Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 03.06.2018 Exécuté par boss (05-06-2018 16:25:10) Exécuté depuis C:\Users\boss\Desktop Windows 10 Home Version 1709 16299.431 (X64) (2017-12-11 19:13:28) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-113982557-2547831206-2281869915-500 - Administrator - Disabled) boss (S-1-5-21-113982557-2547831206-2281869915-1001 - Administrator - Enabled) => C:\Users\boss DefaultAccount (S-1-5-21-113982557-2547831206-2281869915-503 - Limited - Disabled) Invité (S-1-5-21-113982557-2547831206-2281869915-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-113982557-2547831206-2281869915-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Antivirus (Enabled - Up to date) {3FB17364-4FCC-0FA7-6BBF-973897395371} AS: Bitdefender Antispyware (Enabled - Up to date) {84D09280-69F6-0029-510F-AC4AECBE19CC} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.011.20040 - Adobe Systems Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 29 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 29.0.0.171 - Adobe Systems Incorporated) Advanced Audio FX Engine (HKLM-x32\...\Advanced Audio FX Engine) (Version: 1.12.05 - Creative Technology Ltd) Apple Application Support (32 bits) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{9E005AAA-81A3-478E-8944-532D350952EE}) (Version: 11.3.1.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.) Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.115 - Atheros) BDAntiRansomware (HKLM\...\{BE40AB1F-558F-4434-B72F-461EF97E7796}_is1) (Version: 1.0.11.147 - Bitdefender) Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 20.0.26.1436 - Bitdefender) Bitdefender Antivirus Plus (HKLM\...\Bitdefender) (Version: 22.0.1.1 - Bitdefender) Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 22.0.7.509 - Bitdefender) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{51C7AD07-C3F6-4635-8E8A-231306D810FE}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{ED5776D5-59B4-46B7-AF81-5F2D94D7C640}) (Version: 1.1.6 - Cisco Systems, Inc.) Cisco WebEx Meetings (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\ActiveTouchMeetingClient) (Version: - Cisco WebEx LLC) Complément Microsoft Enregistrer en tant que PDF pour programmes Microsoft Office 2007 (HKLM-x32\...\{90120000-00B0-040C-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Dell DataSafe Local Backup - Support Software (HKLM-x32\...\{A9668246-FB70-4103-A1E3-66C9BC2EFB49}) (Version: 9.4.67 - Dell Inc.) Dell DataSafe Local Backup (HKLM-x32\...\{0ED7EE95-6A97-47AA-AD73-152C08A15B04}) (Version: 9.4.67 - Dell Inc.) Dell Digital Delivery (HKLM-x32\...\{D850CB7E-72BC-4510-BA4F-48932BFAB295}) (Version: 2.9.901.0 - Dell Products, LP) Dell Edoc Viewer (HKLM\...\{8EBA8727-ADC2-477B-9D9A-1A1836BE4E05}) (Version: 1.0.0 - Dell Inc) Dell KM713 Wireless Keyboard LED Indicator (HKLM-x32\...\{AF6CD1CF-11E8-4C9F-9644-1A469A499E50}) (Version: 1.0.1.20111007 - Dell) Dell Support Center (HKLM\...\{0090A87C-3E0E-43D4-AA71-A71B06563A4A}) (Version: 3.1.5907.16 - PC-Doctor, Inc.) Hidden Dell Support Center (HKLM\...\Dell Support Center) (Version: 3.1.5907.16 - Dell Inc.) Dell SupportAssistAgent (HKLM\...\{9DD6B149-CEBC-4910-B11A-242393EDF6D3}) (Version: 2.1.4.14 - Dell) Dell Webcam Central (HKLM-x32\...\Dell Webcam Central) (Version: 2.00.44 - Creative Technology Ltd) Dell WLAN and Bluetooth Client Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Dell Inc.) DELLOSD (HKLM-x32\...\{C36F2D21-38ED-49DB-8923-9A60EDDEF011}) (Version: 1.0.0.10 - DELL) doPDF 7.3 printer (HKLM\...\doPDF 7 printer_is1) (Version: - Softland) Dropbox (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\Dropbox) (Version: 50.4.71 - Dropbox, Inc.) Epic Games Launcher (HKLM-x32\...\{7DB3B70A-1CEE-4744-B272-FA5E79E19C39}) (Version: 1.1.131.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden eSignal (HKLM\...\{60E6CFBC-0F1C-42E5-87D3-B3D6556D1EC8}) (Version: 12.8.4757.946 - Interactive Data) Face Recognition (HKLM\...