Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 23-10-2017 01 Exécuté par julie (24-10-2017 13:40:55) Exécuté depuis C:\Users\julie\Desktop Windows 10 Home Version 1703 15063.674 (X64) (2017-09-06 10:06:57) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2909761188-1099391026-2105099525-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2909761188-1099391026-2105099525-503 - Limited - Disabled) Invité (S-1-5-21-2909761188-1099391026-2105099525-501 - Limited - Disabled) julie (S-1-5-21-2909761188-1099391026-2105099525-1001 - Administrator - Enabled) => C:\Users\julie ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov) Adobe Audition CC 2017 (HKLM-x32\...\AUDT_10_1_1) (Version: 10.1.1 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.3.0.256 - Adobe Systems Incorporated) Adobe Media Encoder CC 2017 (HKLM-x32\...\AME_11_1_2) (Version: 11.1.2 - Adobe Systems Incorporated) Adobe Premiere Pro CC 2017 (HKLM-x32\...\PPRO_11_1_2) (Version: 11.1.2 - Adobe Systems Incorporated) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 385.69 - NVIDIA Corporation) Hidden Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.36.1 - Asmedia Technology) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.7.2314 - AVAST Software) Discord (HKU\S-1-5-21-2909761188-1099391026-2105099525-1001\...\Discord) (Version: 0.0.298 - Discord Inc.) Epic Games Launcher (HKLM-x32\...\{2397C85A-6BB0-4398-99ED-06D6233E478A}) (Version: 1.1.125.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden FIFA 18 (HKLM-x32\...\{213CC10A-B8CB-4EBA-B277-6B08B7C22A65}) (Version: 1.0.49.51286 - Electronic Arts) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.62 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Grand Theft Multiplayer (HKLM-x32\...\GrandTheftMultiplayer) (Version: - Grand Theft Multiplayer Team) Gyazo 3.3.2 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation) Intel(R) Network Connections 22.4.16.0 (HKLM\...\PROSetDX) (Version: 22.4.16.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.7.0.1014 - Intel Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{49bc1e38-39b4-4728-9e75-cbe67ba9a329}) (Version: 10.1.1.42 - Intel(R) Corporation) Hidden Magic Bullet Suite v13.0.0 (HKLM-x32\...\{99487911-8011-42BC-B594-8B02BFD32B1D}_is1) (Version: 13.0.0 - Red Giant, LLC) Microsoft OneDrive (HKU\S-1-5-21-2909761188-1099391026-2105099525-1001\...\OneDriveSetup.exe) (Version: 17.3.7073.1013 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mises à jour NVIDIA 28.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 28.0.0.0 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.9.1.91 BETA (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.9.1.91 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 385.69 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 385.69 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.0.1 - OBS Project) Origin (HKLM-x32\...\Origin) (Version: 10.5.4.63358 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 385.69 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 385.69 - NVIDIA Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8004 - Realtek Semiconductor Corp.) Red Giant Link (HKLM-x32\...\{10F82E5B-B611-4C65-8F29-666A9EC5680A}_is1) (Version: 1.9.10.0 - Red Giant, LLC) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.2.0 - Rockstar Games) SimCity™ (HKLM-x32\...\{F70FDE4B-8F86-4eb6-8C8E-636EC89F6419}) (Version: 4.0.98.0213 - Electronic Arts) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.6 - TeamSpeak Systems GmbH) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal) Uplay (HKLM-x32\...\Uplay) (Version: 39.2 - Ubisoft) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2909761188-1099391026-2105099525-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-A10947E0913E}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-2909761188-1099391026-2105099525-1001_Classes\CLSID\{4410DC33-BC7C-496B-AA84-4AEA3EEE75F7}\InprocServer32 -> C:\Users\julie\AppData\Local\Microsoft\OneDrive\17.3.7073.1013\amd64\FileCoAuthLib64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2909761188-1099391026-2105099525-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-09-16] (NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-10-11] (AVAST Software) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0D141FDD-6506-496F-9300-34239848766C} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-julien.abraham@live.