Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 12-11-2016 Exécuté par PASCAL (16-11-2016 14:29:31) Exécuté depuis C:\Users\PASCAL\Downloads Windows 10 Home Version 1607 (X64) (2016-09-11 13:52:47) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3351797039-3650035886-3936132856-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3351797039-3650035886-3936132856-503 - Limited - Disabled) Invité (S-1-5-21-3351797039-3650035886-3936132856-501 - Limited - Disabled) PASCAL (S-1-5-21-3351797039-3650035886-3936132856-1001 - Administrator - Enabled) => C:\Users\PASCAL ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) . . . (Version: 2.1.28.3 - Intel) Hidden . . . (x32 Version: 2.6.1.4 - Intel) Hidden Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Ansel (Version: 375.70 - NVIDIA Corporation) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Assistant Mise à niveau de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17364 - Microsoft Corporation) AVG Zen (Version: 1.111.9 - AVG Technologies) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.23.58 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{8655ce1e-26e9-49c5-87cc-108f0338c3cc}) (Version: 1.2.76.17527 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.76.17527 - Avira Operations GmbH & Co. KG) Hidden Avira System Speedup (HKLM-x32\...\Avira System Speedup_is1) (Version: 3.0.0.3494 - Avira Operations GmbH & Co. KG) BitTorrent (HKLM-x32\...\BitTorrent) (Version: - BitTorrent, Inc) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) calibre (HKLM-x32\...\{E287031B-230C-4127-AA44-598FA9CE3478}) (Version: 2.69.0 - Kovid Goyal) CamStudio (HKLM-x32\...\CamStudio) (Version: - ) CCleaner (HKLM\...\CCleaner) (Version: 5.17 - Piriform) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.7.133.0 - Microsoft Corporation) Centre Souris et Claviers Microsoft (Version: 2.7.133.0 - Microsoft Corporation) Hidden CyberLink PowerDirector Ultimate Suite 15 (HKLM-x32\...\{794F8733-0A6F-494A-B280-682ABCDEE289}) (Version: 15 - CyberLink Corp.) CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 5620 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DFX (HKLM-x32\...\DFX) (Version: 12.021.0.0 - Power Technology) DJHERCULESMIX Products Series drivers (HKLM-x32\...\{33999F1F-EA46-4E55-A239-1BA803235396}) (Version: 1.HDJS.2016 - Guillemot Corporation) DriversCloud.com (64 bits) (HKLM\...\{AEEC522D-38DD-46FD-9367-3E32F51B3A42}) (Version: 10.0.1.0 - Cybelsoft) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Firebird SQL Server - MAGIX Edition (HKLM-x32\...\{39AB2E37-1A55-4292-A5D3-971E9F70D0F8}) (Version: 2.1.32.0 - MAGIX AG) FormatFactory 3.8.0.0 (HKLM-x32\...\FormatFactory) (Version: 3.8.0.0 - Free Time) Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Glary Utilities 5.63 (HKLM-x32\...\Glary Utilities 5) (Version: 5.63.0.84 - Glarysoft Ltd) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.15.281 - SurfRight B.V.) Intel(R) Network Connections 20.7.68.0 (HKLM\...\PROSetDX) (Version: 20.7.68.0 - Intel) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4474 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation) Intel® Driver Update Utility (HKLM-x32\...\{fe2eebd3-ee15-4538-bb19-b627e3f2a911}) (Version: 2.6.1.4 - Intel) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 6.1.0.20 - IObit) iTunes (HKLM\...\{2C49F336-2E86-4407-83E2-16AC65598EF4}) (Version: 12.5.3.16 - Apple Inc.) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Karen's Time Sync (HKLM-x32\...\Karen's Time Sync) (Version: 2.0.0.2 - Karen Kenworthy) Kodi (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\Kodi) (Version: - XBMC-Foundation) Kodi (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Kodi) (Version: - XBMC-Foundation) LeapdroidVM (HKLM-x32\...\LeapdroidVM) (Version: - LeapdroidVM) MAGIX Speed burnR (MSI) (HKLM-x32\...\MX.{CEDB1EB3-E762-4FC1-A0FE-A44B1F45D09B}) (Version: 7.0.1.27 - MAGIX Software GmbH) MAGIX Speed burnR (MSI) (Version: 7.0.1.27 - MAGIX Software GmbH) Hidden MAGIX Vidéo deluxe 2014 Premium (effets de titres) (HKLM-x32\...\MX.{5FDFCBBF-44F5-40B2-B5F3-C42E4C2DB69F}) (Version: 1.0.1.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (effets de titres) (Version: 1.0.1.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Effets de transition) (HKLM-x32\...\MX.{3B812D22-B8EC-4060-B909-FF822FE7612B}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Effets de transition) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Éléments de design) (HKLM-x32\...\MX.{53BBE66D-C843-4E0A-A317-2F0B8FA29485}) (Version: 1.0.1.