Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 20-08-2017 Exécuté par Francois (04-09-2017 19:45:02) Exécuté depuis C:\Users\Francois\Desktop Windows 10 Home Version 1607 (X64) (2016-11-27 05:30:34) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1288880404-4155176319-3141220653-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1288880404-4155176319-3141220653-503 - Limited - Disabled) Francois (S-1-5-21-1288880404-4155176319-3141220653-1001 - Administrator - Enabled) => C:\Users\Francois HomeGroupUser$ (S-1-5-21-1288880404-4155176319-3141220653-1003 - Limited - Enabled) Invité (S-1-5-21-1288880404-4155176319-3141220653-501 - Limited - Enabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\uTorrent) (Version: 3.5.0.43580 - BitTorrent Inc.) 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Creative Suite 6 Master Collection (HKLM-x32\...\{E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0}) (Version: 6 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated) Adobe Help Manager (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 4.0.244 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser) (Version: 2.0 Build 348 - Adobe Systems Incorporated.) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 384.76 - NVIDIA Corporation) Hidden AOMEI Partition Assistant Standard Edition 6.3 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.) Arduino (HKLM-x32\...\Arduino) (Version: 1.8.3 - Arduino LLC) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Audio By Harman (HKLM\...\{4F81A6B8-223E-4C60-A04D-61C48505B7BC}) (Version: 1.2.0.0 - Harman) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BattleBlock Theater (HKLM\...\Steam App 238460) (Version: - The Behemoth) Between Me and The Night (HKLM\...\Steam App 285070) (Version: - RainDance LX) bl (HKLM-x32\...\{2A075BB4-E976-4278-BF3F-E5C6945D84C0}) (Version: 1.0.0 - Your Company Name) Hidden Blackbay Asylum (HKLM\...\Steam App 313140) (Version: - TAD Productions AB) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Camtasia Studio 8 (HKLM-x32\...\{80AE23DF-71A4-4E3F-B931-F93AB5DF0BDD}) (Version: 8.4.2.1768 - TechSmith Corporation) Chronicles of a Dark Lord: Episode II War of The Abyss (HKLM\...\Steam App 341780) (Version: - Kisareth Studios) CodeBlocks (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\CodeBlocks) (Version: 16.01 - The Code::Blocks Team) Command & Conquer™: Generals and Zero Hour (HKLM-x32\...\{609F6FD5-4B22-4D7A-AD30-8C9DD480D5BE}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.31.68 - Conexant) Counter-Strike: Global Offensive (HKLM\...\Steam App 730) (Version: - Valve) Cry of Fear (HKLM\...\Steam App 223710) (Version: - Team Psykskallar) Curse (HKLM-x32\...\{F36ED29E-33E1-48AB-95DA-2498AD41A9A0}) (Version: 6.0.0.0 - Curse) CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version: - CyberGhost S.R.L.) Dead Space™ 3 (HKLM-x32\...\{D4329609-4102-4F8C-B83F-7FE024EEA314}) (Version: 1.0.0.0 - Electronic Arts, Inc.) Discord (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\Discord) (Version: 0.0.298 - Discord Inc.) Dolphin (HKLM-x32\...\Dolphin) (Version: 5.0 - Dolphin Team) Dragon Age™ : Inquisition (HKLM-x32\...\{DC4C36DC-4E5B-4262-B0C7-157DF534B969}) (Version: 1.0.0.12 - Electronic Arts) EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.10240.11163 - Realtek Semiconductor Corp.) FileZilla Client 3.14.1 (HKLM-x32\...\FileZilla Client) (Version: 3.14.1 - Tim Kosse) Firestorm Launcher version 1.3 (HKLM-x32\...\{008D5963-9A73-4472-8C16-A5BF04491B9D}_is1) (Version: 1.3 - Firestorm) Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - ) Freemake Video Downloader (HKLM-x32\...\Freemake Video Downloader_is1) (Version: 3.8.0 - Ellora Assets Corporation) Gameforge Live 2.0.12 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.12 - Gameforge) GanttProject (HKLM-x32\...\GanttProject) (Version: - ) GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team) Girlvania (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\{837FAFB9-EBA5-4727-95AD-792C4F671531}) (Version: 1.2.2 - Girlvanic Studios) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Earth (HKLM-x32\...\{F6430171-B86B-4639-839E-374913E7911D}) (Version: 7.1.8.3036 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version: - Richard) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4483 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{2B9448A1-9D0E-4187-B0D5-D78AFAA043DC}) (Version: 18.1.1546.2762 - Intel Corporation) IntelliJ IDEA Community Edition 2016.3.2 (HKLM-x32\...\IntelliJ IDEA Community Edition 2016.3.2) (Version: 163.10154.41 - JetBrains s.r.o.) Java 7 Update 80 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217080FF}) (Version: 7.0.800 - Oracle) Java 8 Update 101 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180101F0}) (Version: 8.0.1010.13 - Oracle Corporation) Java 8 Update 112 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180112F0}) (Version: 8.0.1120.15 - Oracle Corporation) Java SE Development Kit 8 Update 112 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180112}) (Version: 8.0.1120.15 - Oracle Corporation) Katawa Shoujo (HKLM-x32\...\Katawa Shoujo) (Version: - ) League of Legends (HKLM-x32\...\{11B73856-A062-4E6B-A80E-A3F380BBAB65}) (Version: 4.2.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games) League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games) Lenovo Photo Master (HKLM-x32\...\{BC94C56A-3649-420C-8756-2ADEBE399D33}) (Version: 2.1.5222.01 - CyberLink Corp.) Lenovo System Interface Foundation Driver (HKLM\...\{C2E5CA37-C862-4A69-AC6D-24F450A20C16}) (Version: 1.0.078.00 - Lenovo) LibreOffice 5.1.6.2 (HKLM-x32\...\{3D18F833-5EEE-4221-96CE-BC9488780EE3}) (Version: 5.1.6.2 - The Document Foundation) Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{4131143b-edff-4fc8-9238-9271cc57a45b}) (Version: 18.40.1 - Intel Corporation) Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Luna Sky (HKLM\...\Steam App 361600) (Version: - Vovoid Media Technologies AB) Malwarebytes version 3.2.2.2018 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2018 - Malwarebytes) MEmu (HKLM-x32\...\MEmu) (Version: 2.9.6.1 - Microvirt) Metric Collection SDK 35 (HKLM-x32\...\{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}) (Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft Office Famille et Etudiant 2013 - fr-fr (HKLM\...\HomeStudentRetail - fr-fr) (Version: 15.0.4433.1508 - Microsoft Corporation) Microsoft Rise Of Nations (HKLM-x32\...\RiseOfNations 1.0) (Version: - Microsoft) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23918 (HKLM-x32\...\{dab68466-3a7d-41a8-a5cf-415e3ff8ef71}) (Version: 14.0.23918.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) MiniTool Partition Wizard Free 10 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Mises à jour NVIDIA 28.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 28.0.0.0 - NVIDIA Corporation) Hidden MIT App Inventor Tools 2.3.0 (HKLM-x32\...\MIT App Inventor Tools) (Version: 2.3.0 - Massachusetts Institute of Technology) Mortal Kombat X (HKLM\...\Steam App 307780) (Version: - NetherRealm Studios) Mozilla Firefox 49.0.2 (x86 fr) (HKLM-x32\...\Mozilla Firefox 49.0.2 (x86 fr)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 49.0.2 - Mozilla) MSXML4 Parser (HKLM-x32\...\{01501EBA-EC35-4F9F-8889-3BE346E5DA13}) (Version: 1.0.0 - Microsoft Game Studios) NBTExplorer (HKLM-x32\...\{FC4C8FDD-384C-471F-9E9A-C25B57ABE7A8}) (Version: 2.7.6.0 - Justin Aquadro) No-IP DUC (HKLM-x32\...\NoIPDUC) (Version: 4.1.1 - Vitalwerks Internet Solutions LLC) Nostale(FR) (HKLM-x32\...\NosTale(FR)_is1) (Version: - Gameforge 4D GmbH) Notepad++ (HKLM-x32\...\Notepad++) (Version: 7 - Notepad++ Team) NVIDIA GeForce Experience 3.9.0.61 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.0.61 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 384.76 - NVIDIA Corporation) NVIDIA Pilote graphique 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 384.76 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 0.16.2 - OBS Project) Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.4433.1508 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.4433.1508 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-040C-0000-0000000FF1CE}) (Version: 15.0.4433.1508 - Microsoft Corporation) Hidden OpenVPN 2.4.2-I601 (HKLM\...\OpenVPN) (Version: 2.4.2-I601 - OpenVPN Technologies, Inc.) Oracle VM VirtualBox 5.1.26 (HKLM\...\{11A88BD5-F059-4743-81D9-1432AC9C3D4E}) (Version: 5.1.26 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.4.5.30491 - Electronic Arts, Inc.) osu! (HKLM-x32\...\{1517af63-cff7-41ae-a289-8e8ba4f25a58}) (Version: latest - ppy Pty Ltd) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Panneau de configuration NVIDIA 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 384.76 - NVIDIA Corporation) Hidden PAYDAY 2 (HKLM\...\Steam App 218620) (Version: - OVERKILL - a Starbreeze Studio.) PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden ph (HKLM-x32\...\{185F9795-9663-4F13-9EF9-307A282ADB5A}) (Version: 1.0.0 - Your Company Name) Hidden Planetary Annihilation TITANS (HKLM-x32\...\Planetary Annihilation TITANS_is1) (Version: - ) PokeMMO (HKLM\...\PokeMMO_is1) (Version: - PokeMMO) PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham) Qt (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\{72fae59e-18f5-4c17-a936-b6980034c641}) (Version: 2.0.5-1 - The Qt Company Ltd) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek) Resource Hacker Version 4.5.30 (HKLM-x32\...