Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 07-12-2016 Exécuté par Moha (13-12-2016 18:34:54) Exécuté depuis C:\Users\Moha.DELL-PC\Desktop Windows 10 Pro Version 1607 (X64) (2016-10-29 23:28:03) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3161580924-810443488-2151908158-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3161580924-810443488-2151908158-503 - Limited - Disabled) DELL (S-1-5-21-3161580924-810443488-2151908158-1000 - Limited - Enabled) => C:\Users\DELL Farah (S-1-5-21-3161580924-810443488-2151908158-1012 - Limited - Enabled) => C:\Users\Farah.DELL-PC.000 HelpAssistant (S-1-5-21-3161580924-810443488-2151908158-1009 - Limited - Enabled) HomeGroupUser$ (S-1-5-21-3161580924-810443488-2151908158-1002 - Limited - Enabled) Invité (S-1-5-21-3161580924-810443488-2151908158-501 - Administrator - Disabled) => C:\Users\Invité Moha (S-1-5-21-3161580924-810443488-2151908158-1004 - Administrator - Enabled) => C:\Users\Moha.DELL-PC Moha2 (S-1-5-21-3161580924-810443488-2151908158-1016 - Limited - Enabled) => C:\Users\Moha2 ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\uTorrent) (Version: 3.4.9.42973 - BitTorrent Inc.) 7-Zip 9.38 beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.020.20042 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Adobe Flash Player 23 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) Avast Antivirus Gratuit (HKLM-x32\...\Avast) (Version: 12.3.2280 - AVAST Software) Cheat Engine 6.5.1 (HKLM-x32\...\Cheat Engine 6.5.1_is1) (Version: - Cheat Engine) Counter-Strike 1.6 (HKLM-x32\...\{9ABFB92D-93DA-49EE-8ABF-F8195DE45CA9}) (Version: 1.6 - ) Counter-Strike Global Offensive version 1.34.8.0 (HKLM\...\{BD051FE3-1575-4CD6-81ED-E905FA94720B}_is1) (Version: 1.34.8.0 - Strogino CS Portal) CPUID HWMonitor 1.28 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Cs Non Steam (HKLM-x32\...\{E8870D92-54F6-4AC7-82D0-7DCDFB1F00AE}) (Version: 1.0 - #CS.NS @ irc.ptnet.org) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dell System Detect (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\58d94f3ce2c27db0) (Version: 7.5.0.6 - Dell) Dell Touchpad (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.4 - Synaptics Incorporated) DriversCloud.com (64 bits) (HKLM\...\{0FFDC804-21EE-4283-ADBA-6A1958EB9525}) (Version: 8.0.3.1 - Cybelsoft) Dynasty Warriors 6 (x32 Version: 1.00.0000 - Koei) Hidden EAX4 Unified Redist (HKLM-x32\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs) f.lux (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\Flux) (Version: - ) Facebook Games Arcade 0.6.0.1 (HKLM-x32\...\{F31484D6-A5E7-401E-B571-8B035E27AB56}) (Version: 0.6.0.1 - Facebook) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Farming Simulator 15 (HKLM-x32\...\Farming Simulator 15_is1) (Version: - ) Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.232.0 - International GeoGebra Institute) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.99 - Google Inc.) Google Earth (HKLM-x32\...\{A0C18B96-AB79-46BD-8321-6FA83E6D25B9}) (Version: 7.1.7.2606 - Google) Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden Gramblr (HKLM\...\Gramblr) (Version: 2.8.0 - Gramblr Team) Grand Theft Auto IV (HKLM-x32\...\{579BA58C-F33D-4970-9953-B94B43768AC3}) (Version: 1.00.0000 - Rockstar Games) Hotspot Shield 3.19 (HKLM-x32\...\HotspotShield) (Version: 3.19 - AnchorFree Inc.) IGI 2 (HKLM-x32\...\IGI 2) (Version: - ) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.14.1724 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.2.1000 - Intel Corporation) iPadian version 1.5 (HKLM-x32\...\{0DB90A1C-2C08-429C-8595-FD9848121D28}_is1) (Version: 1.5 - iPadian, Inc.) K-Lite Mega Codec Pack 9.9.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 9.9.0 - ) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 12.6.0.0 - Lightworks) Malwarebytes version 3.0.4.1269 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.4.1269 - Malwarebytes) Manhunter (HKLM-x32\...\Manhunter_is1) (Version: - ) Martine à la ferme (HKLM-x32\...\Martine à la ferme_is1) (Version: - White Birds Productions) Men of War: Vietnam (Remove Only) (HKLM-x32\...\{C9935C7E-ED44-427D-B8DF-39E2ACF1AA6A}_is1) (Version: 1.0.0.0 - 1C Company) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{9011040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office Professionnel Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\OneDriveSetup.exe) (Version: 17.3.6720.1207 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) MOBICONNECT (HKLM-x32\...\{BCE97917-E58C-41FA-9B53-859E3FDCE924}) (Version: 1.0.0.2 - ZTE Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 49.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 fr)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2.6136 - Mozilla) Navy Seals (HKLM-x32\...\Navy Seals) (Version: 1.0.0.0 - Valusoft) Nokia Connectivity Cable Driver (HKLM\...\{BC4AE628-81A4-4FC6-863A-7A9BA2E2531F}) (Version: 7.1.32.69 - ) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: - ) NVIDIA PhysX (HKLM-x32\...\{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}) (Version: 9.09.0814 - NVIDIA Corporation) Ooredoo N'ternet (HKLM-x32\...\InstallShield_{E9AD7C62-C507-49BA-91AC-1A2D0F86A913}) (Version: 1.0 - Nom de votre société) Ooredoo N'ternet (x32 Version: 1.0 - Nom de votre société) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera Stable 41.0.2353.69 (HKLM-x32\...\Opera 41.0.2353.69) (Version: 41.0.2353.69 - Opera Software) Photo Pos Pro (HKLM-x32\...\Photo Pos Pro) (Version: 1.87 - PowerOfSoftware Ltd.) PhotoFiltre 7 (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\PhotoFiltre 7) (Version: - ) Pirates of the Caribbean - At Worlds End (HKLM-x32\...\{01CBFCE7-95AD-40F3-BC63-C46EFB2FC9C4}) (Version: 1.0 - Disney Interactive Studios) Pro Cycling Manager 2015 (HKLM-x32\...