Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 10-10-2016 Exécuté par Mathis (13-10-2016 10:22:24) Exécuté depuis C:\Users\Mathis\Desktop Windows 8.1 (Update) (X64) (2014-10-30 16:24:59) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3531046685-3261579373-2195462380-500 - Administrator - Disabled) CCCCCCCCCCCCCCCCCCCC (S-1-5-21-3531046685-3261579373-2195462380-1007 - Limited - Enabled) => C:\Users\CCCCCCCCCCCCCCCCCCCC.PAVILLON15E049S HomeGroupUser$ (S-1-5-21-3531046685-3261579373-2195462380-1005 - Limited - Enabled) Invité (S-1-5-21-3531046685-3261579373-2195462380-501 - Limited - Disabled) Mathis (S-1-5-21-3531046685-3261579373-2195462380-1002 - Administrator - Enabled) => C:\Users\Mathis ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\uTorrent) (Version: 3.4.9.42606 - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.) AMD Catalyst Install Manager (HKLM\...\{F436F474-EBF3-3A9C-AA11-6CBB36FED296}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) AMD VISION Engine Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BrainBread 2 (HKLM\...\Steam App 346330) (Version: - Reperio Studios) BZFlag 2.4.2 32Bit (remove only) (HKLM-x32\...\BZFlag2.4.2_32Bit) (Version: - ) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation) Centre Souris et Claviers Microsoft (Version: 2.2.173.0 - Microsoft Corporation) Hidden Counter-Strike 1.6 (HKLM-x32\...\Counter-Strike 1.6) (Version: - ) Cry of Fear (HKLM-x32\...\Steam App 223710) (Version: - Team Psykskallar) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4.6515 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.9.4928 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.3919 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.10.5422 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.4.3122 - CyberLink Corp.) CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.8.5511 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.6.6117 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dev-C++ (HKLM-x32\...\Dev-C++) (Version: 5.8.3 - Bloodshed Software) Devil's Tuning Fork 1.21 (HKLM-x32\...\{7237264C-7886-41CF-9230-E0E0DCF664AC}_is1) (Version: - DePaul Game Elites) Dirty Bomb (HKLM-x32\...\Steam App 333930) (Version: - Splash Damage®) Dropbox (HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\Dropbox) (Version: 11.4.22 - Dropbox, Inc.) DVDStyler v2.9.2 (HKLM-x32\...\DVDStyler_is1) (Version: - ) Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company) Fable - The Lost Chapters (HKLM-x32\...\InstallShield_{C3C9EB3D-24FA-4462-B784-0EC6AAFCD2DD}) (Version: 1.00.0000 - Microsoft Game Studios) Fable - The Lost Chapters (x32 Version: 1.00.0000 - Microsoft Game Studios) Hidden Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Free Alarm Clock 3.1.0 (HKLM-x32\...\{8ED5A2F1-338F-4608-8AF7-BCD1ADC1E1F7}_is1) (Version: 3.1 - Comfort Software Group) Galerie de photos (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 53.0.2785.143 - Google Inc.) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM-x32\...\{07F6DC37-0857-4B68-A675-4E35989E85E3}) (Version: 6.0.15.1 - Hewlett-Packard Company) HP Connected Music (Meridian - player) (HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\HPConnectedMusic) (Version: 1.1 (build 59) hp - Meridian Audio Ltd) HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{F2481209-98FE-4943-8903-90D19E1B7062}) (Version: 1.2.0.0 - Hewlett-Packard) HP Officejet Pro 6830 Aide (HKLM-x32\...\{EE2F8A1B-4D5F-42B3-B153-C08C78D777B1}) (Version: 34.0.0 - Hewlett Packard) HP Quick Start (HKLM-x32\...\{B9494F9E-5EA9-4C70-9F38-659F5E6C0BF3}) (Version: 1.0.4660.30220 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{79C54A05-F146-4EA0-8A70-D4EFE6181E52}) (Version: 8.3.34.7 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{E4B931AF-C59A-4D92-8767-8E2D5F53144E}) (Version: 12.5.32.37 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{D17A3B70-B75E-4C49-83D6-C17DDF65B35F}) (Version: 1.3.4 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HP Utility Center (HKLM\...