Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 06.05.2018 01 Exécuté par user (06-05-2018 23:33:37) Exécuté depuis C:\Users\user\Desktop Windows 10 Home Version 1709 16299.371 (X64) (2018-02-20 22:48:07) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1914243775-3390587339-2088665540-500 - Administrator - Disabled) Alex (S-1-5-21-1914243775-3390587339-2088665540-1005 - Administrator - Enabled) => C:\Users\Alex DefaultAccount (S-1-5-21-1914243775-3390587339-2088665540-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1914243775-3390587339-2088665540-1003 - Limited - Enabled) Invité (S-1-5-21-1914243775-3390587339-2088665540-501 - Limited - Disabled) user (S-1-5-21-1914243775-3390587339-2088665540-1001 - Administrator - Enabled) => C:\Users\user WDAGUtilityAccount (S-1-5-21-1914243775-3390587339-2088665540-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) . . (HKLM\...\{160BD9AF-9CD4-4A92-BC31-FD8127756623}) (Version: 7.1 - Intel) Hidden . . . (HKLM-x32\...\{FA56BC7D-6ABC-4A91-89AF-A2F6C01DAAEC}) (Version: 3.3.0.4 - Intel) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 18.0.0.144 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.162 - Adobe Systems Incorporated) Advanced Mouse Auto Clicker 4.1.8 (HKLM-x32\...\{ABB3A44C-97D0-466E-A0E8-562FAEBEF689}_is1) (Version: - Advanced Mouse Auto Clicker Ltd.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 18.4.1 - Advanced Micro Devices, Inc.) AnyTrans (HKLM-x32\...\AnyTrans) (Version: 6.3.0.0 - iMobie Inc.) Apple Application Support (32 bits) (HKLM-x32\...\{3D1290E6-1F77-46D5-A715-A56679C8D4E3}) (Version: 6.0.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{D0E45DEC-F4B9-4370-A9DF-66837789C2EF}) (Version: 6.0.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{E3C4B99B-BE71-4C27-8E3C-4FAE3C46E1D5}) (Version: 11.0.0.30 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) Audacity 2.2.2 (HKLM-x32\...\Audacity_is1) (Version: 2.2.2 - Audacity Team) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 18.3.2333 - AVAST Software) Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 64.0.387.186 - AVAST Software) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 3.54.65.1755 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{118C2119-84B6-E32C-63E2-B56DBCF41CE5}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{15EEB07A-3FB9-FA4C-8EFF-697728CB1E5C}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{55A4D3AB-C8DF-26B2-89A8-7E16E1E40700}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{365AEAB2-4CF3-7CBB-0DAC-E9E14B688E65}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{5A083A57-10D6-D4E5-292C-F274870E73A4}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{A63E3031-0522-18C6-F18F-7EE80973315F}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{7ABC6D83-816E-6D48-E65D-B0CEDD294E4E}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{A2966D0F-43BB-116D-C9C7-49612FBFD0AE}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{DF0D7C1C-72B6-9FFB-DF66-B3720237BB80}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{238F6F6F-2544-86CF-3AB6-2CDADAB58CF0}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{4C608ED2-535B-2119-3661-9E6F7DDB600F}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{C3EE628C-7394-FE2C-0C90-C05284EB528D}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{2F544F46-5F6E-97BB-3550-A0242A3C5754}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{9005C809-497A-FD45-CB96-76A3338E35B9}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{EC688BD0-240D-AE40-55F3-234E54919AE6}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{D84300A6-72F1-5771-B3B1-8FC71184AB38}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{E27224E3-7913-DA1E-5B08-9BEEC8FEE3D1}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{FC4086D6-E345-5F43-08BB-280FB57DAF49}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{56D13277-FA9F-2842-682D-DD7298973585}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{95A52FC1-C728-841D-1BFC-CC793B77B0A4}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{F8EBE530-A4D5-BF51-F623-3787E6B8A878}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{42FBD43F-DE53-6D4D-5134-E3C93B45CBEF}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{8D0C7788-D519-7B65-36F6-D0D21296F173}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{A22CDEBA-6DB5-12CD-F6CE-6238C2D78363}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{930FD2C7-D026-197D-94E4-CB5917CE7420}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{AC85CF50-9A55-0103-ADBF-365C37603AA4}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{C0BFC67D-E447-02C8-6046-C078DFE9EC97}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{086D11E3-9CA4-DBEF-2B48-5A2EFFD53145}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{94C72EBE-2908-F0AC-62DA-D61951830F8F}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{B349892D-B015-033C-4CA8-3635E6B655D7}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{5B987681-3652-492B-6A11-E02AC0FE5959}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{BE8D6AB1-3049-2F0C-67FA-00C0A5D321A3}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{D0C1EAB6-92F1-EE91-04C2-5947EE150593}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{26567561-DFB2-2B63-9BA8-6A490ED37016}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{57EAA61A-CD02-DF34-0839-2549F57A334C}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{86BFE5B4-1FCE-3C02-6373-92B1AE6431E8}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{0742432E-42D9-2240-4CA1-8595CCCBAA77}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{0809FEC1-EF86-51E9-8210-DC1B1BDB6745}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{AA477FD2-347B-1732-5D8C-AF35AF1B9703}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{5FD706FF-6AD8-E372-A35A-879409982655}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{BBFC5953-2CB9-5932-1D47-52E4AA99737B}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{EAEAA839-44F4-22DF-D1CC-88C3B2A3D4B1}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{01E7D692-D785-743F-5A55-F00162D26A1C}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{A3973655-E448-4A1B-477C-988A79D132D9}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{A4E7CA0C-84EB-5E29-2F04-06C4E4790C2F}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{59D2664C-949B-7FA7-9880-ECB993B6616A}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{5D8BA452-1264-7D13-E4EC-8236EC5B83FE}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{6DC92550-D065-4B36-C4D3-D8D7A702A7A7}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{970A40CA-46