Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x86) Version: 31-08-2016 Exécuté par NBA (08-09-2016 11:23:01) Exécuté depuis C:\Users\NBA\Downloads Microsoft Windows 10 Professionnel Version 1511 (X86) (2016-08-05 01:28:08) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-971050915-1518592576-2056344538-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-971050915-1518592576-2056344538-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-971050915-1518592576-2056344538-1002 - Limited - Enabled) Invité (S-1-5-21-971050915-1518592576-2056344538-501 - Limited - Disabled) NBA (S-1-5-21-971050915-1518592576-2056344538-1000 - Administrator - Enabled) => C:\Users\NBA ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Kaspersky Internet Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-971050915-1518592576-2056344538-1000\...\uTorrent) (Version: 3.4.7.42330 - BitTorrent Inc.) Adobe Flash Player 22 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) ASUS Smart Gesture (HKLM\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 4.0.6 - ASUS) ATK Package (HKLM\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0020 - ASUS) Bandicam (HKLM\...\Bandicam) (Version: 2.4.1.901 - Bandisoft.com) Bandisoft MPEG-1 Decoder (HKLM\...\BandiMPEG1) (Version: - Bandisoft.com) CCleaner (HKLM\...\CCleaner) (Version: 5.21 - Piriform) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.2.0.0115 - Disc Soft Ltd) EmbratoriaG1 (HKLM\...\EmbratoriaG1) (Version: V1.1 - Embratoria) Google Update Helper (Version: 1.3.31.5 - Google Inc.) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.38.1036 - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.4.51 - Intel Corporation) Kaspersky Internet Security (HKLM\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab) Kaspersky Internet Security (Version: 16.0.0.614 - Kaspersky Lab) Hidden Microsoft Office Professional Plus 2007 (HKLM\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{4549ceb8-695a-42eb-a183-4820d542a15f}) (Version: 12.0.30501.0 - Microsoft Corporation) Mises à jour NVIDIA 2.11.2.55 (Version: 2.11.2.55 - NVIDIA Corporation) Hidden Mozilla Firefox 48.0.2 (x86 fr) (HKLM\...\Mozilla Firefox 48.0.2 (x86 fr)) (Version: 48.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 48.0.1 - Mozilla) Mp3tag v2.77 (HKLM\...\Mp3tag) (Version: v2.77 - Florian Heidenreich) NVIDIA GeForce Experience 2.11.2.55 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.2.55 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Pilote graphique 364.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 364.72 - NVIDIA Corporation) Package de pilotes Windows - ASUS (ATP) Mouse (06/17/2015 1.0.0.262) (HKLM\...\14588A15B66655338DBCC021FFA81E31DC281859) (Version: 06/17/2015 1.0.0.262 - ASUS) Pale Moon 26.1.1 (x86 en-US) (HKLM\...\Pale Moon 26.1.1 (x86 en-US)) (Version: 26.1.1 - Moonchild Productions) Panneau de configuration NVIDIA 364.72 (Version: 364.72 - NVIDIA Corporation) Hidden PlayReady PC Runtime x86 (HKLM\...\{CCA5EAAD-92F4-4B7A-B5EE-14294C66AB61}) (Version: 1.3.0 - Microsoft Corporation) Pro Evolution Soccer 2016 Update v1.04 (HKLM\...\UHJvRXZvbHV0aW9uU29jY2VyMjAxNg==_is1) (Version: 1 - ) Qualcomm Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Qualcomm Atheros WiFi Driver Installation (HKLM\...\{7D916FA5-DAE9-4A25-B089-655C70EAF607}) (Version: 9.2 - Qualcomm Atheros) Ralink Bluetooth Stack (HKLM\...\{8C98BF76-3490-7E35-B6FB-0AD058733CA4}) (Version: 9.0.727.6 - Ralink Corporation) Ralink RT2860 Wireless LAN Card (HKLM\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309B0}) (Version: 1.2.0.41 - Ralink) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.97.1001.2015 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7571 - Realtek Semiconductor Corp.) Remote Mouse version 3.001 (HKLM\...\{01E4BC6D-3ACC-45E1-8928-C2FF626F63F3}_is1) (Version: 3.001 - Remote Mouse) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.2.55 - NVIDIA Corporation) Hidden Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation) VLC media player (HKLM\...