\Pro Cycling Manager 2015_is1) (Version: - ) Pro Evolution Soccer 2016 (HKLM-x32\...\UHJvRXZvbHV0aW9uU29jY2VyMjAxNg==_is1) (Version: 1 - ) PS TO PC CONVERTER (HKLM-x32\...\{A483F88A-41E9-45B2-AAC9-A823DD9B4873}) (Version: 2007.01.01 - ) RealPlayer (HKLM-x32\...\RealPlayer 6.0) (Version: - RealNetworks) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7544 - Realtek Semiconductor Corp.) Realtek PC Camera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.8400.10186 - Realtek Semiconductor Corp.) Rhapsody Player Engine (HKLM-x32\...\{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}) (Version: 1.1.0 - RealNetworks) SafeZone Stable 1.51.2220.62 (x32 Version: 1.51.2220.62 - Avast Software) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) SHAREit (HKLM-x32\...\SHAREit_is1) (Version: 3.3.0.983 - Lenovo) Skype™ 7.26 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.26.101 - Skype Technologies S.A.) StartTime (remove only) (HKLM-x32\...\StartTime) (Version: - ) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Tom Clancy's Splinter Cell Double Agent (HKLM-x32\...\{CAD1691A-FA24-4B95-9009-3257B8440ECC}) (Version: 1.00.0000 - Ubisoft) Tropico 5 (HKLM-x32\...\Tropico 5_is1) (Version: 1.0 - ADDONiA) TurboStats (HKLM-x32\...\TurboStats) (Version: - ) TurboStatsPro (HKLM-x32\...\TurboStatsPro) (Version: - ) Twin USB Vibration Gamepad (HKLM-x32\...\{1BBDD6C0-ED6F-43C3-8A9C-84E3249A5615}) (Version: 2007.01.01 - ) Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) USB Vibration Joystick (HKLM-x32\...\{4999B2F1-3E74-409A-B8B5-E94448AA9EA6}) (Version: 2007.08.17 - ) Vegas Pro 13.0 (64-bit) (HKLM\...\{D0360940-CCC6-11E3-B9C6-F04DA23A5C58}) (Version: 13.0.310 - Sony) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.2 - VideoLAN) WebcamMax (HKLM-x32\...\WebcamMax) (Version: 7.1.2.6.MultiLanguage - ) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation) WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - ) World of Warships (HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C814eu}_is1) (Version: - Wargaming.net) YGOPro DevPro Launcher (HKLM-x32\...\{33C24704-A3C3-41D6-8A71-86297C3662F5}) (Version: 2.0.12 - DevPro, LLC) ZDServer (HKLM-x32\...\{C8197F5F-E0DC-44f1-8AF2-1AA5A84F695D}) (Version: 1.0.1.2 - ZTE Corporation) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3161580924-810443488-2151908158-1004_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {018523AA-109A-4DD5-9BA0-64D0EE141A35} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {022FE125-D178-4754-8BA7-DCB1C9B29511} - System32\Tasks\{EFC456C7-75FD-40C3-8521-CF3ED0C275E7} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {02B2A661-69C4-4AD5-BE2B-948F9036AF08} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-08] (Google Inc.) Task: {0314E31D-E592-4483-B6C8-CB5487A35B7C} - System32\Tasks\{A7D40C67-89AF-4578-BE4A-74968DA8474E} => E:\Counter-Strike GO.exe Task: {08F0C7E7-A722-4A45-97F7-538E1D71F19F} - System32\Tasks\{A358602F-7F44-4875-97FB-58F22716F30C} => C:\Users\DELL\Desktop\SkypeSetupFull(1).exe Task: {0E9FB62D-07EE-4DDF-BC63-52FB8DDA5CD6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-09-16] (Adobe Systems Incorporated) Task: {13AFB62D-A8FF-4827-BE93-07DF22C10F3D} - System32\Tasks\{BAC7A3F2-4E66-4C88-A40E-912B1CF83E6E} => E:\Counter-Strike GO.exe Task: {1434DEEB-0965-42AB-9A5B-0B959E5791DC} - System32\Tasks\{44D30BFF-616B-4E96-B887-7301C7E23546} => E:\Counter-Strike GO.exe Task: {18DBD7F3-58A9-4495-A221-7AD059C312C9} - System32\Tasks\{7A51DBE9-844C-46A6-9086-2C8DAF3F9FC2} => H:\Counter-Strike Global Offensive\csgo.exe Task: {19785A73-E2CB-4D98-AB16-0BA672EAC4E5} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1000Core => C:\Users\DELL\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-01] (Facebook Inc.) Task: {19E46ED4-8AB4-4321-9482-1D2F5323A71B} - System32\Tasks\{EB61CCC1-8255-4E72-BFE8-F44CBA704277} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86.exe Task: {1B420324-CC08-4C17-82A5-1E421DFB56CB} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {1C21AF7C-A832-4AAE-A3A8-832B9E2F9C13} - System32\Tasks\{EB3E51F0-C109-40B2-8312-0EE7A23CDE17} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {1F22ACFD-4A16-402A-9F74-E6931B46FE6C} - System32\Tasks\{C2BB7FB0-EE85-4CDC-8428-494E9919ADAA} => D:\PAYDAY 2\payday2_win32_release.exe Task: {223DA6A9-B1B3-4FFB-B228-B8AB8A8B7E52} - System32\Tasks\{DECC338C-EDD7-4D67-A9FE-80B1EEEAFAA0} => D:\PAYDAY 2\payday2_win32_release.exe Task: {23805D52-7547-43F7-8D35-59EFD9157A87} - System32\Tasks\{530DAFD6-58DA-424B-B5DC-8E9DADD39DC8} => E:\4AM.exe Task: {264CDFD8-0220-4165-B16A-39F49F5017FF} - System32\Tasks\{63C054C2-7B2F-40CD-896F-15F35E916003} => pcalua.exe -a "G:\Counter-Strike Global Offensive\Make Windows Original.exe" -d "G:\Counter-Strike Global Offensive" Task: {26783516-68A8-4CE7-B19D-BC4FAEE0E6EF} - System32\Tasks\{D5022269-4894-4962-994A-BC0D715441F9} => D:\PAYDAY 2\payday2_win32_release.exe Task: {286BEABC-C90C-4B39-B168-0C6C159C3E8A} - System32\Tasks\{C0A4076E-F1B1-4946-829C-084E730985AD} => pcalua.exe -a "C:\Program Files (x86)\Ubisoft\Assassin's Creed Liberation HD\GDFInstall.exe" -d "C:\Program Files (x86)\Ubisoft\Assassin's Creed Liberation HD" Task: {2A5EF1AD-58B4-4160-8237-43D52C333712} - System32\Tasks\{ACFC7637-2038-4594-A011-804D9DA5DF2A} => pcalua.exe -a C:\Windows\unvise32.exe -c C:\Program Files (x86)\Codemasters\IGI 2\uninstal.log Task: {2DCBAFE3-279A-4506-A66D-486E50349992} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1006Core => C:\Users\farah\AppData\Local\Google\Update\GoogleUpdate.exe [2014-05-30] (Google Inc.) Task: {2E31B627-40BC-42E7-A537-8E4F971F881B} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe Task: {2EB17529-BFEB-4AD7-A2FE-07749DB770DC} - System32\Tasks\{708FC526-5150-442B-8043-CC804FF47D6E} => C:\Program Files (x86)\Eidos\Hitman Contracts\HitmanContracts.exe Task: {32077550-1E22-4F4D-AB17-3CDAF046E2C3} - System32\Tasks\{561D38D0-6EDA-44A5-8CB4-5F5B9B3F0AEB} => C:\Users\DELL\Desktop\Nouveau dossier\180.48_geforce_winxp_32bit_english_whql.exe Task: {320AB706-103E-4B55-B376-C09D67320B1A} - System32\Tasks\{2CB93F11-F0DD-4984-AC5C-EC367E4D1FD6} => E:\180.48_geforce_winxp_32bit_english_whql.exe Task: {332AC522-4661-4133-AC4C-2235A3E0A00B} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {333F0D4A-2A92-48EC-B543-17EE889DB536} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1000UA => C:\Users\DELL\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-02-01] (Facebook Inc.) Task: {33667CBD-2689-4E39-8D90-C109A60B7A7E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {33D7AA5A-0431-4F94-A3BB-58BBAEA80F1D} - System32\Tasks\{8BC3F0BE-40E1-4F2C-9179-44F76EF76652} => pcalua.exe -a E:\setup.exe -d E:\ Task: {340F6CBE-D030-41DE-AA45-39D65B7E5858} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {361A3777-ABAF-4145-A499-4EED91DEE83C} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {395A9DFA-482F-4617-9774-58EDD0D191CC} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3A3B8C09-C9F5-4AE5-90FC-F87C670EB421} - System32\Tasks\{89FE3AC9-71F5-45DE-9A13-8FF3AAFB4202} => E:\Counter-Strike GO.exe Task: {3AA9BDD6-E43B-433E-AC5B-9F68420DDD45} - System32\Tasks\{C61635DC-22F4-49B2-A13F-F73C32F6B7A5} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {3B196502-C19A-4398-8846-CDFE02FAB175} - System32\Tasks\{C18ADBEE-12A7-4906-913E-672CDCC70B00} => C:\Games\Counter-Strike Global Offensive\CSGOLoader.exe Task: {3D601192-862B-4BC3-995E-3D7D4393A948} - System32\Tasks\{BAD8EDE0-CBCA-4A26-A573-2FFAC92908E4} => E:\dx9\DXSETUP.exe Task: {3E796CD8-8190-4BB3-AE38-A06830C2CF36} - System32\Tasks\{94F04F10-22B3-4672-9780-D7DF8D693395} => C:\Program Files (x86)\Valve\hl.exe Task: {42ACDC34-5599-439C-89BE-808D83BCDFB0} - System32\Tasks\{3C66652A-5C80-425E-821F-5AA6C9FC6A32} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {434A9648-2E45-4CF9-8E78-7DDEC6BBD673} - System32\Tasks\SafeZone scheduled Autoupdate 1470916473 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-09-06] (Avast Software) Task: {438691FB-9852-4C19-95D3-73272C39439B} - System32\Tasks\{DEF26983-160B-446E-828C-7070C5504860} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {47F162AC-4588-4047-A0E1-19D9B1A0B6E1} - System32\Tasks\{08637A43-9314-4879-90BF-A0F83D79C895} => C:\Program Files (x86)\EA GAMES\Need for Speed™ Most Wanted\speed.exe Task: {4A601AD9-6B85-4137-981D-00DE85A2E0C2} - System32\Tasks\{6B6DEC7D-CB03-4BF6-873A-C895A393D36E} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86 (2).exe Task: {4B639C0C-FF91-4487-8D8C-3274C28514B5} - System32\Tasks\{A6797A57-A366-4EA4-9F49-B3C1D28D7839} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {4C75C197-F51D-4B0F-A0F5-A08341BE77C0} - System32\Tasks\{4F8CB3D2-E3FB-4F5E-8F2E-0818E7676491} => E:\Redist\dxwebsetup.exe Task: {4C866C01-9C84-4CB2-B5C2-1868BC0CDFC0} - System32\Tasks\{D4EEAB37-AF88-4EBC-89C9-46DB7F316553} => pcalua.exe -a C:\Users\farah\Downloads\SkypeSetup(1).exe -d "C:\Program Files (x86)\Skype\Phone" Task: {514E8B23-33D6-4145-A058-D0018E8C67FD} - System32\Tasks\{417BAC0D-8D4A-403C-A1C3-A9268A87CF73} => E:\Counter-Strike GO.exe Task: {53B49D67-6FDC-4609-878D-A23B898E32FD} - System32\Tasks\{096A12BB-B5AD-477B-9B9E-4065F6C6A036} => E:\setup.exe Task: {53E3F19F-AD80-4B30-B402-D3192FF610B9} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {54E3AF5E-F082-49C6-BC02-7C0C81B3D275} - System32\Tasks\{8B066AEC-2D81-4CA2-9EA4-7AB4FD547688} => pcalua.exe -a E:\setup.exe -d E:\ Task: {551848DB-4A86-4112-8B3F-1A9660D28A49} - System32\Tasks\{E6FE2897-7916-4F03-9D84-10EE0FEF825B} => D:\PAYDAY 2\payday2_win32_release.exe Task: {5A331ABB-B40D-4C3B-92CD-50640821F785} - System32\Tasks\{3AC7C068-ED9D-4CF4-98D6-1DB278800962} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {5B88A25D-7027-4D45-B5DB-EACE3EFCF21F} - System32\Tasks\{E7727065-E4FC-4D56-B53B-A67541203D27} => E:\Counter-Strike GO.exe Task: {5E3F5CCE-2F43-4242-9474-B8D5FFD31146} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {5E5AFD91-F600-411B-AB48-E9AC20CC39F6} - System32\Tasks\{71708E1B-A536-4D0F-9B95-76C486D49BA0} => E:\setup.exe Task: {61341F7B-38EF-4AFA-8AB4-110EF3E2DC9D} - System32\Tasks\{A64ACAC5-E9BF-49C9-AE53-7123F310823B} => C:\Users\Moha.DELL-PC\Desktop\dxwebsetup.exe Task: {64D9E5D7-CA6B-4A2D-B550-3588F89F91BB} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {665BB816-4EB9-410A-BC06-4F104B7B0C91} - System32\Tasks\{7F117254-2FF8-491B-AF1B-E629323688E2} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {68C2F069-283A-40FD-B4C8-3A035084ED3A} - System32\Tasks\{F70D3548-F891-4AF4-909A-94CD7B279621} => E:\Counter-Strike GO.exe Task: {69A7EA4E-26F5-437C-A7D9-08974581C081} - System32\Tasks\{6C3794BF-8AD2-4AF0-97F9-C90800CB240A} => C:\Valve\hl.exe Task: {6C999EE8-5D07-40AC-B81D-784302D98043} - System32\Tasks\{BFBC439B-AFC8-49DA-807D-B717BF825AFA} => C:\Program Files (x86)\Eidos\Hitman Contracts\HitmanContracts.exe Task: {6D6A8E21-902D-442D-B7D1-75E383DDD15B} - System32\Tasks\{CF7C3714-11CE-46C2-AA54-04F1884CB344} => E:\Counter-Strike GO.exe Task: {6E25A3EA-C7BE-4BB0-826B-C706E7FDFD91} - System32\Tasks\{56CB2E45-F448-4437-8C99-74B2EF04B023} => C:\Program Files (x86)\Valve\hl.exe Task: {703CBBDD-4ACB-4440-8B8E-537F29960AE4} - System32\Tasks\{7DE651DC-1B5D-4866-AF2C-A7FFE29EF6F2} => pcalua.exe -a "C:\Program Files (x86)\BlueStacks\HD-RuntimeUninstaller.exe" Task: {704802BB-48AF-4E02-930B-2F9BD351FD73} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {72B74C4A-635A-40A1-AE02-9C3713273ACB} - System32\Tasks\{9C519585-24A8-4716-ACF4-3892E95B8B16} => E:\setup.exe Task: {72EA6DBB-3A41-44CE-88B8-185C0C552DFD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-08-21] (AVAST Software) Task: {73660D94-1CE3-494C-BF0D-1230D178A796} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {74676FD1-3ECD-4354-8C10-67A09409EA19} - System32\Tasks\{8D882BA3-3415-4D39-8AE4-650BEB89B697} => E:\dx9\DXSETUP.exe Task: {789EF419-2595-4253-AA8F-38B269A8C1AD} - System32\Tasks\{827FB2F4-E81B-49D4-A7E9-CBB1CBCE64D7} => D:\PAYDAY 2\payday2_win32_release.exe Task: {7955965A-FE6F-4D43-8ACF-B3474785FBE5} - System32\Tasks\{B05A1192-B0F8-4F69-9B15-059C47A1925C} => E:\Counter-Strike GO.exe Task: {797CC509-888D-457D-8FAE-9500049B0954} - System32\Tasks\{B25B3A0D-CA78-48B4-9356-365E9A221D0E} => E:\Counter-Strike GO.exe Task: {79AD6E3D-5B5A-4509-A87C-B1E44DE80612} - System32\Tasks\{3DDE5F6A-ECD4-4177-B753-F95886FFA394} => E:\dx9\DXSETUP.exe Task: {7AF5A2D1-E1FF-4A37-BBFE-7A66B09C4884} - System32\Tasks\{4EDE1BAD-0A50-4781-A522-BC0064FA9D2F} => pcalua.exe -a C:\Users\farah\Downloads\SkypeSetup(1).exe -d "C:\Program Files (x86)\Skype\Phone" Task: {7B92D3CE-153B-4462-836D-9D658806BA00} - System32\Tasks\{C57ACB86-4647-4247-9491-B1C2E0828BEB} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86.exe Task: {7CA866FC-6C2C-43E3-8798-E3C62C92A521} - System32\Tasks\{A82B7FF8-40EE-41A5-BC0A-306999013B06} => Chrome.exe hxxp://ui.skype.com/ui/0/7.24.0.104/fr/abandoninstall?page=tsProgressBar Task: {7CD195A8-F4FC-4D92-9177-37412E38BF73} - System32\Tasks\{C532839A-2CE7-4C27-A94C-C7AB73B10596} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {7DD75AE7-0313-4BF0-89C6-AAEA4442CE4B} - System32\Tasks\{CBFDD103-7E79-4B46-96CA-2D2686ADCAEE} => pcalua.exe -a E:\setup.exe -d E:\ Task: {7E5E72FD-D365-4BC6-89F1-5BEB3C955717} - System32\Tasks\{E3C12B09-7D88-424D-9BC9-1CDCFC578BC1} => E:\Counter-Strike GO.exe Task: {7F264E8D-B6A1-4B2B-9664-78B552876E26} - System32\Tasks\{70D86ED0-62CA-4344-9846-1F946A806A10} => C:\Users\DELL\Desktop\SkypeSetupFull(1).exe Task: {81978E86-4D41-4F45-A772-11DFB5FA4C72} - System32\Tasks\{8D29AD5D-2F46-48AD-A736-C49AD93B10EA} => E:\setup.exe Task: {81AF873F-8F47-4D7E-A852-0621C13335C5} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1004Core => C:\Users\Moha.DELL-PC\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-05-19] (Facebook Inc.) Task: {8461CB29-0904-4455-8683-4A7B3A69FF66} - System32\Tasks\{CD5CEF96-CC31-4038-858F-260895F2FEBF} => E:\Redist\dxwebsetup.exe Task: {86E935C7-3E85-4868-A2D8-539308D99B85} - System32\Tasks\{1326DEB6-70A6-4D33-AAF7-9847DF37D078} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike(1).exe Task: {8CE612B8-F0AA-4CB1-A104-DFABB789EDA6} - System32\Tasks\{1F242BB9-E4A3-4AEE-9871-327888F326BA} => E:\setup.exe Task: {8D3416D6-9558-4115-B914-9B22A2CDF102} - System32\Tasks\{65084C11-6928-498A-BA86-03F48394A02C} => D:\PAYDAY 2\payday2_win32_release.exe Task: {8DEE25A5-3615-4F30-A19D-73E23A84355F} - System32\Tasks\{60337848-DB9F-4F7C-B0E7-63D3AB425972} => E:\dx9\DXSETUP.exe Task: {8E725B61-2682-44ED-B7BD-A7FA58783A1A} - System32\Tasks\{F1A6C621-1302-47A8-ACC4-10164DB00217} => E:\Counter-Strike GO.exe Task: {8E9D3486-2F91-4E7C-8363-1A6B78EA5229} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {8EEABC6F-ED24-4FA6-923E-A8600953E94D} - System32\Tasks\{18E6019A-20AA-41C2-9B37-28CB72FD47C4} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {905896EB-BA1B-45DD-A0F6-38CF839CEADB} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1004UA => C:\Users\Moha.DELL-PC\AppData\Local\Facebook\Update\FacebookUpdate.exe [2014-05-19] (Facebook Inc.) Task: {91474ED0-7969-4283-BA3E-1BADD300F45D} - System32\Tasks\{720A4E49-4141-4FFE-9878-84BFEA0D7F9E} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {95F6E295-039B-429F-B256-80C8B9B9F4D4} - System32\Tasks\{A567354F-19CF-40D4-95FD-8EB3A38307AD} => pcalua.exe -a E:\FScommand\GTA.San.exe -d E:\FScommand Task: {964D81F5-A133-49DA-BAA6-65CEE0FB9F21} - System32\Tasks\{CA26A6AC-6E76-4D0F-A233-BB4B05F1B327} => C:\Program Files (x86)\Valve\hl.exe Task: {981E6E24-E281-415F-A3DD-FBA53C568467} - System32\Tasks\{4B842394-E4B1-469C-98C5-E99591286267} => E:\180.48_geforce_winxp_32bit_english_whql.exe Task: {983111D3-15A2-4EFE-A6AC-0D9254380445} - System32\Tasks\{23F2CF4F-7E76-4379-B6EF-33140F64D0FF} => pcalua.exe -a E:\Setup.exe -d E:\ Task: {999CA846-7BD1-4025-9F65-3C3C136656C8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-12-12] (Adobe Systems Incorporated) Task: {99E06E0A-FD86-482D-922F-094F1D316E94} - System32\Tasks\{CCF4BF02-7E65-409D-AB48-D311AF9A2C65} => pcalua.exe -a E:\FScommand\GTA.Vice.exe -d E:\FScommand Task: {9C3A272E-739B-46E3-AA9A-D31E7686972B} - System32\Tasks\{32CC990B-D791-415A-88FC-8E7369C36E43} => E:\Counter-Strike GO.exe Task: {9DD9C2E7-EE30-4E5C-A8A2-986C872ABD86} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {9F4D8CD0-770B-422B-B02F-AF5640EA9DBE} - System32\Tasks\{97C4F1D1-4E9E-47C6-AB0B-92E5C093F587} => E:\Redist\dxwebsetup.exe Task: {9F727790-9F72-41E0-85A3-C9113D89AA1C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {A0460B78-3C38-480F-A351-9AC1F34BC13F} - System32\Tasks\{E4EB9B3E-FFBD-4AC4-BFDC-7101459E4B6A} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {A057A741-1A68-434A-B291-D4505F9A986C} - System32\Tasks\{6EBFB8CE-549F-4EE4-9207-05AF723DE909} => D:\PAYDAY 2\payday2_win32_release.exe Task: {A1964827-6A66-4FD4-9A84-3DFC1BF44919} - System32\Tasks\{FE1C4697-AB2C-42C2-9737-C3A81E426BDD} => E:\setup.exe Task: {A43263B1-BE22-492F-BA0E-41FD448FFB4F} - System32\Tasks\{BB2BFF7D-DA3D-475C-BFD3-CF559230E982} => E:\setup.exe Task: {A5771A33-49A4-4499-B164-46EF51C3E6A1} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A7FD54CA-9717-4476-B251-ACED518597D0} - System32\Tasks\{6661245E-CC1E-4B37-88FE-16A93A06B795} => pcalua.exe -a "C:\Users\Moha.DELL-PC\Desktop\Nouveau dossier\180.48_geforce_winxp_32bit_english_whql.exe" -d "C:\Users\Moha.DELL-PC\Desktop\Nouveau dossier" Task: {A9883E96-14F2-48F2-82F9-00AC525B71EC} - System32\Tasks\{C310A870-FBD2-4E59-93D3-AD8902B4E906} => C:\Users\DELL\Desktop\Nouveau