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Éléments de design) (Version: 1.0.1.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (HKLM-x32\...\MX.{1F904845-815D-4F3A-B7A9-73345873FF3D}) (Version: 13.0.3.14 - MAGIX Software GmbH) MAGIX Vidéo deluxe 2014 Premium (modèles de films) (HKLM-x32\...\MX.{BD329C68-4F9A-4ACD-A2D0-D6D59380E6E7}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (modèles de films) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (NewBlueFX ColorFast) (HKLM-x32\...\MX.{D9D24F5F-1E36-48BE-9419-CF97B34AB063}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (NewBlueFX ColorFast) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (proDAD Heroglyph 4.0) (HKLM-x32\...\MX.{CFD52E6D-2AF5-495C-87E3-4D243FE202E7}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (proDAD Heroglyph 4.0) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Projet de démonstration) (HKLM-x32\...\MX.{D7954E63-6339-47B6-91E5-AA159BB3B6CB}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Projet de démonstration) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Styles Photoshow Maker 1) (HKLM-x32\...\MX.{60308EFA-D8E4-4A36-9DAC-92B19CA82893}) (Version: 1.0.1.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Styles Photoshow Maker 1) (Version: 1.0.1.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Styles Photoshow Maker 2) (HKLM-x32\...\MX.{94E7DFD0-F398-4AA6-843F-199DBB3BCF34}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Styles Photoshow Maker 2) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Styles Soundtrack Maker) (HKLM-x32\...\MX.{4ED07AA5-C9F9-424E-9CC6-E490129886F4}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Styles Soundtrack Maker) (Version: 1.0.0.0 - MAGIX AG) Hidden MAGIX Vidéo deluxe 2014 Premium (Version: 13.0.3.14 - MAGIX Software GmbH) Hidden MAGIX Vidéo deluxe 2014 Premium (Vidéos d'introduction) (HKLM-x32\...\MX.{667E3A8F-4199-4CE7-AFED-7797A6BA721B}) (Version: 1.0.0.0 - MAGIX AG) MAGIX Vidéo deluxe 2014 Premium (Vidéos d'introduction) (Version: 1.0.0.0 - MAGIX AG) Hidden Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Mises à jour NVIDIA 2.13.0.21 (Version: 2.13.0.21 - NVIDIA Corporation) Hidden Molotov (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\Molotov) (Version: 0.9.2 - Molotov) Molotov (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Molotov) (Version: 0.9.2 - Molotov) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 50.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 50.0 (x86 fr)) (Version: 50.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.0.0.6152 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) myCANAL (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\2875949905.player.canalplus.fr) (Version: - player.canalplus.fr) myCANAL (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\2875949905.player.canalplus.fr) (Version: - player.canalplus.fr) NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.5 - NewBlue) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VII for Windows (HKLM-x32\...\NewBlue Video Essentials VII for Windows) (Version: 3.0 - NewBlue) NVIDIA GeForce Experience 3.1.0.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.1.0.52 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 375.70 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 375.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 375.70 - NVIDIA Corporation) NvNodejs (Version: 3.1.0.52 - NVIDIA Corporation) Hidden NvTelemetry (Version: 1.2.0.0 - NVIDIA Corporation) Hidden Orange Inside (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\Orange Inside) (Version: V1.4.3.3 - Orange) Orange Inside (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Orange Inside) (Version: V1.4.3.3 - Orange) Orange Installer (HKLM-x32\...\Orange Installer) (Version: 2.0.0.13 - Orange) Panneau de configuration NVIDIA 375.70 (Version: 375.70 - NVIDIA Corporation) Hidden proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH) proDAD Heroglyph 4.0 (64bit) (HKLM\...\proDAD-Heroglyph-4.0) (Version: 4.0.225.2 - proDAD GmbH) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7936 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform) RegSupreme (HKLM-x32\...\RegSupreme_is1) (Version: - Macecraft Software) Revo Uninstaller Pro 3.1.7 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.7 - VS Revo Group, Ltd.) RogueKiller version 12.8.1.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.8.1.0 - Adlice Software) SHIELD Streaming (Version: 7.1.0330 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.1.0.52 - NVIDIA Corporation) Hidden Skype Web Plugin (HKLM-x32\...