Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 07-05-2017 Exécuté par PC-DE-STEFAN (08-05-2017 14:51:12) Exécuté depuis C:\Users\PC-DE-STEFAN\Desktop Windows 10 Home Version 1607 (X64) (2016-08-30 17:10:30) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2408429040-337848213-3675197501-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2408429040-337848213-3675197501-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2408429040-337848213-3675197501-1003 - Limited - Enabled) Invité (S-1-5-21-2408429040-337848213-3675197501-501 - Limited - Disabled) Papa - Maman (S-1-5-21-2408429040-337848213-3675197501-1004 - Administrator - Enabled) => C:\Users\Papa - Maman PC-DE-STEFAN (S-1-5-21-2408429040-337848213-3675197501-1001 - Administrator - Enabled) => C:\Users\PC-DE-STEFAN STEFAN (S-1-5-21-2408429040-337848213-3675197501-1006 - Administrator - Enabled) => C:\Users\STEFAN ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.0.1.188 - Adobe Systems Incorporated) Adobe Digital Editions 4.5 (HKLM-x32\...\Adobe Digital Editions 4.5) (Version: 4.5.1 - Adobe Systems Incorporated) Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.4.144 - Adobe Systems, Inc.) AirDroid 3.4.1.0 (HKLM-x32\...\AirDroid) (Version: 3.4.1.0 - Sand Studio) Ansel (Version: 376.82 - NVIDIA Corporation) Hidden Apache Directory Studio - (remove only) (HKLM-x32\...\Apache Directory Studio) (Version: - ) AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.2 - GPL Public release.) AVS Video Converter 9.1 (HKLM-x32\...\AVS4YOU Video Converter 7_is1) (Version: 9.1.2.571 - Online Media Technologies Ltd.) BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM-x32\...\{3792811C-832F-4392-B44A-24092901EDDC}) (Version: 0.9.30.9239 - BlueStack Systems, Inc.) Bonjour (HKLM-x32\...\{07287123-B8AC-41CE-8346-3D777245C35B}) (Version: 1.0.106 - Apple Inc.) Broadcom 802.11 Wireless LAN Adapter (HKLM\...\Broadcom 802.11 Wireless LAN Adapter) (Version: - Broadcom Corporation) Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.0.9840 - Broadcom Corporation) Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) CanoScan LiDE 110 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ2414) (Version: - ) Cheat Engine 6.5 (HKLM-x32\...\Cheat Engine 6.5_is1) (Version: - Cheat Engine) Chrome Remote Desktop Host (HKLM-x32\...\{88D5D9A4-48C4-4D0A-88B9-3E18661CF0D9}) (Version: 57.0.2987.37 - Google Inc.) Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden Citrix Receiver (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 14.3.0.5014 - Citrix Systems, Inc.) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) ControlMK 0.232 (HKLM-x32\...\ControlMK) (Version: 0.232 - Redcl0ud) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.9.4928 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4.4824 - CyberLink Corp.) CyberLink Power Media Player 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.6.5104 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.10.5422 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.6.3604 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.3.3907 - CyberLink Corp.) DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden Dofus 1.28.0 (HKLM-x32\...\Dofus 1.28.0) (Version: 1.28.0 - Ankama Games) DS4Windows (HKLM-x32\...\{9106FAA2-9086-44A3-A79B-8D1AA80CD802}) (Version: 1.5.13 - DSDCS) Edraw Max Fr 8.4 (HKLM-x32\...\Edraw Max Fr_is1) (Version: - EdrawSoft) Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) Evernote v. 5.2 (HKLM-x32\...\{412F6426-A3C7-11E3-8A71-00163E98E7D6}) (Version: 5.2.0.2951 - Evernote Corp.) Faeria (HKLM\...\Steam App 397060) (Version: - Abrakam SA) FileZilla Client 3.16.1 (HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\FileZilla Client) (Version: 3.16.1 - Tim Kosse) foobar2000 v1.3.10 (HKLM-x32\...\foobar2000) (Version: 1.3.10 - Peter Pawlowski) FreeMouseAutoClicker 3.6 (HKLM-x32\...\{292F00C5-25EF-4FBE-9873-13EF1F69DEED}_is1) (Version: - Advanced Mouse Auto Clicker ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 58.0.3029.96 - Google Inc.) Google Drive (HKLM-x32\...\{A1238426-ECDF-4639-BE2F-8D12A97AE23C}) (Version: 2.34.5075.1619 - Google, Inc.) Google Update Helper (x32 Version: 1.3.33.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden Himp version 3.1.1 (HKLM-x32\...\{3AD1F1C5-FA15-4F36-825E-7FC0FE16846D}_is1) (Version: 3.1.1 - Hiboutik) HP 3D DriveGuard (HKLM-x32\...\{F90A86C9-7779-47DD-AC06-8EE832C55F55}) (Version: 6.0.18.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{E2C8D0C2-1C97-4C05-939A-5B13A0FE655C}) (Version: 2.20.31 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{082B1425-0F24-43FA-9B64-E8F617B0AD3B}) (Version: 1.1.0.0 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{8C696B4B-6AB1-44BC-9416-96EAC474CABE}) (Version: 7.5.2.12 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{8B4EE87E-6D40-4C91-B5E8-0DC77DC412F1}) (Version: 1.4.1 - Hewlett-Packard Company) HP Utility Center (HKLM\...\{36F80C5F-DC0D-4DF4-AF09-DC1867F0EB0A}) (Version: 2.4.4 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{EFA01423-3857-468C-B7B6-F30AA08E50BC}) (Version: 1.1.5.1 - Hewlett-Packard Company) Inst5675 (Version: 8.01.11 - Softex Inc.) Hidden Inst5676 (Version: 8.01.11 - Softex Inc.) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) Smart Connect Technology (HKLM\...