\VLC media player) (Version: 2.2.4 - VideoLAN) WinRAR 5.30 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) Wireless Console 3 (HKLM\...\{19EA33FB-B34E-40EA-8B8A-61743AEB795A}) (Version: 3.0.42 - ASUS) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-971050915-1518592576-2056344538-1000_Classes\CLSID\{0BBFE402-CCA1-4f64-9322-13B66D841049}\InprocServer32 -> C:\Users\NBA\AppData\Local\TechSmith\SnagIt\Accessories\{23102CBF-AC8D-4424-9364-A79738894850}\MSWor (l'élément de données a 23 caractères en plus). CustomCLSID: HKU\S-1-5-21-971050915-1518592576-2056344538-1000_Classes\CLSID\{25D005BF-FE63-4cce-AA25-CE952B1D9381}\InprocServer32 -> C:\Users\NBA\AppData\Local\TechSmith\SnagIt\Accessories\{638B203F-8FB6-49ec-A139-AB8C530F0CAB}\MSPow (l'élément de données a 29 caractères en plus). CustomCLSID: HKU\S-1-5-21-971050915-1518592576-2056344538-1000_Classes\CLSID\{54050FBB-F2AE-404b-8BFD-7EE3EC784A52}\InprocServer32 -> C:\Users\NBA\AppData\Local\TechSmith\SnagIt\Accessories\{18AA4E21-D540-4a3a-9F9F-E6DE33D6F253}\MSExc (l'élément de données a 24 caractères en plus). CustomCLSID: HKU\S-1-5-21-971050915-1518592576-2056344538-1000_Classes\CLSID\{6B1948B3-9547-42F8-9B37-7AA9768134C4}\InprocServer32 -> C:\Users\NBA\AppData\Local\TechSmith\SnagIt\Accessories\{23102CBF-AC8D-4424-9364-A79738894850}\MSWor (l'élément de données a 23 caractères en plus). ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {005F1DC1-00B6-4000-97B1-020129130B6E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {045ACD17-5857-4C3D-9DB3-305FE74DC708} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-05] (Piriform Ltd) Task: {0E5DD9F5-6CEF-4B17-982F-21D446F7B93D} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {18558722-0964-44AD-A8D3-885C99EE01CD} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {212302A7-F303-499D-9A93-F5157293440D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {27E225CF-E8B2-4AB5-B287-8E222655958F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {305263D1-863C-4D64-A757-1EBC58F1AD5F} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {31103B06-9DA8-4CBF-A119-830C35C8C8D1} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {32BD1361-07C3-47CD-ADDD-D66E586DFB2A} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3E2364C3-1DDB-4D3C-9F85-62D9D621FD28} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {46B36FDD-35B7-4ACC-B8C0-1CEEF1AF5CB8} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {4A861FAD-3503-44D2-BFCE-9C20CC90C2D8} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {57DE9C6B-7FA6-45E9-8ABC-6D74DD2FD8A8} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {5D95E164-ABB1-49A4-AF3F-992C0CA53860} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7001CF90-3E3C-44B9-862E-E943EE9CD662} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {745466EE-82F4-43D5-9370-4FA2F11F9364} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [2015-11-10] (Realtek Semiconductor) Task: {78002E1E-9267-49D8-8925-F5E6A77FF247} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {794DAAA2-B0F4-49A6-8951-2119F8CE63D2} - System32\Tasks\RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [2015-11-10] (Realtek Semiconductor) Task: {7B6A10B0-1510-4B6E-87A9-DBF3109A436B} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {86A7DE38-B05D-4E62-80C3-0186F5852A3D} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe [2015-11-10] (Realtek Semiconductor) Task: {8C0876F9-97BE-4EEE-815D-F56FC23BB349} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-02-03] (Google Inc.) Task: {9C90E43E-3F88-463D-8AF6-3116317B6763} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9CED088D-5F77-47AF-AC12-685AD4A40D66} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files\ASUS\ASUS Smart Gesture\AsTPCenter\x86\AsusTPLauncher.exe [2015-07-14] (AsusTek) Task: {A0E2DD64-FAA1-4E0B-8CBD-541D5E459E49} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2016-02-03] (Google Inc.) Task: {C001F5A4-9C88-4D01-A7E4-BC0E72BFFF1A} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {C60A319C-B262-4B5D-995C-4A94F0A2F0EE} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D7A13A5B-7C08-4B05-8332-F168158BD437} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E46F2282-B32F-44E3-83AB-C749A12722C3} - System32\Tasks\{99334163-0375-48E9-A936-62893250C7EB} => pcalua.exe -a E:\Software\Bluetooth\Broadcom\Broadcom_BT_driver_(AW-NB107_NB111_CE123)\Win8_64_12.0.0.6955\Setup.exe -d E:\Software\Bluetooth\Broadcom\Broadcom_BT_driver_(AW-NB107_NB111_CE123)\Win8_64_12.0.0.6955 Task: {E8D34CBC-8E70-44C9-A118-82DEE435538D} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {F28E5435-5B60-44FF-979C-AA633D323ECA} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {F5DEBEC9-6434-41DF-B268-313EEDA5DCC6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2015-10-30 06:44 - 2015-10-30 06:44 - 00149504 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-08-05 02:05 - 2016-03-22 03:15 - 00121280 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll 2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 16.0.0\kpcengine.2.3.dll 2016-08-05 01:56 - 2016-08-05 01:56 - 01862008 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-08-05 01:56 - 2016-08-05 01:56 - 01862008 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-08-24 22:31 - 2016-08-24 22:31 - 01383616 _____ () C:\Users\NBA\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\ClientTelemetry.dll 2016-02-04 22:20 - 2016-03-30 02:28 - 00018880 _____ () C:\Program Files\NVIDIA Corporation\Update Core\detoured.dll 2016-08-24 22:31 - 2016-08-24 22:31 - 00118976 _____ () C:\Users\NBA\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\FileSyncViews.dll 2016-08-08 22:31 - 2016-08-09 00:27 - 00785920 _____ () C:\Program Files\Steam\SDL2.dll 2016-08-08 22:31 - 2015-07-01 23:06 - 04962816 _____ () C:\Program Files\Steam\v8.dll 2016-08-08 22:31 - 2016-08-23 20:33 - 02321184 _____ () C:\Program Files\Steam\video.dll 2016-08-08 22:31 - 2016-01-27 08:49 - 02549760 _____ () C:\Program Files\Steam\libavcodec-56.dll 2016-08-08 22:31 - 2016-01-27 08:49 - 00491008 _____ () C:\Program Files\Steam\libavformat-56.dll 2016-08-08 22:31 - 2016-01-27 08:49 - 00332800 _____ () C:\Program Files\Steam\libavresample-2.dll 2016-08-08 22:31 - 2016-01-27 08:49 - 00442880 _____ () C:\Program Files\Steam\libavutil-54.dll 2016-08-08 22:31 - 2016-01-27 08:49 - 00485888 _____ () C:\Program Files\Steam\libswscale-3.dll 2016-08-08 22:31 - 2015-07-01 23:06 - 01556992 _____ () C:\Program Files\Steam\icui18n.dll 2016-08-08 22:31 - 2015-07-01 23:06 - 01187840 _____ () C:\Program Files\Steam\icuuc.dll 2016-08-08 22:31 - 2016-08-23 20:33 - 00835360 _____ () C:\Program Files\Steam\bin\chromehtml.DLL 2016-08-08 22:31 - 2016-07-04 23:17 - 00266560 _____ () C:\Program Files\Steam\openvr_api.dll 2016-01-06 17:41 - 2016-01-06 17:41 - 00062168 _____ () C:\Program Files\CCleaner\branding.dll 2016-08-08 22:31 - 2016-08-04 21:56 - 49825056 _____ () C:\Program Files\Steam\bin\libcef.dll 2015-10-30 06:45 - 2015-10-30 06:45 - 00164224 _____ () c:\windows\system32\WerEtw.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\97007924.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\97007924.sys => ""="Driver" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:04 - 2016-09-03 16:40 - 00003277 _RASH C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us 0.0.0.0 cdn.solimba.com 0.0.0.0 cdn.tuto4pc.com 0.0.0.0 cdn.appround.biz 0.0.0.0 cdn.bigspeedpro.com 0.0.0.0 cdn.bispd.com Il y a 45 plus de lignes. ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-971050915-1518592576-2056344538-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 188.120.239.115 - 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AGSService => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: ASLDRService => 2 MSCONFIG\Services: ASNB4LDRSvc => 2 MSCONFIG\Services: ATKGFNEXSrv => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: cphs => 3 MSCONFIG\Services: Disc Soft Lite Bus Service => 3 MSCONFIG\Services: DptfParticipantProcessorService => 2 MSCONFIG\Services: DptfPolicyConfigTDPService => 2 MSCONFIG\Services: DptfPolicyCriticalService => 2 MSCONFIG\Services: DptfPolicyLpmService => 2 MSCONFIG\Services: GfExperienceService => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: igfxCUIService2.0.0.0 => 2 MSCONFIG\Services: Intel(R) Capability Licensing Service TCP IP Interface => 3 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: jhi_service => 2 MSCONFIG\Services: LMS => 2 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: NvNetworkService => 2 MSCONFIG\Services: NvStreamNetworkSvc => 3 MSCONFIG\Services: NvStreamSvc => 2 MSCONFIG\Services: nvsvc => 2 MSCONFIG\Services: RemoteMouseService => 2 MSCONFIG\Services: SkypeUpdate => 2 HKLM\...\StartupApproved\Run: => "iTunesHelper" HKU\S-1-5-21-971050915-1518592576-2056344538-1000\...\StartupApproved\Run: => "AceStream" HKU\S-1-5-21-971050915-1518592576-2056344538-1000\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [MSMQ-In-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => (Allow) %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-32bit] => (Allow) LPort=808 FirewallRules: [{2674906B-F571-4138-A721-4DC76D4D255C}] => (Allow) C:\Program Files\Remote Mouse\RemoteMouseCore.exe FirewallRules: [{6B7E0A47-53CE-4046-B400-D4720E8D8665}] => (Allow) C:\Program Files\Remote Mouse\RemoteMouseCore.exe FirewallRules: [{BEF7E49A-81D9-4AE9-9AAA-834F41713FD2}] => (Allow) C:\Program Files\Remote Mouse\RemoteMouse.exe FirewallRules: [{F281A085-29A4-451D-B14D-7A596141885F}] => (Allow) C:\Program Files\Remote Mouse\RemoteMouse.exe FirewallRules: [UDP Query User{7F901854-71CB-47B1-80C7-4E963C36650E}C:\users\nba\downloads\embratoria_g4\embratoria_g4\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g4\embratoria_g4\es.exe FirewallRules: [TCP Query User{62EA6D7A-9287-408A-BE1F-CE8736D362F4}C:\users\nba\downloads\embratoria_g4\embratoria_g4\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g4\embratoria_g4\es.exe FirewallRules: [UDP Query User{517601B8-9787-4CEF-806A-C3115CF33A11}C:\users\nba\appdata\roaming\utorrent\updates\3.4.6_42094.exe] => (Allow) C:\users\nba\appdata\roaming\utorrent\updates\3.4.6_42094.exe FirewallRules: [TCP Query User{A026EAA6-D045-43F8-BFB0-1348C16BF476}C:\users\nba\appdata\roaming\utorrent\updates\3.4.6_42094.exe] => (Allow) C:\users\nba\appdata\roaming\utorrent\updates\3.4.6_42094.exe FirewallRules: [UDP Query User{87A4D061-9929-4173-9C69-F1AAF8A40FC7}C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe FirewallRules: [TCP Query User{1500F040-096F-450B-A05C-210D56517F54}C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe FirewallRules: [UDP Query User{B5BE0311-2D7A-42AF-8A6A-5C7804042C45}C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe FirewallRules: [TCP Query User{23587CD7-F37A-4A82-966E-8F68456E889C}C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe] => (Allow) C:\users\nba\downloads\embratoria_g3\embratoria_g3\es.exe FirewallRules: [UDP Query User{B3E4C406-7E32-47CB-9B81-9C8B79401BE6}C:\users\nba\downloads\embratoriag2_v2.1_stable\embratoriag2_v2.1_stable\es.exe] => (Allow) C:\users\nba\downloads\embratoriag2_v2.1_stable\embratoriag2_v2.1_stable\es.exe FirewallRules: [TCP Query User{769FD1BF-CC9A-4FE1-BDCE-E14FC63F118C}C:\users\nba\downloads\embratoriag2_v2.1_stable\embratoriag2_v2.1_stable\es.exe] => (Allow) C:\users\nba\downloads\embratoriag2_v2.1_stable\embratoriag2_v2.1_stable\es.exe FirewallRules: [UDP Query User{073FBE70-9743-4882-8CA2-085DD01052E2}C:\users\nba\downloads\embratoriag2_beta\embratoriag2_beta\es.exe] => (Allow) C:\users\nba\downloads\embratoriag2_beta\embratoriag2_beta\es.exe FirewallRules: [TCP Query User{BA29269E-780B-44F1-AA63-9A7FB61B0D53}C:\users\nba\downloads\embratoriag2_beta\embratoriag2_beta\es.exe] => (Allow) C:\users\nba\downloads\embratoriag2_beta\embratoriag2_beta\es.exe FirewallRules: [{73016EFC-013A-4A58-A6D3-768700ACEEA2}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{EC7BB102-B8FE-461D-82C1-A82B7020656D}] => (Allow) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{404A3188-2C14-455C-AC82-BC15190F469D}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{13601FC4-9B95-4CD6-8D86-B2E2BB933D04}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{F88868C3-6099-4444-AF25-81D238A640A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{CEC68AE4-7DDB-46A1-8732-67280E40B98B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{FB9946F1-3251-4830-BBEA-576C6CD27EC5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C20DA919-C616-4BD4-BDE1-B6BE6BD5D029}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{3F001F08-9344-4062-A8C9-F949435955E6}C:\program files\embratoria\embratoriag1\embrastreamer.exe] => (Allow) C:\program files\embratoria\embratoriag1\embrastreamer.exe FirewallRules: [UDP Query User{2D64AC20-0FB6-45A1-B5C4-9B77E9750467}C:\program files\embratoria\embratoriag1\embrastreamer.exe] => (Allow) C:\program files\embratoria\embratoriag1\embrastreamer.exe FirewallRules: [TCP Query User{9AB091A7-F387-4FB5-BCB4-9B92A27DFEE5}C:\program files\remote mouse\remotemouse.exe] => (Allow) C:\program files\remote mouse\remotemouse.exe FirewallRules: [UDP Query User{A6CB0D7E-9E27-4014-9F46-0D6DF0697C0F}C:\program files\remote mouse\remotemouse.exe] => (Allow) C:\program files\remote mouse\remotemouse.exe FirewallRules: [{5F802097-C0C8-47DA-9F87-65B1E0F83352}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E813E18A-00E6-48CD-BB36-24AC4B96381A}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{09F5D8F0-EC9C-4604-A239-A198ED8A0A80}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{4B3CA70C-EEA2-404F-94E7-AE5809131327}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BF8E81DA-AEC5-4AD0-B5D1-30B0BCA44ACB}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{FD26C5F6-B7F7-4FA0-82D8-030917461BA8}] => (Allow) C:\Users\NBA\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{994BBCD1-B47E-4ED3-87E4-A8E6892B04BF}C:\program files\google\chrome\application\chrome1.exe] => (Block) C:\program files\google\chrome\application\chrome1.exe FirewallRules: [UDP Query User{FA41FC32-E609-4B81-9E67-E0390E34EB8F}C:\program files\google\chrome\application\chrome1.exe] => (Block) C:\program files\google\chrome\application\chrome1.exe FirewallRules: [{3235A2A9-8DDA-4CB2-8E89-533584015F07}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{89DF698C-F7FD-409D-9159-42250CA0B5CE}] => (Allow) C:\Program Files\Steam\Steam.exe FirewallRules: [{9C10A846-56A9-4A09-92CD-B2C86913D1B0}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe FirewallRules: [{C16096E8-3D8E-45FB-9FEF-F59D1B07D09A}] => (Allow) C:\Program Files\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{8B97F9F3-0827-484C-ABEB-31738BA96D58}C:\program files\pro evolution soccer 2016\pes2016.exe] => (Allow) C:\program files\pro evolution soccer 2016\pes2016.exe FirewallRules: [UDP Query User{14CF6B6E-CAD0-47EB-A849-F206337757C5}C:\program files\pro evolution soccer 2016\pes2016.exe] => (Allow) C:\program files\pro evolution soccer 2016\pes2016.exe FirewallRules: [{737A57EE-3E22-48DD-A7E0-948989D8AA1F}] => (Allow) 㩃啜敳獲乜䅂䅜灰慄慴剜慯業杮獜湳獜湳攮數 FirewallRules: [{43E57FFD-D9B3-4C1F-A206-AA3174BA641E}] => (Allow) 㩃啜敳獲乜䅂䅜灰慄慴剜慯業杮獜湳獜癡略⹰硥e FirewallRules: [{ACC148CC-E331-4945-B08A-13CCE4192C75}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{F8BF4A8A-D3D0-41CF-9D83-69B6DB86BC37}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{92DFF470-428B-463D-842C-B09083244E15}C:\program files\google\chrome\application\chrome1.exe] => (Allow) C:\program files\google\chrome\application\chrome1.exe FirewallRules: [UDP Query User{67E254AB-E800-4451-8A02-122DA1B7BB4A}C:\program files\google\chrome\application\chrome1.exe] => (Allow) C:\program files\google\chrome\application\chrome1.exe ==================== Points de restauration ========================= 03-09-2016 14:11:45 Point de contrôle planifié 04-09-2016 19:00:20 Sauvegarde Windows ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Moniteur Plug-and-Play générique Description: Moniteur Plug-and-Play générique Class Guid: {4d36e96e-e325-11ce-bfc1-08002be10318} Manufacturer: (Types d’écrans standard) Service: monitor Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (09/08/2016 11:21:59 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:21:00 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:20:35 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:20:35 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante ShellExperienceHost.exe, version : 10.0.10586.494, horodatage : 0x5775e644 Nom du module défaillant : combase.dll, version : 10.0.10586.103, horodatage : 0x56a84cbb Code d’exception : 0xc000027b Décalage d’erreur : 0x00166fb1 ID du processus défaillant : 0x2634 Heure de début de l’application défaillante : 0x01d209baa3613cff Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Chemin d’accès du module défaillant: C:\WINDOWS\system32\combase.dll ID de rapport : b2d2dd10-bc64-4c9c-b599-f33ae6eaee5f Nom complet du package défaillant : Microsoft.Windows.ShellExperienceHost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (09/08/2016 11:20:28 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:20:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:18:27 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:18:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:18:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/08/2016 11:18:26 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: NBA-PC) Description: Échec de l’activation de l’application Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Erreurs système: ============= Error: (09/08/2016 11:22:26 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur App.AppXtjcey7sh4wvcw7hy21b0nmp0bq18dyzd.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:21:59 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:21:00 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:20:35 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur App ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:20:28 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:20:26 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:20:26 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur App.AppX2gh66qnf13k8hd987ggawehhqpyh9faw.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:18:27 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:18:26 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/08/2016 11:18:26 AM) (Source: DCOM) (EventID: 10010) (User: NBA-PC) Description: Le serveur App.AppXtjcey7sh4wvcw7hy21b0nmp0bq18dyzd.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2016-09-04 09:33:08.142 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvinit.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-04 09:33:08.072 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-04 08:41:52.267 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2016-09-03 20:21:11.099 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 20:21:10.756 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 20:21:10.357 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 20:21:09.820 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 20:21:09.527 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 20:21:09.504 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-09-03 12:41:48.325 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\nvinit.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-4500U CPU @ 1.80GHz Pourcentage de mémoire utilisée: 52% Mémoire physique - RAM - totale: 3225.2 MB Mémoire physique - RAM - disponible: 1534.93 MB Mémoire virtuelle totale: 3481.2 MB Mémoire virtuelle disponible: 1488.21 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:438.92 GB) (Free:233.9 GB) NTFS Drive d: () (Fixed) (Total:492.06 GB) (Free:58.07 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 764FDF20) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=438.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) Partition 4: (Not Active) - (Size=492.1 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================