Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 24-11-2017 01 Exécuté par Marlène (26-11-2017 11:21:19) Exécuté depuis C:\Users\Marlène\Downloads Windows 10 Home Version 1703 15063.726 (X64) (2017-05-21 16:32:03) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3820130000-943148644-850251480-500 - Administrator - Disabled) => C:\Users\Administrator DefaultAccount (S-1-5-21-3820130000-943148644-850251480-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3820130000-943148644-850251480-1006 - Limited - Enabled) Invité (S-1-5-21-3820130000-943148644-850251480-501 - Limited - Disabled) Marlène (S-1-5-21-3820130000-943148644-850251480-1002 - Administrator - Enabled) => C:\Users\Marlène UpdatusUser (S-1-5-21-3820130000-943148644-850251480-1001 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Kaspersky Anti-Virus (Enabled - Up to date) {86367591-4BE4-AE08-2FD9-7FCB8259CD98} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Anti-Virus (Enabled - Up to date) {3D579475-6DDE-A186-1569-44B9F9DE8725} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Anti-Virus (Disabled) {BE0DF4B4-018B-AF50-0486-D6FE7C8A8AE3} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) . . (HKLM\...\{8FD6FE5A-E1E1-47F3-BBE6-FE2B1364DCB8}) (Version: 7.1 - Intel) Hidden . . . (HKLM-x32\...\{2394186A-5445-4293-B739-352009350342}) (Version: 3.0.0.9 - Intel) Hidden Acer Device Fast-lane (HKLM\...\{3F62D2FD-13C1-49A2-8B5D-47623D9460D7}) (Version: 1.00.3011 - Acer Incorporated) Acer Instant Update Service (HKLM\...\{81C6F800-A69B-4E70-9DC0-74732F8B00E7}) (Version: 1.00.3015 - Acer Incorporated) Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3013 - Acer Incorporated) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated) AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated) AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2021 - Acer Incorporated) Adblock Plus pour IE (32-bits et 64-bits) (HKLM\...\{1C9A24E0-CA21-414D-8D21-22BF8981FC9F}) (Version: 1.5 - Eyeo GmbH) Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 2.5.0.367 - Adobe Systems Incorporated) Adobe Flash Player 25 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated) Akamai NetSession Interface (HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\Akamai) (Version: - Akamai Technologies, Inc) ALPS Touch Pad Driver (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 8.100.2020.212 - Alps Electric) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.05 - NVIDIA Corporation) Hidden Aureas v10 (HKLM-x32\...\Aureas10_is1) (Version: 10.0 - Aureas Paris) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 2.2.12.0 - Autodesk) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) calibre (HKLM-x32\...\{BDE6D02A-86B7-4D4C-8248-7705C1C0CC79}) (Version: 2.78.0 - Kovid Goyal) CCleaner (HKLM\...\CCleaner) (Version: 5.22 - Piriform) Cisco WebEx Meetings (HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\ActiveTouchMeetingClient) (Version: - Cisco WebEx LLC) clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated) clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated) clear.fi SDK - Video 2 (HKLM-x32\...\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}) (Version: 2.1.2606 - CyberLink Corp.) Hidden clear.fi SDK- Movie 2 (HKLM-x32\...\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}) (Version: 2.1.2606 - CyberLink Corp.) Hidden Crochet Charts (HKLM-x32\...\Crochet Charts) (Version: 1.2 - Stitch Works Software) CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3729_45993 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAZ Content Management Service (HKLM-x32\...\DAZ Content Management Service 4.8.1.7) (Version: 4.8.1.7 - DAZ 3D) DAZ Install Manager (HKLM-x32\...\DAZ Install Manager 1.1.0.41) (Version: 1.1.0.41 - DAZ 3D) DAZ Studio 4.6 (64bit) (HKLM-x32\...\DAZ Studio 4.6 (64bit) 4.6.2.118) (Version: 4.6.2.118 - DAZ 3D) DB Browser for SQLite (HKLM-x32\...\DB Browser for SQLite) (Version: 3.9.1 - DB Browser for SQLite Team) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.17 - Dolby Laboratories Inc) DSON Importer for Poser (64bit) (HKLM-x32\...\DSON Importer for Poser (64bit) 1.1.2.117) (Version: 1.1.2.117 - DAZ 3D) eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM) Galerie de photos Windows Live (HKLM-x32\...