Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 31-05-2017 Exécuté par RADJINIGANDE (01-06-2017 18:17:39) Exécuté depuis C:\Users\RADJINIGANDE\Desktop Windows 10 Home Version 1511 (X64) (2015-12-20 14:47:09) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2417421415-1437267748-2398545128-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2417421415-1437267748-2398545128-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2417421415-1437267748-2398545128-1003 - Limited - Enabled) Invité (S-1-5-21-2417421415-1437267748-2398545128-501 - Limited - Disabled) RADJINIGANDE (S-1-5-21-2417421415-1437267748-2398545128-1001 - Administrator - Enabled) => C:\Users\RADJINIGANDE ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Trend Micro Antivirus+ (Enabled - Up to date) {6458A697-CD62-2062-F924-44AA7F87C1E7} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Trend Micro Antivirus+ (Enabled - Up to date) {DF394773-EB58-2FEC-C394-7FD804008B5A} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 16.02 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1602-000001000000}) (Version: 16.02.00.0 - Igor Pavlov) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Flash Player 22 PPAPI (HKLM-x32\...\{39BF25A5-AFEC-49C2-9991-24D9B38F3EDF}) (Version: 22.0.0.209 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.3.0 - IObit) AlphaGo (HKLM-x32\...\{97D2FBF4-72CF-4DD6-8DA8-26710BC7BE71}) (Version: 1.1.0 - Default Company Name) <==== ATTENTION Andy OS (HKLM\...\Andy OS) (Version: 46.14 - Andy OS, Inc) ANT Drivers Installer x64 (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden AVG Zen (Version: 1.82.2 - AVG Technologies) Hidden Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 21.0.25.49 - Bitdefender) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Catalyst Control Center Next Localization BR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.0916.1515.27418 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.30 - Piriform) Driver Booster 4.2 (HKLM-x32\...\Driver Booster_is1) (Version: 4.2.0 - IObit) Elevated Installer (x32 Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden FMW 1 (Version: 1.132.1 - AVG Technologies) Hidden Garmin Express (HKLM-x32\...\{bd8bd200-9a60-4969-b267-6b565f36e3da}) (Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Garmin Express (x32 Version: 5.2.0.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express (x32 Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express Tray (x32 Version: 5.3.1.0 - Garmin Ltd or its subsidiaries) Hidden Icecream Ebook Reader version 4.55 (HKLM-x32\...\{B8C30F0F-1F23-49E1-A3ED-44DE17660EE2}_is1) (Version: 4.55 - Icecream Apps) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.3.1520 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3621 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.66956 - Intel Corporation) Java 8 Update 102 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180102F0}) (Version: 8.0.1020.14 - Oracle Corporation) Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) Malwarebytes Anti-Malware version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\OneDriveSetup.exe) (Version: 17.3.6799.0327 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 43.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 fr)) (Version: 43.0.1 - Mozilla) Mozilla Firefox 53.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 53.0.2 (x64 fr)) (Version: 53.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.2 - Mozilla) Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.) Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.07 - Qualcomm Atheros) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6865 - Realtek Semiconductor Corp.) Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.9.4 - Synaptics Incorporated) TomTom MyDrive Connect 4.1.4.3089 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.4.3089 - TomTom) Trend Micro Antivirus+ (HKLM\...\{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}) (Version: 11.0 - Trend Micro Inc.) Trend Micro Password Manager (HKLM\...\3A0FB4E3-2C0D-4572-A24D-67F1CAABDDP35_is1) (Version: 3.7.0.1179 - Trend Micro Inc.) Trend Micro Titanium (Version: 11.0 - Trend Micro Inc.) Hidden Visual Studio 2005 Tools pour Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VMware Player (HKLM\...\{BC00AC33-2B00-443D-8FC2-3656D94AEA0A}) (Version: 12.5.0 - VMware, Inc.) VMware VIX (HKLM-x32\...\{F99FC179-EA67-4BBC-8955-BDDA0CB94B88}) (Version: 1.15.4.00000 - VMware, Inc.) Windows Driver Package - Garmin (grmnusb) GARMIN Devices (04/19/2012 2.3.1.0) (HKLM\...