Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 02-12-2016 Exécuté par SAMANGE (04-12-2016 10:20:18) Exécuté depuis C:\Users\SAMANGE\Desktop Windows 10 Home Version 1607 (X64) (2016-11-29 12:26:18) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1475604590-3946034420-1524239207-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1475604590-3946034420-1524239207-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1475604590-3946034420-1524239207-1003 - Limited - Enabled) Invité (S-1-5-21-1475604590-3946034420-1524239207-501 - Limited - Disabled) SAMANGE (S-1-5-21-1475604590-3946034420-1524239207-1001 - Administrator - Enabled) => C:\Users\SAMANGE UpdatusUser (S-1-5-21-1475604590-3946034420-1524239207-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} FW: Avast Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{1F7424F8-F992-48BC-90EF-7C4DB0405E3F}) (Version: 1.7.17.25416 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.7.17.25416 - Alcor Micro Corp.) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{9BC93467-75D1-4AA4-BD58-D9C51D88DFAB}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.) Architecte 3D 19 Ultimate (HKLM-x32\...\{5D6C058E-2CF1-4d65-8F72-AAAEA24C57CE}) (Version: 19.0.0 - Avanquest Software) ASUS AI Recovery (HKLM-x32\...\{38253529-D97D-4901-AE53-5CC9736D3A2E}) (Version: 1.0.13 - ASUS) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.20 - ASUS) ASUS Live Update (HKLM-x32\...\{E657B243-9AD4-4ECC-BE81-4CCF8D667FD0}) (Version: 2.5.9 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.43 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0011 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0030 - ASUS) ASUS Video Magic (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.4710 - CyberLink Corp.) ASUS Video Magic (x32 Version: 6.0.4710 - CyberLink Corp.) Hidden ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 2.0.46.1429 - eCareme Technologies, Inc.) ASUS_N3_Series (HKLM-x32\...\ASUS_N3_Series) (Version: 1.0.0001 - ASUS) AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.3.585 - ASUSTEK) Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS) Avast Internet Security (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software) Batigest Standard (x32 Version: 11.00.00 - Apibâtiment) Hidden Batigest Standard (x32 Version: 11.50.00 - Apibâtiment) Hidden Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.45 - Atheros Communications) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Brother MFL-Pro Suite MFC-J6710DW (HKLM-x32\...\{17795164-3BC1-4D4F-8ADA-65C895EBFC9A}) (Version: 1.0.25.0 - Brother Industries, Ltd.) Canon RAW Codec (HKLM-x32\...\Canon RAW Codec) (Version: 1.8.0.68 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.24 - Piriform) Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Complemento Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink MediaEspresso (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.0.1123_32710 - CyberLink Corp.) CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.) CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3327 - CyberLink Corp.) CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.2312.52 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dropbox (HKU\S-1-5-21-1475604590-3946034420-1524239207-1001\...\Dropbox) (Version: 14.4.19 - Dropbox, Inc.) ELAN Touchpad 11.15.0.18_X64 (HKLM\...\Elantech) (Version: 11.15.0.18 - ELAN Microelectronic Corp.) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - ) EPSON Stylus SX200 Series Printer Uninstall (HKLM\...\EPSON Stylus SX200 Series) (Version: - SEIKO EPSON Corporation) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) ExpressGateCloud (HKLM-x32\...\InstallShield_{36B0DC39-3282-40EB-8587-B875CE46C3A7}) (Version: 2.6.20.110 - VideACE Co.) ExpressGateCloud (x32 Version: 2.6.20.110 - VideACE Co.) Hidden Extension d'application Sage Apibâtiment (HKLM-x32\...\{08549BFD-D589-4024-A803-1D8C8DB7743E}) (Version: 2.0.01 - Sage Apibâtiment) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS) Fresco Logic USB3.0 Host Controller (HKLM\...\{26211D4B-CD06-44C8-BA6E-F937E1692629}) (Version: 3.0.114.13 - Fresco Logic Inc.) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Governor of Poker (HKLM-x32\...\Governor of Poker) (Version: - Oberon Media Inc.) iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2291 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel) iTunes (HKLM\...\{2C49F336-2E86-4407-83E2-16AC65598EF4}) (Version: 12.5.3.16 - Apple Inc.) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Logiciel de téléchargement du Kit-Un-monde-feerique pour Studio (HKLM-x32\...\{574A026B-50C1-4014-B3FC-DBA13F873105}}_is1) (Version: - CDIP) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Messenger 分享元件 (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft Access database engine 2010 (French) (HKLM-x32\...\{90140000-00D1-040C-0000-0000000FF1CE}) (Version: 14.0.6029.1000 - Microsoft Corporation) Microsoft Office « Démarrer en un clic » 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Français (HKLM-x32\...\{90140011-0066-040C-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) MonAlbumPhoto (HKLM-x32\...