Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 14.01.2018 Exécuté par nad (15-01-2018 19:22:14) Exécuté depuis C:\Users\nad\Downloads Windows 8.1 (Update) (X64) (2016-06-08 19:02:52) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3533391725-3395593355-2823718628-500 - Administrator - Disabled) => C:\Users\Administrator HomeGroupUser$ (S-1-5-21-3533391725-3395593355-2823718628-1006 - Limited - Enabled) Invité (S-1-5-21-3533391725-3395593355-2823718628-501 - Limited - Disabled) nad (S-1-5-21-3533391725-3395593355-2823718628-1002 - Administrator - Enabled) => C:\Users\nad ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated) Adobe Digital Editions 4.5 (HKLM-x32\...\Adobe Digital Editions 4.5) (Version: 4.5.7 - Adobe Systems Incorporated) Adobe Flash Player 28 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 28.0.0.137 - Adobe Systems Incorporated) Advanced SystemCare 11 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 11.1.0 - IObit) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.05 - NVIDIA Corporation) Hidden AVerMedia A373 MiniCard Dual DVB-T 2.3.64.23 (HKLM-x32\...\AVerMedia A373 MiniCard Dual DVB-T) (Version: 2.3.64.23 - AVerMedia TECHNOLOGIES, Inc.) AVerMedia TV Player (HKLM-x32\...\{DFD1F64D-2AF0-4CE2-9752-D701E80F8D1C}) (Version: 1.8.0 - AVerMedia Technologies, Inc.) Hidden AVerMedia TV Player (HKLM-x32\...\InstallShield_{DFD1F64D-2AF0-4CE2-9752-D701E80F8D1C}) (Version: 1.8.0 - AVerMedia Technologies, Inc.) calibre (HKLM-x32\...\{C91787D1-574E-4367-A8D2-641532A78A5E}) (Version: 3.8.0 - Kovid Goyal) Canaux de jeu (HKLM-x32\...\WildTangentGameProvider-acer-genres) (Version: 8.1.0.17 - WildTangent, Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.38 - Piriform) clear.fi SDK - Video 2 (HKLM-x32\...\{EBA33CAD-E071-48d5-A168-FBA4EEB42E93}) (Version: 2.1.2606 - CyberLink Corp.) Hidden clear.fi SDK- Movie 2 (HKLM-x32\...\{35DA427D-BB23-49B8-9AFD-CFFCFE3B708D}) (Version: 2.1.2606 - CyberLink Corp.) Hidden CtrlPanel (HKLM-x32\...\{85DDD163-47A4-4751-A9F7-61CC86F8EE9C}) (Version: 1.00.0521 - Wistron) Dacia Media Nav Toolbox (HKLM-x32\...\Dacia Media Nav Toolbox) (Version: 3.18.5.647040 - NNG Llc.) Delicious: Emily's Childhood Memories Premium Edition (HKLM-x32\...\WTA-2078a4f8-bca8-4e2f-8119-54feaa47a012) (Version: 3.0.2.32 - WildTangent) Hidden Driver Booster 5 (HKLM-x32\...\Driver Booster_is1) (Version: 5.1.0 - IObit) Epson Software Updater (HKLM-x32\...\{7BAC3F7A-B963-468E-982E-B5608A87408D}) (Version: 4.4.4 - SEIKO EPSON CORPORATION) EPSON XP-302 303 305 306 Series Printer Uninstall (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation) Facebook Gameroom 1.12.6582.35661 (HKLM-x32\...\{64FAFFD8-8056-48D3-95DB-6EE6F3D286C4}) (Version: 1.12.6582.35661 - Facebook) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 9.0.1.1049 - Foxit Software Inc.) Free YouTube Downloader 4.1.551 (HKLM-x32\...\{A7E19604-93AF-4611-8C9F-CE509C2B286F}_is1) (Version: - HOW Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 63.0.3239.132 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (HKLM-x32\...\WTA-fb224b92-6f00-4e5d-82fa-75822d6fd6f3) (Version: 2.2.0.110 - WildTangent) Hidden Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM-x32\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.36354 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4653 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) IR App (HKLM-x32\...\{699D0EFA-5AC2-4DAB-846E-E4EFDA00ACAC}) (Version: 1.0.0.2 - Acer) ITE Infrared Transceiver (HKLM-x32\...\{40580068-9B10-40B5-9548-536CE88AB23C}) (Version: 1.02.0014 - ITE) Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation) Jewel Match 3 (HKLM-x32\...\WTA-f0a5e924-c9be-4e7c-a1ad-039b6686677a) (Version: 2.2.0.98 - WildTangent) Hidden John Deere Drive Green (HKLM-x32\...\WTA-035b0613-aa60-4040-924a-332ec44cab79) (Version: 2.2.0.95 - WildTangent) Hidden Kaspersky Software Updater (HKLM-x32\...