\98157A226B40B173301B0F53C8E98C47805D5152) (Version: 04/19/2012 2.3.1.0 - Garmin) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0F4FE461-0854-4C16-AD24-F9948C3E07ED} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe Task: {102FC7A4-AE72-49BC-B235-D054120FEB54} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe Task: {2370C09B-00C3-4E95-A887-4048E62F62FE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe Task: {24987A8A-FED9-4441-8A8D-BA56CF697CF9} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2013-06-18] (Acer Incorporate) Task: {29F0D4B3-A0CB-4B9D-90BE-776792DEB87D} - System32\Tasks\{9DB0FAF3-9F20-4FAD-BEDD-D5AFAAF5D61C} => pcalua.exe -a C:\Users\RADJINIGANDE\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=exp <==== ATTENTION Task: {4060451A-2432-4148-9601-2D3F4CA08F3B} - \Microsoft\Windows\DeviceSettings\Hogock -> Pas de fichier <==== ATTENTION Task: {6082BA5E-EEDD-46C2-AE01-2FEB0F2C29B2} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {652E0BC9-4726-46A0-B889-BC4BEE9A87ED} - System32\Tasks\Verboszibech Schedule => C:\Program Files (x86)\Biwerghtplawock\reijasy.exe [2017-05-20] (Google Inc.) Task: {67F770EB-5201-470C-825D-F58FB7C2DDC8} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe Task: {75E591D9-A2C0-4BDE-93F5-6BBED2CB659D} - System32\Tasks\{ABDF90B8-0556-446E-A516-28F5863A85AF} => pcalua.exe -a "C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe" -c scenario=install baseurl="C:\Program Files\Microsoft Office 15" platform=x86 version=15.0.4631.1004 culture=fr-fr productstoremove=O365HomePremRetail_fr-fr_x-none Task: {7CF64B19-3257-4235-B745-0FD22D995632} - \ASC10_SkipUac_RADJINIGANDE -> Pas de fichier <==== ATTENTION Task: {7E81971F-42FA-4C6F-8E05-38D7E3CDD057} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-05-19] (Piriform Ltd) Task: {7EB3B631-8542-4637-B9B4-A2E7FA92AC68} - System32\Tasks\{2893507A-D256-4C8E-940C-A9CF8C479688} => launchwinapp.exe hxxp://ui.skype.com/ui/0/7.26.80.101/fr/go/help.faq.installer?LastError=1638 Task: {8C879A0E-1FDB-4E98-A80D-2C4F31979A0D} - \Driver Booster SkipUAC (RADJINIGANDE) -> Pas de fichier <==== ATTENTION Task: {965FECFB-6F8E-42CF-AD3C-FB29DFECC719} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2017-04-11] (Bitdefender) Task: {97358932-B0A9-44B6-84FB-591B0121E088} - System32\Tasks\{3EEB69B6-B6BD-461D-9A93-4D8898913865} => Firefox.exe hxxp://ui.skype.com/ui/0/7.25.0.106/fr/go/help.faq.installer?LastError=1618 Task: {A29D9885-C933-4BE1-AA29-CFA45A09FB05} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-04-24] (Advanced Micro Devices, Inc.) Task: {A39E66C9-39BC-4EC2-8BEC-A62FFB6E3480} - System32\Tasks\{BC7B97FE-CC9C-4A99-9767-CDB60AD0560E} => Firefox.exe hxxp://ui.skype.com/ui/0/7.25.0.106/fr/go/help.faq.installer?LastError=1618 Task: {CEBD0D61-BD3E-486B-BAF1-B6A2E7CC5310} - System32\Tasks\{20E0DB69-1535-460D-8E24-D60C4B35F2C9} => Firefox.exe hxxp://ui.skype.com/ui/0/7.17.0.105/fr/abandoninstall?source=lightinstaller&page=tsPlugin Task: {D237E8C1-65F0-4C09-B85E-74BE31AD8EC0} - System32\Tasks\{3A8C4DFC-4A03-4817-9230-E968D1DE4D8B} => pcalua.exe -a "C:\Program Files (x86)\Microsoft Office\OFFICE11\MSACCESS.EXE" -d C:\WINDOWS\system32 Task: {D3C04D39-C3B2-45EC-98B4-3D2263F53517} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-02-15] () Task: {EED353B6-F8F9-423A-B6E2-65FA1695FD0F} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-15] (Acer Incorporated) Task: {F39FC500-06A4-4F4E-8771-AD56173E4991} - System32\Tasks\{7D6DD2FE-E9DB-4041-9EA6-A7268FC3B8CF} => launchwinapp.exe hxxp://ui.skype.com/ui/0/7.26.0.101/fr/go/help.faq.installer?LastError=1638 Task: {FBE1AD03-4A20-4DEC-B42C-C73C724A7114} - System32\Tasks\AVG EUpdate Task => avgsetupx.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_22_0_0_209_pepper.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\RADJINIGANDE\Favorites\Acer\Acer.lnk -> hxxp://www.acer.com ShortcutWithArgument: C:\Users\RADJINIGANDE\Desktop\Internet Explore.