Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 26-12-2017 Exécuté par marc (29-12-2017 16:02:59) Exécuté depuis C:\Users\marc.DESKTOP-VH5952G\Desktop Windows 10 Pro Version 1703 15063.786 (X64) (2017-06-18 09:37:05) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2628451514-815935720-796859287-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2628451514-815935720-796859287-503 - Limited - Disabled) Invité (S-1-5-21-2628451514-815935720-796859287-501 - Limited - Disabled) marc (S-1-5-21-2628451514-815935720-796859287-1002 - Administrator - Enabled) => C:\Users\marc.DESKTOP-VH5952G ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 1Password 4.6.2.626 (HKLM-x32\...\1Password4_is1) (Version: 4.0 - AgileBits) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.009.20050 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 28.0.0.127 - Adobe Systems Incorporated) Adobe Bridge CC 2018 (HKLM-x32\...\KBRG_8_0) (Version: 8.0 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.3.0.256 - Adobe Systems Incorporated) Adobe Lightroom (HKLM-x32\...\{8048A5DF-8A70-5BE1-954B-E0FDE1BD0D0D}) (Version: 6.13 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Advanced SystemCare 11 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 11.1.0 - IObit) Amazon Drive (HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\Amazon Drive) (Version: 5.0.11 - Amazon.com, Inc.) Apple Application Support (64 bits) (HKLM\...\{E2A6344A-45BF-47A0-9AE1-848325E7FD88}) (Version: 6.2 - Apple Inc.) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.9.2322 - AVAST Software) AVG Web TuneUp (HKLM-x32\...\AVG Web TuneUp) (Version: 4.3.6.255 - AVG Technologies) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Box Tools (HKLM-x32\...\{3772CE68-55C8-46C9-8AFC-F5B888E7903E}) (Version: 3.5.3.383 - Box) CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform) ClickImpots PREMIER 2016.2.080 (HKLM-x32\...\{9C00BD5D-6F84-4B50-A9C0-943466CA29E8}) (Version: 16.2.080 - Harvest) ClickImpots PREMIER 2017.2.079 (HKLM-x32\...\{3D334163-E668-4B95-AFC5-D4C930671939}) (Version: 17.2.079 - Harvest) ColorMunki Display 1.1.4 (HKLM-x32\...\ColorMunki Display_is1) (Version: 1.1.4 - X-Rite) Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.1.0 - IObit) DxO FilmPack 5 (HKLM\...\{7E2636AD-60AE-5002-802F-4207F52D5825}) (Version: 5.5.569.0 - DxO Labs) DxO OpticsPro 11 (HKLM\...\{04B0637B-80A2-4803-8A89-60BCC1EAE4F7}) (Version: 11.4.2 - DxO) DxO PhotoLab (HKLM\...\{1787CF38-A5E2-465F-BB8D-FDD87E82B3EB}) (Version: 1.1.1 - DxO) DxO ViewPoint 3 (HKLM\...\{E5147984-9AFC-5002-9F53-61213CF58D02}) (Version: 3.1.251.0 - DxO Labs) EPSON LFP Remote Panel (HKLM-x32\...\{4FD1C84E-F387-4609-A31F-4117F88B6600}) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - ) Epson Stylus Pro 3880 Printer Uninstall (HKLM\...\Epson Stylus Pro 3880) (Version: - SEIKO EPSON Corporation) EpsonNet Config V2 (HKLM-x32\...\{221DBED3-CAF7-4D16-B968-76B66430868A}) (Version: 2.2b - SEIKO EPSON CORPORATION) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.108 - Google Inc.) Google Drive (HKLM-x32\...\{9BC95947-92FD-438B-A168-C01F9A5B7292}) (Version: 2.34.7529.6838 - Google, Inc.) Google Earth Pro (HKLM-x32\...\{ECF2E224-42F5-4E50-B58E-94CA70E85697}) (Version: 7.3.0.3832 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.3 - Google Inc.) Hidden Hard Disk Sentinel PRO (HKLM-x32\...\Hard Disk Sentinel_is1) (Version: - HDS) High-Definition Video Playback (HKLM-x32\...\{237CCB62-8454-43E3-B158-3ACD0134852E}) (Version: 7.1.13400.42.0 - Nero AG) Hidden Image Rescue 5 (2.0.2) (HKLM-x32\...\Image Rescue 5_is1) (Version: 2.0.2 - Lexar) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 7.2.0.11 - IObit) IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.1 - IObit) iTunes (HKLM\...\{EEA27A43-9122-4DD5-8488-B0A1ECCA04B8}) (Version: 12.7.2.58 - Apple Inc.) Java 8 Update 131 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) Java 8 Update 151 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Logitech SetPoint 6.67 (HKLM\...\sp6) (Version: 6.67.83 - Logitech) ma Livebox (HKLM-x32\...\ma Livebox) (Version: 3.4.8.0 - Orange) Microsoft Money (HKLM-x32\...\Money2005b) (Version: 14 - Microsoft) Microsoft Office 365 ProPlus - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.8730.2127 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\OneDriveSetup.exe) (Version: 17.3.6816.0313 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{d6f233bd-3f8c-43f6-878b-07bd0568d595}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{cb7c3049-21de-415b-bd85-b65c14e547df}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Module externe DxO OpticsPro 11 pour Adobe Lightroom (HKLM-x32\...\{13E8E1D4-CA2E-4A5C-BBD4-EB4F7CA66014}) (Version: 1.0.36 - DxO Labs) Module externe DxO PhotoLab pour Adobe Lightroom (HKLM-x32\...\{91E4E071-DE20-45D9-91A1-F1A3BBD8333A}) (Version: 1.0.38 - DxO Labs) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 57.0.3 (x64 fr) (HKLM\...\Mozilla Firefox 57.0.3 (x64 fr)) (Version: 57.0.3 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0.3 - Mozilla) NEF Codec (HKLM-x32\...