Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 13.01.2018 01 Exécuté par Mounette (14-01-2018 10:52:29) Exécuté depuis C:\Users\Mounette\Desktop Windows 10 Home Version 1709 16299.125 (X64) (2018-01-01 17:41:58) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1852885184-828162596-4053347002-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1852885184-828162596-4053347002-503 - Limited - Disabled) defaultuser0 (S-1-5-21-1852885184-828162596-4053347002-1000 - Limited - Disabled) => C:\Users\defaultuser0 Invité (S-1-5-21-1852885184-828162596-4053347002-501 - Limited - Disabled) Mounette (S-1-5-21-1852885184-828162596-4053347002-1001 - Administrator - Enabled) => C:\Users\Mounette WDAGUtilityAccount (S-1-5-21-1852885184-828162596-4053347002-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-1852885184-828162596-4053347002-1001\...\uTorrent) (Version: 3.5.0.43916 - BitTorrent Inc.) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.4 - Advanced Micro Devices, Inc.) AMD Settings (HKLM\...\WUCCCApp) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.8.2318 - AVAST Software) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{2999BC6A-8EF9-2281-33EB-10FD4822078F}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{B310214A-F44A-762F-B2CD-C5DD7CBA5F30}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{11E71CF4-6BB7-E314-B3EE-0D4BAD949321}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{CDF59444-633F-EFF0-ABBD-99DA67E04273}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{74D8A73F-E3EF-6691-4216-274658AE4349}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{9CBC649D-0452-A63D-A523-FF8DCFE4556E}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{5BBA9BFD-9C57-38F7-2055-745C64CF740C}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{4348DDBB-D1F4-E8B4-BCA3-03CA6E10C782}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{77AB3ADA-47D1-A1C8-C2C4-FC524D2F52DC}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{34BE4C3B-E9B4-C362-4FFE-1A7B91D8AB3E}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{EE63D5CD-2A9D-99A4-28C3-480678FB52FC}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{A852482E-E376-B3BB-6717-8993EF74F134}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{D60F3E93-72D6-ADE1-E7C1-842CD828A47A}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{6EA40B6E-0EC9-B8AE-F0A2-738AE5ADED5C}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{7E3CDECC-B7B2-6E53-CAE3-5F8C8565C269}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{CD709202-55BA-4093-C8B7-85E472690CA7}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{DDC725DE-EFB4-6A2C-21BD-3F2B69E44DD9}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{97223B2C-6406-BAA1-DE99-53D0447BD7C8}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{77C4E164-2FBB-AD94-124E-DFA7846F091C}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{CB8AA16C-EB11-B27E-CB0E-CE015C5F85E4}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{D4DD8F3F-3FC2-FC5B-2E4D-3C86C1B402FA}) (Version: 2016.1006.1130.18864 - Advanced Micro Devices, Inc.) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6623 - CDBurnerXP) Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine) CyberLink Power Media Player 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.5.6909 - CyberLink Corp.) CyberLink PowerDirector 14 (HKLM-x32\...\{6BADCD73-E925-46F7-A295-FF2448632728}) (Version: 14.0.2.3309 - CyberLink Corp.) Discover HP Touchpoint Manager (HKLM-x32\...\{D0038AC4-2CD9-49E3-B40D-16C9B6DBD8EC}) (Version: 1.0.18.1 - HP) Dropbox 25 GB (HKLM-x32\...\{0867A88D-764F-366E-9E21-130DA8B472C3}) (Version: 3.1.18.0 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.59.1 - Dropbox, Inc.) Hidden Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.) FileZilla Client 3.27.1 (HKLM-x32\...\FileZilla Client) (Version: 3.27.1 - Tim Kosse) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden HP Audio Switch (HKLM-x32\...\{0C5D69BD-B518-46DB-8471-506CD27F9478}) (Version: 1.0.138.0 - HP Inc.) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.) HP ePrint SW (HKLM-x32\...\{5b1a1d22-bd59-44e0-a954-e2f18ec43a23}) (Version: 5.2.20454 - HP Inc.) HP JumpStart Bridge (HKLM-x32\...