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {0F52E371-D294-4E03-B09A-31A6B1C09174} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-24] (Google Inc.) Task: {1E6645B1-E03D-4CAB-915D-498559CAFE4A} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-10-11] (AVAST Software) Task: {479810B2-87E3-4CC3-B638-E69BE695B589} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-09-19] (NVIDIA Corporation) Task: {4979954C-9F8E-492B-8312-10A282AB1ACB} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-19] (NVIDIA Corporation) Task: {5A80B1DE-9663-4E5F-B703-257D53CFBF2B} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-09-19] (NVIDIA Corporation) Task: {5BE211E4-069D-4090-B8C4-E6D73473813F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-19] (NVIDIA Corporation) Task: {6D898175-77CD-4123-AF18-A4909A77D26F} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {81AFDF48-3471-4D55-A777-6E2B847EACDE} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-09-19] (NVIDIA Corporation) Task: {A0A8B768-D6F2-4AE1-B446-7C9CD9D9BF25} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-09-19] (NVIDIA Corporation) Task: {A26C963A-7F63-4969-8AA9-7CF49492999A} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {ADF25E53-F91B-45EF-AD18-DE5D9A458785} - System32\Tasks\Red Giant Link => C:\Program Files\Red Giant Link\Red Giant Link.exe Task: {B8EE5597-F538-47E1-A50D-77E889E809E2} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-09-19] (NVIDIA Corporation) Task: {CED42E30-39C8-432A-AF69-5151F2587528} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-07-26] (Intel(R) Corporation) Task: {EC266619-E763-4EBB-B498-1E70E2957941} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-24] (Google Inc.) Task: {FC7461FA-63B2-478D-ACA7-AE3015B26C26} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-09-19] (NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2017-08-11 13:40 - 2017-09-19 10:13 - 001267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-09-26 02:52 - 2017-09-26 02:52 - 000491600 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 ____N () C:\Windows\SYSTEM32\inputhost.dll 2017-03-18 22:59 - 2017-03-20 07:11 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-09-06 13:02 - 2017-09-06 13:02 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-09-06 13:02 - 2017-09-06 13:02 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-09-06 13:02 - 2017-09-06 13:02 - 036162048 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-09-06 13:02 - 2017-09-06 13:02 - 002237952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.856.0_x64__kzf8qxf38zg5c\skypert.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000067408 _____ () C:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll 2017-09-22 02:18 - 2017-09-19 10:13 - 000019064 _____ () c:\program files\nvidia corporation\nvstreamsrv\detoured.dll 2017-10-24 12:50 - 2017-10-17 10:08 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.62\libglesv2.dll 2017-10-24 12:50 - 2017-10-17 10:08 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.62\libegl.dll 2017-10-14 01:23 - 2017-10-12 10:59 - 031229440 _____ () C:\Users\julie\AppData\Local\Google\Chrome\User Data\PepperFlash\27.0.0.170\pepflashplayer.dll 2017-09-22 02:18 - 2017-09-19 10:13 - 000034424 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_system-vc120-mt-1_58.dll 2017-09-22 02:18 - 2017-09-19 10:13 - 000920184 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\boost_regex-vc120-mt-1_58.dll 2017-09-26 02:52 - 2017-09-26 02:52 - 034879568 _____ () C:\Program Files (x86)\Adobe\Adobe Sync\Coresync\Coresync.exe 2017-09-14 11:12 - 2017-09-14 11:12 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.30.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 010634752 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.30.0_x64__8wekyb3d8bbwe\WinStore.Entertainment.Mobile.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 002640896 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11708.1001.30.0_x64__8wekyb3d8bbwe\MS.Entertainment.Common.Mobile.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000021504 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2017-10-05 16:35 - 2017-10-05 16:35 - 048839168 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000164352 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\VideoPlugin.