Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 22-01-2017 Exécuté par PASCAL (25-01-2017 01:30:25) Exécuté depuis C:\Users\PASCAL\Desktop Windows 10 Home Version 1607 (X64) (2016-12-11 14:38:51) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3351797039-3650035886-3936132856-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3351797039-3650035886-3936132856-503 - Limited - Disabled) Invité (S-1-5-21-3351797039-3650035886-3936132856-501 - Limited - Disabled) PASCAL (S-1-5-21-3351797039-3650035886-3936132856-1001 - Administrator - Enabled) => C:\Users\PASCAL ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 15.023.20056 - Adobe Systems Incorporated) Adobe Flash Player 24 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 24.0.0.194 - Adobe Systems Incorporated) AM-DeadLink 4.7 (HKLM-x32\...\aignesamdeadlink_is1) (Version: 4.7 - www.aignes.com) Ansel (Version: 376.33 - NVIDIA Corporation) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{D079CAAD-0C31-47A2-9AF5-A82F9CD9B221}) (Version: 5.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{64E6007B-1DA9-42CD-BBE4-D5FA67A7C71D}) (Version: 5.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.24.146 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{853065f3-1b33-48f6-824a-446246e618b1}) (Version: 1.2.77.16824 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.77.16824 - Avira Operations GmbH & Co. KG) Hidden AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CamStudio 2.7 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7 - CamStudio Open Source) CamStudio Lossless Codec v1.5 (HKLM-x32\...\camcodec) (Version: 1.5 - CamStudio) CCleaner (HKLM\...\CCleaner) (Version: 5.25 - Piriform) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.8.106.0 - Microsoft Corporation) Centre Souris et Claviers Microsoft (Version: 2.8.106.0 - Microsoft Corporation) Hidden CyberLink PowerDirector Ultimate Suite 15 (HKLM-x32\...\{794F8733-0A6F-494A-B280-682ABCDEE289}) (Version: 15 - CyberLink Corp.) CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 5620 - CyberLink Corp.) DFX (HKLM-x32\...\DFX) (Version: 12.023.0.0 - Power Technology) Driver Booster 4.2 (HKLM-x32\...\Driver Booster_is1) (Version: 4.2.0 - IObit) DriversCloud.com (64 bits) (HKLM\...\{AEEC522D-38DD-46FD-9367-3E32F51B3A42}) (Version: 10.0.1.0 - Cybelsoft) Eraser 6.2.0.2979 (HKLM\...\{C5900DE9-D199-4C27-B692-354C9A6A6C8B}) (Version: 6.2.2979 - The Eraser Project) ffdshow v1.3.4532 [2014-07-17] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4532.0 - ) FormatFactory 4.0.0.0 (HKLM-x32\...\FormatFactory) (Version: 4.0.0.0 - Free Time) Free Music Zilla (HKLM-x32\...\Free Music Zilla_is1) (Version: - FreeMusicZilla.com) Free Video Joiner (HKLM-x32\...\{14FA6DD9-92ED-493D-A937-81A78870E08A}_is1) (Version: - FreeVideoJoiner.com) HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.15.281 - SurfRight B.V.) Intel(R) Network Connections 20.7.68.0 (HKLM\...\PROSetDX) (Version: 20.7.68.0 - Intel) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 6.1.0.20 - IObit) iTunes (HKLM\...\{81C96689-EA5B-4B7D-A04F-16326EC51BC2}) (Version: 12.5.4.42 - Apple Inc.) Java 8 Update 111 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Java 8 Update 112 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180112F0}) (Version: 8.0.1120.15 - Oracle Corporation) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) K-Lite Codec Pack 12.7.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 12.7.5 - KLCP) Kodi (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\Kodi) (Version: - XBMC-Foundation) Kodi (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004447153\...\Kodi) (Version: - XBMC-Foundation) Kodi (HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004618712\...\Kodi) (Version: - XBMC-Foundation) LeapdroidVM (HKLM-x32\...\LeapdroidVM) (Version: - LeapdroidVM) Malwarebytes version 3.0.5.1299 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.0.5.1299 - Malwarebytes) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50901.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microtool version 1.1.0 (HKLM-x32\...\Microtool_is1) (Version: 1.1.0 - Microtool Technologies) Mises à jour NVIDIA 23.1.0.0 (Version: 23.1.0.0 - NVIDIA Corporation) Hidden Mozilla Firefox 50.1.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 50.1.0 (x86 fr)) (Version: 50.1.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 50.1.0.6186 - Mozilla) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) Nero 2016 (HKLM-x32\...