Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 27-11-2017 Exécuté par Jean-Marie (28-11-2017 13:02:27) Exécuté depuis C:\Users\Jean-Marie\Desktop Windows 10 Home Version 1709 16299.15 (X64) (2017-11-27 10:03:43) Mode d'amorçage: Safe Mode (with Networking) ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3050784910-4159102630-1222660918-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3050784910-4159102630-1222660918-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3050784910-4159102630-1222660918-1006 - Limited - Enabled) Invité (S-1-5-21-3050784910-4159102630-1222660918-501 - Limited - Disabled) Jean-Marie (S-1-5-21-3050784910-4159102630-1222660918-1001 - Administrator - Enabled) => C:\Users\Jean-Marie WDAGUtilityAccount (S-1-5-21-3050784910-4159102630-1222660918-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Acronis True Image WD Edition (HKLM-x32\...\{CEAC6D9F-944A-40F7-AB5D-A7412AF9CED9}) (Version: 19.0.33 - Acronis) adaware antivirus (HKLM\...\{251CFCC6-24D2-4F29-8E34-1F244D8BAC90}_AdAwareUpdater) (Version: 12.2.889.11556 - adaware) AdAwareUpdater (HKLM\...\{251CFCC6-24D2-4F29-8E34-1F244D8BAC90}) (Version: 12.2.889.11556 - adaware) Hidden Adferno version 1.0.0.0 (HKLM-x32\...\{DB941B9E-1CE5-4EF8-AD5D-776C3DF673B7}_is1) (Version: 1.0.0.0 - forcebyte.nl) Advanced SystemCare 11 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 11.0.3 - IObit) Aimersoft Helper Compact 2.5.2 (HKLM-x32\...\{405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1) (Version: 2.5.2 - Aimersoft) AMD Catalyst Install Manager (HKLM\...\{5F769CF4-5263-4C7B-AEB2-C06A73AE4428}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) AntimalwareEngine (HKLM\...\{06D33B93-9458-4E28-BDEA-F5ECB2C3C30E}) (Version: 3.0.144.0 - adaware) Hidden Ashampoo UnInstaller 7 (HKLM-x32\...\{4209F371-C268-A90D-7A44-135E420FACEF}_is1) (Version: 7.00.00 - Ashampoo GmbH & Co. KG) atomiccleaner3 version 1.3.4.1 (HKLM-x32\...\{0D6AB211-A181-4F42-AEB4-127C40BF67EF}_is1) (Version: 1.3.4.1 - atomicware) AweEraserEraser Trial 2.0 (HKLM-x32\...\AweEraser Trial 2.0_is1) (Version: - Magoshare) Bing Bureau (HKLM-x32\...\{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}) (Version: 1.4.167.0 - Microsoft Corporation) Cdiscount Cloud v3.1.0.0 (HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\{442DF6D7-CAB5-483F-9008-C74946F47EF0}_is1) (Version: 3.1.0.0 - Cdiscount) Configuration DivX (HKLM-x32\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC) Connect (HKLM-x32\...\MAGIX_connector_is1) (Version: 2.5.1.84 - MAGIX Software GmbH) Cookie Control version 1.300 (HKLM-x32\...\{FEA507ED-977C-4F98-8A00-D7535A8A9414}_is1) (Version: 1.300 - Forcebyte.nl) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5510 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.1916 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1902 - CyberLink Corp.) CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.1.4319 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.1.0 - IObit) Energy Star (HKLM\...\{0FA995CC-C849-4755-B14B-5404CC75DC24}) (Version: 1.0.8 - Hewlett-Packard) EPSON XP-710 Series Printer Uninstall (HKLM\...\EPSON XP-710 Series) (Version: - SEIKO EPSON Corporation) Fastcut (HKLM\...\{2FE7A8A4-3C96-4F72-98AF-561E5FAD2B51}) (Version: 1.0.1.15 - MAGIX Software GmbH) Hidden Fastcut (HKLM\...\MX.{2FE7A8A4-3C96-4F72-98AF-561E5FAD2B51}) (Version: 1.0.1.15 - MAGIX Software GmbH) Fcheck version 1.2 (HKLM-x32\...\{282BCE08-D74C-415D-B756-C0E9A0951030}_is1) (Version: 1.2 - Forcebyte.nl) File Identifier (HKLM-x32\...\{C257E434-E8F1-4E06-A616-598E4933553E}_is1) (Version: 1.0.9 - Sharpened Productions) Force Check version 1.100 (HKLM-x32\...\{21206675-CBE9-4C59-999E-F8C4E859EF8E}_is1) (Version: 1.100 - Forcebyte.nl) Force Login version 1.000 (HKLM-x32\...\{6D8E029C-BA09-4655-B801-7FF0CD49ADB9}_is1) (Version: 1.000 - Forcebyte.nl) FULL-DISKfighter (HKLM-x32\...\{1471F298-9784-425B-B295-B3194C0F27C0}) (Version: 1.4.104 - SPAMfighter ApS.) Hidden Galerie de photos (HKLM-x32\...\{FE8DFDD0-A543-4A83-B7A9-C411138194D5}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden GOM Player (HKLM-x32\...