\ResourceHacker_is1) (Version: - ) Rocket League (HKLM\...\Steam App 252950) (Version: - Psyonix, Inc.) Rolistik 1.1 (HKLM-x32\...\Rolistik_is1) (Version: - Romain CAMPIONI) S4 League version 1362 (HKLM-x32\...\S4 League_is1) (Version: 1362 - Aeria Games) SDFormatter (HKLM-x32\...\{179324FF-7B16-4BA8-9836-055CAAEE4F08}) (Version: 4.0.0 - SD Association) Shadow Warrior (HKLM\...\Steam App 233130) (Version: - Flying Wild Hog) Simbuino (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\0f49ae1d0894cbe7) (Version: 1.0.0.19 - Simbuino) Skype Web Plugin (HKLM-x32\...\{CD62BCB9-02D2-443F-AC7A-443377DA5B38}) (Version: 7.31.0.56 - Skype Technologies S.A.) Skype™ 7.38 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.38.101 - Skype Technologies S.A.) Star Chronicles: Delta Quadrant (HKLM\...\Steam App 383330) (Version: - Alister Software) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) TeamViewer 12 (HKLM-x32\...\TeamViewer) (Version: 12.0.81460 - TeamViewer) TERA (HKLM\...\Steam App 212740) (Version: - Bluehole, Inc.) Terraria (HKLM\...\Steam App 105600) (Version: - Re-Logic) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VMware Workstation (HKLM\...\{878C6FAC-4FF1-4281-A05D-07CDA485C114}) (Version: 12.5.7 - VMware, Inc.) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WampServer 2.5 (HKLM-x32\...\WampServer 2_is1) (Version: - Hervé Leclerc (HeL)) WhatsApp (HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\WhatsApp) (Version: 0.2.5371 - WhatsApp) Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) Worms Revolution (HKLM\...\Steam App 200170) (Version: - Team17 Digital Ltd) YouTubeByClick (HKLM-x32\...\{BFE260E5-825B-4498-A011-497C8016C270}) (Version: 2.2.70 - YouTubeByClick.com) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Francois\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\FileSyncShell64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Francois\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\FileSyncShell64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Francois\AppData\Local\Microsoft\OneDrive\17.3.6720.1207\amd64\FileSyncShell64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{A62E09B4-6467-4E0F-9B52-E61D8BC9FC69}\localserver32 -> C:\Users\Francois\AppData\Local\SkypePlugin\7.31.0.56\GatewayVersion-x64.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{CBF9CD8C-2714-4F36-B76A-43E6C7547BC2}\localserver32 -> C:\Users\Francois\AppData\Local\SkypePlugin\7.31.0.56\EdgeCalling.exe (Skype Technologies S.A.) CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{cece6816-6107-4dc7-bdbc-20cd5ae1ffed}\localserver32 -> C:\ProgramData\Lenovo\ImController\Plugins\LenovoAppPromotionPlugin\x64\DesktopToastsHelper.exe => Pas de fichier CustomCLSID: HKU\S-1-5-21-1288880404-4155176319-3141220653-1001_Classes\CLSID\{E5A7A7B5-9D06-4DBE-BAC0-04B69FF070B5}\InprocServer32 -> C:\Users\Francois\AppData\Local\SkypePlugin\7.31.0.56\GatewayActiveX-x64.dll (Skype Technologies S.A.) ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL -> Pas de fichier ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2016-09-21] () ContextMenuHandlers1: [FormatFactoryShell] -> {A3777921-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_103.dll [2013-06-17] (Free Time) ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2017-06-19] (VMware, Inc.) ContextMenuHandlers2-x32: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2017-06-19] (VMware, Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-21] (Malwarebytes) ContextMenuHandlers4: [FormatFactoryShell] -> {A3777921-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_103.dll [2013-06-17] (Free Time) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_bde03d8af75e6be5\igfxDTCM.dll [2017-01-04] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-06-27] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-21] (Malwarebytes) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {062E6060-F7A1-4AAD-BC63-6BC9C0E9AED2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-08-18] (NVIDIA Corporation) Task: {10D1A48D-BA7A-4F42-B2E1-809A548ABB9D} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-08-18] (NVIDIA Corporation) Task: {12B847E3-13F2-47D7-86F6-DA7A824C92EC} - System32\Tasks\{C8B00090-991E-49F9-9E44-A4B031FC6EAD} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\Francois\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828_6\SkyDriveSetup.exe -c /uninstall Task: {2190DA41-ECAD-4E4A-B668-9588D81AFD94} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\09001a37-9af3-49b3-b4bf-46cd66d5c8dc => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-06-05] (Lenovo Group Limited) Task: {26049ABF-2DCC-4FB1-8C7E-ED1B52C698FD} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe Task: {29910479-8FF0-4FC8-9816-B359692EED9F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-08-18] (NVIDIA Corporation) Task: {2FA40902-0295-4CF8-BF92-2920ABA17A34} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) <==== ATTENTION Task: {3008D09C-F811-43B3-917C-A00B4A1EDFB3} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => %windir%\system32\sc.exe START ImControllerService Task: {43968120-BC54-4F79-9DCA-894D72B41724} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-04] (Google Inc.) Task: {43BD102D-7B8C-43BC-B601-41EA168EF9A9} - System32\Tasks\Pherhidombuition Collector => C:\Program Files (x86)\Aterlutthikile\sjergh.exe Task: {4685C6FB-C3C6-446D-95D3-ABADE982B3DA} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation) Task: {4939B590-C645-49E5-A692-2842F6207514} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation) Task: {5BFFD1B0-5A8D-4E3C-A467-5FB7BD5C5F13} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) <==== ATTENTION Task: {61400218-BF5D-4D03-9B4D-C39F795DAD43} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {7A1B8928-5864-472E-B13A-0CFB341209EF} - System32\Tasks\{209D851E-E9ED-439C-904B-EB1E5CD0684D} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\Francois\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828\SkyDriveSetup.exe -c /uninstall Task: {7AD0315E-F427-46AB-90D6-F351122D685F} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\49e33ceb-ae0f-4d1f-9af2-51d555379806 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-06-05] (Lenovo Group Limited) Task: {7B0C65E0-4328-47E5-AA5E-E2C23C1A9463} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe Task: {7F98B1E3-A738-470D-BFC3-0C0035C90B2C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\4532295f-2c78-4699-8dc1-e9e4b1832346 => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-06-05] (Lenovo Group Limited) Task: {879A38D2-B107-434F-924B-B1A4E08BEE7A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-12-04] (Google Inc.) Task: {BD6F084A-8963-490C-A938-E3AB6F59851D} - System32\Tasks\{0FBBD7DD-48C0-45A5-838F-04ACFD450478} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Arc\ArcLauncher.exe" -d "C:\Program Files (x86)\Arc" Task: {C07A4DCA-6779-4135-83EE-7735A610A21E} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [2016-04-22] (CyberLink Corp.) Task: {D3F038AC-4307-41FF-87A0-AD341724318F} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {D58513EA-C372-4C52-8B3C-7FB30A372E24} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) <==== ATTENTION Task: {DBD140C9-0AAF-47AC-8F04-8EA33F785FDB} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation) Task: {E0665DD9-2A8F-49DF-84F4-3C1C861657AA} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe Task: {E110F77E-7884-44AA-B558-85341AD3B890} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-03] (Adobe Systems Incorporated) Task: {E1F27E8C-3E7C-4D78-B136-F1AC6397825D} - System32\Tasks\a727803075331874d5e2a34a4136b849 => rundll32.exe "C:\Program Files (x86)\Uninstall Information\s0bke4.dll",e62dc6c6547f46bda862da2d05af6862 <==== ATTENTION Task: {EAA8E6D4-2B0A-4253-9148-772EB4621D1F} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation) Task: {F15D3393-655E-47EB-B22D-6AE9F03767B4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-04-28] (Microsoft Corporation) <==== ATTENTION Task: {F2F1A2E7-1632-437E-96F5-3B2FF7F4B07E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-08-18] (NVIDIA Corporation) Task: {FDB62186-8592-468F-B971-CA3C4A09E514} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d780427d-fa65-47cb-b1df-34135f94e34c => C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [2017-06-05] (Lenovo Group Limited) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qt\5.9\MinGW 5.3.0 (32-bit)\Qt 5.9 for Desktop (MinGW 5.3.0 32 bit).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /A /Q /K C:\Qt\5.9\mingw53_32\bin\qtenv2.bat ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qt\5.8\MinGW 5.3.0 (32-bit)\Qt 5.8 for Desktop (MinGW 5.3.0 32 bit).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /A /Q /K C:\Qt\5.8\mingw53_32\bin\qtenv2.bat ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qt\5.7\MinGW 5.3.0 (32-bit)\Qt 5.7 for Desktop (MinGW 5.3.0 32 bit).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /A /Q /K C:\Qt\5.7\mingw53_32\bin\qtenv2.bat ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Qt\5.6\MinGW 4.9.2 (32-bit)\Qt 5.6 for Desktop (MinGW 4.9.2 32 bit).lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) -> /A /Q /K C:\Qt\5.6\mingw49_32\bin\qtenv2.bat ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\GeForce Experience Stream Client.