\{B132D631-AD31-41C1-BC8A-9715104C633F}) (Version: 3.1.70.1 - Sensible Vision) Galerie de photos Windows Live (HKLM-x32\...\{488F0347-C4A7-4374-91A7-30818BEDA710}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 66.0.3359.181 - Google Inc.) Google Earth Pro (HKLM\...\{D9EF644E-2FAE-493B-8180-5617CC774C4F}) (Version: 7.3.1.4507 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden HitmanPro 3.7 (HKLM\...\HitmanPro37) (Version: 3.7.9.241 - SurfRight B.V.) HP ENVY 5640 series Aide (HKLM-x32\...\{C4C1D777-2D19-4114-96F8-DBE0EACA5C80}) (Version: 34.0.0 - Hewlett Packard) HP Support Assistant (HKLM-x32\...\{61EB474B-67A6-47F4-B1B7-386851BAB3D0}) (Version: 8.5.37.19 - Hewlett-Packard Company) HP Support Solutions Framework (HKLM-x32\...\{E4B931AF-C59A-4D92-8767-8E2D5F53144E}) (Version: 12.8.47.1 - Hewlett-Packard Company) HP Touchpoint Analytics Client (HKLM\...\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}) (Version: 4.0.2.1439 - HP Inc.) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HPDiagnosticAlert (HKLM-x32\...\{B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D}) (Version: 1.00.0001 - Microsoft) Hidden iCloud (HKLM\...\{5BD11939-D2C2-4F1B-AAAF-5ECE19A801F7}) (Version: 7.4.0.111 - Apple Inc.) InstallClick Connector (HKLM-x32\...\{2F57C004-1FED-4C30-81FC-EE305D4D0A2E}) (Version: 3.6.0 - RIFT Technologies) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.3.214 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{6199B534-A1B6-46ED-873B-97B0ECF8F81E}) (Version: 1.23.216.0 - Intel Corporation) iTunes (HKLM\...\{283FFCFA-108D-434D-92EA-BD606B37D869}) (Version: 12.7.4.80 - Apple Inc.) Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Logiciel de base du périphérique HP ENVY 5640 series (HKLM\...\{D2A7E7AE-4499-4C94-9FEB-D9F7B5EE97E2}) (Version: 34.0.50.48729 - Hewlett-Packard Co.) Malwarebytes version 3.3.1.2183 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.3.1.2183 - Malwarebytes) Mesh Runtime (HKLM-x32\...\{8C6D6116-B724-4810-8F2D-D047E6B7D68E}) (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft Office « Démarrer en un clic » 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office 365 ProPlus - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.9330.2087 - Microsoft Corporation) Microsoft Office Starter 2010 - Français (HKLM-x32\...\{90140011-0066-040C-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Word Viewer 2003 (HKLM-x32\...\{9085040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\OneDriveSetup.exe) (Version: 18.065.0329.0002 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Module de compatibilité pour Microsoft Office System 2007 (HKLM-x32\...\{90120000-0020-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Mozilla Firefox 60.0.1 (x64 fr) (HKLM\...\Mozilla Firefox 60.0.1 (x64 fr)) (Version: 60.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 60.0.1.6710 - Mozilla) Mozilla Thunderbird 24.1.1 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 24.1.1 (x86 fr)) (Version: 24.1.1 - Mozilla) myCANAL (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\1275132325.player.canalplus.fr) (Version: - player.canalplus.fr) NVIDIA PhysX System Software 9.12.0213 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0213 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.9330.2087 - Microsoft Corporation) Hidden OpenOffice 4.1.1 (HKLM-x32\...\{121727D5-FDF3-4723-BA57-EB383440ED72}) (Version: 4.11.9775 - Apache Software Foundation) Panneau de configuration NVIDIA 369.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 369.09 - NVIDIA Corporation) Hidden PC Tools Registry Mechanic 11.1 (HKLM-x32\...\Registry Mechanic_is1) (Version: 11.1 - PC Tools) PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.2.2 - pdfforge) ProRealTime (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\ProRealTime_is1) (Version: 1.7 - IT-Finance) Quake Live Mozilla Plugin (HKLM-x32\...\{FA66CFD7-0977-4C45-AACD-A8BB994B1A05}) (Version: 1.0.520 - id Software) Qwant (HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\qwant-54e666b94e8395e9d3de71de19a901f6) (Version: 0.1.2 - ) Rapport (HKLM-x32\...