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ShortcutWithArgument: C:\Users\RADJINIGANDE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ShortcutWithArgument: C:\Users\RADJINIGANDE\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ShortcutWithArgument: C:\Users\RADJINIGANDE\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ShortcutWithArgument: C:\Users\Public\Desktop\Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) -> hxxp://www.ourluckysites.com/?type=sc&ts=1495631381&z=0188f05b140514eb5a7d9c1gcz3t5waq7cdgfc1bfe&from=che0812&uid=TOSHIBAXMQ01ABD075_93TPT8XATXX93TPT8XAT ==================== Modules chargés (Avec liste blanche) ============== 2017-05-23 23:15 - 2015-03-31 13:08 - 00026408 _____ () C:\Program Files\Trend Micro\AMSP\boost_system-vc110-mt-1_57.dll 2017-05-23 23:15 - 2015-03-31 13:08 - 00058320 _____ () C:\Program Files\Trend Micro\AMSP\boost_date_time-vc110-mt-1_57.dll 2017-05-23 23:15 - 2015-03-31 13:09 - 00686608 _____ () C:\Program Files\Trend Micro\AMSP\sqlite3.dll 2017-05-23 23:15 - 2015-03-31 13:08 - 00110320 _____ () C:\Program Files\Trend Micro\AMSP\boost_thread-vc110-mt-1_57.dll 2017-05-23 23:15 - 2015-03-31 13:08 - 00036160 _____ () C:\Program Files\Trend Micro\AMSP\boost_chrono-vc110-mt-1_57.dll 2017-05-23 23:15 - 2015-03-31 13:09 - 01314920 _____ () C:\Program Files\Trend Micro\AMSP\libprotobuf.dll 2017-05-23 22:00 - 2016-07-24 19:40 - 00178416 _____ () C:\Program Files\Trend Micro\UniClient\plugins\LUADLL.dll 2017-05-23 21:39 - 2014-08-01 20:17 - 00048128 _____ () C:\Program Files\Trend Micro\TMIDS\boost_date_time-vc110-mt-1_49.dll 2017-05-23 23:17 - 2016-07-24 19:40 - 00049664 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_date_time-vc110-mt-1_52.dll 2017-05-23 23:17 - 2016-07-24 19:40 - 00018944 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_system-vc110-mt-1_52.dll 2017-05-23 23:17 - 2016-07-24 19:40 - 00089088 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_thread-vc110-mt-1_52.dll 2017-05-23 23:17 - 2016-07-24 19:40 - 00761856 _____ () C:\Program Files\Trend Micro\Titanium\plugin\Pt\boost_regex-vc110-mt-1_52.dll 2017-04-16 04:10 - 2017-03-04 07:31 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-05-11 01:18 - 2017-04-28 06:30 - 02656960 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2013-11-02 04:31 - 2013-02-20 23:58 - 00111176 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll 2017-05-23 21:39 - 2017-04-23 17:49 - 00934912 _____ () C:\Program Files\Trend Micro\TMIDS\tower\PwmTower.exe 2015-09-30 21:39 - 2015-09-30 21:39 - 00415128 _____ () C:\WINDOWS\system32\igfxTray.exe 2015-12-20 15:58 - 2015-12-20 15:58 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll 2016-07-15 00:29 - 2016-07-01 05:48 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll 2017-04-16 04:09 - 2017-03-04 05:19 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-04-16 04:09 - 2017-03-04 05:14 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-05-11 01:19 - 2017-04-28 01:46 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-05-11 01:19 - 2017-04-28 01:49 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2017-05-23 22:00 - 2016-07-24 19:40 - 00077072 _____ () C:\Program Files\Trend Micro\Titanium\plugin\fcMsgDispatcher.dll 2017-04-07 09:41 - 2017-04-07 09:41 - 00054488 _____ () C:\Program Files\CCleaner\branding.dll 2017-05-19 20:17 - 2017-05-19 20:17 - 00077824 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2016-09-14 03:00 - 2016-09-14 03:00 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2016-09-14 03:00 - 2016-09-14 03:00 - 00739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-09-14 03:00 - 2016-09-14 03:00 - 00014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2016-09-14 03:00 - 2016-09-14 03:00 - 00071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2016-09-14 02:59 - 2016-09-14 02:59 - 00011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2016-09-14 02:59 - 2016-09-14 02:59 - 02013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2016-09-14 03:00 - 2016-09-14 03:00 - 00191488 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2017-05-27 17:36 - 2017-05-27 17:34 - 02732032 _____ () C:\Users\RADJINIGANDE\AppData\Roaming\ZHP\ZHPDiag3.exe 2016-01-30 17:21 - 2016-06-14 16:35 - 00625440 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2013-11-02 03:59 - 2013-05-08 22:23 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2017-05-23 21:39 - 2017-01-26 12:35 - 01078272 _____ () C:\Program Files\Trend Micro\TMIDS\tower\ffmpeg.dll 2017-05-23 21:39 - 2017-02-23 01:31 - 01922560 _____ () C:\Program Files\Trend Micro\TMIDS\tower\libglesv2.dll 2017-05-23 21:39 - 2017-02-23 01:31 - 00079872 _____ () C:\Program Files\Trend Micro\TMIDS\tower\libegl.dll 2017-05-23 21:39 - 2017-02-23 01:31 - 04834816 _____ () C:\Program Files\Trend Micro\TMIDS\tower\node.dll 2017-06-01 12:40 - 2017-06-01 12:40 - 01886720 _____ () c:\users\radjinigande\appdata\roaming\winsapsvc\winsap.