\MonAlbumPhoto_is1) (Version: 6.3.6.1 - MonAlbumPhoto) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.5.0 - Mozilla) Mozilla Thunderbird 45.5.0 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 45.5.0 (x86 fr)) (Version: 45.5.0 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB973685) (HKLM-x32\...\{859DFA95-E4A6-48CD-B88E-A3E483E89B44}) (Version: 4.30.2107.0 - Microsoft Corporation) Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.) Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA Graphics Driver 265.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 265.96 - NVIDIA Corporation) Panneau de configuration NVIDIA 369.09 (Version: 369.09 - NVIDIA Corporation) Hidden PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.) Parrot Software Update Tool (HKLM-x32\...\Parrot Flash Update Wizard) (Version: - ) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7571 - Realtek Semiconductor Corp.) Safari (HKLM-x32\...\{FA4C2D53-205F-4245-9717-F3761154824D}) (Version: 5.34.57.2 - Apple Inc.) SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden Sage Apibâtiment Batigest Standard (HKLM-x32\...\{99424B33-1B5A-45F5-AB15-255F0C528305}) (Version: 11.50.00 - Apibâtiment) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.3.1.12044_18 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.3.1.12044_18 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.4.0 - SAMSUNG Electronics Co., Ltd.) Scansoft PDF Professional (x32 Version: - ) Hidden SFR - Kit de connexion (HKLM-x32\...\SFR_Kit) (Version: 11.5.2.1 - SFR) SFR - Media Center (HKLM-x32\...\SFR_Media Center) (Version: 10.4.29.0 - SFR) SFR - Mediacenter Evolution (HKLM-x32\...\SFR_Mediacenter Evolution) (Version: 13.2.26.0 - SFR) SonicMaster (HKLM-x32\...\{09BCB9CE-964B-4BDA-AE46-B5A0ABEF1D3F}) (Version: 1.00.0000 - Virage Logic, Corp.) Studio-Scrap : Kit-Esprit-de-famille (HKLM-x32\...\{AE21CB8A-E4E1-4D88-B83E-DC2395AE0491}_is1) (Version: Kit-Esprit-de-famille2010 - CDIP) Studio-Scrap : Kit-Mariage (HKLM-x32\...\{84181C0E-B2AC-48E9-87A4-B24DD0F23BAE}_is1) (Version: Kit-Mariage2009 - CDIP) Studio-Scrap : Kit-Un-monde-feerique (HKLM-x32\...\{E833B790-2578-41DC-909B-5CBC632E6F7B}_is1) (Version: Kit-Un-monde-feerique2009 - CDIP) Studio-Scrap : Textures (HKLM-x32\...\{4EC2E4A7-DCE8-4EE0-B7EB-4EC64C6DBE9D}_is1) (Version: 2010 - CDIP) Studio-Scrap 3 (HKLM-x32\...\{520CF0DA-AD12-4CA6-9D8D-53FF06C11E8C}_is1) (Version: 2010.3 - CDIP) syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables) USB2.0 UVC 2M WebCam (HKLM\...\USB2.0 UVC 2M WebCam) (Version: 5.8.55133.208 - Sonix) VTech Download Agent Library (x32 Version: 1.00.0000 - VTech) Hidden Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.31.0 - ASUS) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.19 - ASUS) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden מסייע Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1475604590-3946034420-1524239207-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\DropboxExt64.3.0.dll (Dropbox, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01C995FF-D178-4E7B-AC4A-9E950006A207} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {0837D897-84CB-4E30-A8DD-807937A81DFC} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {0F1FC558-90E6-41AA-8D37-4FBE69053762} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {148318FC-5974-4508-A415-B3AFD16E5DDB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {283FA24D-5A4D-4A4C-AE31-0EB99F0D6D81} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe Task: {29308477-8F7E-4D4F-92D5-F1534E61B6F5} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3C9616B2-742C-4820-AFAE-F3D2459E9677} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3D966D87-5FE5-4FBC-8E90-DB0F48E454DB} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3E3E65EA-6693-4ACC-947D-206853F50D65} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {42145BE5-4059-431F-919A-1A381C5966DE} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {4605DFF7-C7BB-4E34-8A11-5A5BD482F685} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {63937452-3DD5-498D-874F-45E667B574E8} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2010-11-15] (ASUS) Task: {6454799E-A467-4F70-881E-4C5B66B78103} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-09] (Google Inc.) Task: {67AEA714-E555-4405-9D8B-E611EC08FDED} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-13] (Adobe Systems Incorporated) Task: {6FECF9BE-AED8-4627-80ED-91FF5361960F} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {773492A6-4F08-4DAF-9C1B-778BC17ACAED} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {78588675-6CF3-4E50-B5B1-1EC34EAA2F6B} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7DDF9673-8D0B-4652-B795-1BEAD1206B65} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {86887F3E-0A4D-44BA-B449-5A4493FB6014} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-21] (Adobe Systems Incorporated) Task: {9183B100-4959-4EE8-A503-34578C0AF25B} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe [2007-11-30] () Task: {9249B6D6-E0E1-4B78-A96A-9F419879DA39} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {AA921623-B84A-4EC8-A6DA-5D46323FC6D9} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AC5D1866-6746-4EB8-A7A3-313DDCB3AA15} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {AFA19D27-A362-432A-961F-B43EE7EB013C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-12-02] (ASUS) Task: {B24C1C23-1454-452D-9972-22C4C7E512FE} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1475604590-3946034420-1524239207-1001UA => C:\Users\SAMANGE\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-13] (Dropbox, Inc.) Task: {C12012C5-397F-4104-98C2-396321DCF603} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-09] (Google Inc.) Task: {C2FEF3EB-6093-4A27-A797-D98C786E1D46} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe Task: {C778374C-94FE-41B0-B705-5FC952201AC0} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {D31810ED-2C1B-46D7-987A-5323F2573BCB} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {D60B294A-2494-4F47-B004-A12015EA79D1} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2010-11-24] (CyberLink) Task: {D6EE0CB4-D4B6-4741-9696-7B01B08E8E54} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2015-12-01] (Apple Inc.) Task: {DD548504-31EE-43FF-A573-1E9BCB56DC76} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {E0943CC9-0A97-4A77-AA30-F9A564B4489F} - System32\Tasks\SafeZone scheduled Autoupdate 1480506978 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software) Task: {E959E007-A71C-4952-8EA8-22DE146D6227} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EC96639D-843B-4AC8-B84D-A18D423B2D1E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-11-15] (Piriform Ltd) Task: {F0496437-71B1-4E96-9E9C-3BC2F52CDE46} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {F43D98CD-027F-439B-9616-FA5B60AE991E} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-1475604590-3946034420-1524239207-1001Core => C:\Users\SAMANGE\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-13] (Dropbox, Inc.) Task: {FACB8164-0888-403B-B4E6-7F59329EA90F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FBC8485F-A585-489F-8E2C-C65FEABC1BEF} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {FFEE4F98-789F-4BC5-9EBF-91D4AC658C46} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1475604590-3946034420-1524239207-1001Core.job => C:\Users\SAMANGE\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-1475604590-3946034420-1524239207-1001UA.job => C:\Users\SAMANGE\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2011-01-17 22:16 - 2011-01-17 22:16 - 00091464 _____ () C:\ExpressGateUtil\VAWinService.exe 2013-02-06 16:18 - 2010-03-16 00:04 - 00143360 ____R () C:\WINDOWS\system32\BrSNMP64.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:17 - 2016-10-05 18:17 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2011-04-21 12:42 - 2009-04-17 11:01 - 00247152 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-11-29 10:39 - 2016-11-29 10:39 - 02681200 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-11-29 11:06 - 2016-08-01 13:54 - 00133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-11-29 10:39 - 2016-11-29 10:39 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-11-29 10:39 - 2016-11-29 10:39 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-11-29 13:39 - 2016-11-29 13:39 - 01864384 _____ () C:\Users\SAMANGE\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\amd64\ClientTelemetry.dll 2010-03-16 02:48 - 2010-03-16 02:48 - 00148816 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\EcaremeDLL.dll 2016-11-29 11:15 - 2016-11-29 11:15 - 00030032 _____ () C:\WINDOWS\assembly\GAC_MSIL\SqliteShared\1.0.3726.20828__0d0f4b69e50e559b\SqliteShared.dll 2016-11-29 11:15 - 2016-11-29 11:15 - 00931840 _____ () C:\WINDOWS\assembly\GAC_64\System.Data.SQLite\1.0.60.0__db937bc2d44ff139\System.Data.SQLite.dll 2016-11-29 10:40 - 2016-11-29 10:40 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-11-29 10:40 - 2016-11-29 10:40 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-11-29 10:42 - 2016-11-29 10:42 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-29 10:42 - 2016-11-29 10:42 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-29 10:41 - 2016-11-29 10:41 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-29 10:42 - 2016-11-29 10:42 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-11-29 10:42 - 2016-11-29 10:42 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-29 10:41 - 2016-11-29 10:41 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-06-01 21:00 - 2015-06-01 21:00 - 00102912 _____ () C:\Windows\System32\IccLibDll_x64.dll 2010-03-16 02:48 - 2010-03-16 02:48 - 01754448 _____ () C:\Program Files (x86)\ASUS\ASUS WebStorage\SERVICE\AsusWSService.exe 2010-09-24 00:53 - 2010-09-24 00:53 - 01601536 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2011-01-17 22:16 - 2011-01-17 22:16 - 00191304 _____ () C:\ExpressGateUtil\VAWinAgent.exe 2016-11-30 12:11 - 2016-11-30 12:11 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-12-02 08:46 - 2016-12-02 08:46 - 03129808 _____ () C:\Program Files\AVAST Software\Avast\defs\16120100\algo.dll 2016-11-30 12:11 - 2016-11-30 12:11 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2010-12-25 03:12 - 2010-12-25 03:12 - 00157000 _____ () C:\ExpressGateUtil\libexpat.dll 2011-01-04 01:27 - 2011-01-04 01:27 - 00061768 _____ () C:\ExpressGateUtil\netProfileDatabase.DLL 2007-09-16 09:39 - 2007-09-16 09:39 - 00073728 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\libFLAC++.dll 1979-12-31 23:00 - 1979-12-31 23:00 - 00729088 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\libofa.dll 2007-09-16 09:39 - 2007-09-16 09:39 - 00155648 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\libFLAC.dll 1979-12-31 23:00 - 1979-12-31 23:00 - 01397263 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\libfftw3-3.dll 2011-06-07 00:30 - 2011-06-07 00:30 - 00308224 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\axvlc.dll 2011-06-07 00:30 - 2011-06-07 00:30 - 00101376 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\libvlc.dll 2011-06-07 00:30 - 2011-06-07 00:30 - 02263552 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\libvlccore.