Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 21.02.2018 Exécuté par Balkarys (22-02-2018 13:56:37) Exécuté depuis C:\Users\Balkarys\Desktop Windows 10 Home Version 1709 16299.248 (X64) (2018-01-26 15:29:23) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3081515443-1713867967-1597843674-500 - Administrator - Disabled) Balkarys (S-1-5-21-3081515443-1713867967-1597843674-1001 - Administrator - Enabled) => C:\Users\Balkarys DefaultAccount (S-1-5-21-3081515443-1713867967-1597843674-503 - Limited - Disabled) Invité (S-1-5-21-3081515443-1713867967-1597843674-501 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-3081515443-1713867967-1597843674-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Disabled - Out of date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee VirusScan (Enabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee VirusScan (Enabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501} AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Pare-feu McAfee (Enabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.011.20036 - Adobe Systems Incorporated) Apple Application Support (32 bits) (HKLM-x32\...\{D4C80B0C-CF67-43A7-90C3-466853543B54}) (Version: 6.3 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{B2A2E8AF-BC48-4191-B2C4-3846A19835CA}) (Version: 6.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{AA7D90D2-2387-4FA5-A3AF-96811BE49BFD}) (Version: 11.0.5.14 - Apple Inc.) Apple Software Update (HKLM-x32\...\{19589375-5C58-4AFA-842F-8B34744CCEAD}) (Version: 2.5.0.1 - Apple Inc.) Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.49.1 - Asmedia Technology) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 18.1.2326 - AVAST Software) BitTorrent (HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\BitTorrent) (Version: 7.10.0.44091 - BitTorrent Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.40 - Piriform) Chroma Squad (HKLM-x32\...\1430123043_is1) (Version: 1.12b - GOG.com) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.7.1.0340 - Disc Soft Ltd) Dell Digital Delivery (HKLM-x32\...\{1B706C33-57B3-411B-BB6E-C4A2CF38AF35}) (Version: 3.4.1002.0 - Dell Products, LP) Dell Power Manager Service (HKLM\...\{18469ED8-8C36-4CF7-BD43-0FC9B1931AF8}) (Version: 3.0.0 - Dell Inc.) Dell SupportAssist (HKLM\...\PC-Doctor for Windows) (Version: 2.0.6875.668 - Dell) Dell SupportAssist Remediation (HKLM\...\{9C32DD4A-3321-4BD5-BD11-C4B18ECE6AE7}) (Version: 3.2.0.4834 - Dell Inc.) Hidden Dell SupportAssist Remediation (HKLM-x32\...\{9ae76d49-72b5-402c-b900-0dc71ab8ebef}) (Version: 3.2.0.4834 - Dell Inc.) Dell SupportAssistAgent (HKLM\...\{9DD6B149-CEBC-4910-B11A-242393EDF6D3}) (Version: 2.1.4.14 - Dell) Dell Update - SupportAssist Update Plugin (HKLM\...\{AB1A407B-E492-4DA1-B024-F96606D1B0B7}) (Version: 3.2.0.4834 - Dell Inc.) Dell Update (HKLM-x32\...\{632610E3-5B12-403C-9C93-EF533ED1C113}) (Version: 1.10.5.0 - Dell Inc.) Deluge 1.3.15 (HKLM-x32\...\Deluge) (Version: - ) Goodix Fingerprint Driver (HKLM\...\{60FAB781-18F2-4D2B-A8E7-B3AADD327955}_is1) (Version: 2.1.31.190 - Goodix, Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 64.0.3282.119 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Iconoclasts (HKLM-x32\...\1888064208_is1) (Version: 1.0 - GOG.com) Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.3.10205.4743 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1035 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 22.20.16.4815 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.7.6.1027 - Intel Corporation) iTunes (HKLM\...\{79C10DB4-5B09-43B7-BE48-4CF93A30FAA6}) (Version: 12.7.3.46 - Apple Inc.) Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Killer Performance Driver Suite (HKLM\...\{853F9F92-ABB6-4EF7-87C2-AD4E62EF38E9}) (Version: 1.4.1580 - Rivet Networks) Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.7.9326.0 - Waves Audio Ltd.) Hidden McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 16.0 R7 - McAfee, Inc.) McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.163 - McAfee, Inc.) Microsoft OneDrive (HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\OneDriveSetup.exe) (Version: 17.3.7294.0108 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Plex Media Player (HKLM\...\{9D0CD2B8-EF2D-4C4C-853D-1B3864E236B8}) (Version: 1.3.12 - Plex) Hidden Plex Media Player (HKLM-x32\...\{95d4ad1c-1c44-4d08-a475-c67bae31428e}) (Version: 1.3.12 - Plex) Plex Media Server (HKLM-x32\...\{2fb84613-d20f-4778-8955-66178d5dee6f}) (Version: 1.10.1.4602 - Plex, Inc.) Plex Media Server (HKLM-x32\...\{CB3C17B5-1DE6-4D78-9447-38C6F1277A2A}) (Version: 1.10.1602 - Plex, Inc.) Hidden Prison.Architect.v13f version v13f (HKLM-x32\...