\{488F0347-C4A7-4374-91A7-30818BEDA710}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.) Google Earth Pro (HKLM-x32\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden Heredis 2017 (HKLM\...\Heredis 2017_is1) (Version: 17 - BSD Concept) Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3006 - Acer Incorporated) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4653 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel® Driver & Support Assistant (HKLM-x32\...\{01f3f6b8-1a81-4b10-b51f-f69af12e1d69}) (Version: 3.0.0.9 - Intel) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Anti-Virus (HKLM-x32\...\{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab) Hidden Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab) Launch Manager (HKLM-x32\...\LManager) (Version: 7.0.10 - Acer Inc.) Lecteur d'enregistrement en réseau (HKLM-x32\...\{97019244-69BC-4BA0-A045-757AE01EB17C}) (Version: 31.1.6.6 - Cisco WebEx LLC) Les Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.36.102.1020 - Electronic Arts Inc.) LibreOffice 5.1.6.2 (HKLM-x32\...\{3D18F833-5EEE-4221-96CE-BC9488780EE3}) (Version: 5.1.6.2 - The Document Foundation) Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3010 - Acer Incorporated) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Office Excel Viewer (HKLM-x32\...\{95120000-003F-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation) Mises à jour NVIDIA 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation) monAlbumPhoto (HKLM-x32\...\monAlbumPhoto_is1) (Version: 6.5.1.3 - monAlbumPhoto) NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation) NVIDIA Pilote graphique 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer) Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2008 - Acer) OpenOffice 4.0.1 (HKLM-x32\...\{8D5D54B8-3D29-4AB4-8DA8-1868DAF941D8}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 10.5.5.6040 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 382.05 - NVIDIA Corporation) Hidden PDF-XChange 2012 (HKLM\...\{504022CD-6A58-42D5-ACC9-966F695AAD93}_is1) (Version: 5.5.314.0 - Tracker Software Products Ltd) PhotoFiltre 7 (HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\PhotoFiltre 7) (Version: - ) PortraitPro 15.4 Trial (HKLM-x32\...\PortraitPro15Trial_is1) (Version: 15.4 - Anthropics Technology Ltd.) Poser 10 version 10.0.5 (HKLM-x32\...\Poser 10_is1) (Version: 10.0.5 - Smith Micro Software, Inc.) Poser 9 (HKLM-x32\...\Poser 9_is1) (Version: 9.0.0 - Smith Micro Software, Inc.) PoserContent2014 (HKLM\...\PoserContent2014_is1) (Version: 10.0.0 - Smith Micro Software, Inc.) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.220 - Qualcomm Atheros Communications) Qualcomm Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.7 - Qualcomm Atheros Communications Inc.) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.41 - Qualcomm Atheros) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6833 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.8400.28124 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Smith Micro Download Manager version 1.0 (HKLM-x32\...\{89816111-4490-46FB-B141-63EA77077A94}_is1) (Version: 1.0 - Smith Micro Software, Inc.) Speccy (HKLM\...\Speccy) (Version: 1.30 - Piriform) Tarots Sandrine Millet v2 (HKLM-x32\...\AurTar85_is1) (Version: - Auréas) Visual Studio 2005 Tools pour Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3820130000-943148644-850251480-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers1: [Kaspersky Anti-Virus 16.0.0] -> {C845F70F-050A-4052-81DE-587D90C20FE8} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\shellex.dll [2016-02-29] (Kaspersky Lab ZAO) ContextMenuHandlers2: [Kaspersky Anti-Virus 16.0.0] -> {C845F70F-050A-4052-81DE-587D90C20FE8} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\shellex.dll [2016-02-29] (Kaspersky Lab ZAO) ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers4: [Kaspersky Anti-Virus 16.0.0] -> {C845F70F-050A-4052-81DE-587D90C20FE8} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\shellex.dll [2016-02-29] (Kaspersky Lab ZAO) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-05-18] (Intel Corporation) ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\WINDOWS\system32\igfxOSP.dll [2017-05-18] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation) ContextMenuHandlers6: [Kaspersky Anti-Virus 16.0.0] -> {C845F70F-050A-4052-81DE-587D90C20FE8} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\shellex.dll [2016-02-29] (Kaspersky Lab ZAO) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {06A1BD51-BB88-4BDB-847B-A2618D2DDE1C} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {0801E327-BA73-4823-BEE1-D5ACE7EDFED1} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {10FC2A77-2050-4B95-AA8F-2EEEC249DAC5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {1D87303C-D42A-48B9-B3A6-075BB7E03F3D} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {231AF3A2-7408-4514-B216-F794A98F6805} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {2E03CC48-20DE-4A18-A7F6-426297B693B7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated) Task: {34B5F279-7DA5-4330-87BD-89D99E9ECCBA} - System32\Tasks\iuBrowserIEAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe [2013-02-08] () Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {35AB068A-60B1-4F7F-848C-7E37C6E048BD} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2013-02-08] (CyberLink) Task: {3E3D42F7-D7A8-4874-A0E8-CD1F554D70D3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2016-08-26] (Piriform Ltd) Task: {56F8B82F-49EA-4E37-9B99-0C05FEA47C6E} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2017-10-11] (Microsoft Corporation) Task: {662B1610-1077-49CD-B35E-57F9C54E6D35} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs" Task: {7336CB9B-E58B-4337-B0D3-01C51DA059C1} - \Microsoft\Windows\Setup\GWXTriggers\Logon-URT -> Pas de fichier <==== ATTENTION Task: {A72105C8-6799-469F-B016-622B4C0C99C1} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {AB030C9F-EBD3-4369-951A-93017D7A2DBC} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-05-25] (Adobe Systems Incorporated) Task: {ACB0520E-4F90-4DF3-B426-8A47466EABAC} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {AEE44BB1-C393-4566-AA01-FCABFD52C5F3} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {B04F1A91-A235-4AC4-920A-879E9B0C40E1} - System32\Tasks\Dolby Selector => C:\Dolby PCEE4\pcee4.exe [2017-05-21] (Dolby Laboratories Inc.) Task: {B0EE8F5F-E5BA-4541-8F68-3AB960541F4A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {BA35C6DA-B4EC-47A3-87B1-BEE7356FB6C2} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {BE6F6EEF-EE50-48BA-AA22-7970FD5AD3FE} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {C0983EC8-5A09-48D2-BAC5-72201ACD5687} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.) Task: {C4E0175C-D540-4C74-9A34-3043975D28CF} - \WPD\SqmUpload_S-1-5-21-3820130000-943148644-850251480-1002 -> Pas de fichier <==== ATTENTION Task: {D94CFF4C-A713-4825-9F9E-09DA961ED5B8} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-03-13] () Task: {D9B313DA-8103-4F47-A417-147527C4920C} - System32\Tasks\iuEmailOutlookAgent => C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe [2013-02-08] () Task: {E1C8DA72-8BAB-461A-B87F-C3F57FB424BA} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {F37321A3-E50A-4D5F-958E-596FC0493C1F} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-15] (Acer Incorporated) Task: {F445B4EE-FF5C-412F-B093-3A387E8AF118} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] () Task: {F6BF7533-6B5E-41FD-ACCC-2DF6B037DEB1} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2016-03-17] (Intel Corporation) Task: {FCE08FCE-F8A4-4A74-B393-1E05DEE4F248} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Marlène\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAZ 3D\DAZStudio4\Online Documentation.lnk -> hxxp:docs.daz3d.com\doku.php\public\software\dazstudio Shortcut: C:\Users\Marlène\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DAZ 3D\DAZ Install Manager\DAZ Install Manager Read Me.lnk -> hxxp:docs.daz3d.com\doku.php\public\read_me\index\14811 ==================== Modules chargés (Avec liste blanche) ============== 2014-03-29 15:22 - 2011-05-05 21:36 - 000022528 _____ () C:\Program Files\DAZ 3D\Content Management Service\ContentManagementServer.exe 2014-03-29 15:22 - 2011-05-05 21:36 - 001479680 _____ () C:\Program Files\DAZ 3D\Content Management Service\ace_x64.dll 2014-03-29 15:22 - 2011-05-05 21:36 - 000977408 _____ () C:\Program Files\DAZ 3D\Content Management Service\VServer_x64.dll 2014-03-29 15:22 - 2011-05-05 21:36 - 000155136 _____ () C:\Program Files\DAZ 3D\Content Management Service\asnmp_x64.dll 2014-03-29 15:22 - 2011-05-05 21:36 - 001053696 _____ () C:\Program Files\DAZ 3D\Content Management Service\ace_ssl_x64.dll 2017-11-11 12:07 - 2017-03-07 19:15 - 000824592 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe 2017-11-11 12:07 - 2017-03-07 19:18 - 001981712 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_modeler.dll 2017-11-11 12:07 - 2017-03-07 19:10 - 000248080 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\acpi_battery_input.dll 2017-11-11 12:07 - 2017-03-07 19:09 - 000213776 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\wifi_input.dll 2017-11-11 12:07 - 2017-03-07 19:10 - 000175376 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\devices_use_input.dll 2017-11-11 12:07 - 2017-03-07 19:09 - 000204048 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_system_power_state_input.dll 2017-11-11 12:07 - 2017-03-07 19:08 - 000337680 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_process_input.dll 2017-11-11 12:07 - 2017-03-07 19:05 - 000148240 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_winstat_input.dll 2017-11-11 12:07 - 2017-03-07 19:05 - 000178448 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_acdc_setting_input.dll 2017-11-11 12:07 - 2017-03-07 19:10 - 000213776 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\sema_thermal_input.dll 2017-11-11 12:07 - 2017-03-07 19:06 - 000229648 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_quality_and_reliability_input.dll 2017-11-11 12:07 - 2017-03-07 19:07 - 000225040 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_sampler_input.dll 2017-11-11 12:07 - 2017-03-07 19:05 - 000212752 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_stress_odometer_input.dll 2017-11-11 12:07 - 2017-03-07 19:07 - 000220432 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_turbo_input.dll 2017-05-21 16:52 - 2017-05-01 21:51 - 000133752 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2013-07-03 12:39 - 2013-02-20 21:58 - 000111176 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll 2017-03-20 06:12 - 2017-03-20 06:12 - 000071680 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.204.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-03-20 06:12 - 2017-03-20 06:12 - 000176640 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.204.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-03-20 06:12 - 2017-03-20 06:12 - 035234304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.8.204.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2016-08-26 19:25 - 2016-08-26 19:25 - 000069632 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2017-11-11 12:07 - 2017-03-07 19:13 - 000747792 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\esrv.exe 2017-11-11 12:07 - 2017-03-07 19:11 - 000238864 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\foreground_window_input.dll 2017-11-11 12:07 - 2017-03-07 19:08 - 000218384 _____ () C:\Program Files\Intel\SUR\QUEENCREEK\intel_user_waiting_input.dll 2017-11-14 17:01 - 2017-11-10 10:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll 2017-11-14 17:01 - 2017-11-10 10:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3820130000-943148644-850251480-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Marlène\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "Apoint" HKLM\...\StartupApproved\Run: => "RtHDVCpl" HKLM\...\StartupApproved\Run: => "RtHDVBg_Dolby" HKLM\...\StartupApproved\Run32: => "Norton Online Backup" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "ADSKAppManager" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe" HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\StartupApproved\Run: => "Akamai NetSession Interface" HKU\S-1-5-21-3820130000-943148644-850251480-1002\...