AB-986C-1798-976ED0EA00FA}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{B2A83706-3F14-1532-20CD-B4EE715A8945}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{F49BA906-83DA-3F5A-5B24-03C8DE2A3936}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{44ED2CDA-4197-E9E9-B328-26E1FB749116}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{4707CBFC-8ED4-463E-0FF9-DE86F4A743E9}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{5A466CAA-F071-D9EF-A799-EF63552DBE70}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{3450566C-4561-0EE8-B1AB-D5C79CCE8D2C}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{C14A3A5B-8A86-C239-37D7-158211778C54}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{D7DC4DDB-3E0D-6F79-4258-4A461654B689}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{A50C89BC-8D8E-8828-824A-7171F6D583D5}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{ACDFF800-6015-BEEC-8A27-7B1A80915273}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{FCE8438C-3272-D63F-479F-670F082B294B}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{0B5633F0-C415-2F08-671E-4C9E2FAACD45}) (Version: 2015.1129.2307.41591 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{25D1751E-7CA2-5F6D-0125-0A16E47AF9FE}) (Version: 2016.0624.1251.21301 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{A28B1FC5-3947-9D39-7FE5-A3CB18E16358}) (Version: 2016.0628.2138.37120 - Advanced Micro Devices, Inc.) Hidden CLEO 4.3 (HKLM-x32\...\{A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1) (Version: 4.3 - Seemann, Deji, Alien) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.65.55.62 - Conexant) Core Temp 1.11 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.11 - ALCPU) Cuphead (HKLM-x32\...\Cuphead_is1) (Version: - ) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.4.0.0195 - Disc Soft Ltd) DC Universe Online Live (HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\DG0-DC Universe Online Live) (Version: - Sony Online Entertainment) Discord (HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\Discord) (Version: 0.0.301 - Discord Inc.) Dolby Digital Plus Advanced Audio (HKLM\...\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}) (Version: 7.5.1.1 - Dolby Laboratories Inc) Driver Booster 4.4 (HKLM-x32\...\Driver Booster_is1) (Version: 4.4.0 - IObit) Dying Light (HKLM-x32\...\1448452156_is1) (Version: 2.0.0.8 - GOG.com) Energy Manager (HKLM-x32\...\{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.35 - Lenovo) Hidden Energy Manager (HKLM-x32\...\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}) (Version: 1.0.0.35 - Lenovo) Enter the Gungeon (HKLM-x32\...\1456912569_is1) (Version: 2.7.0.9 - GOG.com) Epic Games Launcher (HKLM-x32\...\{8162B1F7-16A4-4879-9E66-2CF7F26648C3}) (Version: 1.1.151.0 - Epic Games, Inc.) Flyff (HKLM-x32\...\{48E3D369-48AA-4585-AE91-E64667682508}_is1) (Version: Flyff - WEBZEN Inc) Goat Simulator (HKLM-x32\...\Goat Simulator_is1) (Version: - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.139 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.7 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.6.4 - Hi-Rez Studios) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Intel(R) Computing Improvement Program (HKLM\...\{F6B5BD59-21F0-47F8-A6C6-63BAEB1A6569}) (Version: 2.1.03720 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.0.0.1098 - Intel Corporation) Intel® Driver & Support Assistant (HKLM-x32\...\{71abde6d-2cfb-4d92-8787-e9dddf3412fc}) (Version: 3.3.0.4 - Intel) IObit Malware Fighter 5 (HKLM-x32\...\IObit Malware Fighter_is1) (Version: 5.1 - IObit) IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 5.4.0.125 - IObit) iTunes (HKLM\...\{89B08926-B965-43B5-8C71-C10433760B14}) (Version: 12.7.0.166 - Apple Inc.) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Lenovo EasyCamera (HKLM-x32\...\{399C37FB-08AF-493B-BFED-20FBD85EDF7F}) (Version: 6.0.1320.2_WHQL - Sonix) Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.) Hidden Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.2105 - CyberLink Corp.) LibreOffice 5.3.7.2 (HKLM\...\{117F3217-458C-4371-B222-00C69DE96CB2}) (Version: 5.3.7.2 - The Document Foundation) LogMeIn Hamachi (HKLM-x32\...\{BE82D2D7-6CA2-43B3-8C22-CCF6405806E7}) (Version: 2.2.0.579 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.579 - LogMeIn, Inc.) Malwarebytes version 3.4.5.2467 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.4.5.2467 - Malwarebytes) Manuels d'utilisateur (HKLM-x32\...\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo) Hidden McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.7.190 - McAfee, Inc.) Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}) (Version: 3.1.99.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{4549ceb8-695a-42eb-a183-4820d542a15f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) MorphVOX Pro (HKLM-x32\...\{DE289787-7ECA-4BED-9D8C-99FAC407E3D6}) (Version: 4.3.13 - Screaming Bee) Mozilla Firefox 58.0.1 (x64 fr) (HKLM\...\Mozilla Firefox 58.0.1 (x64 fr)) (Version: 58.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 58.0.1.6602 - Mozilla) NARUTO SHIPPUDEN Ultimate Ninja STORM 2 (HKLM-x32\...\NARUTO SHIPPUDEN Ultimate Ninja STORM 2_is1) (Version: - ) NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation) OEM Application Profile (HKLM-x32\...\{315F1A48-D883-B234-7C79-15873574ACC1}) (Version: 1.00.0000 - Nom de votre société) Open Broadcaster Software (HKLM-x32\...\Open Broadcaster Software) (Version: - ) Package de pilotes Windows - Lenovo (ACPIVPC) System (02/17/2013 9.52.0.776) (HKLM\...\35DD26BE48DAF4A9F35F969F3CB1E3E1435E661E) (Version: 02/17/2013 9.52.0.776 - Lenovo) Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30.0.288) (HKLM\...\6BCA401E9CBEED970D75F55FA5320F60D11984E9) (Version: 07/25/2013 10.30.0.288 - Lenovo) PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2) (Version: - ) PX Profile Update (HKLM-x32\...\{954CFDDE-AF07-2AF9-9600-706E798D42BA}) (Version: 1.00.1. - AMD) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.308 - Qualcomm Atheros Communications) Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.31233 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.30132 - Realtek Semiconductor Corp.) Roblox Player for user (HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\{373B1718-8CC5-4567-8EE2-9033AD08A680}) (Version: - Roblox Corporation) RomStation (HKLM-x32\...\{223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1) (Version: - RomStation) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.151 - Skype Technologies S.A.) SlimDX Runtime .NET 4.0 x86 (January 2012) (HKLM-x32\...