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000352256 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000675328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\IPPNativePlugin.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 002836480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 020559872 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 002705408 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 003128320 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll 2017-09-06 13:03 - 2017-09-06 13:03 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000118784 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\ExploreModel.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 001380864 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll 2017-10-05 16:35 - 2017-10-05 16:35 - 000367616 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.39081.15820.0_x64__8wekyb3d8bbwe\AnimatedGIF.dll 2017-08-11 13:40 - 2017-09-19 10:13 - 001040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-09-06 12:18 - 2017-09-06 12:18 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000217088 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000234280 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-10-11 20:40 - 2017-10-11 20:40 - 000700656 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2017-09-06 12:11 - 2017-08-08 15:13 - 001893880 _____ () C:\Users\julie\AppData\Local\Discord\app-0.0.298\ffmpeg.dll 2017-09-06 12:11 - 2017-09-06 12:11 - 001577976 _____ () \\?\C:\Users\julie\AppData\Roaming\discord\0.0.298\modules\discord_toaster\discord_toaster.node 2017-09-06 12:11 - 2017-08-08 15:13 - 001938424 _____ () C:\Users\julie\AppData\Local\Discord\app-0.0.298\libglesv2.dll 2017-09-06 12:11 - 2017-08-08 15:13 - 000095736 _____ () C:\Users\julie\AppData\Local\Discord\app-0.0.298\libegl.dll 2017-10-12 15:54 - 2017-09-09 21:25 - 000688416 _____ () D:\Programme\Steam\SDL2.dll 2017-09-06 13:45 - 2016-09-01 03:02 - 004969248 _____ () D:\Programme\Steam\v8.dll 2017-10-17 23:12 - 2017-10-17 23:24 - 002546976 _____ () D:\Programme\Steam\video.dll 2017-09-06 13:45 - 2016-09-01 03:02 - 001563936 _____ () D:\Programme\Steam\icui18n.dll 2017-09-06 13:45 - 2016-09-01 03:02 - 001195296 _____ () D:\Programme\Steam\icuuc.dll 2017-09-06 13:45 - 2016-01-27 09:49 - 002549760 _____ () D:\Programme\Steam\libavcodec-56.dll 2017-09-06 13:45 - 2016-01-27 09:49 - 000491008 _____ () D:\Programme\Steam\libavformat-56.dll 2017-09-06 13:45 - 2016-01-27 09:49 - 000332800 _____ () D:\Programme\Steam\libavresample-2.dll 2017-09-06 13:45 - 2016-01-27 09:49 - 000442880 _____ () D:\Programme\Steam\libavutil-54.dll 2017-09-06 13:45 - 2016-01-27 09:49 - 000485888 _____ () D:\Programme\Steam\libswscale-3.dll 2017-10-17 23:12 - 2017-10-17 23:24 - 000901408 _____ () D:\Programme\Steam\bin\chromehtml.DLL 2017-09-22 02:18 - 2017-09-19 10:13 - 000019064 _____ () c:\program files (x86)\nvidia corporation\nvstreamsrv\detoured.dll 2017-09-06 13:45 - 2016-07-05 00:17 - 000266560 _____ () D:\Programme\Steam\openvr_api.dll 2017-09-06 12:11 - 2017-10-06 11:05 - 009722360 _____ () \\?\C:\Users\julie\AppData\Roaming\discord\0.0.298\modules\discord_voice\discord_voice.node 2017-09-06 12:11 - 2017-09-06 12:11 - 001440248 _____ () \\?\C:\Users\julie\AppData\Roaming\discord\0.0.298\modules\discord_utils\discord_utils.node 2017-10-24 13:08 - 2017-10-24 13:08 - 000148992 _____ () \\?\C:\Users\julie\AppData\Local\Temp\6D50.tmp.node 2017-09-06 12:11 - 2017-09-06 12:11 - 002658296 _____ () \\?\C:\Users\julie\AppData\Roaming\discord\0.0.298\modules\discord_rpc\discord_rpc.node 2017-09-06 12:14 - 2017-09-06 12:14 - 002673656 _____ () \\?