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00046592 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libaout_directx_plugin.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00067072 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libdirectx_plugin.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00210944 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libdshow_plugin.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00046592 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libwaveout_plugin.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00033792 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libmemcpymmxext_plugin.dll 2011-06-07 00:29 - 2011-06-07 00:29 - 00046592 _____ () C:\Program Files (x86)\SFR\Mediacenter Evolution\VLC\plugins\libhotkeys_plugin.dll 2016-10-05 18:18 - 2016-10-05 18:18 - 01041720 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2016-10-05 18:18 - 2016-10-05 18:18 - 00080184 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2016-11-29 13:38 - 2016-11-29 13:38 - 01383616 _____ () C:\Users\SAMANGE\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\ClientTelemetry.dll 2016-11-29 13:38 - 2016-11-29 13:38 - 00118976 _____ () C:\Users\SAMANGE\AppData\Local\Microsoft\OneDrive\17.3.6517.0809_1\FileSyncViews.dll 2016-11-13 16:28 - 2016-10-10 17:29 - 00035792 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00145864 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\pyexpat.pyd 2016-11-13 16:27 - 2016-10-10 17:29 - 00019408 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\faulthandler.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00116688 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\pywintypes27.dll 2016-11-13 16:28 - 2016-10-10 17:29 - 00100296 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\_ctypes.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00018888 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\select.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00019760 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00694224 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\unicodedata.pyd 2016-11-13 16:27 - 2016-11-07 23:58 - 00020816 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd 2016-11-13 16:28 - 2016-10-10 17:30 - 00123856 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd 2016-11-13 16:27 - 2016-11-07 23:58 - 01682760 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd 2016-11-13 16:27 - 2016-11-07 23:58 - 00020808 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00105928 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32api.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00021312 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.crt.compiled._winffi_crt.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00052024 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd 2016-11-13 16:27 - 2016-11-07 23:59 - 00038696 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\fastpath.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00392144 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\pythoncom27.dll 2016-11-13 16:28 - 2016-10-10 17:31 - 00020936 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\mmapfile.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00024528 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32event.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00116176 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32security.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00381752 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00124880 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32file.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00025424 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.kernel32.compiled._winffi_kernel32.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00024016 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32clipboard.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00175560 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32gui.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00030160 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32pipe.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00043472 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32process.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00048592 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32service.