\{B5ADC77D-81D7-483D-9373-3D00A69E5854}) (Version: 4.2.41.2710 - Intel Corporation) Java 8 Update 111 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Java SE Development Kit 8 Update 45 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180450}) (Version: 8.0.450.15 - Oracle Corporation) Lame ACM MP3 Codec (HKLM-x32\...\LameACM) (Version: - ) Logiciel pour périphérique à chipset Intel® (x32 Version: 10.1.1.7 - Intel(R) Corporation) Hidden m4ng (HKLM-x32\...\m4ng) (Version: - ) MergeModule_x64 (Version: 9.3.00 - Sony Corporation) Hidden MergeModule_x86 (x32 Version: 9.3.00 - Sony Corporation) Hidden Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.7967.2139 - Microsoft Corporation) Microsoft Office Professionnel Plus 2016 - fr-fr (HKLM\...\ProPlusRetail - fr-fr) (Version: 16.0.7967.2139 - Microsoft Corporation) Microsoft Office Remote (HKLM-x32\...\{7a1ad515-9199-47d6-aa40-6fdf2c857ff0}) (Version: 1.1.3.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft Project Professionnel 2016 - fr-fr (HKLM\...\ProjectProRetail - fr-fr) (Version: 16.0.7967.2139 - Microsoft Corporation) Microsoft Visio Professionnel 2016 - fr-fr (HKLM\...\VisioProRetail - fr-fr) (Version: 16.0.7967.2139 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{b3c7f59f-dc40-4be9-829c-77dd292978ea}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23918 (HKLM-x32\...\{2e085fd2-a3e4-4b39-8e10-6b8d35f55244}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mirror's Edge Catalyst (HKLM-x32\...\{B94653A7-71EB-4EB1-AC5B-A9D06BDF6124}_is1) (Version: 1.0.3.47248 - Electronic Arts) Mises à jour NVIDIA 12.4.46 (Version: 12.4.46 - NVIDIA Corporation) Hidden Mobizen (HKLM-x32\...\{BA0D3A44-BCEE-4C8B-BCD4-F7F1E64F41E3}) (Version: 2.21.0.3 - RSUPPORT) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Montpellier Business Plan version 1.07 (HKLM-x32\...\{5069AC3D-B8E1-403F-873A-84D9747CACAF}_is1) (Version: 1.07 - Montpellier Méditerranée Métropole) MotioninJoy Gamepad tool 0.7.1001 (HKLM\...\{330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1) (Version: 0.7.1001 - www.motioninjoy.com) MSVC80_x64_v2 (Version: 1.0.3.0 - Nokia) Hidden MSVC80_x86_v2 (x32 Version: 1.0.3.0 - Nokia) Hidden MSVC90_x64 (Version: 1.0.1.2 - Nokia) Hidden MSVC90_x86 (x32 Version: 1.0.1.2 - Nokia) Hidden Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia) Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.54.0 - Nokia) Nokia Suite (x32 Version: 3.8.54.0 - Nokia) Hidden NVIDIA GeForce Experience 2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.0 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.13.0927 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0927 - NVIDIA Corporation) NVIDIA Pilote graphique 376.82 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.82 - NVIDIA Corporation) NVIDIA Virtual Audio 1.2.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver) (Version: 1.2.22 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.7967.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.7967.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.7967.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.7668.2066 - Microsoft Corporation) Hidden Online Plug-in (x32 Version: 14.3.0.5014 - Citrix Systems, Inc.) Hidden Oracle VM VirtualBox 5.0.14 (HKLM\...\{82022940-639B-48A3-86D9-B139864105F7}) (Version: 5.0.14 - Oracle Corporation) Outlast (HKLM-x32\...\Outlast_is1) (Version: - ) Package de pilotes Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia) Panneau de configuration NVIDIA 376.82 (Version: 376.82 - NVIDIA Corporation) Hidden PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia) PDF Architect 3 (HKLM-x32\...\PDF Architect 3) (Version: 3.0.45.22485 - pdfforge GmbH) PDF Architect 3 Create Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden PDF Architect 3 Edit Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden PDF Architect 3 View Module (x32 Version: 3.0.13.22993 - pdfforge GmbH) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.1.2 - pdfforge) PlayMemories Home (HKLM-x32\...\{94F4815B-755A-4FFA-AFDC-EE8FE776981E}) (Version: 5.2.01.06240 - Sony Corporation) PMB_ModeEditor (x32 Version: 9.3.00 - Sony Corporation) Hidden PMB_ServiceUploader (x32 Version: 10.2.01 - Sony Corporation) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 5.2 - Power Software Ltd) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.273.40 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7553 - Realtek Semiconductor Corp.) RLinkToolbox 3.3.0.1896 (HKLM-x32\...\RLinkToolbox) (Version: 3.3.0.1896 - TomTom) Secure Download Manager (HKLM-x32\...\{60232A95-0B96-4BBB-9798-85A6AB6F8210}) (Version: 3.1.60 - Kivuto Solutions Inc.) Self-Service Plug-in (x32 Version: 4.3.0.8352 - Citrix Systems, Inc.) Hidden Service Xperia Companion (Version: 1.4.7.0 - Sony) Hidden SHIELD Streaming (Version: 1.8.315 - NVIDIA Corporation) Hidden Skype™ 7.29 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.29.102 - Skype Technologies S.A.) Sony Mobile Update Engine (HKLM-x32\...\Update Engine) (Version: 2.16.8.201605301505 - Sony Mobile Communications Inc.) Sony PC Companion 2.10.303 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.303 - Sony) SopCast 4.2.0 (HKLM-x32\...\SopCast) (Version: 4.2.0 - www.sopcast.com) Splashtop Personal (HKLM-x32\...\{E7CF0F14-8C1D-41F3-85ED-579C108262C7}) (Version: 2.6.0.0 - Splashtop Inc.) