Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 20-08-2017 Exécuté par senio (02-09-2017 16:07:48) Exécuté depuis C:\Users\senio\Desktop Windows 10 Pro Version 1703 (X64) (2017-07-02 15:52:36) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3274651080-1287323855-1941651646-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3274651080-1287323855-1941651646-503 - Limited - Disabled) defaultuser0 (S-1-5-21-3274651080-1287323855-1941651646-1000 - Limited - Disabled) => C:\Users\defaultuser0 Invité (S-1-5-21-3274651080-1287323855-1941651646-501 - Limited - Disabled) senio (S-1-5-21-3274651080-1287323855-1941651646-1001 - Administrator - Enabled) => C:\Users\senio ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 15.14 (HKLM-x32\...\7-Zip) (Version: 15.14 - Igor Pavlov) 7-Zip 16.04 (HKLM-x32\...\{23170F69-40C1-2701-1604-000001000000}) (Version: 16.04.00.0 - Igor Pavlov) ACDSee 16 (HKLM-x32\...\{F2B13D5D-B847-48E4-B038-0B42E6EBFEE4}) (Version: 16.1.88 - ACD Systems International Inc.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated) Adobe Flash Player 26 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated) Advanced SystemCare 10 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 10.5.0 - IObit) AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden Ant Download Manager version 1.4.4.promo.SharewareOnSale.com (HKLM-x32\...\{754CB6A3-3FE2-40DA-9FE5-2864909BD1CC}_is1) (Version: 1.4.4.promo.SharewareOnSale.com - AntGROUP, Inc.) AOMEI Dynamic Disk Manager Pro Edition (HKLM-x32\...\AOMEI Dynamic Disk Manager Pro Edition_is1) (Version: - AOMEI Technology Co., Ltd.) Apowersoft Éditeur vidéo V1.1.9 (HKLM-x32\...\{3089CCCD-BC5F-4309-A3C1-45B5ACA7A5E7}_is1) (Version: 1.1.9 - APOWERSOFT LIMITED) Ashampoo Burning Studio 2017 (HKLM-x32\...\{91B33C97-C878-6579-69BA-23E5405C7AAB}_is1) (Version: 18.0.0 - Ashampoo GmbH & Co. KG) Assistant Mise à niveau de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22175 - Microsoft Corporation) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.6.2310 - AVAST Software) BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden C5200 (HKLM-x32\...\{E9E9903D-E69D-4004-B9E2-DFB29D1934D7}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden C5200_Help (HKLM-x32\...\{cef78f86-19a8-4bbd-91fa-e9b6b2d37348}) (Version: 100.0.206.000 - Hewlett-Packard) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.33 - Piriform) Classic Menu for Excel v9.25 (HKLM\...\{9A7CEBDF-37E2-4B63-A384-2A9FD5CE0A80}_is1) (Version: 9.25 - Addintools) Comptabilité Personnelle (HKLM-x32\...\{2369DC9E-11A7-4BAE-A43E-7A4CB477574F}_is1) (Version: 15.15 - Emjysoft) Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden Driver Booster 4.5 (HKLM-x32\...\Driver Booster_is1) (Version: 4.5.0 - IObit) e-Carte Bleue La Banque Postale (HKLM-x32\...\{73734A45-6D87-4624-9EE9-8CC9291FFC12}) (Version: 5.6.0.0 - e-Carte Bleue La Banque Postale) Everything 1.4.1.877 (x64) (HKLM\...\Everything) (Version: 1.4.1.877 (x64) - David Carpenter) Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.113 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden GPL Ghostscript 8.70 (HKLM-x32\...\GPL Ghostscript 8.70) (Version: - ) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photosmart All-In-One Driver Software (HKLM\...\{A96C5DB7-40F9-46DD-B36F-9E657D1D9E04}) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Support Solutions Framework (HKLM-x32\...\{ED5CE45D-842B-4C18-A002-87E16EA39BB3}) (Version: 12.7.27.15 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden Inpaint 6.2 (HKLM\...\{2AEDC172-479F-47AE-8A48-A0524D4AED5B}_is1) (Version: - Teorex) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation) IZArc 4.2 (HKLM-x32\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.2 - Ivan Zahariev) MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden Microsoft Office Famille et Étudiant 2010 (HKLM\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{9011040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3274651080-1287323855-1941651646-1001\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation) Microsoft PowerPoint 2010 Interactive Guide FRA (HKLM-x32\...\{C6184D5B-B006-4344-B850-EE6283A39777}) (Version: 1.2.1 - Microsoft) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{4FFA2088-8317-3B14-93CD-4C699DB37843}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Mira version 2.6.0.0 (HKLM-x32\...\Mira_is1) (Version: - ) Mises à jour NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movavi Video Editor 11 (HKLM-x32\...\Movavi Video Editor 11) (Version: 11.1.0 - Movavi) Mozilla Firefox 55.0.3 (x86 fr) (HKLM-x32\...