\StartupApproved\Run: => "OneDrive" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{388CE9A7-07AD-41A5-9021-8BE0801BDF5B}C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe FirewallRules: [TCP Query User{DE227681-01C6-4197-B35B-C936ADB41CFC}C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe FirewallRules: [UDP Query User{9619B651-E3A8-4042-9413-A71B67917295}C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe FirewallRules: [TCP Query User{FF61EE2A-CBFC-4A78-9777-B4EC27963BF3}C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2017\heredis17.exe FirewallRules: [{210AB662-DDC2-4353-BA91-DD0FE5533C89}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{FA249D05-4C7F-4EE9-8A9C-A787144DF001}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{AE2A8400-DF3F-485E-B8C1-70CC614F0E98}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D7E3E1E4-AB53-45D7-AAE0-2065FF61A9B8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{B7EFA814-172A-41FE-ABB0-C120F2F9AF7F}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F0D12405-E5E3-4CBD-9D3A-E226554FB790}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6675F12C-9B2C-4588-BEF2-37020D051FF3}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{072EAC99-58DB-44B7-B37D-A498F3E575A4}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{8EFAC950-DA80-4848-B35A-B60883925FF2}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B7CEBE95-622C-4138-A7F1-3A546232A3EB}] => (Allow) C:\Users\Marlène\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [UDP Query User{E9285809-24D6-4A4E-8394-710F03878511}C:\program files (x86)\smith micro\poser 10\poser.exe] => (Allow) C:\program files (x86)\smith micro\poser 10\poser.exe FirewallRules: [TCP Query User{36AB78B4-E344-4445-A8DC-9563E298DBA3}C:\program files (x86)\smith micro\poser 10\poser.exe] => (Allow) C:\program files (x86)\smith micro\poser 10\poser.exe FirewallRules: [UDP Query User{D2A4E9D8-EDD5-4BC9-AD4E-EC7E1A875781}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{A94DCDC9-D10A-4448-848A-60A494A13F21}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{E0E710AE-3E7D-42A3-9E60-0542A6C8A9C2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{8B5452D0-9CCA-4CB7-AC33-ABF7DE7EE7F2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{9FAE0CA2-3EAA-4EBF-9469-72599B9BBA36}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{353AC91B-54C1-480A-9162-D875A6BFDBEA}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{FE4FE706-3CD7-4F77-AB3A-B70752F01B42}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{B7FE1EC4-2261-4DEC-B90E-76911BE98757}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{122967DF-DA7A-4CA2-ABE8-3797733ECA29}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{8FA9AEF1-E64B-46FB-97DB-B63A957B072F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{C25B2F9D-E4B2-4EE8-AEA6-DE45CA715C7E}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{433FFA70-CE35-4746-828C-F3639C1EE98C}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{9749E712-8160-4B2A-9D03-4890B41C6D89}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe FirewallRules: [{9F697B34-E24F-4165-889D-31798C4F711B}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{EE42C4E7-3EDE-43BD-8C30-F80289380978}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{AF862C75-5A29-40EA-B2D8-BFC6015C7C38}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{C69AF7A8-F6EA-4563-8AFA-E96DCDCBBBE1}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{17C3E8A8-BB41-4D69-A612-1703F04CD74A}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{E26C5ABB-9127-44FA-B66C-519DBBB139C0}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe FirewallRules: [{0CB66617-FE90-45B4-8595-CA48DB7AAC4C}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe FirewallRules: [{30066E7F-FDAC-466D-B6D0-3DF0D564E02E}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe FirewallRules: [{9F6B0F76-457F-46A0-AA40-1F8B19B891E3}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe FirewallRules: [{0BD3342B-C3FF-459B-BAA7-C811FC87D787}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe FirewallRules: [{50A241FE-BBFA-448D-A855-9771DD928140}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2E07D06C-3F3E-4307-BC39-303044546843}] => (Allow) LPort=2869 FirewallRules: [{7F000C57-DF36-407A-B64A-12834BD68181}] => (Allow) LPort=1900 FirewallRules: [TCP Query User{66628063-4EA9-49A9-9E5C-8E4E27FE7D4C}C:\users\marlène\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marlène\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{05A255B0-3D51-4647-A8E7-748BDBEFB798}C:\users\marlène\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marlène\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{FE881CD5-CD00-4579-B966-65DE122D9C7C}C:\program