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.15 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 2.6.5.10 - Splashtop Inc.) Spotify (HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\Spotify) (Version: 1.0.52.725.g943b26a8 - Spotify AB) Streaming Audio Recorder V4.0.7 (HKLM-x32\...\{B6D9D06B-4B4D-4B41-B963-C056B627F704}_is1) (Version: 4.0.7 - APOWERSOFT LIMITED) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics ClickPad Driver (HKLM\...\SynTPDeinstKey) (Version: 19.2.4.10 - Synaptics Incorporated) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.77242 - TeamViewer) Time Adjuster STANDARD 3.1 (HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\TimeAdjuster) (Version: - IrekSoftware.com) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) VSO ConvertXToDVD (HKLM-x32\...\{CE1F93C0-4353-4C9D-84DA-AB4E7C63ED32}_is1) (Version: 5.1.0.12 - VSO Software) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Wampserver64 3.0.6 (HKLM\...\{wampserver64}_is1) (Version: 3.0.6 - Dominique Ottello aka Otomatic) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) Wondershare Filmora(Build 6.7.0) (HKLM-x32\...\Wondershare Filmora_is1) (Version: - Wondershare Software) Wondershare Helper Compact 2.5.2 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare) Wondershare Streaming Audio Recorder(Build 2.0.2.3) (HKLM-x32\...\Wondershare Streaming Audio Recorder_is1) (Version: 2.0.2.3 - Wondershare Software Co.,Ltd.) Wondershare Video Converter Ultimate(Build 8.6.0.0) (HKLM-x32\...\Wondershare Video Converter Ultimate_is1) (Version: 8.6.0.0 - Wondershare Software) X-Lite (HKLM-x32\...\{BF7A597F-B539-47D4-B932-3C93E17B18C1}) (Version: 49.7.8104 - CounterPath Corporation) Xperia Companion (HKLM-x32\...\{efee6944-1231-492a-a157-93409130a098}) (Version: 1.4.7.0 - Sony) Xperia Companion (x32 Version: 1.4.7.0 - Sony) Hidden ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2408429040-337848213-3675197501-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {03B37C95-B53A-4A6B-A342-33036E30A9F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation) Task: {1DA5CB3F-A65C-4170-B005-F523D299777B} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {22E8EBB0-58C3-4D68-95C1-436B05C44823} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {34C55713-C897-421C-8204-463D84D0B1C5} - System32\Tasks\InstallShield® Update Service Scheduler => C:\Program Files (x86)\Common Files\InstallShield\Update\ISUSPM.exe [2017-01-18] (InstallShield®) Task: {35C8D975-AEC7-4469-A1FE-8AD5F5D2017B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation) Task: {3B75E625-DC68-44B9-B25E-740ADFBB498C} - System32\Tasks\Minneson-Tracer => Rundll32.exe "C:\Program Files\Minneson-Tracer\Minneson-Tracer.dll",icyXaKqQ Task: {3BF7D59B-EA5E-470E-B4FC-DCD73B95FFBB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation) Task: {5788272B-B5AE-46F7-9DC5-E166DBD74856} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {63D3D67C-5E4C-4139-A7BE-0BE1695AC63A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-03-28] (Microsoft Corporation) Task: {85AF1198-351B-44D4-8B30-5B98ABC92440} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {8A5D8BAB-38CD-4CCA-BDD9-64FB5F482DE2} - System32\Tasks\3D UltraBite Project => Rundll32.exe "C:\Program Files\3D UltraBite Project\3D UltraBite Project.dll",XsjqmgPtMwD Task: {8B6ED4C6-E627-484D-BF7D-27FC11AB19A5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {BF1A9896-A1DD-475D-BB78-9FAA641D263B} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {C08EBBDE-47DE-44D1-99E5-23CB3756B344} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {CDCED4F6-CF2F-42B6-B9A6-A35DEC13E204} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {D367FA41-2E55-476F-BB6F-FB3616116EB8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {E9DF2F25-8452-4122-9059-B99FA0465DE8} - \Pokki -> Pas de fichier <==== ATTENTION Task: {F019A4F3-F63A-49D9-8AD6-E1D00D53D25F} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {F0347FC5-7D56-4728-B029-1CA99D11CF25} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForPC-DE-STEFAN.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 00231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-04-11 20:46 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-04-30 13:51 - 2015-06-01 07:41 - 02479104 _____ () C:\Program Files\3D UltraBite Project\3D UltraBite Project.dll 2014-03-28 13:31 - 2014-03-28 13:31 - 02110464 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll 2014-03-28 13:27 - 2014-03-28 13:27 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll 2014-03-28 13:48 - 2014-03-28 13:48 - 00367504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll 2014-03-28 13:48 - 2014-03-28 13:48 - 00712080 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll 2016-08-30 18:19 - 2017-02-06 13:37 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-05-07 23:53 - 2017-05-08 14:42 - 00302592 _____ () C:\WINDOWS\TEMP\gE478.tmp.exe 2017-05-07 23:54 - 2017-05-08 14:42 - 00473600 _____ () C:\WINDOWS\TEMP\gE479.tmp.exe 2017-04-11 20:46 - 2017-03-28 08:22 - 02681200 _____ () C:\WINDOWS\SYSTEM32\CoreUIComponents.dll 2016-10-25 09:57 - 2016-10-25 09:57 - 00491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2016-12-01 12:56 - 2015-02-27 15:38 - 00721263 _____ () C:\WINDOWS\SysWoW64\WSCM64.dll 2016-09-14 09:07 - 2016-09-07 