\{7EBD0E43-6AC0-4CA8-9990-00E50069AD29}) (Version: 2.0.13.43 - SlimDX Group) Smart Defrag 5 (HKLM-x32\...\Smart Defrag_is1) (Version: 5.2.0 - IObit) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) The Stanley Parable version 1.0 (HKLM-x32\...\The Stanley Parable_is1) (Version: 1.0 - Galactic Cafe) TSEV Skyrim LE (HKLM-x32\...\TSEV Skyrim LE_is1) (Version: 2.0.0.0 - ) Tunngle (HKLM-x32\...\Tunngle_is1) (Version: 5.8.9 - Tunngle.net GmbH) Unity Web Player (HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\UnityWebPlayer) (Version: 5.3.8f2 - Unity Technologies ApS) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9C4F3AF4-21D8-43BD-A69C-517BB96012CF}) (Version: 2.12.0.0 - Microsoft Corporation) User Manuals (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 3.0.0.3 - Lenovo) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - ) WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers1: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers1: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2015-11-12] (IObit) ContextMenuHandlers1: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-27] (Malwarebytes) ContextMenuHandlers4: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers4: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2015-11-12] (IObit) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-04-25] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-06-12] (Intel Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-04-14] (AVAST Software) ContextMenuHandlers6: [IObit Malware Fighter] -> {0BB81440-5F42-4480-A5F7-770A6F439FC8} => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll [2017-03-31] (IObit) ContextMenuHandlers6: [IObitUnstaler] -> {B19ED566-D419-470b-B111-3C89040BC027} => C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMenuRight.dll [2015-11-12] (IObit) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-03-27] (Malwarebytes) ContextMenuHandlers6: [SmartDefragExtension] -> {189F1E63-33A7-404B-B2F6-8C76A452CC54} => C:\WINDOWS\System32\IObitSmartDefragExtension.dll [2016-03-25] (IObit) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0533F2EE-EF94-4F84-A1A3-24BE0D706BCA} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {17AEB065-52E9-446B-919B-3171CA7E4D6D} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {1E24383E-D9AC-40A9-A405-8E3473BDB7B3} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Pas de fichier <==== ATTENTION Task: {1F5EF6BF-60E8-4A02-86B7-745A277F76F4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-03] (Google Inc.) Task: {218A235F-D5E8-4F4A-9AF5-4B8FAEA6D816} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-04-14] (AVAST Software) Task: {22C4A014-853B-4D9B-B12C-861E0A508C8D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation) Task: {27825DFF-6DDD-44E1-9503-B46A637E4A3E} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2018-04-25] (Advanced Micro Devices, Inc.) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {38E49DCC-4AB4-462F-87D9-5BC0FDE60663} - \McAfee\McAfee Idle Detection Task -> Pas de fichier <==== ATTENTION Task: {39DCB7B2-2129-4796-AF37-1DC791A0FEAF} - System32\Tasks\{320A7CB6-5DA9-4555-BA87-913A484C00CA} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Kino The Rebirth.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {3A530DE5-739E-4881-9A73-227BF244B698} - \Microsoft\Windows\Setup\gwx\rundetector -> Pas de fichier <==== ATTENTION Task: {3B957B08-48E5-44C2-95EB-E4BF880686AE} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe [2018-04-25] (Advanced Micro Devices, Inc.) Task: {3D4DF239-65E1-48B5-A55D-1CEEDB6DB3F5} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [2016-06-06] (IObit) Task: {4017F84F-4271-4EB5-8FEA-D13370016C3E} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-12] (Adobe Systems Incorporated) Task: {43E75825-AD47-4BE2-8A65-7FC79FA19FD0} - System32\Tasks\ASC9_SkipUac_Système => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: {5AD689CB-C245-4AF4-B564-C0015E341DA4} - System32\Tasks\{38C07E2B-053D-4E12-AE87-1D8D61C59D56} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Nuketown Remastered 1.2.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {68F2489E-FC58-47F5-A680-CDCC9789468B} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Pas de fichier <==== ATTENTION Task: {6E2EEFB3-D117-4B15-9A59-836DA726E0AE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-04-15] (AVAST Software) Task: {7016C597-7CB5-4738-9BD6-45AC4FD32300} - System32\Tasks\Driver Booster SkipUAC (user) => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe [2017-05-03] (IObit) Task: {7195AFEC-B4B9-440B-AB81-9E7D83CC6AFE} - System32\Tasks\{166AAB2A-C98F-472C-BB4F-3A4F5FD17072} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\user\AppData\Local\{1EBD28E1-3A15-4459-578D-61B173E59D29}\uninst.exe -c -FN=""-P=/Uninstall /s /noun /DelSelfDir Task: {720A894E-D567-4202-BD95-2A306CB53783} - System32\Tasks\{0FAA4552-7BC3-4678-AA91-430035F097B6} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\futurama.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {7232DC22-8A7A-493C-9A80-431A4252D2C0} - System32\Tasks\S-1-5-21-1914243775-3390587339-2088665540-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [2017-09-29] (Microsoft Corporation) Task: {75998137-EB7C-40AF-8FBA-DCC763195E40} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {7C5C2438-59FC-4D9F-8563-E99F2A8AB682} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation) Task: {84C99CF1-6C51-4E11-A87A-64767087621B} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-06] (AVAST Software) Task: {8C7CC08E-295F-4024-9955-0593A7863895} - System32\Tasks\Uninstaller_SkipUac_user => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-06-24] (IObit) Task: {8D63A418-F52E-4A25-963A-F4F354177359} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [2016-07-22] (IObit) Task: {9AC88744-491A-4146-905E-ECD83978DD9F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {9B844E5B-7DD5-4B6C-AAD5-904549AAD6F5} - System32\Tasks\{DC004C07-1750-4FC6-8A50-FA0BFC01679E} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Hogwarts_releaseBuild 001.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {9C5D60B4-604F-4FAD-8F6F-0C08635245B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation) Task: {9E8A6762-39D4-42FE-80AE-8450CBAD6EBE} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {ABD5DCA9-8976-40BE-9F79-7BC9784DC2AF} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {AFE5807B-A2D8-4771-AFF9-0C65991A9918} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation) Task: {B395D8D2-E569-4AD7-9DEC-E1E41446AF64} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2017-07-24] (Apple Inc.) Task: {BC894984-A1E4-40A3-8764-EAE857AB2CC8} - System32\Tasks\{768C24B0-7D93-4F7C-9D88-C8D976A7730F} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Das Herrenhaus 1.2.