Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 26-10-2017 Exécuté par Guy (30-10-2017 15:44:06) Exécuté depuis C:\Users\Guy\Desktop Windows 10 Home Version 1607 14393.1770 (X64) (2016-09-30 06:33:12) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1586002832-2208976611-2568706302-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1586002832-2208976611-2568706302-503 - Limited - Disabled) Guy (S-1-5-21-1586002832-2208976611-2568706302-1002 - Administrator - Enabled) => C:\Users\Guy HomeGroupUser$ (S-1-5-21-1586002832-2208976611-2568706302-1004 - Limited - Enabled) Invité (S-1-5-21-1586002832-2208976611-2568706302-501 - Limited - Disabled) UpdatusUser (S-1-5-21-1586002832-2208976611-2568706302-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee VirusScan (Enabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee VirusScan (Enabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501} FW: Pare-feu McAfee (Enabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{9DDDF20E-9FD1-4434-A43E-E7889DBC9420}) (Version: 4.0.0.0071 - NTI Corporation) Acer Device Fast-lane (HKLM\...\{3F62D2FD-13C1-49A2-8B5D-47623D9460D7}) (Version: 1.00.3011 - Acer Incorporated) Acer Instant Update Service (HKLM\...\{8215A318-CC27-435E-B3EA-2E3443C8998C}) (Version: 1.00.3013 - Acer Incorporated) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3011 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3012 - Acer Incorporated) AcerCloud (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.01.3125 - Acer Incorporated) AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.00.3204 - Acer Incorporated) Adblock Plus pour IE (32-bits et 64-bits) (HKLM\...\{2AB7FF34-79B5-44AE-B59F-F9E94CEB879A}) (Version: 99.9 - Eyeo GmbH) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (HKLM-x32\...\WTA-b5d4f3f8-e15d-45a3-b411-26bdee860d78) (Version: 2.2.0.98 - WildTangent) Hidden Aloha TriPeaks (HKLM-x32\...\WTA-8bb196cb-811e-45f1-8a05-40d21acb5875) (Version: 2.2.0.98 - WildTangent) Hidden Backup Manager v4 (HKLM-x32\...\{9DDDF20E-9FD1-4434-A43E-E7889DBC9420}) (Version: 4.0.0.0071 - NTI Corporation) Hidden Bejeweled 3 (HKLM-x32\...\WTA-ce53cf6d-7dde-4e27-a1c9-94bcb088699d) (Version: 2.2.0.98 - WildTangent) Hidden Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation) Canaux de jeu (HKLM-x32\...\WildTangentGameProvider-acer-main) (Version: 7.1.0.17 - WildTangent, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.36 - Piriform) Classic Shell (HKLM\...\{840C85B7-D3D6-4143-9AF9-DAE80FD54CFC}) (Version: 4.1.0 - IvoSoft) clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.01.3112 - Acer Incorporated) clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.01.3109 - Acer Incorporated) clear.fi SDK - Video 2 (HKLM-x32\...\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}) (Version: 2.1.2128 - CyberLink Corp.) Hidden clear.fi SDK- Movie 2 (HKLM-x32\...\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}) (Version: 2.1.2112 - CyberLink Corp.) Hidden CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3318_45364 - CyberLink Corp.) Delicious: Emily's True Love Premium Edition (HKLM-x32\...\WTA-6d428485-e7dc-4da7-bc09-8f82440b665a) (Version: 2.2.0.98 - WildTangent) Hidden Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.16 - Dolby Laboratories Inc) ELAN Touchpad 15.6.3.3_X64_WHQL (HKLM\...\Elantech) (Version: 15.6.3.3 - ELAN Microelectronic Corp.) Étude pour l'amélioration du produit HP ENVY 4520 series (HKLM\...\{A4A64935-E38B-4DB0-97C5-452928C381C1}) (Version: 40.11.1122.1796 - HP Inc.) Étude pour l'amélioration du produit HP Photosmart 5520 series (HKLM\...\{DC2D49CF-2452-4191-A18C-41F1C02A7228}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (HKLM-x32\...\WTA-8ab19552-f4e2-4759-a656-f0f303337e35) (Version: 2.2.0.110 - WildTangent) Hidden HP Dropbox Plugin (HKLM-x32\...\{6401399A-F5DA-4C04-87AA-E8107DF00751}) (Version: 36.0.41.58587 - HP) HP ENVY 4520 series Aide (HKLM-x32\...\{D9C0AB86-384B-49FF-A667-717724F07740}) (Version: 36.0.0 - Hewlett Packard) HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard) HP Google Drive Plugin (HKLM-x32\...\{63BCC696-0FB4-4E9C-8144-2DA4F248FC17}) (Version: 36.0.41.58587 - HP) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.12992 - HP) HP Photo Creations (HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\HP Photo Creations) (Version: 1.0.0.20332 - HP) HP Photosmart 5520 series Aide (HKLM-x32\...\{CB08AF0F-D14B-4570-83CD-2567CE63CC5F}) (Version: 27.0.0 - Hewlett Packard) HP Support Assistant (HKLM-x32\...\{56D27851-B9A6-430F-875A-E2D7A3802C7B}) (Version: 8.5.37.19 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{446AA6E0-104D-40FB-A18A-A3431AED2F14}) (Version: 12.8.37.11 - HP Inc.) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (HKLM-x32\...\{846B5DED-DC8C-4E1A-B5B4-9F5B39A0CACE}) (Version: 1.00.0000 - Microsoft) Hidden Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Island Tribe (HKLM-x32\...\WTA-b7b4acc2-36b1-4445-b7fd-b23f1102f1c6) (Version: 2.2.0.98 - WildTangent) Hidden Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation) Jewel Match 3 (HKLM-x32\...\WTA-92811e0a-6697-4252-9df1-609d0aa82924) (Version: 2.2.0.98 - WildTangent) Hidden John Deere Drive Green (HKLM-x32\...\WTA-30929979-475b-4a24-8c60-9183876bd07d) (Version: 2.2.0.95 - WildTangent) Hidden KB4023057 (HKLM\...\{B977A833-7734-41A5-B820-1F23D81DC87B}) (Version: 2.6.0.0 - Microsoft Corporation) Launch Manager (HKLM-x32\...\LManager) (Version: 7.0.10 - Acer Inc.) Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.8103 - Acer Incorporated) Logiciel de base du périphérique HP ENVY 4520 series (HKLM\...\{3FFE72AE-0C03-4126-A3C8-EBF4D409C991}) (Version: 40.11.1122.1796 - HP Inc.) Magic Academy (HKLM-x32\...\WTA-6d88c81d-573f-4c4e-af60-8d7d0c7b0c56) (Version: 2.2.0.98 - WildTangent) Hidden Malwarebytes version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.161 - McAfee, Inc.) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISER) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\OneDriveSetup.exe) (Version: 17.3.7074.1023 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_ENTERPRISER_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_ENTERPRISER_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_ENTERPRISER_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_ENTERPRISER_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Mises à jour NVIDIA 1.14.17 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.14.17 - NVIDIA Corporation) MyDriveConnect 3.3.0.1318 (HKLM-x32\...\MyDriveConnect) (Version: 3.3.0.1318 - TomTom) MyWinLocker (HKLM\...\{0B78ECB0-1A6B-4E6D-89D7-0E7CE77F0427}) (Version: 4.0.14.35 - Egis Technology Inc.) Hidden MyWinLocker 4 (HKLM-x32\...\{39F15B50-A977-4CA6-B1C3-6A8724CDA025}) (Version: 4.0.14.35 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.24 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.24 - Egis Technology Inc.) NTI Media Maker 9 (HKLM-x32\...\{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9014 - NTI Corporation) Hidden NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9014 - NTI Corporation) NVIDIA PhysX System Software 9.12.0613 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0613 - NVIDIA Corporation) NVIDIA Pilote graphique 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation) Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.01.3202 - Acer) Opera Stable 48.0.2685.52 (HKLM-x32\...\Opera 48.0.2685.52) (Version: 48.0.2685.52 - Opera Software) Panneau de configuration NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden Penguins! (HKLM-x32\...\WTA-3f4ca42b-7330-4c96-ba76-41c6ac3955cb) (Version: 2.2.0.98 - WildTangent) Hidden Plants vs. Zombies - Game of the Year (HKLM-x32\...\WTA-774cc6dc-30b0-49aa-a849-cfec0b8f31f7) (Version: 2.2.0.98 - WildTangent) Hidden Polar Bowler (HKLM-x32\...\WTA-71745360-d024-4479-aa57-05c65e283038) (Version: 2.2.0.97 - WildTangent) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.220 - Qualcomm Atheros Communications) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Qualcomm Atheros Communications Inc.) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.41 - Qualcomm Atheros) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6695 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.28124 - Realtek Semiconductor Corp.) SecurityCenter (HKLM-x32\...\MSC) (Version: 16.0.4 - McAfee, Inc.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Shredder (HKLM\...\{1F557316-CFC0-41BD-AFF7-8BC49CE444D7}) (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Shredder (HKLM-x32\...\{C2695E83-CF1D-43D1-84FE-B3BEC561012A}) (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Tales of Lagoona (HKLM-x32\...\WTA-06164f83-600f-43b3-a6f0-2bdd1c098dd9) (Version: 2.2.0.110 - WildTangent) Hidden TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.17396 - TeamViewer) TomTom HOME (HKLM-x32\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Unity Web Player (HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-0030-0000-0000-0000000FF1CE}_ENTERPRISER_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) VLC media player 2.0.6 (HKLM-x32\...\VLC media player) (Version: 2.0.6 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WD Drive Utilities (HKLM-x32\...\{865A50E6-D21E-478C-A064-A6F5E72BF114}) (Version: 1.0.6.3 - Western Digital Technologies, Inc.) WD Quick View (HKLM-x32\...\{6A380A2D-1A8F-44CE-B3A8-F142E16ABFCB}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.) WD Security (HKLM-x32\...\{A087879B-84F9-4338-A30C-48154223C2DD}) (Version: 1.0.6.3 - Western Digital Technologies, Inc.) WD SES Driver Setup (HKLM-x32\...\{924A274D-38B6-4930-8859-F3F51CFA8DDD}) (Version: 1.0.6.3 - Western Digital) Hidden WD SmartWare (HKLM\...\{E5728049-089C-4F28-86C3-1CC2ACFE91F3}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.) WD SmartWare Installer (HKLM-x32\...\{9af08980-8d36-4304-a8d0-53dc0c7d93a5}) (Version: 2.4.0.39 - Western Digital Technologies, Inc.) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.3.0 - WildTangent) WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer) (Version: 4.0.11.2 - WildTangent) Hidden Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation) Zuma's Revenge (HKLM-x32\...\WTA-396d4589-f5c2-410e-80a0-7ef6547004e8) (Version: 2.2.0.98 - WildTangent) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1586002832-2208976611-2568706302-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) ShellIconOverlayIdentifiers-x32-x32-x32-x32-x32-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20] (IvoSoft) ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2017-09-22] (McAfee, Inc.) ContextMenuHandlers1: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2014-05-09] (Western Digital Technologies, Inc.) ContextMenuHandlers2: [CWDDriveMenuHandler] -> {CCEFA845-DCDB-4A2F-8BED-DBE87CD198EC} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2014-05-09] (Western Digital Technologies, Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes) ContextMenuHandlers3: [MWLIVShellExt] -> {B1B294FE-EC1E-4fef-AF68-D34CE3E38157} => C:\Program