Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 26-10-2017 Exécuté par Esref (26-10-2017 01:23:34) Exécuté depuis C:\Users\Asus\Desktop Windows 10 Home Version 1703 15063.674 (X64) (2017-04-16 19:45:52) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2655898022-3762602618-2283372909-500 - Administrator - Disabled) => C:\Users\Administrator DefaultAccount (S-1-5-21-2655898022-3762602618-2283372909-503 - Limited - Disabled) Esref (S-1-5-21-2655898022-3762602618-2283372909-1001 - Administrator - Enabled) => C:\Users\Asus HomeGroupUser$ (S-1-5-21-2655898022-3762602618-2283372909-1008 - Limited - Enabled) Invité (S-1-5-21-2655898022-3762602618-2283372909-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Kaspersky Total Security (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Kaspersky Total Security (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Total Security (Enabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) 4500_G510gm_Help (HKLM-x32\...\{DF0B357C-5874-47D0-81E7-79AA890B0CE0}) (Version: 000.0.439.000 - Hewlett-Packard) Hidden 4500G510gm (HKLM-x32\...\{BE0D4271-69C9-4f28-AD9B-BB33D126A30E}) (Version: 000.0.423.000 - Hewlett-Packard) Hidden 4500G510gm_Software_Min (HKLM-x32\...\{28379381-B56A-43e1-B505-3098D82B1C30}) (Version: 000.0.423.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden Adobe 0.1 (HKLM-x32\...\{5B393B60-FAAF-43DF-AC7F-59E315928A83}_is1) (Version: 0.1 - Pour T411.me) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 384.76 - NVIDIA Corporation) Hidden Any Video Converter Ultimate 6.0.7 (HKLM-x32\...\Any Video Converter Ultimate_is1) (Version: - Any-Video-Converter.com) ApowerMirror V1.1.9 (HKLM-x32\...\{a9482532-9c34-478c-80c3-85bdccbb981f}_is1) (Version: 1.1.9 - APOWERSOFT LIMITED) Apple Application Support (32 bits) (HKLM-x32\...\{E92BB800-BCC5-4C25-8102-AC2C3B7C7C1E}) (Version: 5.5 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{9C912B1E-06DD-43EF-BB2B-45CB2C88BAAE}) (Version: 5.5 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{0A596141-97D5-45FA-9281-98DFAF48D579}) (Version: 10.3.2.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{52D87F32-70E4-4348-8148-C0B9F35B1314}) (Version: 2.3.0.177 - Apple Inc.) Attribute Changer 8.70 (HKLM\...\{27263813-8BDE-4CD2-84D3-02536743428A}_is1) (Version: 8.70 - Romain Petges) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.3.35.6237 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) BufferChm (HKLM-x32\...\{2EEA7AA4-C203-4b90-A34F-19FB7EF1C81C}) (Version: 130.0.331.000 - Hewlett-Packard) Hidden Camtasia 9 (HKLM\...\{B8A4CB7E-7F5B-484F-A127-E4431000EDCE}) (Version: 9.0.4.1948 - TechSmith Corporation) Hidden Camtasia 9 (HKLM-x32\...\{5957dd25-bb4e-4234-9dc0-b3e10a70f636}) (Version: 9.0.4.1948 - TechSmith Corporation) CCleaner (HKLM\...\CCleaner) (Version: 5.33 - Piriform) <==== ATTENTION Click Install if prompted (HKLM-x32\...\{92A9572E-834E-477B-A100-C9AD3EE4B4B9}) (Version: 1.0.0.0 - ExpressVpn) Hidden Correctif pour Microsoft Visual Basic 2010 Express - Français (KB2635973) (HKLM-x32\...\{0449BB18-CD20-301E-9427-C68DD158981E}.KB2635973) (Version: 1 - Microsoft Corporation) CyberGhost 6 (HKLM\...\CyberGhost 6_is1) (Version: - CyberGhost S.A.) Dashlane (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\Dashlane) (Version: 4.9.0.38517 - Dashlane, Inc.) Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (HKLM-x32\...\{21A2F5EE-1DC5-488A-BE7E-E526F8C61488}) (Version: 130.0.372.000 - Hewlett-Packard) Hidden Discord (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\Discord) (Version: 0.0.298 - Discord Inc.) DocMgr (HKLM-x32\...\{92A51949-EE4C-466D-AAF0-99E74A49A63F}) (Version: 130.0.000.000 - Nom de votre société) Hidden DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 13.0.0.0 - Hewlett-Packard) Hidden dr.fone toolkit pour Android (Version 8.3.3) (HKLM-x32\...\{7B08A1E1-3644-4237-B39D-762B5F5564D0}_is1) (Version: 8.3.3.64 - Wondershare Technology Co.,Ltd.) DriversCloud.com (64 bits) (HKLM\...\{C514B5EE-C8E6-43C9-AFB9-6C1A7B3429E1}) (Version: 10.0.4.0 - Cybelsoft) EduPython 2.3 (HKLM-x32\...\EduPython_2.3_is1) (Version: 2.3 - V. MAILLE) ExpressVPN (HKLM-x32\...\{56323B0D-BFB5-4BAF-8EC5-946D99266937}) (Version: 6.2.5.2949 - ExpressVPN) Hidden ExpressVPN (HKLM-x32\...\{b221cb21-c275-4f4a-81b7-238b524bc65f}) (Version: 6.2.5.2949 - ExpressVPN) Fax (HKLM-x32\...\{440B915A-0C85-45DB-92AE-75AE14704A64}) (Version: 130.0.418.000 - Hewlett-Packard) Hidden Fichiers de support d'installation de Microsoft SQL Server 2008 (HKLM\...