Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 12.02.2018 Exécuté par bernard (12-02-2018 18:58:05) Exécuté depuis C:\Users\bernard\Downloads Windows 8.1 (Update) (X64) (2015-10-02 17:48:30) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3909820871-1224786303-567306632-500 - Administrator - Disabled) bernard (S-1-5-21-3909820871-1224786303-567306632-1001 - Administrator - Enabled) => C:\Users\bernard Invité (S-1-5-21-3909820871-1224786303-567306632-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\uTorrent) (Version: 3.5.0.44294 - BitTorrent Inc.) 7-Zip 18.01 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1801-000001000000}) (Version: 18.01.00.0 - Igor Pavlov) Adobe Flash Player 28 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 28.0.0.161 - Adobe Systems Incorporated) AOMEI Backupper Standard (HKLM-x32\...\{A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1) (Version: - AOMEI Technology Co., Ltd.) AutoUpdate (HKLM-x32\...\{18D10072035C4515918F7E37EAFAACFC}) (Version: 1.1 - ) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 17.9.2322 - AVAST Software) Bejeweled 3 (HKLM-x32\...\WTA-c4ed8d1a-0fc9-498d-b4de-6f735023338c) (Version: 3.0.2.59 - WildTangent) Hidden Build-a-lot (HKLM-x32\...\WTA-d833656c-11dd-4dfe-9908-c4078b2dc0d4) (Version: 3.0.2.59 - WildTangent) Hidden Building the Great Wall of China Collector's Edition (HKLM-x32\...\WTA-882fd008-13f9-478e-ad07-a8bae1dcaa32) (Version: 3.0.2.48 - WildTangent) Hidden CCleaner (HKLM\...\CCleaner) (Version: 5.10 - Piriform) Crazy Chicken Soccer (HKLM-x32\...\WTA-2bb2d891-ea11-4ff7-8d3b-7331f14d5d70) (Version: 2.2.0.110 - WildTangent) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.9.5017 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM\...\{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.4.6121 - CyberLink Corp.) Hidden Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{5A454EC5-217A-42a5-8CE1-2DDEC4E70E01}) (Version: 5.0.4.6121 - CyberLink Corp.) CyberLink Power Media Player 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.6.4928 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.9.5103 - CyberLink Corp.) CyberLink PowerBackup 2.6 (HKLM-x32\...\InstallShield_{ADD5DB49-72CF-11D8-9D75-000129760D75}) (Version: 2.6.2.1307 - CyberLink Corp.) CyberLink PowerDirector 12 (HKLM\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.3.3812 - CyberLink Corp.) Hidden CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.3.3812 - CyberLink Corp.) Delicious: Emily's Wonder Wedding Premium Edition (HKLM-x32\...\WTA-d864a4a8-bdf8-44e6-88ae-8aa3a7216963) (Version: 3.0.2.59 - WildTangent) Hidden DisableMSDefender (HKLM\...\{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}) (Version: 1.0.0 - Hewlett-Packard Company) Hidden DivX (HKLM-x32\...\{7B63B2922B174135AFC0E1377DD81EC2}) (Version: 6.0 - DivXNetworks, Inc.) Étude pour l'amélioration du produit HP Deskjet 3050A J611 series (HKLM\...\{3969E7E7-0538-4478-8F85-E22CF687630B}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Foxit PhantomPDF (HKLM-x32\...\{4E32271C-B55A-4CDF-8DB7-88FD1C45927C}) (Version: 7.0.310.226 - Foxit Software Inc.) FreeMi UPnP Media Server (HKLM\...\FreeMi UPnP Media Server) (Version: 2.0.10 - Stéphane Mitermite) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.113 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Deskjet 3050A J611 series Aide (HKLM-x32\...\{97DDCAB8-B770-4089-A10F-67568069D78A}) (Version: 140.0.2.2 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 13.00.0000 - Hewlett-Packard) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Intel(R) Chipset Device Software (HKLM-x32\...\{f5d71765-7cd1-4e68-998f-5b379e725da3}) (Version: 10.0.22 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.27.1012 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.14.4029 - Intel Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Jewel Match 3 (HKLM-x32\...\WTA-9893157d-4c1d-478a-9c77-17ed8c580233) (Version: 3.0.2.59 - WildTangent) Hidden JPEG-EXIF_autorotate (HKLM-x32\...\JPEG-EXIF_autorotate) (Version: - ) Logiciel de base du périphérique HP Deskjet 3050A J611 series (HKLM\...\{2728177B-FBEC-415F-A9F5-83CD6CBD4816}) (Version: 28.0.1315.0 - Hewlett-Packard Co.) Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Microsoft Camera Codec Pack (HKLM\...\{4F90F34B-348A-4F48-8244-5FCAE90C289A}) (Version: 16.3.1483.0410 - Microsoft Corporation) Microsoft Office 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.9001.2138 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\OneDriveSetup.exe) (Version: 17.3.7294.0108 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{ece8cb18-c84c-4c1a-a5b5-53e3f1daa15c}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.9001.2138 - Microsoft Corporation) Hidden Opera 12.11 (HKLM\...\Opera 12.11.1661) (Version: 12.11.1661 - Opera Software ASA) Orange Inside (HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\Orange Inside) (Version: 2.3.0.2 - Orange) Photo And Book (HKLM-x32\...\Photo And Book) (Version: 7.5 - Noritsu) PhotoFiltre 7 (HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\PhotoFiltre 7) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Polar Bowler 1st Frame (HKLM-x32\...\WTA-3bd824d1-83ab-4ebb-8209-21bc1233c80f) (Version: 3.0.2.59 - WildTangent) Hidden Ranch Rush 2 - Premium Edition (HKLM-x32\...\WTA-526e0623-b14c-4278-b16f-b189495c78b3) (Version: 2.2.0.98 - WildTangent) Hidden Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.30176 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7487 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.46 - REALTEK Semiconductor Corp.) Revo Uninstaller 2.0.3 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.3 - VS Revo Group, Ltd.) RogueKiller version 12 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12 - Adlice Software) Roxio Easy Media Creator 9 Suite (HKLM-x32\...\{70272964-C468-4C5F-8246-AA2CABA75941}) (Version: 9.0.136 - Roxio, Inc.) Runefall (HKLM-x32\...\WTA-07060be9-2d71-41b5-aaf1-bffd735e633d) (Version: 3.0.2.126 - WildTangent) Hidden SafeZone Stable 4.58.2552.909 (HKLM-x32\...\SafeZone 4.58.2552.909) (Version: 4.58.2552.909 - Avast Software) Hidden Satsuki Decoder Pack (HKLM-x32\...\Satsuki Decoder Pack) (Version: 5200 - Satsuki Yatoshi'S Softs) Speccy (HKLM\...\Speccy) (Version: 1.28 - Piriform) Trinklit Supreme (HKLM-x32\...\WTA-3111d69a-6a44-410d-9c3c-80671664e133) (Version: 2.2.0.98 - WildTangent) Hidden Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden UsbFix (HKLM-x32\...\Usbfix) (Version: 8.171 - El Desaparecido - www.usbfix.net - www.sosvirus.net) Vacation Quest™ - Australia (HKLM-x32\...\WTA-90fecf79-ef01-4c21-bad1-31387caff052) (Version: 3.0.2.32 - WildTangent) Hidden VD64Inst (HKLM\...\{22ABA92B-6C1B-46D8-AC2B-C48EEAE172A9}) (Version: 1.00.0000 - Roxio, Inc.) Hidden VLC media player (HKLM\...\VLC media player) (Version: 2.2.8 - VideoLAN) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN) WebTarot 1.34 (HKLM-x32\...\WebTarot_is1) (Version: 1.34 - AtoutWeb) Wedding Dash (HKLM-x32\...\WTA-8324a447-8b40-48d5-9ae2-17b9675fb723) (Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App for HP (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp) (Version: 4.0.11.14 - WildTangent) Hidden WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) Youda Jewel Shop (HKLM-x32\...\WTA-5d7ededd-ae6b-4bae-bbca-0bcd4031c23b) (Version: 3.0.2.51 - WildTangent) Hidden ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3909820871-1224786303-567306632-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\bernard\AppData\Local\Microsoft\OneDrive\17.3.6998.0830\amd64\FileCoAuthLib64.dll => Pas de fichier ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-05] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-05] (AVAST Software) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-05] (AVAST Software) ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-03-03] (Cyberlink) ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Inc.) ContextMenuHandlers1: [RXDCExtSvr] -> {0FB82570-BB2D-23D3-8D3B-AC2F34F1FA3C} => C:\Program Files\Roxio\Easy CD creator 8\Virtual Drive\DC_ShellExt64.dll [2006-10-26] (Sonic Solutions) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2015-03-03] (Cyberlink) ContextMenuHandlers2: [RXDCExtSvr] -> {0FB82570-BB2D-23D3-8D3B-AC2F34F1FA3C} => C:\Program Files\Roxio\Easy CD creator 8\Virtual Drive\DC_ShellExt64.dll [2006-10-26] (Sonic Solutions) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-05] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\windows\system32\igfxDTCM.dll [2015-01-28] (Intel Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-01-05] (AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [RXDCExtSvr] -> {0FB82570-BB2D-23D3-8D3B-AC2F34F1FA3C} => C:\Program Files\Roxio\Easy CD creator 8\Virtual Drive\DC_ShellExt64.dll [2006-10-26] (Sonic Solutions) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {1C93B71D-674B-493C-AFD9-0FFFF2011C67} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-02-05] (Microsoft Corporation) Task: {2B72DE96-47F6-4BAD-9CF2-FBF860FE0486} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-02-06] (Adobe Systems Incorporated) Task: {2B960161-80D9-4B5C-8BC6-37813670B6A0} - System32\Tasks\SafeZone scheduled Autoupdate 1461064091 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-08-04] (Avast Software) Task: {2E743019-B24F-4CBB-907B-DCEB17B1FDE6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Task: {45F7F13F-F539-4461-8C8B-89B0AC4DEF1D} - System32\Tasks\{4D52C4E3-9C91-4EA0-862E-F479FBD7E6B9} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/7.16.0.102/fr/abandoninstall?page=tsProgressBar Task: {4802C3EA-8A3B-40C6-8358-41D1E8CD1A4A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-01-08] (AVAST Software) Task: {54F4F00A-6149-4689-A08C-4D80EB75E468} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {5A0DAD7D-4CB4-438D-9EFB-645BA48F5971} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-09-16] (Piriform Ltd) Task: {5D890429-8A8A-4026-92FA-24D945F975E3} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-02-05] (Microsoft Corporation) Task: {897E8AC3-E081-4BBD-985E-34A6965BC66D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-07] (Google Inc.) Task: {9D7F2531-2213-4ABA-B775-57BA1A8642C3} - System32\Tasks\HPCustParticipation HP Deskjet 3050A J611 series => C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.) Task: {B175BECD-8472-4DB7-A2CE-3A9C300BD29E} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-01-05] (AVAST Software) Task: {C3DE6F40-94FC-432C-A11F-FE8D16310F0F} - System32\Tasks\Microsoft\Windows\orangeinside => C:\Users\bernard\AppData\Roaming\Orange\OrangeInside\OrangeInside.exe [2018-02-01] (Orange) Task: {CEC7D682-3944-42E9-B765-67CB461D3ECD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-30] (Microsoft Corporation) Task: {D7537BB3-737B-460B-AFE7-BFA196021F46} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-01-30] (Microsoft Corporation) Task: {E33D0CB3-E57B-4106-B768-C309208AB192} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-02-05] (Microsoft Corporation) Task: {EF6ACB2F-BD7F-4921-BAF1-F2D55A0B2031} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-07] (Google Inc.) Task: {F3D03CE9-856C-4D64-858C-DF2258A2B727} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\windows\SysWOW64\Macromed\Flash\FlashUtil32_28_0_0_161_pepper.exe [2018-02-06] (Adobe Systems Incorporated) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\bernard\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxps://r.orange.fr/r/Oodc_oi_odc_shortcut?ref=O_OI_defaultPage_CHe64_w81e64_odc_shortcut ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> hxxps://r.orange.fr/r/Oodc_oi_odc_shortcut?ref=O_OI_defaultPage_CHe64_w81e64_odc_shortcut ==================== Modules chargés (Avec liste blanche) ============== 2015-07-15 16:39 - 2014-04-14 18:59 - 000389896 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2017-09-22 14:07 - 2017-11-29 09:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2006-09-19 09:07 - 2006-09-19 09:07 - 000827392 _____ () C:\Windows\vsnpstd3.exe 2015-09-16 20:33 - 2015-09-16 20:33 - 000065536 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2016-12-28 13:31 - 2016-12-28 13:31 - 000174592 _____ () C:\Program Files\WindowsApps\32988BernardoZamora.SpiderSolitaireHD_1.18.0.27_x64__1fgex2kbsn6g8\Spider.exe 2017-11-18 15:23 - 2017-11-18 15:23 - 004404224 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.UI.Xaml\c322d7d9983c7af27206833b3cf79b6f\Windows.UI.Xaml.