\{DEEDA858-A9B4-4212-8873-2F2CE2706E68}) (Version: 2.0.0.623 - Kaspersky Lab) Hidden Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3008 - Acer Incorporated) Magic Academy (HKLM-x32\...\WTA-150deab0-9d7c-4951-b3bd-de886d169f7b) (Version: 2.2.0.98 - WildTangent) Hidden Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Mozilla Firefox 57.0.4 (x64 fr) (HKLM\...\Mozilla Firefox 57.0.4 (x64 fr)) (Version: 57.0.4 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 56.0.2 - Mozilla) MyEpson Portal (HKLM-x32\...\{3361D415-BA35-4143-B301-661991BA6219}) (Version: 1.1.2.2 - SEIKO EPSON CORPORATION) Hidden MyEpson Portal (HKLM-x32\...\MyEpson Portal) (Version: - SEIKO EPSON Corporation) Naviextras Toolbox Prerequesities (HKLM-x32\...\{537575D6-3B96-474C-BD8F-DFF667363DBD}) (Version: 1.0.0 - NNG Llc.) NVIDIA Logiciel système PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.05 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA Pilote graphique 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.05 - NVIDIA Corporation) Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer) Office Addin 2003 (HKLM-x32\...\{1FCC073B-CC01-4443-AD20-E559F66E6E83}) (Version: 2.02.2008 - Acer) Panneau de configuration NVIDIA 382.05 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 382.05 - NVIDIA Corporation) Hidden PaperScan 3 Free Edition (HKLM-x32\...\{CA7F9629-DA2E-40A2-8F3D-15F2078ACB72}) (Version: 3.0.56 - ORPALIS) PhotoFiltre 7 (HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\PhotoFiltre 7) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Plants vs. Zombies - Game of the Year (HKLM-x32\...\WTA-b956b780-aea3-4f01-8aea-e55a708e3b10) (Version: 2.2.0.98 - WildTangent) Hidden PointGrab Hand Gesture Control (HKLM-x32\...\{4B145183-E986-4585-ADDF-0C73DB575112}) (Version: 3.2.0.12993 - PointGrab) Hidden PointGrab Hand Gesture Control (HKLM-x32\...\InstallShield_{4B145183-E986-4585-ADDF-0C73DB575112}) (Version: 3.2.0.12993 - PointGrab) PointGrab Hand Gesture Control Tutorial (HKLM-x32\...\{92586A21-3E08-4055-B413-8ACCAAB50A42}) (Version: 3.2.0.12974 - PointGrab) Hidden PointGrab Hand Gesture Control Tutorial (HKLM-x32\...\InstallShield_{92586A21-3E08-4055-B413-8ACCAAB50A42}) (Version: 3.2.0.12974 - PointGrab) PrivaZer (HKLM-x32\...\PrivaZer) (Version: 3.0.21.0 - Goversoft LLC) Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.214 - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.31 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31228 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.2.8400.30137 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform) Renault Media Nav Toolbox (HKLM-x32\...\Renault Media Nav Toolbox) (Version: 3.18.5.647040 - NNG Llc.) Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.) Shutdown8 (HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\Shutdown8) (Version: 1.08 - Bandisoft.com) Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.) Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB) Tales of Lagoona (HKLM-x32\...\WTA-def91641-3c60-45db-be32-76c5c0905dde) (Version: 2.2.0.110 - WildTangent) Hidden Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden Visual Studio 2005 Tools pour Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN) WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-acer) (Version: 4.0.10.5 - WildTangent) Hidden WinPcap 4.1.1 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.1753 - CACE Technologies) WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Youtube Downloader HD v. 2.9.9.30 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3533391725-3395593355-2823718628-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ContextMenuHandlers1: [Advanced SystemCare] -> [CC]{2803063F-4B8D-4dc6-8874-D1802487FE2D} => -> Pas de fichier ContextMenuHandlers1: [Atheros] -> [CC]{B8952421-0E55-400B-94A6-FA858FC0A39F} => -> Pas de fichier ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> [CC]{A94757A0-0226-426F-B4F1-4DF381C630D3} => -> Pas de fichier ContextMenuHandlers1: [PrivaZer] -> [CC]{7691BE2F-3D79-AADE-9C87-4D6EBCC76682} => -> Pas de fichier ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Pas de fichier ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Pas de fichier ContextMenuHandlers2: [Advanced SystemCare] -> [CC]{2803063F-4B8D-4dc6-8874-D1802487FE2D} => -> Pas de fichier ContextMenuHandlers3: [MBAMShlExt] -> [CC]{57CE581A-0CB6-4266-9CA0-19364C90A0B3} => -> Pas de fichier ContextMenuHandlers4: [Advanced SystemCare] -> [CC]{2803063F-4B8D-4dc6-8874-D1802487FE2D} => -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-05-18] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-05-01] (NVIDIA Corporation) ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> [CC]{A94757A0-0226-426F-B4F1-4DF381C630D3} => -> Pas de fichier ContextMenuHandlers6: [MBAMShlExt] -> [CC]{57CE581A-0CB6-4266-9CA0-19364C90A0B3} => -> Pas de fichier ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {09F9AD1C-5133-4E8B-8520-84CBFE5F14A9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-09-27] (Adobe Systems Incorporated) Task: {13A9D606-0018-46A2-B1D7-92EE52A85304} - System32\Tasks\PointGrab => C:\Program Files (x86)\PointGrab\Hand Gesture Control\PGPanel.exe [2013-01-28] (PointGrab LTD) Task: {17708ED6-0F9B-411A-A64C-7BCCC376BBC3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-18] (Google Inc.) Task: {3D06107F-CB49-4490-9457-A13C827896F5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-01-12] (Microsoft Corporation) Task: {46904B02-4AC8-45E4-A1E8-8DB461557E6E} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-01-09] (Adobe Systems Incorporated) Task: {4A198574-F63A-461D-AD41-34464AFEC87A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-01-12] (Microsoft Corporation) Task: {5A4C6FC5-E6B2-4C8C-A0A4-FBC05819278F} - System32\Tasks\Driver Booster SkipUAC (nad) => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe [2017-11-16] (IObit) Task: {60F10852-0BDF-4731-805E-AEEAE0C88E7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-01-12] (Microsoft Corporation) Task: {6AB4FFDB-A473-4409-B52B-56F7A22A4BE8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-08-18] (Google Inc.) Task: {6F5F7091-0691-4981-8095-B5AC250F7C7E} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {73415FA4-E420-4879-9546-421142DFB6AA} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] () Task: {75F7452E-0DC3-4AC7-B03E-864E07DBF00D} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-04-16] (Intel Corporation) Task: {778EA2DF-6F7F-4C3F-9F8F-4863F6AD2802} - System32\Tasks\Tâches de l’Observateur d’événements\Application_Microsoft-Windows-Winlogon_6000 => C:\Windows\explorer.exe shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} Task: {7FA42CC2-E6F1-40B8-92E1-BF74D0E03086} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\5.1.0\Scheduler.exe [2017-10-24] (IObit) Task: {849E305D-A123-4289-9F8A-4F80EAE4CBAB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2017-12-13] (Piriform Ltd) Task: {890C58BE-70A3-4E34-8A15-AAEC2C037384} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-3533391725-3395593355-2823718628-1002 Task: {982F6F91-FD97-45F5-A1C2-F5A6F824D777} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {9FCA8CEE-329E-4012-9DBF-DEC76FB16E30} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {A175A1AE-B009-40C8-AB0F-472B92EA8136} - System32\Tasks\{6E243EEA-5929-4353-9157-54C4E30846BA} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\epson\escndv\setup\setup.exe" -c /r Task: {AEB854A3-0EB9-4CAF-8649-C26830632BE5} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {CBD16820-2586-408D-8AFA-B77E9458B91E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2017-12-13] (Piriform