\{4297E807-5633-466A-8AC0-5AC48D310471}) (Version: 17.0.02000 - Nero AG) Nero 2016 Content Pack (HKLM-x32\...\{006F5CFF-ED35-41AF-9B2A-F52B0F545BF4}) (Version: 17.0.00200 - Nero AG) Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 16.0.2000 - Nero AG) Nero Prerequisite Installer 6.0 (HKLM-x32\...\{E5BAA2DF-F586-4319-BF9B-30AA50AD6B5D}) (Version: 18.0.00100 - Nero AG) NewBlue Titler Pro for Windows (HKLM-x32\...\NewBlue Titler Pro for Windows) (Version: 1.5 - NewBlue) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VI for Windows (HKLM-x32\...\NewBlue Video Essentials VI for Windows) (Version: 3.0 - NewBlue) NewBlue Video Essentials VII for Windows (HKLM-x32\...\NewBlue Video Essentials VII for Windows) (Version: 3.0 - NewBlue) NVIDIA GeForce Experience 3.2.0.96 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.2.0.96 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.33 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 376.33 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.33 - NVIDIA Corporation) NvNodejs (Version: 3.2.0.96 - NVIDIA Corporation) Hidden NvTelemetry (Version: 2.0.0.0 - NVIDIA Corporation) Hidden Overwolf.Setup.VC100CRTx86.Dist (x32 Version: 1.0.0 - Overwolf) Hidden Panneau de configuration NVIDIA 376.33 (Version: 376.33 - NVIDIA Corporation) Hidden Prerequisite installer (x32 Version: 17.0.0002 - Nero AG) Hidden Prerequisite installer (x32 Version: 18.0.0003 - Nero AG) Hidden proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8004 - Realtek Semiconductor Corp.) Search module (HKLM-x32\...\Search module) (Version: - Goobzo) <==== ATTENTION SHIELD Streaming (Version: 7.1.0350 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 3.2.0.96 - NVIDIA Corporation) Hidden Skype™ 7.30 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.30.105 - Skype Technologies S.A.) Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.4.0 - IObit) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Stashimi Stub Installer (x32 Version: 18.001.1 - Nero AG) Hidden Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 3.9.18 - Tweaking.com) VirtualDub 1.9.6 Fr (HKLM-x32\...\{1FF7993C-23B1-4C91-B1F6-09D13C57A06A}_is1) (Version: 1.9.6 - Trad-Fr) VirtualDub Plugin Pack 1.0.0.6 Fr (HKLM-x32\...\{D6E6B04E-0498-4794-B272-2EDE12E02837}_is1) (Version: 1.0.0.6 - Trad-Fr) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Windows Live installer (HKLM-x32\...\{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}) (Version: 12.0.1471.1025 - Microsoft Corporation) Windows Live Photo Gallery (HKLM-x32\...\{2D4F6BE3-6FEF-4FE9-9D01-1406B220D08C}) (Version: 12.0.1329.0201 - Microsoft Corporation) WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) x264vfw - H.264/MPEG-4 AVC codec (remove only) (HKLM-x32\...\x264vfw) (Version: - ) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.4) (Version: 1.3.4 - Xvid Team) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {007A5AA7-7249-46F8-90A9-8001C3C1709B} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2016-07-22] (IObit) Task: {03F03120-F3FB-4D35-90C6-624A93745FCB} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2016-12-20] () Task: {043B1FAA-3C1F-4E81-B447-32653087144C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-12-19] (Adobe Systems Incorporated) Task: {07963D72-E7C4-4DB2-8D4B-50564E05F18F} - System32\Tasks\Cnsythuker Collector => C:\Program Files (x86)\Drenackghowedom\simerty.exe [2017-01-24] (Glarysoft Ltd) Task: {0BD51812-4697-46FC-8315-C1B34214A33A} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-12-13] (NVIDIA Corporation) Task: {0C83B5B7-100B-4D23-83D1-E8328483EEF5} - System32\Tasks\SMW_UpdateTask_Time_333430343033323334352d5b5b4a346c4123452a5a556c => Wscript.exe //B "C:\ProgramData\SearchModule\smhe.js" smu.exe /invoke /f:check_services /l:0 <==== ATTENTION Task: {0CF3C2AF-188C-4386-83D6-24231774263C} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\Scheduler.exe [2016-12-14] (IObit) Task: {0E8B0CDA-41F3-4426-BD86-77B392A13F79} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {120BD5AA-668D-4623-911F-EA8AF0209EC3} - \Auslogics\BoostSpeed\Start BoostSpeed оn PASCAL logon -> Pas de fichier <==== ATTENTION Task: {16F86618-669E-4D28-922F-CCC1923BCF24} - \{C5632AA1-72C8-9D0A-4849-E443C6CF6347} -> Pas de fichier <==== ATTENTION Task: {1A7A1D1A-B793-42DF-8D7C-3F22258625E1} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2016-12-13] (NVIDIA Corporation) Task: {238C97DA-B29D-4681-AABD-A6C22CB42B8C} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2016-12-13] (NVIDIA Corporation) Task: {25816E70-9CD5-48EB-A425-B746DC601D17} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-12-06] (Piriform Ltd) Task: {29C1515D-8505-4897-A1D4-C972BE8AED66} - System32\Tasks\SMW_P => C:\ProgramData\smp2.exe [2017-01-25] () <==== ATTENTION Task: {2B770D0E-5341-4371-B85B-BE958C68703F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-01-16] (Adobe Systems Incorporated) Task: {4D2BCD17-3C1C-43CE-BA98-69C669E2C81F} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2015-06-04] (Nero AG) Task: {5CB627BF-BB5A-4DD7-BFF5-65CFE92BF1B5} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2016-12-13] (NVIDIA Corporation) Task: {644EFB2D-A2E1-4EF5-BAD7-5BCC526DA40B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-12-13] (NVIDIA Corporation) Task: {7337089D-F8DB-4893-AF0B-1CBC3283F6C0} - System32\Tasks\{E87A9BED-8D65-2EA2-8D50-C15907FAE021} => Regsvr32.exe /s /n /i:"/rt" "C:\PROGRA~3\7f572516\d44c8e8.dll" <==== ATTENTION Task: {79D06D1F-D95A-48FE-A430-8B568369A6EA} - System32\Tasks\Tweaking.com - Windows Repair Tray Icon => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [2015-03-12] (Tweaking.com) Task: {7B317066-8D96-4372-837A-DC9EA5C94632} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2016-12-13] (NVIDIA Corporation) Task: {7B7CF9CD-A823-43D9-99A6-B4DE0AF2390C} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2016-08-15] (Microsoft Corporation) Task: {8629C1BB-772D-4DBC-BB2A-D5C64BFAA236} - System32\Tasks\{7684A2BE-EB51-43E7-85EA-8E00C5E6E0EF} => pcalua.exe -a D:\AviSynth_260.exe -d D:\ Task: {88D8A448-4BAE-44DF-AB5B-0AC0367F0789} - \{86FDCEED-3156-7946-08E6-62A0AD36A470} -> Pas de fichier <==== ATTENTION Task: {910787D4-99E8-44DE-B30F-BF9DABE71D87} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [2016-06-06] (IObit) Task: {92208F1C-088B-4CB6-A244-5DE3CCD2D119} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2016-12-13] (NVIDIA Corporation) Task: {971EB9CD-7EF0-472D-B0AA-38A178157D4C} - \{7A0F0E47-7D7F-050D-0E11-790F0E081108} -> Pas de fichier <==== ATTENTION Task: {9BD6E3F9-2D19-4075-8D44-1E187C78FBCA} - System32\Tasks\9108q1j59z7563 => Rundll32.exe "C:\ProgramData\9108q1j59z7563\9108q1j59z7563.dll",qjzgmr <==== ATTENTION Task: {9D032444-DCDA-4C54-B53A-A38F97057596} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2016-08-15] (Microsoft Corporation) Task: {A77D5E1E-B3FC-49E8-ACDB-0B1DEE6633F9} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2016-08-15] (Microsoft Corporation) Task: {AF88001A-AD57-41C5-9F1C-DA3D4CCEAA30} - \Auslogics\BoostSpeed\Scan and Repair -> Pas de fichier <==== ATTENTION Task: {B4C49203-6998-48C7-964A-553596815895} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2016-08-15] (Microsoft) Task: {B7F06427-DA9E-433A-8A1B-0EACE19AAC8A} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe [2016-10-18] (IObit) Task: {CB353FEF-578B-4F12-9E3F-CDF4D1F9461F} - System32\Tasks\Driver Booster SkipUAC (PASCAL) => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe [2017-01-10] (IObit) Task: {CF983E71-C267-4CDF-A48B-3CF9C0E022B2} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [2016-11-21] (IObit) Task: {CFF5654D-1F94-4CED-B0A7-1779FD098A88} - \{A6963EDA-113D-8971-2296-03FB0C013534} -> Pas de fichier <==== ATTENTION Task: {D4552EB3-8293-4B42-BF2C-92DB21EF869A} - System32\Tasks\{33070B63-B0B4-46C0-8921-CD0D01FA7E07} => pcalua.exe -a "C:\Program Files (x86)\Kodi\uninstall.exe" Task: {DC24D1D3-1F12-415D-A7B7-C039B4B752A7} - System32\Tasks\IBUpd2 => C:\Users\PASCAL\AppData\Local\BrowserAir\48.0.0.0\updater.exe [2016-06-30] () <==== ATTENTION Task: {E8C6903D-E8D2-47A5-B69C-A70CB0B01304} - System32\Tasks\IBUpd => C:\Users\PASCAL\AppData\Local\BrowserAir\48.0.0.0\updater.exe [2016-06-30] () <==== ATTENTION Task: {F69D7BA0-C707-4A16-8C1E-9FA5068662E2} - System32\Tasks\Uninstaller_SkipUac_PASCAL => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-11-01] (IObit) Task: {FF92A76F-12F9-496F-9368-110BE39D2054} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2016-08-15] (Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWoW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_PASCAL.