Files (x86)\EgisTec MyWinLocker\x64\MWLIVShellExt.dll [2012-07-12] (Egis Technology Inc. ) ContextMenuHandlers3: [ShredderContextMenu] -> {521065F1-DE6C-4E46-BBCB-89B0D0BE860D} => C:\Program Files (x86)\EgisTec Shredder\x64\ShredderContextMenu.dll [2011-03-29] (Egis Technology Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Intel Corporation) ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\WINDOWS\system32\igfxOSP.dll [2016-05-03] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes) ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2017-09-22] (McAfee, Inc.) ContextMenuHandlers6: [WDBackupMenuHandler] -> {C752BC82-C19A-4827-9C15-0996BA85C180} => C:\Program Files\Western Digital\WD SmartWare\\WDContextMenuHandler.dll [2014-05-09] (Western Digital Technologies, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {00269295-DD55-4D5F-922C-389B345D1BAA} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {02BE530C-43F0-4448-9FC2-CAF4351FCE7E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {0CF01A99-C610-4490-917F-0FA8D386287C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-09-25] (HP Inc.) Task: {1368E4E9-6169-4211-B3A6-351DFDC0D7CD} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\BrowserChoice\browserchoice.exe Task: {1667FD22-83FA-4DFB-A4DA-8D2CCE58E3A2} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {16BD7BF4-8D0F-462F-9B18-90D8ACD94149} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2017-03-15] () Task: {185FE46F-0A10-4D05-AA68-0D85EEE0D967} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {20EE067C-6D10-4EAE-8A7A-D88C4B7E63BF} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {21C838A1-FD50-419D-8EB0-4BDEC9C74B4E} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {23A5099C-74A9-4845-B0F1-B1CE92DBB85D} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {2AFAC500-94FA-4E31-A954-2C03F05C4137} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {2CFC7445-0E91-46CA-A592-A02F8064C99A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {31F757FA-0745-4CEF-9155-A05BCFA2B976} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {324571A0-F159-44A2-B294-A0D4FE0BDE28} - System32\Tasks\HPCustParticipation HP Photosmart 5520 series => C:\Program Files\HP\HP Photosmart 5520 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {36172A88-D35A-42AE-8DCB-E9E73A5DB48E} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2012-08-23] () Task: {36DA9214-8AD9-4385-B006-B49DE7630583} - System32\Tasks\OneDrive Standalone Update Task => C:\Users\Guy\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe Task: {3FAB4789-40C8-4113-82F5-D3FE0B931359} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {468727B7-4A09-4BC7-A535-7A5F933456AE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {4B042DAA-3E20-4F9A-9514-863E876D93AD} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-09-20] (CyberLink) Task: {52033D86-6780-40B9-BA08-213574C3A1BA} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {5AC9DA2A-95C9-439A-92CD-77E0C484FBD8} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {64770C22-9CF5-4588-AC1C-4D98BE425740} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe [2017-03-14] (McAfee, Inc.) Task: {656165E2-A65D-41FC-A5CD-8EC072FABBFF} - \WPD\SqmUpload_S-1-5-21-1586002832-2208976611-2568706302-1002 -> Pas de fichier <==== ATTENTION Task: {86DC1F63-88C7-42EF-BBD6-4D62963F6CD9} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {8B2705A6-0DE9-47CC-9D7F-C9FD2A646855} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant printer driver installation => C:\WINDOWS\TEMP\EN4520_Full_WebPack_1122.exe <==== ATTENTION Task: {9157C04A-E171-4985-A0EC-B479DF5CCCAC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-10-18] (Piriform Ltd) Task: {9B489788-21D9-48A3-87DF-881843A4BA32} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-08] (Google Inc.) Task: {A13CACA1-D83C-442C-9BA2-590BD4EA376B} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {A452E694-B55E-4898-90EE-4C0FCB543159} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_TH65G3M324 => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-09-25] (HP Inc.) Task: {A6DB6AAF-A2C1-4153-BDF4-32EDA1CEA5DC} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\Communicator.exe [2013-10-13] () Task: {AA403808-FC60-4AC6-9015-342BE4F9D273} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {AA422517-7FD6-4DC7-80E1-1BE48939A022} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [2017-09-05] (McAfee, Inc.) Task: {B54970EE-9792-460A-B496-2E5C590A33E8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-08] (Google Inc.) Task: {BB5E0DF5-F40D-43A8-BC60-3C4AD8F52CDE} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2016-07-06] () Task: {C0BE0193-DB9D-485F-8A90-6FF5FFAB63AF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.) Task: {C3895EB3-96AC-460B-9901-3DBDEF241C55} - System32\Tasks\Opera scheduled Autoupdate 1459794742 => C:\Program Files (x86)\Opera\launcher.exe [2017-10-24] (Opera Software) Task: {C6D2704E-B531-4BE5-AA58-23F0FC57A2BF} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [2017-09-11] (McAfee, Inc.) Task: {CBF5EF37-CED1-47F9-935E-BE19122B23DB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {CEF8A124-86BB-46DC-AC56-924328C6717E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-10-18] (Piriform Ltd) Task: {D0517A7E-40A4-490C-9588-FCDB0D4AB5D0} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {D7888E41-4670-48DC-8577-BB79CD3DFAD8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {D7A8F586-6F51-4231-88A5-BF469A7E63E8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {D9F0462D-76DC-4445-AB75-8E1D0695B8FC} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {E5507CDC-2F41-42A4-A869-178992957D7C} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2012-08-23] () Task: {E5DA73A5-02DB-4E83-8B7B-A96F50B09EBF} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-10-23] (Acer Incorporated) Task: {E6F5B332-7406-4F70-BBD6-ED0DE0016712} - System32\Tasks\HPCustParticipation HP ENVY 4520 series => C:\Program Files\HP\HP ENVY 4520 series\Bin\HPCustPartic.exe [2017-04-06] (HP Inc.) Task: {EAC1663F-40B1-4CFE-9A44-FEAAB2C7E5CF} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {F277E965-D368-4D54-BE59-37F2C8CFD0AB} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.50.1291.1\mcdatrep.exe [2017-03-14] (McAfee, Inc.) Task: {F4BC6F8E-DFFD-4086-A4A9-3B7AE2E8EE72} - System32\Tasks\HPCeeScheduleForGuy => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\Communicator.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForGuy.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Guy\Favorites\Acer\Acer.lnk -> hxxp://www.acer.com ShortcutWithArgument: C:\Users\Guy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\Solitaire.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=lkbhppfbabandkdmgjmifahoabeodiep ==================== Modules chargés (Avec liste blanche) ============== 2016-07-16 12:42 - 2016-07-16 12:42 - 000231424 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll 2017-09-12 21:04 - 2017-09-07 07:01 - 002681200 _____ () C:\WINDOWS\system32\CoreUIComponents.dll 2016-09-30 06:39 - 2016-12-29 14:16 - 000134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-06-29 12:09 - 2017-10-11 13:42 - 000587256 _____ () C:\Program Files\McAfee\MfeAV\RealProtectAMScanIf.dll 2017-06-29 12:09 - 2017-10-11 13:42 - 000575376 _____ () C:\Program Files\McAfee\MfeAV\RepairModule.dll 2016-09-30 07:20 - 2016-09-30 07:20 - 000134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll 2017-03-15 08:14 - 2017-03-04 07:31 - 000474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll 2017-03-15 08:15 - 2017-03-04 07:12 - 009760768 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-03-15 08:15 - 2017-03-04 07:05 - 001401856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-03-15 08:15 - 2017-03-04 07:05 - 000757248 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll 2017-10-11 18:06 - 2017-09-18 03:14 - 002424320 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll 2017-10-11 18:06 - 2017-09-18 03:16 - 004853760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll 2012-08-23 00:04 - 2012-08-23 00:04 - 000025232 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe 2012-08-23 00:04 - 2012-08-23 00:04 - 000044176 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe 2017-08-23 19:30 - 2017-08-23 19:30 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-08-23 19:30 - 2017-08-23 19:30 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-09-26 21:38 - 2017-09-21 08:29 - 004022616 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libglesv2.dll 2017-09-26 21:38 - 2017-09-21 08:29 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\61.0.3163.100\libegl.dll 2017-08-08 04:37 - 2017-08-08 04:38 - 000019968 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2017-08-08 04:37 - 2017-08-08 04:38 - 028986880 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2017-08-08 04:37 - 2017-08-08 04:37 - 000428032 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll 2017-08-08 04:37 - 2017-08-08 04:38 - 020510208 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll 2017-08-08 04:37 - 2017-08-08 04:37 - 002339328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2017-08-08 04:37 - 2017-08-08 04:37 - 003041792 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll 2017-06-11 18:49 - 2017-06-11 18:49 - 003139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-06-15 06:25 - 2017-06-15 06:29 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll 2017-08-08 04:37 - 2017-08-08 04:38 - 001361920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.13610.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll 2017-10-18 06:19 - 2017-10-18 06:19 - 025741312 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17092.13511.0_x64__8wekyb3d8bbwe\Video.UI.exe 2017-10-18 06:19 - 2017-10-18 06:19 - 009257984 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17092.13511.0_x64__8wekyb3d8bbwe\EntCommon.dll 2017-09-26 19:45 - 2017-09-26 19:45 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17092.13511.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2012-11-03 01:38 - 2012-11-03 01:38 - 000465384 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2012-11-03 01:37 - 2012-11-03 01:37 - 000125504 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2012-11-03 01:38 - 2012-11-03 01:38 - 000155712 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\VolumeSnapshot.dll 2012-11-03 01:37 - 2012-11-03 01:37 - 000118336 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\Online.dll 2012-11-03 01:37 - 2012-11-03 01:37 - 001081408 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2012-11-03 01:37 - 2012-11-03 01:37 - 000052288 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\OsSettingPort.dll 2012-11-03 01:37 - 2012-11-03 01:37 - 000727616 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\OutlookShadow.dll 2013-01-05 14:02 - 2012-06-25 03:41 - 001198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1586002832-2208976611-2568706302-1001\Control Panel\Desktop\\Wallpaper -> HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Guy\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\{a5f960e3-3a31-4ab8-a12b-3622adb93bd9}.