Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 22-11-2017 Exécuté par touto (22-11-2017 18:44:15) Exécuté depuis C:\Users\touto\Downloads Windows 10 Home Version 1709 16299.64 (X64) (2017-11-07 18:08:26) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3075499438-3298961840-636474768-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3075499438-3298961840-636474768-503 - Limited - Disabled) defaultuser0 (S-1-5-21-3075499438-3298961840-636474768-1000 - Limited - Disabled) => C:\Users\defaultuser0 Invité (S-1-5-21-3075499438-3298961840-636474768-501 - Limited - Disabled) touto (S-1-5-21-3075499438-3298961840-636474768-1001 - Administrator - Enabled) => C:\Users\touto WDAGUtilityAccount (S-1-5-21-3075499438-3298961840-636474768-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.009.20044 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.0.1.188 - Adobe Systems Incorporated) Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.1.102.55 - Adobe Systems Incorporated) Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.10.1 - Adobe Systems Incorporated) Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0) (Version: 18.0.0 - Adobe Systems Incorporated) Affinity Designer (HKLM\...\{0991777A-6DBD-4A09-BAC9-330F19A7FAA6}) (Version: 1.6.0.89 - Serif (Europe) Ltd) Affinity Photo Trial (HKLM\...\{B1F576EB-663E-4661-ABA5-2603A4E01AA1}) (Version: 1.5.2.69 - Serif (Europe) Ltd) Apple Application Support (32 bits) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.12 - Michael Tippach) Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 17.2.3341.0 - AVAST Software) Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 17.8.2318 - AVAST Software) Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) CCleaner (HKLM\...\CCleaner) (Version: 5.36 - Piriform) Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine) CopyTrans Control Center désinstallation uniquement (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\CopyTrans Suite) (Version: 4.017 - WindSolutions) FileZilla Client 3.28.0 (HKLM-x32\...\FileZilla Client) (Version: 3.28.0 - Tim Kosse) FL Studio 12 (HKLM-x32\...\FL Studio 12) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 62.0.3202.94 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden HMA! Pro VPN (HKLM\...\{60A560F2-CB75-4C94-9C36-39AD2161DE73}_is1) (Version: 3.7.78 - Privax) IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4624 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{B294CE94-FE0F-4427-910C-180AF9FCFED1}) (Version: 1.0.1.620 - Intel Corporation) Killer Performance Suite (HKLM\...\{516B56FD-365A-4CFF-8FB4-1C56EABEC528}) (Version: 1.2.1186 - Rivet Networks) KLIM AIM Gaming Mouse 3.0 (HKLM-x32\...\{AB9758F2-3D95-40C1-B5D6-6390158A903D}_is1) (Version: 3.0 - Klim & Co limited) Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{185db067-38cd-4521-a43e-c39b96ee1389}) (Version: 19.50.1 - Intel Corporation) Logitech - Assistant pour jeux vidéo 8.94 (HKLM\...\Logitech Gaming Software) (Version: 8.94.108 - Logitech Inc.) Logitech Gaming Software 5.10 (HKLM\...\{1444D2EE-C7AD-44A8-844F-2634B49353D1}) (Version: 5.10.127 - Logitech) Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Office 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.8625.2127 - Microsoft Corporation) Microsoft Office Remote (HKLM-x32\...\{7a1ad515-9199-47d6-aa40-6fdf2c857ff0}) (Version: 1.1.3.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation) Mises à jour NVIDIA 29.1.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 29.1.0.0 - NVIDIA Corporation) Hidden Motifmate version 1.2.6 (HKLM-x32\...\{C23D9323-077D-44FB-96F1-B80B7E8AD3C1}_is1) (Version: 1.2.6 - Hidayat Sagita & Paper Tiger Labs) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 52.0.1 - Mozilla) Mozilla Thunderbird 52.0.1 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 52.0.1 (x86 fr)) (Version: 52.0.1 - Mozilla) Mozilla Thunderbird 52.4.0 (x86 fr) (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\Mozilla Thunderbird 52.4.0 (x86 fr)) (Version: 52.4.0 - Mozilla) NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote graphique 388.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.31 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8625.