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {BF4427E9-4A0C-4179-9A31-C46BA8DC15B5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Pas de fichier <==== ATTENTION Task: {C1959CBA-6C9F-43BC-87B4-32B715034E27} - System32\Tasks\ASC9_SkipUac_user => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: {C48885ED-48CE-4682-99EE-4796A9E352DA} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {CE37B669-D25C-473F-A859-72D821A6DF92} - System32\Tasks\{B3BFFAB4-2D4F-4EB3-A187-EBB88C2CE7B1} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Clinic Of Evil.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {D580D59F-C1C7-4945-B90D-23E7C6712D0B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {DB310688-8FD2-43A9-B27D-B24D9B3FD592} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [2017-07-13] (Intel Corporation) Task: {DEF5B88C-68D7-45E7-B00D-06848453B3C9} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {DFC7CCEC-472D-4DE1-B1D4-2C8E802BD25B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation) Task: {E6DFAA41-6BB0-4D51-BAF2-0907EDAE35F8} - System32\Tasks\{947D86F5-F0CA-41AC-B155-F092B498E663} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\decontamination v2.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {E70E1626-E6B2-40C8-8CF4-77EF984DEFB2} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {E79BABC7-D106-4ED9-B0A0-4E783CE01901} - System32\Tasks\{B05B28CE-75A6-4BC6-8C4C-A6F11C70372A} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files\VB\CABLE\VBCABLE_Setup_x64.exe" Task: {EB79C61F-6E15-4B32-9322-3839740D670F} - System32\Tasks\{74D2F87B-A788-49A9-9219-32BB966F88A1} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods\Cheese Cube Unlimited v1.0.exe" -d "C:\Program Files (x86)\World at War Nazi zombies\nazi zombies\mods" Task: {EE5ABCA0-317A-4F73-85DA-9AD28C308949} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [2016-07-27] (IObit) Task: {F5328E7C-FE8C-4F2E-BC6C-DF75D3FC58F7} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {F5EE6CA9-B415-4A01-B1B9-87E9CE3F6952} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-03] (Google Inc.) Task: {F735BD7B-4264-45EC-96F3-9DCA629084EE} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {F7C336F8-D9D5-4207-AD22-D45E17B952F0} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [2018-04-06] (AVAST Software) Task: {FD8B12F3-EB66-4F6B-B15C-49FBF6E29FC3} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe Task: {FEBA404D-F886-4370-B45B-146B63A5F7D6} - \WPD\SqmUpload_S-1-5-21-1914243775-3390587339-2088665540-1001 -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\ASC9_SkipUac_Système.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: C:\WINDOWS\Tasks\ASC9_SkipUac_user.job => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\Uninstaller_SkipUac_user.job => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-10-05 19:17 - 2016-10-05 19:17 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-09-01 02:49 - 2017-09-01 02:49 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2018-04-24 22:55 - 2018-04-24 22:55 - 000015360 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.DLL 2018-04-24 22:55 - 2018-04-24 22:55 - 002519040 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2018-03-22 14:11 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-22 14:11 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-04-25 21:31 - 2018-04-25 21:33 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2018-04-25 21:31 - 2018-04-25 21:33 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2018-04-25 21:31 - 2018-04-25 21:33 - 022320128 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2018-04-25 21:31 - 2018-04-25 21:33 - 002603008 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\skypert.dll 2018-04-25 21:31 - 2018-04-25 21:33 - 000657408 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2018-05-01 22:29 - 2018-04-26 05:14 - 004443992 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libglesv2.dll 2018-05-01 22:29 - 2018-04-26 05:14 - 000099672 _____ () C:\Program Files (x86)\Google\Chrome\Application\66.0.3359.139\libegl.dll 2016-10-02 22:26 - 2016-03-31 17:57 - 000625440 _____ () C:\Program Files (x86)\IObit\LiveUpdate\ProductStatistics.dll 2016-10-02 22:27 - 2015-12-23 18:32 - 000190240 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl 2016-10-02 22:27 - 2015-12-23 18:32 - 000057632 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl 2018-04-14 10:10 - 2018-04-14 10:10 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2018-03-15 14:43 - 2018-03-15 14:43 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-04-14 10:10 - 2018-04-14 10:10 - 000349912 _____ () C:\Program Files\AVAST Software\Avast\streamback_avast.dll 2018-04-14 10:10 - 2018-04-14 10:10 - 000295640 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll 2018-04-14 10:09 - 2018-04-14 10:09 - 000281816 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\Public\AppData:CSM [476] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\IMFservice => "@"="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\amazon.fr -> hxxps://amazon.fr IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\008k.com -> 008k.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\00hq.com -> 00hq.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\0190-dialers.com -> 0190-dialers.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\01i.info -> 01i.info IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\05p.com -> 05p.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\0calories.net -> 0calories.net IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\0cj.net -> 0cj.net IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\0scan.com -> 0scan.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\1-domains-registrations.com -> 1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\1-se.com -> 1-se.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\1001movie.com -> 1001movie.com IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\1001night.biz -> 1001night.biz IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\100gal.net -> 100gal.net IE restricted site: HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\100sexlinks.com -> 100sexlinks.com Il y a 4788 plus de sites. ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2013-08-22 15:25 - 2018-05-04 11:34 - 000025695 _____ C:\WINDOWS\system32\Drivers\etc\hosts 94.23.155.247 authserver.mojang.com 94.23.155.247 sessionserver.mojang.com 0.0.0.0 0.0.0.0 # fix for traceroute and netstat display anomaly 0.0.0.0 tracking.opencandy.com.s3.amazonaws.com 0.0.0.0 media.opencandy.com 0.0.0.0 cdn.opencandy.com 0.0.0.0 tracking.opencandy.com 0.0.0.0 api.opencandy.com 0.0.0.0 api.recommendedsw.com 0.0.0.0 rp.yefeneri2.com 0.0.0.0 os.yefeneri2.com 0.0.0.0 os2.yefeneri2.com 0.0.0.0 installer.betterinstaller.com 0.0.0.0 installer.filebulldog.com 0.0.0.0 d3oxtn1x3b8d7i.cloudfront.net 0.0.0.0 inno.bisrv.com 0.0.0.0 nsis.bisrv.com 0.0.0.0 cdn.file2desktop.com 0.0.0.0 cdn.goateastcach.us 0.0.0.0 cdn.guttastatdk.us 0.0.0.0 cdn.inskinmedia.com 0.0.0.0 cdn.insta.oibundles2.com 0.0.0.0 cdn.insta.playbryte.com 0.0.0.0 cdn.llogetfastcach.us 0.0.0.0 cdn.montiera.com 0.0.0.0 cdn.msdwnld.com 0.0.0.0 cdn.mypcbackup.com 0.0.0.0 cdn.ppdownload.com 0.0.0.0 cdn.riceateastcach.us 0.0.0.0 cdn.shyapotato.us ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\StartupFolder: => "WinZip Préchargeur.lnk" HKLM\...\StartupApproved\StartupFolder: => "Notifications de Mises à jour.lnk" HKLM\...\StartupApproved\Run: => "IAStorIcon" HKLM\...\StartupApproved\Run: => "Energy Manager" HKLM\...\StartupApproved\Run: => "Lenovo Utility" HKLM\...\StartupApproved\Run: => "SmartAudio" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "UpdateP2GShortCut" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "IObit Malware Fighter" HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui" HKLM\...\StartupApproved\Run32: => "DSATray" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "BingSvc" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "Skype" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "Dashlane" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "BlueStacks Agent" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "Chromium" HKU\S-1-5-21-1914243775-3390587339-2088665540-1001\...\StartupApproved\Run: => "OneDriveSetup" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{746D8179-D535-4658-B0D9-DEC57A811187}] => (Block) C:\program files (x86)\the stanley parable\thestanleyparable.exe FirewallRules: [{134638EC-4BE4-4277-B421-7BA05085C445}] => (Block) C:\program files (x86)\the stanley parable\thestanleyparable.exe FirewallRules: [UDP Query User{E9D446E0-A2DF-4622-BDC5-6F25A6E9FC3F}C:\program files (x86)\the stanley parable\thestanleyparable.exe] => (Allow) C:\program files (x86)\the stanley parable\thestanleyparable.exe FirewallRules: [TCP Query User{CA235CD9-3156-4B4A-B4C4-07C1FE3885BE}C:\program files (x86)\the stanley parable\thestanleyparable.exe] => (Allow) C:\program files (x86)\the stanley parable\thestanleyparable.exe FirewallRules: [{09F0B309-F97C-4CE6-883E-385B6C50C317}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{160A027F-10C6-40D7-B3ED-B7E7CBCC73EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{DC7841D7-356E-4752-A769-C4B9B0EA5C2A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2 DownFall\hl2.exe FirewallRules: [{B9E820AB-87BA-4CBE-8825-BA3C857336AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2 DownFall\hl2.exe FirewallRules: [{E4D62014-8B99-468C-B3D4-0B514615A785}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe FirewallRules: [{65E39CD4-CC83-4B8C-846D-CD775DFE1D7D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Star Wars Battlefront II\GameData\BattlefrontII.exe FirewallRules: [{CA309D44-C6B3-42E7-A044-6437FEF2AD42}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe FirewallRules: [{4E79A5CA-2B6E-4670-8EFB-532F69B987B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{5F16CDE8-DED0-44C8-9F1D-B33C35FA099D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Undertale\UNDERTALE.exe FirewallRules: [{47049387-02C1-4328-961E-BC2BA9EC1BB4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magicka\Magicka.exe FirewallRules: [{6B4A4F4D-687B-429C-8C5C-0C606DA84352}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Magicka\Magicka.exe FirewallRules: [UDP Query User{31247DBB-27FE-4214-B60C-84403932BA78}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{AD77A7A1-4EE2-4A93-BFD8-D973CB379B35}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{B78877F0-5571-4504-8FC3-098E293B3C88}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Synergy\synergy.exe FirewallRules: [{F4BB6201-D6CB-4BE4-9713-6039FDC9833A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Synergy\synergy.exe FirewallRules: [{F4D68CCF-F85A-4556-8982-215DBC683F55}] => (Block) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe FirewallRules: [{49527796-8873-481A-A1ED-F62D74796B57}] => (Block) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe FirewallRules: [UDP Query User{89B20759-7871-4954-B1CD-6AC6D2BF3026}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe FirewallRules: [TCP Query User{8879AC08-6331-4DE7-AA3B-48FB5539C697}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe FirewallRules: [{1D4B6D67-124C-4D53-AFBE-A24F2F318BC3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DC Universe Online\LaunchPad.exe FirewallRules: [{A8ED5AF6-17B2-4CCB-AC61-7078C165EEFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\DC Universe Online\LaunchPad.exe FirewallRules: [{9637B38F-3153-46D4-9666-F4BF5627B557}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Business Tour\BusinessTour.exe FirewallRules: [{96541235-E91D-4B02-BF2F-017D83855B8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Business Tour\BusinessTour.exe FirewallRules: [{A4DB6B18-8E74-4BA4-8C74-B786B186086C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zombie Panic Source\zps.exe FirewallRules: [{7B8ED854-254D-4C05-A4A6-862D8F7DA1FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Zombie Panic Source\zps.exe FirewallRules: [{EC2C6A34-DBA9-4C94-9169-3E3CC3CF5F78}] => (Block) C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe FirewallRules: [{A5B96E2A-493C-46C8-AA00-058CCB59CE90}] => (Block) C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe FirewallRules: [UDP Query User{F99852FD-BDF8-4930-90EC-18ECD54A6C3C}C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe] => (Allow) C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe FirewallRules: [TCP Query User{3F0E7D27-24C3-4D8A-9A6D-C473F631884A}C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe] => (Allow) C:\program files (x86)\coffee stain studios\goat simulator\binaries\win32\goatgame-win32-shipping.exe FirewallRules: [UDP Query User{175C6129-384B-4B16-BC2B-5FA38CA0F4CD}C:\gog games\dying light\dyinglightgame.exe] => (Allow) C:\gog games\dying light\dyinglightgame.exe FirewallRules: [TCP Query User{C611502F-3129-4B55-AEAA-1F3CCE053002}C:\gog