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "Acer Backup Manager Tray.lnk" HKLM\...\StartupApproved\Run: => "BtPreLoad" HKLM\...\StartupApproved\Run: => "Classic Start Menu" HKLM\...\StartupApproved\Run32: => "GrooveMonitor" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "WD Drive Unlocker" HKLM\...\StartupApproved\Run32: => "WD Quick View" HKLM\...\StartupApproved\Run32: => "LManager" HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\StartupApproved\Run: => "MyDriveConnect.exe" HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\StartupApproved\Run: => "HP Photosmart 5520 series (NET)" HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\StartupApproved\Run: => "TomTomHOME.exe" HKU\S-1-5-21-1586002832-2208976611-2568706302-1002\...\StartupApproved\Run: => "OneDrive" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{BF5EA2FA-986C-4649-8FDA-D4DF2FAC331F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0224\HPDiagnosticCoreUI.exe FirewallRules: [{A64E5659-CC37-46EC-8A36-7D9171AD0978}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0224\HPDiagnosticCoreUI.exe FirewallRules: [{C1B409AA-4E1B-4C13-8705-06D3E4D0D201}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS3726\HPDiagnosticCoreUI.exe FirewallRules: [{330EC9F3-0D03-4934-B3B9-F0E23EB5A51D}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS3726\HPDiagnosticCoreUI.exe FirewallRules: [{F314955B-87D8-4F08-877E-15282DBFDB2F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS649D\HPDiagnosticCoreUI.exe FirewallRules: [{DD8BC56C-7601-4C38-9F2B-2A4017EC899E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS649D\HPDiagnosticCoreUI.exe FirewallRules: [{D956E66F-E55A-4227-8D9F-FB16D7BA658E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5F1A\HPDiagnosticCoreUI.exe FirewallRules: [{4882773E-214E-4117-B80D-D4AB7CF4C9F9}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5F1A\HPDiagnosticCoreUI.exe FirewallRules: [{711789E3-6469-44EB-BCC5-82E4400D1AFE}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6900\HPDiagnosticCoreUI.exe FirewallRules: [{34D7E039-088C-42E4-BA62-69839EECD036}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6900\HPDiagnosticCoreUI.exe FirewallRules: [{68E14050-6E0B-4C15-AB30-C84948375469}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5C45\HPDiagnosticCoreUI.exe FirewallRules: [{92506153-82DA-434B-B1C7-6023126CC818}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5C45\HPDiagnosticCoreUI.exe FirewallRules: [{71C46374-CDD9-4737-8339-6B780385BC32}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5A3E\HPDiagnosticCoreUI.exe FirewallRules: [{737D9FC4-DE6E-402C-8AC1-955CBF5C13D9}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5A3E\HPDiagnosticCoreUI.exe FirewallRules: [{03A9B8DA-E3DA-4D62-9A6A-F112511883CA}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS43B4\HPDiagnosticCoreUI.exe FirewallRules: [{670FD5EC-1071-489B-A493-9EAC2860700F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS43B4\HPDiagnosticCoreUI.exe FirewallRules: [{33D68EA6-EC75-4E2D-A83C-8B20C194EDD4}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS2DEF\HPDiagnosticCoreUI.exe FirewallRules: [{A3A9395A-E39D-4806-97C3-BAFD94455A45}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS2DEF\HPDiagnosticCoreUI.exe FirewallRules: [{D74F16E2-7D91-4566-8CD2-E7ACA7C939FE}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5555\HPDiagnosticCoreUI.exe FirewallRules: [{85FEE3AB-AE3E-485D-AB19-7986C824DF3B}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5555\HPDiagnosticCoreUI.exe FirewallRules: [{CF6D0448-2BAE-415B-9BD7-FD707AF84667}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS781A\HPDiagnosticCoreUI.exe FirewallRules: [{1A370732-A50B-40FE-B1F8-C204A9BAA7A5}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS781A\HPDiagnosticCoreUI.exe FirewallRules: [{FE652D3C-CBFA-4D5D-A3AA-E353FD49A19E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS77D6\HPDiagnosticCoreUI.exe FirewallRules: [{CDE1679A-2AFF-4121-AEA5-3A7D0F3EF6D0}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS77D6\HPDiagnosticCoreUI.exe FirewallRules: [{7A6741DE-6878-4AFB-A3D9-6F928F68D99B}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS796E\HPDiagnosticCoreUI.exe FirewallRules: [{C73BF6EF-783F-4F3E-AA7F-180E8A3E5CCC}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS796E\HPDiagnosticCoreUI.exe FirewallRules: [{4CDFEB83-5041-4AE5-837B-6B163CDA94B9}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6A0B\HPDiagnosticCoreUI.exe FirewallRules: [{020F2A6D-0220-4D68-A51B-5C30BDE346DC}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6A0B\HPDiagnosticCoreUI.exe FirewallRules: [{A014ED52-953A-4D54-90A4-236C8B1B5328}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4B83\HPDiagnosticCoreUI.exe FirewallRules: [{FE18FCB5-83DD-414B-9EDA-B4FD5D1B0CE5}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4B83\HPDiagnosticCoreUI.exe FirewallRules: [{94FD8AB2-786D-47F0-BA80-BC909F678C92}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4AA9\HPDiagnosticCoreUI.exe FirewallRules: [{5F01AA17-FA90-4B6A-80E0-54C9ADC535A7}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4AA9\HPDiagnosticCoreUI.exe FirewallRules: [{36D78927-757E-4246-8668-97A99303146B}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4A36\HPDiagnosticCoreUI.exe FirewallRules: [{A5FCA47F-5169-4A3B-AC2F-9E629635BD27}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4A36\HPDiagnosticCoreUI.exe FirewallRules: [{6FFC9E93-F88A-4F62-A0BB-EC277B71ACBA}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{A262A493-3A59-42DD-A020-6CA20CE1ED8F}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{F9C73A0A-B88B-48F2-AB09-3D85A4F599AD}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe FirewallRules: [{C29FCEC5-7C45-4955-93AD-B285CACAF12C}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{E01AD002-B65D-45DE-9BFF-85C14D568640}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe FirewallRules: [{0DA2C3D8-CA83-4F7D-B3A4-95BF89CC02A9}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{2973D5A7-B648-4730-BF27-0BF4969E568D}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe FirewallRules: [{2771FF63-5EFD-4061-BB0D-7DEDB146974F}] => (Allow) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe FirewallRules: [{1A9D29F2-7948-4796-9563-6ABB5FAD31AC}] => (Allow) C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe FirewallRules: [{5F20FF2E-038B-41ED-BA43-53C232E82830}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{D9DCE2BA-FFF5-4999-A7DC-7B887345BB66}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{148455E3-B816-4E8B-8919-B5103AF28E0B}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{A4624546-0D95-45CD-A18B-0B1D20E15A28}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{DA4839CB-E9C4-40BE-AC69-574D153FCFB2}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{AB405AD0-94A2-45AC-ADF8-5083B479428A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{0E205D05-CBB3-4E6C-AE52-B0A3BCA70034}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe FirewallRules: [{C83D9BCB-1D43-4CC7-BD09-0A8E3679ED02}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{41BB9C2C-93AB-4CBA-9859-0F07730DC55A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{9DACB3BF-243E-46BC-8745-11C32647EA32}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{AA1589AF-0D61-4ACB-9197-2BE40685F08B}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{92947C6A-7E23-4F63-835A-2FF4AC8E29D4}] => (Allow) C:\Program Files (x86)\NTI\Acer Backup Manager\FileExplorer.exe FirewallRules: [{35D07C68-64E1-4BA9-8333-CB4868E30F42}] => (Allow) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe FirewallRules: [{7A66D30B-6DCC-446A-8FE3-ACFDDD3BADAB}] => (Allow) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManager.exe FirewallRules: [{1856E45D-61D6-4809-B35D-9610DEA4106D}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{9DBA7D61-2D3D-42A3-AE6C-2FB056389A31}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{FFE7C7CC-AB6C-4142-BCF0-C922A3097CBE}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS78FC\HPDiagnosticCoreUI.exe FirewallRules: [{25C5431A-3149-44A1-9056-FAC0AD3DC833}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS78FC\HPDiagnosticCoreUI.exe FirewallRules: [{3B405168-3649-4DC9-AAEC-72C9DBC680DC}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7937\HPDiagnosticCoreUI.exe FirewallRules: [{DFE59EE3-5638-4E19-BBD7-799C55A08EAB}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7937\HPDiagnosticCoreUI.exe FirewallRules: [{315709AA-443D-48C3-B29B-B37636E08815}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7A77\HPDiagnosticCoreUI.exe FirewallRules: [{E4648631-0C6E-4948-9E9D-7E58654FE096}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7A77\HPDiagnosticCoreUI.exe FirewallRules: [{1957CD41-3CF6-484C-8421-2348AC2F977C}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5571\HPDiagnosticCoreUI.exe FirewallRules: [{6B7F216F-4AEA-4A5F-B492-4DE7A25FEE6C}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5571\HPDiagnosticCoreUI.exe FirewallRules: [{D504B8C2-6F8D-4AAF-AADE-BAFA92585F0A}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1749\HPDiagnosticCoreUI.exe FirewallRules: [{C30DB5E0-12BD-4899-B299-4DAADC20E0D8}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1749\HPDiagnosticCoreUI.exe FirewallRules: [{D0715936-8F3E-4483-B19C-30A1FDA193F3}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS26CA\HPDiagnosticCoreUI.exe FirewallRules: [{BEEFAF9F-61AC-47D5-A3DD-725E4149BAD2}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS26CA\HPDiagnosticCoreUI.exe FirewallRules: [{84686739-2D05-4D61-980B-0E4E81684AC0}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7F93\HPDiagnosticCoreUI.exe FirewallRules: [{F8760A7D-B320-4D4C-A14F-B5B1798C7006}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7F93\HPDiagnosticCoreUI.exe FirewallRules: [{EAB653C9-9B2B-41D4-BF2A-42009B4C2093}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1C30\HPDiagnosticCoreUI.exe FirewallRules: [{5CC1BE08-DE77-40A9-A75E-EA5CED291C42}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1C30\HPDiagnosticCoreUI.exe FirewallRules: [{BC1A39F5-EAA8-425D-B011-45EC27A7FEEB}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS054F\HPDiagnosticCoreUI.exe FirewallRules: [{FF636BF2-B5B4-4753-9B51-C362EEC9C01F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS054F\HPDiagnosticCoreUI.exe FirewallRules: [{7D6B171B-C718-45E7-8F0D-9298DA1D158F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0431\HPDiagnosticCoreUI.exe FirewallRules: [{6E438FE1-0E54-4AB1-88B6-8BA797188D93}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0431\HPDiagnosticCoreUI.exe FirewallRules: [{B3259AE1-1CF7-437A-A1C1-AF077EF96526}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0483\HPDiagnosticCoreUI.exe FirewallRules: [{C304E8D6-3107-4369-8CE5-96F91C3DF442}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0483\HPDiagnosticCoreUI.exe