files (x86)\smith micro\poser 9\poser.exe] => (Allow) C:\program files (x86)\smith micro\poser 9\poser.exe FirewallRules: [UDP Query User{6EFC97E6-423B-4055-B9AA-76419CF0184B}C:\program files (x86)\smith micro\poser 9\poser.exe] => (Allow) C:\program files (x86)\smith micro\poser 9\poser.exe FirewallRules: [TCP Query User{7E7BB142-98A0-4546-B167-5120B7402DFE}C:\users\marlène\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marlène\appdata\local\akamai\netsession_win.exe FirewallRules: [UDP Query User{FE712BAC-1090-4A7B-9D81-BA1D37FA8419}C:\users\marlène\appdata\local\akamai\netsession_win.exe] => (Block) C:\users\marlène\appdata\local\akamai\netsession_win.exe FirewallRules: [TCP Query User{1037D6EE-23D8-4AFD-966A-2950869FFD11}C:\program files (x86)\bsd concept\heredis 2015\heredis15.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2015\heredis15.exe FirewallRules: [UDP Query User{3C0E78A6-2F48-47A3-BC4E-2A35E6CB5EEB}C:\program files (x86)\bsd concept\heredis 2015\heredis15.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2015\heredis15.exe FirewallRules: [{753CA086-D537-46BF-A73A-44D1E239013F}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{400DA3DF-FDFF-474B-8C49-4638B61FAC01}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{E9D57BE9-F987-49E1-976C-FCFC2219038D}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{992F859A-2E28-42E2-8D45-652D9AF4E690}] => (Allow) C:\ProgramData\BlueStacksGameManager\OBS\HD-OBS.exe FirewallRules: [{EF0C1292-624A-4016-B14D-FE120BB6DBEC}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{FA19CDCD-90FE-4313-ACA6-792ADA78AD6C}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4.exe FirewallRules: [{84947324-3719-446A-B704-6A719CD75AA5}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{6C1FA61B-5872-43BC-A94E-7B98D62FB563}] => (Allow) C:\Program Files (x86)\Origin Games\The Sims 4\Game\Bin\TS4_x64.exe FirewallRules: [{08800916-392D-41AC-8378-E41729AD4E7E}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 16-11-2017 17:43:25 Removed LibreOffice 5.1.6.2 23-11-2017 18:57:45 Windows Update 26-11-2017 10:20:57 avant désinfection ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/25/2017 06:15:37 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15515 Error: (11/25/2017 06:15:37 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15515 Error: (11/25/2017 06:15:37 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/25/2017 05:44:26 PM) (Source: MsiInstaller) (EventID: 1024) (User: ACER) Description: Produit : Adobe Acrobat Reader DC - La mise à jour ‘{AC76BA86-7AD7-0000-2550-AC0F174E6600}’ n’a pas pu être installée. Code d’erreur 1625. Windows Installer peut créer des journaux pour faciliter la résolution des éventuelles erreurs d’installation des packages logiciels. Utilisez le lien suivant pour afficher des instructions concernant l’activation des journaux : http://go.microsoft.com/fwlink/?LinkId=23127 Error: (11/25/2017 04:41:48 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ACER) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147009265 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/25/2017 04:40:08 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ACER) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147009265 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/25/2017 04:09:54 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ACER) Description: Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2147009265 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/25/2017 04:09:20 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: ACER) Description: Échec de l’activation de l’application Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2147009280 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error: (11/25/2017 04:09:03 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: ACER) Description: Le package Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy+App a été interrompu, car sa suspension a été trop longue. Error: (11/25/2017 04:09:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante ShellExperienceHost.exe, version : 