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" --app-id=gjljknijpnfibppaijefibndmiabonep ShortcutWithArgument: C:\Users\Francois\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\François - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 1" ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 13:42 - 2016-07-16 13:42 - 000231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-07-14 13:36 - 2017-06-21 09:48 - 002681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2017-06-30 11:47 - 2017-08-18 06:36 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-06-19 20:02 - 2017-06-19 20:02 - 012482024 _____ () C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe 2015-07-20 17:34 - 2015-07-20 17:34 - 000012288 _____ () C:\Program Files (x86)\No-IP\ducservice.exe 2016-09-21 22:16 - 2016-09-21 22:16 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2015-10-16 12:02 - 2015-10-16 12:02 - 000043480 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll 2016-11-27 16:11 - 2016-09-07 06:56 - 000134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-17 19:48 - 2017-03-04 08:31 - 000474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-17 19:48 - 2017-03-04 08:12 - 009760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-17 19:48 - 2017-03-04 08:05 - 001401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-17 19:48 - 2017-03-04 08:05 - 000757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-07-14 13:36 - 2017-06-21 08:36 - 001033216 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Actions.dll 2017-07-14 13:36 - 2017-06-21 08:35 - 002424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-07-14 13:36 - 2017-06-21 08:37 - 004853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2015-07-21 02:22 - 2015-07-21 02:22 - 000347648 _____ () C:\Program Files (x86)\No-IP\DUC40.exe 2017-07-06 12:06 - 2017-07-06 12:06 - 003918848 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.0_x64__8wekyb3d8bbwe\Calculator.exe 2017-06-28 22:13 - 2017-06-23 05:21 - 003807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll 2017-06-28 22:13 - 2017-06-23 05:21 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll 2017-01-23 19:15 - 2017-03-17 23:46 - 002493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll 2017-06-19 20:02 - 2017-06-19 20:02 - 000173032 _____ () C:\Program Files (x86)\VMware\VMware Workstation\nfc-types.dll 2017-06-19 20:02 - 2017-06-19 20:02 - 000126440 _____ () C:\Program Files (x86)\VMware\VMware Workstation\expat.dll 2017-06-19 20:02 - 2017-06-19 20:02 - 000396776 _____ () C:\Program Files (x86)\VMware\VMware Workstation\ssoClient.dll 2015-07-20 17:34 - 2015-07-20 17:34 - 000073728 _____ () C:\Program Files (x86)\No-IP\ducapi.dll 2016-09-16 19:23 - 2017-08-04 23:19 - 000678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-09-16 19:23 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-09-16 19:23 - 2017-08-28 22:05 - 002505504 _____ () C:\Program Files (x86)\Steam\video.dll 2016-09-16 19:23 - 2016-01-27 09:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2016-09-16 19:23 - 2016-01-27 09:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2016-09-16 19:23 - 2016-01-27 09:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2016-09-16 19:23 - 2016-01-27 09:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2016-09-16 19:23 - 2016-01-27 09:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2016-09-16 19:23 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-09-16 19:23 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2016-09-16 19:23 - 2017-08-28 22:05 - 000885024 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-09-16 19:23 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2017-01-05 23:39 - 2017-07-18 00:50 - 073115424 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2017-06-16 17:57 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2016-09-16 19:23 - 2015-09-25 01:52 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll 2017-06-30 11:47 - 2017-08-18 06:36 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-08-09 12:47 - 2017-08-08 15:13 - 001893880 _____ () C:\Users\Francois\AppData\Local\Discord\app-0.0.298\ffmpeg.dll 2017-08-09 12:47 - 2017-08-09 12:47 - 001577976 _____ () \\?\C:\Users\Francois\AppData\Roaming\discord\0.0.298\modules\discord_toaster\discord_toaster.node 2017-08-09 12:47 - 2017-08-08 15:13 - 001938424 _____ () C:\Users\Francois\AppData\Local\Discord\app-0.0.298\libglesv2.dll 2017-08-09 12:47 - 2017-08-08 15:13 - 000095736 _____ () C:\Users\Francois\AppData\Local\Discord\app-0.0.298\libegl.dll 2017-08-09 12:47 - 2017-08-31 10:56 - 009622008 _____ () \\?\C:\Users\Francois\AppData\Roaming\discord\0.0.298\modules\discord_voice\discord_voice.node 2017-08-09 12:47 - 2017-08-09 12:47 - 001440248 _____ () \\?\C:\Users\Francois\AppData\Roaming\discord\0.0.298\modules\discord_utils\discord_utils.node 2017-09-04 15:18 - 2017-09-04 15:18 - 000148992 _____ () \\?\C:\Users\Francois\AppData\Local\Temp\6144.tmp.node 2017-08-09 12:47 - 2017-08-09 12:47 - 002658296 _____ () \\?\C:\Users\Francois\AppData\Roaming\discord\0.0.298\modules\discord_rpc\discord_rpc.node 2017-08-09 13:48 - 2017-08-09 13:48 - 002673656 _____ () \\?\C:\Users\Francois\AppData\Roaming\discord\0.0.298\modules\discord_contact_import\discord_contact_import.node 2016-09-10 11:07 - 2016-04-22 10:55 - 000884504 _____ () C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\Kernel\Boomerang\UNO.dll 2016-09-10 11:06 - 2016-04-22 10:49 - 000081920 _____ () C:\Program Files (x86)\Lenovo\Lenovo Photo Master\koan\_ctypes.pyd ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-10-30 09:24 - 2017-07-07 11:55 - 000000027 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Francois\Pictures\Images\Azir_wallpaper.png DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdobeUpdateService => 2 MSCONFIG\Services: AGSService => 2 MSCONFIG\Services: CG6Service => 2 MSCONFIG\Services: Freemake Improver => 2 MSCONFIG\Services: FreemakeVideoCapture => 2 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: Steam Client Service => 3 HKLM\...\StartupApproved\Run: => "LenovoUtility" HKLM\...\StartupApproved\Run: => "cAudioFilterAgent" HKLM\...\StartupApproved\Run: => "ForteConfig" HKLM\...\StartupApproved\Run: => "SmartAudio" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "ProductUpdater" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe Acrobat Speed Launcher" HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "vmware-tray.exe" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\StartupFolder: => "Curse.lnk" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\StartupFolder: => "DesktopVideoPlayer.lnk" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "PhotoMasterImportAgent" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "OPENVPN-GUI" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "UUR57CZDVY77NGF" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "eaxmoamza2i" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "9PSBMMP9KMLG8T8" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "XYCQLO3B4SMVHKJ" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "6VHNTCER011J1P3" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "1AR8L94D1H1VOMI" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "yn1uyysqiyc" HKU\S-1-5-21-1288880404-4155176319-3141220653-1001\...\StartupApproved\Run: => "nlfjla1pr3c" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{466DF03D-0870-4B05-943B-A9204AC20418}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{16EDC547-3A8A-4B98-AF5B-00E85B55AA31}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [UDP Query User{D97CBA2C-802A-4E10-B52A-7144573C0FD7}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [TCP Query User{2DF368FA-8F7F-49AB-9B9B-9C5DCBE13A97}C:\program files\java\jre1.8.0_101\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\javaw.exe FirewallRules: [UDP Query User{BFC6D403-587B-40CF-BF5A-5AA0F1981528}C:\users\francois\desktop\terraria\terrariaserver.exe] => (Allow) C:\users\francois\desktop\terraria\terrariaserver.exe FirewallRules: [TCP Query User{1D2C47BA-D02A-44F2-88D8-D29ED2D10F4F}C:\users\francois\desktop\terraria\terrariaserver.exe] => (Allow) C:\users\francois\desktop\terraria\terrariaserver.exe FirewallRules: [UDP Query User{25135950-6CA2-40A0-B56A-A4D1A157DE94}C:\users\francois\desktop\terraria-server-1311\dedicated server\windows\terrariaserver.exe] => (Allow) C:\users\francois\desktop\terraria-server-1311\dedicated server\windows\terrariaserver.exe FirewallRules: [TCP Query User{56248068-129F-424F-98DC-69D2D92B9B04}C:\users\francois\desktop\terraria-server-1311\dedicated server\windows\terrariaserver.exe] => (Allow) C:\users\francois\desktop\terraria-server-1311\dedicated server\windows\terrariaserver.exe FirewallRules: [{71939E1C-D34E-40BB-8F09-07E3676994D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [{58744773-80FF-4D9B-B039-CA6230F343B5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [UDP Query User{A4E96CCD-4ED4-435C-812E-D3723D4A8EEB}C:\users\francois\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\francois\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [TCP Query User{1FEF75ED-C775-4642-89AD-5DC6A2F01F35}C:\users\francois\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\francois\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [UDP Query