\Mozilla Firefox 55.0.3 (x86 fr)) (Version: 55.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) Mozilla Thunderbird 52.3.0 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 52.3.0 (x86 fr)) (Version: 52.3.0 - Mozilla) Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation) NVIDIA Pilote graphique 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) Opera Stable 47.0.2631.71 (HKLM-x32\...\Opera 47.0.2631.71) (Version: 47.0.2631.71 - Opera Software) Panneau de configuration NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.322.6 - Tracker Software Products Ltd) PS_AIO_02_ProductContext (HKLM-x32\...\{720C16FC-5423-47B3-A249-5C05FB376E9A}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden PS_AIO_02_Software (HKLM-x32\...\{97AD3490-480B-42B2-8001-326621AF34AC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden PS_AIO_02_Software_Min (HKLM-x32\...\{7AB63BFD-91C6-4C21-B2C6-D33A1FC8DE8F}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-003D-0000-1000-0000000FF1CE}_Office14.SingleImage_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) SharewareOnSale Notifier (HKU\S-1-5-21-3274651080-1287323855-1941651646-1001\...\SharewareOnSale Notifier) (Version: 20 - SharewareOnSale) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Soft Organizer version 6.07 (HKLM-x32\...\Soft Organizer_is1) (Version: 6.07 - ChemTable Software) SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden Suivi des soins et des remboursements de Santé (HKLM-x32\...\{6CC28634-D98C-4DE1-9EE7-E121277996F6}_is1) (Version: 3.3 - Emjysoft) Suivi des soins et des remboursements de Santé v2.4 (HKLM-x32\...\Suivi des soins et des remboursements de Santé_is1) (Version: - Emjysoft) Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden True Image 2013 (HKLM-x32\...\{3B8836F5-3918-42BF-9C29-4F721F99563D}) (Version: 16.0.6514 - Acronis) Hidden True Image 2013 (HKLM-x32\...\{3B8836F5-3918-42BF-9C29-4F721F99563D}Visible) (Version: 16.0.6514 - Acronis) VSO Media Player 1.5.9.518 (HKLM-x32\...\{59F1E8E6-60EC-4CC1-8C72-E0F38E585215}_is1) (Version: 1.5.9.518 - VSO Software) WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) Wondershare DVD Slideshow Builder Standard(Build 6.6.0.0) (HKLM-x32\...\Wondershare DVD Slideshow Builder Standard_is1) (Version: 6.6.0.0 - Wondershare Software Co.,Ltd.) Wondershare Helper Compact 2.5.2 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.2 - Wondershare) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-09-02] (AVAST Software) ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-03-27] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-03-27] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2013-03-27] (Acronis) ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers1-x32: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers1-x32: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-09-02] (AVAST Software) ContextMenuHandlers1-x32: [CopyToCD] -> {39F0FA09-4451-4477-9D23-4B9ADDEEF838} => C:\Program Files (x86)\VSO\common\CTShell.dll [2014-02-12] (VSO Software SARL) ContextMenuHandlers1-x32: [IZArcCM] -> {BC593DF5-466F-44EC-8FFD-C4DBC603B917} => C:\Program Files (x86)\IZArc\IZArcCM64.dll [2012-07-20] () ContextMenuHandlers1-x32: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll [2013-03-27] (Acronis) ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-09-02] (AVAST Software) ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers4-x32: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2016-09-20] (IObit) ContextMenuHandlers4-x32: [CopyToCD] -> {39F0FA09-4451-4477-9D23-4B9ADDEEF838} => C:\Program Files (x86)\VSO\common\CTShell.dll [2014-02-12] (VSO Software SARL) ContextMenuHandlers4-x32: [IZArcCM] -> {BC593DF5-466F-44EC-8FFD-C4DBC603B917} => C:\Program Files (x86)\IZArc\IZArcCM64.dll [2012-07-20] () ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers6-x32: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-09-02] (AVAST Software) ContextMenuHandlers6-x32: [CopyToCD] -> {39F0FA09-4451-4477-9D23-4B9ADDEEF838} => C:\Program Files (x86)\VSO\common\CTShell.dll [2014-02-12] (VSO Software SARL) ContextMenuHandlers6-x32: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\x64\versions_page.dll [2013-03-27] (Acronis) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00275D87-212F-4B7C-A42B-BFA2917A428B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-08-03] (Piriform Ltd) Task: {15BFDF26-0B81-4D66-9017-FA86BAB4A16F} - System32\Tasks\Driver Booster SkipUAC (senio) => C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe [2017-07-28] (IObit) Task: {2BA96337-FE51-4CF6-B3FC-A6C5B0A28494} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.) Task: {2FB406C3-0A50-49E2-91D7-93FCBE8455F8} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {322C7085-5B58-4DDB-BC53-D215BF4D7CEC} - System32\Tasks\Opera scheduled Autoupdate 1492334347 => C:\Program Files (x86)\Opera\launcher.exe [2017-08-25] (Opera Software) Task: {4303FEC2-3C29-45C2-AFBE-3F22BEFB3D94} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {4392DEBC-E5F9-4476-877A-C1247D98F4CB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-04-07] (HP Inc.) Task: {470CDCAF-B4C1-4B34-883F-326F1857E860} - System32\Tasks\ASC10_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2017-07-24] (IObit) Task: {475DBF6E-D9B5-4792-867F-20BF2F9D85FB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-25] (Adobe Systems Incorporated) Task: {48FEA5B1-4CB4-45D3-A742-86193D0BADE5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-27] (Google Inc.) Task: {4E1E8426-F8EE-40EC-B159-B32F8F16B200} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-09-02] (AVAST Software) Task: {60D71166-852D-4279-AADE-4F1D4DA347E7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {72A321A0-AB15-4F19-9CB5-9D951A027202} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {91F954A4-B4FC-4683-B8D9-C6683FBBD978} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2016-12-07] (HP Inc.) Task: {A5E37B25-4C1A-4828-826F-0A842558C836} - System32\Tasks\ASC10_SkipUac_senio => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2017-08-07] (IObit) Task: {ABBA9E17-947E-46F9-B55C-2DD65D4688BB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-08-14] (HP Inc.) Task: {AEEC0A8F-4CF8-4565-8400-9633A72EA2C1} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [2017-08-08] (Tracker Software Products (Canada) Ltd.) Task: {C642C956-FFBE-42DF-9A00-C3F20DA52216} - System32\Tasks\SafeZone scheduled Autoupdate 1492330376 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software) Task: {CB4B5594-4001-40FC-9CA8-22E305F7CA69} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-27] (Google Inc.) Task: {D9B24C03-52BF-454D-8718-C9C233D3F587} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\4.5.0\Scheduler.exe [2017-07-26] (IObit) Task: {DB20E57A-29DA-4E1E-9511-6378FDB89A7C} - System32\Tasks\HPCeeScheduleForsenio => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-06-24] (HP Inc.) Task: {F5036B52-27FD-4FE8-B9BE-64A34D294823} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-08-14] (HP Inc.) Task: {F763401A-ABEC-44B6-B769-5627A2A42890} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_26_0_0_151_pepper.exe [2017-08-17] (Adobe Systems Incorporated) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForsenio.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\senio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\PC Astuces _ Aide Informatique.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=hiochepkdogmgahcajfhjpheiaacingh ==================== Modules chargés (Avec liste blanche) ============== 2017-07-02 17:31 - 2016-11-14 13:15 - 000135224 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-03-27 22:39 - 2013-03-27 22:39 - 000021824 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\x64\ti_managers_proxy_stub.dll 2017-06-07 10:08 - 2012-07-20 13:39 - 002469888 _____ () C:\Program Files (x86)\IZArc\IZArcCM64.dll 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-03-18 22:59 - 2017-03-20 07:12 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-04-16 11:07 - 2017-04-16 11:07 - 001008816 _____ () C:\ProgramData\SharewareOnSale Notifier\SharewareOnSale Notifier.exe 2017-08-30 16:17 - 2007-09-02 13:58 - 000495616 _____ () C:\Program Files (x86)\RocketDock\RocketDock.exe 2017-04-07 09:41 - 2017-04-07 09:41 - 000054488 _____ () C:\Program Files\CCleaner\branding.dll 2017-08-03 10:41 - 2017-08-03 10:41 - 000077824 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2017-08-23 14:45 - 2017-08-23 14:45 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-08-23 14:45 - 2017-08-23 14:45 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-08-23 14:45 - 2017-08-23 14:45 - 036162048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-08-23 14:45 - 2017-08-23 14:45 - 002237952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\skypert.dll 2017-08-31 18:16 - 2016-08-18 18:43 - 000442144 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl 2017-08-31 18:16 - 2016-08-18 18:43 - 000210720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl 2017-08-31 18:16 - 2016-08-18 18:43 - 000059680 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl 2017-07-02 18:43 - 2016-11-01 10:11 - 000078624 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\GetProcessDLL.