x32 Version: 1.00.0000 - Red Giant) Hidden FormatFactory 3.1.1 (HKLM-x32\...\FormatFactory) (Version: 3.1.1 - Free Time) FTP Expert 3 (HKLM-x32\...\FTP Expert 3) (Version: 3.80.3 - ) Gadwin PrintScreen (HKLM-x32\...\Gadwin PrintScreen) (Version: 4.4 - Gadwin Systems, Inc.) Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Gestionnaire pour appareils Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 52.0.2743.116 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) GoPro (Version: 0.1.2733 - GoPro, Inc.) Hidden GoPro for Desktop (HKLM-x32\...\{88734dc7-c200-4ad3-b29f-bb5e436cb30f}) (Version: 1.4.0.2733 - GoPro, Inc.) GoPro Studio (x32 Version: 5.9.2733 - GoPro, Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Hewlett-Packard ACLM.NET v1.1.0.0 (x32 Version: 1.00.0000 - Hewlett-Packard) Hidden Hollywood FX Volumes 1-3 (HKLM\...\{94F26E3B-100E-4C7B-B1F1-2F395128E848}) (Version: 2.1 - Corel Corporation) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photo Creations (HKU\S-1-5-21-2309373691-3350229377-2939869057-1000\...\HP Photo Creations) (Version: 1.0.0.21232 - HP) HP Photosmart C6300 All-In-One Driver Software 14.0 Rel. 6 (HKLM\...\{F84F2008-6508-4E19-A794-C7D38CC125B8}) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.3.34.7 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{C18278AC-049A-4F02-A97F-4FD7294CC4F5}) (Version: 12.5.32.37 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden iCloud (HKLM\...\{D1829BE5-F305-4576-9593-C66FC7E0B008}) (Version: 1.0.2.17 - Apple Inc.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1118 - Intel Corporation) iZotope Music & Speech Cleaner (HKLM-x32\...\iZotope Music & Speech Cleaner_is1) (Version: 1.00 - iZotope, Inc.) Java 7 Update 9 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417009FF}) (Version: 7.0.90 - Oracle) Java 8 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418025F0}) (Version: 8.0.250 - Oracle Corporation) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Logiciel de base du périphérique HP Deskjet 3520 series (HKLM\...\{8A0AFE76-95AC-40B9-A95C-A1BABD4A552B}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Logitech Resource Center (HKLM-x32\...\Logitech Resource Center) (Version: - ) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft Office Famille et Petite Entreprise 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Motion Graphics Toolkit for Studio (HKLM-x32\...\InstallShield_{178D71F4-DFB1-40EC-9D95-326FD8A3E7A0}) (Version: 1.00.0000 - Red Giant) Motion Graphics Toolkit for Studio (x32 Version: 1.00.0000 - Red Giant) Hidden MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) MUSICMATCH Jukebox (HKLM-x32\...\MUSICMATCH Jukebox) (Version: - ) Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.) Network64 (Version: 140.0.215.000 - Hewlett-Packard) Hidden Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden NewBlue Effects (HKLM\...\{C0C7CFFB-C0EF-4CB5-A83D-33626D67BAA7}) (Version: 1.0.1 - Corel Corporation) NVIDIA Logiciel système PhysX 9.10.0514 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.10.0514 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.2.22.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.2.22.1 - NVIDIA Corporation) NVIDIA Pilote graphique 268.29 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.29 - NVIDIA Corporation) OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) OLYMPUS ib (HKLM-x32\...\InstallShield_{89A43E80-AC6C-4DA8-9800-F4B30ED577C0}) (Version: 1.1.1404 - OLYMPUS IMAGING CORP.) OLYMPUS ib (x32 Version: 1.1.1404 - OLYMPUS IMAGING CORP.) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Orange Installer (HKLM-x32\...\Orange Installer) (Version: 2.0.0.6 - Orange) Package de pilotes Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Package de pilotes Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.) Panda Cloud Cleaner (HKLM-x32\...\{92B2B132-C7F0-43DC-921A-4493C04F78A4}_is1) (Version: 1.0.107 - Panda Security) Panda Devices Agent (x32 Version: 1.03.07 - Panda Security) Hidden Panda Devices Agent (x32 Version: 1.06.00 - Panda Security) Hidden Panda GOLD Protection (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 16.0.2 - Panda Security) Panda GOLD Protection (Version: 8.04.00.0000 - Panda Security) Hidden Panneau de configuration NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden Password Depot 8 - Panda Secure Vault Edition (HKLM-x32\...\{56EC7B3B-D127-48FC-8EC1-FE93FEA64828}_is1) (Version: 8.1.8 - AceBIT GmbH) PC Connectivity Solution (HKLM-x32\...\{BA77F9D2-CD35-41EB-9BC9-769879DFF8A6}) (Version: 12.0.48.0 - Nokia) Pinnacle MyDVD (HKLM-x32\...\{3F75C691-AC75-47C3-AD02-82CE9AE30FE3}) (Version: 1.0 - Pinnacle) Pinnacle MyDVD (x32 Version: 1.0.056 - Nom de votre société) Hidden Pinnacle Studio 18 - Install Manager (HKLM\...\{39B53CC2-EE72-44E6-800D-C61A6465BF1A}) (Version: 18.0.225 - Corel Corporation) Pinnacle Studio 18 - Standard Content Pack (HKLM\...\{DDBFA6BC-5756-465F-902A-5659F4EFBC6F}) (Version: 18.0 - Corel Corporation) Pinnacle Studio 18 (HKLM\...\{11FB47FB-B341-4FD8-A505-E4C0CC0536C1}) (Version: 18.5.1.827 - Corel Corporation) Premium Pack Volumes 1-2 (HKLM\...\{4BB25E0F-7689-48CF-B240-D8567FBDACFD}) (Version: 2.1 - Corel Corporation) PS_AIO_04_C6300_Software (x32 Version: 110.0.218.000 - Hewlett-Packard) Hidden PS_AIO_04_C6300_Software_Min (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden PS_AIO_06_B209a-m_SW_Min (x32 Version: 140.0.690.000 - Hewlett-Packard) Hidden QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) QuickTransfer (x32 Version: 140.0.98.000 - Hewlett-Packard) Hidden Ralink RT2860 Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.1 - Ralink) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.31.1025.2010 - Realtek) Realtek Ethernet Diagnostic Utility (HKLM-x32\...\{7236672F-6430-439E-9B27-27EDEAF1D676}) (Version: 1.00.0000 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.46 - Piriform) Renault Media Nav Toolbox (HKLM-x32\...\Renault Media Nav Toolbox) (Version: 3.18.5.647040 - NNG Llc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Roxio Creator 2010 (HKLM-x32\...\{89A15676-78AE-4D51-BF5B-DEE3E0D46C94}) (Version: 12.0 - Roxio) Roxio Creator 2010 Content (HKLM-x32\...\{4D0AAB66-E604-4E82-A5AF-01AB97CB506D}) (Version: 12.0.013 - Roxio) Roxio File Backup (Version: 1.3.0 - Roxio) Hidden Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden ScoreFitter Volumes 1-2 (HKLM\...