FirewallRules: [{22A736DC-83E6-49AE-B6E6-94DE95B63D0A}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS04C4\HPDiagnosticCoreUI.exe FirewallRules: [{727B3A62-EB7C-40E2-8F79-E8144DB7152C}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS04C4\HPDiagnosticCoreUI.exe FirewallRules: [{3EB4BABF-4DD0-46C8-A860-19EDCCCD2224}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS054D\HPDiagnosticCoreUI.exe FirewallRules: [{89F82D63-8991-4F95-8F21-D83A72D06025}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS054D\HPDiagnosticCoreUI.exe FirewallRules: [{1A0E4D25-9E45-4158-95CD-3B0778D19D15}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS059B\HPDiagnosticCoreUI.exe FirewallRules: [{81F17BC6-2F98-4B13-BE10-707082E6ACFA}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS059B\HPDiagnosticCoreUI.exe FirewallRules: [{89EA5466-607C-4A2B-9ABE-5F5CC74CC2C5}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS064C\HPDiagnosticCoreUI.exe FirewallRules: [{4A7A3059-DD50-4D45-A697-FD28C5E40366}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS064C\HPDiagnosticCoreUI.exe FirewallRules: [{FA10767C-BFB6-408D-8E3D-3BBC4EAA4CD4}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS150E\HPDiagnosticCoreUI.exe FirewallRules: [{3A600F2C-ADBA-42BB-942E-6E7333D0F3F4}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS150E\HPDiagnosticCoreUI.exe FirewallRules: [{AACFC839-D7A3-4BFB-A72B-313CDA0FA467}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS27EF\HP.EasyStart.exe FirewallRules: [{0690903B-682E-4207-865A-9ECDCCEE31CF}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS47C8\HPDiagnosticCoreUI.exe FirewallRules: [{9A053562-1BC2-4A5A-B58D-F94FC9355FE4}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS47C8\HPDiagnosticCoreUI.exe FirewallRules: [{E1D8C68C-5B19-4C1B-BBFE-D929F6EABAD3}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4819\HPDiagnosticCoreUI.exe FirewallRules: [{1125CA1B-D8CB-4AC3-AB76-A2306D1A499E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS4819\HPDiagnosticCoreUI.exe FirewallRules: [{E73E9969-839D-47F4-9DE5-D069DE2478B5}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1A40\HPDiagnosticCoreUI.exe FirewallRules: [{9B3D78D3-B765-4DDB-B4E7-6A2A77EC9EBD}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS1A40\HPDiagnosticCoreUI.exe FirewallRules: [{1764BDB4-7603-417C-92E6-8D7C9FD88D1E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0C18\HPDiagnosticCoreUI.exe FirewallRules: [{BA04BDA2-A894-4680-B454-75BDA4AD5522}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS0C18\HPDiagnosticCoreUI.exe FirewallRules: [{BD4C0471-B5CA-4E24-9411-9D9CB03FF85A}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS148A\HPDiagnosticCoreUI.exe FirewallRules: [{ABA74EF1-4857-4971-B63C-68492CC074AF}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS148A\HPDiagnosticCoreUI.exe FirewallRules: [{34659355-FDD0-4D46-A907-E31AF51E6463}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6A99\HPDiagnosticCoreUI.exe FirewallRules: [{9BB7D4E4-862A-48BC-BF32-D45E1A816FD2}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS6A99\HPDiagnosticCoreUI.exe FirewallRules: [{42591438-8114-4787-B831-673A4150CE61}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7282\HPDiagnosticCoreUI.exe FirewallRules: [{8358C0BF-0708-458F-AF30-232A5EBC3625}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS7282\HPDiagnosticCoreUI.exe FirewallRules: [{8D36245F-32A2-4034-AC1F-79743E771950}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS108D\HPDiagnosticCoreUI.exe FirewallRules: [{A16BFFDC-B885-4FDD-8A6F-F0D5CD63AE4F}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS108D\HPDiagnosticCoreUI.exe FirewallRules: [{0F926826-44A2-48FC-95A2-0E928F573849}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5F6C\HPDiagnosticCoreUI.exe FirewallRules: [{C4377A3F-FC93-4999-9EC1-3419F772ABAD}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS5F6C\HPDiagnosticCoreUI.exe FirewallRules: [{9AAEC72A-D01E-4565-BEB6-1D6D86FA553A}] => (Allow) C:\Program Files\HP\HP ENVY 4520 series\Bin\DeviceSetup.exe FirewallRules: [{727383A6-91A1-4446-9836-F48EC0A3234E}] => (Allow) LPort=5357 FirewallRules: [{D606FC6E-9358-44CA-9D66-526952C9B881}] => (Allow) C:\Program Files\HP\HP ENVY 4520 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{330F3E78-F3E7-47E8-BF88-614D341E72C3}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS264F\HPDiagnosticCoreUI.exe FirewallRules: [{8DAA751F-B698-4471-817B-75C2CD34E220}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS264F\HPDiagnosticCoreUI.exe FirewallRules: [{A6A96D8A-B265-4DC2-B71D-6825CBE8A7A1}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS354A\HPDiagnosticCoreUI.exe FirewallRules: [{7BDAC6BC-F471-4AB7-872A-B27C3FC561D3}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS354A\HPDiagnosticCoreUI.exe FirewallRules: [{FFF797D3-8ADA-45F3-83FC-7A0A831D4DCD}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS35CC\HPDiagnosticCoreUI.exe FirewallRules: [{C165FD6B-8A04-4FED-BA33-1C173571F82E}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS35CC\HPDiagnosticCoreUI.exe FirewallRules: [{832A130B-226E-492F-BA07-E08242DF2B77}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS249E\HP.EasyStart.exe FirewallRules: [{6CC6B568-128B-48C8-B5D9-89953566E25F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{C009D8F1-20A9-4559-B76D-40AD6F7528E4}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe FirewallRules: [{929D4736-8807-42A2-8B08-3D5A656C738F}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe FirewallRules: [{EA617816-BF77-4892-BDEC-A5037FA3957C}] => (Allow) C:\Program Files (x86)\Opera\48.0.2685.50\opera.exe FirewallRules: [{D0017843-39CE-4DFF-B252-F59DFA430F43}] => (Allow) C:\Program Files (x86)\Opera\48.0.2685.52\opera.exe FirewallRules: [{DF7F9CE9-8E10-43D7-8A4F-7481E28366D8}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS62C3\HPDiagnosticCoreUI.exe FirewallRules: [{5DCAB594-B7D4-46D2-AF7A-7047E680DEF5}] => (Allow) C:\Users\Guy\AppData\Local\Temp\7zS62C3\HPDiagnosticCoreUI.exe ==================== Points de restauration ========================= 30-10-2017 13:30:00 Windows Update 30-10-2017 14:37:27 avant desinfection ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/30/2017 03:32:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0xa84 Heure de début de l’application défaillante : 0x01d3518bfb0d6be9 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : cf3d8ba8-e256-44ca-8a6a-01145bda2301 Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 03:31:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0xae8 Heure de début de l’application défaillante : 0x01d3518bd575e8d2 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : cbdbaa31-f7f7-43ee-899c-49baf4927fe0 Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 03:24:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x2754 Heure de début de l’application défaillante : 0x01d3518ad5b6167b Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 37347a29-8f24-404e-9af6-01180e658549 Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 03:09:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x1738 Heure de début de l’application défaillante : 0x01d35188bd3f4ac9 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : fbbd9843-bd76-4750-aa45-28439e052dbd Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 02:54:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x18bc Heure de début de l’application défaillante : 0x01d35186a4ce57df Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 6293f3ee-c8b5-4ef3-8409-d4152e2f2cb2 Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 02:39:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x23d4 Heure de début de l’application défaillante : 0x01d351848c5b5828 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 556c4ad7-a741-4513-99e3-85ee5a1aa4fd Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 02:37:43 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (10/30/2017 02:28:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x28d4 Heure de début de l’application défaillante : 0x01d35182f587b700 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 3d5a6022-3b09-4b3c-9348-635ecebcc20f Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 02:24:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.14393.0, horodatage : 0x57899bb2 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.14393.1715, horodatage : 0x59b0d17a Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000006d1b4 ID du processus défaillant : 0x26bc Heure de début de l’application défaillante : 0x01d3518273e672ca Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 46b7ead2-6e7c-4149-99f6-acd35c813aac Nom complet du package défaillant : S.A.DInformationsEtDeProd.LaDH_1.1.2.30_neutral__1s0cx920z856y ID de l’application relative au package défaillant : App Error: (10/30/2017 02:19:04 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme CKScanner.exe version 2.5.1.1 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 29bc Heure de début : 01d3518149101345 Heure de fin : 79 Chemin d'accès de l'application : C:\Users\Guy\Downloads\CKScanner.exe ID de rapport : e3f933bc-bd74-11e7-bf1e-2016d8a20466 Nom complet du package défaillant : ID de l'application relative au package défaillant : Erreurs système: ============= Error: (10/30/2017 01:54:01 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x800f020b : Hewlett-Packard - Imaging - Null Print - HP Photosmart 5520 series. Error: (10/30/2017 01:45:13 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Le service NVIDIA Update Service Daemon est en attente de démarrage. Error: (10/30/2017 01:41:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Cache de police de Windows Presentation Foundation 3.0.0.0 n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (10/30/2017 01:41:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service FontCache3.0.0.0. Error: (10/30/2017 01:40:42 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/30/2017 01:40:42 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/30/2017 01:40:42 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/30/2017 01:40:42 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/30/2017 01:40:38 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8D8F4F83-3594-4F07-8369-FC3C3CAE4919} et l’APPID {F72671A9-012C-4725-9D2F-2A4D32D65169} au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/30/2017 01:39:46 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 13:16:04 le ‎30/‎10/‎2017 n’était pas prévu. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Pourcentage de mémoire utilisée: 43% Mémoire physique - RAM - totale: 8010.27 MB Mémoire physique - RAM - disponible: 4542.32 MB Mémoire virtuelle totale: 9290.27 MB Mémoire virtuelle disponible: 5885.89 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:676.03 GB) (Free:404.13 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: DDBBF019) Partition: GPT. ==================== Fin de Addition.txt ============================