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.8326.2107 - Microsoft Corporation) Hidden OpenShot Video Editor version 2.4.0 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.4.0 - OpenShot Studios, LLC) Origin (HKLM-x32\...\Origin) (Version: 10.5.6.6235 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 388.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.31 - NVIDIA Corporation) Hidden PhotoFiltre (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\PhotoFiltre) (Version: - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8117 - Realtek Semiconductor Corp.) SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden Station (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\browserX) (Version: 1.0.5 - eFounders) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Sylenth1 v2.01 (HKLM-x32\...\Sylenth1_is1) (Version: - ) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.4.184 - Synaptics Incorporated) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden WhatsApp (HKU\S-1-5-21-3075499438-3298961840-636474768-1001\...\WhatsApp) (Version: 0.2.5371 - WhatsApp) WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3075499438-3298961840-636474768-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-E37A1E67000B}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-3075499438-3298961840-636474768-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-11] (AVAST Software) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-11] (AVAST Software) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-11] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-03-29] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-11-14] (NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-11] (AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-14] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-14] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {07988C21-9A96-486D-A328-BE6024D20D6A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-22] (Google Inc.) Task: {0C9DEB21-CE74-4A7B-8FB2-B7D1D731006B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {1A5F0058-BAD5-4455-AB0C-335B6276C017} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-10-11] (NVIDIA Corporation) Task: {1BD04457-8E53-46F5-925D-F9FF742BBDC1} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {35D887B9-2567-4A0E-A4E9-4967E0AAA270} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-10-11] (NVIDIA Corporation) Task: {382D19A4-28E2-4996-BAA7-40DB5A57A065} - System32\Tasks\HMA! Pro VPN Update => C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [2017-11-07] (Privax Limited) Task: {406EE445-2AD4-41BE-9C49-B67CA58941C0} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11] (NVIDIA Corporation) Task: {4427CB36-EBFA-42B0-B908-4E73A7A84E27} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-22] (Google Inc.) Task: {478FCD47-BB2D-4CD8-BEF6-152768585828} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2017-11-01] (AVAST Software) Task: {596B19FF-BD8D-4DDB-BCFD-D3FA5B99C7F5} - System32\Tasks\SafeZone scheduled Autoupdate 1493204633 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software) Task: {5AF5E725-59B2-449C-B8A2-48E372B3C98B} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {5B2080F0-9E65-433A-BE19-8AF4961B02C6} - System32\Tasks\CCleaner Update => D:\Program Files\CCleaner\CCUpdate.exe [2017-10-18] (Piriform Ltd) Task: {6A5B4462-0727-4F52-A9B5-B0184254FD88} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-02] (Microsoft Corporation) Task: {6DFEEAC5-1C03-435D-BF3D-4F24A6F1B6E4} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-02-19] (Intel(R) Corporation) Task: {78E90AEC-4A9A-4313-89D3-97A63C04B777} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-toutounne325@hotmail.fr => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2016-07-01] (Adobe Systems Incorporated) Task: {9ECE5E08-F5A7-4C37-B16D-57D9975A744E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-10-11] (NVIDIA Corporation) Task: {A36716F9-7AE2-4E0F-87E8-A35C6F054FC8} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] () Task: {BA94DE98-EA21-40E9-92EC-C30BC06521D0} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {BF2CCD8A-41F7-4B4A-A89F-E5143095B93F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-11-17] (Microsoft Corporation) Task: {BF48DD1D-46DE-4583-8A62-B2E01096D06E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) Task: {C1656508-6CAC-4818-AF13-6E7CB8BE4F39} - System32\Tasks\CCleanerSkipUAC => D:\Program Files\CCleaner\CCleaner.exe [2017-10-18] (Piriform Ltd) Task: {D03233AA-C2FB-4909-BAB4-6FFB2800391D} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {D2A84953-4AC3-4B71-ACF9-85FEED12C0AC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-11-02] (Microsoft Corporation) Task: {D8524AFC-0BC4-48FE-B295-F62A59881714} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-09-26] () Task: {D8CBD404-1A9E-4DEE-84D2-E9A06FBDC36A} - System32\Tasks\V30-Marquee-TaskPlan => C:\Program Files\KLIM AIM Gaming Mouse\KLIM AIM Gaming Mouse.exe [2017-08-15] (Klim & Co limited ) Task: {E139620F-F537-433D-8EDF-9BE446284725} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {EFD77209-2B4F-454F-AAF7-5D4FCB4DA1DD} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-11] (AVAST Software) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-11-22 17:07 - 2017-11-01 08:54 - 002358736 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2017-11-22 17:07 - 2017-11-01 08:55 - 002299344 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2017-04-26 12:28 - 2017-10-11 02:05 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-07-20 06:36 - 2017-07-20 08:26 - 000076152 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2017-09-01 02:49 - 2017-09-01 02:49 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-09-01 02:49 - 2017-09-01 02:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2016-10-25 08:57 - 2016-10-25 08:57 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2017-03-29 09:07 - 2017-03-29 09:07 - 000384512 _____ () C:\WINDOWS\system32\igfxTray.exe 2017-09-29 14:42 - 2017-09-30 15:41 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-09-29 14:42 - 2017-09-30 15:41 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-11-12 16:58 - 2017-11-12 16:59 - 000087552 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2017-11-12 16:58 - 2017-11-12 16:59 - 000206336 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2017-11-12 16:58 - 2017-11-12 16:59 - 025461760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2017-11-07 15:56 - 2017-11-07 15:56 - 002552832 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\skypert.dll 2017-11-12 16:58 - 2017-11-12 16:59 - 000685056 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.8.487.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2017-07-10 23:35 - 2017-07-10 23:35 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2017-07-10 23:35 - 2017-07-10 23:35 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2016-10-25 08:57 - 2016-10-25 08:57 - 031723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2017-09-14 17:30 - 2017-09-14 17:30 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11710.1001.27.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-11-07 19:41 - 2017-11-07 19:41 - 004252160 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1710.2791.0_x64__8wekyb3d8bbwe\Calculator.exe 2017-09-26 16:50 - 2017-09-26 16:50 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1710.2791.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2017-11-01 10:24 - 2017-11-01 10:25 - 001919680 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40675.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2017-11-01 10:24 - 2017-11-01 10:25 - 001226416 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8700.40675.