\{5DE408D4-DA83-4262-85F7-D933087DF5B3}_is1) (Version: v13f - Chris Delay) Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.438 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21300 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8318 - Realtek Semiconductor Corp.) Realtek PC Camera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.15063.11299 - Realtek Semiconductor Corp.) Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.) Revolution software v1.63 (HKLM-x32\...\{60DD0941-3BD2-48BA-B9B2-277489968165}) (Version: 1.63 - Nacon) RocketDock 1.3.5 (HKLM-x32\...\RocketDock_is1) (Version: - Punk Software) Secret of Mana (HKLM-x32\...\Secret of Mana_is1) (Version: 0.0.0 - THE KNIGHT) Shovel Knight Treasure Trove version 3.3 (HKLM-x32\...\{16AB25D1-E64D-4DB5-A549-AA47B2B7E1AE}_is1) (Version: 3.3 - REVOLUTiONiT) Starbound (HKLM-x32\...\1452598881_is1) (Version: 1.3.3 - GOG.com) Stardock WindowBlinds (HKLM-x32\...\Stardock WindowBlinds) (Version: 10.65 - Stardock Software, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Stopping Plex (HKLM-x32\...\{5E4EA395-F2C2-4A16-A4C7-99897E1859F2}) (Version: 1.10.1602 - Plex, Inc.) Hidden Terraria (HKLM-x32\...\1207665503_is1) (Version: 1.3.5.3 - GOG.com) Thunderbolt™ Software (HKLM-x32\...\{549D4B45-A0D2-4C11-91E1-9DCF17DAA3D6}) (Version: 17.1.64.250 - Intel Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.0 - VideoLAN) Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-3081515443-1713867967-1597843674-1001_Classes\CLSID\{a9872fee-5a55-4ecb-9b0f-b06fedcf14d1}\localserver32 -> C:\Program Files\Waves\MaxxAudio\MaxxAudioPro.exe (Waves Audio Ltd) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-02-22] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-02-22] (AVAST Software) ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2017-12-21] (McAfee, Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-01-30] (Disc Soft Ltd) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-02-22] (AVAST Software) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-01-30] (Disc Soft Ltd) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\System32\DriverStore\FileRepository\ki124804.inf_amd64_4d45ada40eaf0976\igfxDTCM.dll [2017-10-13] (Intel Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-02-22] (AVAST Software) ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2017-12-21] (McAfee, Inc.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2017-08-11] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {056FB413-2C62-49E3-BA73-1CC449A5E927} - System32\Tasks\Dell SupportAssistAgent AnonymousRegistration => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssist.exe [2018-02-14] (Dell Inc.) Task: {0BDFD70D-F1EC-4AD4-8171-307865C09DDB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-02-07] (Piriform Ltd) Task: {0ED30767-9D96-4D2C-9085-6BD2BF2DFDF0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-01-26] (Google Inc.) Task: {11E46AA0-C2EF-4EFF-B822-93671E456F7B} - System32\Tasks\PCDoctorBackgroundMonitorTask => C:\Program Files\Dell\SupportAssist\uaclauncher.exe [2017-09-14] (PC-Doctor, Inc.) Task: {14D21CE3-3D43-4011-8A97-3BC455020006} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [2018-01-03] (McAfee, Inc.) Task: {1C1726EC-4A1D-4573-9067-14F234BAABE0} - System32\Tasks\McAfee DAT Built in test => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\1.0.5.243\mcdatrep.exe [2018-01-28] (McAfee, LLC.) Task: {1E013B70-DAA0-44D3-9F9E-2788F2834074} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-01-17] (Adobe Systems Incorporated) Task: {3331E15A-9A31-4803-89F0-20AD1C2EC70E} - System32\Tasks\PCDEventLauncherTask => C:\Program Files\Dell\SupportAssist\sessionchecker.exe [2017-09-14] (PC-Doctor, Inc.) Task: {3A3969B5-6177-4997-9189-C521F298D9B7} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2017-02-25] (Intel(R) Corporation) Task: {5884FCAC-8CEF-4539-8F91-5A8C08B83A64} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-02-22] (AVAST Software) Task: {6C9F4280-F7A3-4F54-991E-42BE2866207A} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\mcafee\platform\McUICnt.exe [2017-10-04] (McAfee, Inc.) Task: {9D0B5232-1B1B-4C5E-AD32-A11C74968CAF} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => ConditionalAppStarter.exe Task: {A1972579-48B1-4DEE-88B8-5B1C1A42A890} - System32\Tasks\SystemToolsDailyTest => uaclauncher.exe Task: {A41865BA-083B-4EF2-9A8A-663F6627B20D} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService Task: {A774DD26-C2A1-495C-9F07-C0E8E585E4AF} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => ConditionalAppStarter.exe Task: {AD763395-25DF-428B-BF58-9E2AE6407E4F} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => ConditionalAppStarter.exe Task: {C4B8950B-8FCE-4462-B335-43E11C7E6257} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-10-12] (Apple Inc.) Task: {C62EC89D-3804-4C10-A5BF-10B547156580} - System32\Tasks\McAfee\McAfee Idle Detection Task Task: {C63FF9C0-DE1E-436C-9811-33E40E9C23E8} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent Task: {C75DD71E-E182-46A3-8A94-F30AD9DD75C4} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => tbtsvc.exe Task: {CCF1B13F-F324-4CE9-897A-AF183C4D17B7} - System32\Tasks\PCDDataUploadTask => uaclauncher.exe Task: {E25404EC-E3D4-4D0D-A759-828EF0BA8FB9} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-01-26] (Google Inc.) Task: {ED3E9972-8C1C-4346-A92B-48255AED2EB5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-02-07] (Piriform Ltd) Task: {EE41D581-F113-47F3-B3F7-A27348EB71A8} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [2017-11-23] (McAfee, Inc.) Task: {EF6AFE62-B08C-4F9E-BA8D-31B3D7CAC059} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssist.exe [2018-02-14] (Dell Inc.) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) WMI_ActiveScriptEventConsumer_DellCommandPowerManagerAlertEventConsumer: ==================== Modules chargés (Avec liste blanche) ============== 2018-01-19 02:08 - 2018-01-19 02:08 - 000432168 _____ () C:\Windows\System32\drivers\UMDF\usbinterface.dll 2017-09-29 14:41 - 2017-09-29 14:41 - 000184432 _____ () C:\Windows\SYSTEM32\inputhost.dll 2018-01-05 00:13 - 2018-01-05 00:13 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2018-01-05 00:14 - 2018-01-05 00:14 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2018-02-13 22:31 - 2018-02-10 05:39 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-02-13 22:31 - 2018-02-10 05:36 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2017-08-11 23:08 - 2017-12-21 10:53 - 001724384 _____ () C:\Program Files\McAfee\MfeAV\RealProtectAMScanIf.dll 2017-08-11 23:08 - 2017-12-21 10:53 - 000584104 _____ () C:\Program Files\McAfee\MfeAV\RepairModule.dll 2018-01-26 14:47 - 2018-01-24 08:48 - 004433752 _____ () C:\Program Files (x86)\Google\Chrome\Application\64.0.3282.119\libglesv2.dll 2018-01-26 14:47 - 2018-01-24 08:48 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\64.0.3282.119\libegl.dll 2018-02-02 11:48 - 2018-02-02 11:48 - 002250240 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11801.1001.6.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-02-07 14:38 - 2018-02-07 14:38 - 001231536 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.8827.21855.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll 2018-02-11 13:32 - 2018-02-11 13:32 - 025843200 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\Music.UI.exe 2018-02-11 13:32 - 2018-02-11 13:32 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\SharedUI.dll 2018-02-11 13:32 - 2018-02-11 13:32 - 006748672 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\EntCommon.dll 2018-01-26 15:22 - 2018-01-26 15:22 - 000902656 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\Microsoft.Membership.MeControl.UI.Xaml.dll 2018-01-26 15:18 - 2018-01-26 15:18 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-02-11 13:32 - 2018-02-11 13:32 - 005527040 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.18011.13411.0_x64__8wekyb3d8bbwe\Music.Visuals.dll 2018-02-03 10:38 - 2018-02-01 20:28 - 031237632 _____ () C:\Users\Balkarys\AppData\Local\Google\Chrome\User Data\PepperFlash\28.0.0.161\pepflashplayer.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000287960 _____ () c:\program files\avast software\avast\streamback.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000280280 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-02-22 10:43 - 2018-02-22 10:43 - 005822096 _____ () c:\program files\avast software\avast\defs\18022104\algo.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000756952 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000172248 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000963288 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000468696 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000339160 _____ () C:\Program Files\AVAST Software\Avast\streamback_avast.dll 2017-12-13 05:18 - 2017-12-13 05:18 - 000083432 _____ () C:\Program Files (x86)\Plex\Plex Media Server\zlib.dll 2017-12-13 05:18 - 2017-12-13 05:18 - 000203240 _____ () C:\Program Files (x86)\Plex\Plex Media Server\libidn.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-02-22 10:38 - 2018-02-22 10:38 - 000275672 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-09-23 00:28 - 2017-09-23 00:28 - 000140664 _____ () c:\Program Files (x86)\Dell Digital Delivery\ServiceTagPlusPlus.dll 2017-11-21 13:50 - 2017-11-21 13:50 - 000134016 _____ () C:\Program Files (x86)\Dell Update\ServiceTagPlusPlus.dll 2017-06-26 22:24 - 2017-06-26 22:24 - 001244304 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\Control Panel\Desktop\\Wallpaper -> c:\users\balkarys\pictures\reflection\1920x1080.png DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "iTunesHelper" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\StartupFolder: => "Isass.lnk" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\Run: => "Plex Media Server" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-3081515443-1713867967-1597843674-1001\...