Ltd) Task: {E4808FC6-A2FE-471C-AC0A-BD04427F0914} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [2017-01-12] (Microsoft Corporation) Task: {F211896C-BF9B-46B3-B1B2-E60621890103} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-10-11] (NVIDIA Corporation) Task: {F6235108-D452-43A4-8EBE-9A1F1861068B} - System32\Tasks\PrivaZer_SkipUAC => C:\Program Files (x86)\PrivaZer\PrivaZer.exe [2017-06-20] (Goversoft LLC) Task: {FB1226BD-52A4-41B1-BFE7-9EE23C5296F0} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\WINDOWS\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\nad\Favorites\Acer\Acer.lnk -> hxxp://www.acer.com ==================== Modules chargés (Avec liste blanche) ============== 2017-05-06 15:02 - 2017-05-06 15:02 - 003525431 _____ () C:\Program Files (x86)\PrivaZer\PrivaMenu5.dll 2017-12-13 19:04 - 2017-12-13 19:04 - 000089984 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2013-08-19 12:24 - 2012-06-25 18:41 - 001198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2017-11-28 13:28 - 000000826 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\nad\Pictures\SD Card\20170916_141755.jpg HKU\S-1-5-21-3533391725-3395593355-2823718628-500\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.0.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupreg: Acer Remote => C:\Program Files (x86)\Acer Remote\ArcServer.exe MSCONFIG\startupreg: AVer HID Receiver => C:\Program Files (x86)\Common Files\AVerMedia\AVerHIDReceiver\AVerHIDReceiver.exe MSCONFIG\startupreg: BtPreLoad => "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe" MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: CIRAP => C:\Program Files (x86)\ITE\ITE Infrared Transceiver\CIRAP.exe MSCONFIG\startupreg: EPLTarget => MSCONFIG\startupreg: Facebook Gameroom => C:\Users\nad\AppData\Local\Facebook\Games\FacebookGameroom.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: IRApp => C:\Program Files\acerIR\IRListenApp.exe MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s MSCONFIG\startupreg: ShadowPlay => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart MSCONFIG\startupreg: VDownloader => "C:\Program Files\VDownloader\VDownloader4.exe" /silent MSCONFIG\startupreg: WCtrlPanel => C:\Windows\SysWOW64\CtrlPanel.exe HKLM\...\StartupApproved\StartupFolder: => "AVer HID Receiver.lnk" HKLM\...\StartupApproved\StartupFolder: => "Acer Remote.lnk" HKLM\...\StartupApproved\Run: => "BtPreLoad" HKLM\...\StartupApproved\Run: => "HotKeysCmds" HKLM\...\StartupApproved\Run: => "Persistence" HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run: => "ShadowPlay" HKLM\...\StartupApproved\Run: => "WindowsDefender" HKLM\...\StartupApproved\Run32: => "CIRAP" HKLM\...\StartupApproved\Run32: => "IRApp" HKLM\...\StartupApproved\Run32: => "WCtrlPanel" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKLM\...\StartupApproved\Run32: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "VDownloader" HKLM\...\StartupApproved\Run32: => "Avira Safe Shopping" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "DSATray" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\StartupFolder: => "Facebook Gameroom.lnk" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\Run: => "EPLTarget\P0000000000000000" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\Run: => "KiesPDLR.exe" HKU\S-1-5-21-3533391725-3395593355-2823718628-1002\...