Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 15-03-2017 Exécuté par rache (07-04-2017 14:51:24) Exécuté depuis C:\Users\rache\Downloads Windows 10 Home Version 1607 (X64) (2016-12-04 22:47:07) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2084505036-4276510822-1062273005-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2084505036-4276510822-1062273005-503 - Limited - Disabled) Invité (S-1-5-21-2084505036-4276510822-1062273005-501 - Limited - Disabled) rache (S-1-5-21-2084505036-4276510822-1062273005-1001 - Administrator - Enabled) => C:\Users\rache ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: adaware antivirus (Enabled - Up to date) {2C8A0DAA-E78D-4944-DB01-263173C8FFD9} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: adaware antivirus (Enabled - Up to date) {97EBEC4E-C1B7-46CA-E1B1-1D43084FB564} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) adaware antivirus (HKLM\...\{BECD7155-DC57-4F89-B1A8-A90B033C6209}_AdAwareUpdater) (Version: 12.0.649.11190 - adaware) AdAwareInstaller (Version: 12.0.649.11190 - adaware) Hidden AdAwareProxyEngine (Version: 1.0.0.8 - adaware) Hidden AdAwareUpdater (Version: 12.0.649.11190 - adaware) Hidden Ansel (Version: 378.66 - NVIDIA Corporation) Hidden AntimalwareEngine (Version: 3.0.144.0 - adaware) Hidden AntispamEngine (Version: 2.5.337.0 - adaware) Hidden AudioFXSetup (Version: 1.2.901 - Nahimic) Hidden AvcEngine (Version: 3.12.15976.0 - adaware) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.5.83.6332 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BurnRecovery (HKLM-x32\...\InstallShield_{92A6B009-1343-4C44-AFB1-8849137CA3F0}) (Version: 5.0.1509.201 - Application) BurnRecovery (x32 Version: 5.0.1509.201 - Application) Hidden Call of Duty: Black Ops III (HKLM\...\Steam App 311210) (Version: - Treyarch) CheckDevicesConfigurator (Version: 1.2.901 - Nahimic) Hidden Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5307.55 - CyberLink Corp.) Étude pour l'amélioration du produit HP Deskjet 1510 series (HKLM\...\{4FC8905C-0B85-4A31-B30B-F3CD3917F7D6}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) FirewallEngine (Version: 2.0.0.20 - adaware) Hidden Gaming Center(x64) (HKLM-x32\...\Installshield_{551A2B0B-32DC-4CDC-BCEF-1E2FCE0557E7}) (Version: 0.0.1.15 - MICRO-STAR INT'L,.LTD.) Gaming Center(x64) (Version: 0.0.1.15 - MSI) Hidden Garry's Mod (HKLM\...\Steam App 4000) (Version: - Facepunch Studios) Ghost Recon Wildlands Beta (HKLM-x32\...\Uplay Install 2970) (Version: - Ubisoft) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 57.0.2987.133 - Google Inc.) Google Update Helper (x32 Version: 1.3.32.7 - Google Inc.) Hidden Grand Theft Auto V (HKLM\...\Steam App 271590) (Version: - Rockstar North) Greenshot 1.2.9.129 (HKLM\...\Greenshot_is1) (Version: 1.2.9.129 - Greenshot) H1Z1: King of the Kill (HKLM\...\Steam App 433850) (Version: - Daybreak Game Company) H1Z1: King of the Kill Test Server (HKLM\...\Steam App 439700) (Version: - Daybreak Game Company) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) HP Deskjet 1510 series Aide (HKLM-x32\...\{00645C10-53C9-46DC-B7D0-6F7B006972E9}) (Version: 30.0.0 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel(R) Chipset Device Software (x32 Version: 10.1.1.7 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1153 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4240 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{DC5673D2-228D-45BC-B9BB-9610CE67DFC0}) (Version: 17.1.1524.1353 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{d9e230c1-06bb-4b78-a9f1-c1ddce14e6fc}) (Version: 18.11.0 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) LauncherSetup (Version: 1.2.901 - Nahimic) Hidden LibreOffice 5.2.3.3 (HKLM-x32\...\{30605C95-A3A0-4A08-AD58-9AE7ABA47B70}) (Version: 5.2.3.3 - The Document Foundation) Logiciel de base du périphérique HP Deskjet 1510 series (HKLM\...\{54C00C25-16ED-4035-BAEC-1C5F9B83B113}) (Version: 32.2.188.47710 - Hewlett-Packard Co.) MEmu (HKLM-x32\...\MEmu) (Version: 2.9.3 - Microvirt) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4693.1005 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2084505036-4276510822-1062273005-1001\...\OneDriveSetup.exe) (Version: 17.3.6798.0207 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24210 (HKLM-x32\...\{23658c02-145e-483d-ba6b-1eb82c580529}) (Version: 14.0.24210.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MSI Remind Manager (HKLM-x32\...