\StartupApproved\Run: => "CCleaner Monitoring" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{CC109A7A-B702-4DCE-98A7-8EE82FFB8AC2}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe FirewallRules: [{0EC9BC52-80A8-4F50-B568-795C433DBAF7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{2360470C-BF08-4120-B6F8-338F94E52342}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{DF59E1CF-3857-470E-9D09-E0C062E38874}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{8F9FCCAA-CA5F-454B-B725-E35BBAFA5040}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{248653B4-72D5-4B59-B15A-21B72E92272E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{7F68F9EA-750D-4EDF-AD37-0BB631FF8A62}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{A93B486E-6A43-4178-971F-09E5A61B498F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{2AA3D2C1-8960-4188-A540-9A1C49846528}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe FirewallRules: [{5ADB1E3D-61C9-49DD-BDAC-EED62979EBC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PapersPlease\PapersPlease.exe FirewallRules: [{7B877318-B157-4F76-A670-7564FC9F8AD9}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe FirewallRules: [{7A9F1501-23E5-4633-A816-1F27FFC35746}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{AE245921-A5FF-45D7-8FDC-BB84A63C04D9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8EC8ABEE-ABD6-4169-A65C-A92B33DC01BA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{E19691D2-0DCB-446A-A641-70474D1269AC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{7FE6778E-EE36-4DD2-B74A-115FA6F93C7E}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{E40FD0EB-C759-4938-9945-8AB69B750CC6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2014\fm.exe FirewallRules: [{2502E57C-2B5A-47FA-82B9-8E54DE9B9358}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2014\fm.exe FirewallRules: [{38140CB1-760F-49B9-ACAB-E2A5C1E00319}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2014 Editor\editor.exe FirewallRules: [{14A835A0-F964-4504-9CE5-6D6924F2D8B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2014 Editor\editor.exe FirewallRules: [{1DA2E340-058B-4465-B8C6-A57514C29043}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe FirewallRules: [{69919CA3-5C44-4A15-AAFD-EA15820849A8}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe FirewallRules: [{CD017B19-35BD-491D-BE28-CC0130513072}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deponia\deponia.exe FirewallRules: [{75119658-05B9-433A-B7E7-809E4E372067}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deponia\deponia.exe FirewallRules: [{39CB03C6-1DEA-4278-8FDA-F227F2A91E1B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{8230F3A2-7E1B-4F5A-A5DC-B48B6034E8F0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deponia\VisionaireConfigurationTool.exe FirewallRules: [{9D4EB8B2-CA27-4632-B93A-B807BD9CE1D7}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe FirewallRules: [{3D4A5244-61D4-4C66-BAC6-6B84CA36C23B}] => (Allow) C:\Users\Balkarys\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{FD1AAF8A-3024-47F1-98FE-88FD796AE4B6}] => (Allow) C:\Users\Balkarys\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{39AE5D69-A500-48E6-A40F-EBA537B7B20D}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Media Server.exe FirewallRules: [{194F024E-1B8D-423F-B506-2D30C6FE58D8}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\PlexScriptHost.exe FirewallRules: [{58A01B59-BE48-4ADC-BF23-48AE86320263}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex DLNA Server.exe FirewallRules: [{70781A6E-C8DC-4E71-B4EE-B7A1D97EF2AA}] => (Allow) C:\Program Files (x86)\Plex\Plex Media Server\Plex Tuner Service.exe FirewallRules: [{BF7D3A6E-AD2B-4CBF-AD69-D15239A5E34F}] => (Allow) C:\Program Files\Plex\Plex Media Player\PlexMediaPlayer.exe FirewallRules: [{95A330FB-B242-479B-B5FC-6B1CDDE48226}] => (Allow) C:\Program Files\Plex\Plex Media Player\PMPHelper.exe ==================== Points de restauration ========================= 04-02-2018 18:44:00 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 07-02-2018 16:36:20 Plex Media Player 09-02-2018 21:43:15 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 11-02-2018 17:13:36 DirectX est installé 18-02-2018 21:22:23 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 22-02-2018 13:48:46 Installed Adobe Acrobat Reader DC - Français. ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (02/22/2018 12:18:26 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Thu, 22 Feb 2018 11:18:25 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: 077f29c5-7bd7-4ec0-87cb-647f050c3278 Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(390ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (02/22/2018 12:18:24 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Thu, 22 Feb 2018 11:18:24 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: 80011b69-51b3-40ce-b938-b55e596c49e7 Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(469ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (02/22/2018 11:13:09 AM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Thu, 22 Feb 2018 10:13:10 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: 53fd7e51-972c-44d5-9c59-f08879584376 Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(484ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (02/22/2018 11:13:06 AM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Thu, 22 Feb 2018 10:13:06 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: d13a1549-19bf-470f-a7d7-05301f82f6ab Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(734ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (02/22/2018 10:46:31 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante avastsvc.exe, version : 18.1.3800.0, horodatage : 0x5a7b8429 Nom du module défaillant : ntdll.dll, version : 10.0.16299.248, horodatage : 0x3a21d961 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00089cd0 ID du processus défaillant : 0x15c4 Heure de début de l’application défaillante : 0x01d3abc0e53299fa Chemin d’accès de l’application défaillante : c:\program files\avast software\avast\avastsvc.exe Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : 12094fb2-2eab-4ec7-a1ea-3b3b4c73abe1 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (02/22/2018 10:38:29 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (02/21/2018 10:54:44 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Wed, 21 Feb 2018 21:54:43 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: aa704cd5-7f9d-44f4-91fb-cea4e55c03a6 Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(594ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (02/21/2018 10:17:52 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\DESKTOP-204VE1C$ via https://NTC-KeyId-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"ntc-keyid-23f4e22ad3be374a449772954aa283aed752572e.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Cache-Control: no-cache Date: Wed, 21 Feb 2018 21:17:54 GMT Pragma: no-cache Content-Length: 121 Content-Type: application/json; charset=utf-8 Expires: -1 Server: Microsoft-IIS/8.5 x-ms-request-id: 4e0f181d-ef13-495e-ba9c-1b2f387a3da8 Strict-Transport-Security: max-age=31536000;includeSubDomains X-Content-Type-Options: nosniff X-Powered-By: ASP.NET Méthode : GET(563ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Erreurs système: ============= Error: (02/22/2018 12:33:24 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:28:20 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:19:21 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-204VE1C) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID DESKTOP-204VE1C\Balkarys de l’utilisateur (S-1-5-21-3081515443-1713867967-1597843674-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:18:23 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:18:23 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:18:23 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:18:23 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (02/22/2018 12:17:48 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-204VE1C) Description: Le serveur {9BA05972-F6A8-11CF-A442-00A0C90A8F39} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2018-02-22 13:55:49.504 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:46.215 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:44.679 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:44.662 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:44.601 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:44.376 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:28.115 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. Date: 2018-02-22 13:55:21.453 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\wbload.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-8550U CPU @ 1.80GHz Pourcentage de mémoire utilisée: 35% Mémoire physique - RAM - totale: 16191.95 MB Mémoire physique - RAM - disponible: 10520.19 MB Mémoire virtuelle totale: 18623.95 MB Mémoire virtuelle disponible: 12846.61 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:463.4 GB) (Free:294.69 GB) NTFS \\?\Volume{93d94d30-c62e-4bd5-833c-62390a66bd06}\ (ESP) (Fixed) (Total:0.48 GB) (Free:0.42 GB) FAT32 \\?\Volume{a434fd8c-65ac-4bed-a414-9c2817c3005d}\ (WINRETOOLS) (Fixed) (Total:0.79 GB) (Free:0.37 GB) NTFS \\?\Volume{c8c0d8f2-0aa0-4614-9fd5-857f61db7b48}\ (Image) (Fixed) (Total:10.99 GB) (Free:0.15 GB) NTFS \\?\Volume{2e4f87c4-7620-4d17-bd28-f6acb72bd0dc}\ (DELLSUPPORT) (Fixed) (Total:1.14 GB) (Free:0.48 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: 339BEB3A) Partition: GPT. ==================== Fin de Addition.txt ============================