\{308350C4-5DA5-4035-A69B-12600021C9FA}) (Version: 10.1.2731.0 - Microsoft Corporation) FileZilla Client 3.19.0 (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\FileZilla Client) (Version: 3.19.0 - Tim Kosse) Flashtool (HKLM-x32\...\Flashtool) (Version: 0.9.22.3 - Androxyde) FonePaw Transfert iOS 1.9.0 (HKLM-x32\...\{548859D3-48CF-4fcb-8E03-E7F488ADF2EA}_is1) (Version: 1.9.0 - FonePaw) GeoGebra 5 (HKLM-x32\...\GeoGebra 5) (Version: 5.0.274.0 - International GeoGebra Institute) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.62 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Gyazo 3.3.2 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: - Nota Inc.) HMA! Pro VPN (HKLM\...\{60A560F2-CB75-4C94-9C36-39AD2161DE73}_is1) (Version: 3.6.69 - Privax) Hotspot Shield 7.20.9 (HKLM-x32\...\{AF599C42-A2E5-4251-B7EE-4925C2673908}) (Version: 7.20.9.9957 - AnchorFree Inc.) Hidden Hotspot Shield 7.20.9 (HKLM-x32\...\{b0fc1f3b-a706-409d-ad9d-e19cf9b8c229}) (Version: 7.20.9.9957 - AnchorFree Inc.) Hotspot Shield 7.20.9 (HKLM-x32\...\HotspotShield) (Version: 7.20.9 - AnchorFree Inc.) Hidden HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP) HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP) HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP) HP Officejet 4500 G510g-m (HKLM\...\{E5083D57-D93F-404C-A91F-1C50D67C2BEB}) (Version: 13.0 - HP) HP Smart Web Printing 4.5 (HKLM\...\HP Smart Web Printing) (Version: 4.5 - HP) HP Support Assistant (HKLM-x32\...\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}) (Version: 8.3.27.17 - HP Inc.) HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden HPSSupply (HKLM-x32\...\{6B2FFB21-AC88-45C3-9A7D-4BB3E744EC91}) (Version: 130.0.371.000 - Hewlett-Packard) Hidden Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Kaspersky Secure Connection (HKLM-x32\...\{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Secure Connection (HKLM-x32\...\InstallWIX_{F33C0717-8E04-4EB5-90C8-47221287DB4F}) (Version: 18.0.0.405 - Kaspersky Lab) Kaspersky Total Security (HKLM-x32\...\{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) Hidden Kaspersky Total Security (HKLM-x32\...\InstallWIX_{5AAE61FF-858E-453E-B8F3-944618149975}) (Version: 18.0.0.405 - Kaspersky Lab) KbTester (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\1c5c06c29f866924) (Version: 0.4.0.12 - Pagès Informatique) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LG AirDrive (HKLM-x32\...\{101E5DB3-07FA-4E52-8923-05068C94CF43}) (Version: 1.2.60617.11 - LG Electronics) LG Bridge (HKLM-x32\...\LG Bridge) (Version: 1.2.18 - LG Electronics) Malwarebytes version 3.2.2.2029 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.2.2.2029 - Malwarebytes) MarketResearch (HKLM-x32\...\{175F0111-2968-4935-8F70-33108C6A4DE3}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden MEmu (HKLM-x32\...\MEmu) (Version: 3.3.0 - Microvirt Software Technology Co. Ltd.) Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Help Viewer 1.1 (HKLM\...\Microsoft Help Viewer 1.1) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Help Viewer 1.1 Language Pack - FRA (HKLM\...\Microsoft Help Viewer 1.1 Language Pack - FRA) (Version: 1.1.40219 - Microsoft Corporation) Microsoft Office Professionnel Plus 2016 - fr-fr (HKLM\...\ProPlusRetail - fr-fr) (Version: 16.0.8528.2139 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 Browser (HKLM-x32\...\{4401409D-25F1-4E85-8A3C-6BA6FFCFBFED}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft SQL Server 2008 Native Client (HKLM\...\{7242D7B3-2C1B-44C9-8F14-0202BB49DF6C}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 FRA (HKLM-x32\...\{AF6919D0-5691-4F35-9D65-54F981013514}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 FRA (HKLM\...\{2906A05E-2D38-4B47-85A2-D3485E372C8F}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{531D566F-F5A9-4DE5-B839-8B1320D2830E}) (Version: 10.50.1750.9 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{4E99A992-BF07-48AE-B0C6-5500F54EA3DA}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft Visual Basic 2010 Express - Français (HKLM-x32\...\Microsoft Visual Basic 2010 Express - FRA) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.40219 (HKLM\...\{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.40219 (HKLM-x32\...\{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Express Prerequisites x64 - FRA (HKLM\...\{F48F43AA-721D-335F-9CA2-01D910104560}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50701 - Microsoft Corporation) Mises à jour NVIDIA 25.6.