\InstallShield_{3E23F267-3E35-40F9-B6BF-BC034D214717}) (Version: 1.10.1509.0801 - Micro-Star International Co., Ltd.) MSI Remind Manager (x32 Version: 1.10.1509.0801 - Micro-Star International Co., Ltd.) Hidden Nahimic for MSI (HKLM-x32\...\{eadd5e8f-02ed-4619-975b-3611466d54a2}) (Version: 1.2.9 - Nahimic) NahimicSettingsConfigurator (Version: 1.2.901 - Nahimic) Hidden NVIDIA Logiciel système PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 378.66 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.21 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 378.66 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 378.66 - NVIDIA Corporation) OnlineThreatsEngine (Version: 3.0.1.23 - adaware) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.4.5.30491 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Panneau de configuration NVIDIA 378.66 (Version: 378.66 - NVIDIA Corporation) Hidden PhotoFiltre 7 (HKU\S-1-5-21-2084505036-4276510822-1062273005-1001\...\PhotoFiltre 7) (Version: - ) PRO EVOLUTION SOCCER 2017 TRIAL EDITION (HKLM\...\Steam App 541180) (Version: - Konami Digital Entertainment) ProductDaemonSetup (Version: 1.2.901 - Nahimic) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7614 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.0 - Rockstar Games) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal) Uplay (HKLM-x32\...\Uplay) (Version: 28.1 - Ubisoft) Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.) WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) XSplit Gamecaster (HKLM-x32\...\{A3491D72-764C-4590-9945-0945342AB34A}) (Version: 2.5.1507.3020 - SplitmediaLabs) Zula (HKLM-x32\...\22DF2438-3A2E-4E99-BA0E-3272968F0290_is1) (Version: 1.09-161219.13851 - IDC/Games) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01C375DF-8F82-432F-B97A-8966BC1BEF95} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\rache\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe Task: {12327279-977C-49BF-BF2C-8CCE1068859D} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [2015-10-02] () Task: {237FE996-E718-4CF6-BA09-AB20DD930145} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-12] (Google Inc.) Task: {26722B94-3930-4A5F-BDA5-C108838A8B76} - System32\Tasks\{28129727-19CB-44F0-9E21-349963D97440} => pcalua.exe -a "C:\ProgramData\Battle.net\Agent\Blizzard Uninstaller.exe" -c --lang=frFR --uid=battle.net --displayname="Battle.net" Task: {27198DBB-7D54-433C-8E2B-DE5495EF76E9} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [2015-10-02] () Task: {4AC307B9-2FE7-40F3-9F31-7893B518F646} - System32\Tasks\MSI_Reminder => C:\Program Files (x86)\MSI\MSI Remind Manager\MSI Reminder.exe [2015-05-06] () Task: {92FD91A4-87D3-400C-92E2-9BF3A45C471C} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation) Task: {B142ACE4-E7AB-41BC-A503-08EC68B95655} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation) Task: {B2E6538B-F6C6-4995-8ED4-2F9CF455FC46} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-01-20] (NVIDIA Corporation) Task: {BACF9C4B-DD34-4D68-B8E1-95C94F83457E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-01-20] (NVIDIA Corporation) Task: {E23F9B56-8EE2-48CC-8174-701D5E7E5726} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-11-12] (Google Inc.) Task: {E4F80793-F597-4E0B-A1C1-91726056A39A} - System32\Tasks\HPCustParticipation HP Deskjet 1510 series => C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPCustPartic.exe [2014-03-06] (Hewlett-Packard Co.) Task: {E9E97216-1C2E-41C3-86AA-90F58F0C3486} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [2015-10-02] () Task: {EA5438AB-A3B8-4C3A-93EF-B88F88BA9B24} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\CyberLink\PowerDVD12\PDVD12Serv.exe [2015-05-11] (CyberLink Corp.) Task: {F6D54CC8-0100-4C72-B5F4-A0E8D7F847CF} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-01-20] (NVIDIA Corporation) Task: {FF453049-132D-4A53-AF68-E1E735226220} - System32\Tasks\system => C:\ProgramData\DirectX\svhost.exe [2016-07-13] (Microsoft Corporation) <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\rache\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Modules chargés (Avec liste blanche) ============== 2017-02-21 14:45 - 2017-02-21 14:45 - 00585784 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareService.exe 2017-02-21 14:50 - 2017-02-21 14:50 - 00121816 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_thread-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00067544 