games\dying light\dyinglightgame.exe] => (Allow) C:\gog games\dying light\dyinglightgame.exe FirewallRules: [UDP Query User{33EC7D6A-8246-4C97-8807-BBCE426D0FF0}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{836D791E-13B5-448E-A9D6-2C29007134C4}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{FD852A7A-26A8-471D-BAEF-2CA842463E9E}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [UDP Query User{18E73BE4-3F0F-4E32-AC52-444D96DB6D19}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [TCP Query User{63A2F1A3-9F98-4891-9E5B-BA9717291A9D}C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\outlast\binaries\win64\olgame.exe FirewallRules: [{79C6429A-23A9-4F51-817A-5F17CE3334A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [{C1789D7A-4DAF-47A4-8AA8-7DDFFFBDB329}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Outlast\OutlastLauncher.exe FirewallRules: [UDP Query User{BE308C67-AF1E-43C5-AF15-66308455FE46}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [TCP Query User{6BCB5476-1C0A-44AC-BE1D-66DF45A0F000}C:\program files\java\jre1.8.0_121\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{BA006648-1F31-4CAF-A8A5-B0034F739CC7}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe FirewallRules: [{A9F5154B-DF56-4F6D-A1F3-9F8CFFC91F81}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe FirewallRules: [{A14EF464-D99A-4778-B46E-AAAEB972CC19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe FirewallRules: [{1B37544F-8AEC-4BC8-BEE5-BA5C79136795}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe FirewallRules: [UDP Query User{EC8D3678-6A8E-4C53-A297-E0BA8647F193}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [TCP Query User{8B534582-C755-469B-AD18-5B5E3B1747B4}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [UDP Query User{D24846FE-799C-49BE-8AA5-7B3329C3225E}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [TCP Query User{96C13202-FF3A-41DF-9BDE-8401034A7F4D}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{59F5FC02-D883-4809-9B8B-B0EDE3EC3C56}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [TCP Query User{56580DA4-74E5-4F10-96EB-56A9CB0A949D}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe FirewallRules: [{9C99AEA1-4C57-4235-AB7B-54A3A231D9B0}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{C3E9ADF8-988E-4F03-98D4-2F1FE3272CB2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{58EC3FF0-EE05-4FC1-AE7F-9E92BE2D61F7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{96EB4D12-3027-4640-B62B-70E85DBDA6D8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{CAB7379A-E24C-4FB7-BAB6-42045574F782}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{DF9A7AEA-E7D7-437A-9726-EA835983F6F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [{6027290C-318C-4038-B1AB-E01CB13A009E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Team Fortress 2\hl2.exe FirewallRules: [TCP Query User{1D068EAE-8811-449B-9BBD-948580771A9A}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{9D747E3D-8B53-4EB0-8211-F23B7117D08E}C:\program files (x86)\skype\phone\skype.exe] => (Block) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{C2A5639B-4403-42F6-8D15-B48ABB6EC501}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1CA49786-2C31-42B5-A04B-134D36352DC7}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{018ED017-0D85-4268-BB1E-F5D87BC2A05D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{F28743B2-2A99-4F31-9096-5DDD76B56D48}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{0E9F0310-AA8A-43EB-8393-0957EC83E239}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{9A6EBF40-5588-4100-B49E-15EC146F696E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{72357AF7-8D88-4506-BF1E-B2EC47E75637}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{9FF3176E-9783-4FE5-B93B-A5836318845B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{58ACA315-6E73-4BBA-919E-ECDE8A7CB4FE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{D5E50282-B1CA-4671-92DC-229D7036777F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [TCP Query User{7ADE93C3-54EC-42E1-BA70-5375B95E1E7F}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [UDP Query User{26C8A777-E258-4C14-BF9F-67879EF36A12}C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_121\bin\javaw.exe FirewallRules: [{4CEA365B-0AE0-4C76-8499-B3E2734387D4}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{475DAFF2-C83D-455C-8973-5D0B27957195}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{7A4A30B4-545A-4473-8F4F-5B3E6296C085}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{335661AB-5AF6-4896-8AAE-9596EA24C7DD}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B91C89AD-DA3F-45F1-B06D-BB80ED1F0DB5}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E602EB0E-941D-4412-8583-0D39B3205953}] => (Allow) C:\Users\user\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{5284AE53-0C15-4541-A320-050FF9A7AAFE}C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe] => (Allow) C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe FirewallRules: [UDP Query User{C370A6D6-720C-4132-8CAD-5A520ECDD0D3}C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe] => (Allow) C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe FirewallRules: [{64B6B250-FC69-42E1-934C-1792D7778EA9}] => (Block) C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe FirewallRules: [{575C643D-6B79-4CA0-BD6D-0F69B98B4E5C}] => (Block) C:\romstation\emulation\gamecube\dolphin x64\dolphin.exe FirewallRules: [{2C9A9EBB-7972-47E6-86F9-114ED4BAE8F1}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe FirewallRules: [{78F40A13-C8D4-425C-95ED-11F403DE0E4A}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe FirewallRules: [{9F7A99D0-704C-400D-85AE-2C7C0C7D4B6E}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe FirewallRules: [{67CA8401-066D-4923-BB82-252DB5A45EA0}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DBDownloader.exe FirewallRules: [{3E5C7021-2016-4D06-AB5A-B5844367DE5F}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe FirewallRules: [{033EA39D-4820-4CB0-90F9-45DDA0F5FA4C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\4.4.0\AutoUpdate.exe FirewallRules: [{68D63E50-2E0B-401E-AD29-5C17D53FA085}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [{57A5CEFF-E7C5-4046-9532-B5D83698F6B1}] => (Allow) C:\Program Files (x86)\IObit\IObit Malware Fighter\Surfing Protection\FFNativeMessage.exe FirewallRules: [TCP Query User{C4F2E1EA-D231-423D-9F81-0AF1FF201C4A}C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe] => (Allow) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe FirewallRules: [UDP Query