06:56 - 00134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 20:03 - 2017-03-04 08:31 - 00474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-15 20:01 - 2017-03-04 08:12 - 09760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 20:01 - 2017-03-04 08:05 - 01401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 20:01 - 2017-03-04 08:05 - 00757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-04-11 20:46 - 2017-03-28 07:07 - 01033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-04-11 20:46 - 2017-03-28 07:08 - 02424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-04-11 20:46 - 2017-03-28 07:11 - 04853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2014-03-28 13:36 - 2014-03-28 13:36 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe 2017-04-11 20:46 - 2017-03-28 08:26 - 03388256 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentDeliveryManager.Background.dll 2017-04-11 20:46 - 2017-03-28 08:13 - 02263904 _____ () C:\Windows\SystemApps\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\ContentManagementSDK.dll 2017-04-05 17:51 - 2017-04-05 17:56 - 00055808 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11701.1001.99.0_x64__8wekyb3d8bbwe\WinStoreTasksWrapper.dll 2017-04-26 18:22 - 2017-04-26 18:33 - 00077312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-04-26 18:22 - 2017-04-26 18:33 - 00190464 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-04-26 18:22 - 2017-04-26 18:32 - 43011072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 08507232 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtGui4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 02354016 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtCore4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 01014624 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtNetwork4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 02480992 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtDeclarative4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00364384 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtXml4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00206176 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtSql4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 01346912 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtScript4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 02653024 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtXmlPatterns4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00033120 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\imageformats\qgif4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00035680 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\imageformats\qico4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00207200 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\imageformats\qjpeg4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 11166560 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtWebKit4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00276832 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\phonon4.dll 2014-11-11 10:21 - 2014-11-11 10:21 - 00392552 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\ssoengine.dll 2014-11-11 10:21 - 2014-11-11 10:21 - 00059752 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\securestorage.dll 2014-11-19 12:47 - 2014-11-19 12:47 - 00438624 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\NService.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00446304 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\sqldrivers\qsqlite4.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00520544 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtMultimediaKit1.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00720736 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\QtOpenGL4.dll 2014-11-19 12:46 - 2014-11-19 12:46 - 00606560 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\CommonUpdateChecker.dll 2014-11-19 12:48 - 2014-11-19 12:48 - 00093024 _____ () C:\Program Files (x86)\Nokia\Nokia Suite\qjson.dll 2016-05-25 23:25 - 2016-10-08 17:48 - 01506304 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll 2016-05-25 23:25 - 2016-07-21 11:54 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll 2017-05-08 14:44 - 2017-05-08 14:44 - 00098816 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32api.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00110080 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\pywintypes27.dll 2017-05-08 14:44 - 2017-05-08 14:44 - 00364544 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\pythoncom27.dll 2017-05-08 14:44 - 2017-05-08 14:44 - 00320512 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32com.shell.shell.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00914432 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_hashlib.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 01176576 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._core_.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00806400 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._gdi_.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00816128 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._windows_.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 01067008 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._controls_.