dossier\180.48_geforce_winxp_32bit_english_whql.exe Task: {A9A00123-EF5B-4AA8-90F4-520DC17DB5F7} - System32\Tasks\{72E151F3-1F91-40BA-8A15-7776AAF759BC} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86.exe Task: {AA9E7C65-5B4C-4689-A524-E913B098CC75} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {AC1FD3B3-6702-44AF-B727-EA4F154DE601} - System32\Tasks\{29E81462-8622-4DCA-8367-CD864EC816CC} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {AD6471DC-67DF-4511-9BA3-3D25FE68866C} - System32\Tasks\{3212389C-3C60-4105-8E57-FC87F838432A} => E:\Counter-Strike GO.exe Task: {AE30AF19-229C-47CE-B064-870C44F0209E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AE4BC453-DA56-4C7A-A9B9-24DA43D8E715} - System32\Tasks\{A9B81BB0-9547-425A-9B1D-50E9E2E2076B} => E:\Counter-Strike GO.exe Task: {B1A13EE1-1C13-4576-B8FD-3B298C550F01} - System32\Tasks\{191A85A5-9609-4C32-A872-2A233A377EFF} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike(1).exe Task: {B2B6B1B8-C4B3-41ED-8ED7-6F18BA4187EA} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B532D651-3D64-427E-AAE7-4CB42CB05989} - System32\Tasks\{3A84ED40-B303-4EBC-BA61-EA9377A5A7B3} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86 (2).exe Task: {B5B8ABD0-8664-4BB4-BA59-88A82F1DC667} - System32\Tasks\{D6117E26-9A55-473F-89C0-00BB48E12ABF} => D:\PAYDAY 2\payday2_win32_release.exe Task: {B5C2352C-2793-4B68-9E9F-DFC94C902065} - System32\Tasks\{CB196F97-176B-4909-BB96-90D8CAF65FB9} => C:\Program Files (x86)\Valve\hl.exe Task: {B8128B47-5119-4E66-929C-54F7DC8DD973} - System32\Tasks\{EF8AF55C-E21D-4A3F-9D4A-97C1F5AB4AEA} => pcalua.exe -a "E:\PU2008+PU850 PU819 PU811 .exe" -d E:\ Task: {B917BDE1-5A26-45C9-ABD9-36DA9C3768B9} - System32\Tasks\{D039A92F-2CAD-4EEE-AF59-EE8A80A232F6} => C:\Program Files (x86)\Need for Speed Rivals\NFS14_x86 (2).exe Task: {BB8DB95B-8C50-44D3-ADFB-B3E9145AE0E1} - System32\Tasks\{4F95E0DF-8F88-4B0B-8234-A83517D227B1} => E:\daemon400.exe Task: {BE185671-AD55-4B57-AC60-F58AB313E4C5} - System32\Tasks\{459CEC85-8641-40AD-8B27-93C931B2D1C9} => C:\Users\Moha.DELL-PC\Desktop\dxwebsetup.exe Task: {C16B81D0-D8A6-4624-8097-AC891F6AB498} - System32\Tasks\{341D6B47-5A8A-4860-AD6E-977B4D8A524C} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {C18471B2-2DBC-4D5A-AFCB-543F51E7B4EC} - System32\Tasks\{49F1DAA4-2235-4112-B54A-D227BD521DF4} => E:\Counter-Strike GO.exe Task: {C44B16D6-AB0C-41C3-867B-C92C0D5386D4} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {C8266055-CD05-4A76-8892-F3ED1960EEED} - System32\Tasks\{34DA5C00-0166-45A5-82EA-62990C30B01E} => pcalua.exe -a "C:\Users\Moha.DELL-PC\Desktop\Nouveau dossier\#soft#\dotnetfx3.exe" -d "C:\Users\Moha.DELL-PC\Desktop\Nouveau dossier" Task: {CA4B36CA-7125-47DD-ABD6-DD34DCF2ACA7} - System32\Tasks\{BB9D110E-3714-4DF3-9EDB-261AF1DCFF0D} => D:\PAYDAY 2\payday2_win32_release.exe Task: {CB1FEA14-3923-42D0-88F2-EA72B24B14E6} - System32\Tasks\{410CF35D-7F2E-4651-BCF4-27F4556EFC55} => C:\Program Files (x86)\Eidos\Hitman Contracts\HitmanContracts.exe Task: {CBC534DE-FE6E-4016-9343-425C9DC0BFFD} - System32\Tasks\{E06F1342-7D08-48E0-B0C0-BEED4E061125} => E:\setup.exe Task: {CDC32DF6-939D-45C1-90F2-3F84A6ECC40D} - System32\Tasks\{5BF9AC7C-6DD8-4609-A9EF-FEE413B276F2} => E:\Counter-Strike GO.exe Task: {CE39F610-060E-45A6-9107-155F27C9C5C5} - System32\Tasks\{875B5BF8-AAB6-4939-8E29-4BD931503F8E} => D:\PAYDAY 2\payday2_win32_release.exe Task: {CF205B61-FACF-4585-8C28-8CB8FDA9BB26} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe [2016-12-12] (Adobe Systems Incorporated) Task: {D1D5FFAF-A9F9-4AD9-A69E-47F78AFB1132} - System32\Tasks\avastBCLRestartS-1-5-21-3161580924-810443488-2151908158-1000 => Firefox.exe Task: {D3516971-B687-43E7-9D8F-7746F94DFBA5} - System32\Tasks\{F4762E59-CC13-4402-AC35-FF7E121570B6} => E:\Counter-Strike GO.exe Task: {D5A78A70-E927-495D-B5B4-CE1A66F7EEFB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1006UA => C:\Users\farah\AppData\Local\Google\Update\GoogleUpdate.exe [2014-05-30] (Google Inc.) Task: {D7437327-99EB-416F-87B9-870E65F2BFAF} - System32\Tasks\{119E506F-FA62-4378-8DB4-EB3667BFD18D} => pcalua.exe -a "C:\Program Files (x86)\Eidos\Hitman Contracts\BACKUP\dxsetup.exe" -d "C:\Program Files (x86)\Eidos\Hitman Contracts\BACKUP" Task: {DAB9CC84-9A73-4702-BCD8-D6C04195A4F9} - System32\Tasks\{FD30015B-1F1B-4D30-83FD-698E06144FAF} => pcalua.exe -a E:\FScommand\Across.Crack.exe -d E:\FScommand Task: {DB0867BF-DA19-4A5D-8DF2-56D70DF84C51} - System32\Tasks\{32B2019B-D096-4728-B44E-7A4ACE827392} => C:\Users\DELL\Desktop\SkypeSetupFull(1).exe Task: {DDEB010F-6B37-4064-BABD-2C1DA2FB4951} - System32\Tasks\{0F0CB618-8327-432E-B03F-63C0D8DDE19B} => pcalua.exe -a E:\Install.exe -d E:\ Task: {DE0DD803-EC1C-4240-A3BA-F737C83A6E4F} - System32\Tasks\{3F96D776-C7D7-49C4-B420-0F8B34205141} => C:\Valve\hl.exe Task: {E10F47BA-F365-4B92-B45E-B600908451C5} - System32\Tasks\{87012787-C6DB-4D3F-9C6C-8724A3962650} => C:\Program Files (x86)\PAYDAY 2\payday2_win32_release.exe Task: {E12CE972-85C4-4CC3-A50E-4068A59D10B9} - System32\Tasks\Opera scheduled Autoupdate 1471911248 => C:\Program Files (x86)\Opera\launcher.exe [2016-11-21] (Opera Software) Task: {E29BDC48-3334-46C4-904F-3E26BD1FBAE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-08] (Google Inc.) Task: {E4873903-707E-4D38-AE8B-609CEAA1AAFD} - System32\Tasks\{1E7A5B80-2B81-453F-B525-DDEEAAD790DE} => pcalua.exe -a "C:\Program Files (x86)\Eidos\Hitman Contracts\uninstall.exe" -d "C:\Program Files (x86)\Eidos\Hitman Contracts" Task: {E5764423-8D71-4D9C-8FF6-0C481EE8CF66} - System32\Tasks\{1F61876F-6006-478A-B24B-706C72BB4A96} => C:\Program Files (x86)\Valve\hl.exe Task: {E6D0E8E5-A5AF-4319-8ED7-EA53AD138BBA} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EB1AF305-C550-43D8-A69F-EE6DE28F9C2B} - System32\Tasks\{8361BE6A-8D85-4219-937D-321F7AF29EA1} => C:\Program Files (x86)\Eidos\Hitman