\{EB0912FF-C311-4E0F-A6B1-420FDD3C295E}) (Version: 1.3.0.407 - HP Inc.) HP JumpStart Launch (HKLM-x32\...\{B90CB0DE-2E60-41C4-9857-466EB98192BF}) (Version: 1.1.158.0 - HP Inc.) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.8357.5639 - HP Inc.) HP Support Assistant (HKLM-x32\...\{6FA09B91-5D97-45A9-95E9-50F635C98043}) (Version: 8.5.37.19 - HP Inc.) HP Support Solutions Framework (HKLM-x32\...\{5479A489-5753-4FB7-8E2A-540332D1F4E5}) (Version: 12.8.47.1 - HP Inc.) HP Sure Connect (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 1.0.0.29 - HP Inc.) HP System Event Utility (HKLM-x32\...\{29E20347-C62F-4657-938E-876A182B67F1}) (Version: 1.4.14 - HP Inc.) HP Wireless Button Driver (HKLM-x32\...\{099DAD2B-56C5-4919-9F82-418C2A018CAE}) (Version: 1.1.18.1 - HP) Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{FFE05E64-A140-42A8-9703-8F4B60B4DFE6}) (Version: 19.10.1635.0483 - Intel Corporation) Issou Clicker (HKU\S-1-5-21-1852885184-828162596-4053347002-1001\...\Issou Clicker) (Version: - ) Java 8 Update 131 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{ed5cef80-a339-45bd-8c06-514eaf785ca8}) (Version: 19.71.0 - Intel Corporation) LogMeIn Hamachi (HKLM-x32\...\{BE82D2D7-6CA2-43B3-8C22-CCF6405806E7}) (Version: 2.2.0.579 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.579 - LogMeIn, Inc.) Microsoft Midtown Madness 2 (HKLM-x32\...\Midtown Madness 2.0) (Version: - ) Microsoft Office Famille et Étudiant 2016 - fr-fr (HKLM\...\HomeStudentRetail - fr-fr) (Version: 16.0.8730.2175 - Microsoft Corporation) Microsoft Office Home and Student 2016 - en-us (HKLM\...\HomeStudentRetail - en-us) (Version: 16.0.8730.2175 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1852885184-828162596-4053347002-1001\...\OneDriveSetup.exe) (Version: 17.3.7131.1115 - Microsoft Corporation) Microsoft Pinball 3D French (HKLM-x32\...\Microsoft Pinball 3D_is1) (Version: 1.0 - Microsoft) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8730.2175 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2175 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8730.2175 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.8730.2175 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.8730.2175 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 5.1.24 (HKLM\...\{6487D3C0-8C39-4585-A44C-64DC40F22CB7}) (Version: 5.1.24 - Oracle Corporation) Portal version 1.0.0.0 (HKLM-x32\...\{9AD3428A-B930-49E4-8966-1941D8B97CAC}_is1) (Version: 1.0.0.0 - Strogino CS Portal) Rage Maker (HKLM-x32\...\{DD7F0FB7-9908-4DA5-95C5-7C6ABE6918C7}) (Version: 3.56.0 - Dan Awesome) Rage Maker Image Pack (HKLM-x32\...\{31E12803-3F3B-46A6-BE0D-3FF07677CE79}) (Version: 12.06.06 - Dan Awesome) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7944 - Realtek Semiconductor Corp.) SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden scrabbleproB 1.1.7 (HKLM-x32\...\scrabbleproB_is1) (Version: - scrabblepro) SD Card Formatter (HKLM-x32\...\{10C16E01-F739-4093-89A7-E570589FA0F6}) (Version: 5.0.0 - SD Association) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{DE083343-D24D-4495-919E-18C65EC0F289}) (Version: 2.8.0.0 - Microsoft Corporation) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes) vJoy Device Driver 2.1.8.38 (HKLM\...\{8E31F76F-74C3-47F1-9550-E041EEDC5FBB}_is1) (Version: 2.1.8.38 - Shaul Eizikovich) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) WinRAR 5.21 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-10] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-10] (AVAST Software) ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\mcafee\msc\MCCTXM~1.DLL -> Pas de fichier ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-02-24] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal) ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-10] (AVAST Software) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2016-10-06] (Advanced Micro Devices, Inc.) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-11-10] (AVAST Software) ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\mcafee\msc\MCCTXM~1.DLL -> Pas de fichier ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2015-02-24] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2015-02-24] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0354ED2F-33A4-451D-A713-B215D223E8C4} - System32\Tasks\SafeZone scheduled Autoupdate 1490004674 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software) Task: {07C13CCA-FC4A-48F8-8400-CADBB3EA8940} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: {0DB9DC1C-7E87-4D30-871F-ADBD476A8D39} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: {165A6E1E-8EF6-4C4B-AEE3-3D248517A956} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis Restart => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {1B63E889-7659-4DDB-BEFF-D33E1C2F89EA} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {20998E88-DA9F-496C-B315-E37F869E55FA} - System32\Tasks\McAfee Cleanup => C:\Users\Mounette\AppData\Local\Temp\MCPR.tmp\mccleanup.exe <==== ATTENTION Task: {253E5BA2-6071-47CB-87BF-883E65213A16} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {353FC398-2A5C-4898-8C4E-E5DBF3A13C89} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-05] (Google Inc.) Task: {3753AA87-5134-4778-A996-DAB02FAE8956} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {4840D48A-E575-49B8-A212-063B56AF7441} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-05] (Google Inc.) Task: {519CCF13-36E3-4A06-8FC1-B16DA9427E1C} - System32\Tasks\McAfeeLogon => C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe Task: {5A02F0CA-49C9-4D53-82DB-85FD2ECA9271} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {75103054-1AAC-4DA1-9F06-891C7113F01F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.) Task: {772FA337-8503-4C07-8BBB-21A3AA433B00} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-02] (Microsoft Corporation) Task: {839AF853-B09C-49A8-9398-5B84962B5169} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-01-06] (AVAST Software) Task: {8C086C6C-EC54-459C-B951-AF9B6B34626D} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-13] (Microsoft Corporation) Task: {8C10A4AC-A1A8-4AD2-8B98-07CE24320903} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {97D41775-5237-4D40-B983-7EE0B2676996} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-02] (Microsoft Corporation) Task: {991B8F74-E6F9-4EA8-A65F-43F8DD942D34} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {9E0E1539-8978-4C8F-9532-B43D29FAFCA5} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\windows\explorer.exe /NOUACCHECK Task: {A5F283CA-5D7F-4048-A231-3859E47196A0} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-11-10] (AVAST Software) Task: {B297440F-ECEA-4BBC-AAA6-E780233ECD42} - System32\Tasks\LaunchChromeTask111 => C:\Program Files\FileZilla FTP Client\FileZilla.exe [2017-08-14] (FileZilla Project) Task: {B613E161-9B4E-4ACF-B4D4-15A9855B4E05} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [2016-10-04] (HP Inc.) Task: {CB4EBC24-4F0D-46C0-8606-F54746843881} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {CD2B8763-0F5D-427C-8A4D-32A843AAF1EB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-01-13] (Microsoft Corporation) Task: {D02E9DF4-86F5-4F3D-A180-E8A1481EBB85} - System32\Tasks\HPJumpStartProvider => C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartProvider.exe Task: {E1D2B0DC-148F-4847-9B07-D17F0DE09BDF} - System32\Tasks\HPCeeScheduleForMounette => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2016-05-12] (HP Development Company, L.P.) Task: {E7F41051-A506-48B5-84C6-59778A3D2278} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe Task: {EBDC01CF-44A2-47A2-B45C-DBC9FCEA3403} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {F7A98F7D-33CC-465F-8AD9-EF9BAB37B5AC} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs] Task: {FBB21DD8-0B94-4362-A273-E247F81DE524} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForMounette.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\McAfee Cleanup.job => C:\Users\Mounette\AppData\Local\Temp\MCPR.tmp\mccleanup.exeĎ-p mpfpcu,mpfp,mps,shred,mpscu,mskcu,msk,emproxy,mas,fwdriver,hw,mbk,mcproxy,mhn,mqccu,mqc,shrd,nmc,redir,mna,mwl,msad,vs,msc,mcpr -log C:\Users\Mounette\AppData\Local\Temp -w C:\Users\Mounette\AppData\Local\Temp\MCPR.tmp <==== ATTENTION ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Mounette\Desktop\Éteindre.lnk -> C:\Users\Mounette\Documents\X_Dossier_X\Shutdown\bat.bat () ==================== Modules chargés (Avec liste blanche) ============== 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-01-03 18:16 - 2017-11-26 13:23 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-01-03 18:16 - 2017-11-26 13:01 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2016-09-15 04:34 - 2016-09-15 04:34 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2017-12-28 07:20 - 2017-12-28 07:20 - 000017408 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.22.3254.0_x64__8wekyb3d8bbwe\Microsoft.Msn.News.exe 2017-12-28 07:20 - 2017-12-28 07:20 - 016595456 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.22.3254.0_x64__8wekyb3d8bbwe\Microsoft.Msn.News.dll 2017-12-16 13:41 - 2017-12-16 13:42 - 005221768 _____ () C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1712.5.0_x64__8wekyb3d8bbwe\Microsoft.Advertising.dll 2016-10-21 09:16 - 2016-10-21 09:16 - 000291328 _____ () C:\Program Files\WindowsApps\Microsoft.BingNews_4.22.3254.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll 2018-01-13 12:20 - 2018-01-03 10:20 - 004063064 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libglesv2.dll 2018-01-13 12:20 - 2018-01-03 10:20 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\63.0.3239.132\libegl.dll 2017-12-08 11:52 - 2017-12-08 11:52 - 000102088 _____ () C:\Users\Mounette\AppData\Local\Microsoft\OneDrive\17.3.7131.1115\UpdateRingSettings.dll 2017-11-10 10:06 - 2017-11-10 10:06 - 000167096 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-11-10 10:06 - 2017-11-10 10:06 - 000059040 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2017-07-19 09:49 - 2017-07-19 09:49 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-11-10 10:06 - 2017-11-10 10:06 - 000237808 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-11-10 10:06 - 2017-11-10 10:06 - 000244584 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-11-10 10:05 - 2017-11-10 10:05 - 000235816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-07-16 12:47 - 2016-07-16 12:45 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1852885184-828162596-4053347002-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\HP Backgrounds\backgroundDefault.jpg DNS Servers: 8.8.8.8 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "HP JumpStart Launch.lnk" HKLM\...\StartupApproved\Run32: => "HPMessageService" HKLM\...\StartupApproved\Run32: => "HPRadioMgr" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{BEEB0BA9-0737-48BC-B227-83EDD219E695}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{2EEA01D0-B46C-4B81-93F9-23AE6FE41203}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spacewar\SteamworksExample.exe FirewallRules: [{7DF35BEC-FB8D-4475-85DB-188921B8C1DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spacewar\SteamworksExample.exe FirewallRules: [{68886AA5-A941-4A73-BDBB-D18155DA9554}] => (Block) %USERPROFILE%\Documents\!Jeux\Plague Inc\PlagueIncEvolved.exe FirewallRules: [{CED1C834-14B8-4603-B724-411096487FE6}] => (Block) %USERPROFILE%\Documents\!Jeux\Plague Inc\PlagueIncEvolved.exe FirewallRules: [{C6CE360B-0D2F-4B57-8F0D-D6D19C7ABE12}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe FirewallRules: [{16BFD83D-51AE-4F2E-9F65-1BEF061BEDF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Portal\hl2.exe FirewallRules: [{EFD85168-41CC-4456-8765-9241A5BD0F8C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Find_You\Find_You.exe FirewallRules: [{357BCA0F-0981-47EF-82B9-FF7E4FF97489}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Find_You\Find_You.exe FirewallRules: [UDP Query User{CF7B0EFF-48C6-450E-9D44-B131B0EEA948}C:\users\mounette\desktop\pc\3dscontroller.exe] => (Allow) C:\users\mounette\desktop\pc\3dscontroller.exe FirewallRules: [TCP Query User{02025A7C-DE5D-4721-B693-153F13076401}C:\users\mounette\desktop\pc\3dscontroller.exe] => (Allow) C:\users\mounette\desktop\pc\3dscontroller.exe FirewallRules: [UDP Query User{2224DC29-070F-4C37-A332-FA324E7816BB}C:\users\mounette\appdata\local\temp\rar$exa0.341\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.341\pc\3dscontroller.exe FirewallRules: [TCP Query User{E0405A69-9B5E-4E6D-8C19-764A23FFF4CD}C:\users\mounette\appdata\local\temp\rar$exa0.341\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.341\pc\3dscontroller.exe FirewallRules: [UDP