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00733184 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._misc_.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00682496 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\pysqlite2._sqlite.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00088064 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_ctypes.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00686080 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\unicodedata.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00119808 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32file.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00108544 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32security.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00007168 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\hashobjs_ext.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00017920 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\thumbnails_ext.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00088064 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\usb_ext.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00012800 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\common.time34.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00018432 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32event.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00167936 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32gui.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00046080 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_socket.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 01303552 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_ssl.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00128512 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_elementtree.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00127488 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\pyexpat.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00038912 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32inet.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00036864 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_psutil_windows.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00524248 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\windows._lib_cacheinvalidation.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00011264 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32crypt.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00123392 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._wizard.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00077312 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._html2.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00027648 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_multiprocessing.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00020480 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\_yappi.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00035840 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32process.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00078848 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\wx._animate.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00024064 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32pipe.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00010240 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\select.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00025600 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32pdh.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00017408 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32profile.pyd 2017-05-08 14:44 - 2017-05-08 14:44 - 00022528 ____R () C:\Users\PC-DE-STEFAN\AppData\Local\Temp\_MEI46362\win32ts.pyd 2014-06-19 20:59 - 2013-12-10 17:27 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 15:25 - 2015-05-30 14:00 - 00000905 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2408429040-337848213-3675197501-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\PC-DE-STEFAN\Pictures\Fond d'écrans\1d27f5ae0dd29b271d4f447026878e80_large.jpeg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "Wondershare Helper Compact.exe" HKLM\...\StartupApproved\Run32: => "BlueStacks Agent" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "DelaypluginInstall" HKLM\...\StartupApproved\Run32: => "Aimersoft Helper Compact.exe" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "Spotify" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "Spotify Web Helper" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "RESTART_STICKY_NOTES" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "Sony PC Companion" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-2408429040-337848213-3675197501-1001\...