Contracts\HitmanContracts.exe Task: {EC8DE31D-D39D-49DA-BA41-D50DDBA11FFD} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EFFDCBA0-E829-4757-942B-D5B9204164B9} - System32\Tasks\{D2F98BF1-1B48-42B7-A78E-DB1875DACC0E} => D:\PAYDAY 2\payday2_win32_release.exe Task: {F04A075B-7A55-4799-B83F-93D51F9036DF} - System32\Tasks\{984A2643-FEB8-4AA7-84FA-14DA0C3839C9} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {F228CD6A-0BC2-411A-93EE-9235518CC72B} - System32\Tasks\{CFE5EB50-BF8E-49D1-9412-733CED2FC0AD} => E:\Counter-Strike GO.exe Task: {F2B59273-9F61-46B3-A70C-A7D0B5D213C0} - System32\Tasks\{6FD30C0E-1A4A-485A-9F59-D2F6F336C5C9} => C:\Users\DELL\Desktop\SkypeSetupFull(1).exe Task: {F57D9F92-47E0-4EA3-ACD4-E9074D1E6054} - System32\Tasks\{2D54E8C9-F823-41DF-80AB-DE94FD6E675D} => C:\Program Files (x86)\EA GAMES\Need for Speed™ Most Wanted\speed.exe Task: {F6AA1202-18F7-4420-8A7B-FDE5E263700D} - System32\Tasks\{3E7E4053-36E5-4E09-B78F-1B09C210E6A9} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe Task: {F7E4C6D7-8B5F-48AC-AE56-9430D5A80A76} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FC728D13-53BB-4DB5-8364-93F86EF48372} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FE3FC59A-F9C8-41E8-9A72-84CFB0173E43} - System32\Tasks\{B43B68C4-3F9E-4111-8090-D446275508D1} => pcalua.exe -a C:\NVIDIA\WinXP\180.48\English\setup.exe -d C:\NVIDIA\WinXP\180.48\English Task: {FEAF5CFF-5C9D-4C9D-B023-82B61EE3BC20} - System32\Tasks\{C3730819-C967-4C17-98A5-EB4A1521B0D3} => C:\Users\Moha.DELL-PC\Desktop\Counter-Strike 1.6 Non-Steam.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashUtil32_23_0_0_207_pepper.exe Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1000Core.job => C:\Users\DELL\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1000UA.job => C:\Users\DELL\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1004Core.job => C:\Users\Moha.DELL-PC\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1004UA.job => C:\Users\Moha.DELL-PC\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1006Core.job => C:\Users\farah\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-3161580924-810443488-2151908158-1006UA.job => C:\Users\farah\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-12-09 21:58 - 2016-11-11 11:10 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-06-10 05:54 - 2016-11-24 21:46 - 10186832 _____ () C:\Program Files\Gramblr\gramblr.exe 2015-01-01 19:53 - 2013-11-06 17:54 - 00427264 _____ () C:\ProgramData\ZDSupport\ZDServ\ZDServ.exe 2016-12-11 21:43 - 2016-11-29 06:27 - 02259232 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2016-12-11 21:43 - 2016-11-29 06:27 - 02247632 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2016-12-11 21:43 - 2016-11-29 06:27 - 02813904 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\arwlib.dll 2015-01-01 19:53 - 2013-11-06 17:54 - 00426752 _____ () C:\ProgramData\ZDSupport\ZDServ\CancelAutoPlay_Server.exe 2016-12-09 21:58 - 2016-11-11 11:10 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-12-09 16:55 - 2016-12-09 16:55 - 01678560 _____ () C:\Users\Moha.DELL-PC\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\ClientTelemetry.dll 2016-10-29 23:14 - 2016-10-29 23:14 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2016-12-09 21:58 - 2016-11-11 10:23 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-12-09 21:57 - 2016-11-11 10:23 - 00693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll 2016-11-10 18:01 - 2016-11-02 11:21 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2016-11-10 18:01 - 2016-11-02 11:15 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-11-10 18:01 - 2016-11-02 11:14 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2016-11-10 18:01 - 2016-11-02 11:15 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2016-11-10 18:01 - 2016-11-02 11:16 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2016-11-10 18:01 - 2016-11-02 11:17 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2013-06-29 17:10 - 2013-06-29 17:10 - 00233472 _____ () C:\Program Files (x86)\HSPA USB Modem\HSPALauncher.exe 2016-08-21 16:43 - 2016-08-21 16:43 - 00169064 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2016-12-13 15:43 - 2016-12-13 15:43 - 03131344 _____ () C:\Program Files\AVAST Software\Avast\defs\16121300\algo.dll 2016-08-21 16:43 - 2016-08-21 16:43 - 00482928 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-06-02 20:06 - 2013-09-04 13:53 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-12-11 21:43 - 2016-11-08 09:46 - 00693248 _____ () C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-12-09 16:55 - 2016-12-09 16:55 - 01244376 _____ () C:\Users\Moha.DELL-PC\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\ClientTelemetry.dll 2016-08-11 11:58 - 2016-08-11 11:58 - 48936448 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2016-11-15 16:52 - 2016-11-08 21:29 - 01819240 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libglesv2.dll 2016-11-15 16:52 - 2016-11-08 21:29 - 00093288 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.99\libegl.dll 2016-11-25 16:33 - 2016-11-25 16:33 - 66025168 _____ () C:\Program Files (x86)\Opera\41.0.2353.69\opera.dll 2016-11-25 16:33 - 2016-11-25 16:31 - 01888464 _____ () C:\Program Files (x86)\Opera\41.0.2353.69\libglesv2.dll 2016-11-25 16:33 - 2016-11-25 16:31 - 00094416 _____ () C:\Program Files (x86)\Opera\41.0.2353.69\libegl.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:05E9FFE5 [146] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:34 - 2016-06-02 19:14 - 00001106 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 genuine.microsoft.com 127.0.0.1 mpa.one.microsoft.com 127.0.0.1 sa.windows.com 127.0.0.1 se.windows.com 127.0.0.1 ie.search.msn.com 127.0.0.1 wustat.windows.com 127.0.0.1 wutrack.windows.com 127.0.0.1 catalog.microsoft.com 127.0.0.1 sls.microsoft.