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\PASCAL\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epc&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ShortcutWithArgument: C:\Users\PASCAL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "microsoft-edge:hxxp://www%2dsearching.com/?prd=set_epe&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460," ShortcutWithArgument: C:\Users\PASCAL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epc&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ShortcutWithArgument: C:\Users\PASCAL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Search (2).lnk -> C:\program files\internet explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epe&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ShortcutWithArgument: C:\Users\PASCAL\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Search.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www%2dsearching.com/?prd=set_epc&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epc&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www-searching.com/?prd=set_epc&s=h1oztrmbl10au,165a8654-193c-4932-8a03-9df151ee7460, ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2016-12-14 09:18 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-12-11 15:38 - 2016-12-11 19:47 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2016-11-17 01:28 - 2016-11-17 01:28 - 00092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-11-17 01:28 - 2016-11-17 01:28 - 01353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-12-16 15:43 - 2016-12-13 00:30 - 04489152 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\Poco.dll 2016-12-16 15:43 - 2016-12-13 00:30 - 01147328 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-12-13 10:21 - 2016-12-14 12:55 - 02259232 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\PoliciesControllerImpl.dll 2016-12-14 09:18 - 2016-12-09 11:29 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-15 10:51 - 2016-09-07 05:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-01-11 09:42 - 2016-12-21 08:09 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2016-05-27 14:50 - 2016-05-27 14:50 - 00402520 _____ () C:\WINDOWS\system32\igfxTray.exe 2017-01-11 09:41 - 2016-12-21 07:54 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-01-11 09:41 - 2016-12-21 07:48 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-01-11 09:41 - 2016-12-21 07:48 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-01-11 09:41 - 2016-12-21 07:48 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-01-11 09:41 - 2016-12-21 07:48 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-01-11 09:41 - 2016-12-21 07:53 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-01-01 14:46 - 2017-01-01 14:46 - 00062168 _____ () C:\Program Files\CCleaner\branding.dll 2016-12-06 15:09 - 2016-12-06 15:09 - 00069632 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2016-10-13 16:05 - 2016-10-13 21:05 - 01596920 _____ () C:\Program Files (x86)\DFX\DFX.exe 2016-10-13 15:57 - 2016-10-13 15:57 - 00161784 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe 2016-10-13 16:01 - 2016-10-13 16:01 - 00176120 _____ () C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe 2016-10-13 16:42 - 2016-10-13 16:42 - 00098296 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared64.dll 2017-01-23 09:02 - 2017-01-23 09:02 - 00072192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-01-23 09:02 - 2017-01-23 09:02 - 00179712 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.10.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-01-24 09:19 - 2016-06-21 19:30 - 00442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2017-01-24 09:19 - 2016-06-21 19:29 - 00210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2017-01-24 09:19 - 2016-06-21 19:29 - 00059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2016-12-16 15:43 - 2016-12-13 00:30 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2016-12-16 15:43 - 2016-12-13 00:30 - 03774400 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\Poco.dll 2016-12-16 15:43 - 2016-12-13 00:30 - 00900032 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-10-13 16:40 - 2016-10-13 16:40 - 00083960 _____ () C:\Program Files (x86)\Common Files\DFX\Dlls\dfxShared32.dll 2016-12-23 20:44 - 2016-01-11 17:03 - 00899872 _____ () C:\Program Files (x86)\IObit\Smart Defrag\webres.dll 2016-12-23 20:44 - 2016-01-11 17:02 - 00630048 _____ () C:\Program Files (x86)\IObit\Smart Defrag\ProductStatistics.dll 2016-12-16 15:43 - 2016-12-12 15:36 - 00525760 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSpCapsAPINode.node 2016-12-16 15:43 - 2016-12-12 15:36 - 00254008 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\DriverInstall.node 2016-12-16 15:43 - 2016-12-12 15:36 - 02808888 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\Downloader.node 2016-12-16 15:43 - 2016-12-12 15:36 - 00384568 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGameShareAPINode.node 2016-12-16 15:43 - 2016-12-12 15:36 - 00447424 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvGalleryAPINode.node 2016-12-16 15:43 - 2016-12-12 15:36 - 00336832 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVAccountAPINode.node 2016-12-16 15:43 - 2016-12-12 15:36 - 01003456 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvCameraAPINode.node 2016-12-16 15:43 - 2016-12-12 15:36 - 00956472 _____ () \\?