\{DAD8BCAC-30E7-4D1A-91F2-F3712F0E2555}) (Version: 2.1 - Corel Corporation) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.3.0.9150 - Microsoft Corporation) Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) SmartSound Quicktracks Plugin (HKLM-x32\...\InstallShield_{4A7FDA4D-F4D7-4A49-934A-066D59A43C7E}) (Version: 3.0.8.0 - SmartSound Software Inc) SmartSound Quicktracks Plugin (x32 Version: 3.0.8.0 - SmartSound Software Inc) Hidden SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Stepok's RAW Importer (HKLM-x32\...\Stepok's RAW Importer) (Version: - ) SureThing Express Labeler (HKLM-x32\...\stax-Pinnacle_is1) (Version: - MicroVision Development, Inc.) Title Extreme (HKLM\...\{C202FA8F-552B-4F7A-AB57-0B5B888E6BB5}) (Version: 2.1 - Corel Corporation) TomTom HOME (HKLM-x32\...\{B581E191-A2C1-4CE3-907E-9FE3C728750C}) (Version: 2.9.91 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Unchecky v1.0.1 (HKLM-x32\...\Unchecky) (Version: 1.0.1 - RaMMicHaeL) VD64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden VFW_Codec32 (x32 Version: 0.1.160.0 - GoPro, Inc.) Hidden VFW_Codec64 (Version: 0.1.160.0 - GoPro, Inc.) Hidden Visionneuse Microsoft PowerPoint (HKLM-x32\...\{95140000-00AF-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) WD Drive Utilities (HKLM-x32\...\{22662b08-91e0-4540-bb98-c96f32e09417}) (Version: 1.3.0.18 - Western Digital Technologies, Inc.) WD Drive Utilities (x32 Version: 1.3.0.18 - Western Digital Technologies, Inc.) Hidden WD Quick View (HKLM-x32\...\{2B51FAB1-DAA9-4EED-BB23-14DCCDABC2B0}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.) WD Security (HKLM-x32\...\{D564D1DC-2D07-4AF9-889D-86808CC6EAAD}) (Version: 1.1.1.3 - Western Digital Technologies, Inc.) WD SES Driver Setup (x32 Version: 1.0.5.7 - Western Digital) Hidden WD SmartWare (HKLM\...\{C6A9F314-CC7F-48E9-9F2B-7DC6E0D3FA10}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.) WD SmartWare Installer (HKLM-x32\...\{2d588de7-f4f6-4d6d-8719-32cbb9637e9e}) (Version: 2.4.2.26 - Western Digital Technologies, Inc.) WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Windows Driver Package - GoPro (WinUSB) Universal Serial Bus devices (03/07/2012 ) (HKLM\...\0B624A43DD66DBF5CF3EDFA9741A364E688062A4) (Version: 03/07/2012 - GoPro) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{57B13C80-C59C-4981-8870-4A209C1B7589}\InprocServer32 -> C:\Program Files\Roxio 2010\Virtual Drive 10\DC_ShellExt64.dll (Sonic Solutions) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2309373691-3350229377-2939869057-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Marcel\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll (Dropbox, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {04BB4EC1-8E51-435D-B19C-9A9187E88E2F} - System32\Tasks\ParetoLogic Update Version3 => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-12-08] () Task: {04E27375-CB23-45F4-A977-249814EE5957} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {080DC420-F353-4CAA-AE3C-42797B3B5A26} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\Windows\ehome\mcupdate.exe Task: {0BCB294F-56CD-4E6E-89E5-A711DC0B0EBD} - \{171C0F69-36D4-4686-A58C-86B450404305} -> Pas de fichier <==== ATTENTION Task: {0F6654F2-13D4-4BCA-8B73-04F9C748D9CE} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2309373691-3350229377-2939869057-1000Core => C:\Users\Marcel\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-03] (Dropbox, Inc.) Task: {11EEB2BA-A550-45BA-8BBD-996D6EEFF7B7} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\Windows\ehome\ehPrivJob.exe Task: {1C2DA5D4-9327-4AEC-99BC-563C46D337D1} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {1E3AAD06-551D-4FF6-A7F5-544BD3EA1900} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {1EB8CDEC-54A8-4FDD-9471-D5FBF8FE8F48} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {1EC7E361-A7F2-42BC-9249-04B905D3ECBA} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.) Task: {2117CF5B-BC0A-447C-81BE-B210180635D2} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\Windows\ehome\ehPrivJob.exe Task: {2429FE0C-6172-4995-84F0-2B4A2C0CBCF1} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {247255E0-5B89-47FA-B718-79A03A729768} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {266223DF-7037-49C8-83D1-849B92039601} - \User_Feed_Synchronization-{7F1A633C-E2CA-4D22-ADCD-78A8E952ADDF} -> Pas de fichier <==== ATTENTION Task: {2858B910-515E-454A-BBD0-E7C4FF2D25BC} - \{90BDB315-0295-4DAD-877D-D4D08406EFEA} -> Pas de fichier <==== ATTENTION Task: {28D75EA1-3B41-476D-B896-3C2E9D825BF6} - \{785BDEFF-2161-40A7-9441-A63E9C3287BF} -> Pas de fichier <==== ATTENTION Task: {2A95F156-A185-4EF7-97D2-259FD51C5E8D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\Windows\ehome\ehPrivJob.exe Task: {2AF3E2DB-03C0-46F6-8D91-66A405E02E41} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\Windows\ehome\ehPrivJob.exe Task: {2C035A07-38CF-4AF1-9F5A-7B6E2787F3CF} - \{E4708A05-3458-477C-81F5-B101016C4AB2} -> Pas de fichier <==== ATTENTION Task: {31C49DA6-8EEA-4AEB-9F99-7C1CD494DF7D} - \CreateChoiceProcessTask -> Pas de fichier <==== ATTENTION Task: {33F977E2-1B12-4177-AD3C-0CF8A220A8CC} - System32\Tasks\{999C0AB6-DE6D-4807-8777-F6687ADD0D59} => launchwinapp.exe hxxp://ui.skype.com/ui/0/7.8.0.102/fr/abandoninstall?page=tsProgressBar Task: {3C38303E-62DA-4A64-AD41-411574B92944} - \{A5766DF7-9ED8-45D1-84DD-4318AFE70E62} -> Pas de fichier <==== ATTENTION Task: {421A709B-4EEA-447A-BB7E-F29613F4F38B} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {43835FF8-4DF8-4838-95F5-100EACA986F8} - System32\Tasks\HP Photo Creations Communicator => C:\Users\Marcel\AppData\Roaming\HP Photo Creations\Communicator.exe [2016-08-04] () Task: {439D1AA6-0397-438F-A788-05282801BA6E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\Windows\ehome\mcupdate.exe Task: {44C37A5C-5673-441B-912F-B081D7F97086} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {4646E599-45C6-4ABF-9D9C-45E04A7778BB} - \{00AB73FA-2A54-44E0-B0D4-ACECD2F77C94} -> Pas de fichier <==== ATTENTION Task: {473F72FC-8B6E-4CAC-8B16-6AACF1CBBADB} - System32\Tasks\HPCeeScheduleForMarcel => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {4990BEC4-267B-4C4D-B474-EDC29AD1D1A8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {4B46FB05-E704-4767-9D58-A82B25AE2C18} - \{8CC69CDB-0A80-4149-A529-C619A36F19E6} -> Pas