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll 2017-11-22 17:54 - 2017-11-22 18:25 - 002976640 _____ () C:\Users\touto\AppData\Roaming\ZHP\ZHPCleaner.exe 2017-11-11 14:21 - 2017-11-11 14:21 - 000067408 _____ () C:\Program Files\AVAST Software\Avast\x64\module_lifetime.dll 2017-11-22 17:41 - 2017-11-10 10:57 - 004135768 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libglesv2.dll 2017-11-22 17:41 - 2017-11-10 10:57 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\62.0.3202.94\libegl.dll 2017-11-07 19:14 - 2017-11-07 19:14 - 000058936 _____ () C:\Program Files (x86)\HMA! Pro VPN\module_lifetime.dll 2017-11-07 19:14 - 2017-11-07 19:14 - 000244480 _____ () C:\Program Files (x86)\HMA! Pro VPN\tasks_core.dll 2017-11-07 19:14 - 2017-11-07 19:14 - 000152592 _____ () C:\Program Files (x86)\HMA! Pro VPN\network_notifications.dll 2017-11-07 19:14 - 2017-11-07 19:14 - 000084896 _____ () C:\Program Files (x86)\HMA! Pro VPN\WinUtils.dll 2017-11-07 19:14 - 2017-11-07 19:14 - 000238728 _____ () C:\Program Files (x86)\HMA! Pro VPN\event_routing_rpc.dll 2017-04-26 12:28 - 2017-10-11 02:05 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-11-11 14:21 - 2017-11-11 14:21 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-11-11 14:21 - 2017-11-11 14:21 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-07-16 20:11 - 2017-07-16 20:11 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-11-11 14:21 - 2017-11-11 14:21 - 000237808 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-11-11 14:21 - 2017-11-11 14:21 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-11-11 14:20 - 2017-11-11 14:20 - 000235816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-04-26 12:28 - 2017-10-11 02:05 - 070805952 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2017-10-16 20:07 - 2017-09-09 20:25 - 000688416 _____ () D:\Programmes\Steam\SDL2.dll 2017-04-26 12:17 - 2016-09-01 02:02 - 004969248 _____ () D:\Programmes\Steam\v8.dll 2017-11-01 10:21 - 2017-10-31 04:22 - 002546976 _____ () D:\Programmes\Steam\video.dll 2017-04-26 12:17 - 2016-09-01 02:02 - 001563936 _____ () D:\Programmes\Steam\icui18n.dll 2017-04-26 12:17 - 2016-09-01 02:02 - 001195296 _____ () D:\Programmes\Steam\icuuc.dll 2017-04-26 12:17 - 2016-01-27 08:49 - 002549760 _____ () D:\Programmes\Steam\libavcodec-56.dll 2017-04-26 12:17 - 2016-01-27 08:49 - 000491008 _____ () D:\Programmes\Steam\libavformat-56.dll 2017-04-26 12:17 - 2016-01-27 08:49 - 000332800 _____ () D:\Programmes\Steam\libavresample-2.dll 2017-04-26 12:17 - 2016-01-27 08:49 - 000442880 _____ () D:\Programmes\Steam\libavutil-54.dll 2017-04-26 12:17 - 2016-01-27 08:49 - 000485888 _____ () D:\Programmes\Steam\libswscale-3.dll 2017-11-01 10:21 - 2017-10-31 04:22 - 000901408 _____ () D:\Programmes\Steam\bin\chromehtml.DLL 2017-04-26 12:17 - 2016-07-04 23:17 - 000266560 _____ () D:\Programmes\Steam\openvr_api.dll 2017-03-14 07:31 - 2017-03-14 07:31 - 052051544 _____ () C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\CEF\libcef.dll 2017-10-16 20:07 - 2017-08-16 23:28 - 073130272 _____ () D:\Programmes\Steam\bin\cef\cef.win7\libcef.dll 2017-10-16 20:07 - 2017-09-07 03:04 - 000678400 _____ () D:\Programmes\Steam\bin\cef\cef.win7\SDL2.dll 2017-04-26 12:17 - 2015-09-25 00:52 - 000119208 _____ () D:\Programmes\Steam\winh264.dll 2017-01-25 19:07 - 2017-01-25 19:07 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node 2017-01-25 19:07 - 2017-01-25 19:07 - 000214528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2017-01-25 19:06 - 2017-01-25 19:06 - 000117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node 2017-01-25 19:07 - 2017-01-25 19:07 - 000125952 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node 2017-03-14 07:35 - 2017-03-14 07:35 - 000099416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll 2017-01-25 19:07 - 2017-01-25 19:07 - 000086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node 2016-05-25 21:52 - 2016-05-25 21:52 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2017-11-22 17:26 - 2016-09-12 14:53 - 048936448 _____ () C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2017-04-20 12:14 - 2017-04-20 12:13 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3075499438-3298961840-636474768-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-3075499438-3298961840-636474768-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\touto\Pictures\wallpaper.png DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{6DED63BC-A17E-4DBC-A3F2-37D4F0FE127C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{43E68337-41A7-4ED8-BBD2-D44418407BBC}] => (Allow) D:\Programmes\Steam\steamapps\common\Project CARS 2\pCARS2.exe FirewallRules: [{521D4071-AA3D-4A45-B1CA-161CA3C1C4C6}] => (Allow) D:\Programmes\Steam\steamapps\common\Project CARS 2\pCARS2.exe FirewallRules: [{826BE335-AE35-4094-868B-E5622CCA89F6}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe FirewallRules: [{97786DD5-9988-4FE6-863C-619E6C67A2A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{B9A9833B-6FCA-4234-B139-4C4FF40409FD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{210E9089-44A6-4421-BAA7-C94DA0E228AF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{B75D420F-D7FD-48F0-9A19-BB548F9FA93D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{5FACBA0E-9462-40FD-B08A-D9E781DEF013}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{ECFB4E0E-D5AE-4439-9E88-A2DC1A839EF9}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe FirewallRules: [UDP Query User{BCE7A8A9-5006-498E-B652-05EC26EEC0B7}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{121D4247-A4F3-41D6-A115-86724ADB5193}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{5F096FE3-8307-43DD-B232-B7A0348CBBDC}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{41355F4E-C745-4BCB-8537-534C6F400F01}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{EAC364CA-8610-4B62-9CEE-1C322257A32D}D:\program files\origin\battlefield 3\bf3.exe] => (Allow) D:\program files\origin\battlefield 3\bf3.exe FirewallRules: [TCP Query User{CB564827-A661-450E-ACC0-729C4249E49F}D:\program files\origin\battlefield 3\bf3.exe] => (Allow) D:\program files\origin\battlefield 3\bf3.exe FirewallRules: [{91450B47-F8EF-49E0-9AC9-808034E98093}] => (Allow) D:\Program Files\Origin\Battlefield 3\bf3.exe FirewallRules: [{852864BD-2D38-427E-8D5E-F0C16DF46679}] => (Allow) D:\Program Files\Origin\Battlefield 3\bf3.exe FirewallRules: [{4B542A2D-2A93-4FCA-BF5A-27026E4982C8}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{A1099386-EE43-4A61-971D-9197B06CEACB}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{3DD34078-D91B-4A16-801E-87EC3CD9FAEF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{167F3D6D-7AB9-47AF-8402-C8930E61A428}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{81395CC5-362B-42A7-A6FF-9F273EE03B2D}] => (Allow) D:\Programmes\Steam\Steam.exe FirewallRules: [{95465629-18D0-4206-BCA1-9E7E5B920105}] => (Allow) D:\Programmes\Steam\Steam.exe FirewallRules: [{E747DF59-512B-4DBD-9F95-508C260BDC3E}] => (Allow) D:\Programmes\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{9DFB54EB-7BB7-4B8C-A56A-EF2923A46674}] => (Allow) D:\Programmes\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{D5DBDB63-DFCB-42A1-81E6-B5A56CFAC7D7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{DDF0E559-C062-482E-A7F4-EA3109E13991}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{A7281111-085B-47A4-94D5-CBB06DBC5217}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{857BFFBE-AB09-4F32-9117-7FF013785ED5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C7B39882-CFE1-4A80-997F-3F0D17E19BC9}] => (Allow) D:\Programmes\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{4DD2EB1B-0F40-4F4E-9FE4-8366AC7AC08F}] => (Allow) D:\Programmes\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{671054E8-DCF3-452F-A7A3-8E38FBEA23F3}] => (Allow) D:\Programmes\Steam\steamapps\common\Mad Max\MadMax.exe FirewallRules: [{EEA39E03-009D-4066-B031-26B6A5CBC3D9}] => (Allow) D:\Programmes\Steam\steamapps\common\Mad Max\MadMax.exe FirewallRules: [{C8AF6B6B-D563-4C00-962F-2DE91D156014}] => (Allow) D:\Programmes\Steam\steamapps\common\assettocorsa\AssettoCorsa.exe FirewallRules: [{D910246A-9194-4455-AE31-DE31E726DDEB}] => (Allow) D:\Programmes\Steam\steamapps\common\assettocorsa\AssettoCorsa.exe FirewallRules: [{3084B2FA-0EB4-4CEE-A5BE-65A666A16FF9}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{4015B50B-661C-4B3A-94F2-C6D89F5D2874}] => (Allow) D:\Programmes\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe FirewallRules: [{51333BBA-95E5-4BFF-99EF-6B164CF3DD71}] => (Allow) D:\Programmes\Steam\steamapps\common\Total War SHOGUN 2\Shogun2.exe FirewallRules: [{5AD09E54-F33F-4569-AB62-DCE17B3E5A47}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 22-11-2017 16:06:11 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/22/2017 05:12:27 