\{73237EBB-B26F-4628-8754-4EFE563D72E9}) (Version: 2.1.5 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{EFA01423-3857-468C-B7B6-F30AA08E50BC}) (Version: 1.1.5.1 - Hewlett-Packard Company) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP) Java 8 Update 66 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218066F0}) (Version: 8.0.660.18 - Oracle Corporation) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Left 4 Dead 2 (HKLM-x32\...\Steam App 550) (Version: - Valve) Life Is Strange™ (HKLM\...\Steam App 319630) (Version: - DONTNOD Entertainment) LIMBO (HKLM\...\Steam App 48000) (Version: - Playdead) Loadout (HKLM-x32\...\Steam App 208090) (Version: - Edge of Reality) Logiciel de base du périphérique HP Officejet Pro 6830 (HKLM\...\{59D4E082-C709-4A23-B01A-B5E31115D5CA}) (Version: 33.1.73.49987 - Hewlett-Packard Co.) LSDA Le Retour du Roi tm (HKLM-x32\...\{6E298B0A-558C-4138-0096-740677B382CD}) (Version: - ) Medusa's Labyrinth (HKLM-x32\...\Steam App 436110) (Version: - Guru Games) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Nostale(FR) (HKLM-x32\...\NosTale(FR)_is1) (Version: - Gameforge 4D GmbH) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA® VR Funhouse (HKLM\...\Steam App 468700) (Version: - Lightspeed Studios™) OEM Application Profile (HKLM-x32\...\{548083DD-D99B-2CE1-8D2B-D78BEB834F7A}) (Version: 1.00.0000 - Nom de votre société) OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Nom de votre société) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) OpenOffice 4.0.0 (HKLM-x32\...\{4F8C9861-DDCF-4EE8-978C-35B691C406B3}) (Version: 4.00.9702 - Apache Software Foundation) Painkiller Overdose build 75 (UE) (HKLM-x32\...\Painkiller Overdose_is1) (Version: - DreamCatcher) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.1 - pdfforge) PhotoFiltre 7 (HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\PhotoFiltre 7) (Version: - ) Quick Media Converter HD (HKLM-x32\...\QUICKMEDIACONVERTER) (Version: - ) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.29068 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.12.0906 - REALTEK Semiconductor Corp.) Red Trigger (HKLM\...\Steam App 491130) (Version: - Maxime Vézina) resident evil 4 (HKLM-x32\...\{DFFCDB41-C2DA-47D6-96FF-03C05C0BEA22}) (Version: 1.00.0000 - CAPCOM) Sandboxie 4.18 (64-bit) (HKLM\...\Sandboxie) (Version: 4.18 - Sandboxie Holdings, LLC) Skype™ 7.6 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.6.105 - Skype Technologies S.A.) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.5.3.3 - Synaptics Incorporated) Tom Clancy's Ghost Recon Phantoms - EU (HKLM-x32\...\Steam App 272350) (Version: - Ubisoft Singapore) Unity Web Player (HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\UnityWebPlayer) (Version: 4.6.5f1 - Unity Technologies ApS) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.65 - Nullsoft, Inc) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-3531046685-3261579373-2195462380-1002_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Mathis\AppData\Roaming\Dropbox\bin\DropboxExt64.65536.dll (Dropbox, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01E88671-A141-4C63-84C6-99577D32EECF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0C5D9079-53A1-4649-A7B9-3216ED8A5143} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2012-11-05] (Hewlett-Packard Development Company, L.P.) Task: {1623EE10-8472-4FBF-B25D-315345EE2FDC} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-01-17] (CyberLink) Task: {1998285B-19A6-4BEA-AA21-AEE0D3A4F05B} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {1DAAF2FF-37A1-4526-B137-790A599E54CC} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-09-15] (Microsoft Corporation) Task: {39D40F11-165F-4EF3-BB10-84EC38092684} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-12] (Google Inc.) Task: {5189D0D1-87E1-4C35-B367-B4330C518C2B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis Install => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {5AE83C04-EF70-48D2-A4DE-50411DBFD7E4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2016-05-09] (Hewlett-Packard) Task: {7200471C-B20A-49F0-B7F2-B928C1BBEFF8} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002UA => C:\Users\Mathis\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-10-12] (Dropbox, Inc.) Task: {775E3B21-5E4C-4CEA-8BCF-1940E2B14248} - System32\Tasks\HPCeeScheduleForMathis => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {7C9BEFF8-487B-43A4-9DAD-52FD91FE93FC} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002Core => C:\Users\Mathis\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-28] (Facebook Inc.) Task: {8559DC23-CB9B-4F38-80D6-7A2694C618C9} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-08-18] (HP Inc.) Task: {8C348F72-01A9-45A8-994A-8B6C55053902} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {8FE4D14E-01CD-4D71-AF06-CDF82681C016} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {940FA183-DA6A-4FBF-B123-FD3E30B21FB2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-08-03] (HP Inc.) Task: {A5834C2D-6CF3-4AA2-8E26-1184018154AC} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {AC87422C-FECD-411F-B967-A5911FF63F1D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002UA => C:\Users\Mathis\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-01-28] (Facebook Inc.) Task: {AE53C557-5733-4A84-A4CC-87873F924102} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2016-08-23] (HP Inc.) Task: {B134732F-787C-4B29-A054-DF63B156AE20} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002Core => C:\Users\Mathis\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-10-12] (Dropbox, Inc.) Task: {E7385E6F-45F2-493E-9A4B-F3E61E8A2AE6} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {ECDBBA66-93AE-4DAF-BAD1-7CBFD78A2D2A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-12] (Google Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002Core.job => C:\Users\Mathis\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002UA.job => C:\Users\Mathis\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002Core.job => C:\Users\Mathis\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3531046685-3261579373-2195462380-1002UA.job => C:\Users\Mathis\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForMathis.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Mathis\Desktop\Start Tor Browser.lnk -> Z:\Softs\Tor Browser\Browser\firefox.exe (Mozilla Corporation) -> "hxxp://web-start.org//?ssid=1476189533&a=1051321&src=sh&uuid=9df66d7f-6ca6-489e-aac5-20ea193c46ff" ShortcutWithArgument: C:\Users\Mathis\Desktop\Jeux\resident evil 4.lnk -> Z:\Jeux\Resident Evil 4\launcher.exe () -> "hxxp://web-start.org//?ssid=1476189533&a=1051321&src=sh&uuid=9df66d7f-6ca6-489e-aac5-20ea193c46ff" ShortcutWithArgument: C:\Users\Mathis\Desktop\Jeux\Star Wars - The Old Republic.lnk -> Z:\Jeux\Star Wars-The Old Republic\launcher.exe (BioWare) -> "hxxp://web-start.org//?ssid=1476189533&a=1051321&src=sh&uuid=9df66d7f-6ca6-489e-aac5-20ea193c46ff" ShortcutWithArgument: C:\Users\Mathis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://web-start.org//?ssid=1476189533&a=1051321&src=sh&uuid=9df66d7f-6ca6-489e-aac5-20ea193c46ff" ShortcutWithArgument: C:\Users\Mathis\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> "hxxp://web-start.org//?ssid=1476189533&a=1051321&src=sh&uuid=9df66d7f-6ca6-489e-aac5-20ea193c46ff" ==================== Modules chargés (Avec liste blanche) ============== 2013-04-17 00:50 - 2013-04-17 00:50 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-05-12 11:49 - 2014-05-12 11:49 - 00222720 _____ () Z:\Softs\Notepad++\NppShell_06.dll 2016-10-12 18:34 - 2016-09-25 08:02 - 02279528 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libglesv2.dll 2016-10-12 18:34 - 2016-09-25 08:02 - 00107112 _____ () C:\Program Files (x86)\Google\Chrome\Application\53.0.2785.143\libegl.dll 2013-04-17 00:50 - 2013-04-17 00:50 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll 2016-10-12 18:57 - 2016-09-30 10:54 - 31064768 _____ () C:\Users\Mathis\AppData\Local\Google\Chrome\User Data\PepperFlash\23.0.0.185\pepflashplayer.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-03-29 21:54 - 2015-03-29 21:54 - 00000823 ____N C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\Control Panel\Desktop\\Wallpaper -> Z:\Images\CathédraleHF.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: ) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKLM\...