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00057808 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32evtlog.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00024016 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32profile.pyd 2016-11-13 16:27 - 2016-11-07 23:58 - 00246592 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd 2016-11-13 16:27 - 2016-11-07 23:59 - 00026456 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd 2016-11-13 16:28 - 2016-10-10 17:30 - 00241104 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\_jpegtran.pyd 2016-11-13 16:27 - 2016-11-07 23:58 - 00020280 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00028616 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32ts.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00023376 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00020800 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00019776 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00020800 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00350152 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winxpgui.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00022352 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00024392 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd 2016-11-13 16:28 - 2016-10-10 17:27 - 00036296 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\librsync.dll 2016-11-13 16:27 - 2016-11-07 23:59 - 00031568 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\enterprise_data.compiled._enterprise_data.pyd 2016-11-13 16:27 - 2016-11-07 23:49 - 00293392 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\EnterpriseDataAdapter.dll 2016-11-13 16:27 - 2016-11-07 23:59 - 00084280 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL 2016-11-13 16:28 - 2016-11-07 23:59 - 01826096 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd 2016-11-13 16:28 - 2016-10-10 17:29 - 00083912 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\sip.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00531248 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 03928880 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 01972528 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00133424 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00224056 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00207672 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00020288 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.user32._winffi_user32.pyd 2016-11-13 16:27 - 2016-10-10 17:33 - 00017864 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\libEGL.dll 2016-11-13 16:28 - 2016-10-10 17:34 - 01631184 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2016-11-13 16:28 - 2016-11-07 23:59 - 00042808 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00168760 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00357680 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd 2016-11-13 16:28 - 2016-10-10 17:31 - 00060880 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\win32print.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00037192 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\windisplaytoast.compiled._DisplayToast.pyd 2016-11-13 16:28 - 2016-11-07 23:59 - 00024904 _____ () C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\winffi.winhttp.compiled._winffi_winhttp.pyd 2016-11-30 12:11 - 2016-11-30 12:11 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1475604590-3946034420-1524239207-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: KiesAirMessage => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup MSCONFIG\startupreg: KiesHelper => C:\Program Files (x86)\Samsung\Kies\KiesHelper.exe /s MSCONFIG\startupreg: KiesPDLR => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Nuance PDF Reader-reminder => "C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe" -r "C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RemoteControl10 => "C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe" MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: Setwallpaper => c:\programdata\SetWallpaper.cmd MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: UpdatePSTShortCut => "C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\Cyberlink\DVD Suite" UpdateWithCreateOnce "Software\CyberLink\PowerStarter" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [MSMQ-In-TCP] => %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-TCP] => %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-In-UDP] => %systemroot%\system32\mqsvc.exe FirewallRules: [MSMQ-Out-UDP] => %systemroot%\system32\mqsvc.