User{C38372A0-9314-4F26-AEBC-B61707325329}C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe] => (Allow) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe FirewallRules: [{BDEC9785-6F3A-4DEB-9C13-BB00B567D058}] => (Block) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe FirewallRules: [{57B976FE-A6DF-412B-B430-824335E92427}] => (Block) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw.exe FirewallRules: [{58B7FF7C-1D85-49C8-B9EF-EEEDB0CB7567}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{A23BF91D-CAD6-44B7-9B4C-72BC1A3166FE}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{3DF3947E-E35B-4CE6-93B1-B52D3623665F}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{8BC33009-0B61-4A2E-9E6B-B2FFD116EADB}] => (Allow) C:\Program Files (x86)\Tunngle\TnglCtrl.exe FirewallRules: [{E9C05843-D48B-4C7E-914C-E6BC3D28D0E7}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{2D9E4B47-CA44-43E3-883B-AAA8544E80BC}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{539CEFAB-686C-4827-8985-B9390A010654}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [{CBB7A160-0B37-4FDC-A983-2D7217F761CA}] => (Allow) C:\Program Files (x86)\Tunngle\Tunngle.exe FirewallRules: [TCP Query User{2384BBBE-2FDC-49AD-9038-74DFC963A427}C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe FirewallRules: [UDP Query User{272EBF64-B9E3-4983-B9EC-6894D66ECA1C}C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe FirewallRules: [{4951D820-A656-4954-91C3-B2FF93CFDB0D}] => (Block) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe FirewallRules: [{AF0EF959-5AA3-4C2B-9BDE-89DCB5B32AA7}] => (Block) C:\program files (x86)\world at war nazi zombies\nazi zombies\codwaw lanfixed.exe FirewallRules: [TCP Query User{FD0523AC-D18F-40DE-B996-00EE8FA62C55}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe FirewallRules: [UDP Query User{A851934C-EF23-4BFD-91D3-EE8FAA5A4D97}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win64\paladins.exe FirewallRules: [{0A5947D9-EF9F-4076-A43B-A6E0598C05FA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout Shelter\FalloutShelter.exe FirewallRules: [{044DC27B-AF77-4371-BB11-A06D483FF9F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Fallout Shelter\FalloutShelter.exe FirewallRules: [{824B0748-A15C-4B51-B43E-338E684C8AA7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe FirewallRules: [{305E72A1-B213-4832-8E31-36AA94B3826E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon Defenders\Binaries\Win32\DungeonDefenders.exe FirewallRules: [{525A5835-675F-4420-A6EB-EEA51243BD89}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trove\GlyphClient.exe FirewallRules: [{0E5F3063-DE6D-4670-A26F-371E64A5BB22}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trove\GlyphClient.exe FirewallRules: [{2ABADC81-55E9-4154-A827-613AA1A562FC}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe FirewallRules: [{47CF3B05-793C-4C7F-A272-CBA1D5DA6D06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Day of Defeat Source\hl2.exe FirewallRules: [{D1B58121-A7C1-44E7-9639-CE3B95D86DBE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Day of Defeat Source\hl2.exe FirewallRules: [TCP Query User{C9292380-301D-4D36-B4B2-288D28C2C96C}C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\adhocsever.exe] => (Allow) C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\adhocsever.exe FirewallRules: [UDP Query User{D0671D98-37A6-425B-AB5A-6A1FB5BBE524}C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\adhocsever.exe] => (Allow) C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\adhocsever.exe FirewallRules: [TCP Query User{29687F3A-2CD3-49C1-84D8-84CDBC456B23}C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\ppssppwindows64.exe FirewallRules: [UDP Query User{07D92EA1-5360-49B5-B9D0-6A0A5398D09D}C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\tout\games\emulateurs\dragon ball z shin budokai\ppssppwindows64.exe FirewallRules: [TCP Query User{2047CF5C-A152-459E-9E6B-0BEA277EF9F7}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\adhocsever.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\adhocsever.exe FirewallRules: [UDP Query User{E29BBD54-91C9-48C9-94C3-D94AB2CED718}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\adhocsever.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\adhocsever.exe FirewallRules: [TCP Query User{7B393604-A3D7-4A0E-AF80-E7BA9DC64A49}C:\users\user\desktop\dbz\joueur 2\adhocsever.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\adhocsever.exe FirewallRules: [UDP Query User{6BCFCE02-F4A8-41A9-B80E-4FE43FF08C53}C:\users\user\desktop\dbz\joueur 2\adhocsever.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\adhocsever.exe FirewallRules: [TCP Query User{D990C4D9-14A6-4118-86E2-3655AC63AAE9}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe FirewallRules: [UDP Query User{54E77F4F-48E9-47CC-AED3-7C5481DC73C2}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe FirewallRules: [TCP Query User{464A9315-FFD6-4DB5-AA03-A4B8C5ADC24B}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe FirewallRules: [UDP Query User{36BF72BB-4A29-4E47-A501-E58AFFBEFA10}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe FirewallRules: [{C0D81A71-E9E0-4F28-A7DA-52CFA051CECE}] => (Block) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe FirewallRules: [{635C41E4-AA60-4ED8-BCD2-D67DFDF7251B}] => (Block) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows.exe FirewallRules: [{946A84CF-EFD3-4E17-BFCE-C6860A01F6C1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [TCP Query User{EE55CB21-5206-4B2B-8CC8-92517F75B6A5}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{C409A7AD-C094-4E45-AA6C-6ED54ACFD3C4}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [{5F53A787-BB7E-4CE4-8BA0-DF5F18BB19C4}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [{AF038E6F-31E0-4ADF-9530-25814616B01D}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{B3B29889-A128-4096-B03F-7F3E9D36BE4F}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{842B4B2F-B601-44BB-804A-D0E1DC844396}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{9534D8A2-100F-4073-B530-46DABFA39A44}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{EE6F559A-9512-4CD6-95BC-B9B79E364531}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{7ED2F814-566C-4F2D-A8F4-27CCB463956F}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe FirewallRules: [UDP Query User{92C1FE64-EB20-480E-9846-80F62BD09F4F}C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe] => (Allow) C:\users\user\desktop\dbz\joueur 2\ppsspp p2\ppssppwindows64.exe ==================== Points de restauration ========================= Impossible de lister les points de restauration Vérifiez le service "winmgmt" ou réparez WMI. ==================== Éléments en erreur du Gestionnaire de périphériques ============= Impossible de lister les périphériques. Vérifiez le service "winmgmt" ou réparez WMI. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (05/06/2018 11:24:16 PM) (Source: MsiInstaller) (EventID: 11316) (User: AUTORITE NT) Description: Product: Avast Update Helper -- Error 1316. Le compte spécifié existe déjà. Error: (05/06/2018 11:02:26 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Error: (05/06/2018 11:02:26 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Error: (05/06/2018 10:58:55 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Error: (05/06/2018 10:58:55 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Error: (05/06/2018 10:24:10 PM) (Source: MsiInstaller) (EventID: 11316) (User: AUTORITE NT) Description: Product: Avast Update Helper -- Error 1316. Le compte spécifié existe déjà. Error: (05/06/2018 10:18:45 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Error: (05/06/2018 10:18:45 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Windows Defender vers SECURITY_PRODUCT_STATE_ON. Erreurs système: ============= Error: (05/06/2018 11:31:46 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:30:39 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:30:36 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:30:27 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:30:07 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:30:02 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:29:53 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Error: (05/06/2018 11:29:46 PM) (Source: Disk) (EventID: 7) (User: ) Description: Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux. Windows Defender: =================================== Date: 2018-05-06 22:18:43.017 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {CE414E61-A13F-4787-8A46-8D61D54F468D} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2018-05-06 19:31:52.753 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {C807ED26-1D75-4D0B-946D-C2FDDB0D1349} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2018-05-06 17:54:48.689 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {309BC20B-FE36-4F00-B5D3-E7E01851489C} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2018-05-06 13:00:21.569 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {F737B0B0-95BD-42A5-B061-2CCDA4619076} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2018-05-06 02:24:00.642 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=TrojanDownloader:JS/Nemucod!rfn&threatid=2147724012&enterprise=0 Nom : TrojanDownloader:JS/Nemucod!rfn ID : 2147724012 Gravité : Grave Catégorie : Cheval de Troie téléchargeur Chemin : file:_C:\Users\user\AppData\Local\Temp\DMR\Downloads\152e221a8bef8d2d13c58f995563a1a1\15c80ea1e48bddc845d70104cfb36873\OBS_0_659b_With_Browser_Installer.exe;file:_C:\Windows\Temp\_avast_\nsfsp000000A5.tmp Origine de la détection : Ordinateur local Type de détection : Concret Source de détection : Système Utilisateur : AUTORITE NT\Système Nom du processus : C:\Program Files\AVAST Software\Avast\AvastSvc.exe Version de la signature : AV: 1.267.891.0, AS: 1.267.891.0, NIS: 1.267.891.0 Version du moteur : AM: 1.1.14800.3, NIS: 1.1.14800.3 Date: 2018-05-05 22:26:56.846 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : Version précédente de la signature : 1.267.889.0 Source de mise à jour : Serveur Microsoft Update Type de signature : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.14800.3 Code d’erreur : 0x80070643 Description de l’erreur : Erreur irrécupérable lors de l’installation. Date: 2018-05-05 13:58:23.392 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : Version précédente de la signature : 1.267.879.0 Source de mise à jour : Serveur Microsoft Update Type de signature : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.14800.3 Code d’erreur : 0x80240016 Description de l’erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. Date: 2018-05-04 17:04:47.293 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Sur accès Code d’erreur : 0x8007043c Description de l’erreur : Ce service ne peut pas être démarré en mode sans échec Raison : La protection contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème. Date: 2018-05-04 14:31:54.687 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Sur accès Code d’erreur : 0x8007043c Description de l’erreur : Ce service ne peut pas être démarré en mode sans échec Raison : La protection contre les logiciels malveillants a cessé de fonctionner pour une raison inconnue. Dans certains cas, le redémarrage du service peut résoudre le problème. Date: 2018-05-04 13:47:50.215 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Système d’inspection réseau Code d’erreur : 0x8007041d Description de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Raison : Il manque des mises à jour nécessaires à l’exécution du système NIS (Network Inspection System) sur le système. Installez les mises à jour requises et redémarrez l’appareil. CodeIntegrity: =================================== Date: 2018-05-06 23:31:07.499 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 23:31:07.498 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 23:04:44.899 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 23:04:44.897 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 23:00:56.504 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 23:00:56.503 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 22:34:44.617 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-05-06 22:34:44.616 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-4210U CPU @ 1.70GHz Pourcentage de mémoire utilisée: 41% Mémoire physique - RAM - totale: 8084.27 MB Mémoire physique - RAM - disponible: 4702.77 MB Mémoire virtuelle totale: 20084.27 MB Mémoire virtuelle disponible: 16663.58 MB ==================== Lecteurs ================================ Drive c: (Windows8_OS) (Fixed) (Total:890.81 GB) (Free:194.08 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:22.99 GB) NTFS \\?\Volume{d98ec0b4-ff7c-4ff3-b4d1-13c61f51b478}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.67 GB) NTFS \\?\Volume{a1f7668e-acdb-47f7-9089-991a3e308c97}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 \\?\Volume{6d605e65-9061-4e64-afae-19e564e7bfeb}\ (PBR_DRV) (Fixed) (Total:13.37 GB) (Free:3.14 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 20FD2F7B) Partition: GPT. ==================== Fin de Addition.txt ============================