\StartupApproved\Run32: => "4StoryPrePatch" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\StartupFolder: => "Dropbox.lnk" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "Facebook Update" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "SandboxieControl" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "TomTomHOME.exe" HKU\S-1-5-21-3531046685-3261579373-2195462380-1002\...\StartupApproved\Run: => "MyComGames" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{31E98E7F-4B78-47ED-A883-8DBCF2A7A87F}Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [TCP Query User{CBBBFF64-A2C8-4250-9FD5-B7CB892B80F0}Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [{9A8F80D9-6372-4CC1-B992-3815C2196970}] => (Allow) Z:\Softs\Steam\bin\steamwebhelper.exe FirewallRules: [{A4EBF82B-838B-43D4-91FF-4D6609F22E38}] => (Allow) Z:\Softs\Steam\bin\steamwebhelper.exe FirewallRules: [UDP Query User{7434060F-4B18-40D1-A056-4D0DB13EB6CF}C:\users\mathis\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\mathis\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{704672AE-C747-4A99-8324-539ECB362CE2}C:\users\mathis\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\mathis\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{529C4FA8-5B7F-46E6-89A7-D9765EE9A5A3}Z:\jeux\battle.net\hearthstone\hearthstone.exe] => (Allow) Z:\jeux\battle.net\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{C57A8E87-7FEE-4F87-A530-D252DFD1BD76}Z:\jeux\battle.net\hearthstone\hearthstone.exe] => (Allow) Z:\jeux\battle.net\hearthstone\hearthstone.exe FirewallRules: [{7EC391D8-0143-48C5-BE2C-F14A6771FC0F}] => (Allow) C:\Users\Mathis\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{C6D2A5CC-8CC0-4299-A722-C9E7429E306A}] => (Allow) C:\Users\Mathis\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{5D72510C-81AC-4716-93EA-ABB8343274DE}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{02293FDF-96D5-490D-9978-22398228CDD5}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{451B694D-5534-4C3F-B3E7-769FC673C4B5}] => (Allow) C:\Users\Mathis\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [UDP Query User{9F6624AA-4E3B-4C52-B12E-68C2362D893B}Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [TCP Query User{3CAE9FDF-BD90-4DBA-ACEF-A5E911F79B19}Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe] => (Allow) Z:\softs\steam\steamapps\common\tom clancy's ghost recon phantoms - eu\game\pdc-live\ghostreconphantoms.exe FirewallRules: [{FBE191D6-19CE-49DC-80ED-389261D54E5D}] => (Allow) Z:\Softs\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [{64C22018-6437-4ED0-989B-806E3B52F70E}] => (Allow) Z:\Softs\Steam\SteamApps\common\Tom Clancy's Ghost Recon Phantoms - EU\Launcher.exe FirewallRules: [{4B873604-2C79-4B91-B864-DEE0096C9F42}] => (Allow) Z:\Jeux\Battle.net\Hearthstone\Hearthstone.exe FirewallRules: [{1B9AA3BF-9D4F-4EF8-9EAF-5D07DF5AC2D7}] => (Allow) Z:\Jeux\Battle.net\Hearthstone\Hearthstone.exe FirewallRules: [{75D1C21D-70E4-4342-8348-855F6FB63942}] => (Allow) Z:\Jeux\Battle.net\Battle.net.exe FirewallRules: [{CD8CD427-64CE-4018-B1E4-A493EE3E16D1}] => (Allow) Z:\Jeux\Battle.net\Battle.net.exe FirewallRules: [{4E0306A2-926D-402A-B457-355023407A26}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [{0E7B8B7E-86F1-4134-9780-1A0CA727395F}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.beta.2753\Agent.exe FirewallRules: [UDP Query User{34E85565-8479-405D-AF44-54E32350FFCE}Z:\jeux\warcraft iii 1.24\war3.exe] => (Block) Z:\jeux\warcraft iii 1.24\war3.exe FirewallRules: [TCP Query User{FFEDC53F-D4F6-4F60-94FF-BABCA7C86A5E}Z:\jeux\warcraft iii 1.24\war3.exe] => (Block) Z:\jeux\warcraft iii 1.24\war3.exe FirewallRules: [{A1B9A331-75F6-4FA6-BC36-52E841C2EE52}] => (Allow) Z:\Softs\Steam\SteamApps\common\Loadout\Loadout.exe FirewallRules: [{A4DA120E-41B6-4EF6-BF91-20B6DC87707D}] => (Allow) Z:\Softs\Steam\SteamApps\common\Loadout\Loadout.exe FirewallRules: [{952138EF-EB6B-4893-AA6B-5EB78C2E016A}] => (Allow) Z:\Softs\Steam\Steam.exe FirewallRules: [{8DC11C3A-F226-4242-AF6B-3F3FC15487C5}] => (Allow) Z:\Softs\Steam\Steam.exe FirewallRules: [{A762E72A-6C15-475F-BB7F-E5845E2504D6}] => (Allow) C:\Users\Mathis\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{9328FC30-EEB1-49BF-996C-F32CE9B2A93A}] => (Allow) C:\Users\Mathis\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A40B57BF-27A8-4D9A-96FA-1792FD24E472}] => (Allow) Z:\Softs\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{C4549E33-50CD-49D1-AB6F-BC490A8142FC}] => (Allow) Z:\Softs\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{154DC8F4-D3A6-459C-8FE5-7B1E989CDD5E}] => (Allow) Z:\Softs\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{3A0B0854-F1C2-4DE4-AEDE-82FBBB242D90}] => (Allow) Z:\Softs\Steam\SteamApps\common\Left 4 Dead 2\left4dead2.exe FirewallRules: [{38A3459A-C049-4C7D-9EA4-81A84A093430}] => (Allow) Z:\Softs\Steam\Steam.exe FirewallRules: [{DFCBC6B5-B0B8-4298-9EA8-F2B0EFD47EAC}] => (Allow) Z:\Softs\Steam\Steam.exe FirewallRules: [{D2E874F9-CFD8-498A-B3AB-12415079DBAA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{68D2BC0D-A223-4E46-8756-A6280D954967}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{207C82CF-CA4E-4AB1-82B8-5A633F1A1473}] => (Allow) Z:\Softs\Winamp\winamp.exe FirewallRules: [{141ED78E-B0F1-44D2-B589-A35F8FB24C62}] => (Allow) Z:\Softs\Winamp\winamp.exe FirewallRules: [{B82247BF-33F3-4AFE-B9BF-8592B7CF6719}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{38CC477F-69A6-4FE9-A7D8-0A36AB4DC1C4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{9168914F-90C7-492D-8DF4-2DBD4FE851D5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{39AC9E81-2BF5-4F52-B78E-EF4C892DB5F0}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E0ED1CC9-77E3-4383-BB04-70A2291883CC}] => (Allow) LPort=1900 FirewallRules: [{96A966AE-7852-485E-8D3F-856F17D95373}] => (Allow) LPort=2869 FirewallRules: [{78646D02-3789-449F-AAE6-54354565DFAD}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [TCP Query User{3317B9D1-B238-46C9-87AF-AB58B8CA8873}Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe] => (Allow) Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe FirewallRules: [UDP Query User{29CCB1D7-F9AB-46A0-944A-924CC578CC5C}Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe] => (Allow) Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe FirewallRules: [TCP Query User{CDEFC1CE-6D80-4802-8098-F402C54170A0}Z:\jeux\bzflag\bzflag2.4.2_32bit\bzfs.exe] => (Allow) Z:\jeux\bzflag\bzflag2.4.2_32bit\bzfs.exe FirewallRules: [UDP Query User{B00397B7-2FD9-4F26-9097-EDD7259B9F26}Z:\jeux\bzflag\bzflag2.4.2_32bit\bzfs.exe] => (Allow) Z:\jeux\bzflag\bzflag2.4.2_32bit\bzfs.exe FirewallRules: [TCP Query User{6768C329-4412-4400-AFF6-77AE0D9BC48F}Z:\jeux\cs 1.6\c.s 1.6\hl.exe] => (Allow) Z:\jeux\cs 1.6\c.s 1.6\hl.exe FirewallRules: [UDP Query User{874E47D4-38F1-451A-9F27-EAA0148E50BA}Z:\jeux\cs 1.6\c.s 1.6\hl.exe] => (Allow) Z:\jeux\cs 1.6\c.s 1.6\hl.exe FirewallRules: [TCP Query User{8A02558B-1117-4622-BBC2-2728C9F6EC66}Z:\jeux\wolfenstein - enemy territory\et.exe] => (Allow) Z:\jeux\wolfenstein - enemy territory\et.exe FirewallRules: [UDP Query User{ACB8EDC3-F483-41FB-A755-B175C2759A2A}Z:\jeux\wolfenstein - enemy territory\et.exe] => (Allow) Z:\jeux\wolfenstein - enemy territory\et.exe FirewallRules: [TCP Query User{0F7EA075-1223-4306-9EA3-123D9B2B7114}Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe] => (Allow) Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe FirewallRules: [UDP Query User{AC619DFB-235A-4C05-9F3D-48AE3AB4098F}Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe] => (Allow) Z:\jeux\plein de trucs\ok\openarena-0.8.8\openarena.exe FirewallRules: [{90CAFC45-61FA-4917-BAA6-2A287DD63D21}] => (Allow) C:\Users\Mathis\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{12E38406-B476-448D-B369-F13267B60D5B}] => (Allow) C:\Users\Mathis\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{89E3B0BF-3B36-4D31-B7AE-95BA6F9CE44A}] => (Block) %ProgramFiles%\Adobe\Adobe.CC.Anticloud.exe FirewallRules: [{0E175274-9943-4956-93C5-8A119A4F29A4}] => (Block) %ProgramFiles%\Adobe\Adobe.CC.Anticloud.exe FirewallRules: [{E37E1EAF-35E3-47B7-9695-66CA758023DB}] => (Allow) LPort=3306 FirewallRules: [{EA46A54A-775B-47E8-87F4-77F772CF91CC}] => (Allow) LPort=3306 FirewallRules: [{AB097C17-7D80-469A-96F2-CF0835FE5AC8}] => (Allow) C:\Users\Mathis\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{10456CF8-3DE5-4648-B096-5E66F3C54D54}] => (Allow) C:\Users\Mathis\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B7235CEF-9009-47A9-816D-7E5C0086416B}] => (Allow) C:\Users\Mathis\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{780D4A82-5083-4779-B6EA-809E70FA3B02}] => (Block) %ProgramFiles%\Adobe\Adobe.CC.Anticloud.exe FirewallRules: [{C7A5F171-0EAF-4E8D-8D47-319AB649B42D}] => (Allow) Z:\Jeux\Star Wars-The Old Republic\launcher.exe FirewallRules: [{CDB17278-557E-4406-926F-A12C2E60BA21}] => (Allow) Z:\Jeux\Star Wars-The Old Republic\launcher.exe FirewallRules: [{A2A7A4A6-6627-4CE9-9BD5-4AF99C254C94}] => (Allow) Z:\Jeux\Star Wars-The Old Republic\launcher.exe FirewallRules: [{4612CCE0-1661-4246-B5AA-D5A8F505E482}] => (Allow) Z:\Jeux\Star Wars-The Old Republic\launcher.exe FirewallRules: [TCP Query User{E040F18E-219D-4A7C-B20A-F53EFF9CF8AA}Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe] => (Allow) Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe FirewallRules: [UDP Query User{24C0E3B9-1716-4E25-BA4B-DECA81ED9819}Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe] => (Allow) Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe FirewallRules: [TCP Query User{4BD35AA3-95A1-4C3A-8F87-72869D75741D}Z:\jeux\unrealtournament\system\unrealtournament.exe] => (Allow) Z:\jeux\unrealtournament\system\unrealtournament.exe FirewallRules: [UDP Query User{92A057D3-DB1F-4C00-BBC4-9F8CC83ACAB5}Z:\jeux\unrealtournament\system\unrealtournament.exe] => (Allow) Z:\jeux\unrealtournament\system\unrealtournament.exe FirewallRules: [TCP Query User{14920F37-4CE3-4CDE-B1D6-77244FF3D0E3}Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe] => (Allow) Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe FirewallRules: [UDP Query User{C5A5184B-EFC0-4343-AC18-4F2522165AA8}Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe] => (Allow) Z:\jeux\plein de trucs\ok\teeworlds\teeworlds_srv.exe FirewallRules: [TCP Query User{B3AAFEDB-9509-471B-8A3D-08831C9D49AA}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{01577536-ABF3-42F3-9657-22252C11ED71}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{AF4A5CC4-EBEE-4FA9-A47A-FCC99A1CAA8F}] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{8A0997FA-86EC-4B2B-9A5F-B4B46E164DFD}] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{AB9A5C49-246D-43D6-A91C-53149B1D043B}Z:\softs\vlc\vlc.exe] => (Block) Z:\softs\vlc\vlc.exe FirewallRules: [UDP Query User{15374AE6-C37A-475C-8690-919310EB38ED}Z:\softs\vlc\vlc.exe] => (Block) Z:\softs\vlc\vlc.exe FirewallRules: [{31503BF7-BB59-49E1-BC6E-5CAAE2891234}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{CC92CA3E-F79A-4FE1-9C4C-355C62976A9A}Z:\jeux\unrealtournament\system\unrealtournament.exe] => (Allow) Z:\jeux\unrealtournament\system\unrealtournament.exe FirewallRules: [UDP Query User{11BE3358-6594-4CAA-B8BD-9D391BDEED1D}Z:\jeux\unrealtournament\system\unrealtournament.exe] => (Allow) Z:\jeux\unrealtournament\system\unrealtournament.exe FirewallRules: [TCP Query User{3ADAB94A-DBA5-49C8-9305-1E924149E6E4}Z:\softs\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe FirewallRules: [UDP Query User{03676D2D-A4B1-4F6D-8B35-37A42F1FDD63}Z:\softs\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\dirty bomb\binaries\win32\shootergame-win32-shipping.exe FirewallRules: [{0CDB8933-18DB-4092-AD94-30B2E9BAD452}] => (Allow) C:\Program Files\HP\HP Officejet Pro 6830\bin\FaxApplications.exe FirewallRules: [{5199F96C-DAF3-4310-858C-F0387883304D}] => (Allow) C:\Program Files\HP\HP Officejet Pro 6830\bin\DigitalWizards.exe FirewallRules: [{B6A3735F-249D-4FD5-910D-CA718C2B5E21}] => (Allow) C:\Program Files\HP\HP Officejet Pro 6830\bin\SendAFax.exe FirewallRules: [{759A7CE5-929E-4727-A28A-E06B4771319F}] => (Allow) C:\Program Files\HP\HP Officejet Pro 6830\Bin\DeviceSetup.exe FirewallRules: [{DC8AC257-330A-4360-ADE5-41DD3F46478B}] => (Allow) LPort=5357 FirewallRules: [{5687C6A9-425C-4276-92CB-8C7C56AE4A21}] => (Allow) C:\Program Files\HP\HP Officejet Pro 6830\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{51B489F8-E4C5-4BFD-B9FA-427DFF040210}] => (Allow) Z:\Softs\Steam\steamapps\common\Medusa's Labyrinth\Medusa.exe FirewallRules: [{B1937BE7-9FE0-46CF-9362-5925D4E5A4AB}] => (Allow) Z:\Softs\Steam\steamapps\common\Medusa's Labyrinth\Medusa.exe FirewallRules: [TCP Query User{9B75563B-4F02-489C-955B-61470FCD3254}Z:\softs\steam\steamapps\common\medusa's labyrinth\medusa\binaries\win64\medusa-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\medusa's labyrinth\medusa\binaries\win64\medusa-win64-shipping.exe FirewallRules: [UDP Query User{2A805058-CE39-4F1E-9E7E-6D956CD0385F}Z:\softs\steam\steamapps\common\medusa's labyrinth\medusa\binaries\win64\medusa-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\medusa's labyrinth\medusa\binaries\win64\medusa-win64-shipping.exe FirewallRules: [{FCCB45D1-A545-4BD8-BFDD-D81917E9DA28}] => (Allow) Z:\Softs\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{3B968D8C-50AF-4588-8BAE-03EFD5C3E0A0}] => (Allow) Z:\Softs\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [TCP Query User{AE4E68D4-74CE-473B-8C99-63253769D4F4}Z:\softs\steam\steamapps\common\cry of fear\cof.exe] => (Allow) Z:\softs\steam\steamapps\common\cry of fear\cof.exe FirewallRules: [UDP Query User{608C7403-4F49-4517-A946-F9E699F8BAC7}Z:\softs\steam\steamapps\common\cry of fear\cof.exe] => (Allow) Z:\softs\steam\steamapps\common\cry of fear\cof.exe FirewallRules: [{91FE6C67-FD7F-450E-B706-E855C1E09180}] => (Allow) Z:\Softs\Steam\steamapps\common\Limbo\limbo.exe FirewallRules: [{DFDF8780-5B60-45D3-89DF-2C5461E50E2A}] => (Allow) Z:\Softs\Steam\steamapps\common\Limbo\limbo.exe FirewallRules: [{A194DF74-8C16-4B66-9967-D1A22C3875AF}] => (Allow) Z:\Softs\Steam\steamapps\common\NVIDIA VR Funhouse\VRFunhouse.exe FirewallRules: [{C680DEF7-097D-4641-BBBF-48D413803BAF}] => (Allow) Z:\Softs\Steam\steamapps\common\NVIDIA VR Funhouse\VRFunhouse.exe FirewallRules: [{4D5D5C9D-38D5-45C4-A19A-1EB6E55EB8A1}] => (Allow) Z:\Softs\Steam\steamapps\common\Red Trigger\RedTrigger.exe FirewallRules: [{EFDEB37F-9DEB-4327-87CD-155C483F5180}] => (Allow) Z:\Softs\Steam\steamapps\common\Red Trigger\RedTrigger.exe FirewallRules: [{D4697F2B-D42D-4EBF-806E-43731AFBDAE3}] => (Allow) Z:\Softs\Steam\steamapps\common\brainbread2\hl2.exe FirewallRules: [{493EB076-642C-42FC-8EBE-1BBBAC511335}] => (Allow) Z:\Softs\Steam\steamapps\common\brainbread2\hl2.exe FirewallRules: [TCP Query User{DF8E673C-DFB0-45B5-9213-83A9E92AFDC8}Z:\softs\steam\steamapps\common\nvidia vr funhouse\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\nvidia vr funhouse\engine\binaries\win64\ue4game-win64-shipping.exe FirewallRules: [UDP Query User{5B612F70-2021-47E1-A464-D037C7355BB7}Z:\softs\steam\steamapps\common\nvidia vr funhouse\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\nvidia vr funhouse\engine\binaries\win64\ue4game-win64-shipping.exe FirewallRules: [TCP Query User{5CA7C907-6A73-42AC-A39A-19A04DFBBE56}Z:\softs\steam\steamapps\common\red trigger\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\red trigger\engine\binaries\win64\ue4game-win64-shipping.exe FirewallRules: [UDP Query User{A5E3E211-4FE3-4BF1-928C-9331E5BCF84E}Z:\softs\steam\steamapps\common\red trigger\engine\binaries\win64\ue4game-win64-shipping.exe] => (Allow) Z:\softs\steam\steamapps\common\red trigger\engine\binaries\win64\ue4game-win64-shipping.exe FirewallRules: [{7F5ADE67-E03F-4B34-A373-7424ADA8B3D6}] => (Allow) Z:\Softs\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{FEC364A9-D6BB-4F79-B00E-46C0D928FFB6}] => (Allow) Z:\Softs\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe FirewallRules: [{9888329E-D37B-4134-8DCF-0AC334C8EC84}] => (Allow) Z:\Softs\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{A103FE90-1F8F-424B-B8C0-FD6424433C6D}] => (Allow) Z:\Softs\Steam\steamapps\common\Dirty Bomb\Binaries\Win32\ShooterGame-Win32-Shipping.exe FirewallRules: [{BD56035B-C444-466C-AADD-7819E57E19D0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 01-10-2016 16:52:19 HPSF Applying updates 01-10-2016 16:53:55 Configuré Power2Go 10-10-2016 00:56:49 Point de contrôle planifié 13-10-2016 10:16:10 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/13/2016 10:17:31 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddWin32ServiceFiles: Unable to back up image of service ews-httpserver since