de fichier <==== ATTENTION Task: {524FFE45-2E4A-4FD3-AC23-22ECB067EBAA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2016-08-08] (HP Inc.) Task: {54CEAA36-7182-4FD5-8ACC-A535FA651929} - \{DD1EC2DF-21E7-431C-B017-647B296BE317} -> Pas de fichier <==== ATTENTION Task: {5A99F003-0A14-4699-9709-D9647150C9F1} - \{2904539E-9CAB-4BA6-9E2F-4C9C3275DF29} -> Pas de fichier <==== ATTENTION Task: {6081D94B-D64B-4CC2-A597-A8B4C13C87F9} - \{E3BE7C43-E7BA-41C3-8298-4A36E9C60EDF} -> Pas de fichier <==== ATTENTION Task: {60914FB0-D0B6-4C7D-A601-06D7B9D25225} - \{2BD2B747-623C-4753-B60B-E70EE925B105} -> Pas de fichier <==== ATTENTION Task: {62E0E385-A623-492D-B80C-33BEC45FBB4E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {6404FFEF-7E74-44F0-AADD-FD35383ACE0C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-06-25] (Adobe Systems Incorporated) Task: {6A37318A-FBD9-47AF-9D42-EFF79D1DFF60} - \{7016BEDA-E7E4-4AFB-AA99-9E9E643A54FE} -> Pas de fichier <==== ATTENTION Task: {6AA1F3AC-2389-4CF2-BA67-DAFC0A82C500} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\Windows\ehome\ehrec.exe Task: {6D920AC7-74B1-4D44-8F11-7ED83AF255E7} - System32\Tasks\ParetoLogic Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns Task: {6D9FBC9A-CAC8-48C4-BE75-ADECE4CDF6CE} - \{C78BFEDA-19F4-48FD-B38B-CE2F59253BCF} -> Pas de fichier <==== ATTENTION Task: {6E1BA979-4812-4026-ADD6-1B7D577C0BA2} - \{7C5B35D4-068E-4F4E-9615-09A973E4A384} -> Pas de fichier <==== ATTENTION Task: {6E880962-E3FA-4744-922F-313A8F921169} - \{55C49FD8-5475-4405-BE26-910C1F709C30} -> Pas de fichier <==== ATTENTION Task: {6F621726-6F02-4EFC-8607-9C09A3623D5D} - System32\Tasks\ASUS\AsBackupWizard_Run => C:\Program Files (x86)\ASUS\\AsBackupWizard\\AsRunBkWizardHelper.exe [2010-04-24] (ASUSTeK Computer Inc.) Task: {6F74CEF0-FCE3-4A41-9209-21D8E839C7DC} - System32\Tasks\{5046EC62-32C5-45DC-9DEA-CCB4729938CE} => pcalua.exe -a "C:\Program Files (x86)\ZHPDiag\ZHPFix\ZHPhep.exe" -d "C:\Program Files (x86)\ZHPDiag\ZHPFix" Task: {709E5D95-AB71-4D36-ACFA-BE962770F430} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\Windows\ehome\ehPrivJob.exe Task: {77A213CD-E58A-4292-B8A1-F4BAEEC11528} - \{D547F681-8D28-4F09-9AFB-AEC8B5C7910B} -> Pas de fichier <==== ATTENTION Task: {78C177A7-2B60-472F-AE2F-201B91153788} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\Windows\ehome\ehPrivJob.exe Task: {792BDFF9-C6E4-4269-8F7E-7B45F83A8A94} - \{587560E2-2BE4-4C37-BCB7-5DD6319D2FD4} -> Pas de fichier <==== ATTENTION Task: {7AFB17F0-3937-41CD-B232-42DF899F6B4B} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {7B342FE6-2403-4D6C-AB06-65918962D691} - System32\Tasks\ParetoLogic Update Version3 Startup Task => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe [2014-12-08] () Task: {7BC0B26D-9410-4591-8E5A-7BA0405D5BE7} - \AssistanceLivebox -> Pas de fichier <==== ATTENTION Task: {7EF0AA20-15CB-4AE1-BF18-19AC8E171C4C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {81877927-60E7-4ED6-8B94-2FFA65FFF4BC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-01-15] (Piriform Ltd) Task: {87980CBF-3F26-4B81-9EAE-D4CE7BD9141F} - \{71EA7FEE-B4EA-4531-A41B-F4291BC948FA} -> Pas de fichier <==== ATTENTION Task: {87ADE00A-5809-4BF1-BAFC-82EF6F12F709} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\Windows\ehome\MCUpdate.exe Task: {87CBD295-29C1-4F9C-AE18-623EE5BEAA7F} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe [2016-08-28] (Microsoft Corporation) Task: {8FD7622F-C845-4BE6-AD74-A2A5E6949A20} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\Windows\ehome\ehPrivJob.exe Task: {91CBF4A4-C11D-4B03-AF03-CD5626A4E715} - System32\Tasks\{40F2E017-CD92-4585-B48B-3E33C9993C74} => pcalua.exe -a C:\Users\Marcel\Downloads\internet_video_converter_2.50_fr_ansi_std_setup.exe -d C:\Users\Marcel\Downloads Task: {9CD9F795-74F4-454B-98DB-19A09A8B1874} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {9DB334BE-7F31-4DF4-AC3D-6DA12E3D0BC4} - \Adobe Flash Player Updater -> Pas de fichier <==== ATTENTION Task: {9F0ADB0B-AFCD-4B1A-A5A5-54D6315F05DF} - \{8B39D3FF-FF64-417D-9F44-8E50A3044E96} -> Pas de fichier <==== ATTENTION Task: {A5062F42-3846-4F47-A880-AFAFBE26C75B} - System32\Tasks\Microsoft\Windows\orangeinstaller => C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [2012-12-20] () Task: {A66A809B-A64D-43A9-A302-504B168B237F} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {A6AA99D6-6FB5-4CF6-B6D0-93845A3865BF} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2010-11-27] (ASUSTeK Computer Inc.) Task: {A9ADDA0B-09E9-4DA1-8C3A-8BDA51E1DA47} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {AB59E0C2-B2E1-4A7A-806E-518B49868D73} - \{2EA20785-F174-4751-951F-28B8C6088CCE} -> Pas de fichier <==== ATTENTION Task: {AB9E33D6-7399-48E9-B467-6FD31B90F4BC} - \{821086E5-AC18-42C0-A270-B58B2F4A1FB5} -> Pas de fichier <==== ATTENTION Task: {AEC66355-1778-4A18-B600-8D7A73C08140} - \{6F84FF17-62FA-4FED-9016-3D59C9804747} -> Pas de fichier <==== ATTENTION Task: {B19E0A59-C43B-4616-9FC4-B3DDA9492668} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {B48E9AE8-EE20-43B0-96DE-E7630055CD39} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\Windows\ehome\ehPrivJob.exe Task: {B51A93F7-6F7A-4083-9622-41B65FC3AE70} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\Windows\ehome\ehPrivJob.exe Task: {B5DDC32E-447E-4BEB-97C7-9A89139EE8D0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\Windows\ehome\ehPrivJob.exe Task: {B75D107B-F17D-462D-98AB-FD023CBFF920} - \{F556CB33-FC7A-4EA7-AF75-EDBEA9281A80} -> Pas de fichier <==== ATTENTION Task: {BBAD29C2-90D3-4B13-89E8-5E94A0C1AD31} - \{71B43D91-8201-4ED9-8579-7730B78A4FAF} -> Pas de fichier <==== ATTENTION Task: {BDCC0517-957D-484E-9C3C-FA9D1AA68E81} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {C229A7EC-7527-4771-A384-AEB18E113957} - \{A27AFC65-923E-40BB-88F0-1F3116BB9652} -> Pas de fichier <==== ATTENTION Task: {C3F4E163-C0A8-43D2-A9DC-213A818B5311} - \{3B592F82-8512-48DC-95E2-F233664B763D} -> Pas de fichier <==== ATTENTION Task: {C781BE92-06D7-4640-B10A-775566E3B435} - \{F4C54B38-3314-4CA3-AA6E-3024DE861302} -> Pas de fichier <==== ATTENTION Task: {C7E25607-36CB-4C36-B95E-0B94FD625943} - \{B0EDC029-E0F0-43C2-A0C0-5A13841E217F} -> Pas de fichier <==== ATTENTION Task: {CCC5E73A-CE0F-4383-A88B-81D5681DCDE2} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2309373691-3350229377-2939869057-1000UA => C:\Users\Marcel\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-07-03] (Dropbox, Inc.) Task: {CE88E63B-2BE5-46A6-9E2D-365E69816224} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-08-18] (Microsoft Corporation) Task: {D2C7E507-5DEB-42A7-82D4-DBC8A74F0425} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {D49D7180-4A19-4484-A45B-5F18F400F319} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\Windows\ehome\mcupdate.exe Task: {D5E6626B-A795-4578-B4D0-3E17644F1404} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {D616BB0E-2DAA-4929-AE8F-37E768247BBF} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\Windows\ehome\ehPrivJob.exe Task: {D70ED907-D8A7-41DC-A805-BFA29BA7C52D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {DFFB6FBB-2E92-4833-8894-A83A95A72DFA} - \{D52A89E6-4E5C-4CB8-8EC7-D3EF338B3705} -> Pas de fichier <==== ATTENTION Task: {E2304EF9-1BDB-4EFD-B0EC-1D3A9DEE06CF} - \{5A140819-E636-4F5E-ABBF-C5D7A5757BA1} -> Pas de fichier <==== ATTENTION Task: {EA80D46F-E44B-4C84-983A-DC10D60C5EBB} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\Windows\ehome\ehrec.exe Task: {EC80F414-F4A2-406E-A7B7-70704F211331} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\Windows\ehome\mcupdate.exe Task: {EF591931-C224-4BF7-A709-DC40A7EDF136} - \{C4C74838-2BA9-4A03-8A05-927550F4574F} -> Pas de fichier <==== ATTENTION Task: {EFF9DFCB-8F4A-41AA-BEA2-3C841E0DEA49} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {F1C93E2A-EF67-4A3C-97C7-D653CA9350CF} - \{AFB3341E-EB0A-46B9-BE22-9F063F09FAF7} -> Pas de fichier <==== ATTENTION Task: {F32ED8F2-01A7-4701-BCDB-F57283663E65} - \{551F34D3-7371-4643-AA41-C49C3A6F9CAF} -> Pas de fichier <==== ATTENTION Task: {F57F6AE9-5350-4527-B9D1-B73D9363A812} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\Windows\ehome\ehPrivJob.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2309373691-3350229377-2939869057-1000Core.job => C:\Users\Marcel\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2309373691-3350229377-2939869057-1000UA.job => C:\Users\Marcel\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\Users\Marcel\AppData\Roaming\HP Photo Creations\Communicator.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForMarcel.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\ParetoLogic Registration3.job => rundll32.exe C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll Task: C:\WINDOWS\Tasks\ParetoLogic Update Version3 Startup Task.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe Task: C:\WINDOWS\Tasks\ParetoLogic Update Version3.job => C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2011-05-06 18:53 - 2010-11-03 19:30 - 00918144 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe 2011-05-06 18:53 - 2010-12-02 04:15 - 00915584 _____ () C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe 2011-05-06 18:53 - 2010-10-21 11:52 - 00586880 _____ () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe 2016-05-12 00:39 - 2016-05-12 00:39 - 00037808 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDeviceDetection.exe 2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2015-12-22 05:14 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2014-12-08 20:55 - 2014-12-08 20:55 - 01982976 _____ () C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\Pareto_Update3.exe 2016-07-14 00:40 - 2016-07-01 06:48 - 02656408 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2012-12-20 11:14 - 2012-12-20 11:14 - 00566152 _____ () C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe 2016-07-14 00:40 - 2016-07-01 06:48 - 02656408 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-08-28 11:35 - 2016-08-28 11:35 - 01864384 _____ () C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\amd64\ClientTelemetry.dll 2015-12-22 19:32 - 2015-12-07 06:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-14 00:42 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2016-07-14 00:40 - 2016-07-01 05:27 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-07-14 00:40 - 2016-07-01 05:21 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-07-14 00:40 - 2016-07-01 05:22 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-07-14 00:40 - 2016-07-01 05:24 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-05-12 00:39 - 2016-05-12 00:39 - 01088944 _____ () C:\Program Files\GoPro\GoPro Desktop App\GoProDesktopSystemTray.exe 2016-01-15 22:44 - 2016-01-15 22:44 - 00065536 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2016-08-18 12:14 - 2016-08-18 12:51 - 00017408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2016-08-18 12:14 - 2016-08-18 12:51 - 13475840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2016-06-03 10:33 - 2016-06-03 10:35 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll 2016-03-04 13:50 - 2016-03-04 13:58 - 00291328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_16.722.10060.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2016-07-14 00:42 - 2016-07-01 05:47 - 00064512 _____ () C:\Windows\SystemApps\Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy\Microsoft.CloudExperienceHost.dll 2016-06-03 10:35 - 2016-06-03 10:41 - 00173056 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.11.7293.0_x64__8wekyb3d8bbwe\CellNativeClientUniversal.dll 2016-07-05 16:01 - 2016-07-05 16:02 - 04108184 _____ () C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.0.1606.0_x64__8wekyb3d8bbwe\Microsoft.Advertising.dll 2016-03-15 13:44 - 2016-03-15 13:53 - 03128832 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_3.11.7293.0_x64__8wekyb3d8bbwe\Avatars.dll 2011-05-06 18:53 - 2016-08-31 09:03 - 00020992 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\PEbiosinterface32.dll 2011-05-06 18:53 - 2010-06-29 12:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.13\ATKEX.dll 2013-04-12 19:23 - 2013-04-12 19:23 - 00612664 _____ () C:\Program Files (x86)\Panda Security\Panda Security Protection\SQLite3.dll 2014-12-08 20:55 - 2014-12-08 20:55 - 00398848 _____ () C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll 2011-09-15 07:52 - 2011-09-15 07:52 - 00118784 _____ () C:\Program Files (x86)\Orange\Orange Installer\libgcc_s_dw2-1.dll 2011-09-15 07:52 - 2011-09-15 07:52 - 00978958 _____ () C:\Program Files (x86)\Orange\Orange Installer\libstdc++-6.dll 2016-08-28 11:35 - 2016-08-28 11:35 - 01383616 _____ () C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2016-08-28 11:35 - 2016-08-28 11:35 - 00118976 _____ () C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll 2011-11-02 00:26 - 2011-11-02 00:26 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-11-02 00:26 - 2011-11-02 00:26 - 01242472 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2015-12-11 21:01 - 2016-08-06 05:21 - 00035792 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-09-03 14:33 - 2016-08-06 05:21 - 00145864 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-09-03 14:33 - 2016-08-06 05:22 - 00019408 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-09-03 14:33 - 2016-08-06 05:21 - 00116688 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2015-12-11 21:01 - 2016-08-06 05:21 - 00100296 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2015-12-11 21:01 - 2016-08-06 05:21 - 00018888 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\select.pyd 2015-12-11 21:01 - 2016-08-30 23:38 - 00019760 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2015-12-11 21:01 - 2016-08-06 05:21 - 00694224 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00020816 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2015-12-11 21:01 - 2016-08-06 05:22 - 00123856 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 01682760 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00020808 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00105928 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-08-05 19:42 - 2016-08-30 23:38 - 00021312 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00052024 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00038696 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\fastpath.pyd 2016-09-03 14:33 - 2016-08-06 05:19 - 00392144 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2016-09-03 14:33 - 2016-08-06 05:24 - 00020936 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00024528 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32event.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00116176 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32security.pyd 2015-12-11 21:01 - 2016-08-30 23:38 - 00381752 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00124880 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-08-05 19:42 - 2016-08-30 23:38 - 00025424 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00024016 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00175560 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32gui.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00030160 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00043472 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32process.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00048592 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32service.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00057808 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00024016 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00246592 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00026456 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2015-12-11 21:01 - 2016-08-06 05:25 - 00028616 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32ts.pyd 2015-12-11 21:01 - 2016-08-06 05:21 - 00144848 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\_elementtree.pyd 2016-08-05 19:42 - 2016-08-06 05:22 - 00241104 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\_jpegtran.pyd 2016-02-21 17:46 - 2016-08-30 23:38 - 00020800 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-02-21 17:46 - 2016-08-30 23:38 - 00019776 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-02-21 17:46 - 2016-08-30 23:38 - 00020800 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00020280 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2015-12-11 21:01 - 2016-08-30 23:38 - 00023376 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2015-12-11 21:01 - 2016-08-06 05:25 - 00350152 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-02-21 17:46 - 2016-08-30 23:38 - 00022352 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00024392 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-09-03 14:33 - 2016-08-06 05:18 - 00036296 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\librsync.dll 2016-09-03 14:33 - 2016-08-30 23:38 - 00031568 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd 2016-09-03 14:33 - 2016-08-30 23:13 - 00293392 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll 2016-09-03 14:33 - 2016-08-30 23:38 - 00084280 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-09-03 14:33 - 2016-08-30 23:38 - 01826096 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2015-12-11 21:01 - 2016-08-06 05:22 - 00083912 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\sip.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 03928880 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 01972528 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00531248 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00133424 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00224056 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00207672 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-08-05 19:42 - 2016-08-30 23:38 - 00020288 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.user32._winffi_user32.pyd 2016-04-15 20:34 - 2016-08-30 23:38 - 00037192 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd 2015-12-11 21:01 - 2016-08-06 05:24 - 00060880 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\win32print.pyd 2016-08-05 19:42 - 2016-08-30 23:38 - 00024904 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00546096 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00357680 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00042808 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2016-09-03 14:33 - 2016-08-30 23:38 - 00168760 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2016-09-03 14:33 - 2016-08-06 05:29 - 00017864 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\libEGL.dll 2016-09-03 14:33 - 2016-08-06 05:31 - 01631184 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-03-04 23:45 - 2016-08-06 05:34 - 00697304 _____ () C:\Users\Marcel\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-08-05 10:20 - 2016-08-03 02:24 - 01771336 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libglesv2.dll 