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/22/2017 04:31:23 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/22/2017 03:42:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/22/2017 01:36:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante gramblr.exe, version : 0.0.0.0, horodatage : 0x5a0ee551 Nom du module défaillant : ntdll.dll, version : 10.0.16299.64, horodatage : 0x493793ea Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000001ce9e ID du processus défaillant : 0x2c08 Heure de début de l’application défaillante : 0x01d36126714e1fbb Chemin d’accès de l’application défaillante : C:\Program Files\Gramblr\gramblr.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 07bccab6-e88f-499c-89bc-12f9b8952fe5 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (11/22/2017 01:32:15 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/22/2017 09:31:23 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/21/2017 08:22:21 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/21/2017 06:54:22 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/21/2017 02:44:40 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (11/20/2017 09:28:02 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\touto\AppData\Local\Chromium\Application\chrome.exe ». Assembly dépendant 58.0.2988.0,language="*",type="win32",version="58.0.2988.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Erreurs système: ============= Error: (11/22/2017 06:28:05 PM) (Source: DCOM) (EventID: 10016) (User: AF-AF325) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AF-AF325\touto de l’utilisateur (S-1-5-21-3075499438-3298961840-636474768-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (11/22/2017 06:27:37 PM) (Source: DCOM) (EventID: 10016) (User: AF-AF325) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AF-AF325\touto de l’utilisateur (S-1-5-21-3075499438-3298961840-636474768-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (11/22/2017 06:25:27 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:24:15 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:24:00 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:23:58 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:23:58 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:23:11 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:23:10 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding Error: (11/22/2017 06:23:09 PM) (Source: DCOM) (EventID: 10001) (User: AF-AF325) Description: Impossible de démarrer un serveur DCOM : {9AA46009-3CE0-458A-A354-715610A075E6} en tant que Non disponible/Non disponible. L’erreur « 740 » s’est produite lors du démarrage de la commande : C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {9aa46009-3ce0-458a-a354-715610a075e6} -Embedding CodeIntegrity: =================================== Date: 2017-11-22 17:43:23.182 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:43:22.540 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:42:00.038 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:41:50.151 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:41:49.485 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:40:38.832 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:40:38.201 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:40:20.125 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:40:19.977 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2017-11-22 17:40:15.819 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-4720HQ CPU @ 2.60GHz Pourcentage de mémoire utilisée: 41% Mémoire physique - RAM - totale: 16273.34 MB Mémoire physique - RAM - disponible: 9545.14 MB Mémoire virtuelle totale: 18705.34 MB Mémoire virtuelle disponible: 11383.68 MB ==================== Lecteurs ================================ Drive c: (OS_Install) (Fixed) (Total:236.7 GB) (Free:163.93 GB) NTFS Drive d: (Data) (Fixed) (Total:913.26 GB) (Free:483.46 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 238.5 GB) (Disk ID: 66B8191C) Partition: GPT. ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 66B819FD) Partition: GPT. ==================== Fin de Addition.txt ============================