QueryServiceConfig API failed System Error: Le fichier spécifié est introuvable. . Error: (10/13/2016 10:17:31 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddWin32ServiceFiles: Unable to back up image of service ews-dbserver since QueryServiceConfig API failed System Error: Le fichier spécifié est introuvable. . Error: (10/11/2016 10:37:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante HPWMISVC.exe, version : 1.3.4.0, horodatage : 0x54e2a903 Nom du module défaillant : OLEAUT32.dll, version : 6.3.9600.18434, horodatage : 0x57a61147 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00005310 ID du processus défaillant : 0x6e0 Heure de début de l’application défaillante : 0x01d223ff3410b1c6 Chemin d’accès de l’application défaillante : c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\OLEAUT32.dll ID de rapport : 907837c3-8ff2-11e6-bfbc-a0481c06e9ef Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/01/2016 10:46:32 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante svchost.exe_SSDPSRV, version : 6.3.9600.17415, horodatage : 0x54504177 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000000509 ID du processus défaillant : 0x930 Heure de début de l’application défaillante : 0x01d21b1bb0672b70 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\svchost.exe Chemin d’accès du module défaillant: unknown ID de rapport : 8cb5325c-87b3-11e6-bfb6-a0481c06e9ef Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/30/2016 03:08:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante svchost.exe_FDResPub, version : 6.3.9600.17415, horodatage : 0x54504177 Nom du module défaillant : ntdll.dll, version : 6.3.9600.18438, horodatage : 0x57ae642e Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000032049 ID du processus défaillant : 0xfac Heure de début de l’application défaillante : 0x01d21aa4466c3962 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\svchost.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : ec885373-870e-11e6-bfb6-a0481c06e9ef Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/30/2016 12:48:34 AM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (09/30/2016 12:45:49 AM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (09/29/2016 08:23:42 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (09/29/2016 08:23:39 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Error: (09/29/2016 08:23:37 PM) (Source: ATIeRecord) (EventID: 16391) (User: ) Description: ATI EEU maximum number of session has been surpassed Erreurs système: ============= Error: (10/13/2016 10:23:08 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/13/2016 10:18:07 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/13/2016 08:18:25 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/13/2016 02:47:47 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070643 : Mise à jour des définitions pour Windows Defender – KB2267602 (Définition 1.229.1571.0). Error: (10/13/2016 01:03:19 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/13/2016 01:01:07 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/13/2016 12:59:07 AM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/12/2016 08:49:03 PM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/12/2016 08:11:20 PM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. Error: (10/12/2016 07:59:13 PM) (Source: ipnathlp) (EventID: 1233) (User: ) Description: ICS_IPV6 n’a pas pu configurer la pile IPv6. ==================== Infos Mémoire =========================== Processeur: AMD A4-5150M APU with Radeon(tm) HD Graphics Pourcentage de mémoire utilisée: 40% Mémoire physique - RAM - totale: 5318.26 MB Mémoire physique - RAM - disponible: 3173.49 MB Mémoire virtuelle totale: 10694.26 MB Mémoire virtuelle disponible: 8342.9 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:97.22 GB) (Free:33.44 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (RECOVERY) (Fixed) (Total:22.35 GB) (Free:2.3 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive z: (DONNEES) (Fixed) (Total:810.73 GB) (Free:560.27 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 121C8B01) Partition: GPT. ==================== Fin de Addition.txt ============================