\GOM Player) (Version: 2.3.14.5270 - Gretech Corporation) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.0.0 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard) iMusic(Version 2.0.4) (HKLM-x32\...\{929CB871-3112-45D0-8B87-4228A469CE0C}_is1) (Version: 2.0.4 - iMusic) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 7.1.0.19 - IObit) KeepVid Pro(Build 6.4.1.1) (HKLM-x32\...\KeepVid Pro_is1) (Version: 6.4.1.1 - KeepVid Studio) Microsoft .NET Framework 2.0 Client Profile Basic SP2 Version 2.0.0.26 (HKLM-x32\...\{10E4121C-8181-4217-8DA9-6CD38DDC34F9}_is1) (Version: 2.0.0.26 - © Wondershare Corporation. All rights reserved.) Microsoft OneDrive (HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{61889FC7-9738-439A-96B3-17AF981BDDEF}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{9846E46F-07E0-4BDF-985A-E3FBA8C15877}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{D71BC54E-A4E6-4E06-866C-FD6EE16EA187}) (Version: 16.4.3503.0728 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 59.0a1 - Mozilla) MP3jam 1.1.3.1 (HKLM-x32\...\MP3jam_is1) (Version: 1.1.3.1 - MP3jam) NewBlue Video Essentials for Windows (HKLM-x32\...\NewBlue Video Essentials for Windows) (Version: 3.0 - NewBlue) Nightly 59.0a1 (x64 en-US) (HKLM\...\Nightly 59.0a1 (x64 en-US)) (Version: 59.0a1 - Mozilla) Novicorp WinToFlash Professional version 1.13.0000 (HKLM-x32\...\{2CF672A4-E27B-4E70-99E5-F324CF398505}_is1) (Version: 1.13.0000 - Novicorp) proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.114.1 - proDAD GmbH) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8198 - Realtek Semiconductor Corp.) Recovery Manager (HKLM-x32\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.0.5530 - CyberLink Corp.) Hidden SharewareOnSale Notifier (HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\SharewareOnSale Notifier) (Version: 20 - SharewareOnSale) Silent Install Builder 5 (HKLM-x32\...\{2452C59D-5120-4A9A-A97F-B925390619E1}) (Version: 5.1.2.0 - Aprel Tech, LLC) Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.7.1 - IObit) SoftOrbits Background Remover 3.2 (HKLM-x32\...\SoftOrbits Background Remover_is1) (Version: 3.2 - SoftOrbits) Startup Control version 1.400 (HKLM-x32\...\{D9BA9AEB-9D71-41E8-A839-AE3F56D6B8D2}_is1) (Version: 1.400 - Forcebyte.nl) Turbo View & Convert (HKLM-x32\...\{55B464FA-16DE-4127-A7B8-D49CD2768E63}_is1) (Version: 2.0.0 - IMSI/Design, LLC) TweakBit Driver Updater (HKLM-x32\...\{62D64B30-6E10-4C49-95FE-EDD8F8165DED}_is1) (Version: 1.8.2.14 - Auslogics Labs Pty Ltd) TweakBit PCSpeedUp (HKLM-x32\...\{2FFDD819-5ACF-49D5-9F18-980B42E5DA66}_is1) (Version: 1.8.2.14 - Auslogics Labs Pty Ltd) Tweaking.com - Windows Repair (HKLM-x32\...\Tweaking.com - Windows Repair) (Version: 4.0.10 - Tweaking.com) UsbFix Premium 2016 (HKLM-x32\...\Usbfix) (Version: 9.0.0.1 - SOSVirus (SOSVirus.Net)) VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden WebAnimator Go version 2.3.7 (HKLM-x32\...\{71002165-A4E7-4526-ACFC-D4720A342781}_is1) (Version: 2.3.7 - soft-evolution GmbH & Co. KG) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation) WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Wise Folder Hider (HKLM-x32\...\Wise Folder Hider_is1) (Version: 4.2.2 - WiseCleaner.com, Inc.) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ 0ShareboxUpToDateOverlayIcon] -> {8167AF6A-AB2F-4ACA-940B-9FCB7700767E} => C:\Windows\System32\mscoree.dll [2017-09-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ 1ShareboxSyncOverlayIcon] -> {76344480-04C1-4D15-A0A5-578881CEF415} => C:\Windows\System32\mscoree.dll [2017-09-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ 2ShareboxErrorOverlayIcon] -> {3976090B-700F-433D-93B0-2D2BC93C0099} => C:\Windows\System32\mscoree.dll [2017-09-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ 4ShareboxIgnoredOverlayIcon] -> {78A2A1F2-1584-4334-A4A0-D6E398C5A5AB} => C:\Windows\System32\mscoree.dll [2017-09-29] (Microsoft Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-11-11] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-11-11] (Acronis) ShellIconOverlayIdentifiers: [AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2015-11-11] (Acronis) ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers1: [AweFileSyncShlMenu] -> {ABE7BF64-6790-4873-8704-606E622B3E8D} => C:\Program Files (x86)\Magoshare\AweEraser\AweExtMenux64.dll [2017-11-12] (Magoshare) ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2012-07-10] (Cyberlink) ContextMenuHandlers1: [CLVDShellExt10] -> {4682CEF2-C2F9-457B-83E0-3D6EBA418565} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt10.dll [2016-06-23] (Cyberlink) ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers1-x32: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\versions_page.dll [2015-11-11] (Acronis) ContextMenuHandlers1-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2012-07-10] (Cyberlink) ContextMenuHandlers2: [CLVDShellExt10] -> {4682CEF2-C2F9-457B-83E0-3D6EBA418565} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt10.dll [2016-06-23] (Cyberlink) ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers4: [AweFileSyncShlMenu] -> {ABE7BF64-6790-4873-8704-606E622B3E8D} => C:\Program Files (x86)\Magoshare\AweEraser\AweExtMenux64.dll [2017-11-12] (Magoshare) ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-08-21] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [AweFileSyncShlMenu] -> {ABE7BF64-6790-4873-8704-606E622B3E8D} => C:\Program Files (x86)\Magoshare\AweEraser\AweExtMenux64.dll [2017-11-12] (Magoshare) ContextMenuHandlers6: [AweFileSyncShlMenu] -> {ABE7BF64-6790-4873-8704-606E622B3E8D} => C:\Program Files (x86)\Magoshare\AweEraser\AweExtMenux64.dll [2017-11-12] (Magoshare) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers6-x32: [VersionsPageShellExt] -> {9E42900A-85F9-4E67-9778-575FBBA0A81C} => C:\Program Files (x86)\Acronis\TrueImageHome\versions_page.dll [2015-11-11] (Acronis) ContextMenuHandlers6-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {04F03782-2892-491A-8AB6-500E6BBA9DFF} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe Task: {56C11FB5-8B08-413B-BCA2-033988FCEAC9} - System32\Tasks\CarambisDriverUpdaterUACDisablingTask => C:\Program Files (x86)\Carambis\Driver Updater\dupdater.exe Task: {61100933-4520-42EF-930B-44F1FC152D8E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-27] (Google Inc.) Task: {61C1CEBB-E4F0-4D73-BD0F-898D25A19A45} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-15] (Hewlett-Packard Company) Task: {756A12C9-2CF9-4393-BD1C-C0FB621B34D2} - System32\Tasks\EPSON XP-710 Series Update {0D0C5FCE-DD29-4C7F-8FC9-3FC5BB184BBE} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE [2015-01-16] (SEIKO EPSON CORPORATION) Task: {7DEBA2F9-2E56-47B4-B89D-04641FF9B33D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-15] (Hewlett-Packard Company) Task: {924D02F1-7436-46C6-BE44-962E770C6AC6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-26] (AVAST Software) Task: {A15ECC9A-2DC2-4640-970A-2DADE21AEB80} - System32\Tasks\EPSON XP-710 Series Invitation {0D0C5FCE-DD29-4C7F-8FC9-3FC5BB184BBE} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE [2015-01-16] (SEIKO EPSON CORPORATION) Task: {CD8D05FF-B465-4A92-A19C-567A89891010} - System32\Tasks\DeviceDetector7.5 => C:\Program Files (x86)\CyberLink\MediaEspresso7.5\DeviceDetector\DeviceDetector7.5.exe [2016-06-23] (CyberLink Corp.) Task: {D417168E-7F5D-4DDA-A600-B06691CFD61A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-27] (Google Inc.) Task: {D9B48542-DCA7-4F2C-8F84-D348E31E9166} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-08-07] (Hewlett-Packard Company) Task: {FB84165F-7872-4269-9986-8CF8963AA4E4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-08-15] (Hewlett-Packard Company) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Chrome Cleanup Tool logs upload retry.job => c:\users\jean-marie\desktop\lfs hyper-100% sécurisé-cewbé suite 19.16\chrome_cleanup_tool.exe Task: C:\WINDOWS\Tasks\Connect.job => C:\Program Files (x86)\MAGIX\Connect\connect.