Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x86) Version: 26-10-2017 Exécuté par HERVE (30-10-2017 17:29:43) Exécuté depuis C:\Users\HERVE\Desktop Microsoft Windows 10 Famille Version 1709 16299.19 (X86) (2017-10-29 20:05:15) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2299867047-4246127342-1153950666-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2299867047-4246127342-1153950666-503 - Limited - Disabled) HERVE (S-1-5-21-2299867047-4246127342-1153950666-1001 - Administrator - Enabled) => C:\Users\HERVE HomeGroupUser$ (S-1-5-21-2299867047-4246127342-1153950666-1002 - Limited - Enabled) Invité (S-1-5-21-2299867047-4246127342-1153950666-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2299867047-4246127342-1153950666-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 17.012.20098 - Adobe Systems Incorporated) Adobe Flash Player 27 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 27.0.0.183 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM\...\Adobe Shockwave Player) (Version: 12.2.2.172 - Adobe Systems, Inc.) ANT Drivers Installer x86 (HKLM\...\{1BCEEAF1-F50F-472E-9BD1-931EBED71673}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden Apple Application Support (32 bits) (HKLM\...\{F2871C89-C8A5-42EE-8D45-0F02506385A6}) (Version: 5.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{D9F3D66A-9885-4DDD-A800-9DDF488359A1}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Archiveur WinRAR (HKLM\...\WinRAR archiver) (Version: - ) Assistant de connexion Windows Live (HKLM\...\{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}) (Version: 5.000.818.5 - Microsoft Corporation) Assistant Mise à jour de Windows 10 (HKLM\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22256 - Microsoft Corporation) Bonjour (HKLM\...\{D168AAD0-6686-47C1-B599-CDD4888B9D1A}) (Version: 3.1.0.1 - Apple Inc.) CANON iMAGE GATEWAY MyCamera Download Plugin (HKLM\...\MyCamera Download Plugin) (Version: 3.1.1.2 - Canon Inc.) CANON iMAGE GATEWAY Task for ZoomBrowser EX (HKLM\...\CANON iMAGE GATEWAY Task) (Version: 1.9.0.9 - Canon Inc.) Canon MOV Decoder (HKLM\...\Canon MOV Decoder) (Version: 1.8.0.7 - Canon Inc.) Canon MOV Encoder (HKLM\...\Canon MOV Encoder) (Version: 1.7.0.3 - Canon Inc.) Canon MovieEdit Task for ZoomBrowser EX (HKLM\...\MovieEditTask) (Version: 3.8.0.5 - Canon Inc.) Canon Utilities CameraWindow DC 8 (HKLM\...\CameraWindowDC8) (Version: 8.5.0.7 - Canon Inc.) Canon Utilities CameraWindow Launcher (HKLM\...\CameraWindowLauncher) (Version: 7.5.0.2 - Canon Inc.) Canon Utilities Movie Uploader for YouTube (HKLM\...\MovieUploaderForYouTube) (Version: 1.2.0.7 - Canon Inc.) Canon Utilities MyCamera (HKLM\...\MyCamera) (Version: 7.4.0.2 - Canon Inc.) Canon Utilities PhotoStitch (HKLM\...\PhotoStitch) (Version: 3.1.22.46 - Canon Inc.) Canon Utilities ZoomBrowser EX (HKLM\...\ZoomBrowser EX) (Version: 6.7.2.33 - Canon Inc.) Canon ZoomBrowser EX Memory Card Utility (HKLM\...\ZoomBrowser EX Memory Card Utility) (Version: 1.5.1.10 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.36 - Piriform) Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Configuration DivX (HKLM\...\DivX Setup) (Version: 2.6.1.8 - DivX, LLC) Contenta Converter PREMIUM (HKLM\...\ContentaConverter-PREMIUM) (Version: - Contenta Software) doPDF 6.3 printer (HKLM\...\doPDF 6 printer_is1) (Version: - Softland) Elevated Installer (HKLM\...\{B85F70BE-A5A3-48A2-A790-AF6001F026E0}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden Free JPG To PDF Converter 1.0 (HKLM\...\Free JPG To PDF Converter_is1) (Version: - JPG2PDF Developer Team) Galerie de photos Windows Live (HKLM\...\{B131E59D-202C-43C6-84C9-68F0C37541F1}) (Version: 14.0.8081.709 - Microsoft Corporation) Hidden Garmin Express (HKLM\...\{5b328687-2baf-4fb6-b6c7-c49fb4840cba}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Garmin Express (HKLM\...\{5F4164CE-621E-4AFD-BBFE-1BBE2299710E}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express Tray (HKLM\...\{4E9533AB-7743-4B73-A5D2-42207E159E11}) (Version: 5.7.1.0 - Garmin Ltd or its subsidiaries) Hidden Google Chrome (HKLM\...\Google Chrome) (Version: 61.0.3163.100 - Google Inc.) Google Earth Pro (HKLM\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google) Google Photos Backup (HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\...\Google Photos Backup) (Version: 1.1.2.13 - Google, Inc.) Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden Heden Wireless LAN Driver (HKLM\...\{B63CCD1C-A133-4DF8-8306-DA0387231152}) (Version: 1.00.0270 - ) HP Deskjet 2050 J510 series - Enquête sur l'amélioration du produit (HKLM\...\{137F9CE6-77BC-4532-860A-42B07BAB4BAD}) (Version: 22.50.231.0 - Hewlett-Packard Co.) HP Deskjet 2050 J510 series Aide (HKLM\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard) HP Photo Creations (HKLM\...\HP Photo Creations) (Version: 1.0.0.12992 - HP Photo Creations Powered by RocketLife) HP Update (HKLM\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) iCloud (HKLM\...\{8D9592B4-7E22-4D1F-B2CB-B5F0F2F619CB}) (Version: 4.0.3.56 - Apple Inc.) Installation Windows Live (HKLM\...\{46ABBC54-1872-4AA3-95E2-F2C063A63F31}) (Version: 14.0.8089.726 - Microsoft Corporation) Hidden Installation Windows Live (HKLM\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation) Intel(R) TV Wizard (HKLM\...\TVWiz) (Version: - Intel Corporation) iTunes (HKLM\...\{2BD589D0-26C7-4312-A757-86C7727FF817}) (Version: 12.5.3.16 - Apple Inc.) Java 8 Update 111 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F32180111F0}) (Version: 8.0.1110.14 - Oracle Corporation) Junk Mail filter update (HKLM\...\{E2DFE069-083E-4631-9B6C-43C48E991DE5}) (Version: 14.0.8089.726 - Microsoft Corporation) Hidden Logiciel de base du périphérique HP Deskjet 2050 J510 series (HKLM\...\{819AEE33-A489-4CCE-8069-C363483D7138}) (Version: 22.50.231.0 - Hewlett-Packard Co.) Microsoft OneDrive (HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\...\OneDriveSetup.exe) (Version: 17.3.7073.1013 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022.218 (HKLM\...\{E503B4BF-F7BB-3D5F-8BC8-F694B1CFF942}) (Version: 9.0.21022.218 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) MiniTool Partition Wizard Free 9.1 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Solution Ltd.) Mozilla Firefox 49.0.2 (x86 fr) (HKLM\...\Mozilla Firefox 49.0.2 (x86 fr)) (Version: 49.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 49.0.2 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) OpenOffice.org 3.4 (HKLM\...\{2F90A789-DD1E-41CE-BFCA-BD78213BABC7}) (Version: 3.4.9590 - OpenOffice.org) OpenSource Flash Video Splitter 1.0.0.5 (HKLM\...\OpenSource Flash Video Splitter) (Version: 1.0.0.5 - ) Outil de téléchargement Windows Live (HKLM\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) Package de pilotes Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.) Package de pilotes Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software) Philips SPC710NC Webcam (HKLM\...\{744DA166-F189-4ED4-92EA-E06F3347DD44}) (Version: - ) PhotoFiltre 7 (HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\...\PhotoFiltre 7) (Version: - ) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9.140.248 - Google, Inc.) Pinnacle Instant DVD Recorder (HKLM\...\{C1212AE3-DBB9-4365-8473-F8ABC7B06BBB}) (Version: 2.5.0.092 - Pinnacle Systems) QuickTime 7 (HKLM\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) RealDownloader (HKLM\...\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}) (Version: 1.3.2 - RealNetworks, Inc.) Hidden RealNetworks - Microsoft Visual C++ 2008 Runtime (HKLM\...\{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}) (Version: 9.0 - RealNetworks, Inc) Hidden RealNetworks - Microsoft Visual C++ 2010 Runtime (HKLM\...\{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}) (Version: 10.0 - RealNetworks, Inc) Hidden RealPlayer (HKLM\...\RealPlayer 16.0) (Version: 16.0.2 - RealNetworks) Realtek Ethernet Controller Driver For Windows Vista and Later (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0009 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) RealUpgrade 1.1 (HKLM\...\{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}) (Version: 1.1.0 - RealNetworks, Inc.) Hidden Seagate Media Software (HKLM\...\{6EE8AB46-ACAF-4FA5-B6D1-40B35B2157CD}) (Version: 2.01.0414 - Seagate) Hidden Seagate Media Software (HKLM\...\InstallShield_{6EE8AB46-ACAF-4FA5-B6D1-40B35B2157CD}) (Version: 2.01.0414 - Seagate) Skype™ 7.40 (HKLM\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.103 - Skype Technologies S.A.) swMSM (HKLM\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TeamViewer 6 (HKLM\...\TeamViewer 6) (Version: 6.0.11117 - TeamViewer GmbH) TomTom HOME (HKLM\...\{7A2BB1C8-903D-4585-9F3B-CADD67D07D37}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) VC80CRTRedist - 8.0.50727.6195 (HKLM\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden VCRedistSetup (HKLM\...