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => LPort=808 FirewallRules: [{3FFEEF87-18B3-4181-9B56-1C1770966BF5}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [{37614432-CAAF-4147-BD86-265A32944166}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{FFB0B4D5-94A3-4C16-BBA3-4BF53B7ACEA6}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{80C8106A-18E3-4F07-A5C8-D7F610175215}] => C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{465423EC-0915-46CA-BA76-A9FC64226E5C}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{DA78110C-2370-4EB5-9B93-16E4CC27C9EF}] => LPort=2869 FirewallRules: [{53158159-126F-443C-8507-1D4526A6A587}] => LPort=1900 FirewallRules: [{5345F2F6-1E95-470E-883C-D25315BE7F08}] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{B6CE2B8A-3326-4CC7-A7B0-A840B904C03F}] => C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{3B2D6E27-6F8A-47D0-8F73-7AA9B9DB2770}] => LPort=5353 FirewallRules: [{1DEF9043-1413-470B-B7AC-463B9A6D6772}] => LPort=8182 FirewallRules: [{5BE7E696-3EA7-4386-9A95-4FA5DDA7174A}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{AE0CCA7E-92D6-483C-AFDD-B1522BE865B6}] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{4FCDA515-8D65-45E4-A828-2154A144734F}] => C:\Program Files (x86)\CyberLink\PowerDirector\PDR8.EXE FirewallRules: [{79E1007B-7711-4F09-B46E-6CA8CF18A697}] => C:\Program Files (x86)\Cyberlink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{11CADE7E-BB0E-4F42-BCFB-AEE3A4FBA522}] => C:\Program Files (x86)\Cyberlink\PowerDVD10\PowerDVD10.EXE FirewallRules: [TCP Query User{1C040B0F-4F59-4E98-8C6E-61BD05510D43}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [UDP Query User{B464EC4B-ED06-49DD-B81D-3A490F22F15A}C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe] => C:\program files (x86)\syncables\syncables desktop\jre\bin\javaw.exe FirewallRules: [{BFFF0EF9-D5B8-4400-8A18-4884E7CD405C}] => C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{DC270DD2-0586-46F2-B76B-CB0C12B16658}] => C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{F07ADD7C-688F-461C-BCD6-AB255C26683A}] => C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{6DF854F1-9584-485D-8360-1D9DE31BB8D3}] => C:\Users\SAMANGE\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [TCP Query User{DA747EC6-F392-4835-BDDF-8330FA9EBD83}C:\users\samange\appdata\roaming\dropbox\bin\dropbox.exe] => C:\users\samange\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{C8D74485-245F-42E9-B79C-3807549E41AF}C:\users\samange\appdata\roaming\dropbox\bin\dropbox.exe] => C:\users\samange\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{A6C7AE38-144B-40D8-B460-2FAC3D824229}] => C:\Program Files (x86)\Protected Search\ProtectedSearch.exe FirewallRules: [{AAFDE62B-0B8B-42C1-812E-BCC346DE5000}] => C:\Program Files (x86)\Protected Search\ProtectedSearch.exe FirewallRules: [{905FAD89-8196-411E-8840-69FD3F36DC7E}] => LPort=54925 FirewallRules: [{9F6F9BF3-4244-492B-9F04-A0549447338E}] => C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe FirewallRules: [{5324D213-46F7-4F32-9808-09B7F3273C69}] => C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe FirewallRules: [{0637D5E8-4ACC-4350-92C5-6C3146A33BBC}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{51C9C454-2423-42A9-90F6-703173B1C1F8}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{77809207-517A-4B34-A3A3-4C2B647F2337}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4E55D08A-5C41-40AA-BF25-4A90EE1D379B}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{C99627C9-71B6-4306-9C57-C595E3F0F704}] => C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [{78704489-47C1-4891-A0C9-DDCFDA782635}] => C:\Program Files\AVAST Software\Avast\ng\vbox\aswFe.exe FirewallRules: [TCP Query User{4A578CD9-A583-4B1D-9D0C-6D6E61EA364F}C:\users\samange\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe] => C:\users\samange\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe FirewallRules: [UDP Query User{9A5B1BD0-9F0D-43C6-955E-65320CDC3156}C:\users\samange\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe] => C:\users\samange\appdata\local\logmein rescue applet\lmir0001.tmp\lmi_rescue.exe ==================== Points de restauration ========================= 02-12-2016 13:34:29 Point de contrôle planifié 02-12-2016 15:54:19 JRT Pre-Junkware Removal ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (12/03/2016 12:04:23 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15469 Error: (12/03/2016 12:04:23 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15469 Error: (12/03/2016 12:04:23 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (12/03/2016 12:04:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante FBAgent.exe, version : 1.0.9.0, horodatage : 0x4d3e6927 Nom du module défaillant : ntdll.dll, version : 10.0.14393.447, horodatage : 0x5819bc32 Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000f7423 ID du processus défaillant : 0x818 Heure de début de l’application défaillante : 0x01d24c943a4e2592 Chemin d’accès de l’application défaillante : C:\Windows\system32\FBAgent.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 57b61b19-737a-4520-aced-a448ed65aef4 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (12/02/2016 10:05:34 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_42191651c6827bb3.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_89c64d28dafea4b9.manifest. Error: (12/02/2016 10:03:26 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « c:\program files (x86)\eset\eset online scanner\ESETSmartInstaller.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_42191651c6827bb3.