\StartupApproved\Run: => "Power2GoExpress8" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{63CD9811-1C32-4841-ADD1-707EAA886B6E}C:\users\pc-de-stefan\documents\divers\applications\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify.exe FirewallRules: [TCP Query User{E650C59F-7271-45E5-AA59-241940242E21}C:\users\pc-de-stefan\documents\divers\applications\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify.exe FirewallRules: [UDP Query User{BBBDE252-1049-4C87-9269-A36F13154673}C:\users\pc-de-stefan\documents\divers\applications\spotify.exe] => (Block) C:\users\pc-de-stefan\documents\divers\applications\spotify.exe FirewallRules: [TCP Query User{F3C5254A-C1F5-4163-B20A-86A5B85C6ADC}C:\users\pc-de-stefan\documents\divers\applications\spotify.exe] => (Block) C:\users\pc-de-stefan\documents\divers\applications\spotify.exe FirewallRules: [{5A0DE6BE-B763-426D-9295-4E5103AA88F9}] => (Allow) C:\Users\PC-DE-STEFAN\Documents\Divers\Applications\Steam\Steam.exe FirewallRules: [{1E7F5115-1978-4D1C-A493-D8787DD695C8}] => (Allow) C:\Users\PC-DE-STEFAN\Documents\Divers\Applications\Steam\Steam.exe FirewallRules: [{2692FB37-A919-4E35-9694-ABC6FF354AC7}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{B05F438C-3AF0-439D-88B2-3A5DC063DDE8}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe FirewallRules: [{BB72F9D4-7CD1-40E0-AC3A-EFB32559C780}] => (Allow) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe FirewallRules: [{1408C461-C118-4985-8EFD-FF9D6067C0A4}] => (Allow) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe FirewallRules: [{02B1F772-3C9E-438C-A815-F8C83101004B}] => (Allow) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe FirewallRules: [{8CB7105C-98AC-4C5D-A2B5-EDE5F46FF6AD}] => (Allow) C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe FirewallRules: [{C7FEEAAD-406F-49DF-9741-957694E4CC89}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [UDP Query User{37887652-4753-424D-B096-A581C241A826}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [TCP Query User{AC4AEA43-7D88-4B62-BB86-ED94A50BFCF2}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [{C7456F7A-941C-4001-8B3F-F1F2BB767C71}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{8610A5FB-F771-4DB2-8609-F79DF7F093C4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{277217E2-468D-498A-A1FE-3FADA6615707}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{7AA72129-B5F0-48E6-BBB6-AEF04FB105AB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [UDP Query User{0A7C1337-E38F-46B1-BFE8-5663361DF256}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [TCP Query User{089312A6-040E-4AA7-AAB7-7F5ED0C185CB}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{874CFA17-FC9A-489E-8460-1AED6724B5C7}C:\users\pc-de-stefan\documents\ecole et devoirs\l3\logiciels\eclipse\eclipse.exe] => (Allow) C:\users\pc-de-stefan\documents\ecole et devoirs\l3\logiciels\eclipse\eclipse.exe FirewallRules: [TCP Query User{35FA4298-2D0B-4D29-AB7A-8915568632F1}C:\users\pc-de-stefan\documents\ecole et devoirs\l3\logiciels\eclipse\eclipse.exe] => (Allow) C:\users\pc-de-stefan\documents\ecole et devoirs\l3\logiciels\eclipse\eclipse.exe FirewallRules: [UDP Query User{3F798781-D8E5-43D4-A36A-46E439CD11BF}C:\program files\java\jdk1.8.0_45\bin\rmiregistry.exe] => (Allow) C:\program files\java\jdk1.8.0_45\bin\rmiregistry.exe FirewallRules: [TCP Query User{6A9F47AA-A688-414A-9C1C-74ECC9070DAE}C:\program files\java\jdk1.8.0_45\bin\rmiregistry.exe] => (Allow) C:\program files\java\jdk1.8.0_45\bin\rmiregistry.exe FirewallRules: [UDP Query User{6CB6CB02-7594-4F89-A8E7-1F26A162C09B}C:\users\pc-de-stefan\documents\ecole et devoirs\m1\sécurité\webgoat\java\bin\java.exe] => (Allow) C:\users\pc-de-stefan\documents\ecole et devoirs\m1\sécurité\webgoat\java\bin\java.exe FirewallRules: [TCP Query User{9D5BD62F-FA82-459A-96A1-CF08078AA12B}C:\users\pc-de-stefan\documents\ecole et devoirs\m1\sécurité\webgoat\java\bin\java.exe] => (Allow) C:\users\pc-de-stefan\documents\ecole et devoirs\m1\sécurité\webgoat\java\bin\java.exe FirewallRules: [{16B00A50-9488-48EB-83CB-F2172E3B0677}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\ApowersoftVideoHelper.dll FirewallRules: [{2E3D08E4-482C-4019-A291-94BEBDDC4808}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\ApowersoftVideoHelper.dll FirewallRules: [{9947C8B8-C7DA-4754-934C-F345BA23C95E}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe FirewallRules: [{77062C15-07B5-4D80-973C-B4EEEC55743E}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Audio Recorder\Streaming Audio Recorder.exe FirewallRules: [UDP Query User{216AFC0F-AE0E-4740-8FB9-A0C9A0D8E2FB}C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{3670EA16-E536-4AEA-B636-9B10F6971150}C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [{2D30CE9E-7BE5-4E7C-A5D9-476DA986A47A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{BB61B49E-A933-4554-B31E-D90289FEA3FD}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{80BA1E91-30A7-4484-8FA0-F8E0551028D4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{EF5B9551-1F32-4B9A-B9EB-39E7ADE01E9A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe FirewallRules: [{C2077094-0486-448C-9873-3CFFF95BE714}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{08F539FA-E039-4DAB-9386-728E04CB85E0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{37B6DF45-E3A7-4F06-834D-EB3FF61AF0B6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CEA6BCFF-A2C2-41C5-9DC9-4EF553F6894E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4F2D410E-8F15-483D-B9AC-4F327336714F}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EX FirewallRules: [{0F913A65-CE08-4D22-9B1D-BC2A0AFE80AC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{5CD41C9E-A837-49CE-9243-C5490FE365C6}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{498E8DC0-1B46-42D7-99DB-13195D1B2535}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{C5C13E1F-27D0-494B-9654-846E96FAFEF5}C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe FirewallRules: [UDP Query User{F9AFF066-BB2B-4046-B2D2-D2257E2ADD49}C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe FirewallRules: [TCP Query User{8BBB9349-40ED-4896-9F31-4A05517C7680}C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe FirewallRules: [UDP Query User{54CDC454-EB5A-4E51-BB2D-4793D7C16930}C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\documents\divers\applications\spotify\spotify.exe FirewallRules: [TCP Query User{73A8CD43-0E41-4CC5-81DE-614709892F12}C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe FirewallRules: [UDP Query User{7DD5ACB3-4DA1-466C-8C6E-3C6239C7482E}C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe FirewallRules: [TCP Query User{C5B8C5BC-B062-4028-B570-F3AF6B008FA8}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{CDAD47C0-5510-4FC6-A670-F6EF998CEADD}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{EB64AEC5-9542-49B6-9686-99550BA921E8}C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe FirewallRules: [UDP Query User{EAB88948-B8A0-49D8-97F7-B91B06E5B214}C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\red barrels\outlast\binaries\win64\olgame.exe FirewallRules: FirewallRules: [TCP Query User{FAC36947-7934-498F-9A8B-31F829FD4F5D}C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{9480D6D8-77DB-49B3-B34E-E0AACE582F13}C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\pc-de-stefan\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{CBA27AE6-B6AF-4547-BDF3-65A5DAF49FD7}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [UDP Query User{71479F98-9CCD-4381-982D-08D0B4D5C976}C:\program files (x86)\sopcast\sopcast.exe] => (Allow) C:\program files (x86)\sopcast\sopcast.exe FirewallRules: [{67B402F0-CD1C-48A3-83AC-BAFDD67F9A07}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{464277F2-8722-4BB6-955F-6A91B18804AD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{F3B22D4C-EFFB-49B0-8236-1D4C1FDBD1AD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{42A5FC5F-BE17-4C21-9DF0-082DEF9F6E0E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{01B6867F-906E-4D4F-982B-D175B782AF29}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{13B63225-D4CC-4351-B2C8-AE4B708F8259}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{25C3E003-A9AE-48CE-90F9-CB515DCAEC9B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{528588DE-BF5A-42AA-B535-0F9D6ADEE647}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{B3D1A9EB-FD58-4F4B-B432-EDA2724CA76F}C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe] => (Allow) C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe FirewallRules: [UDP Query User{94CCE0F1-1D6D-46C8-91E0-2388E6D5CC55}C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe] => (Allow) C:\wamp64\bin\apache\apache2.4.23\bin\httpd.exe FirewallRules: [{CD09D065-40BF-4331-8619-6BE643D8E8CE}] => (Allow) C:\Users\PC-DE-STEFAN\Documents\Divers\Applications\Steam\SteamApps\common\Faeria\Faeria.exe FirewallRules: [{81B9952B-685B-43D3-B4F5-CC617BFE02B8}] => (Allow) C:\Users\PC-DE-STEFAN\Documents\Divers\Applications\Steam\SteamApps\common\Faeria\Faeria.exe FirewallRules: [TCP Query User{0A16D599-FAD5-4DF3-B095-CA7C6BA65FFD}C:\montpellier business plan\apache2\bin\httpd_usbwv8.exe] => (Allow) C:\montpellier business plan\apache2\bin\httpd_usbwv8.exe FirewallRules: [UDP Query User{A875AC70-E181-4822-A444-3F9C8886FCA6}C:\montpellier business plan\apache2\bin\httpd_usbwv8.exe] => (Allow) C:\montpellier business plan\apache2\bin\httpd_usbwv8.exe FirewallRules: [TCP Query User{8A26EEFA-BE7D-4632-A069-1EE5EE791CD9}C:\montpellier business plan\mysql\bin\mysqld_usbwv8.exe] => (Allow) C:\montpellier business plan\mysql\bin\mysqld_usbwv8.exe FirewallRules: [UDP Query User{554D86A1-C68A-4A2D-BBC8-26FB95A0981A}C:\montpellier business plan\mysql\bin\mysqld_usbwv8.exe] => (Allow) C:\montpellier business plan\mysql\bin\mysqld_usbwv8.exe FirewallRules: [{C2EC033A-E964-45DA-8CAB-EA9B006494A4}] => (Allow) C:\Users\Papa - Maman\AppData\Roaming\ACEStream\engine\ace_engine.exe FirewallRules: [{8BCE9151-8C25-4278-97A4-FB33CEAC2B78}] => (Allow) C:\Users\Papa - Maman\AppData\Roaming\ACEStream\engine\ace_engine.exe FirewallRules: [TCP Query User{841DBFFA-9DD9-4A42-AC3E-4ED0D06E81B9}C:\users\papa - maman\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\papa - maman\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [UDP Query User{80776F73-0656-4CE0-AB53-CF11FCEDFA6D}C:\users\papa - maman\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\papa - maman\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [{6B3150EC-3856-4031-A150-375D2E95DE93}] => (Allow) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe FirewallRules: [TCP Query User{C3553807-E243-4449-A903-7F41F3890E28}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [UDP Query User{5196407B-5F8F-490F-B679-C91F6F76027C}C:\program files (x86)\airdroid\airdroid.exe] => (Allow) C:\program files (x86)\airdroid\airdroid.exe FirewallRules: [{0230603C-F057-4505-A8BB-82F138059541}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{097852BC-A83F-4373-8B60-9C678EDF3341}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4030B0CC-95C3-4A1C-BB35-56B4167F69B1}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\57.0.2987.37\remoting_host.exe