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Driver Booster Scheduler.job => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\Scheduler.exe Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (Jean-Marie).job => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Invitation {0D0C5FCE-DD29-4C7F-8FC9-3FC5BB184BBE}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE Task: C:\WINDOWS\Tasks\EPSON XP-710 Series Update {0D0C5FCE-DD29-4C7F-8FC9-3FC5BB184BBE}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLPE.EXE:/EXE:{0D0C5FCE-DD29-4C7F-8FC9-3FC5BB184BBE} /F:UpdateWORKGROUP\BARROW5__WIDEN$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\WINDOWS\Tasks\Tweaking.com - Windows Repair Tray Icon.job => C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)Tweaking.com - Windows Repair)Created By Tweaking.com Task: C:\WINDOWS\Tasks\User_Feed_Synchronization-{180102EB-6649-4A21-965F-D56D9B361741}.job => C:\WINDOWS\system32\msfeedssync.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Jean-Marie\Desktop\Pre_Scan_Donate.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxps://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=S3AQ8V3XRWWYN ==================== Modules chargés (Avec liste blanche) ============== 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-11-28 10:33 - 2017-11-28 10:33 - 001008816 _____ () C:\ProgramData\SharewareOnSale Notifier\SharewareOnSale Notifier.exe 2017-11-28 11:23 - 2017-09-06 10:16 - 000033912 _____ () C:\Program Files (x86)\KeepVid\KeepVid Pro\KeepVidProUpdateHelper.exe 2007-05-15 12:19 - 2007-05-15 12:19 - 000255488 _____ () C:\Users\Jean-Marie\AppData\Local\Temp\Ad-Aware Total Suite\Start.exe 2017-11-28 09:50 - 2016-01-11 17:03 - 000899872 _____ () C:\Program Files (x86)\IObit\Smart Defrag\webres.dll 2017-11-28 09:50 - 2016-01-11 17:02 - 000630048 _____ () C:\Program Files (x86)\IObit\Smart Defrag\ProductStatistics.dll 2017-11-28 10:54 - 2015-12-28 13:50 - 000899872 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\webres.dll 2017-11-28 10:54 - 2016-08-18 18:43 - 000442144 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl 2017-11-28 10:54 - 2016-08-18 18:43 - 000059680 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl 2017-11-28 10:54 - 2016-08-18 18:43 - 000210720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl 2017-11-28 10:54 - 2017-08-04 13:44 - 000082720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\GetProcessDLL.dll 2017-11-28 11:01 - 2017-05-22 11:16 - 000442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2017-11-28 11:01 - 2017-05-22 11:16 - 000210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2017-11-28 11:01 - 2017-05-22 11:16 - 000059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2017-11-28 11:01 - 2017-05-22 11:17 - 000899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll 2017-11-28 11:01 - 2017-05-23 18:57 - 000631584 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll 2017-11-28 11:01 - 2017-05-22 11:16 - 000524064 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\sqlite3.dll 2017-11-28 11:03 - 2017-10-16 10:14 - 000442144 _____ () C:\Program Files (x86)\IObit\Driver Booster\5.1.0\madExcept_.bpl 2017-11-28 11:03 - 2017-10-16 10:14 - 000210720 _____ () C:\Program Files (x86)\IObit\Driver Booster\5.1.0\madBasic_.bpl 2017-11-28 11:03 - 2017-10-16 10:14 - 000059680 _____ () C:\Program Files (x86)\IObit\Driver Booster\5.1.0\madDisAsm_.bpl 2017-11-28 11:03 - 2016-08-01 10:48 - 000899872 _____ () C:\Program Files (x86)\IObit\Driver Booster\5.1.0\webres.dll 2017-11-28 11:49 - 2017-11-28 11:49 - 000011264 _____ () C:\Users\Jean-Marie\AppData\Local\Temp\nsh5E16.tmp\System.dll 2017-11-28 12:56 - 2017-11-28 12:56 - 000139264 _____ () C:\Users\Jean-Marie\Desktop\SystemLook.exe ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BFE => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\dps => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lfsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MpsSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\semgrsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SharedAccess => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\shellhwdetection => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TokenBroker => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AppXSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\BITS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\camsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ClipSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\dps => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\lfsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\msiserver => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SamSs => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\semgrsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\shellhwdetection => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srv2 => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\srvnet => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TokenBroker => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TweakingRemoveSafeBoot => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\vss => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WSService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) HKLM\...\batfile\DefaultIcon: %SystemRoot%\SysWow64\imageres.dll,-68 <==== ATTENTION HKLM\...\cmdfile\DefaultIcon: %SystemRoot%\SysWow64\imageres.dll,-68 <==== ATTENTION HKLM\...\comfile\DefaultIcon: %SystemRoot%\SysWow64\shell32.dll,2 <==== ATTENTION ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2012-07-26 06:26 - 2017-11-28 08:48 - 000000855 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jean-Marie\AppData\Local\Microsoft\BingDesktop\themes\2017-11-27.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "Acronis Scheduler2 Service" HKLM\...\StartupApproved\Run32: => "CLMLServer_For_P2G8" HKLM\...\StartupApproved\Run32: => "CLVirtualDrive" HKLM\...\StartupApproved\Run32: => "StartCCC" HKLM\...\StartupApproved\Run32: => "BingDesktop" HKLM\...\StartupApproved\Run32: => "InstantBurn" HKLM\...\StartupApproved\Run32: => "DivXUpdate" HKLM\...\StartupApproved\Run32: => "AcronisTibMounterMonitor" HKLM\...\StartupApproved\Run32: => "TrueImageMonitor.exe" HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\StartupApproved\Run: => "SharewareOnSale Notifier" HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-3050784910-4159102630-1222660918-1001\...\StartupApproved\Run: => "OneDrive" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{3CDDFF89-F8ED-41F6-BFE9-41789A6E9A96}] => (Allow) LPort=52000 FirewallRules: [{9B075F13-BAA4-4368-B71B-4CAA350751FE}] => (Allow) LPort=53000 FirewallRules: [{671AE137-3655-4619-8CBD-1BD81200AD57}] => (Allow) LPort=1900 FirewallRules: [{D6E833CF-0421-4571-9A10-383436754E3C}] => (Allow) LPort=2869 FirewallRules: [{BD01E8EF-D2BE-44EF-978D-ABFA0F8CF8E5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{5FCA5AF1-8CB5-40DC-9489-93BACEE128DB}] => (Allow) c:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{C5B62B61-5218-4C9B-9939-8B1B7619E45B}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{30A328EA-A9F1-4991-A8A7-ECFAC2870676}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A4691B39-65AA-4FD8-912F-280534755D67}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD16\PowerDVD.exe FirewallRules: [{DD584D3E-3F1F-445B-9514-AE04ACE5C090}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD16\Kernel\DMS\CLMSServerPDVD16.exe FirewallRules: [{B86DCD41-2F35-42DE-B0B9-3181D14800B8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD16\PowerDVD16Agent.exe FirewallRules: [{341A791B-0ACB-4497-B5E6-FB2BF528A4F4}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD16\Movie\PowerDVDMovie.exe FirewallRules: [{39C7C96E-D2E8-40CB-99AF-F681806C79D3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD16\CastingStation.exe FirewallRules: [{3944D699-2033-41E3-977E-B159D2264250}] => (Allow) C:\Program Files\Nightly\firefox.exe FirewallRules: [{3542752C-74F0-4FCD-97F5-943467270940}] => (Allow) C:\Program Files\Nightly\firefox.exe FirewallRules: [{40F2AAB8-74BD-428A-8A0C-88450D22CB33}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\SyncAgent\syncagentsrv.exe FirewallRules: [{9C6949E6-C56D-4A2D-9B7F-6E1972F0B365}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\Infrastructure\mms_mini.exe FirewallRules: [{3747EBD2-BAEA-49D1-A870-173F1C073C2F}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{41621E13-C953-4714-ACC3-3CEEFDD92938}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{7D0ACD25-E433-402E-8F52-795714E435EA}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{E7342BC8-6843-488F-A2BF-37A6C38A1609}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{BEEAB14F-5E1B-4EBB-B519-56520FDC1883}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe FirewallRules: [{99F01087-0ABF-4423-BE1D-36D39459C60E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe ==================== Points de restauration ========================= Vérifiez le service "winmgmt" ou réparez WMI. ==================== Éléments en erreur du Gestionnaire de périphériques ============= Impossible de lister les périphériques. Vérifiez le service "winmgmt" ou réparez WMI. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/28/2017 12:51:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante smartscreen.exe, version : 10.0.16299.15, horodatage : 0xe3ebdded Nom du module défaillant : smartscreen.exe, version : 10.0.16299.15, horodatage : 0xe3ebdded Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000633a6 ID du processus défaillant : 0xda8 Heure de début de l’application défaillante : 0x01d3683f2f5eca9b Chemin d’accès de l’application défaillante : C:\Windows\System32\smartscreen.exe Chemin d’accès du module défaillant: C:\Windows\System32\smartscreen.exe ID de rapport : cded96ce-bc95-4623-8a56-4536d9930c46 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (11/28/2017 12:45:26 PM) (Source: MsiInstaller) (EventID: 10005) (User: BARROW5__WIDEN) Description: Product: Backup and Sync from Google -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2203. The arguments are: C:\WINDOWS\Installer\inprogressinstallinfo.ipi, -2147287037, Error: (11/28/2017 12:33:33 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Program Files\TweakBit\PC Repair\PCRepair.exe Files\TweakBit\PC Repair\PCRepair.exe" ; Description = PC Repair restore point ; Erreur = 0x8007043c). Error: (11/28/2017 12:33:30 PM) (Source: MsiInstaller) (EventID: 10005) (User: BARROW5__WIDEN) Description: Product: Lavasoft Privacy Toolbox -- Error 2203. Le processus ne peut pas accéder au fichier car un autre processus en a verrouillé une partie. Error: (11/28/2017 11:54:33 AM) (Source: MsiInstaller) (EventID: 10005) (User: BARROW5__WIDEN) Description: Product: AdAwareInstaller -- Error 2203. Le processus ne peut pas accéder au fichier car un autre processus en a verrouillé une partie. Error: (11/28/2017 11:54:17 AM) (Source: usbperf) (EventID: 2001) (User: ) Description: Impossible de lire la valeur « First Counter » sous la clé usbperf\Performance. Les codes d’état sont renvoyés dans les données. Error: (11/28/2017 11:42:58 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\msiexec.exe /V ; Description = Installed AA11. ; Erreur = 0x8007043c). Error: (11/28/2017 11:39:33 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\msiexec.exe /V ; Description = Installed AA11. ; Erreur = 0x8007043c). Error: (11/28/2017 11:39:23 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\WINDOWS\system32\msiexec.exe /V ; Description = AA11 ; Erreur = 0x8007043c). Error: (11/28/2017 11:17:51 AM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe" /skipuac ; Description = Driver Booster : Realtek High Definition Audio ; Erreur = 0x8007043c). Erreurs système: ============= Error: (11/28/2017 01:01:47 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:47 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:42 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:42 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:40 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:40 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:39 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:39 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:39 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} Error: (11/28/2017 01:01:39 PM) (Source: DCOM) (EventID: 10005) (User: BARROW5__WIDEN) Description: DCOM a reçu l’erreur « 1084 » lors de la tentative de démarrage du service WSearch avec les arguments « Non disponible » pour exécuter le serveur : {B52D54BB-4818-4EB9-AA80-F9EACD371DF8} CodeIntegrity: =================================== Date: 2017-11-28 12:57:45.737 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\PrintDialogHost3D.