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\RADJINIGANDE\Downloads\ZHPCleaner.exe:BDU [0] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BsScanner => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSVC => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BsScanner => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\VSS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\w32time => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WUAUSERV => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\ma-config.com -> hxxp://ma-config.com IE trusted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\ma-config.com -> hxxps://ma-config.com IE trusted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\touslesdrivers.com -> hxxp://touslesdrivers.com IE trusted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\trendmicro.com -> hxxps://pwm.trendmicro.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\100sexlinks.com -> 100sexlinks.com Il y a 4788 plus de sites. ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 15:25 - 2017-05-19 21:42 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 10.188.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKU\S-1-5-21-2417421415-1437267748-2398545128-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{C0FD4372-5DA4-4858-9E23-DF689BACBE35}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{8E753057-D627-4C6D-A3D7-0FC07649F033}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B60671AA-245C-4E8E-87E7-FA025E41811C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{601F0081-D6A1-4ACC-A190-4A6B01D27991}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1FC3C726-E93D-4D01-A8A9-DF3B22847B00}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3343A4DE-0549-4444-A790-04C4BB31EF70}] => (Allow) LPort=48114 FirewallRules: [{008345F3-C97C-4CFA-A5D2-3034775FA470}] => (Allow) LPort=48113 FirewallRules: [{B583FEDF-58E1-4CC6-91CC-8C160A77AFF8}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{4F5E8C26-899D-4125-996F-E6B53143A96B}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{FDE78139-CE51-49C8-85BC-7C9087D70256}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{AFD42A99-BA90-4875-8F62-3D602DDB5E15}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{17E462A7-189B-43DA-A844-FD394677F017}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{898DEDEE-26A4-4EDE-82DB-4A63EF778483}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{EA1BDBFE-DFF8-4F1E-AB41-E1CFC16B4D9A}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{3362CBE9-D4AF-4CCF-8429-C97F149C7849}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{1F88CCB9-8C5E-46F9-B8A6-6554CAEAAC7A}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{93A47ECA-DE10-4383-A61C-B41BEF0097CB}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{1B75917B-29B3-4FB6-AD93-C9C37CA1B9AA}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{3193F764-D9D3-40ED-B799-2D9AF4A945BB}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{CD21DCD3-A3E0-4890-9FB6-3C554D1FCB94}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe FirewallRules: [{F9BA36A7-DBA6-4E15-8A43-242CD8EE490D}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe FirewallRules: [{013B9D2B-E1C9-4CA3-BDE8-84A88C307480}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{8F5CBBDF-4CFB-4802-8347-59CD62C8DB10}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{4A0F9B0F-26DE-4816-A307-E9D07850D6D1}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{AEF0B54B-18B2-4179-A194-A488DF130754}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{2FCFD0D5-C5CB-4CB3-A33D-D59212B081E5}] => (Block) LPort=445 FirewallRules: [{38FB0397-AF36-42D9-A143-5849D7358119}] => (Block) LPort=445 ==================== Points de restauration ========================= 23-05-2017 13:47:01 Windows Update 28-05-2017 12:46:24 avant nettoyage 01-06-2017 18:00:39 avant desinfection ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Périphérique High Definition Audio Description: Périphérique High Definition Audio Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: HdAudAddService Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: VMware VMCI Host Device Description: VMware VMCI Host Device Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: VMware, Inc. Service: vmci Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31) Resolution: Update the driver ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (06/01/2017 06:01:15 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (06/01/2017 12:41:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante esu.exe, version : 1.0.0.0, horodatage : 0x58a46acb Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.916, horodatage : 0x59029fc3 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000bdbe8 ID du processus défaillant : 0x22cc Heure de début de l’application défaillante : 0x01d2dac376b39b36 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 38efb1f2-8977-4e26-badc-ce842754b366 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (06/01/2017 12:41:22 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : esu.