User{700B2EBA-4FD9-49A8-B917-3DD94641D712}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{EF5B5D73-A873-4D6B-8C97-7417E3E39939}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{FB4FD88A-9F91-4A38-80C4-EA56CB0C6053}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{E1DEEB97-3E32-4467-95BD-0B059E3E3998}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{6D1A3824-E869-4AD1-AB56-E71C37E7CF67}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe FirewallRules: [{ACC3857E-C604-4E33-B268-E4F8DDA26A0B}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe FirewallRules: [{DF54DCF8-9D0A-4CF6-BFD3-B32C25E23F5D}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{0A8345F9-B97F-4E96-BC13-166EE0D77EB7}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{DCF223E0-336F-4E56-9DFF-94A942ECDF9D}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{3F658F00-89E2-4451-8E1E-EC3D114F0D5F}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{17853A75-F461-4A27-8C4F-45444D611939}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{0925DBC8-C92E-4883-97D6-F3BB47280622}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{29D60B5A-B811-4624-88B1-5D21705299F7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{75B10185-8006-4B93-91E4-84B49562195F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{D4797E43-B8C2-497A-8195-477D2A17ED07}] => (Allow) LPort=8317 FirewallRules: [{C08D43BB-A480-4F50-AA2E-DCE2518206E8}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe FirewallRules: [{D216679E-0AF8-40CD-B14F-4EEC6AE973BF}] => (Allow) C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe FirewallRules: [{9CA8701B-35BA-40F2-811F-A5B200010C2E}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{2CE30ACF-179A-4BEF-A876-6A27175D18EC}] => (Allow) LPort=139 FirewallRules: [TCP Query User{11C2E95F-DBBC-410B-B3E6-201E5235A158}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [UDP Query User{2AC03C5D-9F05-4AE0-8F73-0724AB5174B9}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [{C0C132A7-000A-40BD-8629-6906594F96EE}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe FirewallRules: [{288CA5A1-7608-4F04-8A07-1663BADB893B}] => (Allow) C:\Program Files (x86)\Adobe\Adobe Flash Builder 4.6\FlashBuilder.exe FirewallRules: [{FD823914-83A8-453C-9337-EA49DB3F54E8}] => (Allow) LPort=7935 FirewallRules: [TCP Query User{3769AEBC-2491-4A32-A8FC-118EB5065770}C:\program files\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\java.exe FirewallRules: [UDP Query User{0293E646-65C0-45F7-B875-9ABBA44E65F9}C:\program files\java\jre1.8.0_101\bin\java.exe] => (Allow) C:\program files\java\jre1.8.0_101\bin\java.exe FirewallRules: [TCP Query User{3387CEEE-25CD-4A68-8DA6-AA43FD14A76D}C:\programdata\oracle\java\javapath_target_116062140\java.exe] => (Allow) C:\programdata\oracle\java\javapath_target_116062140\java.exe FirewallRules: [UDP Query User{14D3B5D9-CB6C-4931-9BDC-94D727948E26}C:\programdata\oracle\java\javapath_target_116062140\java.exe] => (Allow) C:\programdata\oracle\java\javapath_target_116062140\java.exe FirewallRules: [{4EB433F3-3AEA-4F36-9663-01D6DA2FB189}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{D4D0421E-C562-458A-9545-383A2452C6F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{B2993738-E7DF-4143-8BC0-B0698B6D7F45}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{E3C7C43C-761E-4899-B790-EFB06649D4FE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{ECCEC39B-B5E4-4486-8EBA-1FEEAE7A2CC6}C:\program files\java\jre1.8.0_112\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_112\bin\javaw.exe FirewallRules: [UDP Query User{0E7CBD47-F8A9-4092-8957-CFC493A9994A}C:\program files\java\jre1.8.0_112\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_112\bin\javaw.exe FirewallRules: [{FF0CBBD7-EA93-4136-9E2E-0408B4D54BA7}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{E74B73B1-ECFF-40A6-82A4-DF15A76CCDCE}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe FirewallRules: [{C5B742F8-CC5D-471D-A646-C92475CB0423}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [{7CA5D00C-8648-4BD3-A470-7A04C49E3EA8}] => (Allow) C:\Games\World_of_Tanks\worldoftanks.exe FirewallRules: [{AF4ECC7B-0A05-4FEE-987E-BD2B89F28B06}] => (Allow) D:\Program Files (x86)\Origin Games\Command and Conquer Generals Zero Hour\Generals.exe FirewallRules: [{81C9C63D-4040-4601-A1F1-824D637451EF}] => (Allow) D:\Program Files (x86)\Origin Games\Command and Conquer Generals Zero Hour\Generals.exe FirewallRules: [TCP Query User{2A69BAEB-0773-4833-849B-090912431A61}D:\program files (x86)\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe] => (Allow) D:\program files (x86)\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe FirewallRules: [UDP Query User{27A6BD7F-85A6-4F2C-BDFF-CF8A1BFD5E1A}D:\program files (x86)\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe] => (Allow) D:\program files (x86)\origin games\command and conquer generals zero hour\command and conquer generals zero hour\generals.exe FirewallRules: [TCP Query User{EEFFAD34-B867-453D-A648-6D7560CBC4E8}C:\program files (x86)\microsoft games\rise of nations\nations.exe] => (Allow) C:\program files (x86)\microsoft games\rise of nations\nations.exe FirewallRules: [UDP Query User{81E7C49A-201A-4558-8FD7-AE03EBA77BF0}C:\program files (x86)\microsoft games\rise of nations\nations.exe] => (Allow) C:\program files (x86)\microsoft games\rise of nations\nations.exe FirewallRules: [{EF108625-5620-4DE5-8CAF-286DF18DBAC9}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [{BB901B4C-2BDE-4F77-ACC8-0099533D9103}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{8A2AB1D4-FA17-4D24-84E9-6C1760018BF7}] => (Allow) C:\Program Files (x86)\FormatFactory\FormatFactory.exe FirewallRules: [{A1DE7A86-341A-42E6-ABCE-EDCAD63EC129}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe FirewallRules: [TCP Query User{D9ABD4B2-6BEB-4140-BF10-7A37C6ED0DFD}C:\users\francois\eclipse\java-neon\eclipse\eclipse.exe] => (Allow) C:\users\francois\eclipse\java-neon\eclipse\eclipse.exe FirewallRules: [UDP Query User{5898A054-50BB-44C0-A799-BC1355729AA1}C:\users\francois\eclipse\java-neon\eclipse\eclipse.exe] => (Allow) C:\users\francois\eclipse\java-neon\eclipse\eclipse.exe FirewallRules: [TCP Query User{F3475204-6425-4FD0-A794-06CF52C8D0F7}C:\program files (x86)\jetbrains\intellij idea community edition 2016.3.2\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea community edition 2016.3.2\bin\idea.exe FirewallRules: [UDP Query User{8DEC13C3-C3B8-47E1-92E0-0B1FA55ABAF7}C:\program files (x86)\jetbrains\intellij idea community edition 2016.3.2\bin\idea.exe] => (Allow) C:\program files (x86)\jetbrains\intellij idea community edition 2016.3.2\bin\idea.exe FirewallRules: [TCP Query User{AF11572E-1E6C-46ED-9D10-0A5C48B200C3}C:\program files\java\jdk1.8.0_112\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_112\bin\java.exe FirewallRules: [UDP Query User{C0524D1E-A578-4D7A-B858-F896C8D60BF7}C:\program files\java\jdk1.8.0_112\bin\java.exe] => (Allow) C:\program files\java\jdk1.8.0_112\bin\java.exe FirewallRules: [{7621FE3D-E608-4107-AC15-AA214410B638}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{95439166-9865-4637-B5BF-FD32FABBDA25}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{F5822D7F-F00D-427B-8F16-BA9E64943AA5}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{D43451A6-BED0-4D19-9CD0-3C82D523377C}] => (Allow) D:\Program Files (x86)\Origin Games\Dead Space 3\deadspace3.exe FirewallRules: [{14556C10-54B0-4849-BE27-666CA335FD4D}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [{4456C211-E1F0-481B-BF15-5D15F5F38622}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [{C2DC9003-38D0-4193-8E11-7635E2AAEA00}] => (Allow) C:\Program Files (x86)\Origin Games\Dragon Age Inquisition\DragonAgeInquisition.exe FirewallRules: [TCP Query User{E439F9D3-5E28-40A9-BF11-F33361BD4023}C:\program files (x86)\origin games\dragon age inquisition\dragonageinquisition.exe] => (Allow) C:\program files (x86)\origin games\dragon age inquisition\dragonageinquisition.exe FirewallRules: [UDP Query User{49680928-11B9-4053-A621-0260168058C3}C:\program files (x86)\origin games\dragon age inquisition\dragonageinquisition.exe] => (Allow) C:\program files (x86)\origin games\dragon age inquisition\dragonageinquisition.exe FirewallRules: [TCP Query User{B7DE8326-3C81-44A4-AFC8-B5F8808D4CBB}C:\users\francois\desktop\wifi\desmume_vs2008_release2.exe] => (Allow) C:\users\francois\desktop\wifi\desmume_vs2008_release2.exe FirewallRules: [UDP Query User{FD6B8BA9-35CB-481B-B1C9-87D5A8180C72}C:\users\francois\desktop\wifi\desmume_vs2008_release2.exe] => (Allow) C:\users\francois\desktop\wifi\desmume_vs2008_release2.exe FirewallRules: [{11237D6B-8653-4892-BFF3-CDF6F537AFC5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D5F241B3-D641-498E-8897-C492771EB041}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D27B392C-4E7B-4195-9E1D-9049096E97CD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B26D58F1-3B11-4EDC-A178-D51F40441367}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{617438EA-76A2-4531-8895-1A6AB13349C7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C2A7853-1D51-4C82-BEEF-DAE1EC3CBD68}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E085B353-1799-44D5-A1E5-BACDD877C414}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3AE220D7-F5DF-4F45-8241-22140FBE3FF3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6A9C9546-F4F6-4885-AD55-03A3B6525A2E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{20E4046A-7B9A-4A1A-86A8-63088E93120C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{838653F6-A538-44FE-A75A-954CEF60017C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0268E2B1-89C1-4852-B697-F33FA7F0F26C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{18C814A5-EA0F-40DD-9DDC-C665B8440222}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5131EB6B-6B91-4156-AD6D-F4189ABAC4FD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{586E4EAA-B137-4E2A-A290-E5638E73ED91}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C1C72826-13EE-4954-973A-01808D453CD8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{EAFAF680-E121-486A-8AC1-0C476BE84BB8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2A67B8D5-B07B-4256-A47D-5155E73F9654}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0D3AD733-43BE-4D45-92C1-23A12981CF63}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C4002F0C-2D48-4C98-83E1-F422BFFCF4EA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7171C411-73F5-4547-B199-BF4D21E44AB3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BB298E5F-6B77-43D8-82F2-00DC575132B9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8506C724-00AF-425C-840B-22FAD0439578}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F769F30F-6412-4A1E-B3D3-2137504935B1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E06CFC81-9B74-4045-BED5-78D9FE5876FE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F2FD51B2-8A07-4317-AD67-9020587640AA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6E55EA16-FC1B-4FA9-BBA6-98BE0FDD2748}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BA84A44E-F660-438E-99F1-AF1723368685}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{8359A1E5-0A4F-4E74-9D65-3DEEC001F1F8}C:\users\francois\documents\build-test-desktop_qt_5_9_0_mingw_32bit-debug\debug\test.exe] => (Allow) C:\users\francois\documents\build-test-desktop_qt_5_9_0_mingw_32bit-debug\debug\test.exe FirewallRules: [UDP Query User{D13492E1-037B-4FB7-9913-A867B43DA12A}C:\users\francois\documents\build-test-desktop_qt_5_9_0_mingw_32bit-debug\debug\test.exe] => (Allow) C:\users\francois\documents\build-test-desktop_qt_5_9_0_mingw_32bit-debug\debug\test.exe FirewallRules: [{5E73F3EB-4901-4778-BAB7-C612121D2411}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B6EB2218-1E65-43C3-94F8-C0B2A5B32772}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C440A669-04DB-4A30-A769-9BD8503D901B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5D86C9B6-CC65-4521-852F-6CD194E71E62}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0690A8FF-7C86-440C-A5FB-A169FCB57F50}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4C0FDCE7-B39F-4DFD-8DEA-4B3FB7DE589D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DE624E89-F055-492E-BEBF-F8C229ED6B39}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{578A7A79-AB9D-4D65-8F72-1BE525B1F63A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{080181EE-7D33-4AE3-BE67-F39AE4F44E59}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CD952637-E094-4962-B7E8-2FAF82B7AD9B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FA6AB96C-3B23-4632-B086-668D1B0ECBE0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9AACB501-3FA7-47F8-86B8-75A4873AB104}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2458000C-2440-415F-A4BF-9CAD0D379107}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{87B6A5E5-ACB8-4AE5-B069-7C675DC5AE25}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6B2DBB6E-6141-4CC5-88F6-F91313505DC1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F5843336-F709-4DFC-BBCC-28E10E15AD3C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{32A7272D-7B04-4233-83B6-4CDC9D5728E1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E90D60DB-9109-409B-AB3D-10F7DD2AD033}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6A8859D5-3B1E-4CE2-A3F2-CAC8A9867B48}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F795D822-B4F0-4213-9158-F09CF85CC298}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{AEDD9C3B-BEEF-4167-8E58-18B94BE233DE}C:\windows\system32\mmc.exe] => (Allow) C:\windows\system32\mmc.exe FirewallRules: [UDP Query User{984C9C98-5CEF-43BB-8DE3-1F799F16B27A}C:\windows\system32\mmc.exe] => (Allow) C:\windows\system32\mmc.exe FirewallRules: [{7E5CAE4F-3263-4D97-9134-5AF3519810ED}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{66AB03C2-ECDF-450A-AE99-6CAF5CDAC7E9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E5C1912D-09E2-46AF-979B-C24534CBD7A5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B5B7DBA8-81DD-4B13-9BA2-E0D330DA0889}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{18D653FE-6EEF-4F35-BBAA-11D77BB22A1F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A562D1E8-D910-427B-91A5-5EAEA7E513B1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B9F6F584-BCD1-4D0D-BE32-1582EF95A297}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C146EBE-5CA3-42B4-89E0-56391AF77AFE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B9063AEB-7B2F-4F43-80B0-2EA6DCC03F2F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9B29C16E-899F-4055-A46C-4A886C738B64}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{33EC6BB3-5C87-423F-969B-06C804F853D3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{16CB8DB4-F019-412C-881C-11F40A17F46F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7FC264B2-091E-4744-9629-E66AA38C3168}] => (Allow) C:\Program Files (x86)\Arc\ArcLauncher.exe FirewallRules: [{AAB60D44-C632-4DD4-89BC-77663F257E47}] => (Allow) C:\Program Files (x86)\Arc\ArcLauncher.exe FirewallRules: [{F1B7C511-D7E4-40FB-8F84-48CF312480D5}] => (Allow) C:\Program Files (x86)\Arc\ArcLauncher.exe FirewallRules: [{EFA82684-28F3-4485-806A-92A43E917A05}] => (Allow) C:\Program Files (x86)\Arc\ArcLauncher.exe FirewallRules: [{5B7892F5-B6DF-472A-8506-7F94727E8BD0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{387DBA32-BB96-49C8-8893-F78C3E58D472}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C33EDB2-5F16-401B-8032-7273FF720C8B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{22F775EE-7124-440A-9B5F-256D9F836B2A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{695EAA91-DA35-4EE6-99F4-42ADAF64D7EE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{95573365-F274-4E18-8C1A-77AE97D11044}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FBD8D1C9-C85A-4CA7-B13D-2A0A63284E86}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B98809E7-81F4-4BCC-ADC2-5383F45D3235}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3A620AF7-467B-4CC1-AE35-F73B3AF85B1B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4EB58FA2-C1FF-4E0B-A09D-74E5CE041CBD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E789E63E-0BD5-4C14-B536-82FD928C6730}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B0F5F0BE-F94D-497F-B491-AAAB425F7385}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{3D094AA2-4598-456F-B5E7-55894CE303BF}C:\program files (x86)\arc\arcchat.exe] => (Allow) C:\program files (x86)\arc\arcchat.exe FirewallRules: [UDP Query User{6709BF33-E87C-4BD8-9AAF-A21B545D9846}C:\program files (x86)\arc\arcchat.exe] => (Allow) C:\program files (x86)\arc\arcchat.exe FirewallRules: [{369C0A3F-723E-4786-BD7A-4A6AD4C76BC5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{77623842-6E4F-4A2D-99D0-6F45E823C1F4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B3E591B0-F0C9-4F23-A1F7-204A7A0DC053}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{19905B5A-FB15-4953-B57C-3672DFFFB048}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A98852DF-E323-429B-B04A-C13BCEDE28B3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{25800899-3B6C-4DD4-B5C5-5A8A787C5CEE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{35B3E653-976C-4D7D-8741-719DC41E89A1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2B6DEA2E-D669-433C-8441-D66B4B9707CB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E712DF0E-F8B0-495F-89B1-3F284C6D2901}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{06D67748-5D2C-4567-AD61-2D8A30262EC4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{400FC328-63BB-42B3-A31E-A9D914CEA7B3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F5DFC1F7-9277-47A0-AC0C-722FBFAD6187}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{AF97D6B5-3A6F-4259-9B86-2A6330CD588D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{399F6781-B265-4155-8299-B49E88A90C67}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0A64B6DF-8B08-42D8-8C6F-A862CCA1B254}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{64C35C4C-4466-416D-9CD6-90486C81AAA8}C:\program files (x86)\arc\games\neverwinter_fr\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\arc\games\neverwinter_fr\neverwinter\live\gameclient.exe FirewallRules: [UDP Query User{F71D6D09-343B-4DAD-871B-CC62E16C5857}C:\program files (x86)\arc\games\neverwinter_fr\neverwinter\live\gameclient.exe] => (Allow) C:\program files (x86)\arc\games\neverwinter_fr\neverwinter\live\gameclient.exe FirewallRules: [{9A36DCDB-4306-4A23-B341-4257C86A9598}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5EE495D0-C8C4-428B-8245-1D08DA9A4D04}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{17724272-BAA3-4EBD-BC85-14B41BEFD6C4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A53ABA85-B4D3-4537-A67E-475519AA0CFB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6B03AF4B-D749-4B10-BC05-384FF0B84F87}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D8E3DD8B-0C5B-40EC-BC0D-3D47CC64B2C6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{36D7716F-37C9-4F7A-9624-AEB278F80E86}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0BDB7C75-91A7-4979-AA2F-48F7C620B645}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CE812386-DFF9-4CA5-8F77-98EEA92104FA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9EBF3702-9CC1-4B1F-B0FC-9FF6AD90F67B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6BE8FA3C-18C6-4A79-9E23-13EEA0B430B8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BCF38243-071D-4B9F-84EB-6CB029966FF6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{66429CF2-A052-4627-8194-D3D91525A8F5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{558A961D-B80A-4D72-BA3F-C738498FD1AB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{186C905A-C20B-42C6-B458-E472134E1B74}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{91A523F6-C702-4DC1-BB50-6E3A22C93843}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0923A3B8-A232-448E-8345-183E5CBDCA78}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FD012271-BDCB-4C83-BE15-E75B4ADE24C0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6EBBE919-3E7A-42AE-8769-BAE0AEA987B8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B839F27D-C1D7-4819-9975-83E66512F1C1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{423DA087-030A-4D43-84DD-6996D4B69E7D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7AC5491A-08EF-4E90-8E23-CFD4933EAAC5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5269ACC9-6B41-4E0B-B0D5-8693F16A82E3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A6BB83FF-111B-47B2-8A2F-2DE67F7C8138}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{32A30FC3-91D2-4605-B678-F87415CCBEAD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8EBBD05E-4B08-491D-A24E-A0D25BA85FAA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{94F17716-6C8B-487B-82DC-43D403B891C3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{ACE4057D-9756-4F11-8D7E-6FC4CBF0B45C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F896AC7D-FA7E-4033-A649-DD16A497B576}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{814D0D52-6E1A-4048-978F-B4E8B7BD65DB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1DDC5203-2664-4747-84F8-FFCD2571C77B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{82F2E505-7C06-4878-8D5A-BDE889194A2A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{CB6BE65E-B956-4C00-B878-6E3C16EBFC48}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{91E38006-36CD-4F17-94E9-F0205D2BC86A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5F5AF282-E9C9-4657-AEFC-D6DC70018A9D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{23F67230-3F20-4601-B8F4-C543380F6D6A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9109EAD0-D389-45B4-B16D-35CEF343817A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{48CB8B47-18DF-43C1-9107-CD3E1674C945}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{16EFDD4D-B5EC-4B93-B051-9CB7040473E4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A17B2AAC-FF4E-42DA-A0B2-947DC05CBE21}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C46FAF4-ED85-43C7-9372-90D1B8CAF41C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6C79E17E-13EA-4036-8800-D42898DC4743}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0ED76DE0-897E-466E-957E-AA368FA9FEDF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{11B065E7-3E8B-450C-A3F4-C4DF69DF914A}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8C37D833-48B2-45AE-995A-96E488E6A4C3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1BC4C220-1AA0-4B6A-8B37-5886C0FD2BCC}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BDFA774D-54DE-41A8-A2F0-9F661AFFD723}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7A44A538-2D1C-4328-BB21-39BDF20BE526}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E4587170-75D3-4687-B52F-AF4D1C7322AD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8CAD9CD2-BA38-4B05-B3F6-AE09B053A973}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6248A2B4-AD5C-407C-A950-A264FCB3B412}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5127F9AE-45E3-4174-9493-3EB287752644}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D03A6F3F-1847-42F3-82DB-55A8637D3DC5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C3A178B4-0464-41C8-8113-6A3F6A4EF210}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7ACF0214-34CA-4C65-8318-B39903557DA0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{B14D620E-1186-43DA-A0A8-3641B9AC7920}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1B712C64-3F56-45F6-814C-90D4B979683F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7F4C9078-763B-4847-949E-31B60852BB2F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7EABF4D4-E5E3-419F-8C30-68BE6EA089FD}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7E62A94F-9279-411C-962C-CC6F6AEFFE4E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7A5046E6-A280-424D-AEB6-77BCBF841FC4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DBFDB22F-3528-45AD-B20A-8A466F5AE48D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{BFEC12E9-3997-4316-A900-45D110854A67}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{71CE952C-49C2-4560-BC50-41C61C49A020}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{19DA06EC-1D0A-4D6E-89FB-03855EC1CE4F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E45FE0A3-243D-4911-A393-15F8763346E7}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D1DDDC2F-1E52-4430-A8E4-042CB1D190B5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E279D4A3-812B-48FA-B604-6AEDC7496643}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{9E0658A1-A27D-44C2-8926-95D3877E7386}C:\users\francois\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\francois\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [UDP Query User{A33A76F6-2E35-4EA2-AF5D-B00EB113A26B}C:\users\francois\appdata\local\skypeplugin\pluginhost.exe] => (Allow) C:\users\francois\appdata\local\skypeplugin\pluginhost.exe FirewallRules: [{A6C037EC-D825-439E-A2B1-F01578482C3D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{18D83E2C-0219-43EA-AC32-E6CA082E0F4D}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{796CBF1A-79B5-4C93-BB28-F0DF8FA09038}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{50354750-2D79-4AE3-882A-55702B56775B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8E46C503-D90E-429A-B46F-23848A7E32CB}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C24D7D33-FE17-4C3C-A4D1-FBBAACAF0329}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FE7DA864-307B-4B0C-9891-91E9BB52DA17}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1B1D3D52-DCB7-4154-88DC-2CC6FBE76C81}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A2AA52A4-861A-4883-BF57-68BD5D0B9128}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6411130C-9FAB-46A4-97A4-9A011A58AA5B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2AA0A2FD-BE92-4348-985D-9D121DB6AE1B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{44FE1C15-5A1A-411F-9A0F-CF86211F0BE0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FB7AF668-AC87-4B32-B5FC-756C973D7A96}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F5478BAA-E8DC-4F00-9EBE-52A9FB7BB3E8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{9646C2F7-48FA-4AB4-970D-D22A5DC5666B}C:\users\francois\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\francois\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{B701AA06-F57C-4FF8-9B72-3144E3E03956}C:\users\francois\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\users\francois\documents\curse\minecraft\install\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{0310204C-71BB-46C4-A7A8-97A20473A5C8}C:\users\francois\desktop\ygopro devpro launcher\ygopro.exe] => (Allow) C:\users\francois\desktop\ygopro devpro launcher\ygopro.exe FirewallRules: [UDP Query User{29CC0C0E-7FD7-4EA3-986F-1D7845163422}C:\users\francois\desktop\ygopro devpro launcher\ygopro.exe] => (Allow) C:\users\francois\desktop\ygopro devpro launcher\ygopro.exe FirewallRules: [{075E490C-61AE-470D-A941-D99936B8E97D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [{EB26ACCA-7D8D-4995-8B86-7A6ADBE07149}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe FirewallRules: [TCP Query User{AFCD1DB5-2CCA-4355-8851-B69BBED98485}C:\program files (x86)\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{ED8DC1CE-7500-42F4-835C-834AB33F8075}C:\program files (x86)\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe FirewallRules: [{F8D2E09D-6780-497A-9A79-2D8F6F3CF546}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F664988A-B3B9-4CD1-B215-8BC9823D092E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{98B777E4-9D0D-449C-8C67-B262AFABBAC2}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{C79899A2-791A-4A54-83E1-D299C48B78B8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{3B4E87A6-3FBB-412D-813E-86923F1072BF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E6F8EF16-71B5-4FFC-A4EC-07CC4D09FC66}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0237413D-2FAA-41FD-9784-5D86F22B57E8}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7A34443F-703A-498D-AAC1-4BB0F2ED2D77}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{031E6E98-5711-4C49-9CEC-8881D6856528}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{95DB883E-1A3E-4F37-BFA6-0F6DE00729DF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{EBEC96C9-8F3A-4A71-BCC2-BA50E11F85A9}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{9BEE818A-4EB9-4CBB-A916-75D28AF9C0A0}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4DDD96DD-912B-4733-B3DC-0112455DDCB3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F99B5990-0690-4015-B269-92B8C22CB0E4}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{888913E9-8123-4364-8CA4-B9B6DAE9292C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D4CC76A7-2B08-4F07-8BA8-254B7FB61448}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{32B9729B-3691-4E01-BAD3-D1EC931EA33B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{ADDC480A-2161-41B9-BD8D-62D830456A26}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{AC4B7D25-AC03-488E-8010-05B28ADE6E85}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{E8BAC437-9424-4786-AD14-A6FA893C5F4B}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe FirewallRules: [UDP Query User{CD584E20-8CA7-4B07-9998-07A651509C41}C:\program files (x86)\arduino\java\bin\javaw.exe] => (Allow) C:\program files (x86)\arduino\java\bin\javaw.exe FirewallRules: [{4F08A5CE-3387-4ADB-818F-E1CC2CAB6CF0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{356C9BB9-6C96-4C27-BDDA-BF70E8760C0E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [{3A4D4299-0AAC-4412-AA98-9E0B953ABA5E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\BattleBlock Theater\BattleBlockTheater.exe FirewallRules: [{78998E27-6098-4176-A59C-DA627253EA25}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Chronicles Delta Quadrant\Delta Quadrant.exe FirewallRules: [{18A0139A-88A0-45DA-B26A-487E6E526FC4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Chronicles Delta Quadrant\Delta Quadrant.exe FirewallRules: [{4589FF8D-59E9-42F6-B059-A5F5280EC722}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chronicles of a Dark Lord Episode II War of The Abyss\Game.exe FirewallRules: [{42135C08-059A-4961-ADE9-FDD46E8E8240}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Chronicles of a Dark Lord Episode II War of The Abyss\Game.exe FirewallRules: [{82DD06E7-D174-44A5-941B-1FDAC785AA26}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{009B8028-15AC-4CF3-9B98-DC1B77170A18}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{BAADEB28-47CE-49D0-BB21-05FFF367F406}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{DEB1F804-FAF8-4C0A-A305-8184E0403B27}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5A36B807-F0D2-43FF-93B0-2259D720E723}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{E1AC2328-F122-4031-A916-C3F790FE3BD6}C:\users\francois\appdata\local\crossout\launcher.exe] => (Allow) C:\users\francois\appdata\local\crossout\launcher.exe FirewallRules: [UDP Query User{40FF2421-94A4-4729-BDDF-1949E06AC1A2}C:\users\francois\appdata\local\crossout\launcher.exe] => (Allow) C:\users\francois\appdata\local\crossout\launcher.exe FirewallRules: [{8157CC29-DBDC-4BCA-B9E6-0036368D94DF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{A5B0BB6C-E679-4D58-899C-FE828F43D63C}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{67757EB5-6871-467B-8AE0-7D26056CDA69}] => (Allow) C:\WINDOWS\system32\rundll32.exe FirewallRules: [{583ED30F-CFE6-40AF-967B-239FFA4C1E39}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{2823AC98-0FB5-43FA-8B54-904ABCEA5214}] => (Allow) C:\Windows\System32\rundll32.exe FirewallRules: [{3450E539-4A06-4D7D-BB73-24DE9903A494}] => (Allow) C:\Windows\System32\rundll32.exe FirewallRules: [{69877139-B4A5-4D9A-AB6F-BE94ADB081F6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8743B6AC-B4F1-4D01-9286-743D59B0D602}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DCD1A654-08A7-47D3-8291-B44B0982240E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{72A43D38-8554-4DE4-87A3-823DC5A2ACA5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{E05B6757-89AA-4CBB-8DFB-A3D369D64BBF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{F530F509-9D58-4623-8A74-FC78631D62DE}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{31E101A2-BA28-48AA-BE3D-7B820B3B26D5}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{1D6F3E26-D506-4DA2-8238-F962554CC0C3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{D312FA12-E672-4B65-BB9E-BCAB3E4D7211}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{22F02BEA-7CFA-4C9B-BEE0-D952DF21A4FF}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{69240797-6D95-43D1-A0C9-1FD58C8155A6}C:\program files (x86)\rolistik\rolistik.exe] => (Allow) C:\program files (x86)\rolistik\rolistik.exe FirewallRules: [UDP Query User{643F4093-F2C5-466C-BEBB-91C513B62169}C:\program files (x86)\rolistik\rolistik.exe] => (Allow) C:\program files (x86)\rolistik\rolistik.exe FirewallRules: [{16F9B3F3-A69C-48F7-A093-91A8D4CEF509}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{8D5C34E2-4277-4F5C-8B1B-272362EBF565}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{08BC87FE-15EE-4E92-87DF-8A64BE418C9B}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{81177F66-7194-4AF5-BE5E-90B945D52255}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{DC1029F5-0AEC-45D8-BA8F-613306D38640}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{4A9EFCDA-D9D0-4EDD-BFF8-2D08FE507BF3}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6C6E8A42-1037-432E-B7F7-976E42C1164E}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5CBB3FF5-2607-4D7A-A276-9663225B2CF9}] => (Allow) C:\Users\Francois\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{AF2292D5-F410-41F5-9896-0B1E594A454E}] => (Allow) C:\Users\Francois\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{363B7A58-6D07-4032-87BB-64C1BDD30DA4}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{3CA66463-C1E1-4CAE-AF78-E18B2813C246}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{87C26DB7-3A8D-45F6-9211-EDAD8AFC519D}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{BE25325C-A9C8-464A-90F0-D6C4ED8E538F}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{FA4D7583-3023-48D4-8D58-7373CB57E29F}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{03B1D160-C680-49DB-B900-BB3337419EDF}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{91C8EE09-7EEB-43F6-913D-BB66AC4D84E0}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{6570D8DA-BEF0-4AE7-8235-F5A1E9798743}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{F7171E8D-B7FE-4221-B135-A1961AFAA000}] => (Allow) C:\Users\Francois\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{7AD1083B-998C-4534-A53F-82AB895DB82A}] => (Allow) C:\Users\Francois\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{003AB37B-5864-4A41-992A-4B4123572660}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{DEFFC7A0-981A-4017-8A6E-A1BCB172F3A5}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{1351A645-B5A9-49AC-B54F-C1E8F8F9FBB6}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{6BC872A7-490B-44C7-A23C-0F77891D5776}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{E8A16FA8-9B95-4753-8382-D7FD8C441434}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{82BC7CC2-AD94-4F39-96D9-3C0493351F05}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{19954585-4C59-4826-ADAA-92CA43600CFC}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{66557E50-5AE5-402E-92A5-40F33331952E}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe FirewallRules: [{8218AD8E-3B75-40AF-A4B7-5C888A0791B7}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{3DD4AF36-47DA-468D-9812-5050602F9EB0}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe FirewallRules: [{A4248777-B3E2-4B72-9C12-7FEDACF29BFE}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxHeadless.exe FirewallRules: [{17ECA963-D422-4600-AD9A-EECBBDC6EB73}] => (Allow) C:\Program Files (x86)\KOPLAYER\download\MiniThunderPlatform.exe FirewallRules: [{EF3E4AF4-AB8D-4E94-9933-AE533925629A}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxManage.exe FirewallRules: [{8C280BC8-7939-4858-AF66-A3F0196B56D4}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxHeadless.exe FirewallRules: [{B6503C80-5230-4D21-8CFC-74340725B0BA}] => (Allow) C:\Program Files (x86)\KOPLAYER\download\MiniThunderPlatform.exe FirewallRules: [{BD58B852-8B3B-48E7-946D-F2D36FC9C8D6}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxManage.exe FirewallRules: [{23733608-0383-4402-8060-59A46BFF1A8D}] => (Allow) C:\Program Files (x86)\KOPLAYER\KOPLAYER.exe FirewallRules: [{26CC2650-5E11-47D2-9CEF-FB189F1035E6}] => (Allow) C:\Program Files (x86)\KOPLAYER\KOPLAYER.exe FirewallRules: [{5F78C26D-552E-403C-9467-D022E4E4CE14}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxHeadless.exe FirewallRules: [{ACFEA916-B402-46BC-A75D-969C32E61A25}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxHeadless.exe FirewallRules: [{C63EF510-E395-4885-A759-50FE16B5EB31}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxManage.exe FirewallRules: [{246969B2-9D29-44EC-B763-DADAA2601815}] => (Allow) C:\Program Files (x86)\KOPLAYER\vbox\VBoxManage.exe FirewallRules: [{13E21D29-BC6D-42DF-93FE-804CF64810B2}] => (Allow) C:\Program Files (x86)\KOPLAYER\KOPLAYER.exe FirewallRules: [{8A67387F-B8A1-42A8-98E4-AC618F62C543}] => (Allow) C:\Program Files (x86)\KOPLAYER\KOPLAYER.exe FirewallRules: [TCP Query User{BA96A392-8222-4A5A-869A-AEEE100FB7C4}C:\users\francois\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe] => (Allow) C:\users\francois\appdata\roaming\haiyuinst\plugins\download\minithunderplatform.exe FirewallRules: [{152E9214-8CE3-49A9-AB64-D1A1AB9691DC}] => (Allow) C:\Program Files (x86)\Droid4X\Droid4X.exe FirewallRules: [{19B7DAE0-ECBA-4832-B5FC-441680297618}] => (Allow) C:\Program Files (x86)\Droid4X\download\MiniThunderPlatform.exe FirewallRules: [{FF265875-240C-4C32-ACB1-9A984E9AA1DB}] => (Allow) C:\Program Files (x86)\Droid4X\download\MiniThunderPlatform.exe FirewallRules: [{5A6308A7-253D-495E-AA61-9EE4AE67AF27}] => (Allow) C:\Program Files\Oracle\VirtualBox\vboxheadless.exe FirewallRules: [{446564FA-7527-4E93-8ABC-495200180B5E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A87805B3-DFAE-41F4-B2DA-826832449BA8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{3D725D90-5CFD-49AF-90EC-1A6DE208F39B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{01809686-612D-445A-B5C9-06092AD4FB17}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{181F2DA2-29D8-4DED-90A3-642B24AD4D16}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{6415973E-6926-4AD4-B55E-4A5E6F30263F}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7862C59F-925E-418A-B43F-9770ACEE1104}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{DF547274-B9B7-4D1B-8E0A-FBE2D9F42853}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{133903BA-7A4D-434E-84E2-10BADA893EC2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe FirewallRules: [{9BB8E51C-7B9E-4734-AA09-37430B10BF2C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WormsRevolution\WormsRevolution.exe FirewallRules: [{B177E748-BE27-42A2-92D8-E8E4CC7932BD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Luna Sky\lunasky.exe FirewallRules: [{D30CF8A9-5B00-4F0E-89D7-9DA067DB2A40}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Luna Sky\lunasky.exe FirewallRules: [TCP Query User{041F535E-3D6D-4943-BC9E-EC132660F4DD}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{A0BC981F-0B9C-4A77-A678-685590501068}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{730E07C7-1C39-4360-BBCB-4CEF27F01AA3}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{C3E09044-68F4-4653-B758-13F2A47FDA5D}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [{0B34746B-4E81-4930-A6DB-1DAFE0C3EE07}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Between me and The Night\Between Me and The Night.exe FirewallRules: [{B10B3DD7-F21A-4C93-BE93-55A17B2EA315}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Between me and The Night\Between Me and The Night.exe FirewallRules: [{E613C231-9095-4566-BC1B-8EE2A4AE95EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{F84A6B25-F9DA-41F4-84E1-5408773028AD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe FirewallRules: [{6A82BB05-F643-4B13-BC04-BBDBCEBD4736}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{A52BBBA8-39D7-4F9E-AC76-0A92B805AD62}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{2E0E11CE-81DF-498F-9E2C-402A16932983}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{82837B8C-6A85-4193-BF86-76DC25E6790E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7E9CA321-C0BA-4ABC-B456-D5E1438C3C1B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{E5F4926D-F74E-4553-8BFF-41CA848605B0}C:\program files (x86)\heroes of the storm\versions\base56705\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56705\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{2A4B4FB0-BB6A-4E93-BFAF-A4ED6A250765}C:\program files (x86)\heroes of the storm\versions\base56705\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56705\heroesofthestorm_x64.exe FirewallRules: [TCP Query User{17C64FBD-DF5F-4B4A-AD44-F2414BE350F3}C:\users\francois\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\francois\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{D4A51009-A9BD-403E-BE32-77CF5D641F35}C:\users\francois\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\francois\appdata\local\akamai\netsession_win.exe ==================== Points de restauration ========================= 16-08-2017 21:30:36 Removed LogMeIn Hamachi 24-08-2017 09:24:23 Point de contrôle planifié 01-09-2017 12:29:18 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (09/04/2017 03:22:00 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: FRANCOIS-PC) Description: Échec de l’activation de l’application Microsoft.XboxIdentityProvider_8wekyb3d8bbwe!Microsoft.XboxIdentityProvider avec l’erreur : -2147024891 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2017 03:14:59 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: FRANCOIS-PC) Description: Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2017 03:08:52 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante IAStorDataMgrSvc.exe, version : 14.8.0.1042, horodatage : 0x5639dd97 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x046fd34d ID du processus défaillant : 0x8b4 Heure de début de l’application défaillante : 0x01d3257eeec86df8 Chemin d’accès de l’application défaillante : C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe Chemin d’accès du module défaillant: unknown ID de rapport : bb59c23f-837a-4d5e-adb4-157ec68bc486 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/04/2017 03:08:50 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : IAStorDataMgrSvc.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.NullReferenceException à IAStorUtil.SystemDataModelListener.ProcessSystemDataModelChanges() à IAStorUtil.SystemDataModelListener.LoadSavedSystemState() à IAStorDataMgr.EventRelay.b__0(System.Object) à System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() à System.Threading.ThreadPoolWorkQueue.Dispatch() à System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Error: (09/04/2017 03:06:08 PM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (09/04/2017 02:07:16 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: FRANCOIS-PC) Description: Échec de l’activation de l’application Microsoft.XboxIdentityProvider_8wekyb3d8bbwe!Microsoft.XboxIdentityProvider avec l’erreur : -2147024891 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (09/04/2017 01:33:12 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante javaw.exe, version : 8.0.25.18, horodatage : 0x54345ca0 Nom du module défaillant : nvoglv64.DLL, version : 22.21.13.8476, horodatage : 0x5952b8c3 Code d’exception : 0xc0000409 Décalage d’erreur : 0x0000000000ffd428 ID du processus défaillant : 0x2278 Heure de début de l’application défaillante : 0x01d32571427a5721 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\nvoglv64.DLL ID de rapport : df06b860-d864-46dc-b02b-37fb53e1ff16 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/04/2017 01:33:10 PM) (Source: NVIDIA OpenGL Driver) (EventID: 1) (User: ) Description: Unable to recover from a kernel exception. The application must close. Error code: 3 (subcode 2) (pid=8824 tid=1344 javaw.exe 64bit) Visit http://www.nvidia.com/page/support.html for more information. Error: (09/04/2017 11:11:53 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante IAStorDataMgrSvc.exe, version : 14.8.0.1042, horodatage : 0x5639dd97 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x045ed165 ID du processus défaillant : 0x1edc Heure de début de l’application défaillante : 0x01d3255dd3b447ae Chemin d’accès de l’application défaillante : C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe Chemin d’accès du module défaillant: unknown ID de rapport : 971bba92-765b-428d-942a-94dabe7e2cc8 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/04/2017 11:11:50 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : IAStorDataMgrSvc.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.NullReferenceException à IAStorUtil.SystemDataModelListener.ProcessSystemDataModelChanges() à IAStorUtil.SystemDataModelListener.LoadSavedSystemState() à IAStorDataMgr.EventRelay.b__0(System.Object) à System.Threading.QueueUserWorkItemCallback.WaitCallback_Context(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.QueueUserWorkItemCallback.System.Threading.IThreadPoolWorkItem.ExecuteWorkItem() à System.Threading.ThreadPoolWorkQueue.Dispatch() à System.Threading._ThreadPoolWaitCallback.PerformWaitCallback() Erreurs système: ============= Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5005) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a rencontré une erreur interne et a échoué. 5005 - Driver internal error Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5005) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a rencontré une erreur interne et a échoué. 5005 - Driver internal error Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/04/2017 06:07:06 PM) (Source: Netwtw04) (EventID: 5002) (User: ) Description: Intel(R) Dual Band Wireless-AC 3165 : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) CodeIntegrity: =================================== Date: 2017-09-04 15:42:44.081 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-09-01 19:04:54.334 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-31 19:42:23.468 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-29 18:52:26.517 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-27 18:50:28.000 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-24 19:09:58.232 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-22 11:45:29.016 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-22 11:45:29.014 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-16 21:43:00.363 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-08-05 19:08:23.620 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_984d7ebc1a4a35bd\nvinitx.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Pourcentage de mémoire utilisée: 75% Mémoire physique - RAM - totale: 6049.91 MB Mémoire physique - RAM - disponible: 1480.48 MB Mémoire virtuelle totale: 10657.91 MB Mémoire virtuelle disponible: 3966.07 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:922.24 GB) (Free:87.46 GB) NTFS Drive d: (LENOVO) (Fixed) (Total:9 GB) (Free:2.48 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: D6B69E36) Partition: GPT. ==================== Fin de Addition.txt ============================