\{0A95D1F2-BF33-43E7-A32B-E8089182EAE7}) (Version: 7.23.0.54 - Skype Technologies S.A.) Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.103 - Skype Technologies S.A.) SopCast 4.0.0 (HKLM-x32\...\SopCast) (Version: 4.0.0 - www.sopcast.com) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 3.9.16 - Tweaking.com) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Vegas Pro 13.0 (64-bit) (HKLM\...\{1F535D6E-0BC8-11E5-B2CB-F04DA23A5C58}) (Version: 13.0.453 - Sony) VirtualDJ 8 (HKLM-x32\...\{5A89A21C-6391-4AFC-8502-66F6F7250125}) (Version: 8.0.2325.0 - Atomix Productions) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.11.1 (HKLM\...\VulkanRT1.0.11.1) (Version: 1.0.11.1 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.5.1 (HKLM\...\VulkanRT1.0.5.1) (Version: 1.0.5.1 - LunarG, Inc.) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001_Classes\CLSID\{49ACECA8-A1DF-467E-8FED-CCC810B1434E}\localserver32 -> C:\Users\PASCAL\AppData\Local\SkypePlugin\7.23.0.54\GatewayVersion-x64.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\PASCAL\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001_Classes\CLSID\{7E3A041F-59E4-45ED-85BB-0DC57685CC7B}\InprocServer32 -> C:\Users\PASCAL\AppData\Local\SkypePlugin\7.23.0.54\GatewayActiveX-x64.dll (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\PASCAL\AppData\Local\SkypePlugin\7.23.0.54\EdgeCalling.exe (Skype Technologies S.A.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {011E0CBE-E1FF-46C8-B95D-901BCB5CC116} - System32\Tasks\UnHackMe Task Scheduler => C:\Program Files (x86)\UnHackMe\hackmon.exe [2015-12-15] (Greatis Software) Task: {049B450F-4245-45CC-A9AB-06F6DB3B74DE} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation) Task: {05600198-9D52-484B-B540-40B250836F4E} - System32\Tasks\Microsoft\Windows\orangeinstaller => C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe [2015-01-19] () Task: {0651DA2C-E3C1-4309-B25E-1B9FA5100075} - System32\Tasks\Avira System Speedup Tray => C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.UI.Systray.exe [2016-11-10] (Avira Operations GmbH & Co. KG) Task: {0A94C948-7C8A-4C46-9E10-C10D72525246} - System32\Tasks\{642DE66F-7288-4DD3-8493-71D3009C1BEF} => pcalua.exe -a "C:\ProgramData\Package Cache\{59c4462d-a177-4d44-a95b-deda1be79844}\Avira.OE.Setup.Bundle.exe" -c /uninstall Task: {234CD3D5-AADE-47D6-A084-D2AE9DA8BB81} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation) Task: {2EA7BBD5-009B-49E4-9852-A67ABBAE7468} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {3C0C0FE6-EC3A-4046-8245-59351388E226} - System32\Tasks\USER_ESRV_SVC_WILLAMETTE => Wscript.exe //B //NoLogo "C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\task.vbs" Task: {5AD6B86D-A78B-4CFD-94A8-ED3E105B2052} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2015-12-09] (Microsoft Corporation) Task: {5B831510-2682-4A23-95F6-14358A9AE143} - System32\Tasks\GlaryInitialize 5 => C:\Program Files (x86)\Glary Utilities 5\Initialize.exe [2016-11-04] (Glarysoft Ltd) Task: {61434F91-0713-43C6-B3FA-0DC235103E73} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-09] (Adobe Systems Incorporated) Task: {6D4EBCC9-D777-4F73-9457-EB1188C103D4} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2015-12-09] (Microsoft) Task: {6E4E2787-E98B-4A58-AF3B-C32FEB770011} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-10-25] (NVIDIA Corporation) Task: {7A4044F1-6E11-43C4-B46B-618D2C8EE5DE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation) Task: {7F2B3B6F-A5C9-47E1-A62E-D95AA78F154B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation) Task: {8172A715-CE97-4D02-B7D7-C1D25B191E04} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {86258378-50F0-4A81-B008-5AA26A878990} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-10-25] (NVIDIA Corporation) Task: {8F305A0E-93E7-4D23-A77A-5156B2787A5C} - System32\Tasks\CreateExplorerShellUnelevatedTask => /NOUACCHECK Task: {92D77302-DB33-4C60-B620-AD894629908D} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2016-11-10] (Microsoft Corporation) Task: {98B6EF2D-6B9A-4B3A-B365-65BD97F46F79} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [2016-11-04] (Glarysoft Ltd) Task: {999FC7C2-E668-438B-8D33-BB9EEC3F68C1} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-10-25] (NVIDIA Corporation) Task: {AD4318B4-AF53-46DE-BFD1-A57164957DCF} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [2015-03-12] (Tweaking.com) Task: {B96F3FCE-50C5-4250-9798-6CDD9EF10B29} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-10-25] (NVIDIA