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-28 12:57:45.733 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\PrintDialogHost3D.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-28 11:09:15.663 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\PrintDialogHost3D.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-28 11:09:15.467 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\PrintDialogHost3D.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-11-27 18:06:24.921 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-27 18:06:24.785 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-27 18:04:54.451 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-27 18:04:54.442 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-27 18:04:51.925 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2017-11-27 18:04:51.920 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: AMD E1-1200 APU with Radeon(tm) HD Graphics Pourcentage de mémoire utilisée: 70% Mémoire physique - RAM - totale: 3659.73 MB Mémoire physique - RAM - disponible: 1087.48 MB Mémoire virtuelle totale: 4059.73 MB Mémoire virtuelle disponible: 1665.64 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:916.52 GB) (Free:838.95 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (Recovery Image) (Fixed) (Total:13.06 GB) (Free:1.61 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive e: (wd MY passport 2TO) (Fixed) (Total:2794.49 GB) (Free:288.66 GB) NTFS Drive f: (AUDIO PLAYE) (Removable) (Total:59.47 GB) (Free:56.47 GB) exFAT Drive g: (samsung fit) (Removable) (Total:119.5 GB) (Free:112.03 GB) NTFS Drive h: (CARBIDE) (Removable) (Total:30.84 GB) (Free:9.12 GB) FAT32 Drive i: (WIN10 IOT C) (Removable) (Total:28.96 GB) (Free:26.1 GB) FAT32 Drive o: (LFS Hyper part 2) (Fixed) (Total:929.42 GB) (Free:631.16 GB) NTFS Drive p: (UBUNTU MATE) (Removable) (Total:14.42 GB) (Free:0.8 GB) FAT32 Drive q: () (Removable) (Total:30.03 GB) (Free:3.08 GB) NTFS Drive r: (FOLD-ISARDU) (Removable) (Total:14.9 GB) (Free:12.16 GB) FAT32 Drive s: (P2G160909174001) (CDROM) (Total:23 GB) (Free:0 GB) UDF Drive v: (SANDISK CON) (Removable) (Total:119.06 GB) (Free:119.06 GB) exFAT ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 1BE6397B) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 59.5 GB) (Disk ID: 061EAADE) Partition 1: (Not Active) - (Size=59.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 14.4 GB) (Disk ID: AE420040) Partition 1: (Active) - (Size=14.4 GB) - (Type=0C) ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 30 GB) (Disk ID: 25C8BCC2) Partition 1: (Active) - (Size=30 GB) - (Type=07 NTFS) ======================================================== Disk: 4 (Size: 14.9 GB) (Disk ID: 6A42D688) Partition 1: (Active) - (Size=14.9 GB) - (Type=0C) ======================================================== Disk: 5 (Size: 29 GB) (Disk ID: 0621DC43) Partition 1: (Not Active) - (Size=29 GB) - (Type=0C) ======================================================== Disk: 6 (Size: 7.5 GB) (Disk ID: 0ABC92D4) Partition 1: (Active) - (Size=7.5 GB) - (Type=0C) Attempted reading MBR returned 0 bytes. Could not read MBR for disk 7. ======================================================== Disk: 8 (MBR Code: Windows 7 or 8) (Size: 119.1 GB) (Disk ID: 01886157) Partition 1: (Not Active) - (Size=119.1 GB) - (Type=07 NTFS) ======================================================== Disk: 9 (Size: 931.5 GB) (Disk ID: 1ED6B084) Partition: GPT. ======================================================== Disk: 10 (Size: 119.5 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 11 (Size: 30.9 GB) (Disk ID: 0E816D01) Partition: GPT. ======================================================== Disk: 12 (MBR Code: Windows 7 or 8) (Size: 59.5 GB) (Disk ID: 0103CB10) Partition 1: (Not Active) - (Size=59.5 GB) - (Type=07 NTFS) ======================================================== Disk: 14 (Size: 57.7 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fin de Addition.txt ============================