\{3921A67A-5AB1-4E48-9444-C71814CF3027}) (Version: 1.0.0 - Nero AG) Hidden Windows 10 Update and Privacy Settings (HKLM\...\{542CC2C2-ABAF-4604-8723-DA296AF74540}) (Version: 1.0.14.0 - Microsoft Corporation) Windows Live FolderShare (HKLM\...\{2075CB0A-D26F-4DAA-B424-5079296B43BA}) (Version: 14.0.8089.726 - Microsoft Corporation) Yahoo! Software Update (HKLM\...\Yahoo! Software Update) (Version: - ) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{022105BD-948A-40C9-AB42-A3300DDF097F}\localserver32 -> C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\psuser.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{22181302-A8A6-4F84-A541-E5CBFC70CC43}\localserver32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{2F0E2680-9FF5-43C0-B76E-114A56E93598}\localserver32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{51F9E8EF-59D7-475B-A106-C7EA6F30C119}\localserver32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{C3101A8B-0EE1-4612-BFE9-41FFC1A3C19D}\InprocServer32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{C442AC41-9200-4770-8CC0-7CDB4F245C55}\InprocServer32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{E67BE843-BBBE-4484-95FB-05271AE86750}\localserver32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateOnDemand.exe (Google Inc.) CustomCLSID: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\HERVE\AppData\Local\Google\Update\1.3.33.5\psuser.dll (Google Inc.) ShellIconOverlayIdentifiers: [GDriveSharedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => -> Pas de fichier ContextMenuHandlers1: [Notepad++] -> {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593} => -> Pas de fichier ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams.dll [2014-08-14] (Apple Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () ContextMenuHandlers4: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2008-09-16] () ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0C2B5449-883C-4D0B-993D-0C0541BA1B64} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {0ED0D7C8-547B-4439-ABD4-4E67C9EDC697} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.) Task: {1036CDFA-09F8-48D4-8958-5D5256489EEC} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001UA => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {1384A4F4-C999-47A6-8553-55A1A4B82452} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {199B8051-A115-4E47-9458-2F216E187141} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2017-10-28] (Adobe Systems Incorporated) Task: {1B66F212-6A14-4B55-BD8A-A35FAA11AB22} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {1C7E0CE6-CF6C-4B30-ACA5-8711210B5388} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {250E9BCB-AF60-43F1-9978-ED19BE5CE5E4} - System32\Tasks\GarminUpdaterTask => C:\Program Files\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [2017-10-09] () Task: {2839B3CC-067A-41B4-BAB7-22AF08C0617D} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe Task: {285E0DAC-E61C-46D7-9468-DE069E188D85} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {2950C035-0DEA-4B4A-9B37-BB9B7FA3D95B} - System32\Tasks\RealDownloaderDownloaderScheduledTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\RealNetworks\RealDownloader\recordingmanager.exe [2013-04-16] (RealNetworks, Inc.) Task: {2CD6BD70-CB9F-4D98-A318-1973A930774E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {34E603E7-F337-4D59-8052-0E7163B5CE20} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-10-18] (Piriform Ltd) Task: {378C5FE6-2CFD-4A55-99EB-91ECDF2DE2C1} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3F75701A-4BCF-4D0A-8D22-E933689BBAC1} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {420AB1C8-670B-464C-81F2-FF49C65D1670} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-20] (Adobe Systems Incorporated) Task: {4376BC44-D5D4-43B1-9D0D-9A83F329165D} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {4795B84E-6008-4F35-B906-58BD05822883} - System32\Tasks\{7ACB562E-0425-47CA-A98A-089A0BB3AD58} => C:\Windows\system32\pcalua.exe -a C:\Users\HERVE\Downloads\mypix(4).exe -d "C:\Program Files\Mozilla Firefox" Task: {4C74CE77-0DF8-4141-A50C-92D652EF6DB3} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {4DB9DF68-88CF-4A53-889D-8CCD06B1C39F} - \avayvxvaxc -> Pas de fichier <==== ATTENTION Task: {4E0BF3F5-919E-46A8-86A4-4E960D0EEC6D} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\Communicator.exe [2012-12-31] () Task: {4FF21AC1-7911-4976-B8A5-C35FDD9A2700} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {50E9D974-64A2-4E27-8ED7-F8DA34D4BB9F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {58E44452-B06E-4718-A01D-C37C89974041} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {5A34B42D-4C37-4488-83A9-3FE37F096182} - System32\Tasks\GoogleUpdateTaskMachineCore1ce4e83480e70e0 => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {5BE41B7E-8B29-4004-8CD4-4F8507262C75} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {6393B196-8DA1-453D-B200-731237F8A346} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {67611B71-4476-4CF1-BEF2-01E0133D0301} - System32\Tasks\{72E67DC3-B4F0-4147-ADE2-28BAD8F24408} => C:\Windows\system32\pcalua.exe -a C:\Users\HERVE\AppData\Roaming\webssearches\UninstallManager.exe -c -ptid=tugs <==== ATTENTION Task: {69269FB4-1CBC-4739-AF6A-51826EE8816E} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {6D849DE3-F9E7-454F-89F0-101BAE7D2DAD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {755BAAA7-15C4-4E0C-A5B9-1820C8D413E6} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7EA36631-34C3-49A4-ABAC-45372E9D4E80} - System32\Tasks\RealUpgradeLogonTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {7EC67F76-FA7D-4F7F-B824-61FD606D0452} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-10-18] (Piriform Ltd) Task: {82D654B4-8D8B-4C42-8222-4E8DE64F52C4} - System32\Tasks\{8AB9C253-9FA0-4C9A-A34D-E755418AECA7} => C:\Windows\system32\pcalua.exe -a C:\Users\HERVE\Downloads\mypix(2).exe -d "C:\Program Files\Mozilla Firefox" Task: {854F7A03-2293-4D8E-B7D2-E5390D768815} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {87D3D7A8-DE1D-474F-88FF-30F1108675C3} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {88ACAA9A-409A-4771-9A2A-E73CA35E1EE2} - \Google Software Updater -> Pas de fichier <==== ATTENTION Task: {8B6B5E8C-9BF0-421C-A844-4497CBE45540} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {8C720EA2-D1FB-4F6D-8E3C-644CDE7804C0} - System32\Tasks\RealPlayerRealUpgradeLogonTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {8CCB2922-B982-481C-B9E3-5A6862FE64EF} - System32\Tasks\HpWebReg.exe => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HpWebReg.exe [2010-11-16] (Hewlett-Packard Co.) Task: {9510B470-9962-47A1-96A2-10115CBD922F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001UA1d25863599d4d19 => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {96CCD2D3-A65C-4F3C-AEB6-2281420DB673} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe Task: {9A91C51C-F926-4151-908E-A1289E4B1E37} - System32\Tasks\{28E719BE-D53E-4F99-984C-89EFB4374F0C} => C:\Program Files\Skype\Phone\Skype.exe [2017-08-25] (Skype Technologies S.A.) Task: {9D0CDD42-72FE-4CA5-AE4B-ACB0708FF189} - System32\Tasks\{F696558E-2449-47E3-8C21-CC43F97ECECA} => C:\Windows\system32\pcalua.exe -a C:\Users\HERVE\Desktop\OOo_3.3.0_Win_x86_install-wJRE_fr.exe -d C:\Users\HERVE\Desktop Task: {A11DC7B9-0811-4EAC-93B1-9325C6A5075C} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {A2775840-CD4C-42CD-8DB2-FCE3C897889C} - System32\Tasks\RealUpgradeScheduledTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {A85A0274-594B-4284-B0A1-345DF0A50A47} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B0DB18CB-4A84-4CBA-AF14-788F914D702B} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001Core1d2586359831322 => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {B220BE72-4A93-466B-89AC-D7A6CFC6B4D2} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B43EAA7C-5093-403D-AA93-22242F69D99E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B8A27D8F-06F4-4E73-BF30-8CBDD7FFFEF1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001Core => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-07] (Google Inc.) Task: {B8BB1E45-DDB5-4691-9F85-82551CF524D0} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {BE0F00B0-C157-44A5-8A51-8D5704499405} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C5648627-305B-4CB3-A041-D6A602084C2E} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C5D403A8-65E8-418A-914C-607A8C4B4278} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {CA7F3B8F-6E55-4572-880F-82FF317A9106} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {CAD8A728-96A9-4F84-8D1D-8724D9128AC9} - System32\Tasks\{1C3BF868-A7B7-4E4B-BA2A-877F41346160} => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HP