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 25.6.0.0 - NVIDIA Corporation) Hidden Module linguistique de la visionneuse d'aide Microsoft 1.0 - FRA (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - FRA) (Version: 1.0.30319 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50701 - Microsoft Corporation) Mozilla Firefox 55.0.3 (x86 fr) (HKLM-x32\...\Mozilla Firefox 55.0.3 (x86 fr)) (Version: 55.0.3 - Mozilla) Mozilla Firefox 56.0 (x64 fr) (HKLM\...\Mozilla Firefox 56.0 (x64 fr)) (Version: 56.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 55.0.3 - Mozilla) Network64 (HKLM\...\{A4DDB2AB-ECCD-4C3A-8633-77D5A1A0E542}) (Version: 130.0.374.000 - Hewlett-Packard) Hidden NordVPN (HKLM-x32\...\{399A1E19-38E5-40C5-8ACD-BF007782F59A}) (Version: 6.6.11 - NordVPN) Hidden NordVPN (HKLM-x32\...\NordVPN 6.6.11) (Version: 6.6.11 - NordVPN) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.5.1 - Notepad++ Team) NVIDIA GeForce Experience 3.7.0.81 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.7.0.81 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 384.76 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 384.76 - NVIDIA Corporation) NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.7.0.81 - NVIDIA Corporation) Hidden NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.6.1.0 - NVIDIA Corporation) Hidden NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden Objets de gestion Microsoft SQL Server 2008 R2 (HKLM-x32\...\{0621170C-C584-41C8-906E-DF9D57798F6F}) (Version: 10.50.1750.9 - Microsoft Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 17.0.2 - OBS Project) OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8528.2139 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden OpenVPN 2.4.3.1-blackvpn (HKLM\...\OpenVPN) (Version: 2.4.3.1-blackvpn - ) Outils Microsoft Visual Studio 2010 ADO.NET Entity Framework (HKLM-x32\...\{3BA7E387-9401-3371-9464-5E224D243FC5}) (Version: 10.0.40219 - Microsoft Corporation) Package de pilotes Windows - Google, Inc. (WinUSB) AndroidUsbDeviceClass (08/28/2014 11.0.0000.00000) (HKLM\...\092555911492C6959D2596D612F52DCA71881CA2) (Version: 08/28/2014 11.0.0000.00000 - Google, Inc.) Panneau de configuration NVIDIA 384.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 384.76 - NVIDIA Corporation) Hidden PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden Platform (HKLM-x32\...\{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.43 - VIA Technologies, Inc.) Hidden PureVPN (HKLM-x32\...\PureVPN_is1) (Version: 5.15.1.0 - PureVPN) Ralink RT2870 Wireless LAN Card (HKLM-x32\...\{28DA7D8B-F9A4-4F18-8AA0-551B1E084D0D}) (Version: 1.5.31.3 - Ralink) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.16.323.2017 - Realtek) Revo Uninstaller 2.0.3 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.3 - VS Revo Group, Ltd.) Scan (HKLM-x32\...\{0F367CA3-3B2F-43F9-A44A-25A8EE69E45D}) (Version: 13.0.0.0 - Hewlett-Packard) Hidden Service Pack 1 pour SQL Server 2008 (KB968369) (64-bit) (HKLM\...\KB968369) (Version: 10.1.2531.0 - Microsoft Corporation) SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0380 - NVIDIA Corporation) Hidden Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP) SlimDX Runtime .NET 4.0 x64 (January 2012) (HKLM\...\{A2199A06-89C4-4187-AA4A-3A9676FB799D}) (Version: 2.0.13.43 - SlimDX Group) SlimDX Runtime .NET 4.0 x86 (January 2012) (HKLM-x32\...\{7EBD0E43-6AC0-4CA8-9990-00E50069AD29}) (Version: 2.0.13.43 - SlimDX Group) SmartWebPrinting (HKLM-x32\...\{68A10D12-0D0F-4212-BDE6-D87FAD32A8FA}) (Version: 130.0.373.000 - Hewlett-Packard) Hidden Sql Server Customer Experience Improvement Program (HKLM\...\{2F14965D-567B-4E59-ADEB-0A2CC1E3ADDF}) (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Status (HKLM-x32\...\{AE8705FB-E13C-40A9-8A2D-68D6733FBFC2}) (Version: 130.0.373.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) stunnel installed for AllUsers (HKLM-x32\...\stunnel) (Version: 5.42 - Michal Trojnara) Switch VPN (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\{dc857204-1ba3-46e5-8f30-36b60404e54b}) (Version: 1.0.0 - Switch VPN) TAP-NordVPN 9.21.2 (HKLM\...\TAP-NordVPN) (Version: 9.21.2 - NordVPN.com) TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - ) TeamSpeak 3 Client (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) Toolbox (HKLM-x32\...\{6BBA26E9-AB03-4FE7-831A-3535584CA002}) (Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (HKLM-x32\...