\C:\Users\julie\AppData\Roaming\discord\0.0.298\modules\discord_contact_import\discord_contact_import.node 2017-08-11 13:41 - 2017-09-19 10:13 - 069807736 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2017-10-12 15:54 - 2017-08-17 00:28 - 073130272 _____ () D:\Programme\Steam\bin\cef\cef.win7\libcef.dll 2017-10-12 15:54 - 2017-09-07 04:04 - 000678400 _____ () D:\Programme\Steam\bin\cef\cef.win7\SDL2.dll 2017-09-06 13:45 - 2015-09-25 01:52 - 000119208 _____ () D:\Programme\Steam\winh264.dll 2017-09-20 02:42 - 2017-09-20 02:42 - 067115616 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll 2017-09-06 18:11 - 2017-09-06 18:11 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node 2017-09-06 18:11 - 2017-09-06 18:11 - 000214528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2017-09-06 18:11 - 2017-09-06 18:11 - 000117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node 2017-09-06 18:11 - 2017-09-06 18:11 - 000125952 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node 2017-09-20 03:04 - 2017-09-20 03:04 - 000099424 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll 2017-09-06 18:11 - 2017-09-06 18:11 - 000086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node 2017-09-12 20:11 - 2017-09-12 20:11 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node 2017-09-12 20:10 - 2017-09-12 20:10 - 000117760 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ref\build\Release\binding.node 2017-09-12 20:11 - 2017-09-12 20:11 - 000125440 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ffi\build\Release\ffi_bindings.node 2017-09-12 20:11 - 2017-09-12 20:11 - 000214528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2017-09-20 02:59 - 2017-09-20 02:59 - 000099424 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll 2017-09-12 20:11 - 2017-09-12 20:11 - 000098816 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\bufferutil\build\Release\bufferutil.node 2017-09-12 20:11 - 2017-09-12 20:11 - 000086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node 2016-09-14 20:25 - 2016-09-14 20:25 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2017-03-18 23:03 - 2017-03-18 23:01 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2909761188-1099391026-2105099525-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\julie\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\wallpaper_1.png DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{C74E7F9B-89E2-40C8-AE54-F6815349E645}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A390B7C5-063C-4DFA-8409-2916713ED1BB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{FF2058E1-6965-422B-98CB-F9EEF5ACF227}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{85626759-49A3-4281-B20F-F6703A4142F5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{91838C98-4600-47B9-8020-A1AA4756A2EB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{7D71E9CC-DB84-4961-B4F1-48A848006324}] => (Allow) D:\Programme\Steam\Steam.exe FirewallRules: [{AB3964B2-FADC-4E9B-AE78-096C986637B5}] => (Allow) D:\Programme\Steam\Steam.exe FirewallRules: [{9804CAF7-98CF-4BAD-A71A-76C2D0FD8C35}] => (Allow) D:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{4D8ED320-BECB-40F4-B512-119179EE9019}] => (Allow) D:\Programme\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{02E83B83-75E6-41F4-A416-E6A7062FBFE3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{79009063-847B-4265-B08C-A3C33E0878A5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{C44A67D3-3750-4238-84F5-8A7F25559DA7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{0712DB30-88B1-4BE7-92D2-4F26EE36D456}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{A39C8558-3BAB-4BC9-B50C-DAFCBCB5A742}] => (Allow) D:\Programme\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe FirewallRules: [{EE974812-5C64-4D44-8390-FD5E29973BEC}] => (Allow) D:\Programme\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe FirewallRules: [{87233208-94F7-4060-A34D-D0ABA4C2C353}] => (Allow) D:\Programme\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [{54D5CA75-84F5-47B3-9718-8D7C2CE71A9F}] => (Allow) D:\Programme\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe FirewallRules: [TCP Query User{EEC00F9E-A698-4F9E-AD63-53CB9D1ACF76}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [UDP Query User{CACC6F10-FAD4-4A48-81C3-E2BEA2A06B45}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [{9F26862C-509B-436C-91CD-5C8065343897}] => (Allow) D:\Programme\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [{66A126A9-4936-432A-9FD4-37C4FB08194B}] => (Allow) D:\Programme\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe FirewallRules: [TCP Query User{6CD7C353-4980-4D96-B63F-1F2FA19C6AD3}C:\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe] => (Allow) C:\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe FirewallRules: [UDP Query