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-08-30 16:17 - 2007-09-02 13:57 - 000069632 _____ () C:\Program Files (x86)\RocketDock\RocketDock.dll 2017-07-18 11:38 - 2017-07-18 11:38 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000211904 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000241960 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000233768 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-09-02 15:22 - 2017-09-02 15:22 - 000685688 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2013-03-27 23:35 - 2013-03-27 23:35 - 013624840 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers.dll 2013-01-10 13:43 - 2013-01-10 13:43 - 000014360 _____ () C:\Program Files (x86)\Common Files\Acronis\TibMounter\icudt38.dll 2013-03-27 22:09 - 2013-03-27 22:09 - 000420160 _____ () C:\Program Files (x86)\Common Files\Acronis\Home\ulxmlrpcpp.dll 2017-08-30 18:06 - 2017-08-25 15:23 - 065951320 _____ () C:\Program Files (x86)\Opera\47.0.2631.71\opera_browser.dll 2017-08-30 18:06 - 2017-08-25 15:23 - 002969688 _____ () C:\Program Files (x86)\Opera\47.0.2631.71\libglesv2.dll 2017-08-30 18:06 - 2017-08-25 15:23 - 000087128 _____ () C:\Program Files (x86)\Opera\47.0.2631.71\libegl.dll 2013-03-27 22:36 - 2013-03-27 22:36 - 000021312 _____ () C:\Program Files (x86)\Acronis\TrueImageHome\ti_managers_proxy_stub.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:FCCDF7B1 [123] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-07-16 13:47 - 2016-07-16 13:45 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3274651080-1287323855-1941651646-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\senio\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "Everything" HKLM\...\StartupApproved\Run32: => "ACSW16EN" HKLM\...\StartupApproved\Run32: => "ACSW16FR" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKU\S-1-5-21-3274651080-1287323855-1941651646-1001\...\StartupApproved\Run: => "Advanced SystemCare 10" HKU\S-1-5-21-3274651080-1287323855-1941651646-1001\...\StartupApproved\Run: => "antMR" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{4F1E3A28-6C70-4A53-A3E0-4B1C5045C5E8}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{1374D26E-B48F-4F0B-8CC3-4E6D489A14B6}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{BD4B6D7F-0FAF-4FEC-95BE-893FD5DA8E8C}] => (Block) LPort=445 FirewallRules: [{13E7A863-A41B-49F5-B48D-003F93026548}] => (Block) LPort=445 FirewallRules: [{6AED5AD0-8F6D-4753-85F9-AE1826B768A1}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{04296D96-66E6-4AE7-B445-1D53CFBAF650}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe FirewallRules: [{934E73CB-6EA7-4007-8B21-15E4EB95B3C9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe FirewallRules: [{E21C860D-A7BF-4262-B658-F16F26E412F4}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe FirewallRules: [{B73FC430-A321-4E24-A42F-32ACD0DC7D50}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe FirewallRules: [{27C50D7C-C3E0-4D1B-849A-AFC0247AA276}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe FirewallRules: [{E5B92B0C-C889-4956-8A17-5D7F6B9AB43F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe FirewallRules: [{ACF68C0A-9834-48AE-A7C6-682AF1C5BCB5}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe FirewallRules: [{17001634-1391-464E-8F37-F7775DDB4E0D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe FirewallRules: [{4CA4D550-F840-493E-9AA9-5FC74948CC21}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe FirewallRules: [{282834BD-0740-41AE-8614-2D732C7364D6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe FirewallRules: [{C57D7275-93F3-4EDA-B467-2E37DCD7C9EF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe FirewallRules: [{CC8B1EF6-94A8-4DF7-889B-B79B153F302D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe FirewallRules: [{DF6EA7E2-D428-478B-B878-68F7E0D790E7}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe FirewallRules: [{C1C9A1CB-AE01-46E8-AE3F-083376A9DDDD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe FirewallRules: [{464050C6-94BD-4D3E-B09D-C69798928846}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe FirewallRules: [{1015177E-AFDB-49ED-BD37-B52A7876DEF6}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe FirewallRules: [{F9794FE5-70E6-437C-8594-D511452BE678}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe FirewallRules: [{0F3F4C2B-CC16-469A-936C-8E1B7E77C275}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe FirewallRules: [{CA12F963-30F3-4FCF-B897-C2F8E3AE3806}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [{C9075F7A-B85D-42AF-9EFA-6ABA77908FE8}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [{9AEAA973-2C53-4A82-B661-02F23A4B2043}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{38CE33B8-1A8E-4DEB-9230-7829CDE1ECDB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{5A606628-D4C8-4D41-B748-0A09D641E648}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{EAB67E9A-582E-4BA1-AFDD-55A41F4DB038}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{5E71FC43-0CD6-4E44-A784-3663101D7F91}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609_0\SZBrowser.exe FirewallRules: [{073E6722-5BBB-47B6-A398-7E6FCAAF4899}] => (Allow) C:\Program Files (x86)\Opera\47.0.2631.55\opera.exe FirewallRules: [{7E1C29F9-FEF4-420C-ACD6-23618B2C1558}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{F10BB0E3-7045-4A3C-996C-22DEED035A62}] => (Allow) C:\Program Files (x86)\Opera\47.0.2631.71\opera.exe FirewallRules: [TCP Query User{D41CF9EF-D884-46CB-B195-523042353A55}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe FirewallRules: [UDP Query User{9A3629BE-D7DE-417C-8B34-6621227D38B4}C:\program files (x86)\ditto\ditto.exe] => (Allow) C:\program files (x86)\ditto\ditto.exe FirewallRules: [{DF736405-7CD5-42BA-83FD-480683E226D0}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Editor Pro\Video Editor Pro.exe FirewallRules: [{5DC6A551-DEFB-4E0A-B745-BC1745DD9E40}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Editor Pro\Video Editor Pro.exe FirewallRules: [{6F649073-680F-4360-8F44-17A0B17F7538}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{9A5457C4-32EF-47B8-A2C4-E0AFA9C57C21}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe FirewallRules: [{4E0AD14E-1975-4172-B7C3-E1FBD9A6AA00}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe FirewallRules: [{9DD08B7E-B477-4997-B2BB-10F4E79E99ED}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe FirewallRules: [{D3A17A39-9E54-4BE4-A22F-EE7F4C378D3A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DBDownloader.exe FirewallRules: [{D299D1F1-CB40-4CD2-9212-19A902D7E145}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DBDownloader.exe FirewallRules: [{F021FEA5-53DA-44FC-89E2-A1AE8CE5A306}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\AutoUpdate.exe FirewallRules: [{381FC5C7-5A9E-45F1-A1B3-1AA03ECB8495}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.5.0\AutoUpdate.exe FirewallRules: [{CF68C0F2-9DBA-485D-9DF9-3FB41D1AD8CB}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe ==================== Points de restauration ========================= ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (09/02/2017 03:52:35 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Users\senio\Downloads\norton-power-eraser_5-2-0-19_fr_320766.exe /POSTADVSCAN /SERVICEPOSTADVSCAN ; Description = Norton_Power_Eraser_20170902155235398 ; Erreur = 0x80070422). Error: (09/02/2017 02:52:34 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (09/02/2017 02:47:04 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\ProgramData\IObit\Driver Booster\Download\7f52a19ecaf7db3c163dd164be3e592e.exe Booster\Download\7f52a19ecaf7db3c163dd164be3e592e.exe" /quiet ; Description = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 ; Erreur = 0x80070422). Error: (09/02/2017 02:20:03 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Program Files (x86)\Microsoft XNA\XNA Game Studio\v4.0\Redist\DX Redist\DXSETUP.exe Files (x86)\Microsoft XNA\XNA Game Studio\v4.0\Redist\DX Redist\DXSETUP.exe" /silent ; Description = DirectX est installé ; Erreur = 0x80070422). Error: (09/02/2017 02:19:46 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\ProgramData\IObit\Driver Booster\Download\3c03562b5af9ed347614053d459d7778.exe Booster\Download\3c03562b5af9ed347614053d459d7778.exe" /quiet ; Description = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 ; Erreur = 0x80070422). Error: (09/02/2017 11:25:55 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Program Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe Files (x86)\IObit\Driver Booster\4.5.0\DriverBooster.exe" /autoscan ; Description = Driver Booster : Contrôleur IDE standard double canal PCI ; Erreur = 0x80070422). Error: (09/01/2017 06:52:34 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\srtasks.exe ExecuteScheduledSPPCreation ; Description = Point de contrôle planifié ; Erreur = 0x80070422). Error: (09/01/2017 06:16:35 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SoftOrganizer.exe, version : 0.0.0.0, horodatage : 0x00000000 Nom du module défaillant : RPCRT4.dll, version : 10.0.15063.447, horodatage : 0x79914e66 Code d’exception : 0xc0020043 Décalage d’erreur : 0x000434f2 ID du processus défaillant : 0xde0 Heure de début de l’application défaillante : 0x01d3233d98283980 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Soft Organizer\SoftOrganizer.