Corporation) Task: {BC3A7850-9E2B-4E38-91D0-F0431763A118} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {BC40C933-BFB2-40D3-9456-83207BA5427B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) Task: {BD77AD6C-FC1F-41FB-B634-7607CB72BAE7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {C1565201-AABC-4557-8B0C-DA5C9C06F4B0} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-04-15] (Piriform Ltd) Task: {CF4809D3-2111-460A-AC9D-3F4F348EFC73} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2015-12-09] (Microsoft Corporation) Task: {D1D446B4-7274-45AE-922D-D6BBA238A09E} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation) Task: {E07BE04D-24C8-4AA1-AD88-CA4B94501AE8} - System32\Tasks\Microsoft\Windows\orangeinside => C:\Users\PASCAL\AppData\Roaming\Orange\OrangeInside\one\OrangeInside.exe [2016-05-13] () Task: {E5C509B6-2CC6-4E3A-A215-2A77973F5985} - System32\Tasks\Uninstaller_SkipUac_PASCAL => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-11-01] (IObit) Task: {FCA67196-8F53-4E15-B343-6B93964F396C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2016-07-16] (Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\Uninstaller_SkipUac_PASCAL.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\PASCAL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\Online Help.lnk -> hxxp://www.virtualdj.com/wiki/ Shortcut: C:\Users\PASCAL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ\www.virtualdj.com.lnk -> hxxp://www.virtualdj.com/ ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\Windows\SYSTEM32\ism32k.dll 2016-09-30 07:21 - 2016-09-15 18:25 - 02681200 _____ () C:\Windows\system32\CoreUIComponents.dll 2016-09-01 17:12 - 2016-09-01 17:12 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-10-09 08:05 - 2016-10-25 21:21 - 01148984 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-10-09 08:05 - 2016-10-25 21:21 - 04490808 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2016-10-09 08:05 - 2016-10-25 21:21 - 00420408 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\_nvspserviceplugin64.dll 2016-09-30 07:21 - 2016-09-15 18:25 - 02681200 _____ () C:\Windows\SYSTEM32\CoreUIComponents.dll 2016-09-11 14:57 - 2016-09-11 14:57 - 00959168 _____ () C:\Users\PASCAL\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\amd64\ClientTelemetry.dll 2010-07-15 05:44 - 2010-07-15 05:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2016-08-28 10:41 - 2015-02-27 13:38 - 00721263 _____ () C:\WINDOWS\SysWOW64\WSCM64.dll 2016-09-15 10:51 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-11-09 16:59 - 2016-11-02 11:30 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-11-09 16:58 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-09 16:58 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-09 16:58 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-09 16:58 - 2016-11-02 11:15 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-11-09 16:58 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-09 16:58 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2016-11-05 08:04 - 2016-11-05 08:04 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2016-11-05 08:04 - 2016-11-05 08:04 - 00178688 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2016-11-05 08:04 - 2016-11-05 08:04 - 41608704 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.9.251.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-11-10 15:14 - 2016-06-21 19:30 - 00442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2016-11-10 15:14 - 2016-06-21 19:29 - 00210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2016-11-10 15:14 - 2016-06-21 19:29 - 00059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2015-11-23 13:07 - 2016-10-25 21:21 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-11-10 15:14 - 2016-05-23 21:49 - 00899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll 2016-11-10 15:14 - 2016-10-18 16:57 - 00631072 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll 2016-10-09 08:05 - 2016-10-25 20:57 - 00506424 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2016-10-09 08:05 - 2016-10-25 20:57 - 00255936 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2016-10-09 08:05 - 2016-10-25 20:57 - 02808256 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2016-10-09 08:05 - 2016-10-25 21:21 - 00901688 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-10-09 08:05 - 2016-10-25 21:21 - 03776056 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2016-10-09 08:05 - 2016-10-25 20:57 - 00246840 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2016-10-09 08:05 - 2016-10-25 20:57 - 00436792 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2016-10-09 08:05 - 2016-10-25 20:57 - 00338488 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2016-10-09 08:05 - 2016-10-25 20:57 - 00968248 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2016-11-04 08:25 - 2016-11-04 08:25 - 00086992 _____ () C:\Program Files (x86)\Glary Utilities 5\zlib1.dll 2016-09-30 07:21 - 2016-09-15 18:25 - 02681200 _____ () C:\Windows\System32\CoreUIComponents.dll 2016-09-11 14:56 - 2016-09-11 14:56 - 00679624 _____ () C:\Users\PASCAL\AppData\Local\Microsoft\OneDrive\17.3.6381.0405\ClientTelemetry.