User{D8E939A7-2F34-4E31-B3AC-C5AF6A571332}C:\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe] => (Allow) C:\adobe\adobe premiere pro cc 2017\adobe premiere pro.exe FirewallRules: [TCP Query User{F71F5FF2-B507-45A0-AF99-D70382E66D2C}D:\programme\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\programme\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{A9204274-4B47-4235-827F-C5C96950ABAE}D:\programme\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\programme\steam\steamapps\common\grand theft auto v\gta5.exe FirewallRules: [{81EF771A-86A6-4FB1-937E-98E6D113655E}] => (Allow) D:\Programme\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [{2865578F-568C-41F5-9E85-E7BE6EF0DD21}] => (Allow) D:\Programme\Steam\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [TCP Query User{35604598-A232-4856-B81D-1B1D0998D221}D:\program files (x86)\origin games\fifa 18 demo\fifa18_demo.exe] => (Allow) D:\program files (x86)\origin games\fifa 18 demo\fifa18_demo.exe FirewallRules: [UDP Query User{883AB3E1-E0A6-44A4-A3F1-55D9EC8CA92D}D:\program files (x86)\origin games\fifa 18 demo\fifa18_demo.exe] => (Allow) D:\program files (x86)\origin games\fifa 18 demo\fifa18_demo.exe FirewallRules: [TCP Query User{D2AA19E8-9F83-45CD-80D2-4923F6F62DC5}D:\programme\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programme\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [UDP Query User{B99A4889-29E8-45F0-93C0-FB2E57B5810F}D:\programme\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\programme\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [{AB63CD55-B5DC-4030-9DF8-8364FDAF8EB9}] => (Allow) D:\Programme\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe FirewallRules: [{3ADB8989-B0D6-45D3-A59F-3276657FC432}] => (Allow) D:\Programme\Steam\steamapps\common\PUBG\TslGame\Binaries\Win64\TslGame_BE.exe FirewallRules: [{C49A552F-9367-4735-A0DE-E354E8525C1B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [TCP Query User{4683EF43-E08C-424B-855F-4D3ED6BE556B}D:\program files (x86)\origin games\fifa 18\fifa18_trial.exe] => (Allow) D:\program files (x86)\origin games\fifa 18\fifa18_trial.exe FirewallRules: [UDP Query User{830A3146-FA65-4B15-B69C-6A4C31C49993}D:\program files (x86)\origin games\fifa 18\fifa18_trial.exe] => (Allow) D:\program files (x86)\origin games\fifa 18\fifa18_trial.exe FirewallRules: [TCP Query User{DB57D49C-5DCA-4DCD-AE18-31F4A8AF092E}D:\program files (x86)\origin games\fifa 18\fifa18.exe] => (Allow) D:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [UDP Query User{0B083F8E-AA73-424A-AB9B-FB0AABF3A976}D:\program files (x86)\origin games\fifa 18\fifa18.exe] => (Allow) D:\program files (x86)\origin games\fifa 18\fifa18.exe FirewallRules: [{0A953C9D-5E4A-443D-91F8-970DCC3BE639}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 18\FIFASetup\fifaconfig.exe FirewallRules: [{3DB4C51D-D262-4253-BB71-3A6A0476BEE9}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 18\FIFASetup\fifaconfig.exe FirewallRules: [{943C2A5F-F967-44E5-9E15-7DAABC7A35E4}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{D7AB3341-E0D0-44A8-8E7B-F0AE94F88FC2}] => (Allow) C:\Program Files (x86)\Origin Games\SimCity\SimCity\SimCity.exe FirewallRules: [{5B72585F-2F99-4B4E-8CF9-839D3794D63D}] => (Allow) D:\Programme\Steam\steamapps\common\Prominence Poker\Prominence\Binaries\Win64\Prominence-Win64-Shipping.exe FirewallRules: [{5EF50342-548C-44CD-9507-6ED75D0170E7}] => (Allow) D:\Programme\Steam\steamapps\common\Prominence Poker\Prominence\Binaries\Win64\Prominence-Win64-Shipping.exe FirewallRules: [TCP Query User{49D78748-C09C-4338-9E1C-86127919F0EF}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{578018D4-AB9D-49FB-9D0C-F8C922921E2B}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{26DED684-411A-4225-BF18-50588A3E34E3}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{ED64612E-AB94-45FF-A01E-8407AAB93A7E}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{D2FFC191-D83E-4443-9CD0-EBFB03593D51}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 11-10-2017 01:37:29 DirectX est installé 15-10-2017 14:45:19 DirectX est installé ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Périphérique USB inconnu (échec de demande de descripteur de périphérique) Description: Périphérique USB inconnu (échec de demande de descripteur de périphérique) Class Guid: {36fc9e60-c465-11cf-8056-444553540000} Manufacturer: (Contrôleur hôte USB standard) Service: Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/24/2017 01:08:36 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows ne parvient pas à charger la DLL de compteur extensible rdyboost. Le premier mot (DWORD) de la section Données contient le code d’erreur Windows. Error: (10/24/2017 01:08:36 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (10/24/2017 12:47:48 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe, version : 10.0.15063.0, horodatage : 0xe5f810c5 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00090f42 ID du processus défaillant : 0x6354 Heure de début de l’application défaillante : 0x01d34cb5887da095 Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\rundll32.exe Chemin d’accès du module défaillant: unknown ID de rapport : d4a32938-1412-4f5a-8494-671f220e93d5 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/24/2017 12:46:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe, version : 10.0.15063.0, horodatage : 0xe5f810c5 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00090f42 ID du processus défaillant : 0x3e68 Heure de début de l’application défaillante : 0x01d34cb566700021 Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\rundll32.exe Chemin d’accès du module défaillant: unknown ID de rapport : 80d36ce7-3d73-4495-9eda-6d73b8347566 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/24/2017 12:46:43 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe, version : 10.0.15063.0, horodatage : 0xe5f810c5 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00090f42 ID du processus défaillant : 0x1f10 Heure de début de l’application défaillante : 0x01d34cb561e2eecd Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\rundll32.exe Chemin d’accès du module défaillant: unknown ID de rapport : 2ab417d2-e35d-4172-946c-8512730d5fcc Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/24/2017 12:46:10 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe, version : 10.0.15063.0, horodatage : 0xe5f810c5 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00090f42 ID du processus défaillant : 0x15c8 Heure de début de l’application défaillante : 0x01d34cb54dae8dcf Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\rundll32.exe Chemin d’accès du module défaillant: unknown ID de rapport : f7ad7861-e538-422a-a98b-3f5fbaaba694 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/24/2017 12:45:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rundll32.exe, version : 10.0.15063.0, horodatage : 0xe5f810c5 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00090f42 ID du processus défaillant : 0x4bc0 Heure de début de l’application défaillante : 0x01d34cb542b6d6be Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\rundll32.exe Chemin d’accès du module défaillant: unknown ID de rapport : 1e8aa79e-386d-429b-bde3-501fe63ec6b8 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/23/2017 09:16:25 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GTA5.exe, version : 1.0.1180.2, horodatage : 0x599d9281 Nom du module défaillant : clr.dll, version : 4.7.2115.0, horodatage : 0x59af8ce5 Code d’exception : 0xc00000fd Décalage d’erreur : 0x00000000005dafec ID du processus défaillant : 0x6df0 Heure de début de l’application défaillante : 0x01d34c29aec339ba Chemin d’accès de l’application défaillante : D:\Programme\Steam\steamapps\common\Grand Theft Auto V\GTA5.exe Chemin d’accès du module défaillant: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll ID de rapport : 63081271-7b30-4e99-b0d0-a83496e88bfe Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/23/2017 01:15:26 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GTA5.exe, version : 1.0.1180.2, horodatage : 0x599d9281 Nom du module défaillant : gameoverlayrenderer64.dll, version : 4.18.55.94, horodatage : 0x59e6642e Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000c8b00 ID du processus défaillant : 0x41cc Heure de début de l’application défaillante : 0x01d34b8b6a1eee02 Chemin d’accès de l’application défaillante : D:\Programme\Steam\steamapps\common\Grand Theft Auto V\GTA5.exe Chemin d’accès du module défaillant: D:\Programme\Steam\gameoverlayrenderer64.dll ID de rapport : 357b2ea7-e4f5-4189-b82a-eff455892cf6 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/23/2017 