Deskjet 2050 J510 series.exe [2010-11-16] (Hewlett-Packard Co.) Task: {CCEEFE61-95AB-45CE-BD81-49198A3E11DE} - System32\Tasks\avastBCLRestartS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\Mozilla Firefox\firefox.exe Task: {D817291F-E802-4A9B-92C6-3ECAA0C5889E} - System32\Tasks\HPCustParticipation HP Deskjet 2050 J510 series => C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\HPCustPartic.exe [2010-11-16] (Hewlett-Packard Co.) Task: {DFFAEC2B-DE01-4720-9683-FA8FF95FCA23} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {E0925400-32DC-4F79-A6C4-EE793A52C0A9} - System32\Tasks\RealPlayerRealUpgradeScheduledTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\Real\RealUpgrade\RealUpgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {EA1CF22E-8045-4A05-B1AB-43CC1C41AD99} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {EB8A8707-103A-47D8-BAA0-8A768A59F617} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {F1097A2D-B75C-404C-8363-6F087C836714} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F54A88C5-F5FF-448D-988C-07A22AB13D43} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-2299867047-4246127342-1153950666-1001 => C:\Program Files\RealNetworks\RealDownloader\realupgrade.exe [2013-04-16] (RealNetworks, Inc.) Task: {F7AEFCF5-A83B-4776-B3F2-BA36D497CAF0} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {F8C502ED-DF0B-4F3B-91F2-C21B9576904D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F8C66401-14D0-4534-BA93-3F3320AB21E4} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {FCF16B32-F0A5-498B-9DC7-AF46980C3516} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001Core.job => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-2299867047-4246127342-1153950666-1001UA.job => C:\Users\HERVE\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\Communicator.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2017-09-29 12:49 - 2017-09-29 12:49 - 000149840 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-10-05 18:18 - 2016-10-05 18:18 - 000080184 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2016-10-05 18:18 - 2016-10-05 18:18 - 001041720 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-05-08 09:35 - 2017-05-08 09:35 - 000325632 _____ () C:\Program Files\Garmin\Device Interaction Service\GpsImgWrapper.dll 2017-10-09 15:12 - 2017-10-09 15:12 - 000073216 _____ () C:\Program Files\Garmin\Device Interaction Service\FixBootSector.dll 2013-04-16 02:07 - 2013-04-16 02:07 - 000039056 _____ () C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe 2017-10-28 17:10 - 2014-12-12 16:24 - 000044760 _____ () C:\Windows\runSW.exe 2009-10-16 16:50 - 2008-09-16 19:18 - 000132608 _____ () C:\Program Files\WinRAR\rarext.dll 2017-09-29 12:50 - 2017-09-30 15:26 - 007817728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-09-29 12:50 - 2017-09-30 15:26 - 001518592 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-04-08 23:35 - 2016-04-08 23:35 - 003481600 _____ () C:\Users\HERVE\AppData\Local\Programs\Google\Google Photos Backup\gpuploader_i18n.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:373E1720 [131] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2299867047-4246127342-1153950666-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg DNS Servers: 212.27.40.241 - 212.27.40.240 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\Services: AeLookupSvc => 3 MSCONFIG\Services: gusvc => 2 MSCONFIG\startupfolder: C:^Users^HERVE^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.lnk => C:\Windows\pss\OpenOffice.org 3.4.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: NBKeyScan => "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" MSCONFIG\startupreg: phc710 => C:\Windows\vphc710.exe MSCONFIG\startupreg: swg => "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" MSCONFIG\startupreg: TkBellExe => "C:\Program Files\Real\RealPlayer\update\realsched.exe" -osboot MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" MSCONFIG\startupreg: USB2Check => RUNDLL32.EXE "C:\Windows\system32\PCLECoInst.dll",CheckUSBController HKLM\...