\{DC0A5F99-FD66-433F-9D3A-05DCBA64BE42}) (Version: 130.0.376.000 - Hewlett-Packard) Hidden VIA Gestionnaire de périphériques de plate-forme (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.43 - VIA Technologies, Inc.) Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 FRA (HKLM-x32\...\{D60023FA-3DF1-4537-93DD-13024CC4E366}) (Version: 4.0.8080.0 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) WebReg (HKLM-x32\...\{43CDF946-F5D9-4292-B006-BA0D92013021}) (Version: 130.0.132.017 - Hewlett-Packard) Hidden WebTorrent (HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\WebTorrent) (Version: 0.17.2 - WebTorrent, LLC) Whoer 1.0.0.3 (HKLM\...\Whoer) (Version: 1.0.0.3 - My company name) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windscribe version 1.70 build 4 (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.70 build 4 - Windscribe) Wirecast (HKLM-x32\...\{EE103B3D-655B-478E-9B6A-C030ECFD1D7B}) (Version: 6.0.7 - Telestream LLC) Xilisoft Convertisseur Vidéo Ultimate (HKLM-x32\...\Xilisoft Convertisseur Vidéo Ultimate) (Version: 7.8.10.20150812 - Xilisoft) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2017-06-18] () ContextMenuHandlers1: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2017-10-26] (AO Kaspersky Lab) ContextMenuHandlers2: [ACShell] -> {D3F9A525-8824-497A-BE36-B23E22F141FC} => C:\Program Files\Attribute Changer\acshell.dll [2017-07-28] (Romain Petges) ContextMenuHandlers2: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2017-10-26] (AO Kaspersky Lab) ContextMenuHandlers3: [ACShell] -> {D3F9A525-8824-497A-BE36-B23E22F141FC} => C:\Program Files\Attribute Changer\acshell.dll [2017-07-28] (Romain Petges) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes) ContextMenuHandlers4: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2017-10-26] (AO Kaspersky Lab) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-06-27] (NVIDIA Corporation) ContextMenuHandlers6: [Kaspersky Anti-Virus 18.0.0] -> {FF48AD48-74C7-4260-B385-FAEB80947450} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\x64\ShellEx.dll [2017-10-26] (AO Kaspersky Lab) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-08-30] (Malwarebytes) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {12633F1E-B183-45B6-9621-6E8588D06F97} - System32\Tasks\GyazoUpdateTaskMachine => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {15EC04BB-F673-422B-BF93-04AF7005ACA7} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-06-21] (NVIDIA Corporation) Task: {181F4941-6D8B-478F-9495-F099B7CF0342} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-esref200@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04] (Adobe Systems Incorporated) Task: {18A5E644-1B65-4769-B8CB-AE5CEFC47A61} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-06-21] (NVIDIA Corporation) Task: {3C6795A4-7976-4534-A085-7F454CB6ADCA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-02-14] (Apple Inc.) Task: {3F2E1455-1800-4969-B216-922C12C2A751} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-12] (Microsoft Corporation) Task: {5547E480-F3E9-4994-9D02-4561F451C007} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-28] () Task: {5662BCFE-B833-4A31-9DE3-97EFB5F9F8F1} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-10-12] (Microsoft Corporation) Task: {5CCCEF43-6E80-4E9F-ABA8-C8557B1DC5B1} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-06-21] (NVIDIA Corporation) Task: {5FAA374A-E45E-412A-BFAF-B827C58BB7E4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-10-20] (Microsoft Corporation) Task: {6C9EE049-3BB7-4D07-A532-06B5204ACBE4} - System32\Tasks\KMSAutoNet => C:\ProgramData\KMSAutoS\KMSAuto Net.exe [2016-07-17] (MSFree Inc.) Task: {6E77E257-720F-4354-847E-0EBA447B77DC} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-06-21] (NVIDIA Corporation) Task: {8BBBA5DB-9957-48BE-8CAA-C6B7FFF6FA4E} - System32\Tasks\S-1-5-21-2655898022-3762602618-2283372909-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-03-18] (Microsoft Corporation) Task: {903CD83E-8A52-4EC1-863F-35E8CA95DE35} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-06-21] (NVIDIA Corporation) Task: {91ABB11A-1A66-4144-80F8-D30A07C52C19} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-06-21] (NVIDIA Corporation) Task: {99F86369-00DE-45EA-A442-F3CA43EDF8F3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-26] (Google Inc.) Task: {9A75824C-A3BD-4F1B-BF84-6FDBD5EB98A9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-10-20] (Microsoft Corporation) Task: {AA1EBB65-C27B-4A49-9E75-DA3ACEDC3A87} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-28] () Task: {AC0B4DA2-AE0B-4246-B10F-3E91C9FF504A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-06-21] (NVIDIA Corporation) Task: {B95EC1EC-F307-471E-92B4-4A099879F55B} - System32\Tasks\GyazoUpdateTaskMachineDaily => C:\Program Files (x86)\Gyazo\GyazoUpdate.exe [2017-05-16] () Task: {C0FAE4D3-8AC7-478E-A5DC-22387D2701BE} - System32\Tasks\HPCeeScheduleForEsref => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {DE87C77B-C579-4D1D-B8C6-9403E2488A8C} - System32\Tasks\{8FE8D3F8-6E0A-49CF-BF56-092794367362} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Nuclear Coffee\DiscRipper\unins000.exe" Task: {EC6E69BD-C258-4457-A399-F41F4D471C0B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-06-21] (NVIDIA Corporation) Task: {F28830EE-FDB8-4726-996F-DCEBD7A38C68} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-10-26] (Google Inc.) Task: {F852CB75-8204-41B4-A749-BA9B2D381770} - System32\Tasks\{549CEA73-B04A-4C1C-9C64-9F80A4941625} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{556BEFE2-30FF-4113-98F4-01234396DF2B}\Install.exe" -c -uninst -l0x40C Task: {FF87C8D8-CBDD-472A-8880-7D1A23C6A9FD} - System32\Tasks\HMA! Pro VPN Update => C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [2017-10-18] (Privax Limited) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\HPCeeScheduleForEsref.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\Helium Backup.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gpglbgbpeobllokpmeagpoagjbfknanl ShortcutWithArgument: C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\Torrent Stream.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=icocmgpofpimcojhefbcfbdldkmndpgj ShortcutWithArgument: C:\Users\Asus\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\b42be1c9c51179ef\fatma - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 7" ==================== Modules chargés (Avec liste blanche) ============== 2016-09-11 14:16 - 2017-06-21 09:07 - 001267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-05-09 00:44 - 2017-05-09 00:44 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-05-09 00:44 - 2017-05-09 00:44 - 001354040 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-10-25 22:25 - 2017-10-04 13:15 - 002358728 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-10-25 22:25 - 2017-10-04 13:15 - 002289096 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2017-10-10 12:51 - 2017-10-10 12:51 - 000331264 _____ () C:\Program Files (x86)\ExpressVPN\bootstrap\AMD64\nssm.exe 2017-10-10 12:53 - 2017-10-10 12:53 - 009410688 _____ () C:\Program Files (x86)\ExpressVPN\xvpnd\xvpnd.exe 2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-06-18 23:44 - 2017-06-18 23:44 - 000230064 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2016-06-27 17:22 - 2016-06-27 17:22 - 000052912 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll 2017-03-18 22:59 - 2017-03-20 07:11 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-10-03 10:37 - 2017-10-03 10:38 - 000087552 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.4.711.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-10-03 10:37 - 2017-10-03 10:38 - 000206336 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.4.711.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-10-26 00:40 - 2017-10-17 10:08 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.62\libglesv2.dll 2017-10-26 00:40 - 2017-10-17 10:08 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.62\libegl.dll 2017-10-18 14:42 - 2017-10-18 14:42 - 000058936 _____ () C:\Program Files (x86)\HMA! Pro VPN\module_lifetime.dll 2017-10-18 14:42 - 2017-10-18 14:42 - 000244480 _____ () C:\Program Files (x86)\HMA! Pro VPN\tasks_core.dll 2017-10-18 14:42 - 2017-10-18 14:42 - 000152592 _____ () C:\Program Files (x86)\HMA! Pro VPN\network_notifications.dll 2017-10-18 14:42 - 2017-10-18 14:42 - 000084896 _____ () C:\Program Files (x86)\HMA! Pro VPN\WinUtils.dll 2017-10-18 14:42 - 2017-10-18 14:42 - 000238728 _____ () C:\Program Files (x86)\HMA! Pro VPN\event_routing_rpc.dll 2017-10-10 12:54 - 2017-10-10 12:54 - 000447616 _____ () C:\Program Files (x86)\ExpressVPN\xvpnd\windows\ExpressVPN.FilterManager.dll 2017-09-19 02:23 - 2017-09-19 02:23 - 000107008 _____ () C:\Program Files (x86)\stunnel\bin\ZLIB1.dll 2016-09-11 14:16 - 2017-06-21 09:07 - 001040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2016-07-25 19:45 - 2013-09-23 16:48 - 001210672 _____ () C:\Program Files (x86)\Ralink\Common\RaWLAPI.dll 2017-10-26 00:51 - 2017-10-26 00:51 - 000836968 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 18.0.0\kpcengine.2.3.dll 2017-10-26 00:52 - 2017-10-26 00:52 - 001105704 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\KasperskyLab.Ksde.NativeInterop.