\{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}) (Version: 3.5.1908.152 - Trusteer) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7544 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Skype™ 7.23 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.23.105 - Skype Technologies S.A.) TI-Nspire(TM) Computer Link (HKLM-x32\...\{C0B7C804-B89F-47F7-91CC-21ACDC7D7AAC}) (Version: 3.2.0.123 - Texas Instruments Inc.) TomTom HOME (HKLM-x32\...\{5DCB2EB3-87AD-426E-8D74-8B92C9D731C4}) (Version: 2.9.8 - Nom de votre société) TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.) Trusteer Sécurité des points d'accès (HKLM-x32\...\Rapport_msi) (Version: 3.5.1908.152 - Trusteer) Vimeo Video Downloader 3.25 (HKLM-x32\...\Vimeo Video Downloader_is1) (Version: - DownloadToolz, Inc.) Visionneuse Microsoft PowerPoint (HKLM-x32\...\{95140000-00AF-040C-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) Windows Driver Package - CASIO (CCUSBMIDI) MEDIA (02/24/2012 1.00.00.0004) (HKLM\...\74347E8ACBB0CD4B3A12C89F2E2FAA6CEFBE40CA) (Version: 02/24/2012 1.00.00.0004 - CASIO) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.) WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ZebHelpProcess 2015 (HKLM-x32\...\ZebHelpProcess_is1) (Version: 2015 - Nicolas Coolman) ZHPDiag 2015 (HKLM-x32\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) بريد Windows Live (HKLM-x32\...\{0A4C4B29-5A9D-4910-A13C-B920D5758744}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) معرض صور Windows Live (HKLM-x32\...\{FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-113982557-2547831206-2281869915-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2018-03-18] (Apple Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2016-08-01] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-11-01] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers1_S-1-5-21-113982557-2547831206-2281869915-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ContextMenuHandlers4_S-1-5-21-113982557-2547831206-2281869915-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ContextMenuHandlers5_S-1-5-21-113982557-2547831206-2281869915-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\boss\AppData\Roaming\Dropbox\bin\DropboxExt64.22.0.dll [2018-05-21] (Dropbox, Inc.) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {01A5F8A7-76C7-4EAC-A27A-E809DF880ED2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {04ACFFB6-810F-4359-91F8-DEDB34F7EF1E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {0B221E8E-FF0D-4DB4-AFF5-8BA2DEA3E129} - System32\Tasks\{73E1924C-5F71-4B9A-80E5-6DCE9F5E547B} => C:\Windows\system32\pcalua.exe -a C:\Users\boss\Desktop\ZHPDiag2-2015.5.17.49.exe -d C:\Users\boss\Desktop Task: {0EC99F24-4B62-471A-B44F-F85DDA556E72} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-05-30] (Microsoft Corporation) Task: {10352F5B-7A06-423A-992F-F65C6E324556} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Pas de fichier <==== ATTENTION Task: {1585052A-6972-4836-A5D7-F9183ACF1EF4} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Pas de fichier <==== ATTENTION Task: {15FE09A2-4FE8-44FE-A6C9-69D00226514F} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_29_0_0_171_Plugin.exe [2018-05-09] (Adobe Systems Incorporated) Task: {18D20559-FC46-4121-B7EB-CF25143E0DC7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {1A1C5CA7-36F7-4BD9-848A-E548C2CF4398} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Pas de fichier <==== ATTENTION Task: {1A955CD1-423D-41EB-9CE2-A7897A0ECF67} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2017-11-21] () Task: {1EE96564-5D26-4EAF-8B97-09904B3A1961} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {25D9C75E-5407-41D1-AB0D-E77CF131168B} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {25EE26DD-0872-43E4-B5CE-8A54B260EC64} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {26A5E551-6E87-415B-A5BB-8C5FA11BCA4D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2933EF97-8704-4968-864E-C879CF8A4152} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2018-05-11] (HP