\{D6506521-0959-4FA3-875F-E2E28830B0D2}) (Version: 1.28.0 - Nikon Corporation) Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG) Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10300.0.102 - Nero AG) Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.2.10300.1.100 - Nero AG) Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.2.11100.12.100 - Nero AG) Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.2.10300.5.100 - Nero AG) Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.5.10500 - Nero AG) Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.2.11100.10.100 - Nero AG) Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google) Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.3.0 - Nikon Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA nView 141.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 141.36 - NVIDIA Corporation) NVIDIA WMI 2.18.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.18.0 - NVIDIA Corporation) odrive (HKLM\...\{2369E86E-0E14-47C7-893B-D0F83B7DB000}) (Version: 1.00.6083 - Oxygen Cloud, Inc.) Hidden Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.8730.2127 - Microsoft Corporation) Hidden Orange Update (HKLM-x32\...\Orange Update) (Version: 3.3.0.3 - Orange) Panneau de configuration NVIDIA 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 342.01 - NVIDIA Corporation) Hidden PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden Picture Control Utility 2 (HKLM\...\{D4893C47-704F-4B84-8486-9DE4974ACA6F}) (Version: 2.2.0 - Nikon Corporation) PlayMemories Camera Apps Downloader (HKLM-x32\...\{E4B95A36-0EF2-44C6-B939-5B3DBBC34502}) (Version: 1.1.1975.475 - Sony Network Entertainment International LLC) QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.12.1007.2016 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8198 - Realtek Semiconductor Corp.) SanDisk SSD Dashboard (HKLM-x32\...\SanDisk SSD Dashboard) (Version: 1.4.4.4 - Western Digital Corporation or its affiliates) Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.) Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.7.1 - IObit) Spotify (HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\Spotify) (Version: 1.0.69.336.g7edcc575 - Spotify AB) SpyderPRINT (HKLM-x32\...\SpyderPRINT) (Version: - ) SyncBackPro (HKLM-x32\...\SyncBackPro_is1) (Version: 7.12.12.0 - 2BrightSparks) TomTom HOME (HKLM-x32\...\{5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) TomTom MyDrive Connect 4.1.6.3253 (HKLM-x32\...\MyDriveConnect) (Version: 4.1.6.3253 - TomTom) TreeSize Professional V5.4.4 (HKLM-x32\...\TreeSize Professional_is1) (Version: 5.4.4 - ) TunesKit Spotify Converter 1.2.2.110 (HKLM-x32\...\TunesKit Spotify Converter_is1) (Version: - TunesKit, Inc.) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) VueScan (HKLM-x32\...\VueScan) (Version: - ) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) WinPcap 4.1.2 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2001 - CACE Technologies) WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) XnView 2.35 (HKLM-x32\...\XnView_is1) (Version: 2.35 - Gougelet Pierre-e) XRD i1d3 (HKLM-x32\...\{715DD253-A4B2-4912-894D-E445507428DC}) (Version: 1.0.135 - X-Rite) Hidden X-Rite Device Services Manager (HKLM-x32\...\{37B72A11-BBB8-4E7C-B7A5-4743CB799520}) (Version: 2.4.1 - X-Rite) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2628451514-815935720-796859287-1002_Classes\CLSID\{35B08E96-DA1F-4321-BF80-D6B53C20F3CF}\InprocServer32 -> C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\SyncedOverlay.dll () CustomCLSID: HKU\S-1-5-21-2628451514-815935720-796859287-1002_Classes\CLSID\{4585263E-BEF5-4A39-A2E8-8F69E0054F0C}\InprocServer32 -> C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\ActiveOverlay.dll () CustomCLSID: HKU\S-1-5-21-2628451514-815935720-796859287-1002_Classes\CLSID\{E07BCA71-E88B-4A5E-BA46-69A52D6B9B20}\InprocServer32 -> C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\LockedOverlay.dll () CustomCLSID: HKU\S-1-5-21-2628451514-815935720-796859287-1002_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ShellIconOverlayIdentifiers: [ 0drive.Active] -> {4585263E-BEF5-4A39-A2E8-8F69E0054F0C} => C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\ActiveOverlay.dll [2016-12-09] () ShellIconOverlayIdentifiers: [ 0drive.Locked] -> {E07BCA71-E88B-4A5E-BA46-69A52D6B9B20} => C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\LockedOverlay.dll [2016-12-09] () ShellIconOverlayIdentifiers: [ 0drive.Synced] -> {35B08E96-DA1F-4321-BF80-D6B53C20F3CF} => C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\SyncedOverlay.dll [2016-12-09] () ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2017-11-10] (Google) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-12-28] (AVAST Software) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-12-28] (AVAST Software) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-12-28] (AVAST Software) ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-10] (Google) ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2016-11-17] (Apple Inc.) ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2015-07-15] (IObit) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-12-28] (AVAST Software) ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2017-09-26] (IObit) ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2017-11-10] (Google) ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2015-07-15] (IObit) ContextMenuHandlers5: [ 0drive] -> {679ADC87-66BB-43BF-9DC3-3DE2E4A32B8C} => -> Pas de fichier ContextMenuHandlers5: [00nView] -> {1E9B04FB-F9E5-4718-997B-B8DA88302A48} => C:\Program Files\NVIDIA Corporation\nview\nvshell.dll [2016-10-18] () ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2017-09-26] () ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-12-28] (AVAST Software) ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2017-05-22] (IObit) ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2015-07-15] (IObit) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {052A17B7-F4CA-4D5E-ADB4-33D5E5390CEA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {06CC56A4-997A-4942-8D46-30BEF8B2811D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-12-15] (Microsoft Corporation) Task: {07807CCC-E5E6-42B2-BD2F-BC39E1FF5E05} - System32\Tasks\X-Rite Device Services Software Updater => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe [2015-09-18] (X-Rite Inc.) Task: {095B1D0D-9ED7-4C13-9CC8-AD7A1FA664C4} - System32\Tasks\Uninstaller_SkipUac_marc => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2017-12-12] (IObit) Task: {14386E72-10DC-4CF6-8FC2-FB66E1A68C69} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-12-28] (AVAST Software) Task: {15D04042-9C3B-43F5-A14A-F2A23B67FE63} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {166949CE-0742-42C0-B351-211E686CF0E2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-11] (Google Inc.) Task: {1E5772D6-40F0-44F1-AB98-15363A6A3790} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-12-15] (Microsoft Corporation) Task: {203315BE-1839-4291-8822-F0121FDF0AE5} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marc\SyncBackPro cloud image amazon => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {22B71C61-1844-4242-A16A-B38279B801F7} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-12-07] (Microsoft Corporation) Task: {247CB726-EE3D-4787-94D8-A03D0D9E7122} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoUpdate.exe [2017-07-28] (IObit) Task: {29540195-E341-413F-AC15-D8375B7A3704} - System32\Tasks\2BrightSparks\SyncBackPro\MARC-marc\SyncBackPro save internal => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {309F47D0-508F-4B7A-AE77-76BEE8FE33B2} - System32\Tasks\ASC11_SkipUac_marc => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2017-12-12] (IObit) Task: {31564276-C925-4283-91A3-9F4F47986AEC} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [2017-06-20] (Microsoft Corporation) Task: {31AC4725-C6AB-4759-A3C0-8F7E58ADDE27} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {32639090-50C0-4CA4-B6E8-D44767F47FD2} - System32\Tasks\Driver Booster SkipUAC (marc) => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe [2017-11-16] (IObit) Task: {3B8888C7-3D4E-433C-926D-748A7D977AFE} - C:\Windows\System32\Tasks\Microsoft\Windows\OrangeUpdate_Launch => Command(1): Net -> stop "Orange Update Core Service" Task: {3B8888C7-3D4E-433C-926D-748A7D977AFE} - C:\Windows\System32\Tasks\Microsoft\Windows\OrangeUpdate_Launch => Command(2): Net -> start "Orange Update Core Service" Task: {471DA52A-E62E-4D54-BCFA-F4DC42DCA02C} - System32\Tasks\SmartDefrag_Defrag => C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe [2017-10-16] (IObit) Task: {4B73B9F1-F042-4950-AA20-BAAF4CAA6042} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {4CF8803E-2972-4211-8764-E423FB641E02} - System32\Tasks\2BrightSparks\SyncBackPro\MARC-marc\SyncBackPro cloud image amazon => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {535EEAB1-A31D-48A6-AA1E-816A44C535F1} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {5725CE14-D7BE-489C-87AA-59208A95DA97} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [2017-06-20] (Microsoft Corporation) Task: {6613FCBB-9653-47C5-AA9D-813662D076AF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {6A81E2F1-EE04-49A7-9071-B5C273E5C96B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2017-12-28] (AVAST Software) Task: {6DBF9487-6129-40FA-855A-E9DF9A47ABF5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {6F4D7839-FFEA-4550-936E-9A323B1A118A} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marcs\SyncBackPro => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {745F73D7-9902-4E34-8EC9-7DC5C406AC49} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-12-07] (Microsoft Corporation) Task: {7FBAA0EE-F10D-4E35-9B21-8D1EC4722BBE} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoDefrag.exe [2016-06-06] (IObit) Task: {8B8913A4-2AC4-47D1-A0F2-21A0D9EA2BED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {8BA0CA4E-29E6-44E9-BF9E-E0690C9520A3} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marc\save