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3161580924-810443488-2151908158-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Moha.DELL-PC\AppData\Local\Packages\49707dinchy.DinamicWallpaper_q75q12j3qvhme\LocalState\FiveHundredPX_187600699.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "IAStorIcon" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\StartupFolder: => "FacebookGamesNotifier.exe.lnk" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\Run: => "DAEMON Tools Lite" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3161580924-810443488-2151908158-1004\...\StartupApproved\Run: => "f.lux" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [{0CD3CE35-E648-427E-89EE-27A763BC4888}] => LPort=1900 FirewallRules: [{8D4449CD-C5A2-4D81-AE9B-9806E949E587}] => LPort=2869 FirewallRules: [{A3EAB54B-A88A-4B78-B7B9-D1CE97F77BB1}] => C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{041C4832-EA4D-4249-9777-AFDAC0A9FFF3}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3255E48E-C253-4E16-BB81-46AE8D50AB82}] => C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [UDP Query User{74D7966E-EE45-413C-B0EA-4D0963BEA4E0}C:\program files (x86)\webcammax\counter-strike 1.6\hltv.exe] => C:\program files (x86)\webcammax\counter-strike 1.6\hltv.exe FirewallRules: [TCP Query User{FF57F44D-66B9-4CC0-898D-8AB25C869769}C:\program files (x86)\webcammax\counter-strike 1.6\hltv.exe] => C:\program files (x86)\webcammax\counter-strike 1.6\hltv.exe FirewallRules: [UDP Query User{406301D5-B5B7-460D-AE10-B31E5E1A7693}C:\program files (x86)\webcammax\counter-strike 1.6\hl.exe] => C:\program files (x86)\webcammax\counter-strike 1.6\hl.exe FirewallRules: [TCP Query User{A1805EFB-DE29-48D9-92A7-656F5D54EC0A}C:\program files (x86)\webcammax\counter-strike 1.6\hl.exe] => C:\program files (x86)\webcammax\counter-strike 1.6\hl.exe FirewallRules: [{5E6AA8EC-B964-49C4-B8B4-DE131680400B}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{EEECC87F-DA3E-4A74-B374-44D9ABB4DCBD}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B709B7AA-D363-4FEC-8008-51E8DCA31C08}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{20E56F5D-9E56-47FB-AD40-80232A807E47}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F7D1D7CA-A572-4A7C-9611-C38D582BBA5D}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{86BDCAB5-2290-4949-9A07-94A74F02002F}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{499E0203-A4D5-42A7-8E68-06BD849355A3}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\updates\3.4.7_42330.exe FirewallRules: [{006476BD-EB5C-4DF8-A747-DDB9E7C44703}] => C:\Users\Moha.DELL-PC\AppData\Roaming\uTorrent\updates\3.4.7_42330.exe FirewallRules: [{D556565A-3FE3-4E07-BC1A-28E1CEB9D284}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{5B7D31B3-DD64-4F9C-A1D6-F657FA5976A7}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D116B870-3817-42BA-AC3F-E7E41B5007D3}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{7915A02D-F822-4D44-AF8B-B280A731F7CB}] => C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe FirewallRules: [{46D12427-04AA-44F5-9977-4C1D575C2FDC}] => C:\Program Files (x86)\SHAREit\SHAREit\SHAREit.exe FirewallRules: [UDP Query User{B2C0638E-70F2-471F-AFDF-C6157FD5C123}C:\program files (x86)\farming simulator 15\dedicatedserver.exe] => C:\program files (x86)\farming simulator 15\dedicatedserver.exe FirewallRules: [TCP Query User{C8CDB5DC-A421-4C62-9060-3B3DC8439BB9}C:\program files (x86)\farming simulator 15\dedicatedserver.exe] => C:\program files (x86)\farming simulator 15\dedicatedserver.exe FirewallRules: [{8363009D-9041-4067-9F9F-FBB0AA0FB8C2}] => C:\Program Files\DriversCloud.com\MCDetection.exe FirewallRules: [{1228D1C5-28FD-4DC4-B662-BE3B737EC068}] => C:\Program Files\DriversCloud.com\MCDetection.exe FirewallRules: [TCP Query User{F0EFA380-3AAD-4780-89B3-23219467112E}C:\users\moha.dell-pc\appdata\local\facebook\video\skype\facebookvideocalling.exe] => C:\users\moha.dell-pc\appdata\local\facebook\video\skype\facebookvideocalling.exe FirewallRules: [UDP Query User{2B96772A-6C66-47E6-9DCD-5D21C7CDFE95}C:\users\moha.dell-pc\appdata\local\facebook\video\skype\facebookvideocalling.exe] => C:\users\moha.dell-pc\appdata\local\facebook\video\skype\facebookvideocalling.exe FirewallRules: [{EB554D48-CFBE-4A82-8771-C9A9E868E151}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{F867A4B2-0EB8-4937-8F5C-993198CF84BA}] => C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [TCP Query User{18651018-E6E6-4304-BE04-4CFF8F81C82D}C:\users\farah\desktop\skype\phone\skype.exe] => C:\users\farah\desktop\skype\phone\skype.exe FirewallRules: [UDP Query User{D421431E-6210-455C-9FDF-15E3A8FD1BE9}C:\users\farah\desktop\skype\phone\skype.exe] => C:\users\farah\desktop\skype\phone\skype.exe FirewallRules: [{F36E284E-DDC1-4DC9-873F-BCB719A72E70}] => C:\Users\DELL\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [TCP Query User{3ABF839C-A1E9-4F2A-BF45-B40D1D6A6647}C:\program files (x86)\pro evolution soccer 2016\pes2016.exe] => C:\program files (x86)\pro evolution soccer 2016\pes2016.exe FirewallRules: [UDP Query User{950DB3B1-51A0-4145-844A-85C3D774257F}C:\program files (x86)\pro evolution soccer 2016\pes2016.exe] => C:\program files (x86)\pro evolution soccer 2016\pes2016.exe FirewallRules: [{7976B6AC-7CC3-416A-B5F3-FD464E2596A7}] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 04-12-2016 19:01:07 Sauvegarde Windows 10-12-2016 11:41:16 Windows Update 11-12-2016 19:01:22 Sauvegarde Windows ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (12/13/2016 04:36:28 PM) (Source: hshld) (EventID: 10200) (User: ) Description: hshld error: 0OPENVPNAS: Invalid configuration file Error: (12/13/2016 04:18:48 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme JustCause2.exe version 1.0.0.2 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 1ed4 Heure de