Query User{D412BEBC-22A9-48A5-A915-9DA30D983ABE}C:\users\mounette\appdata\local\temp\rar$exa0.040\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.040\pc\3dscontroller.exe FirewallRules: [TCP Query User{A6321DF7-24E1-453E-8DAD-59C80287DE1B}C:\users\mounette\appdata\local\temp\rar$exa0.040\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.040\pc\3dscontroller.exe FirewallRules: [UDP Query User{356CE09E-12CC-43D4-B91C-6AF72223538D}C:\users\mounette\appdata\local\temp\rar$exa0.146\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.146\pc\3dscontroller.exe FirewallRules: [TCP Query User{7DD45262-A14E-4AA2-82B4-71E8EECBA8D5}C:\users\mounette\appdata\local\temp\rar$exa0.146\pc\3dscontroller.exe] => (Block) C:\users\mounette\appdata\local\temp\rar$exa0.146\pc\3dscontroller.exe FirewallRules: [UDP Query User{D89A61C1-0254-491C-A79C-ECBE8537EF02}C:\users\mounette\appdata\local\temp\rar$exa0.817\pc\3dscontroller.exe] => (Allow) C:\users\mounette\appdata\local\temp\rar$exa0.817\pc\3dscontroller.exe FirewallRules: [TCP Query User{43A7EC38-61E8-4B66-85EB-DD47D66F698E}C:\users\mounette\appdata\local\temp\rar$exa0.817\pc\3dscontroller.exe] => (Allow) C:\users\mounette\appdata\local\temp\rar$exa0.817\pc\3dscontroller.exe FirewallRules: [{59FFACFE-54C0-4E98-ADCE-CFEB0B2AF644}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909_0\SZBrowser.exe FirewallRules: [{A2FB319B-AF85-46FD-A4D1-E38BF6E4BB0C}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\4.58.2552.909\SZBrowser.exe FirewallRules: [{E9D45F99-EB19-4143-9C56-445936F45AC2}] => (Allow) C:\Users\Mounette\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{11496FDC-1472-4C0C-A7C2-60A22F755CBA}] => (Allow) C:\Users\Mounette\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F59742E1-50DC-462E-8D24-158CF9452956}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{24A08392-A7EB-4ED6-BA28-D499B5FFB001}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\AdVenture Capitalist\adventure-capitalist.exe FirewallRules: [{BFF5BB98-741C-449E-A968-2626CD6433FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bit Blaster XL\BitBlasterXL.exe FirewallRules: [{88DA27F7-EC80-45B2-8FC9-55F7E0DE1336}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bit Blaster XL\BitBlasterXL.exe FirewallRules: [{81041B12-D6B2-4F00-A088-8F590F4E433D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\orbt xl\orbtxl.exe FirewallRules: [{AB1B2297-5DBF-4AFA-BD7B-AB73F26AF957}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\orbt xl\orbtxl.exe FirewallRules: [{31FF8BBC-3FDE-429A-83A9-C4BC368C0A38}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polarity\Polarity.exe FirewallRules: [{5F91ED83-46A4-44DA-B576-069FE9AA10E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Polarity\Polarity.exe FirewallRules: [UDP Query User{516D6D16-B8FC-4151-910F-5A53CBF601CD}C:\program files\java\jre1.8.0_131\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_131\bin\javaw.exe FirewallRules: [TCP Query User{A995FAFE-01B3-41E6-843C-0DCA65EFBA04}C:\program files\java\jre1.8.0_131\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_131\bin\javaw.exe FirewallRules: [UDP Query User{78B6F1C3-3112-4568-85BF-78E6F8EC35DD}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{20D93004-585E-467B-905B-F9E8598025B7}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{9402665C-2A79-4D41-AB25-A92FF18F6184}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Floating Point\Floating Point.exe FirewallRules: [{0DD90E06-E233-4C82-AB93-D1EDE5C92ECF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Floating Point\Floating Point.exe FirewallRules: [{4946C3F7-F904-4E95-B6B8-3DA3FA5D72AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\supercratebox\supercratebox.exe FirewallRules: [{F822A4E1-ED2F-49E9-A666-A5F399F61277}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\supercratebox\supercratebox.exe FirewallRules: [{DBE55446-EE80-4421-B314-6CE9A56CA789}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broforce\Broforce_beta.exe FirewallRules: [{E5A0D31B-8C16-440E-9A93-FD995534FADC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Broforce\Broforce_beta.exe FirewallRules: [{C510B2A8-B16F-48C4-8C5B-FB19FE6E5540}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe FirewallRules: [{447F70DC-C226-42E6-9FC4-E5DFC892982B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect Safe Mode.exe FirewallRules: [{B90C03F9-11DD-4DF3-A149-710AD771D9A3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{CF1FF0AE-82A9-4E69-B2FB-7E5EE70B25AE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Prison Architect\Prison Architect.exe FirewallRules: [{69F1205F-BCCF-4292-AA81-0DC3B348A8C9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe FirewallRules: [{AE662488-FDA8-4C46-B465-8BEDA96150DD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe FirewallRules: [{E3E2B14E-9FEB-4F9F-ABB5-6A7F5B4907D4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockade3d\main.exe FirewallRules: [{F7D94ACD-6B83-4224-AA23-0627137AFDED}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Blockade3d\main.exe FirewallRules: [{F3AAD0F9-BB9D-4CF3-9F6A-939007508CC7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{FBA1513A-975F-4AD5-8626-6E4167B9916A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{8595060E-F87C-42ED-A8D9-109C116AF965}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{8CD6FF89-308E-451E-A530-B6D13A4E8BF9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{2970200F-017C-4619-90BB-88944A185B6F}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{446C4C15-1F73-43F3-93A8-5748F7CEFF38}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{223C0C5B-CF2B-482D-907D-B8A8583BC8C8}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe FirewallRules: [{3291F0D4-9DD3-4EE4-8CC0-624D71074651}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe FirewallRules: [{9076EB61-A7E8-4666-B6E1-0E7B2DB3E33A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe FirewallRules: [{0F1F8F51-A1F1-4F29-9643-D80298D3E9AD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe FirewallRules: [{34686013-C6BE-4666-B49B-1007791E136D}] => (Allow) C:\Program Files\CyberLink\PowerDirector14\PDR10.EXE FirewallRules: [{41880C69-C82B-44EB-A532-E42339842FE1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{AD32E9AC-6468-4565-9D93-996344E0947B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{C517E84E-A972-4318-94F6-50A44898FDE1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8F990B58-80A3-4663-83B6-3A20CA99438A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{FABBAAE7-9CAD-4EA2-87E8-BBF1C07A9E86}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 03-01-2018 18:13:40 Windows Update 13-01-2018 12:21:28 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (01/14/2018 09:08:11 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante svchost.exe_InstallService, version : 10.0.16299.15, horodatage : 0x9c786b9a Nom du module défaillant : ucrtbase.dll, version : 10.0.16299.125, horodatage : 0x70f70cc4 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000000000006b70e ID du processus défaillant : 0x8fc Heure de début de l’application défaillante : 0x01d38c6894832ef3 Chemin d’accès de l’application défaillante : C:\WINDOWS\System32\svchost.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\ucrtbase.dll ID de rapport : e97f9f28-afdd-4e04-9cea-06299cb17bd2 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/13/2018 01:25:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15828 Error: (01/13/2018 01:25:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15828 Error: (01/13/2018 01:25:17 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (01/13/2018 12:21:41 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary Protocole LLDP (Link Layer Discovery Protocol) Microsoft. System Error: Accès refusé. . Error: (01/07/2018 09:05:16 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3016) (User: AUTORITE NT) Description: Impossible de mettre à jour la valeur Object List de la clé SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance Le premier DWORD dans la section des données contient le code d’erreur et le second DWORD contient la valeur mise à jour. Error: (01/07/2018 09:05:16 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3016) (User: AUTORITE NT) Description: Impossible de mettre à jour la valeur First Help de la clé SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance Le premier DWORD dans la section des données contient le code