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 001539584 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.App640a3541#\3b6228569a9b4e9c306ef534c5056724\Windows.ApplicationModel.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 001101312 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Storage\4c330655b58f7e7fa33272963ebbf19d\Windows.Storage.ni.dll 2016-12-21 16:48 - 2016-12-21 16:48 - 004692656 _____ () C:\Program Files\WindowsApps\32988BernardoZamora.SpiderSolitaireHD_1.18.0.27_x64__1fgex2kbsn6g8\UniversalXamlAdControl.Windows.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 001237504 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.UI\8668edbcf30a11d395447f840dcf4191\Windows.UI.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 000284160 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\01742106b29812a1773c86df28ca81ff\Windows.Foundation.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 000397312 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Graphics\699dbee37c4295b0cec9d50b0e7d9530\Windows.Graphics.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 000499200 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Security\882ddaf5ac60641c0f02e387d339b70d\Windows.Security.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 000164352 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.System\18ab071ca76103eeabe6eb5c6953d0ee\Windows.System.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 000291840 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Gloaae92e31#\8df4b3e189b97302a05e0f8eb4da2d04\Windows.Globalization.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 001027072 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Networking\18e53d02b376c4cc23c120b762be491b\Windows.Networking.ni.dll 2017-11-18 15:23 - 2017-11-18 15:23 - 001662464 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Devices\2568cb58ee54e2eda5431d7d14ca51a0\Windows.Devices.ni.dll 2018-02-12 16:53 - 2018-02-12 16:53 - 000468480 _____ () C:\Users\bernard\Downloads\CKScanner (1).exe 2017-08-28 12:15 - 2017-08-23 09:48 - 003824472 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\libglesv2.dll 2017-08-28 12:15 - 2017-08-23 09:48 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.113\libegl.dll 2015-01-28 08:34 - 2015-01-28 08:34 - 017170624 _____ () C:\windows\SYSTEM32\igd11dxva64.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000966512 _____ () C:\Program Files (x86)\AOMEI Backupper\UiLogic.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000339816 _____ () C:\Program Files (x86)\AOMEI Backupper\Comn.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000266096 _____ () C:\Program Files (x86)\AOMEI Backupper\diskmgr.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000139112 _____ () C:\Program Files (x86)\AOMEI Backupper\FuncLogic.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000360304 _____ () C:\Program Files (x86)\AOMEI Backupper\ImgFile.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000040808 _____ () C:\Program Files (x86)\AOMEI Backupper\Encrypt.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000495464 _____ () C:\Program Files (x86)\AOMEI Backupper\EnumFolder.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000081776 _____ () C:\Program Files (x86)\AOMEI Backupper\Compress.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000114544 _____ () C:\Program Files (x86)\AOMEI Backupper\BrLog.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000089960 _____ () C:\Program Files (x86)\AOMEI Backupper\Ldm.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000073584 _____ () C:\Program Files (x86)\AOMEI Backupper\Device.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000298864 _____ () C:\Program Files (x86)\AOMEI Backupper\BrFat.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000978792 _____ () C:\Program Files (x86)\AOMEI Backupper\BrNtfs.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000348008 _____ () C:\Program Files (x86)\AOMEI Backupper\Clone.dll 2017-09-25 17:02 - 2017-09-04 09:10 - 000126832 _____ () C:\Program Files (x86)\AOMEI Backupper\Backup.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000175984 _____ () C:\Program Files (x86)\AOMEI Backupper\FlBackup.