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.TypeLoadException à Garmin.Omt.Express.SelfUpdater.Program.RealMain() à Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[]) Error: (05/31/2017 11:24:51 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante esu.exe, version : 1.0.0.0, horodatage : 0x58a46acb Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.916, horodatage : 0x59029fc3 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000bdbe8 ID du processus défaillant : 0xd0 Heure de début de l’application défaillante : 0x01d2d9efbaad54c6 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 723683a8-5c53-4a18-b883-5cda04a59f6b Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (05/31/2017 11:24:50 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : esu.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.TypeLoadException à Garmin.Omt.Express.SelfUpdater.Program.RealMain() à Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[]) Error: (05/30/2017 11:46:08 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante esu.exe, version : 1.0.0.0, horodatage : 0x58a46acb Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.916, horodatage : 0x59029fc3 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000bdbe8 ID du processus défaillant : 0x93c Heure de début de l’application défaillante : 0x01d2d9297bf64e25 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Garmin\Express SelfUpdater\esu.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : ae4ac5af-d73f-4e9e-a1ab-ea2321da4874 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (05/30/2017 11:46:05 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : esu.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.TypeLoadException à Garmin.Omt.Express.SelfUpdater.Program.RealMain() à Garmin.Omt.Express.SelfUpdater.Program.Main(System.String[]) Erreurs système: ============= Error: (06/01/2017 01:05:33 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 8 0x0 0x0 Error: (06/01/2017 01:05:30 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 2 0xdeaddeed 0xeeec Error: (06/01/2017 01:05:30 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 4003) (User: AUTORITE NT) Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée en exécutant Reset/Recover.adapter. Code : 1 0xc 0x4 Error: (06/01/2017 01:00:10 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service glory s’est terminé de façon inattendue pour la 1ème fois. Error: (06/01/2017 01:29:30 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_400b3ce s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (05/31/2017 01:49:17 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_261820c s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error: (05/29/2017 11:39:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Hôte de synchronisation_9d7373 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. CodeIntegrity: =================================== Date: 2017-05-19 21:41:54.273 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-05-15 10:05:07.814 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-14 18:53:10.537 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-14 18:52:43.400 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-05-11 16:33:20.349 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-05-11 12:29:26.445 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\WINDOWS\System32\efswrt.dll because the set of per-page image hashes could not be found on the system. Date: 2017-05-01 20:44:45.800 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-30 13:50:15.188 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-29 13:22:10.659 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-04-28 23:34:33.295 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\vsservp.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bitdefender\Bitdefender 2017\dbghelp.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4200U CPU @ 1.60GHz Pourcentage de mémoire utilisée: 57% Mémoire physique - RAM - totale: 6024.27 MB Mémoire physique - RAM - disponible: 2530.37 MB Mémoire virtuelle totale: 6984.27 MB Mémoire virtuelle disponible: 2634.61 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:681.41 GB) (Free:359.07 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: B8E9FE55) Partition: GPT. ==================== Fin de Addition.txt ============================