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:FCA8C9CD [266] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\amazon.fr -> hxxps://amazon.fr IE trusted site: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\hola.org -> hxxp://hola.org IE trusted site: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\amazon.fr -> hxxps://amazon.fr IE trusted site: HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\hola.org -> hxxp://hola.org ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-08-27 07:24 - 2016-11-14 07:48 - 00000884 ___RA C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 cap.cyberlink.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "Karen's Time Sync.lnk" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "WindowsDefender" HKLM\...\StartupApproved\Run: => "Hercules DJ Series TrayAgent" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "ProductUpdater" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "DelaypluginInstall" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "Orange Installer" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "AceStream" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "Orange Installer" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\StartupApproved\Run: => "AceStream" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [SNMP-In-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-Out-UDP] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-In-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [SNMP-Out-UDP-NoScope] => (Allow) %SystemRoot%\system32\snmp.exe FirewallRules: [{DC3A5574-ADE3-4BD1-AF42-9507EF0A86C6}] => (Block) C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [{B7A6B86A-E46F-4E9A-AD62-D2D2853E8064}] => (Block) C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [UDP Query User{D4B9ECA7-4D5A-49DB-B57F-A5B6C5D56262}C:\program files\leapdroid\vm\leapdroidvm.exe] => (Allow) C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [TCP Query User{B3B0CFDC-68A3-49E3-98DC-9344BB35F182}C:\program files\leapdroid\vm\leapdroidvm.exe] => (Allow) C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [{F8B6C3CE-A74F-45BE-83E5-0BE40B2A09F2}] => (Allow) C:\Program Files (x86)\BitTorrent\bittorrent.exe FirewallRules: [{7505D030-1E52-4817-A802-14403ACD335A}] => (Allow) C:\Program Files (x86)\BitTorrent\bittorrent.exe FirewallRules: [UDP Query User{DA6A01F0-1960-4212-A49D-C247C8EA7665}C:\program files (x86)\bittorrent\bittorrent.exe] => (Allow) C:\program files (x86)\bittorrent\bittorrent.exe FirewallRules: [TCP Query User{37E52A98-B678-4851-9FDD-34881C4DB09E}C:\program files (x86)\bittorrent\bittorrent.exe] => (Allow) C:\program files (x86)\bittorrent\bittorrent.exe FirewallRules: [{282FF318-1FD9-4804-B679-4CF182FDAB82}] => (Block) C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe FirewallRules: [{6C9A9B0B-4F11-4BE1-B26D-C93CA159F5B3}] => (Block) C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe FirewallRules: [UDP Query User{28CB3067-560B-4718-887D-77FE5A3BA78A}C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe] => (Allow) C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe FirewallRules: [TCP Query User{D94DCA36-46C3-494C-927D-9DC538D3F7DD}C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe] => (Allow) C:\users\pascal\appdata\roaming\kodi\userdata\addon_data\program.plexus\acestream\ace_engine.exe FirewallRules: [{D50BF670-74C2-4443-BBD5-8AB3F38ADC4C}] => (Block) C:\program files (x86)\kodi\kodi.exe FirewallRules: [{41C1A45D-9118-4905-8C0E-4E5ED94CF181}] => (Block) C:\program files (x86)\kodi\kodi.exe FirewallRules: [UDP Query User{FADAF703-D232-4039-9CD2-B2571E7411B2}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [TCP Query User{C475101E-9F96-49C4-8028-74F9C9450D2A}C:\program files (x86)\kodi\kodi.exe] => (Allow) C:\program files (x86)\kodi\kodi.exe FirewallRules: [{107823F5-9151-4BBE-99CC-20D1A4B7EA62}] => (Block) C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [{D93B9528-648E-4DF0-A0F3-6FA183147D36}] => (Block) C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [UDP Query User{7FCBFA0D-17B0-4485-BA76-D332005828ED}C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [TCP Query User{FF119F90-C304-47BD-8763-BC8D5B7548D1}C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\pascal\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [{94013383-56BC-45A8-BDD8-BD6D1030BBE8}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Package\PTInstOnline.exe FirewallRules: [{B05AF6CD-D16A-4FAB-BD23-0CD7ACBB008B}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{86164B8C-9995-4D32-94E3-9A2CB3618A26}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{4AFA3A47-F053-4900-8682-8F5C0706B6F9}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{98826D27-7D3B-460A-987E-98425FE65473}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{204F5CD8-E493-4041-9FC6-6B25D8BFA52D}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{E1F61B1A-5ED4-4BB0-8A29-AE94D23ED650}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{0DBB71D5-2C51-466B-BD04-CE526FC460CD}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{9276F108-A772-4D71-86CE-2BE2D2B0ADDE}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{2C68EEB4-3D75-424A-A59C-5531CC8DCE11}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{94CEA441-BCB2-4740-95DF-620F4AFC89B8}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{572DF8CF-D4BC-47E1-B775-9BBE9F175546}] => (Allow) C:\Program Files (x86)\Orange\Orange Installer\OrangeInstaller.exe FirewallRules: [{31676CCB-B37B-4CA2-A819-CC66C3F3AC35}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{030B6576-042B-4B8C-B320-C4F384999BCD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7A61E17A-586E-4686-9AC4-84B8AF522D05}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{2B23FDBE-78BA-43E7-BF9D-F2572F80FC6C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{B3F29615-95A8-4021-823E-95F78313480C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{33CDF9D8-D3CC-48E7-A301-56D8858E6849}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{BB5F48CC-EA79-403E-873E-D4E57F76B47F}] => (Allow) LPort=2869 FirewallRules: [{78AB0B1F-4FD7-48B8-AC24-A00000562CC0}] => (Allow) LPort=1900 FirewallRules: [{B3DBFFF9-914D-4F47-8B34-FC6CE11FD5D3}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [TCP Query User{541561AB-AF37-496D-B222-EB5249DD23B9}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{F70826C3-6629-4B54-8124-AD1A60D8F3BC}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [TCP Query User{0ABE3543-FEDC-40A9-8BF2-F6AC3E4E219F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{18EE42F3-543E-4779-818D-8DC5CA2608FB}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [TCP Query User{CD000821-B36F-4BB9-AB00-C1F01B8F65CC}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [UDP Query User{89847D89-4978-4BCA-BD4B-F11546E7D2DD}C:\program files (x86)\mozilla firefox\plugin-container.exe] => (Allow) C:\program files (x86)\mozilla firefox\plugin-container.exe FirewallRules: [TCP Query User{22F6380A-B7EA-4124-A3BD-47E4E170E670}C:\program files (x86)\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\formatfactory\formatfactory.exe FirewallRules: [UDP Query User{8E2CC171-127A-4BD6-B06F-667B38F77B3D}C:\program files (x86)\formatfactory\formatfactory.exe] => (Allow) C:\program files (x86)\formatfactory\formatfactory.exe FirewallRules: [{60317E82-ACF9-4B10-AF52-1A468B20946C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{6305F21E-F90E-419C-BCB0-D30A3FF5A5B2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{EFEDB6E9-AA46-4647-8833-679FE48BE74F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{DD6EBE92-B674-4594-9F2E-D18BA4128281}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{283D3DA0-4013-4211-9CCB-D65CE3D27C01}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{125EB8B8-6B05-4C93-AA17-B2CE51C7164D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{051D90BA-5D5A-4B2E-B88E-641C6D94B3A1}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{7CE6C250-44F1-4C8D-8E5E-450F0F15C297}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [TCP Query User{FF7AB333-AD35-4DF2-B890-A296D9A74583}C:\program files\guillemot\hdjtray\hdjseries2traybar.exe] => (Allow) C:\program files\guillemot\hdjtray\hdjseries2traybar.exe FirewallRules: [UDP Query User{0F1275AD-E43D-4AE0-8BB0-1BEF33252635}C:\program files\guillemot\hdjtray\hdjseries2traybar.exe] => (Allow) C:\program files\guillemot\hdjtray\hdjseries2traybar.exe FirewallRules: [{73377D8D-0699-482F-A4D7-32233B4967EB}] => (Block) C:\program files\guillemot\hdjtray\hdjseries2traybar.exe FirewallRules: [{1AED2D2C-F231-4B96-9205-C38D993F933D}] => (Block) C:\program files\guillemot\hdjtray\hdjseries2traybar.exe FirewallRules: [TCP Query User{CE2A92C8-8260-4B6C-8170-92D394525605}C:\program files (x86)\karen's power tools\time sync\ptsync.exe] => (Allow) C:\program files (x86)\karen's power tools\time sync\ptsync.exe FirewallRules: [UDP Query User{AB9FA50C-D87D-4829-B914-B884ED6CE358}C:\program files (x86)\karen's power tools\time sync\ptsync.exe] => (Allow) C:\program files (x86)\karen's power tools\time sync\ptsync.exe FirewallRules: [{BA71E21D-3EEF-495F-AF9E-E0EE48708865}] => (Block) C:\program files (x86)\karen's power tools\time sync\ptsync.exe FirewallRules: [{9BED76C2-BED0-41C6-A63A-5D8DFDFD84B0}] => (Block) C:\program files (x86)\karen's power tools\time sync\ptsync.exe FirewallRules: [TCP Query User{2E444B21-9629-422A-9101-7A793D9DB7B8}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [UDP Query User{F364C25B-A645-4A65-9E7A-2ABE6FA1F570}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{A1437B6C-0633-466D-8143-032483DE7386}] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{6E1A90DB-DF8D-4454-90A0-41C9F75B0937}] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{E5856402-04B9-456C-AEA2-37214E4FDC6B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{007C7109-8E02-48F0-B9BC-7B521C370BCC}] => (Allow) C:\Program Files\iTunes\iTunes.exe ==================== Points de restauration ========================= ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Qualcomm Atheros AR9485 Wireless Network Adapter Description: Qualcomm Atheros AR9485 Wireless Network Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Qualcomm Atheros Communications Inc. Service: athr Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Integrated Webcam Description: Périphérique vidéo USB Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Microsoft Service: usbvideo Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/16/2016 02:14:12 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/16/2016 02:14:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante CHXSmartScreen.exe, version : 0.0.0.0, horodatage : 0x57899bb1 Nom du module défaillant : KERNELBASE.dll, version : 10.0.14393.321, horodatage : 0x57f4c4f0 Code d’exception : 0x00000004 Décalage d’erreur : 0x0000000000017788 ID du processus défaillant : 0xed0 Heure de début de l’application défaillante : 0x01d2400b5204be61 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 1a0493d5-69f7-4479-8904-e62cf65ef92d Nom complet du package défaillant : Microsoft.Windows.Apprep.ChxApp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (11/16/2016 02:14:08 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/16/2016 02:14:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante CHXSmartScreen.exe, version : 0.0.0.0, horodatage : 0x57899bb1 Nom du module défaillant : KERNELBASE.dll, version : 10.0.14393.321, horodatage : 0x57f4c4f0 Code d’exception : 0x00000004 Décalage d’erreur : 0x0000000000017788 ID du processus défaillant : 0x1c90 Heure de début de l’application défaillante : 0x01d2400b4e221e77 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 32e0b759-27f9-415f-82ca-7c7e51f84d8a Nom complet du package défaillant : Microsoft.Windows.Apprep.ChxApp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (11/16/2016 02:01:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante microsoftedgecp.exe, version : 11.0.14393.82, horodatage : 0x57a55786 Nom du module défaillant : ntdll.dll, version : 10.0.14393.447, horodatage : 0x5819bc32 Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000f7423 ID du processus défaillant : 0x2434 Heure de début de l’application défaillante : 0x01d23ff2cb7e6265 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\microsoftedgecp.exe Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : c37896c6-f1ba-49e1-acb9-666d3df71ffe Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (11/16/2016 01:59:17 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/16/2016 01:59:16 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante CHXSmartScreen.exe, version : 0.0.0.0, horodatage : 0x57899bb1 Nom du module défaillant : KERNELBASE.dll, version : 10.0.14393.321, horodatage : 0x57f4c4f0 Code d’exception : 0x00000004 Décalage d’erreur : 0x0000000000017788 ID du processus défaillant : 0xe9c Heure de début de l’application défaillante : 0x01d240093c90803d Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 