\C:\Program Files (x86)\NVIDIA Corporation\NvNode\NvSDKAPINode.node ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-12-11 15:48 - 2016-12-11 15:45 - 00000824 ___RA C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004446595\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004613858\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004446929\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004615804\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004447153\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004618712\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\StartupFolder: => "Free Music Zilla.lnk" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001\...\StartupApproved\Run: => "Xvid" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004447153\...\StartupApproved\StartupFolder: => "Free Music Zilla.lnk" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004447153\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004447153\...\StartupApproved\Run: => "Xvid" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004618712\...\StartupApproved\StartupFolder: => "Free Music Zilla.lnk" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004618712\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3351797039-3650035886-3936132856-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-01252017004618712\...\StartupApproved\Run: => "Xvid" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => LPort=139 FirewallRules: [{515689D3-B1BC-40B2-96C2-BD2671943759}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{933555C2-7940-41B1-84E4-71E3FB64E9D5}] => C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{E1005024-09A2-45FD-AA83-74154ED498C8}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [UDP Query User{076A9BF6-BC5A-416F-B133-40AD8172D1CD}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [TCP Query User{EB357177-46E4-42F5-A44A-C6146E421804}C:\program files (x86)\kodi\kodi.exe] => C:\program files (x86)\kodi\kodi.exe FirewallRules: [UDP Query User{4069ADF4-C882-4ED7-A14B-886F64A5326B}C:\program files (x86)\kodi\kodi.exe] => C:\program files (x86)\kodi\kodi.exe FirewallRules: [{11379983-DA58-42A5-8C8B-BCB5E7C12FEF}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{9493BDCB-8AEB-4175-A809-425820F5ACF3}] => C:\Program Files\NVIDIA Corporation\NvContainer\NvContainer.exe FirewallRules: [{750DB276-CC7A-4F07-A2AE-10415E520798}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{6A3BCBF1-0A7A-46B9-9A7E-9586619515A0}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A39ABEBA-9E19-4EA0-B304-03230E24F9F9}] => C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{693B9A66-4CF3-4C89-A105-4B18C030D860}] => C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{B52C334E-638C-49BB-9B95-7A367520773E}] => C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{A2CECCC9-DA54-46AD-B8EA-127E0F08B25C}] => C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{4F7E12E3-02E0-4E2A-9F0E-ADBB5F8E9AAB}] => C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{75953D1E-C97D-4606-AF2F-3EC49F9C55FE}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D47A57E1-5EDA-46A4-AFF8-8C12B8B6FD33}] => C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{390D5FFE-2A1E-43C5-9E35-7A28D2B9E030}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{BE03DC92-B27F-4A5D-A306-837B5023FEEC}] => C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7685E70F-0405-47CE-A1FC-8E5DAA668A62}] => C:\Program Files\iTunes\iTunes.exe FirewallRules: [TCP Query User{3271E0F5-6C9C-4377-8A8B-BC0CBB791590}C:\program files (x86)\free music zilla\fmzilla.exe] => C:\program files (x86)\free music zilla\fmzilla.exe FirewallRules: [UDP Query User{6FA224E8-B9FA-4688-A2F5-1B14B88D6FB7}C:\program files (x86)\free music zilla\fmzilla.exe] => C:\program files (x86)\free music zilla\fmzilla.exe FirewallRules: [TCP Query