internal => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {90007F9D-A96D-4C49-A22B-7B4011B2EB99} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marcs\SyncBackPro save external => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {9B17A154-CE1A-445E-B010-11E3258B354B} - System32\Tasks\2BrightSparks\SyncBackPro\MARC-marc\SyncBackPro => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {9E5EBDA0-4A24-421F-AA26-9E58F7435C81} - System32\Tasks\Microsoft\Windows\OrangeUpdate_Install => C:\Program Files (x86)\Orange Update\install.bat [2017-11-13] () <==== ATTENTION Task: {A39CF7B6-40E7-4F37-8123-0DA7FE402C03} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marcs\SyncBackPro save internal => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) Task: {A41E1124-D7B5-43C1-9D53-BD93DC658293} - System32\Tasks\ASC11_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2017-12-07] (IObit) Task: {A686BC46-919C-4FF7-80FA-77042D627F68} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag 4\IObitSelfCheck.exe [2016-10-18] (IObit) Task: {B5CE2C0D-5322-45F3-B9E2-0E62880A1CD1} - System32\Tasks\SmartDefrag_AutoDefrag => C:\Program Files (x86)\IObit\Smart Defrag 4\AutoDefrag.exe [2016-06-06] (IObit) Task: {BFC7C8E5-EA7B-4773-9C4D-B8183EF40303} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag 4\SmartDefrag.exe [2017-10-16] (IObit) Task: {C453FC32-3E62-4B1F-82C7-EC72CBC79A07} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2017-12-15] (Microsoft Corporation) Task: {D187B733-A359-468D-8B2E-7DB232EBB840} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-11-11] (Google Inc.) Task: {D20EB4D4-E45E-4A2B-B41C-F1AF7710A3DC} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-12-15] (Microsoft Corporation) Task: {D5A7CF26-2B2D-459C-B2A0-1EC5B32F324C} - System32\Tasks\Uninstaller_SkipUac_marcs => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2017-12-12] (IObit) Task: {DDA723EE-5B1A-475B-B209-9244FE968FE4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-13] (Piriform Ltd) Task: {E57D60F5-63B5-4543-9CD2-45B07A629D90} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {EE3357D9-20E0-413E-A7C2-D8BE65642A7A} - System32\Tasks\Microsoft\Windows\orangeinside => C:\Users\marcs\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe Task: {F13D275E-10E6-47BD-AF5E-097EEBB233FF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\2309AFB4-C8BA-495E-8229-B37D0A306569\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [2017-10-10] (Microsoft Corporation) Task: {F69E6E7C-E19C-49E9-A5AB-98101E372832} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2017-12-15] (Microsoft Corporation) Task: {FAB20DB9-105C-4148-8769-1907A0B16846} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\Scheduler.exe [2017-10-24] (IObit) Task: {FB9AC23E-AA8C-4FF3-81C9-479BDFD79BE0} - System32\Tasks\2BrightSparks\SyncBackPro\DESKTOP-VH5952G-marc\save external => C:\Program Files (x86)\2BrightSparks\SyncBackPro\SyncBackPro.exe [2017-12-04] (2BrightSparks Pte. Ltd.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_marc.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_marcs.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe Task: C:\WINDOWS\Tasks\X-Rite Device Services Software Updater.job => C:\Program Files (x86)\X-Rite\Devices\Services\XRD Software Update.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2017-12-21 19:15 - 2009-01-12 08:15 - 000071096 _____ () C:\WINDOWS\SysWOW64\NMSAccessU.exe 2017-03-18 21:58 - 2017-03-18 21:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-12-27 09:33 - 2016-12-09 23:43 - 000712580 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\ActiveOverlay.dll 2016-12-27 09:33 - 2016-01-11 21:53 - 000130560 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\win32api.pyd 2016-12-27 09:33 - 2016-01-11 21:52 - 000137728 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\pywintypes27.dll 2016-12-27 09:33 - 2016-01-11 21:54 - 000548864 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\pythoncom27.dll 2016-12-27 09:33 - 2016-01-11 21:53 - 000017920 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\win32trace.pyd 2016-12-27 09:33 - 2016-06-27 16:26 - 000051712 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\_socket.pyd 2016-12-27 09:33 - 2016-01-11 21:57 - 000522240 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\win32com.shell.shell.pyd 2016-12-27 09:33 - 2016-06-27 16:25 - 000121344 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\_ctypes.pyd 2016-12-27 09:33 - 2016-12-09 23:43 - 000712589 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\LockedOverlay.dll 2016-12-27 09:33 - 2016-12-09 23:43 - 000712588 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\SyncedOverlay.dll 2016-12-27 09:33 - 2016-06-27 16:25 - 000693248 _____ () C:\Users\marc.DESKTOP-VH5952G\.odrive\bin\6083\x64\unicodedata.pyd 2017-09-26 01:52 - 2017-09-26 01:52 - 000491600 _____ () C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll 2017-03-18 21:59 - 2017-03-20 06:12 