Inc.) Task: {2DD3DF0B-0211-46E3-BA2E-343B2785A584} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> Pas de fichier <==== ATTENTION Task: {2F189D6D-349D-4751-9D3D-FA8EAEA10B00} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Pas de fichier <==== ATTENTION Task: {30AEFC67-F451-41D0-9107-9E3C062295CE} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {373CBB2E-5329-4A75-B52C-216C54AD388F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Pas de fichier <==== ATTENTION Task: {3C5F4D68-3A2F-41E7-A4E8-A97C253CD5A9} - System32\Tasks\{DB2552AA-23BE-44C2-AF64-EF6D4CC15018} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.10.0.104/fr/abandoninstall?page=tsBing Task: {3C6CA21F-E8F8-4AEA-966F-15CF9E6DF10A} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {3D1B8B0E-6642-4134-B72D-F76D88BE4544} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {3F832363-BFEE-4D18-BDBF-A76767EBD4FD} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Pas de fichier <==== ATTENTION Task: {49341FB4-35DE-4989-84A1-B20923AFF6EC} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-05-30] (Microsoft Corporation) Task: {4CE4033A-BEB9-45F8-9ACE-085A50C2E917} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {52A118CE-4DC9-4495-A337-69D82CF1CE23} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-24] (Microsoft Corporation) Task: {56518DB4-70EA-460C-9CF8-6976E093BDD4} - System32\Tasks\RMAutoUpdate => C:\Program Files (x86)\PC Tools\PC Tools Registry Mechanic\SULauncher.exe [2012-08-21] (PC Tools) Task: {5B86FBDD-3F04-4F61-9B0B-D9ED1DE43896} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\WatchDog.exe [2017-04-11] (Bitdefender) Task: {61F655F8-95BD-4DB3-8ED4-1E46AFDA3A7B} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {629DF78C-E9FB-4E23-BCDE-4D87F4412D89} - System32\Tasks\{99DF0ED2-3B98-4377-B8D5-6F83A5BA63ED} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\ZHPFix\ZHPhep.exe" -d "C:\Program Files (x86)\ZHPFix" Task: {62CD5F12-2156-440D-BE8B-E128153E58A2} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {67E08063-7BBA-4BB0-9DCC-7F5F034CCFFE} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {6F24B32B-2E2D-495C-8A1D-FD20E0DE2F61} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {702CCCD8-1ADB-413D-9E41-17E7DE9EC222} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Pas de fichier <==== ATTENTION Task: {76D3AD45-C9F2-4D73-89E4-166FA02414E9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-02-09] (Adobe Systems Incorporated) Task: {7A14CA65-B2A2-4788-B4F3-D25BEFE56933} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {7E8CA57A-1380-4681-A3EB-692E660E9324} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-113982557-2547831206-2281869915-1001Core1d237623709ec5c => C:\Users\boss\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {7F554EE6-F3A3-44BB-8C12-C6D7012F1FEE} - System32\Tasks\HP AR Program Upload - 57d7e64d5d1349fd8c1eaf0bb4b581dd3e524512a3164a018ce0a89f5c6e9ba1 => C:\Program Files\HP\HP ENVY 5640 series\bin\HPRewards.exe [2014-04-24] (Hewlett-Packard Co.) Task: {88E4D908-E50D-4DEE-A889-95B5954E33D0} - System32\Tasks\HP AR Program Upload - bca0fac0e25148a2b102261a6c2c09fd152f270bd7654d5c9eea528b96db6840 => C:\Program Files\HP\HP ENVY 5640 series\bin\HPRewards.exe [2014-04-24] (Hewlett-Packard Co.) Task: {8B3454B0-E5CB-4BEA-9D5F-DC36E6E6A619} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8CC764A0-B47D-4174-9FED-261CA4736C55} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {90619CE7-CEA3-4F45-84A2-9F828138937D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-05-30] (Microsoft Corporation) Task: {986343A3-C969-4247-8061-192F23FE60C0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-05-09] (Adobe Systems Incorporated) Task: {98E1A64A-2FCC-4018-9AE0-49DEA7AB4E6E} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-05-30] (Microsoft Corporation) Task: {99E850F7-FE5B-4925-AA0B-070EB039BAF1} - System32\Tasks\HP