\StartupApproved\Run: => "vidnotifier.exe" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{2331E46A-A3AB-4367-8A61-5BE2DB9026C0}C:\program files (x86)\acer remote\arcserver.exe] => (Allow) C:\program files (x86)\acer remote\arcserver.exe FirewallRules: [TCP Query User{2F2E93F6-7FEA-4ED2-82DA-1DBCEBC38CB6}C:\program files (x86)\acer remote\arcserver.exe] => (Allow) C:\program files (x86)\acer remote\arcserver.exe FirewallRules: [{1C7FED98-EA59-439F-8C47-2FAE1320EB56}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe FirewallRules: [{129BA8F0-6A59-4C14-BC33-7BB2D591BF81}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{06A115EC-51D8-4812-A266-3D637FFF1CF3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe FirewallRules: [{184A9229-ACC2-475D-AB6D-0A3F26018E53}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{52F942AD-0ADE-4DF4-BDEA-09B1A6CDF93A}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe FirewallRules: [{9C365923-7558-4B5A-B38E-50C39E2D211E}] => (Allow) C:\Program Files (x86)\Acer Remote\ArcServer.exe FirewallRules: [{B7DB7294-3D02-4A8F-B176-F57DDA51020B}] => (Allow) C:\Program Files (x86)\Acer Remote\ArcServer.exe FirewallRules: [{EFC69DF4-15E7-4287-B2AF-0F7074005291}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{57512871-FE7A-4495-B19E-B8FB1AE67A92}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{CEA1167D-0FAB-4D4B-A711-08893791EBC8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{70EB9BCD-9FA4-41E9-AB15-1223A3006DD5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{A79449D8-6CB3-4AC5-B5D2-4EDBB73317E2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{9635E30C-E5A3-424F-B5B8-5ABE83D2903B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{8A14126E-83FA-44E8-BA9E-6887300B310C}] => (Block) LPort=445 FirewallRules: [{506C7C2F-75DC-4A24-9FDA-05327BC3F886}] => (Block) LPort=445 FirewallRules: [{41F52228-C94C-468B-852D-0975482C79D1}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{C46616AE-10DB-4CE3-876D-DEF477182B91}] => (Allow) C:\Windows\SysWOW64\muzapp.exe FirewallRules: [{72A95702-A3C6-4349-8390-AB8240013318}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{8F3B3732-7606-492C-9302-0DC7D8C55C84}] => (Allow) C:\Program Files (x86)\IObit\Advanced SystemCare\Surfing Protection\FFNativeMessage.exe FirewallRules: [{41388E3E-0FD2-4161-91AE-889E8C32D96D}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{50197C0B-A884-46AD-87F0-8F87523F2B67}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DriverBooster.exe FirewallRules: [{03692F84-45D0-47E4-A70A-E42ECDF97153}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{BA6F2837-8816-4B2D-AABA-F5A0687DDF17}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\DBDownloader.exe FirewallRules: [{7C6DE85A-1CDE-492C-9D83-0EDC71586C67}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe FirewallRules: [{CCC6D365-319F-42C1-B55F-2857B59DF203}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\5.1.0\AutoUpdate.exe FirewallRules: [{EBEB8404-C5A1-4AB4-B987-DDF2DAAC68C0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 24-12-2017 07:52:20 Windows Update 03-01-2018 10:57:10 Point de contrôle planifié 07-01-2018 09:11:44 Removed Adobe Acrobat Reader DC - Français. 09-01-2018 15:06:05 Revo Uninstaller's restore point - Free YouTube To MP3 Converter 12-01-2018 15:44:40 Revo Uninstaller's restore point - NVIDIA GeForce Experience 3.10.0.95 ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Description: NVIDIA Virtual Audio Device (Wave Extensible) (WDM) Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: NVIDIA Service: nvvad_WaveExtensible Problem: : A driver (service) for this device has been disabled. An alternate driver may be providing this functionality (Code 32) Resolution: The start type for this driver is set to disabled in the registry. Uninstall the driver from Device Manager, and then scan for new hardware to install the driver again. If this does not work, you might have to change the device start type parameter in the registry. Name: NVVHCI Enumerator Description: NVVHCI Enumerator Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: NVIDIA Service: nvvhci Problem: : A driver (service) for this device has been disabled. An alternate driver may be providing this functionality (Code 32) Resolution: The start type for this driver is set to disabled in the registry. Uninstall the driver from Device Manager, and then scan for new hardware to install the driver again. If this does not work, you might have to change the device start type parameter in the registry. Name: Bluetooth Audio Device Description: Bluetooth Audio Device Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318} Manufacturer: Qualcomm Atheros Communications Service: BTATH_A2DP Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (01/12/2018 03:44:33 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé. . Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {17955d69-3061-4027-b867-6501c358998f} Error: (01/10/2018 08:40:13 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante PaperScan.exe, version : 3.0.0.52, horodatage : 0x59f2666b Nom du module défaillant : KERNELBASE.dll, version : 6.3.9600.18895, horodatage : 0x5a4b125e Code d’exception : 0xe0434352 Décalage d’erreur : 0x00015608 ID du processus défaillant : 0x14bc Heure de début de l’application défaillante : 0x01d389e624550604 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\ORPALIS\PaperScan 3 Free Edition\PaperScan.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 7d957d56-f5d9-11e7-bff1-48d224750962 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/10/2018 08:40:12 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : PaperScan.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.ObjectDisposedException à System.Windows.Forms.Control.CreateHandle() à System.Windows.Forms.Form.CreateHandle() à DevExpress.XtraEditors.XtraForm.CreateHandle() à DevExpress.XtraBars.Ribbon.RibbonForm.CreateHandle() à System.Windows.Forms.Control.get_Handle() à System.Windows.Forms.ContainerControl.FocusActiveControlInternal() à System.Windows.Forms.Form.SetVisibleCore(Boolean) à DevExpress.XtraEditors.XtraForm.SetVisibleCore(Boolean) à DevExpress.XtraBars.Ribbon.RibbonForm.SetVisibleCore(Boolean) à System.Windows.Forms.Control.set_Visible(Boolean) à System.Windows.Forms.Application+ThreadContext.RunMessageLoopInner(Int32, System.Windows.Forms.ApplicationContext) à System.Windows.Forms.Application+ThreadContext.RunMessageLoop(Int32, System.Windows.Forms.ApplicationContext) à Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.OnRun() à Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.DoApplicationModel() à Microsoft.VisualBasic.ApplicationServices.WindowsFormsApplicationBase.Run(System.String[]) à ᜀ.ᜀ(System.String[]) Error: (01/09/2018 01:49:12 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme VDownloader4.exe version 4.5.2880.0 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 710 Heure de début : 01d3894735506b2c Heure de fin : 22 Chemin d’accès de l’application : C:\Program Files\VDownloader\VDownloader4.exe ID de rapport : 73eafa2b-f53b-11e7-bfef-48d224750962 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/08/2018 09:32:20 AM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Le service de recherche Windows n’a pas pu traiter la liste des emplacements inclus et exclus à cause de l’erreur <30, 0x80040d07, "iehistory://{S-1-5-21-3533391725-3395593355-2823718628-1002}/">. Error: (01/07/2018 12:56:22 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Le service de recherche Windows n’a pas pu traiter la liste des emplacements inclus et exclus à cause de l’erreur <30, 0x80040d07, "iehistory://{S-1-5-21-3533391725-3395593355-2823718628-1002}/">. Error: (01/07/2018 12:56:04 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Le service de recherche Windows n’a pas pu traiter la liste des emplacements inclus et exclus à cause de l’erreur <30, 0x80040d07, "iehistory://{S-1-5-21-3533391725-3395593355-2823718628-1002}/">. Error: (01/07/2018 12:45:43 PM) (Source: Windows Search Service) (EventID: 1019) (User: ) Description: Le service de recherche Windows n’a pas pu