User{54B19C92-D5DE-4162-9D4B-1881AD10DC62}C:\program files\leapdroid\vm\leapdroidvm.exe] => C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [UDP Query User{830B5185-1D47-4FC1-9323-EA7EF951A8D7}C:\program files\leapdroid\vm\leapdroidvm.exe] => C:\program files\leapdroid\vm\leapdroidvm.exe FirewallRules: [{8D5601BE-000D-40D6-BAA5-719B1C670B65}] => C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{1537C49A-97E8-4DCD-81BD-0EB0AEBC45AA}C:\program files (x86)\java\jre1.8.0_112\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_112\bin\javaw.exe FirewallRules: [UDP Query User{2DC81059-D6DC-4D6A-920D-5993FF1A8EB7}C:\program files (x86)\java\jre1.8.0_112\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_112\bin\javaw.exe FirewallRules: [{4265F816-901E-4AC6-94F6-A934A0B443EB}] => C:\Program Files (x86)\Nero\Nero 2016\Nero Burning ROM\StartNBR.exe FirewallRules: [{3700CA88-3124-48EF-898F-2CB5DF4D2BFA}] => C:\Program Files (x86)\Nero\KM\NMDllHost.exe FirewallRules: [{77407E3D-698E-422D-8A5E-ECC1DB9B4731}] => C:\Program Files (x86)\Nero\Nero 2016\Nero Burning ROM\nero.exe FirewallRules: [{527D44E8-2B46-4559-8AD5-1BEDFDB48EF3}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe FirewallRules: [{B1E1F326-3EC1-4082-93BC-63DA68170B36}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DriverBooster.exe FirewallRules: [{64CF0DF9-F5DE-4640-BB4C-A162E3FD5F4D}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DBDownloader.exe FirewallRules: [{3D956ABB-472A-477F-9C91-64B2127FC197}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\DBDownloader.exe FirewallRules: [{81A6A6B1-C732-4781-863E-27A01A5B6CED}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\AutoUpdate.exe FirewallRules: [{3A5BD97F-5DBF-401F-A5D9-E62DC3CE2455}] => C:\Program Files (x86)\IObit\Driver Booster\4.2.0\AutoUpdate.exe FirewallRules: [TCP Query User{035A0736-55A6-4CB1-BFAB-A44460383DE0}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [UDP Query User{5B5F3128-7F4E-463F-B2C2-99EADB5EFC03}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{21B92FE5-0740-4A65-A08C-D47351B3CD57}] => C:\WINDOWS\system32\rundll32.exe FirewallRules: [{128818FF-27C7-4BEB-8E39-019E77D09C2C}] => C:\Windows\System32\rundll32.exe FirewallRules: [{B0FCEB92-3210-435D-8359-C119C8F3E5AC}] => C:\Windows\System32\rundll32.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Free Music Zilla\FMZilla.exe] => Enabled:FMZilla ==================== Points de restauration ========================= 23-01-2017 19:17:19 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Integrated Webcam Description: Périphérique vidéo USB Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Microsoft Service: usbvideo Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (01/25/2017 01:19:35 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.693, horodatage : 0x585a26c4 Nom du module défaillant : eModel.dll, version : 11.0.14393.693, horodatage : 0x585a27a4 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4ad0 ID du processus défaillant : 0x19a4 Heure de début de l’application défaillante : 0x01d276a0b2ebc7da Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : 225d966b-3c23-49ac-b729-8637a6c8ffc6 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (01/25/2017 12:59:38 AM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: DESKTOP-EJNELGL) Description: Échec de l’activation de l’application Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (01/25/2017 12:59:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.693, horodatage : 0x585a26c4 Nom du module défaillant : eModel.dll, version : 11.0.14393.693, horodatage : 0x585a27a4 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4ad0 ID du processus défaillant : 0x15c4 Heure de début de l’application défaillante : 0x01d2769de1657913 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : f3202ed5-076d-4b44-a314-b937bd54145e Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (01/25/2017 12:57:51 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.693, horodatage : 0x585a26c4 Nom du module défaillant : eModel.dll, version : 11.0.14393.693, horodatage : 0x585a27a4 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4ad0 ID du processus défaillant : 0x20c0 Heure de début de l’application défaillante : 0x01d2769da8e22bcf Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : 5fdd6e29-510f-4651-ad8a-1f024b1ece89 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.0.