\StartupApproved\Run: => "FreeAgentTheaterTrayIcon" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{EB4449BD-FFF2-4933-94B9-2CEA473F60E7}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{52661B8B-409B-4332-A4EA-AFBC236AB5F2}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{C209F199-6250-4516-96E0-623A43A0849B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{48EA7D06-053F-4E7D-A799-808D1A08B629}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe FirewallRules: [{03CFB525-2876-4CAD-8E88-74C19DAFD483}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe FirewallRules: [{E3D66FE6-8388-4247-B589-0863AF9203CB}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe FirewallRules: [{6C8A2304-BE44-4A5F-A4C9-C4388F73C56C}] => (Allow) LPort=48113 FirewallRules: [{F266287B-8AD3-4215-8D77-41D7B10A4AA8}] => (Allow) LPort=48113 FirewallRules: [{73BFC0AE-89C3-4476-98A1-E3E0409FF60E}] => (Allow) C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe FirewallRules: [{B03CE8AF-C1D4-45A5-8F29-C81C66F899BC}] => (Allow) C:\Program Files\TeamViewer\Version6\TeamViewer_Service.exe FirewallRules: [{6FE2A5A6-0E6F-488A-B8AB-822383533338}] => (Allow) C:\Program Files\TeamViewer\Version6\TeamViewer.exe FirewallRules: [{01ACFC1F-3DE8-444A-97C5-0F0D7CA58CBB}] => (Allow) C:\Program Files\TeamViewer\Version6\TeamViewer.exe FirewallRules: [UDP Query User{06D4A421-035A-4FB9-9526-96BB95B11541}C:\program files\real\realplayer\realplay.exe] => (Allow) C:\program files\real\realplayer\realplay.exe FirewallRules: [TCP Query User{3B573EDB-6DDF-4316-BD18-E8D08CD793E9}C:\program files\real\realplayer\realplay.exe] => (Allow) C:\program files\real\realplayer\realplay.exe FirewallRules: [{6686DE7D-480E-44B5-B6DC-064372EFC5BF}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{899D71FB-A400-4FDF-87F0-E3F2954028DC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{98FF5FDD-F94F-4CD6-B091-56BD600B6F9A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{9F4CBFBC-2437-4A35-9328-99BF2C55EC24}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0AC19241-9418-4A73-B80D-F958A827EB5E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CDE52331-3E4F-4A81-AD58-8BE154B3AD93}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{34D550BD-133B-41FD-BFE6-E31278F89F1E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5E9DD1D2-4886-4D57-A7C3-74CEFB4922A1}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{27E4F588-BE0B-4424-A2CA-56AA17173D86}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{BE0D537F-DFAB-48C4-A57C-B9FAA370618A}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{41600520-7EE9-4E88-800A-64B8957703C3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3E99C1BA-199A-47E1-BA3A-AD5778F74D2E}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{AEC6AAFD-9431-4C46-B2B7-D97D30002FDA}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{5A78A4FA-3C43-4552-AF5B-5A18332472F9}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{1DCB15B1-9D01-4C50-AE6C-7DCD748D001B}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{16D07DDB-98D2-44CF-B24D-068F7D6449EC}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{033E6ED5-F63D-4988-A42E-CF18E52A2A49}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{CDA3081A-8D3A-43DF-ACD5-A569D5906806}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E181B3BE-9C07-4481-9E30-0D31F9EC2C47}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{53134A4E-50F6-4CFC-AC2E-BE6700353B58}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{0B169EA5-7E32-49D0-B1D6-01FC5B22BD70}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{3B80640C-71B1-45E8-92D6-C879CACD79F3}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{E616FBB2-185E-4816-8FE6-EF26F11F495F}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{ED266310-7750-4221-9275-BD77395A5340}] => (Allow) C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [{8BA0F079-C133-466D-9381-0440AA44234A}] => (Allow) svchost.exe FirewallRules: [{1452DC2A-6109-47A5-B58C-9B43AFE8DEE0}] => (Allow) C:\Program Files\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{27816D26-FFD5-450F-ADDD-A4232803CF62}] => (Allow) C:\Program Files\Windows Live\Messenger\wlcsdk.exe FirewallRules: [{0CD34AA7-93EE-4695-89D7-664EDFEC1DB6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{5475A6EF-AA2F-4460-84C4-7CB815555176}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C0CF5EDB-87BE-465E-B7BA-282E77BD5832}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{E468522F-ED92-4BBD-AD8A-101F3B52D10A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{5A47E95E-E714-4B6F-BAEF-0089BC25B857}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe ==================== Points de restauration ========================= 