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-09-27 21:07 - 2016-09-25 20:14 - 002223584 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\ColorMunkiDisplayTray.exe 2017-12-13 19:04 - 2017-12-13 19:04 - 000089984 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2017-12-15 09:05 - 2017-12-15 09:05 - 001401000 _____ () C:\Program Files\Microsoft Office\Root\Office16\ADDINS\UmOutlookAddin.dll 2017-12-01 09:11 - 2017-12-01 09:11 - 001902776 _____ () C:\Program Files\Microsoft Office\root\Office16\ClientTelemetry.dll 2017-12-29 15:36 - 2017-12-29 15:36 - 000468480 _____ () C:\Users\marc.DESKTOP-VH5952G\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads\CKScanner (1).exe 2017-12-29 15:42 - 2017-12-29 15:42 - 002956160 _____ () C:\Users\marc.DESKTOP-VH5952G\AppData\Roaming\ZHP\ZHPDiag3.exe 2017-12-21 22:44 - 2017-05-22 11:16 - 000442144 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madExcept_.bpl 2017-12-21 22:44 - 2017-05-22 11:16 - 000210720 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2017-12-21 22:44 - 2017-05-22 11:16 - 000059680 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2017-01-16 20:54 - 2016-10-13 18:03 - 000624960 _____ () C:\Program Files (x86)\iFunSoft\iFunSoft Updater\ProductStatistics.dll 2017-12-21 20:25 - 2016-08-18 18:43 - 000442144 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl 2017-12-21 20:25 - 2016-08-18 18:43 - 000059680 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl 2017-12-21 20:25 - 2016-08-18 18:43 - 000210720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl 2017-12-21 20:25 - 2017-08-04 13:44 - 000082720 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\GetProcessDLL.dll 2017-10-26 19:32 - 2016-01-11 16:03 - 000899872 _____ () C:\Program Files (x86)\IObit\Smart Defrag 4\webres.dll 2017-10-26 19:32 - 2016-01-11 16:02 - 000630048 _____ () C:\Program Files (x86)\IObit\Smart Defrag 4\ProductStatistics.dll 2017-12-21 20:25 - 2017-06-10 15:33 - 000631584 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\ProductStatistics.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 000206152 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 000058016 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 000057504 _____ () C:\Program Files\AVAST Software\Avast\dll_loader.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 000289272 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-12-28 19:45 - 2017-12-28 19:45 - 000282560 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-11-16 03:01 - 2017-11-16 03:01 - 000799744 _____ () C:\Users\marc.DESKTOP-VH5952G\AppData\Local\Amazon Drive\sqlite3.dll 2017-09-27 21:07 - 2016-07-15 00:50 - 044046336 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\Prism.dll 2017-09-27 21:07 - 2016-05-05 14:00 - 007999488 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\QtGui4.dll 2017-09-27 21:07 - 2016-05-05 14:00 - 002150400 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\QtCore4.dll 2017-09-27 21:07 - 2016-07-26 17:06 - 003449344 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\CxF2_VC90MD_2.1.dll 2017-09-27 21:07 - 2017-04-05 05:00 - 000898560 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\libxml2.dll 2017-09-27 21:07 - 2017-04-05 05:00 - 000073728 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\zlib1.dll 2017-09-27 21:07 - 2017-04-05 05:00 - 000131072 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\imageformats\qjpeg4.dll 2017-09-27 21:07 - 2017-04-05 05:00 - 000278528 _____ () C:\Program Files (x86)\X-Rite\ColorMunki Display\imageformats\qtiff4.dll 2017-12-21 22:44 - 2017-05-22 11:17 - 000899872 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\webres.dll 2017-12-21 22:44 - 2017-05-23 18:57 - 000631584 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\ProductStatistics.dll 2017-12-21 22:44 - 2017-05-22 11:16 - 000524064 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\sqlite3.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\marc\Desktop\facture carglass.jpeg:3or4kl4x13tuuug3Byamue2s4b [97] AlternateDataStreams: C:\Users\marc\Desktop\facture carglass.jpeg:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} [0] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\sharepoint.com -> hxxps://serviergroup-files.sharepoint.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\100sexlinks.com -> 100sexlinks.com Il y a 4788 plus de sites. ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-07-10 12:04 - 2016-10-09 20:52 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2628451514-815935720-796859287-1002\Control Panel\Desktop\\Wallpaper -> DNS Servers: 9.9.9.9 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupreg: APSDaemon => MSCONFIG\startupreg: CCleaner Monitoring => "c:\program files\ccleaner\ccleaner64.exe" /monitor MSCONFIG\startupreg: Spotify Web Helper => HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "EvtMgr6" HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKU\S-1-5-21-2628451514-815935720-796859287-1002\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{AF50DBAD-A6C7-4A40-B5B7-8EF9D0162F4A}C:\program files (x86)\clickimpots premier 2017\java\bin\java.exe] => (Allow) C:\program files (x86)\clickimpots premier 2017\java\bin\java.exe FirewallRules: [TCP Query User{F67F0608-2C59-4754-9762-CFEDFFE4CEF7}C:\program files (x86)\clickimpots premier 2017\java\bin\java.exe] => (Allow) C:\program files (x86)\clickimpots premier 2017\java\bin\java.exe FirewallRules: [UDP Query User{FA9D269C-1FEB-4780-BB84-8D77191173C6}C:\program files (x86)\clickimpots premier 2017\clickimpots.exe] => (Allow) C:\program files (x86)\clickimpots premier 2017\clickimpots.exe FirewallRules: [TCP Query User{19FCAEB5-8420-40ED-A194-EAC4B2D4785E}C:\program files (x86)\clickimpots premier 2017\clickimpots.exe] => (Allow) C:\program files (x86)\clickimpots premier 2017\clickimpots.exe FirewallRules: [{DE1A00F2-50AA-4B75-AA18-A4961CC70155}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{325899DD-4C71-48C5-9F04-2406D3FBC66D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{3E7C7EF9-40F5-443C-AF27-EA385A351C5A}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{060034CC-DFA1-4E78-B186-F3C978B0E9D7}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{B0F1242B-8EF5-4C8C-8E49-69A890014CEC}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{07E5D07C-BD9E-4618-A610-E3E20212DB0E}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{DE8B8CD5-20D5-4F9D-BE6C-62D9A21B83D7}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{AB2F8EBD-3736-4A32-B419-8840C69BDB50}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{30D27526-A590-422C-8863-156F19C2CC90}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{64003CC1-A428-458C-A714-09189E0EB93F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{4ACAC04A-A496-423B-B8E9-CC68BEF6CEA6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{5355E66F-DBBA-4AF4-A10D-C95460115B02}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{B5008392-A9CF-4E35-9FE8-763194BE1BAE}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{C61D4C2D-D9E0-4AE1-B999-AFAA69D9552D}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{8ED0932F-21D2-415F-AE91-FA2AB45E009A}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{65E00121-59E8-46BD-8407-A775186003A0}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{773B663F-EFAC-40A2-A005-0F42FD461760}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{E39EFDFE-8588-48DC-B9F6-A9022039F520}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [UDP Query User{3247EB20-7045-4BB2-8430-D5585F76234A}D:\common\enezinst\epsonnet easyinstall.exe] => (Allow) D:\common\enezinst\epsonnet easyinstall.exe FirewallRules: [TCP Query User{666931F7-A391-427A-A2E3-03D5A65B897F}D:\common\enezinst\epsonnet easyinstall.exe] => (Allow) D:\common\enezinst\epsonnet easyinstall.exe FirewallRules: [TCP Query User{51835386-5DE5-4E9D-B861-6D3417084FF8}C:\program files (x86)\clickimpots premier 2016\java\bin\java.exe] => (Allow) C:\program files (x86)\clickimpots premier 2016\java\bin\java.exe FirewallRules: [UDP Query User{92C884DB-B111-4E59-B408-3CA12B49AC86}C:\program files (x86)\clickimpots premier 2016\java\bin\java.exe] => (Allow) C:\program files (x86)\clickimpots premier 2016\java\bin\java.exe FirewallRules: [TCP Query User{D56D0A58-23A2-400D-8080-9C3A6699331A}C:\program files (x86)\orange\ma livebox\dist\st2.exe] => (Allow) C:\program files (x86)\orange\ma livebox\dist\st2.exe FirewallRules: [UDP Query User{F17A71AE-E784-45D9-9421-A58B3888C904}C:\program files (x86)\orange\ma livebox\dist\st2.exe] => (Allow) C:\program files (x86)\orange\ma livebox\dist\st2.exe FirewallRules: [{0FA68874-2A31-4C27-A69C-37E847D77B93}] => (Allow) LPort=1900 FirewallRules: [{73CB9041-5B46-4593-BA54-0162FB48F6CC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe FirewallRules: [{5386ADC1-BC58-4156-9B38-8D6D0681694C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe FirewallRules: [{1D1D77A8-5C99-4067-8F99-C79440722319}] => (Allow) LPort=5354 FirewallRules: [{BB20F39C-6760-4541-8A9C-498A56A546EE}] => (Allow) LPort=5354 FirewallRules: [{A5F38122-AC20-4964-A88B-7A66DFCA9D4F}] => (Allow) LPort=5354 FirewallRules: [{4B8A4363-70E4-4722-BAA8-99B8C9AD0B37}] => (Allow) LPort=5354 FirewallRules: [{7E7AEB56-0176-4E85-99DE-B49AD3EEB381}] => (Allow) LPort=48113 FirewallRules: [{053B46E4-CFA0-41AC-9348-2445DB47A18A}] => (Allow) LPort=48113 FirewallRules: [{4E96360F-76F1-45BB-B027-E288507774F0}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{C754780E-420C-4901-889F-C9872D0A39E0}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{57090416-118B-4885-87FD-F96BA2781345}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{283D1F5F-61A4-4F11-B34E-8783AA0BA593}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{8E10E58B-4B8E-4FB3-8209-4B15C0DCBE80}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{CBECDA41-4BD6-4438-A68F-225EB39542C6}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [TCP Query User{3889B9F7-2BA6-4E90-8A36-BE92A941CC8C}C:\program files (x86)\1password 4\1password.exe] => (Allow) C:\program files (x86)\1password 