FirewallRules: [{B5AA2F77-7F2B-4AA6-8ABB-167C056BCAAD}] => (Allow) C:\Program Files (x86)\nokia\nokia suite\nokiasuite.exe FirewallRules: [{CC65CD98-CAD3-4BE0-AF21-62A10BEF9ECA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D9119B28-1A27-4B69-8794-8E681EE14F62}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{5D30908A-D8B5-40CB-B899-6257D498AF30}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{9A06B201-975D-4107-8051-A85FE6987E6D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{976DA7A9-ED0C-4DCE-8996-8006039FD468}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{2A6BDCBD-A484-4996-A743-89F1760CD9A0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{AD9F081C-AF7F-4E3D-A65A-4379752A967C}] => (Allow) C:\WINDOWS\system32\rundll32.exe FirewallRules: [{97812959-4A74-4821-B891-15E47FD13F55}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRServer.exe FirewallRules: [{895448AD-BE2E-4FE8-BE19-5AE893C960B2}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe FirewallRules: [{2F6F3893-E8D4-405E-8D7F-9DB2C36E429D}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\DataProxy.exe ==================== Points de restauration ========================= 22-04-2017 11:03:32 Windows Update 29-04-2017 11:08:37 Point de contrôle planifié 06-05-2017 11:29:10 Opération de restauration ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (05/08/2017 02:55:43 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:29:43Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:55:13 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:30:13Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:54:43 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:29:43Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:54:13 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:30:13Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:53:43 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:29:43Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:53:13 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:30:13Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:52:43 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:29:43Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:52:13 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:30:13Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:51:43 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: ) Description: Échec de la planification du redémarrage du service de protection logicielle à 2017-05-30T11:29:42Z. Code d’erreur : 0x80070002. Error: (05/08/2017 02:44:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: PC-DE-STEFAN) Description: Échec de l’activation de l’application Microsoft.MicrosoftStickyNotes_8wekyb3d8bbwe!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Erreurs système: ============= Error: (05/08/2017 02:48:49 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Le service Protection logicielle est en attente de démarrage. Error: (05/08/2017 02:44:01 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:44:01 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:43:59 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:41:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service BstHdDrv n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (05/08/2017 02:40:31 PM) (Source: DCOM) (EventID: 10010) (User: PC-DE-STEFAN) Description: Le serveur {F9717507-6651-4EDB-BFF7-AE615179BCCF} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (05/08/2017 02:40:28 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:18:58 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:18:58 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (05/08/2017 02:18:58 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. CodeIntegrity: =================================== Date: 2017-05-07 13:01:53.409 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-05-06 13:06:20.718 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-22 22:52:13.284 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-18 23:29:37.700 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-13 18:55:53.496 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-03-26 19:03:46.761 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-03-17 18:59:18.481 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhm.inf_amd64_7c553af4468727c1\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-10 18:54:33.464 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\nvhmwu.inf_amd64_6cdbe0c0630ed4a3\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-07 18:57:05.312 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-02-05 18:04:20.495 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz Pourcentage de mémoire utilisée: 38% Mémoire physique - RAM - totale: 6074.15 MB Mémoire physique - RAM - disponible: 3719.61 MB Mémoire virtuelle totale: 9658.15 MB Mémoire virtuelle disponible: 7310.57 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:909.78 GB) (Free:182.13 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:19.9 GB) (Free:1.95 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: D74BBA35) Partition: GPT. ==================== Fin de Addition.txt ============================