2016-08-05 10:20 - 2016-08-03 02:23 - 00094024 _____ () C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.116\libegl.dll 2013-09-05 01:14 - 2013-09-05 01:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf 2015-11-11 03:42 - 2015-11-11 03:42 - 01045672 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\Temp:054203E4 [149] AlternateDataStreams: C:\Users\Marcel\Documents\Diaporama.dmsm:Roxio EMC Stream [38] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 04:34 - 2016-08-31 09:03 - 00003226 _RASH C:\WINDOWS\system32\Drivers\etc\hosts 0x2320436F707972696768742028632920313939332D32303039204D6963726F736F667420436F72702E0D0A230D0A23205468697320697320612073616D706C6520484F5354532066696C652075736564206279204D6963726F736F6674205443502F495020666F722057696E646F77732E0D0A230D0A2320546869732066696C6520636F6E7461696E7320746865206D617070696E6773206F662049502061646472657373657320746F20686F7374206E616D65732E20456163680D0A2320656E7472792073686F756C64206265206B657074206F6E20616E20696E646976696475616C206C696E652E2054686520495020616464726573732073686F756C640D0A2320626520706C6163656420696E2074686520666972737420636F6C756D6E20666F6C6C6F7765642062792074686520636F72726573706F6E64696E6720686F7374206E616D652E0D0A2320546865204950206164647265737320616E642074686520686F7374206E616D652073686F756C6420626520736570617261746564206279206174206C65617374206F6E650D0A232073706163652E0D0A230D0A23204164646974696F6E616C6C792C20636F6D6D656E747320287375636820617320746865736529206D617920626520696E736572746564206F6E20696E646976696475616C0D0A23206C696E6573206F7220666F6C6C6F77696E6720746865206D616368696E65206E616D652064656E6F7465642062792061202723272073796D626F6C2E0D0A230D0A2320466F72206578616D706C653A0D0A230D0A232020202020203130322E35342E39342E393720202020207268696E6F2E61636D652E636F6D202020202020202020202320736F75726365207365727665720D0A232020202020202033382E32352E36332E31302020202020782E61636D652E636F6D202020202020202020202020202023207820636C69656E7420686F73740D0A0D0A23206C6F63616C686F7374206E616D65207265736F6C7574696F6E2069732068616E646C65642077697468696E20444E5320697473656C662E0D0A23093132372E302E302E31202020202020206C6F63616C686F73740D0A23093A3A31202020202020202020202020206C6F63616C686F73740D0A0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000D0A0D0A2320756E636865636B795F626567696E0D0A232054686573652072756C657320776572652061646465642062792074686520556E636865636B792070726F6772616D20696E206F7264657220746F20626C6F636B206164766572746973696E6720736F667477617265206D6F64756C65730D0A302E302E302E3020302E302E302E3020232066697820666F72207472616365726F75746520616E64206E65747374617420646973706C617920616E6F6D616C790D0A302E302E302E3020747261636B696E672E6F70656E63616E64792E636F6D2E73332E616D617A6F6E6177732E636F6D0D0A302E302E302E30206D656469612E6F70656E63616E64792E636F6D0D0A302E302E302E302063646E2E6F70656E63616E64792E636F6D0D0A302E302E302E3020747261636B696E672E6F70656E63616E64792E636F6D0D0A302E302E302E30206170692E6F70656E63616E64792E636F6D0D0A302E302E302E30206170692E7265636F6D6D656E64656473772E636F6D0D0A302E302E302E3020696E7374616C6C65722E626574746572696E7374616C6C65722E636F6D0D0A302E302E302E3020696E7374616C6C65722E66696C6562756C6C646F672E636F6D0D0A302E302E302E302064336F78746E31783362386437692E636C6F756466726F6E742E6E65740D0A302E302E302E3020696E6E6F2E62697372762E636F6D0D0A302E302E302E30206E7369732E62697372762E636F6D0D0A302E302E302E302063646E2E66696C65326465736B746F702E636F6D0D0A302E302E302E302063646E2E676F617465617374636163682E75730D0A302E302E302E302063646E2E677574746173746174646B2E75730D0A302E302E302E302063646E2E696E736B696E6D656469612E636F6D0D0A302E302E302E302063646E2E696E7374612E6F6962756E646C6573322E636F6D0D0A302E302E302E302063646E2E696E7374612E706C617962727974652E636F6D0D0A302E302E302E302063646E2E6C6C6F67657466617374636163682E75730D0A302E302E302E302063646E2E6D6F6E74696572612E636F6D0D0A302E302E302E302063646E2E6D7364776E6C642E636F6D0D0A302E302E302E302063646E2E6D7970636261636B75702E636F6D0D0A302E302E302E302063646E2E7070646F776E6C6F61642E636F6D0D0A302E302E302E302063646E2E72696365617465617374636163682E75730D0A302E302E302E302063646E2E73687961706F7461746F2E75730D0A302E302E302E302063646E2E736F6C696D62612E636F6D0D0A302E302E302E302063646E2E7475746F3470632E636F6D0D0A302E302E302E302063646E2E617070726F756E642E62697A0D0A302E302E302E302063646E2E626967737065656470726F2E636F6D0D0A302E302E302E302063646E2E62697370642E636F6D0D0A302E302E302E302063646E2E62697372762E636F6D0D0A302E302E302E302063646E2E63646E64702E636F6D0D0A302E302E302E302063646E2E646F776E6C6F61642E73776565747061636B732E636F6D0D0A302E302E302E302063646E2E6470646F776E6C6F61642E636F6D0D0A302E302E302E302063646E2E76697375616C6265652E6E65740D0A2320756E636865636B795F656E640D0A ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2309373691-3350229377-2939869057-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Marcel\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu is disabled. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\Windows\pss\AsusVibeLauncher.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech Desktop Messenger.lnk => C:\Windows\pss\Logitech Desktop Messenger.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Marcel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup MSCONFIG\startupfolder: C:^Users^Marcel^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2010 - Capture d’écran et lancement.lnk => C:\Windows\pss\OneNote 2010 - Capture d’écran et lancement.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CPMonitor => "C:\Program Files (x86)\Roxio 2010\5.0\CPMonitor.exe" MSCONFIG\startupreg: Desktop Disc Tool => "C:\Program Files (x86)\Roxio 2010\Roxio Burn\RoxioBurnLauncher.exe" MSCONFIG\startupreg: Gadwin PrintScreen 3.1 => C:\Program Files (x86)\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: hpqSRMon => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe MSCONFIG\startupreg: iCloudServices => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe MSCONFIG\startupreg: LDM => C:\Program Files (x86)\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe MSCONFIG\startupreg: MDS_Menu => "C:\Program Files (x86)\Olympus\ib\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Olympus\ib" UpdateWithCreateOnce "Software\OLYMPUS\ib\1.0" MSCONFIG\startupreg: MMTray => C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_tray.exe MSCONFIG\startupreg: NokiaMServer => C:\Program Files (x86)\Common Files\Nokia\MPlatform\NokiaMServer /watchfiles startup MSCONFIG\startupreg: NokiaMusic FastStart => "C:\Program Files (x86)\Nokia\Nokia Music Player\NokiaMusicPlayer.exe" /command:faststart MSCONFIG\startupreg: NokiaSuite.exe => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe -tray MSCONFIG\startupreg: Olympus ib => "C:\Program Files (x86)\Olympus\ib\olycamdetect.exe" /Startup MSCONFIG\startupreg: Orange Installer => "C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe" MSCONFIG\startupreg: PC Suite Tray => "C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe" -onlytray MSCONFIG\startupreg: RoxWatchTray => "C:\Program Files (x86)\Common Files\Roxio Shared\12.0\SharedCOM\RoxWatchTray12.