début : 01d254a9ae8e4aa7 Heure de fin : 90 Chemin d'accès de l'application : D:\Téléchargeent Uttorent\Just Cause 2 + DLCS full game PC ^^nosTEAM^^\Just Cause 2\JustCause2.exe ID de rapport : 677d070b-c147-11e6-8bba-74867a2874eb Nom complet du package défaillant : ID de l'application relative au package défaillant : Error: (12/12/2016 07:53:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante JustCause2.exe, version : 1.0.0.2, horodatage : 0x4c1b5791 Nom du module défaillant : MSVCR80.dll, version : 8.0.50727.9268, horodatage : 0x573d297f Code d’exception : 0xc000000d Décalage d’erreur : 0x00008aa0 ID du processus défaillant : 0x19a8 Heure de début de l’application défaillante : 0x01d254a32622ecd7 Chemin d’accès de l’application défaillante : D:\Téléchargeent Uttorent\Just Cause 2 + DLCS full game PC ^^nosTEAM^^\Just Cause 2\JustCause2.exe Chemin d’accès du module défaillant: C:\WINDOWS\WinSxS\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.9268_none_d08e1538442a243e\MSVCR80.dll ID de rapport : c4e443a6-4b98-4cc5-b29c-00059aebef57 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (12/12/2016 05:05:42 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DELL-PC) Description: Échec de l’activation de l’application Microsoft.LockApp_cw5n1h2txyewy!WindowsDefaultLockScreen avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (12/12/2016 03:06:51 PM) (Source: hshld) (EventID: 10200) (User: ) Description: hshld error: 0OPENVPNAS: Invalid configuration file Error: (12/12/2016 01:19:01 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DELL-PC) Description: Échec de l’activation de l’application Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (12/12/2016 12:52:19 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: DELL-PC) Description: Windows ne peut pas trouver le profil local et tente de vous connecter avec un profil temporaire. Les modifications effectuées à ce profil seront perdues lorsque vous vous déconnecterez. Error: (12/12/2016 12:52:19 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1515) (User: DELL-PC) Description: Windows a sauvegardé le profil de cet utilisateur. Windows tentera automatiquement d’utiliser le profil sauvegardé la prochaine fois que cet utilisateur ouvre une connexion. Error: (12/12/2016 12:52:19 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1502) (User: DELL-PC) Description: Windows ne peut pas charger le profil stocké localement. Les causes possibles de cette erreur incluent des droits de sécurité insuffisants ou un profil local endommagé. DÉTAIL - Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. Error: (12/12/2016 12:52:19 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1508) (User: AUTORITE NT) Description: Windows ne peut pas charger le Registre. Ce problème est souvent causé par une mémoire insuffisante ou des droits d’accès insuffisants. DÉTAIL - Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. pour C:\Users\Moha.DELL-PC\ntuser.dat Erreurs système: ============= Error: (12/13/2016 04:38:50 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/13/2016 04:36:13 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 16:12:41 le ‎13/‎12/‎2016 n’était pas prévu. Error: (12/12/2016 03:09:11 PM) (Source: DCOM) (EventID: 10010) (User: DELL-PC) Description: Le serveur {21F282D1-A881-49E1-9A3A-26E44E39B86C} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (12/12/2016 03:07:05 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/12/2016 03:05:24 PM) (Source: DCOM) (EventID: 10010) (User: DELL-PC) Description: Le serveur {9BA05972-F6A8-11CF-A442-00A0C90A8F39} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (12/12/2016 03:03:13 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\TEMP\AppData\Local\Temp\catchme.sys Error: (12/12/2016 03:03:13 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\TEMP\AppData\Local\Temp\catchme.sys Error: (12/12/2016 03:03:12 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\TEMP\AppData\Local\Temp\catchme.sys Error: (12/12/2016 03:03:12 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\TEMP\AppData\Local\Temp\catchme.sys Error: (12/12/2016 03:03:11 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\TEMP\AppData\Local\Temp\catchme.sys CodeIntegrity: =================================== Date: 2016-12-12 15:03:13.952 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:13.949 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:12.939 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:12.935 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:11.784 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:11.779 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:10.593 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:10.590 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:09.422 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2016-12-12 15:03:09.417 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume1\Users\TEMP\AppData\Local\Temp\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Pourcentage de mémoire utilisée: 67% Mémoire physique - RAM - totale: 3971.35 MB Mémoire physique - RAM - disponible: 1303.17 MB Mémoire virtuelle totale: 8067.35 MB Mémoire virtuelle disponible: 4577.05 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:243.7 GB) (Free:126.22 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] Drive d: () (Fixed) (Total:221.62 GB) (Free:118.42 GB) NTFS Drive g: (SP PHD U3) (Fixed) (Total:931.4 GB) (Free:537.45 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2BD2C32A) Partition 1: (Active) - (Size=243.7 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) Partition 3: (Not Active) - (Size=221.6 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: AA0A81A7) Partition 1: (Active) - (Size=931.5 GB) - (Type=0C) ==================== Fin de Addition.txt ============================