4\1password.exe FirewallRules: [UDP Query User{043651B2-B476-4F20-A6F1-060015FF4C6E}C:\program files (x86)\1password 4\1password.exe] => (Allow) C:\program files (x86)\1password 4\1password.exe FirewallRules: [TCP Query User{D468F7DA-2216-4BEB-B7E7-C4EBC09117F3}C:\users\marc.desktop-vh5952g\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc.desktop-vh5952g\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{124877F0-DEF7-451F-A145-FE0B7300DE22}C:\users\marc.desktop-vh5952g\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marc.desktop-vh5952g\appdata\roaming\spotify\spotify.exe FirewallRules: [{4AF67CCC-8DCA-45C9-9478-106E3351A523}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{AD821BA7-6488-47D4-A817-746FD08F5496}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\DedicarzService.exe FirewallRules: [{2BD3F839-96F4-4C22-8AA2-B362B171FC57}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{EE8C06A0-FAD3-4073-9185-71FEE910A3D4}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\LiveboxManager.exe FirewallRules: [{FF0393B2-C0C0-481B-92D5-F9849DDC9204}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{D0DDE387-2C9C-4F0A-8538-47C07DCF444C}] => (Allow) C:\Program Files (x86)\Orange\ma Livebox\dedicarz\PluginLivebox.exe FirewallRules: [{D93548D9-9C09-46A6-BB1E-908C4B4194E6}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{DC8F03CD-0ECA-4B1A-98AD-0878FC4D46BA}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{2B2D924B-7C21-4767-9596-B4332D22D718}] => (Allow) LPort=5454 FirewallRules: [{1A68CED7-1780-4C8D-97B3-D164D5174680}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe FirewallRules: [{28DC881F-A84B-403A-9FB3-E443E3B61A50}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{6826DA5E-B68D-4B26-AC12-600D7E64F941}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{0326D430-D990-4CB8-96B8-538E99176835}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{8D81B350-5377-4C46-8C9B-91F842BFEAA3}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{FAE7DCC3-83D4-4255-AEB5-2101CB9D377D}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe FirewallRules: [{8F47D8EF-55E2-4E20-8CC1-383DD294262A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe FirewallRules: [TCP Query User{8C513FD1-3AC7-4202-B842-E665FC65DEFD}C:\users\marc.desktop-vh5952g\appdata\local\raidar\raidar.exe] => (Allow) C:\users\marc.desktop-vh5952g\appdata\local\raidar\raidar.exe FirewallRules: [UDP Query User{271EA576-5C34-4364-B62D-6731B2E4949B}C:\users\marc.desktop-vh5952g\appdata\local\raidar\raidar.exe] => (Allow) C:\users\marc.desktop-vh5952g\appdata\local\raidar\raidar.exe FirewallRules: [TCP Query User{EE132CD5-CA99-438B-8557-EA018BC2B1FB}C:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe] => (Allow) C:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe FirewallRules: [UDP Query User{5422C80A-08D2-42E6-9C2C-EBD7ED2F964D}C:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe] => (Allow) C:\program files (x86)\iobit\advanced systemcare\surfing protection\ffnativemessage.exe FirewallRules: [{62C012F1-8772-4A7C-B7E5-4923408465A4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{66D54199-48A7-4906-94DA-7861F46770B2}C:\program files (x86)\epsonnet\epsonnet config v2\epsonnet config.exe] => (Allow) C:\program files (x86)\epsonnet\epsonnet config v2\epsonnet config.exe FirewallRules: [UDP Query User{0F712107-B89A-4D9A-BFA1-6A80C09046ED}C:\program files (x86)\epsonnet\epsonnet config v2\epsonnet config.exe] => (Allow) C:\program files (x86)\epsonnet\epsonnet config v2\epsonnet config.exe FirewallRules: [{545C2153-914F-42E7-B7F9-48832773E117}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3B32769A-E60F-47B1-B5E1-48CEB0E55AC6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{1DFB9DFF-6031-4020-A291-B4EBF496F687}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{95124B5C-6112-4DD2-BAF4-272890878F5D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{065CF0A4-86F8-46D7-AB23-51D5C006AD46}] => (Allow) C:\Program Files\iTunes\iTunes.exe ==================== Points de restauration ========================= 28-12-2017 12:59:12 AIDA64 Extreme v5.92 restore point 28-12-2017 12:59:54 Apple Application Support (32 bits) restore point 28-12-2017 13:01:58 Apple Application Support (64 bits) restore point 28-12-2017 13:03:06 Apple Mobile Device Support restore point 28-12-2017 13:03:52 Bonjour restore point 28-12-2017 13:05:28 Assistant Mise à niveau de Windows 10 restore point 28-12-2017 13:06:15 CPUID HWMonitor 1.30 restore point 28-12-2017 13:06:56 CPUID TAICHI CPU-Z 1.80.1 restore point 28-12-2017 13:07:41 CrystalDiskInfo 7.1.1 restore point 28-12-2017 13:08:28 CrystalDiskMark 5.2.2 restore point 28-12-2017 13:09:16 foobar2000 v1.3.16 restore point 28-12-2017 13:10:19 Hard Disk Low Level Format Tool 4.40 restore point 28-12-2017 13:11:07 Helicon Focus restore point 28-12-2017 13:11:22 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 28-12-2017 13:11:48 Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 28-12-2017 13:13:08 IOTransfer 1.3 restore point 