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\RPCRT4.dll ID de rapport : 262c9cdf-1547-4c0e-8053-437f56fc125b Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/01/2017 06:07:32 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Users\senio\AppData\Local\Temp\LightworksTemp\VC1\VcRedist_x64.exe /q /norestart ; Description = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 ; Erreur = 0x80070422). Error: (09/01/2017 05:43:00 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SoftOrganizer.exe, version : 0.0.0.0, horodatage : 0x00000000 Nom du module défaillant : RPCRT4.dll, version : 10.0.15063.447, horodatage : 0x79914e66 Code d’exception : 0xc0020043 Décalage d’erreur : 0x000434f2 ID du processus défaillant : 0x2d44 Heure de début de l’application défaillante : 0x01d32338c10b83b3 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Soft Organizer\SoftOrganizer.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\RPCRT4.dll ID de rapport : 4d8f5c9d-100e-42a5-82b7-1fe5ac9352d9 Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (09/02/2017 03:35:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/02/2017 03:34:22 PM) (Source: Service Control Manager) (EventID: 7030) (User: ) Description: Le service NPEService est marqué comme étant interactif. Cependant, le système est configuré pour ne pas autoriser les services interactifs. Ce service peut ne pas fonctionner correctement. Error: (09/02/2017 02:48:16 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/02/2017 02:06:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/02/2017 11:36:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/02/2017 11:30:02 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (120000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service Appinfo. Error: (09/02/2017 11:18:30 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/02/2017 11:17:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/01/2017 07:13:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (09/01/2017 07:12:25 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Le service Update Orchestrator Service ne s’est pas fermé correctement après avoir reçu une commande d’anticipation de fermeture. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-2300 CPU @ 2.80GHz Pourcentage de mémoire utilisée: 35% Mémoire physique - RAM - totale: 8174.68 MB Mémoire physique - RAM - disponible: 5311.07 MB Mémoire virtuelle totale: 9454.68 MB Mémoire virtuelle disponible: 5935.75 MB ==================== Lecteurs ================================ Drive c: (Disque c) (Fixed) (Total:482.05 GB) (Free:443.06 GB) NTFS Drive d: (MES DOCS) (Fixed) (Total:448.54 GB) (Free:254.23 GB) NTFS Drive e: (SAUV DD :C) (Fixed) (Total:232.88 GB) (Free:185.64 GB) NTFS Drive f: (Sauv Docs) (Fixed) (Total:295.43 GB) (Free:159.66 GB) NTFS Drive h: (Sauv Docs) (Fixed) (Total:149.05 GB) (Free:121.25 GB) NTFS Drive j: () (Fixed) (Total:170.33 GB) (Free:169.96 GB) NTFS Drive n: (Portable HDD) (Fixed) (Total:149.05 GB) (Free:15.06 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 7EDB7EDB) Partition 1: (Active) - (Size=448.5 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=482 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=840 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 0001FFF1) Partition 1: (Active) - (Size=232.9 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 00053D7C) Partition 1: (Not Active) - (Size=38 MB) - (Type=17)ATTENTION ===> Suspicious partition bootkit on partition 1 Partition 2: (Active) - (Size=149 GB) - (Type=07 NTFS) ======================================================== Disk: 3 (Size: 465.8 GB) (Disk ID: E6EF009F) Partition 1: (Active) - (Size=295.4 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=170.3 GB) - (Type=07 NTFS) ======================================================== Disk: 5 (Size: 149.1 GB) (Disk ID: 57448F3A) Partition 1: (Not Active) - (Size=149 GB) - (Type=07 NTFS) ======================================================== Disk: 6 (Size: 149.1 GB) (Disk ID: 332A7869) Partition 1: (Not Active) - (Size=149 GB) - (Type=OF Extended) ==================== Fin de Addition.txt ============================