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_date_time-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00030680 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_system-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00144856 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_filesystem-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00733144 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_log-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00524760 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_locale-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00039384 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_chrono-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 11554264 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\rpc_server.dll 2017-02-21 14:51 - 2017-02-21 14:51 - 03712984 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\RCF.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01000920 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_regex-vc140-mt-1_61.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01142232 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareActivation.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 00633816 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareApplicationUpdater.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00843736 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareGamingMode.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00120280 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareReset.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00142296 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareTime.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01024472 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareDefinitionsUpdater.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 00906712 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareDefinitionsUpdaterScheduler.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01468376 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareIgnoreList.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00261080 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareQuarantine.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01652184 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareAntiMalwareEngine.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01194456 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareScannerHistory.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01553880 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareScanner.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00039384 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_timer-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01032152 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareScannerScheduler.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01183192 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareRealTimeProtection.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 02887640 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareIncompatibles.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01525208 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareAntiSpam.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01456600 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareAntiPhishing.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 03464664 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareParentalControl.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01653720 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareWebProtection.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01598936 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareEmailProtection.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00073176 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\boost_iostreams-vc140-mt-1_61.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01712088 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareNetworkProtection.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01067480 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwarePromo.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00475096 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareFeedback.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 03166168 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareThreatWorkAlliance.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00667096 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwarePinCode.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01069528 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareNotice.dll 2017-02-21 14:49 - 2017-02-21 14:49 - 01598424 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareAvcEngine.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 01496536 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareRealTimeProtectionHistory.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 00774104 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareStatistics.dll 2017-04-07 12:59 - 2017-04-07 12:59 - 01008448 _____ () F:\adaware\adaware antivirus\Online Threats Engine\definitions\loc1\ashttpbr.mdl 2017-04-07 12:59 - 2017-04-07 12:59 - 00541952 _____ () F:\adaware\adaware antivirus\Online Threats Engine\definitions\loc1\ashttpdsp.mdl 2017-04-07 12:59 - 2017-04-07 12:59 - 03243920 _____ () F:\adaware\adaware antivirus\Online Threats Engine\definitions\loc1\ashttpph.mdl 2017-04-07 12:59 - 2017-04-07 12:59 - 01544568 _____ () F:\adaware\adaware antivirus\Online Threats Engine\definitions\loc1\ashttprbl.mdl 2016-07-16 12:42 - 2016-07-16 12:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-03-15 14:57 - 2017-03-04 08:19 - 02681200 _____ () C:\WINDOWS\System32\CoreUIComponents.dll 2016-12-04 23:25 - 2017-02-09 23:57 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-03-15 14:57 - 2017-03-04 08:19 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-03-15 14:57 - 2017-03-04 08:19 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 02687960 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareShellExtension.dll 2016-12-04 23:14 - 2016-12-04 23:14 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 14:56 - 2017-03-04 07:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-15 14:57 - 2017-03-04 07:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 14:57 - 2017-03-04 07:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 14:57 - 2017-03-04 07:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-03-15 14:57 - 2017-03-04 07:05 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-03-15 14:57 - 2017-03-04 07:05 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-03-15 14:57 - 2017-03-04 07:08 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-02-21 14:50 - 2017-02-21 14:50 - 04461016 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\AdAwareTray.exe 2017-02-21 14:50 - 2017-02-21 14:50 - 11717592 _____ () F:\adaware\adaware antivirus\adaware antivirus\12.0.649.11190\rpc_client.dll 2017-04-04 06:11 - 2017-03-29 09:47 - 02885464 _____ () C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\libglesv2.dll 2017-04-04 06:11 - 2017-03-29 09:47 - 00099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\libegl.dll 2017-03-31 06:11 - 2017-03-31 06:11 - 01710080 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8021.42367.0_x64__8wekyb3d8bbwe\HxMail.exe 2017-03-24 07:02 - 2017-03-24 07:02 - 13360320 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8021.42367.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Core.dll 2017-03-31 06:11 - 2017-03-31 06:11 - 01200832 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8021.42367.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll 2017-02-24 20:06 - 2017-03-07 05:55 - 02493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll 2015-06-24 10:07 - 2015-06-24 10:07 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2017-04-05 14:17 - 2017-03-10 01:13 - 00674592 _____ () F:\Nouveau dossier (2)\SDL2.dll 2017-04-05 14:17 - 2016-09-01 02:02 - 04969248 _____ () F:\Nouveau dossier (2)\v8.dll 2017-04-05 14:17 - 2017-03-23 01:52 - 02465056 _____ () F:\Nouveau dossier (2)\video.dll 2017-04-05 14:17 - 2016-09-01 02:02 - 01563936 _____ () F:\Nouveau dossier (2)\icui18n.dll 2017-04-05 14:17 - 2016-09-01 02:02 - 01195296 _____ () F:\Nouveau dossier (2)\icuuc.dll 2017-04-05 14:17 - 2016-01-27 08:49 - 02549760 _____ () F:\Nouveau dossier (2)\libavcodec-56.dll 2017-04-05 14:17 - 2016-01-27 08:49 - 00491008 _____ () F:\Nouveau dossier (2)\libavformat-56.dll 2017-04-05 14:17 - 2016-01-27 08:49 - 00332800 _____ () F:\Nouveau dossier (2)\libavresample-2.dll 2017-04-05 14:17 - 2016-01-27 08:49 - 00442880 _____ () F:\Nouveau dossier (2)\libavutil-54.dll 2017-04-05 14:17 - 2016-01-27 08:49 - 00485888 _____ () F:\Nouveau dossier (2)\libswscale-3.dll 2017-04-05 14:17 - 2017-03-30 23:46 - 00848672 _____ () F:\Nouveau dossier (2)\bin\chromehtml.DLL 2017-04-05 14:17 - 2016-07-04 23:17 - 00266560 _____ () F:\Nouveau dossier (2)\openvr_api.dll 2017-04-05 14:18 - 2017-01-30 22:41 - 68875552 _____ () F:\Nouveau dossier (2)\bin\cef\cef.win7\libcef.dll 2017-04-05 14:17 - 2017-03-23 01:52 - 00383776 _____ () F:\Nouveau dossier (2)\steam.dll 2017-04-05 14:17 - 2015-09-25 00:52 - 00119208 _____ () F:\Nouveau dossier (2)\winh264.