28-12-2017 13:14:26 Mozilla Firefox 47.0 (x86 fr) restore point 28-12-2017 13:15:16 Java 8 Update 121 (64-bit) restore point 28-12-2017 13:16:06 Package de pilotes Windows - Apple, Inc. (USBAAPL64) USB (05/18/2015 6.0.9999.67) restore point 28-12-2017 13:17:20 Services d’impression Bonjour restore point 28-12-2017 17:46:52 AVG AntiVirus Gratuit restore point 28-12-2017 17:50:41 Installed DxO PhotoLab 28-12-2017 17:52:48 Removed Module externe DxO PhotoLab pour Adobe Lightroom 28-12-2017 17:52:56 Installed DxO PhotoLab plug-in for Adobe Lightroom 28-12-2017 17:53:35 Sauvegarde Windows 28-12-2017 19:30:20 Installé EPSON LFP Remote Panel 28-12-2017 20:25:22 IObit Malware Fighter 5 restore point 28-12-2017 23:42:14 Apple Software Update restore point 28-12-2017 23:42:44 Apple Application Support (32 bits) restore point ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (12/29/2017 03:30:06 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\marc.DESKTOP-VH5952G\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads\esetsmartinstaller_fra.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (12/29/2017 03:30:03 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Users\marc.DESKTOP-VH5952G\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads\esetsmartinstaller_fra.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Composant 2 : C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Erreurs système: ============= Error: (12/29/2017 03:31:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/29/2017 03:31:08 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\B:\temp\ehdrv.sys Error: (12/29/2017 03:31:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/29/2017 03:31:08 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\B:\temp\ehdrv.sys Error: (12/29/2017 03:31:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/29/2017 03:31:08 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\B:\temp\ehdrv.sys Error: (12/29/2017 03:31:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/29/2017 03:31:08 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\B:\temp\ehdrv.sys Error: (12/29/2017 03:31:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (12/29/2017 03:31:07 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\B:\temp\ehdrv.sys CodeIntegrity: =================================== Date: 2017-12-21 22:44:32.445 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. Date: 2017-12-21 22:41:33.182 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files (x86)\Google\Chrome Beta\Application\chrome.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements. Date: 2017-12-02 09:56:23.151 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-12-02 09:56:23.149 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-12-01 16:50:52.198 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-12-01 16:50:52.196 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-12-01 02:12:44.245 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-12-01 02:12:44.244 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-30 13:23:35.437 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2017-11-30 13:23:35.436 Description: Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume1\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-2600 CPU @ 3.40GHz Pourcentage de mémoire utilisée: 32% Mémoire physique - RAM - totale: 16351.12 MB Mémoire physique - RAM - disponible: 11022.85 MB Mémoire virtuelle totale: 32735.12 MB Mémoire virtuelle disponible: 27126.98 MB ==================== Lecteurs ================================ Drive b: (ssd2) (Fixed) (Total:223.57 GB) (Free:134.04 GB) NTFS Drive c: (windows 10 (121115)) (Fixed) (Total:223.13 GB) (Free:113.71 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive e: (S1) (Fixed) (Total:3725.9 GB) (Free:1209.52 GB) NTFS Drive g: () (Removable) (Total:31.99 GB) (Free:31.27 GB) FAT32 Drive h: (save-int4) (Fixed) (Total:3725.9 GB) (Free:732.2 GB) NTFS Drive i: (S2) (Fixed) (Total:3725.9 GB) (Free:1022.23 GB) NTFS Drive l: () (Removable) (Total:0.24 GB) (Free:0.17 GB) FAT ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: F633E4C4) Partition 1: (Active) - (Size=223.1 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 223.6 GB) (Disk ID: DE39487E) Partition 1: (Active) - (Size=223.6 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 00000000) Partition: GPT. ======================================================== Disk: 3 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 88B94863) Partition: GPT. ======================================================== Disk: 4 (MBR Code: Windows 7 or 8) (Size: 3726 GB) (Disk ID: 92B03237) Partition: GPT. ======================================================== Disk: 5 (MBR Code: Windows 7 or 8) (Size: 57.7 GB) (Disk ID: BA65C1CF) Partition 1: (Active) - (Size=32 GB) - (Type=0C) ======================================================== Disk: 6 (Size: 241 MB) (Disk ID: 91F72D24) Partition 1: (Active) - (Size=241 MB) - (Type=06) ==================== Fin de Addition.txt ============================