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: RunAIShell => C:\Program Files (x86)\ASUS\AI Manager\AsShellApplication.exe MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe" -s MSCONFIG\startupreg: WD Quick View => C:\Program Files (x86)\Western Digital\WD Quick View\WDDMStatus.exe MSCONFIG\startupreg: XeroxEndeavorBackgroundTask => rundll32.exe xrWCbgnd.dll,LaunchBgTask 1 MSCONFIG\startupreg: zBrowser Launcher => C:\Program Files (x86)\Logitech\iTouch\iTouch.exe HKU\S-1-5-21-2309373691-3350229377-2939869057-1000\...\StartupApproved\StartupFolder: => "HPQTRA08.EXE" HKU\S-1-5-21-2309373691-3350229377-2939869057-1000\...\StartupApproved\Run: => "Gadwin PrintScreen" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) LPort=808 FirewallRules: [{854CC4BE-0E33-4606-8171-3E80E9494D0A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{1925B6B6-631F-4BCB-8185-0FC2C47466AD}] => (Allow) LPort=2869 FirewallRules: [{5C330739-25C9-4CAF-BEC7-CE618B6EE12B}] => (Allow) LPort=1900 FirewallRules: [{55C1E1C1-9B91-4798-ADF9-07A28D8DCFF6}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{1EDC16A7-E855-4751-9808-44DA400AC877}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{8C6EE74F-71BA-4969-A4FA-0F12D52CEE0F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{7E86464A-AAA5-4AA1-ABA9-164316F7B292}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{0D131BDE-64F4-41E0-AEDC-C375BD42289D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{B84ACE7F-0B7E-4A81-A3F2-703655340C1F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{00BF87C0-876E-40EE-99F8-D77490C65C51}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{4AB1282F-4687-441C-8E32-605BD286F57E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{25369DE7-2467-41D2-971B-878D397C7EBA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{435EC15E-AAE3-4731-BC7F-C4420422216F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{61FDC899-E89E-4F8F-996D-F96C26C427D1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{7227B1FE-A926-45FB-9AB7-1A6591CE62FB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{C1C9F435-8418-4CE8-86BF-255E8CC676CA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{3C098FE8-9835-4469-AF59-B338263A6525}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{528E1636-DBC6-410C-A1B6-96094E2475B7}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{852EA5CE-6EEA-4E23-80CD-26A00A17FB3A}] => (Allow) C:\Users\Marcel\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{6AEDAB08-DAE5-461B-B1AD-27A7B6590E09}] => (Allow) C:\Users\Marcel\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{E615093F-353C-49D7-8497-8490E90AF133}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{06236A76-B522-4AB1-96DE-1724911FB47C}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{6E465258-4731-44D4-99A1-C80FAA7996A6}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [TCP Query User{61576226-7D06-4B0C-866A-ED0DD2102149}C:\users\marcel\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\marcel\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{BC9C6F5E-CA37-4A3C-AE1B-7333162C6C9A}C:\users\marcel\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\marcel\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{CEA3BB10-FB59-4E4A-8DBE-FBEB739D8BB5}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{1EF17F0D-AA64-4A85-AB30-81AACF6905B6}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [{44575695-0092-417E-8A15-47DC8E5F321F}] => (Allow) D:\Pinnacle\programs\RM.exe FirewallRules: [{E3DB08CD-D2ED-4F49-8AF6-ADDF84E52A17}] => (Allow) D:\Pinnacle\programs\RM.exe FirewallRules: [{4C511808-A293-41AD-8D7F-3C91C123FCB5}] => (Allow) D:\Pinnacle\programs\NGStudio.exe FirewallRules: [{643CA48A-8F2E-4D08-812F-58D116871D61}] => (Allow) D:\Pinnacle\programs\NGStudio.exe FirewallRules: [{28E0608A-03B0-46DA-AD52-2817708CD76F}] => (Allow) D:\Pinnacle\programs\UMI.exe FirewallRules: [{7CB9EB28-7412-4ECC-AA64-8D3FACF468F5}] => (Allow) D:\Pinnacle\programs\UMI.exe FirewallRules: [{865178AA-7A4B-4B8C-A2A8-77432A372B87}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{E9BEE871-17E9-4BEB-8753-613587BBC3CF}] => (Allow) %systemroot%\WindowsMobile\wmdHost.exe FirewallRules: [{E5982926-65D8-4263-BD59-5EE3A54F4DC7}] => (Allow) LPort=26675 FirewallRules: [{D5B3005F-D3D6-457B-B4DD-AB744BFD0F24}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\DeviceSetup.exe FirewallRules: [{2CDD2CA9-B2E2-41FB-A685-636CC4BBBDF0}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicator.exe FirewallRules: [{6A7AE3B6-7EE6-4FF8-9A84-97E9C4B015C9}] => (Allow) C:\Program Files\HP\HP Deskjet 3520 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{AF1CD87B-538C-44F2-9631-88880FCFB277}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoPro.exe FirewallRules: [{CA47687D-4ECB-4BD2-B497-290C0411B24B}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProMsgBus.exe FirewallRules: [{C41702F0-3FC6-444E-9815-247F8AC72073}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProIDService.exe FirewallRules: [{19CAAA3F-3121-4CBC-84D8-A11BD1B04A81}] => (Allow) C:\Program Files\GoPro\GoPro Desktop App\GoProLauncher.exe FirewallRules: [{5BAB7DC6-C3F3-4E88-988C-9A507AB014D9}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{93E6A713-2BB6-40B7-80E3-B9E3EF7083FD}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{EDC51A33-DC70-42FF-B1B8-E8C4C172016E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{9D01762C-9B0E-4898-9F27-1694CBFA5902}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{D386CB20-A67C-489A-B50A-FF7545A8246A}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe ==================== Points de restauration ========================= 18-08-2016 