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000724848 _____ () C:\Program Files (x86)\AOMEI Backupper\Sync.dll 2017-09-25 17:02 - 2017-09-01 15:35 - 002411968 _____ () C:\Program Files (x86)\AOMEI Backupper\QtCore4.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000114544 _____ () C:\Program Files (x86)\AOMEI Backupper\BrVol.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000266088 _____ () C:\Program Files (x86)\AOMEI Backupper\GptBcd.dll 2017-09-25 17:02 - 2017-09-04 09:11 - 000188264 _____ () C:\Program Files (x86)\AOMEI Backupper\DeviceMgr.dll 2006-10-27 08:13 - 2006-10-27 08:13 - 004587520 ____R () C:\Program Files (x86)\Common Files\Roxio Shared\9.0\DLLShared\ROXIPP41.dll 2018-01-05 06:57 - 2018-01-05 06:57 - 000206152 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2018-01-05 06:57 - 2018-01-05 06:57 - 000058016 _____ () C:\Program Files\AVAST Software\Avast\module_lifetime.dll 2018-01-05 06:57 - 2018-01-05 06:57 - 000057504 _____ () C:\Program Files\AVAST Software\Avast\dll_loader.dll 2017-07-04 15:20 - 2017-07-04 15:20 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-01-05 06:57 - 2018-01-05 06:57 - 000289272 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-01-05 06:57 - 2018-01-05 06:57 - 000282560 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2006-10-27 08:17 - 2006-10-27 08:17 - 000516096 _____ () C:\Program Files (x86)\Common Files\Roxio Shared\9.0\DLLShared\LayoutDll9.dll 2014-08-13 10:54 - 2014-08-13 10:54 - 001241560 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\bernard\Desktop\JRT:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\13495208_531668223684128_7184293447387141543_n (1).jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_222836.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_222922.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_223014.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_223021_001.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_223024.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160408_223037.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160513_232039.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160514_000230.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160514_000239.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160514_005549.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160520_230859.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160520_230929.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160520_231242.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160520_235551.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\20160612_141900-002.jpg:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\COUDERC BERNARD AR8.avi:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\COUDERC LAMBO.avi:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\Exportations HTML Picasa:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0875.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0876.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0877.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0880.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0881.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0882.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0883.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0884.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\IMG_0970.JPG:Roxio EMC Stream [38] AlternateDataStreams: C:\Users\bernard\Documents\Nouveau dossier (2):Roxio EMC Stream [38] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 000000824 _____ C:\windows\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3909820871-1224786303-567306632-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\bernard\OneDrive\Images\thumbnail_IMG_20170728_225548.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run32: => "HP Software Update" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\StartupFolder: => "Alertes de surveillance de l'encre - HP Deskjet 3050A J611 series.lnk" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\StartupFolder: => "Emotiplus.lnk" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\Run: => "Avanquest Message" HKU\S-1-5-21-3909820871-1224786303-567306632-1001\...