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\rache\Downloads\FRST (1).exe:BDU [0] AlternateDataStreams: C:\Users\rache\Downloads\FRST.exe:BDU [0] AlternateDataStreams: C:\Users\rache\Downloads\FRST64.exe:BDU [0] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\adawareantivirusservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\adawareantivirusservice => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-07-10 12:04 - 2015-07-10 12:02 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2084505036-4276510822-1062273005-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rache\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{8a8e7191-ae00-42f2-8340-6c0ef468e2b5}.jpg DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [UDP Query User{3F8C0574-3432-4216-9BA1-7487C98F9D6D}F:\steamlibrary\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) F:\steamlibrary\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{D938A0BB-8C25-4F42-9DF1-D29BBC6D4BBB}F:\steamlibrary\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) F:\steamlibrary\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{0E328C95-569D-4695-BBBB-F285CFCC33FD}] => (Allow) F:\SteamLibrary\steamapps\common\Pro Evolution Soccer 2016 myClub\PES2016.exe FirewallRules: [{3B0353D2-6714-47B2-9B27-F88DD5DE0884}] => (Allow) F:\SteamLibrary\steamapps\common\Pro Evolution Soccer 2016 myClub\PES2016.exe FirewallRules: [{32FA4889-FE29-4B36-A929-68CB3CC0785F}] => (Allow) F:\SteamLibrary\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{D42C3BFE-FC44-4107-8FEE-E7327296AC87}] => (Allow) F:\SteamLibrary\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{3E8DE46B-20D3-42D1-8841-95F8AAAD8E2E}] => (Allow) F:\SteamLibrary\steamapps\common\SNOW\Bin64\playSNOW.exe FirewallRules: [{BA82D489-9839-4B78-994B-8FE4D8DA5619}] => (Allow) F:\SteamLibrary\steamapps\common\SNOW\Bin64\playSNOW.exe FirewallRules: [{F7F12123-C4B4-4A5F-885B-6AAA06C817C6}] => (Allow) F:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{5FE711CA-A588-4816-98EA-D2B0191C5F22}] => (Allow) F:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{B5C0EA22-E138-4916-8E01-53655AEDCB61}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{47512BE9-0F4F-4F18-BAC8-A489017A7C8A}] => (Allow) C:\Program Files\HP\HP Deskjet 1510 series\Bin\USBSetup.exe FirewallRules: [{F0E34EBF-F31B-4F05-99CA-74CFB7B683E5}] => (Allow) F:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{55529EE6-05A0-484D-BC78-FD3BAA04290A}] => (Allow) F:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7E4A8057-6DCD-4105-AFCF-5DA802D79DF3}] => (Allow) F:\SteamLibrary\Steam.exe FirewallRules: [{276817A2-0D9C-4793-99F4-60D9C693D80D}] => (Allow) F:\SteamLibrary\Steam.exe FirewallRules: [{66A500C1-93F4-4295-99C9-73167120728A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe FirewallRules: [{DD19FFCE-63B4-4880-A9E9-3AAA3EF90B8E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{2A0C10CC-52BD-4D33-B339-E6C3206D6293}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{BD2D2AE0-D172-4C52-8A9F-40E7637593B6}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{70AFFA13-0739-4F9F-9895-86014F22D19D}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe FirewallRules: [{C2AF1DF7-81C9-467D-9D6B-736E9E50B044}] => (Allow) F:\SteamLibrary\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe FirewallRules: [TCP Query User{6AA1A910-F486-46DE-8ABC-4432C9C037C7}F:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Block) F:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe FirewallRules: [UDP Query User{51C91D9C-9194-429A-94BE-0AEC9540B630}F:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Block) F:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe FirewallRules: [TCP Query User{29DE9C49-BC28-4EF6-A117-6017C583F068}F:\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) F:\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [UDP