AR Program Upload - d1996afbfc784d18be893f46eee0d213175c3e87038043d6a4e538dc92335bb3 => C:\Program Files\HP\HP ENVY 5640 series\bin\HPRewards.exe [2014-04-24] (Hewlett-Packard Co.) Task: {9DEA2372-2283-4BD2-BE2A-C52A7373C1A0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2018-05-02] (HP Inc.) Task: {A45031B4-CE64-45E6-A290-E46EE19ED9FE} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {ACE77A54-2D4F-414C-BDF1-84D59A0D8ECA} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-05-30] (Microsoft Corporation) Task: {AE6AC6BA-4F85-42A7-9809-F61351898B4A} - System32\Tasks\HPCeeScheduleForboss => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2015-06-16] (Hewlett-Packard) Task: {AF282A6C-CB5E-4AD3-81E6-373F6851E969} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-113982557-2547831206-2281869915-1001UA1d2376237448f83 => C:\Users\boss\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2016-11-05] (Dropbox, Inc.) Task: {B80B82BB-EF32-41FC-82B7-78EA124485F8} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {B8541BDC-C229-498C-9F4F-02E7897007D0} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BAEE117B-20B4-49EA-94A2-D757CE74E18B} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C3B7714F-0C71-440A-9DB0-79317166DFF9} - System32\Tasks\AdwCleaner_onReboot => C:\Users\boss\Desktop\adwcleaner_7.1.1.exe Task: {C6802D81-DC66-4D9D-9988-2F6BF89633EB} - System32\Tasks\Bitdefender AgentTask_AD394AE64E874073B10A89FEEC305A3C => C:\Program Files\Bitdefender\Bitdefender 2017\bdagent.exe [2018-04-17] (Bitdefender) Task: {C7D52B94-3154-4552-ADFF-1B402ED13AE1} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Pas de fichier <==== ATTENTION Task: {C8D1A8A8-F78E-4CA5-AA4E-8A921F35A148} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\WINDOWS\system32\Notifier.exe [2018-05-04] (Microsoft Corporation) Task: {CA209243-FFD3-4C33-8101-CF53D720C344} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D258685E-3053-4F1F-8539-82982A5D5C43} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2018-01-08] (Apple Inc.) Task: {D33852CA-C423-4FD3-AC01-697759769829} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D8C053B2-38E2-4C7D-B8FA-7397FBA9CD37} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-24] (Microsoft Corporation) Task: {D9160329-C973-4DF4-B135-99A2CE12FC58} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Pas de fichier <==== ATTENTION Task: {D9DE421F-BE9D-4A1F-9CE9-A4873E9C4EA5} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-05-30] (Microsoft Corporation) Task: {E05CA586-9C2A-446C-95E4-DCB1768D58D6} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Pas de fichier <==== ATTENTION Task: {E6475CCE-C0EB-4258-B66F-1D557EEE46DA} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Pas de fichier <==== ATTENTION Task: {E6A34C62-E7FC-4E9D-BF7A-FEC50A4D4DD6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {E7CE2F71-A981-4344-A9D2-3CF6FE79E734} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {ECB6050B-1EED-402B-8686-244B9ACDCB1D} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EF62269D-A795-4E81-B886-6C8C9588251C} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {EF8880E9-B921-4D43-AFFB-FEF90C7F0620} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssist.exe [2018-02-14] (Dell Inc.) Task: {F365DE6C-571F-4B97-B178-88BE6EF6442A} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {F48F3EEA-33E4-4AE1-9640-ADD60742B079} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-31] (Google Inc.) Task: {F96904AF-C7DE-45E6-9A22-0E9A05F9FE3D} - \CCleanerSkipUAC -> Pas de fichier <==== ATTENTION (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-113982557-2547831206-2281869915-1001Core1d237623709ec5c.job => C:\Users\boss\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-113982557-2547831206-2281869915-1001UA1d2376237448f83.job => C:\Users\boss\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForboss.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\RMAutoUpdate.job => C:\Program Files (x86)\PC Tools\PC Tools Registry Mechanic\SULauncher.