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\WINDOWS\system32\Drivers\ptxconfm.sys:changelist [850] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-07-12 02:33 - 2017-10-08 11:51 - 000000917 _____ C:\WINDOWS\system32\Drivers\etc\hosts 0.0.0.0 www.mefeedia.com 0.0.0.0 www.mefeedia.com 0.0.0.0 delivery.anchorfree.us/land.php ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\{2b5da773-9eb0-4c79-8021-f918a9c47bfb}.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Chromium" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Gyazo" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Windscribe" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Dashlane" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "DashlanePlugin" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "SlitherIO" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "Test" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "CyberGhost" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "ExpressVPN4" HKU\S-1-5-21-2655898022-3762602618-2283372909-1001\...\StartupApproved\Run: => "NordVPN" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{FF07E7B8-020F-45E3-8960-40762E8997F7}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A447DDD0-45C6-4FB1-A0A0-B3D373536019}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6E0B2BC0-A465-4C25-BAFD-D98BC950C158}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{2FD58147-8FE0-4765-BA87-F00448613B35}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{EBE233C6-1890-402C-A942-CA3797184704}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B5C18FCB-3DCE-46D2-AFD6-88594DD0EC2A}] => (Allow) C:\Users\Asus\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{99879F82-5EA0-4980-801F-32665A6AD815}] => (Block) %ProgramFiles% (x86)\Movavi Video Suite 16\Suite.exe FirewallRules: [{B6C4D59E-3209-4319-9700-CD19D967E5B4}] => (Block) %ProgramFiles% (x86)\Movavi Video Suite 16\Suite.exe FirewallRules: [{0A9DE72E-E7AD-4C56-9782-9620363CB6D7}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{3917B443-1AB1-417D-81C9-74F99D7661F0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [UDP Query User{9577797A-FEB6-47DB-AEF4-C88D1CB85C70}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [TCP Query User{27ED095A-75AD-40C2-8C13-41279B1AB12E}C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe] => (Block) C:\program files (x86)\java\jre1.8.0_111\bin\javaw.exe FirewallRules: [{682FABD6-E192-4E68-9717-CEFFE4371E61}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{67B0949C-8CC2-4E2C-A967-742532A7E671}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{AC3A2278-3FD2-4118-B853-220365CB2212}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{4C80D22A-3F6A-4DAC-BACD-BC6BC87276BC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{93564931-DA88-498C-9EC9-78358D9C2DE5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{46CA3938-3664-4900-891C-0F63009C5C28}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{EC26D34D-283B-4407-9A6F-115D373F3AFA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{C3E28223-CB32-46FD-B130-45455DCB9A6F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{7538EC43-3388-49F8-89E0-58AC9DD8D9C9}C:\users\asus\appdata\local\webtorrent\app-0.17.2\webtorrent.exe] => (Allow) C:\users\asus\appdata\local\webtorrent\app-0.17.2\webtorrent.exe FirewallRules: [TCP Query User{F2233CBE-3AF0-48FB-A1C1-590C0AEC41FE}C:\users\asus\appdata\local\webtorrent\app-0.17.2\webtorrent.exe] => (Allow) C:\users\asus\appdata\local\webtorrent\app-0.17.2\webtorrent.exe FirewallRules: [{80583EA6-2090-4EBB-848F-46BA17E53D2E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{95FB9AE2-D7BD-49CA-8482-16259F7DEB46}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [UDP Query User{0474E343-8349-4AB4-8796-3BE0C0BC7697}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{3099B4BA-2940-4FB2-B4E9-945DF4184005}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{A330898A-EB32-43DB-8043-917702FFA1AD}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{8C1D665A-373C-4AE9-9E65-59ECE57B280D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{A175C067-20C1-45D7-9466-1ED97814A14D}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C80905AC-5024-4D89-9DB1-3A7718C9964B}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{B742AF9D-2B62-4886-A07A-73C37FEB57C9}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{A089C239-5A89-4120-AECA-C68CD346DEB6}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{52EA3F3E-D6AA-475F-AC4B-DBE80D08432C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe FirewallRules: [{9C919C44-9F7B-4E9C-9071-6C8BB6A7386E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe FirewallRules: [{D1717B62-1E7E-4C95-96BA-3A96D2DEF1BE}] => (Allow) LPort=8318 FirewallRules: [{7C9FE5BD-6530-4FE7-BBD1-0EFE78FF80E0}] => (Block) %ProgramFiles%\TechSmith\Camtasia 9\CamtasiaStudio.exe FirewallRules: [{CFF5DAF1-313F-4A43-882E-D9B01EF00B8F}] => (Block) %ProgramFiles%\TechSmith\Camtasia 9\CamtasiaStudio.exe FirewallRules: [{667E8B65-FC7E-4F7C-92C3-0C716E3014E1}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe FirewallRules: [{761D9874-7CF9-4E7E-B22D-A994AAF77FEA}] => (Allow) C:\Program Files (x86)\Apowersoft\ApowerMirror\ApowerMirror.exe FirewallRules: [TCP Query User{CDD64B6E-F6AF-432E-B7E9-B343F0EA2DD9}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe FirewallRules: [UDP Query User{077DD7BA-55DB-4CA8-B2F3-6C0AA5D5D576}C:\program files\bitcoin\bitcoin-qt.exe] => (Allow) C:\program files\bitcoin\bitcoin-qt.exe FirewallRules: [{F31C4936-3F8D-454D-A6F0-C7F297863A52}] => (Allow) C:\Program Files (x86)\FlyVPN\FlyVPN.exe FirewallRules: [{E6D8D8A9-77A1-4AEE-8CB4-D2766F24F06B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{E0CD9EF6-9188-428E-9D08-590F1BE13938}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{FF85B490-60A4-4020-86AF-73D2E749569E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{5E69CFEB-A06A-42C5-8CA0-FC9E541BBCC3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{354EF24F-70C8-4DA1-8D54-A12B401DA0AA}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{FB646F32-9CE3-4BF5-9AF9-A396F2B72382}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [TCP Query User{4CD396E9-AD6E-4EA4-9B10-C97CA5845E31}C:\users\asus\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\asus\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{E66F1EBC-ED13-45A5-8951-5F1242B313BF}C:\users\asus\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\asus\appdata\roaming\spotify\spotify.exe FirewallRules: [{5CFDB365-8D06-40D6-8C10-C23AFF72F610}] => (Allow) C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe FirewallRules: [{5D6DD1BE-5FF0-4173-98B3-A40A17D80EFF}] => (Allow) C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe FirewallRules: [{7B428F96-5F7F-4E24-9C0B-FB4B21E75056}] => (Allow) C:\Program Files (x86)\Hide My IP 6\hideipsh.exe FirewallRules: [{78383A5D-C88C-4093-95E6-060C97D38C53}] => (Allow) C:\Program Files (x86)\Hide My IP 6\hideipshp.exe FirewallRules: [{E8831CB2-1F25-4307-A9BE-FA1108A10F4D}] => (Allow) LPort=58172 FirewallRules: [{4619AF45-9C8D-4246-8840-1CCFA696D8D5}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{A403BCF6-9E13-48D4-B9A2-A5117478A318}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{E85D4BB3-599E-4467-9FD2-8F6148D45480}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{03561A30-5419-478E-B056-CD11EEC3CFE3}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe FirewallRules: [UDP Query User{64B851C5-0A8A-40D3-A9D6-B85334EF1375}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe FirewallRules: [TCP Query User{4C29561A-1F22-4C3B-AD95-AB1A92603BCF}C:\edupython\app\python.exe] => (Allow) C:\edupython\app\python.exe FirewallRules: [UDP Query User{1CDF4DD1-46D7-46B9-87C5-E7A06170BCE6}C:\edupython\app\python.exe] => (Allow) C:\edupython\app\python.exe FirewallRules: [{BE2B7F0C-D6A8-406A-AB5E-528026D41E9D}] => (Allow) C:\Program Files (x86)\stunnel\bin\stunnel.exe FirewallRules: [{CDAF8E19-2866-44A6-B5BF-E30BD3441CE0}] => (Allow) C:\Program Files (x86)\stunnel\bin\stunnel.exe FirewallRules: [{4AE9A39B-5E1B-408F-BA45-F9039F145F55}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 04-10-2017 05:02:15 Point de contrôle planifié 11-10-2017 15:07:56 Windows Update 17-10-2017 19:14:44 Windows Update 21-10-2017 23:41:26 Windows Update 23-10-2017 14:26:19 Installed NordVPN ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: ExpressVPN Tap Adapter Description: ExpressVPN Tap Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: ExpressVPN Service: tapexpressvpn Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/26/2017 12:45:59 AM) (Source: nssm) (EventID: 1018) (User: ) Description: Échec de l'ouverture de la valeur de registre AppDirectory: L’opération