Query User{AEA60A8A-47E7-40A5-83B4-EC392E965041}F:\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) F:\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [{C79FB2A0-7835-4DFE-99AD-AC0739A66940}] => (Allow) C:\Users\rache\Desktop\jeu tintin\Steam.exe FirewallRules: [{6CF4AD02-8A36-4165-AEC4-31A36898708D}] => (Allow) C:\Users\rache\Desktop\jeu tintin\Steam.exe FirewallRules: [{ED026CA7-BD6A-4407-9854-87F368434BA0}] => (Allow) F:\steam\Steam.exe FirewallRules: [{A81DC430-34BC-438C-9699-0A285BE9C1E7}] => (Allow) F:\steam\Steam.exe FirewallRules: [TCP Query User{A736690A-B16A-42F5-BDF0-15D64770E9EC}F:\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) F:\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{EF3C1413-D52E-4990-860E-C49FACA982FB}F:\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) F:\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{B0A3C539-974A-44B7-8280-6BB2EE73F7D4}] => (Allow) F:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{A65AB864-AEC8-4A88-A12C-48D87A72FA5E}] => (Allow) F:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{098F90D0-E3B5-4B14-AC2D-CECAE8EC0A76}] => (Allow) F:\steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{BC5C6728-7AD3-4C79-B08F-9A1F75E1EDF0}] => (Allow) F:\steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe FirewallRules: [{53A846DE-1246-43B7-B6AC-850801B52B3A}] => (Allow) F:\steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{AE3461BD-76B8-4404-A90A-4DC6129B3213}] => (Allow) F:\steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{8FAED476-5916-440D-BD21-E845FC9E3C95}] => (Allow) F:\steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{791B0872-D02A-452F-8235-6360AB40FDA6}] => (Allow) F:\steam\steamapps\common\Call of Duty Black Ops III\BlackOps3.exe FirewallRules: [{D97B56C4-9C23-4F37-AE96-09595900ECE6}] => (Allow) F:\steam\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe FirewallRules: [{8CAB439F-C783-4128-8A82-FE02FECD463F}] => (Allow) F:\steam\steamapps\common\H1Z1 King of the Kill Test Server\LaunchPad.exe FirewallRules: [TCP Query User{42E42BD7-572B-4D39-A0F1-F99468269711}F:\nouveau dossier\bin\javaw.exe] => (Allow) F:\nouveau dossier\bin\javaw.exe FirewallRules: [UDP Query User{909E0BC7-7A17-49FC-8569-BD29FBFBE31E}F:\nouveau dossier\bin\javaw.exe] => (Allow) F:\nouveau dossier\bin\javaw.exe FirewallRules: [{A5FE6B87-03DD-4443-BEAD-4B2EEAAFE42E}] => (Allow) F:\steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{E2D397B3-E031-4534-8C5E-69C217A59A75}] => (Allow) F:\steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{6E3AFE15-B471-4E6D-A692-FF01DB47613D}F:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) F:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [UDP Query User{1269C657-1339-4041-AD07-2616D5CD6B6D}F:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) F:\steam\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [TCP Query User{22D04610-08BB-446E-8E7A-418EF664B245}F:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{476D6B5E-F177-4D34-B928-80FE5E790F2D}F:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) F:\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{B57A601E-9530-4A59-A825-91CFB9E1CAF8}] => (Allow) F:\steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{57CA4D07-E224-44EA-A563-F461F6D8D632}] => (Allow) F:\steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [TCP Query User{3E10E2BF-33C6-4C9D-9E8B-AFCBD7ADC2A1}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{BC0B44AA-8677-4CF1-A5AD-E8536292BC00}F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) F:\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [{927C6FF2-4BD1-4D37-A33E-4C6B9D21F32B}] => (Allow) LPort=3724 FirewallRules: [TCP Query