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.447_none_89c64d28dafea4b9.manifest. Error: (12/02/2016 04:22:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante dwm.exe, version : 10.0.14393.0, horodatage : 0x578999ab Nom du module défaillant : dwmcore.dll, version : 10.0.14393.351, horodatage : 0x5801a457 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000144d24 ID du processus défaillant : 0x6f8 Heure de début de l’application défaillante : 0x01d24cafb2906b82 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\dwm.exe Chemin d’accès du module défaillant: C:\WINDOWS\system32\dwmcore.dll ID de rapport : 2c5f3d0a-695e-47ff-98bc-3f3ea95c89e6 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (12/02/2016 04:21:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante dwm.exe, version : 10.0.14393.0, horodatage : 0x578999ab Nom du module défaillant : dwmcore.dll, version : 10.0.14393.351, horodatage : 0x5801a457 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000144d24 ID du processus défaillant : 0x1f50 Heure de début de l’application défaillante : 0x01d24caed7dd5638 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\dwm.exe Chemin d’accès du module défaillant: C:\WINDOWS\system32\dwmcore.dll ID de rapport : 14117206-7c05-4430-ac4c-4dd064c144bf Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (12/02/2016 04:14:56 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante dwm.exe, version : 10.0.14393.0, horodatage : 0x578999ab Nom du module défaillant : dwmcore.dll, version : 10.0.14393.351, horodatage : 0x5801a457 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000144d24 ID du processus défaillant : 0x26f8 Heure de début de l’application défaillante : 0x01d24caecb14aa37 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\dwm.exe Chemin d’accès du module défaillant: C:\WINDOWS\system32\dwmcore.dll ID de rapport : 19822c8f-ddfb-4703-9b89-af7274ca3c9b Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (12/02/2016 04:14:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante dwm.exe, version : 10.0.14393.0, horodatage : 0x578999ab Nom du module défaillant : dwmcore.dll, version : 10.0.14393.351, horodatage : 0x5801a457 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000144d24 ID du processus défaillant : 0x2a8 Heure de début de l’application défaillante : 0x01d24c943988fec5 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\dwm.exe Chemin d’accès du module défaillant: C:\WINDOWS\system32\dwmcore.dll ID de rapport : cd71718f-51d0-44d9-830a-732a5bf988e2 Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (12/04/2016 10:08:36 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2016 10:08:36 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2016 10:08:34 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/03/2016 12:04:18 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service AFBAgent s’est terminé de façon inattendue pour la 1ème fois. Error: (12/03/2016 12:04:14 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {3185A766-B338-11E4-A71E-12E3F512A338} et l’APPID {7006698D-2974-4091-A424-85DD0B909E23} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/02/2016 10:11:38 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: LISA) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-1475604590-3946034420-1524239207-1001-0-ntuser.dat Error: (12/02/2016 10:11:16 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: LISA) Description: 0x8000002a117\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-21-1475604590-3946034420-1524239207-1001-0-ntuser.dat Error: (12/02/2016 10:01:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/02/2016 10:01:48 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\SAMANGE\AppData\Local\Temp\ehdrv.sys Error: (12/02/2016 10:01:47 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué CodeIntegrity: =================================== Date: 2016-11-30 08:44:45.534 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:45.530 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:45.522 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:45.315 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:45.310 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:45.297 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:44.962 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:44.957 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:44.949 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2016-11-30 08:44:44.639 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz Pourcentage de mémoire utilisée: 47% Mémoire physique - RAM - totale: 4006.77 MB Mémoire physique - RAM - disponible: 2085.45 MB Mémoire virtuelle totale: 8102.77 MB Mémoire virtuelle disponible: 5960.34 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:197.11 GB) (Free:75.84 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] Drive d: (Data) (Fixed) (Total:243.21 GB) (Free:242.72 GB) NTFS Drive e: (SDATA1) (Fixed) (Total:232.88 GB) (Free:232.47 GB) NTFS Drive f: (SDATA2) (Fixed) (Total:232.87 GB) (Free:232.35 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: B33D55E5) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=197.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) Partition 4: (Not Active) - (Size=243.2 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: C914B558) Partition 1: (Not Active) - (Size=465.8 GB) - (Type=OF Extended) ==================== Fin de Addition.txt ============================