29-10-2017 21:19:40 Windows Update 30-10-2017 12:03:32 Avant désinfection ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/30/2017 12:03:39 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (10/29/2017 09:49:29 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: 436: ERROR: read_msg errno 0 (L’opération a réussi.) Error: (10/29/2017 09:49:29 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: ERROR: mDNSPlatformReadTCP - recv: 10053 Error: (10/29/2017 09:19:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (10/29/2017 09:15:43 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Windows\Installer\{3DC873BB-FFE3-46BF-9701-26B9AE371F9F}\recordingmanager.exe ». Assembly dépendant rpshellextension.1.0,language="*",type="win32",version="1.0.0.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (10/29/2017 09:02:03 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Échec de lecture de l'état du nœud de cluster : . Le code d'erreur retourné est : 0x8007085A Error: (10/29/2017 08:57:42 PM) (Source: ESENT) (EventID: 455) (User: ) Description: mighost (5136,R,0) TILEREPOSITORYS-1-0-0: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\Users\Default\AppData\Local\TileDataLayer\Database\EDB.log. Error: (10/29/2017 08:57:13 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Échec de lecture de l'état du nœud de cluster : . Le code d'erreur retourné est : 0x8007085A Error: (10/29/2017 08:57:13 PM) (Source: MSDTC 2) (EventID: 4104) (User: ) Description: Échec de lecture de l'état du nœud de cluster : . Le code d'erreur retourné est : 0x8007085A Error: (10/29/2017 08:57:12 PM) (Source: MSDTC Client 2) (EventID: 4104) (User: ) Description: Échec de lecture de l'état du nœud de cluster : . Le code d'erreur retourné est : 0x8007085A Erreurs système: ============= Error: (10/30/2017 12:37:33 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.SnoozeActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:35:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.RoutingActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:33:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.RegistryActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:31:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.NitroActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:29:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.LegacyActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:27:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.DismissActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:25:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.SnoozeActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:23:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.RoutingActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:21:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.RegistryActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (10/30/2017 12:19:32 PM) (Source: DCOM) (EventID: 10010) (User: HERVE-PC) Description: Le serveur Windows.Internal.Extensions.ApplicationModel.NitroActivator ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2017-10-30 17:26:02.002 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 17:26:01.975 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 17:21:20.776 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 17:21:20.773 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 17:11:00.667 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 17:11:00.664 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 16:56:00.665 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 16:56:00.662 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 16:53:07.244 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-10-30 16:53:07.241 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Pentium(R) Dual-Core CPU E5300 @ 2.60GHz Pourcentage de mémoire utilisée: 57% Mémoire physique - RAM - totale: 3062.3 MB Mémoire physique - RAM - disponible: 1288.69 MB Mémoire virtuelle totale: 6134.3 MB Mémoire virtuelle disponible: 4148.15 MB ==================== Lecteurs ================================ Drive c: (Win7) (Fixed) (Total:930.63 GB) (Free:725.76 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 931.5 GB) (Disk ID: 4D12E118) Partition 1: (Active) - (Size=930.6 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ==================== Fin de Addition.txt ============================