d’erreur et le second DWORD contient la valeur mise à jour. Error: (01/07/2018 09:05:16 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3016) (User: AUTORITE NT) Description: Impossible de mettre à jour la valeur First Counter de la clé SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance Le premier DWORD dans la section des données contient le code d’erreur et le second DWORD contient la valeur mise à jour. Error: (01/07/2018 09:05:16 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3016) (User: AUTORITE NT) Description: Impossible de mettre à jour la valeur Last Help de la clé SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance Le premier DWORD dans la section des données contient le code d’erreur et le second DWORD contient la valeur mise à jour. Error: (01/07/2018 09:05:16 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3016) (User: AUTORITE NT) Description: Impossible de mettre à jour la valeur Last Counter de la clé SYSTEM\CurrentControlSet\Services\WmiApRpl\Performance Le premier DWORD dans la section des données contient le code d’erreur et le second DWORD contient la valeur mise à jour. Erreurs système: ============= Error: (01/14/2018 10:26:20 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-UIDILTTE) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-UIDILTTE\Mounette de l’utilisateur (S-1-5-21-1852885184-828162596-4053347002-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 10:05:15 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-UIDILTTE) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-UIDILTTE\Mounette de l’utilisateur (S-1-5-21-1852885184-828162596-4053347002-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:54:29 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-UIDILTTE) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-UIDILTTE\Mounette de l’utilisateur (S-1-5-21-1852885184-828162596-4053347002-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:52:39 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-UIDILTTE) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-UIDILTTE\Mounette de l’utilisateur (S-1-5-21-1852885184-828162596-4053347002-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:20:16 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:09:15 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-UIDILTTE) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-UIDILTTE\Mounette de l’utilisateur (S-1-5-21-1852885184-828162596-4053347002-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:08:20 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Service d'installation du Windows Store s’est terminé de façon inattendue pour la 1ème fois. Error: (01/14/2018 09:08:15 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/14/2018 09:07:16 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service AdaptiveSleepService s’est terminé de façon inattendue pour la 1ème fois. Error: (01/14/2018 09:05:16 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. CodeIntegrity: =================================== Date: 2018-01-14 10:43:40.141 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:43:40.138 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:43.754 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:43.749 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:43.123 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:43.120 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:42.513 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:42.509 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:41.080 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-01-14 10:28:41.075 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: AMD E2-7110 APU with AMD Radeon R2 Graphics Pourcentage de mémoire utilisée: 73% Mémoire physique - RAM - totale: 3551.12 MB Mémoire physique - RAM - disponible: 945.73 MB Mémoire virtuelle totale: 4895.12 MB Mémoire virtuelle disponible: 2056.52 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:450.64 GB) (Free:355.91 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:13.89 GB) (Free:1.65 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: B2CA91B0) Partition: GPT. ==================== Fin de Addition.txt ============================