User{F871B7AB-59CC-41D1-B30F-EC21EE9BD468}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{489AFD4A-34C6-4FCA-A4E8-97228E45572E}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{BD1F854A-34AD-4A90-871C-AF0D9D7493E9}] => (Allow) C:\Users\rache\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{196447C3-DA3A-4BC5-8168-3D2B95F6B1B2}] => (Allow) C:\Users\rache\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{378692F6-D2E9-4588-A5C3-85A8937A2E7F}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{48A3162A-CF51-4A37-9693-C2E4C6402D91}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{5AA99C22-F7FC-4A9E-A674-2A25D5589810}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{3520ED96-3CCF-44F0-A4CE-515B51D75891}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{3FB411C8-DCC6-4546-B654-54EA5C58282E}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{CC04A7D5-C1AD-404F-B932-A46D89917B68}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{367424A8-75E0-4F30-9710-225BC072B859}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{276ECE0A-7C0D-4A03-ADEA-3B12B68C9B0E}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{768C82D3-70DC-4877-8BD3-67DD0A8A8B64}] => (Allow) C:\Users\rache\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{A405F7D8-7ED6-430B-8783-BA524E4E4007}] => (Allow) C:\Users\rache\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{5997CF20-4853-450C-9AF4-A90D13901EF9}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{5C13ED52-9EB0-469F-AAD1-149A09356AFA}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{D84309FD-9A5B-422A-8C68-6F216BEB6D7F}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{55BC906D-28AF-415F-8DA2-4B677CDBCD1A}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{7A16C16A-55AE-4906-BC69-C63BB8FEF144}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{0AC159DD-D88B-4D17-B374-E57F1DB79303}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{988C3F23-C4FF-4FED-996E-43ACEBB7338E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{1940CA0D-7472-4442-8D82-BBA7EB8EBAF1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{0393E187-E186-4466-9817-47DE97C9E18F}] => (Allow) C:\Users\rache\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{7488FDB7-5966-4AF2-A682-5EDD87874A68}] => (Allow) F:\Ubisoft Game Launcher\games\Ghost Recon Wildlands Beta\GRW.exe FirewallRules: [{54FB75A2-0A26-40AE-8A2D-F84BC848F2F5}] => (Allow) F:\steam\steamapps\common\PRO EVOLUTION SOCCER 2017 TRIAL EDITION\PES2017.exe FirewallRules: [{9FF85C6A-5D30-4AA8-99FF-D79E46FFD0C7}] => (Allow) F:\steam\steamapps\common\PRO EVOLUTION SOCCER 2017 TRIAL EDITION\PES2017.exe FirewallRules: [{3B668747-B4A7-4CEF-8193-4449F4389554}] => (Allow) F:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{3556B2BC-4882-445E-8B42-93966453AB04}] => (Allow) F:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{2B7958A7-B803-4285-BE83-A0CC08B8A298}] => (Allow) F:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe FirewallRules: [{443BC676-D7CF-42AA-877C-E242DA33E43C}] => (Allow) F:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSixGame.exe FirewallRules: [{323A081E-901E-445C-B91F-59C97648613E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{47297328-9A7C-4C34-9E49-0B99D08C5008}] => (Allow) F:\Nouveau dossier (2)\Steam.exe FirewallRules: [{9D59CFBC-C9B7-42F6-9046-540549DDBB25}] => (Allow) F:\Nouveau dossier (2)\Steam.exe FirewallRules: [{E836DDC2-5826-4232-AA94-60964CEED60B}] => (Allow) F:\Nouveau dossier (2)\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{9242DBEF-4D18-4E2E-B4F9-5F193D0178CC}] => (Allow) F:\Nouveau dossier (2)\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2CC72B78-0D28-4FD8-8FB0-86FB8F467FB9}] => (Allow) C:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{643299A1-9361-459A-9B16-64CFF35C5328}] => (Allow) C:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{C859BB10-747D-4589-A7BB-D8F9C706EA1B}] => (Allow) F:\Nouveau dossier (2)\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{74A1CFD7-23A3-4DFB-BAE8-7A2E2954B6D6}] => (Allow) F:\Nouveau dossier (2)\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe ==================== Points de restauration ========================= 16-03-2017 07:53:07 Windows Update 25-03-2017 07:36:19 Point de contrôle planifié 03-04-2017 06:29:34 Point de contrôle planifié 05-04-2017 14:25:11 AA11 ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Clavier standard PS/2 Description: Clavier standard PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Claviers standard) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Intel(R) Dual Band Wireless-AC 3160 Description: Intel(R) Dual Band Wireless-AC 3160 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Intel Corporation Service: NETwNb64 Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (04/06/2017 03:52:12 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows ne parvient pas à charger la DLL de compteur extensible rdyboost. Le premier mot (DWORD) de la section Données contient le code d’erreur Windows. Error: (04/05/2017 05:24:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: DESKTOP-PI6VHTA) Description: Le package Microsoft.Windows.ShellExperienceHost_10.0.14393.953_neutral_neutral_cw5n1h2txyewy+App a été interrompu, car sa suspension a été trop longue. Error: (04/05/2017 04:47:55 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (04/05/2017 02:27:47 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour de l’état vers SECURITY_PRODUCT_STATE_OFF (erreur %3). Error: (04/05/2017 02:25:20 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (04/05/2017 06:09:07 AM) (Source: Microsoft-Windows-EFS) (EventID: 4401) (User: DESKTOP-PI6VHTA) Description: 7.488 : le service EFS n'a pas pu provisionner un utilisateur pour PDE. Code d'erreur : 0x80070005. Error: (04/04/2017 09:01:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante vbc.exe, version : 8.0.50727.8745, horodatage : 0x52833f7f Nom du module défaillant : msvcrt.dll, version : 7.0.14393.0, horodatage : 0x57899155 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00089cf8 ID du processus défaillant : 0x2a80 Heure de début de l’application défaillante : 0x01d2ad7e4bcd7479 Chemin d’accès de l’application défaillante : c:\windows\microsoft.net\framework\v2.0.50727\vbc.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\msvcrt.dll ID de rapport : 1c1d6937-f33a-4e8f-b5c2-a6b1f7489064 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (04/04/2017 08:55:48 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « WmiApRpl » dans la DLL « C:\WINDOWS\system32\wbem\wmiaprpl.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (04/04/2017 08:55:48 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows ne parvient pas à charger la DLL de compteur extensible rdyboost. Le premier mot (DWORD) de la section Données contient le code d’erreur Windows. Error: (04/04/2017 08:55:48 PM) (Source: PerfNet) (EventID: 2004) (User: ) Description: Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code d’état. Erreurs système: ============= Error: (04/07/2017 06:06:00 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/06/2017 11:01:51 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/06/2017 04:12:52 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/06/2017 06:10:16 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/05/2017 10:57:10 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/05/2017 08:37:32 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/05/2017 08:37:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service MEmusvc n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (04/05/2017 08:34:25 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/05/2017 08:21:43 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (04/05/2017 08:21:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service MEmusvc n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. CodeIntegrity: =================================== Date: 2017-02-01 22:38:54.882 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-02-01 22:38:54.819 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:16.440 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:16.398 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:13.626 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:13.583 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:11.865 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:45:11.792 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:44:42.998 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcr100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-01-19 22:44:42.959 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Andy\msvcp100.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4460S CPU @ 2.90GHz Pourcentage de mémoire utilisée: 58% Mémoire physique - RAM - totale: 8119.66 MB Mémoire physique - RAM - disponible: 3400.46 MB Mémoire virtuelle totale: 9399.66 MB Mémoire virtuelle disponible: 5424.58 MB ==================== Lecteurs ================================ Drive c: (OS_Install) (Fixed) (Total:279.46 GB) (Free:189.09 GB) NTFS Drive d: (Data) (Fixed) (Total:625.85 GB) (Free:625.6 GB) NTFS Drive f: () (Fixed) (Total:465.7 GB) (Free:308.6 GB) exFAT ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 1FFD87C8) Partition: GPT. ======================================================== Disk: 1 (Size: 465.8 GB) (Disk ID: 49A4EB20) Partition 1: (Active) - (Size=465.7 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================