10.0.15063.0, horodatage : 0x58ccbd2e Nom du module défaillant : StartUI.dll, version : 10.0.15063.502, horodatage : 0x597abae6 Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000020fcab ID du processus défaillant : 0x23bc Heure de début de l’application défaillante : 0x01d365ff4e32903b Chemin d’accès de l’application défaillante : C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Chemin d’accès du module défaillant: C:\Windows\ShellExperiences\StartUI.dll ID de rapport : c7d2250e-0bf7-4d1f-b979-f512c4639ff4 Nom complet du package défaillant : Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Erreurs système: ============= Error: (11/26/2017 09:58:50 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Service pour utilisateur de plateforme d’appareils connectés_47e5124 s’est arrêté avec l’erreur : Erreur non spécifiée Error: (11/25/2017 04:41:48 PM) (Source: DCOM) (EventID: 10001) (User: ACER) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXfbn8w4s0jbk3tjevpcn9kaxerc6rby8k.mca en tant que Non disponible/Non disponible. L’erreur « 15631 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (11/25/2017 04:40:08 PM) (Source: DCOM) (EventID: 10001) (User: ACER) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXfbn8w4s0jbk3tjevpcn9kaxerc6rby8k.mca en tant que Non disponible/Non disponible. L’erreur « 15631 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (11/25/2017 04:09:54 PM) (Source: DCOM) (EventID: 10001) (User: ACER) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXfbn8w4s0jbk3tjevpcn9kaxerc6rby8k.mca en tant que Non disponible/Non disponible. L’erreur « 15631 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca Error: (11/25/2017 04:09:20 PM) (Source: DCOM) (EventID: 10001) (User: ACER) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.ShellExperienceHost_10.0.15063.675_neutral_neutral_cw5n1h2txyewy!App en tant que Non disponible/Non disponible. L’erreur « 15616 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca Error: (11/25/2017 04:07:36 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Service pour utilisateur de plateforme d’appareils connectés_3112ae s’est arrêté avec l’erreur : Erreur non spécifiée Error: (11/25/2017 04:01:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Service pour utilisateur de plateforme d’appareils connectés_a1fbf s’est arrêté avec l’erreur : Erreur non spécifiée Error: (11/25/2017 03:59:23 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service CDPSvc. Error: (11/25/2017 03:58:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service SystemUsageReportSvc_QUEENCREEK n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (11/25/2017 03:58:50 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service SystemUsageReportSvc_QUEENCREEK. CodeIntegrity: =================================== Date: 2017-11-26 11:05:15.797 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-26 10:12:31.461 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-26 09:59:27.898 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\plugins_meta.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-26 09:59:26.625 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\kl_service.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-26 09:59:26.417 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\kl_service.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-25 18:14:28.478 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-25 17:02:43.224 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-25 16:37:50.729 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-25 16:31:52.250 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-25 15:43:22.049 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 16.0.0\x64\remote_eka_prague_loader.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-3632QM CPU @ 2.20GHz Pourcentage de mémoire utilisée: 57% Mémoire physique - RAM - totale: 5962.27 MB Mémoire physique - RAM - disponible: 2558.49 MB Mémoire virtuelle totale: 15178.27 MB Mémoire virtuelle disponible: 11389.15 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:680.33 GB) (Free:334.25 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: E8F7FAFA) Partition: GPT. ==================== Fin de Addition.txt ============================