traiter la liste des emplacements inclus et exclus à cause de l’erreur <30, 0x80040d07, "iehistory://{S-1-5-21-3533391725-3395593355-2823718628-1002}/">. Error: (01/07/2018 12:43:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Uninstall.exe_unknown, version : 1.2.76.1027, horodatage : 0x5811b52c Nom du module défaillant : Qt5Gui.dll, version : 6.3.9600.18821, horodatage : 0x59ba8666 Code d’exception : 0xc0000135 Décalage d’erreur : 0x0009d4c2 ID du processus défaillant : 0x850 Heure de début de l’application défaillante : 0x01d387acb226bea8 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe Chemin d’accès du module défaillant: Qt5Gui.dll ID de rapport : efd80f51-f39f-11e7-bfeb-48d224750962 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/07/2018 12:42:09 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante Uninstall.exe_unknown, version : 1.2.76.1027, horodatage : 0x5811b52c Nom du module défaillant : Qt5Gui.dll, version : 6.3.9600.18821, horodatage : 0x59ba8666 Code d’exception : 0xc0000135 Décalage d’erreur : 0x0009d4c2 ID du processus défaillant : 0x14a8 Heure de début de l’application défaillante : 0x01d387ac8d226ba5 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\Uninstall.exe Chemin d’accès du module défaillant: Qt5Gui.dll ID de rapport : cad3bc46-f39f-11e7-bfeb-48d224750962 Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (01/15/2018 05:08:03 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 05:07:33 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 04:45:33 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 04:44:49 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 04:42:20 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 03:14:24 PM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 03:12:36 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Windows Defender n’a pas pu démarrer en raison de l’erreur : Windows ne peut pas vérifier la signature numérique de ce fichier. Il est possible qu’une modification matérielle ou logicielle récente ait installé un fichier endommagé ou dont la signature est incorrecte, ou qu’il s’agisse d’un logiciel malveillant provenant d’une source inconnue. Error: (01/15/2018 11:52:20 AM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 11:51:50 AM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/15/2018 11:43:07 AM) (Source: DCOM) (EventID: 10010) (User: MONPC) Description: Le serveur {1B1F472E-3221-4826-97DB-2C2324D389AE} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2018-01-15 17:34:58.190 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2018-01-15 15:12:36.925 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-01-15 13:32:43.085 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:42.772 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:42.522 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:42.257 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:41.991 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:41.725 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:41.460 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-01-15 13:32:41.210 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Pourcentage de mémoire utilisée: 22% Mémoire physique - RAM - totale: 7314.6 MB Mémoire physique - RAM - disponible: 5640.36 MB Mémoire virtuelle totale: 8466.6 MB Mémoire virtuelle disponible: 6940.2 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:457.14 GB) (Free:317.16 GB) NTFS Drive d: (DATA) (Fixed) (Total:457.58 GB) (Free:453.21 GB) NTFS Drive e: (DD MEDION) (Fixed) (Total:1397.26 GB) (Free:780.79 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 2D311FA1) Partition: GPT. ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 1397.3 GB) (Disk ID: 244614FA) Partition 1: (Active) - (Size=1397.3 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================