\StartupApproved\Run: => "OCCDesktop" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [TCP Query User{6C63131B-3DE4-4682-AC93-976F2C209BD9}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [UDP Query User{FC2C3536-D0F5-41A7-A973-21D53A3D4BE6}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe FirewallRules: [TCP Query User{72153DA0-D6BD-4122-BFA5-B1EF1AA64986}C:\users\bernard\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\bernard\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{87F9937C-6DC6-43F5-B7B0-28F2F1DD00F2}C:\users\bernard\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\bernard\appdata\roaming\utorrent\utorrent.exe FirewallRules: [{5F9C6FBB-22DD-4A94-A91A-685407523F32}] => (Allow) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe FirewallRules: [{19055FE5-FFE0-40C8-92DC-72AEFB25B502}] => (Allow) C:\Program Files\FreeMi UPnP Media Server\FreeMi UPnP Media Server.exe FirewallRules: [TCP Query User{F28674B0-2D0A-4CC7-A70C-BA6A3ECB7EC4}C:\program files (x86)\webtarot\webtarot.exe] => (Allow) C:\program files (x86)\webtarot\webtarot.exe FirewallRules: [UDP Query User{C0868125-C77D-4600-9EBD-185EA88C9A9F}C:\program files (x86)\webtarot\webtarot.exe] => (Allow) C:\program files (x86)\webtarot\webtarot.exe FirewallRules: [{DD129CB8-F4F8-4F19-B8D2-D0D174314F89}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe ==================== Points de restauration ========================= 28-01-2018 05:37:05 Point de contrôle planifié 05-02-2018 13:17:22 Point de contrôle planifié 09-02-2018 04:49:11 JRT Pre-Junkware Removal ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (02/12/2018 04:57:39 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme CKScanner (1).exe version 2.5.1.1 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 78c Heure de début : 01d3a419e77283ad Heure de fin : 4294967295 Chemin d’accès de l’application : C:\Users\bernard\Downloads\CKScanner (1).exe ID de rapport : 705f8651-100d-11e8-8326-7c05079389cd Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (02/12/2018 10:05:36 AM) (Source: Windows Search Service) (EventID: 10021) (User: ) Description: Impossible d’obtenir les informations de registre des compteurs de performances pour WSearchIdxPi pour l’instance en raison de l’erreur suivante : L’opération a réussi. 0x0. Error: (02/12/2018 10:05:36 AM) (Source: Windows Search Service) (EventID: 3007) (User: ) Description: Impossible d’initialiser le contrôle des performances pour l’objet rassembleur. Les compteurs ne sont pas chargés ou l’objet mémoire partagée ne peut pas être ouvert. Cela affecte seulement la disponibilité des compteurs. Redémarrez l’ordinateur. Contexte : Application , Catalogue SystemIndex Error: (02/12/2018 10:05:35 AM) (Source: Windows Search Service) (EventID: 3006) (User: ) Description: Impossible d’initialiser le contrôle des performances pour le service rassembleur, car les compteurs ne sont pas chargés ou l’objet mémoire partagée ne peut pas être ouvert. Cela affecte seulement la disponibilité des compteurs de performances. Redémarrez l’ordinateur. Error: (02/11/2018 09:23:19 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (02/11/2018 09:02:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante wwahost.exe, version : 6.3.9600.17415, horodatage : 0x545036ce Nom du module défaillant : msxml6.dll, version : 6.30.9600.18895, horodatage : 0x5a4b0b7a Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000db9c3 ID du processus défaillant : 0x1764 Heure de début de l’application défaillante : 0x01d3a37331e4b39b Chemin d’accès de l’application défaillante : C:\windows\system32\wwahost.exe Chemin d’accès du module défaillant: C:\Windows\System32\msxml6.dll ID de rapport : 6fca77da-0f66-11e8-8325-7c05079389cd Nom complet du package défaillant : 37442SublimeCo.LuckyFreeCell_1.0.2.1_x64__15r1cmjbwty0t ID de l’application relative au package défaillant : App Error: (02/11/2018 09:02:01 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante wwahost.exe, version : 6.3.9600.17415, horodatage : 0x545036ce Nom du module défaillant : KERNELBASE.dll, version : 6.3.9600.18895, horodatage : 0x5a4b1cf7 Code d’exception : 0xe06d7363 Décalage d’erreur : 0x00000000000092fc ID du processus défaillant : 0xd44 Heure de début de l’application défaillante : 0x01d3a372c08698ab Chemin d’accès de l’application défaillante : C:\windows\system32\wwahost.exe Chemin d’accès du module défaillant: C:\windows\system32\KERNELBASE.dll ID de rapport : 6b8da6f0-0f66-11e8-8325-7c05079389cd Nom complet du package défaillant : 37442SublimeCo.LuckyFreeCell_1.0.2.1_x64__15r1cmjbwty0t ID de l’application relative au package défaillant : App Error: (02/11/2018 04:30:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante webtarot.exe, version : 1.34.4.2, horodatage : 0x2a425e19 Nom du module défaillant : scodiffb.133, version : 0.0.0.0, horodatage : 0x52b035d7 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000ef4c0 ID du processus défaillant : 0xd50 Heure de début de l’application défaillante : 0x01d3a34cf25e7e75 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Webtarot\webtarot.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Webtarot\scodiffb.133 ID de rapport : 708c8dcf-0f40-11e8-8325-7c05079389cd Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (02/09/2018 02:23:17 PM) (Source: DCOM) (EventID: 10010) (User: PCBERNARD) Description: Le serveur {4545DEA0-2DFC-4906-A728-6D986BA399A9} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (02/09/2018 02:23:17 PM) (Source: DCOM) (EventID: 10010) (User: PCBERNARD) Description: Le serveur {4545DEA0-2DFC-4906-A728-6D986BA399A9} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (02/09/2018 01:00:44 PM) (Source: DCOM) (EventID: 10000) (User: PCBERNARD) Description: Impossible de démarrer un serveur DCOM : {FFF2D28F-E4EE-44D9-8104-8E71556757F6}. L’erreur « 740 » s’est produite lors du démarrage de la commande : "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe" -Embedding Error: (02/06/2018 08:05:09 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: L’ordinateur a redémarré après une vérification d’erreur. La vérification d’erreur était : 0x0000000a (0xffffe001cea63b38, 0x000000000000000f, 0x0000000000000000, 0xfffff8034a464769). Un vidage a été enregistré dans : C:\windows\Minidump\020618-48484-01.dmp. ID de rapport : 020618-48484-01. Error: (02/06/2018 08:05:08 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 00:45:43 le ‎06/‎02/‎2018 n’était pas prévu. Error: (02/06/2018 08:04:18 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: AUTORITE NT) Description: 32212254731187392 Error: (02/05/2018 06:47:22 PM) (Source: DCOM) (EventID: 10000) (User: PCBERNARD) Description: Impossible de démarrer un serveur DCOM : {FFF2D28F-E4EE-44D9-8104-8E71556757F6}. L’erreur « 740 » s’est produite lors du démarrage de la commande : "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\agent.exe" -Embedding Error: (02/05/2018 06:45:43 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 18:31:43 le ‎05/‎02/‎2018 n’était pas prévu. CodeIntegrity: =================================== Date: 2018-02-12 18:10:20.867 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:20.727 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:20.571 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:20.430 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:20.274 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:20.133 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:19.977 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. Date: 2018-02-12 18:10:19.836 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3-4170 CPU @ 3.70GHz Pourcentage de mémoire utilisée: 77% Mémoire physique - RAM - totale: 3999.91 MB Mémoire physique - RAM - disponible: 892.59 MB Mémoire virtuelle totale: 8095.91 MB Mémoire virtuelle disponible: 4519.34 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:913.94 GB) (Free:613.33 GB) NTFS Drive d: (Recovery Image) (Fixed) (Total:16.1 GB) (Free:2.04 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] \\?\Volume{76c622d6-b8fc-4f36-97f2-6ddc2162379d}\ (Windows RE tools ) (Fixed) (Total:1 GB) (Free:0.67 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 9BF3FDD7) Partition: GPT. ==================== Fin de Addition.txt ============================