01:13:17 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GTA5.exe, version : 1.0.1180.2, horodatage : 0x599d9281 Nom du module défaillant : clr.dll, version : 4.7.2115.0, horodatage : 0x59af8ce5 Code d’exception : 0xc00000fd Décalage d’erreur : 0x00000000005dafec ID du processus défaillant : 0xb20 Heure de début de l’application défaillante : 0x01d34b7aeaae5eec Chemin d’accès de l’application défaillante : D:\Programme\Steam\steamapps\common\Grand Theft Auto V\GTA5.exe Chemin d’accès du module défaillant: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll ID de rapport : b8bc51cd-7eae-4416-a844-f3d6cbae6cbd Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (10/24/2017 01:08:00 PM) (Source: DCOM) (EventID: 10016) (User: PC_MATERIEL_NET) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} et l’APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} au SID PC_MATERIEL_NET\julie de l’utilisateur (S-1-5-21-2909761188-1099391026-2105099525-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/24/2017 01:08:00 PM) (Source: DCOM) (EventID: 10016) (User: PC_MATERIEL_NET) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} et l’APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} au SID PC_MATERIEL_NET\julie de l’utilisateur (S-1-5-21-2909761188-1099391026-2105099525-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/24/2017 01:07:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CldFlt n’a pas pu démarrer en raison de l’erreur : Cette demande n’est pas prise en charge. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Programme d’installation pour les modules Windows s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 120000 millisecondes : Redémarrer le service. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Intel(R) Dynamic Application Loader Host Interface Service s’est terminé de façon inattendue pour la 1ème fois. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Origin Web Helper Service s’est terminé de façon inattendue pour la 1ème fois. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service NVIDIA NetworkService Container s’est terminé de façon inattendue pour la 1ème fois. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Steam Client Service s’est terminé de façon inattendue pour la 1ème fois. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service NVIDIA Telemetry Container s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 1000 millisecondes : Redémarrer le service. Error: (10/24/2017 01:07:23 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Adobe Genuine Software Integrity Service s’est terminé de façon inattendue pour la 1ème fois. CodeIntegrity: =================================== Date: 2017-10-24 12:42:32.017 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-24 12:39:09.360 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-24 11:40:49.909 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-23 12:01:12.694 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-22 19:56:15.917 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-20 10:23:43.879 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-19 04:31:14.009 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-18 03:06:47.848 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-17 23:00:48.379 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-10-17 22:58:13.300 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files (x86)\Red Giant Link\tools\update_installer\USERENV.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz Pourcentage de mémoire utilisée: 27% Mémoire physique - RAM - totale: 16341.47 MB Mémoire physique - RAM - disponible: 11855.91 MB Mémoire virtuelle totale: 19285.47 MB Mémoire virtuelle disponible: 14260.75 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:232.13 GB) (Free:112.74 GB) NTFS Drive d: () (Fixed) (Total:931.39 GB) (Free:430.52 GB) NTFS Drive e: (LaCie) (Fixed) (Total:298.02 GB) (Free:46.39 GB) FAT32 Drive f: (LUMIX) (Removable) (Total:29.71 GB) (Free:8.99 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 2 (Size: 298.1 GB) (Disk ID: C0FBB68F) Partition 1: (Not Active) - (Size=298.1 GB) - (Type=0C) ======================================================== Disk: 3 (Size: 29.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fin de Addition.txt ============================