2a82efa1-8b13-4c3f-ba07-2fd09b70172b Nom complet du package défaillant : Microsoft.Windows.Apprep.ChxApp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (11/16/2016 01:58:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/16/2016 01:58:47 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante CHXSmartScreen.exe, version : 0.0.0.0, horodatage : 0x57899bb1 Nom du module défaillant : KERNELBASE.dll, version : 10.0.14393.321, horodatage : 0x57f4c4f0 Code d’exception : 0x00000004 Décalage d’erreur : 0x0000000000017788 ID du processus défaillant : 0xc84 Heure de début de l’application défaillante : 0x01d240092afaddc0 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 56287918-c7ca-4b48-8288-911a0c82af7b Nom complet du package défaillant : Microsoft.Windows.Apprep.ChxApp_1000.14393.0.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (11/16/2016 01:58:45 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy!App avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Erreurs système: ============= Error: (11/16/2016 11:11:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070643 : Mise à jour des définitions pour Windows Defender – KB2267602 (Définition 1.231.2078.0). Error: (11/16/2016 11:01:57 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Windows Defender n’a pas pu démarrer en raison de l’erreur : Windows ne peut pas vérifier la signature numérique de ce fichier. Il est possible qu’une modification matérielle ou logicielle récente ait installé un fichier endommagé ou dont la signature est incorrecte, ou qu’il s’agisse d’un logiciel malveillant provenant d’une source inconnue. Error: (11/16/2016 10:59:24 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service HvHost s’est arrêté avec l’erreur : Un périphérique attaché au système ne fonctionne pas correctement. Error: (11/16/2016 10:59:24 AM) (Source: SNMP) (EventID: 1500) (User: ) Description: Le service SNMP a rencontré une erreur lors de l’accès à la clé de Registre SYSTEM\CurrentControlSet\Services\SNMP\Parameters\TrapConfiguration. Error: (11/16/2016 10:59:24 AM) (Source: NETLOGON) (EventID: 3095) (User: ) Description: Cet ordinateur est configuré en tant que membre d’un groupe de travail, et non en tant que membre d’un domaine. Il n’est pas nécessaire d’exécuter le service Accès réseau dans cette configuration. Error: (11/16/2016 10:59:11 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Service Partage réseau du Lecteur Windows Media dépend du service Windows Search qui n’a pas pu démarrer en raison de l’erreur : Le service n’a pas été démarré. Error: (11/16/2016 10:58:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Cyberlink RichVideo64 Service(CRVS) s’est terminé de façon inattendue pour la 1ème fois. Error: (11/16/2016 10:58:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Avira System Speedup s’est terminé de façon inattendue pour la 1ème fois. Error: (11/16/2016 10:58:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Cliché instantané des volumes s’est terminé de façon inattendue pour la 1ème fois. Error: (11/16/2016 10:58:41 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Intel(R) Rapid Storage Technology s’est terminé de façon inattendue pour la 1ème fois. CodeIntegrity: =================================== Date: 2016-11-16 11:01:57.072 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-16 09:36:30.381 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-15 22:28:38.536 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-15 22:28:40.351 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-15 15:50:26.244 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-15 15:50:22.586 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-15 08:24:21.864 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-14 00:09:36.557 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-13 22:54:21.650 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-11-13 09:59:30.805 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\AVG\Av\avgidsagenta.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-4130T CPU @ 2.90GHz Pourcentage de mémoire utilisée: 69% Mémoire physique - RAM - totale: 3751.45 MB Mémoire physique - RAM - disponible: 1133.48 MB Mémoire virtuelle totale: 6439.45 MB Mémoire virtuelle disponible: 2945.14 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:149.56 GB) (Free:51.67 GB) NTFS Drive d: (Data) (Fixed) (Total:763.69 GB) (Free:558.14 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 28E21DEC) Partition: GPT. ==================== Fin de Addition.txt ============================