a réussi. Error: (10/26/2017 12:45:56 AM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (10/26/2017 12:36:00 AM) (Source: nssm) (EventID: 1018) (User: ) Description: Échec de l'ouverture de la valeur de registre AppDirectory: L’opération a réussi. Error: (10/26/2017 12:35:57 AM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (10/26/2017 12:12:55 AM) (Source: nssm) (EventID: 1018) (User: ) Description: Échec de l'ouverture de la valeur de registre AppDirectory: L’opération a réussi. Error: (10/26/2017 12:12:55 AM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (10/26/2017 12:03:07 AM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Error: (10/26/2017 12:03:07 AM) (Source: nssm) (EventID: 1018) (User: ) Description: Échec de l'ouverture de la valeur de registre AppDirectory: L’opération a réussi. Error: (10/25/2017 11:30:55 PM) (Source: nssm) (EventID: 1018) (User: ) Description: Échec de l'ouverture de la valeur de registre AppDirectory: L’opération a réussi. Error: (10/25/2017 11:30:55 PM) (Source: openvpnserv) (EventID: 0) (User: ) Description: Event-ID 0 Erreurs système: ============= Error: (10/26/2017 01:14:51 AM) (Source: DCOM) (EventID: 10016) (User: ASUS-PC) Description: Les paramètres d’autorisation par défaut de l’ordinateur n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {C2F03A33-21F5-47FA-B4BB-156362A2F239} et l’APPID {316CDED5-E4AE-4B15-9113-7055D84DCC97} au SID Asus-PC\Esref de l’utilisateur (S-1-5-21-2655898022-3762602618-2283372909-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-1861897761-1695161497-2927542615-642690995-327840285-2659745135-2630312742). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/26/2017 12:46:56 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: AUTORITE NT) Description: Une erreur s’est produite lors de la lecture du fichier d’hôtes local. Error: (10/26/2017 12:46:35 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service CG6Service n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (10/26/2017 12:46:35 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service CG6Service. Error: (10/26/2017 12:46:31 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service WsAppService. Error: (10/26/2017 12:46:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service WsDrvInst n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (10/26/2017 12:46:30 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service WsDrvInst. Error: (10/26/2017 12:46:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service hshld n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (10/26/2017 12:46:29 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service hshld. Error: (10/26/2017 12:46:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service nordvpn-service n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. CodeIntegrity: =================================== Date: 2017-10-26 00:52:04.736 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:52:04.733 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:40:19.600 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:40:19.596 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:27:43.252 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-10-26 00:27:09.575 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-10-26 00:27:09.298 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-10-26 00:17:40.705 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:17:40.702 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-10-26 00:17:38.899 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-3220T CPU @ 2.80GHz Pourcentage de mémoire utilisée: 78% Mémoire physique - RAM - totale: 4050.17 MB Mémoire physique - RAM - disponible: 857.13 MB Mémoire virtuelle totale: 6610.17 MB Mémoire virtuelle disponible: 2446.71 MB ==================== Lecteurs ================================ Drive a: (Films) (Fixed) (Total:19.53 GB) (Free:0.1 GB) NTFS Drive c: (Windows) (Fixed) (Total:962 GB) (Free:751.7 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (Manga_2) (Fixed) (Total:200 GB) (Free:194.04 GB) NTFS Drive f: (Films_2) (Fixed) (Total:79.14 GB) (Free:1.29 GB) NTFS Drive j: (Jeux) (Fixed) (Total:146.48 GB) (Free:137.1 GB) NTFS Drive m: (Mangas) (Fixed) (Total:146.48 GB) (Free:5.98 GB) NTFS Drive s: (Films_3) (Fixed) (Total:292.97 GB) (Free:36.1 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 1863 GB) (Disk ID: ABAAA326) Partition: GPT. ==================== Fin de Addition.txt ============================