12:05:42 Point de contrôle planifié 26-08-2016 15:05:21 Supprimé Microsoft AutoRoute 2006 02-09-2016 14:40:06 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Photosmart C6300 series Description: Photosmart C6300 series Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Photosmart C6300 series Description: Photosmart C6300 series Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: HP Service: StillCam Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (09/05/2016 01:45:18 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2016 11:29:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2016 07:00:02 PM) (Source: Windows Backup) (EventID: 4103) (User: ) Description: Échec de la sauvegarde. Raison : une erreur d'écriture s'est produite à l'emplacement de sauvegarde (G:\). Erreur : Emplacement de sauvegarde introuvable ou non valide. Vérifiez-le en passant en revue vos paramètres de sauvegarde. (0x81000006). Error: (09/04/2016 05:09:23 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2016 10:31:40 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2016 09:59:23 AM) (Source: HP Active Health) (EventID: 14) (User: ) Description: Exception while generating JSON: Input string was not in a correct format. Error: (09/04/2016 09:49:24 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.Windows.Photos_8wekyb3d8bbwe!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2016 12:16:44 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/03/2016 07:27:44 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: MARCEL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftSolitaireCollection_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/03/2016 07:07:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante wwahost.exe, version : 10.0.10586.545, horodatage : 0x57a1b702 Nom du module défaillant : ntdll.dll, version : 10.0.10586.306, horodatage : 0x571af2eb Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000002fe34 ID du processus défaillant : 0x1c64 Heure de début de l’application défaillante : 0x01d2060596141a7e Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\wwahost.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 97fe2ab3-8b58-49a2-be96-a60f8928f25d Nom complet du package défaillant : Microsoft.Windows.CloudExperienceHost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Erreurs système: ============= Error: (09/04/2016 11:43:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Accès aux données utilisateur_47b6970 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (09/04/2016 11:43:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Stockage des données utilisateur_47b6970 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (09/04/2016 11:43:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Données de contacts_47b6970 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (09/04/2016 11:43:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_47b6970 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (09/04/2016 11:32:16 PM) (Source: DCOM) (EventID: 10001) (User: MARCEL-PC) Description: Impossible de démarrer un serveur DCOM : App.AppXcc14htf1fp3nt27stc0fcm9dshkn3y7m.mca en tant que Non disponible/Non disponible. L’erreur « 31 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppX4q1azgcmy0qhjw5hwy4c233sbca9jma9.mca Error: (09/04/2016 11:32:16 PM) (Source: DCOM) (EventID: 10001) (User: MARCEL-PC) Description: Impossible de démarrer un serveur DCOM : App.AppXcc14htf1fp3nt27stc0fcm9dshkn3y7m.mca en tant que Non disponible/Non disponible. L’erreur « 31 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppX4q1azgcmy0qhjw5hwy4c233sbca9jma9.mca Error: (09/04/2016 11:32:16 PM) (Source: DCOM) (EventID: 10001) (User: MARCEL-PC) Description: Impossible de démarrer un serveur DCOM : App.AppXcc14htf1fp3nt27stc0fcm9dshkn3y7m.mca en tant que Non disponible/Non disponible. L’erreur « 31 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppX4q1azgcmy0qhjw5hwy4c233sbca9jma9.mca Error: (09/04/2016 09:50:16 AM) (Source: DCOM) (EventID: 10016) (User: MARCEL-PC) Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} et l’APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} au SID Marcel-PC\Marcel de l’utilisateur (S-1-5-21-2309373691-3350229377-2939869057-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/04/2016 09:49:24 AM) (Source: DCOM) (EventID: 10010) (User: MARCEL-PC) Description: Le serveur App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/04/2016 12:39:57 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Accès aux données utilisateur_197b4b8 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. CodeIntegrity: =================================== Date: 2016-09-03 14:07:30.481 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-08-19 10:06:06.286 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-16 10:09:51.592 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-15 00:43:26.745 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-07-14 17:05:39.865 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-20 14:24:18.126 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-19 03:37:25.872 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-06-17 19:15:59.383 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-17 16:55:31.397 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-05-16 10:29:41.653 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz Pourcentage de mémoire utilisée: 43% Mémoire physique - RAM - totale: 8173.22 MB Mémoire physique - RAM - disponible: 4587.5 MB Mémoire virtuelle totale: 16365.22 MB Mémoire virtuelle disponible: 12354.05 MB ==================== Lecteurs ================================ Drive c: (WIN7) (Fixed) (Total:372.16 GB) (Free:143.39 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] Drive d: (DATA) (Fixed) (Total:544.72 GB) (Free:486.25 GB) NTFS Drive f: (WD Unlocker) (CDROM) (Total:0.01 GB) (Free:0 GB) UDF Drive i: (My Book) (Fixed) (Total:3725.99 GB) (Free:2509.87 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: CB5BD2B2) Partition 1: (Not Active) - (Size=14.2 GB) - (Type=1B) Partition 2: (Active) - (Size=372.2 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) Partition 4: (Not Active) - (Size=544.7 GB) - (Type=07 NTFS) Attempted reading MBR returned 0 bytes. Could not read MBR for disk 1. ==================== Fin de Addition.txt ============================