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (01/25/2017 12:46:22 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante setup.exe_BrowserAir Browser installer, version : 48.0.0.0, horodatage : 0x576a94df Nom du module défaillant : setup.exe, version : 48.0.0.0, horodatage : 0x576a94df Code d’exception : 0xc0000409 Décalage d’erreur : 0x000c178d ID du processus défaillant : 0x1700 Heure de début de l’application défaillante : 0x01d2769c0d52385f Chemin d’accès de l’application défaillante : C:\Users\PASCAL\AppData\Local\Temp\CR_8E680.tmp\setup.exe Chemin d’accès du module défaillant: C:\Users\PASCAL\AppData\Local\Temp\CR_8E680.tmp\setup.exe ID de rapport : 7d234d05-4456-4b7a-8b86-e1b3d6e52d58 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/25/2017 12:45:03 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante plugin-container.exe, version : 50.1.0.6186, horodatage : 0x584a057c Nom du module défaillant : mozglue.dll, version : 50.1.0.6186, horodatage : 0x5849ff8b Code d’exception : 0x80000003 Décalage d’erreur : 0x0000ec79 ID du processus défaillant : 0x754 Heure de début de l’application défaillante : 0x01d2769bcc07880d Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Mozilla Firefox\mozglue.dll ID de rapport : 6d9bed7e-a1e3-4886-9f5c-764fa3f934bd Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/25/2017 12:44:51 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante plugin-container.exe, version : 50.1.0.6186, horodatage : 0x584a057c Nom du module défaillant : mozglue.dll, version : 50.1.0.6186, horodatage : 0x5849ff8b Code d’exception : 0x80000003 Décalage d’erreur : 0x0000ec79 ID du processus défaillant : 0x1cd8 Heure de début de l’application défaillante : 0x01d2769bcb3c104c Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Mozilla Firefox\mozglue.dll ID de rapport : 51c9007a-7a37-49c4-a65a-24153dfc5494 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/25/2017 12:22:51 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (01/25/2017 12:22:10 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (01/25/2017 12:18:06 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Erreurs système: ============= Error: (01/25/2017 12:49:55 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (01/25/2017 12:49:55 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\PASCAL\AppData\Local\Temp\ehdrv.sys Error: (01/25/2017 12:49:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (01/25/2017 12:49:53 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\PASCAL\AppData\Local\Temp\ehdrv.sys Error: (01/25/2017 12:49:51 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (01/25/2017 12:49:51 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\PASCAL\AppData\Local\Temp\ehdrv.sys Error: (01/25/2017 12:49:49 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (01/25/2017 12:49:49 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\PASCAL\AppData\Local\Temp\ehdrv.sys Error: (01/25/2017 12:49:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (01/25/2017 12:49:47 AM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\PASCAL\AppData\Local\Temp\ehdrv.sys CodeIntegrity: =================================== Date: 2017-01-09 09:20:28.025 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:20:28.011 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:20:27.971 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:20:16.530 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:20:16.472 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:19:35.906 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 09:19:35.834 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-09 08:48:04.502 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_7096e4ac8d3f2f91\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-08 14:09:07.671 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_7096e4ac8d3f2f91\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-01-06 08:42:23.622 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_7096e4ac8d3f2f91\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-4130T CPU @ 2.90GHz Pourcentage de mémoire utilisée: 69% Mémoire physique - RAM - totale: 3751.45 MB Mémoire physique - RAM - disponible: 1142.51 MB Mémoire virtuelle totale: 6823.45 MB Mémoire virtuelle disponible: 2925.9 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:149.56 GB) (Free:16.35 GB) NTFS Drive d: (Data) (Fixed) (Total:763.69 GB) (Free:433.36 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 28E21DEC) Partition: GPT. ==================== Fin de Addition.txt ============================