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\boss\Desktop\raccourci\HPD13E1C (HP ENVY 5640 series) - Raccourci.lnk -> hxxp://192.168.0.2 ==================== Modules chargés (Avec liste blanche) ============== 2011-08-19 18:34 - 2011-08-19 18:34 - 000095216 _____ () C:\WINDOWS\system32\FAIEExtension.DLL 2018-05-08 19:27 - 2018-05-08 19:27 - 000992704 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_02551_002\ashttpbr.mdl 2018-05-08 19:27 - 2018-05-08 19:27 - 000543344 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_02551_002\ashttpdsp.mdl 2018-05-08 19:27 - 2018-05-08 19:27 - 003228632 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_02551_002\ashttpph.mdl 2018-05-08 19:27 - 2018-05-08 19:27 - 001527808 _____ () C:\Program Files\Bitdefender\Bitdefender 2017\otengines_02551_002\ashttprbl.mdl 2017-11-30 19:54 - 2017-11-30 19:54 - 000088888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2018-03-16 15:19 - 2018-03-16 15:19 - 001356088 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2012-06-15 05:51 - 2012-04-03 01:24 - 000118784 _____ () C:\Program Files (x86)\DELL\DELLOSD\DellOSDService.exe 2012-06-06 14:17 - 2012-06-06 14:17 - 000149872 _____ () C:\Program Files (x86)\RIFT Technologies\InstallClick Connector\installclick.exe 2017-09-29 15:41 - 2017-09-29 15:41 - 000184432 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-03-14 10:43 - 2018-02-22 02:26 - 011044864 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll 2018-03-14 10:43 - 2018-02-22 02:21 - 001804288 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-05-22 08:44 - 2018-05-22 08:45 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2018-05-22 08:44 - 2018-05-22 08:45 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2018-05-22 08:44 - 2018-05-22 08:45 - 022374400 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2018-05-22 08:44 - 2018-05-22 08:45 - 002610176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\skypert.dll 2018-05-22 08:44 - 2018-05-22 08:44 - 000654848 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2012-06-06 14:17 - 2012-06-06 14:17 - 000769392 _____ () C:\Program Files (x86)\RIFT Technologies\InstallClick Connector\installclick-connector.exe 2017-12-09 12:51 - 2017-11-29 10:11 - 002301384 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2015-04-24 09:53 - 2016-04-07 17:26 - 001843712 _____ () C:\Users\boss\AppData\Roaming\ZHP\ZHPCleaner.exe 2017-08-17 16:14 - 2016-08-01 14:54 - 000133056 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2012-06-15 05:46 - 2011-12-16 20:39 - 001198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2018-03-16 15:20 - 2018-03-16 15:20 - 001042232 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2018-03-16 15:19 - 2018-03-16 15:19 - 000189752 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll 2017-11-30 19:55 - 2017-11-30 19:55 - 000076088 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2015-06-02 14:51 - 2015-06-02 14:51 - 000545792 _____ () C:\Program Files (x86)\Trusteer\Rapport\bin\js32.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:D1B5B4F1 [157] AlternateDataStreams: C:\Users\boss\Desktop\lux:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Public\AppData:CSM [226] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\sharepoint.com -> hxxps://univpsl-files.sharepoint.com ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-11-02 19:04 - 2018-06-05 15:29 - 000000000 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-113982557-2547831206-2281869915-1001\Control Panel\Desktop\\Wallpaper -> DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == MSCONFIG\startupfolder: C:^Users^boss^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OpenOffice.org 3.4.1.lnk => C:\Windows\pss\OpenOffice.org 3.4.1.lnkStartup MSCONFIG\startupreg: Dell Webcam Central => "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2 MSCONFIG\startupreg: HP ENVY 5640 series (NET) => "C:\Program Files\HP\HP ENVY 5640 series\Bin\ScanToPCActivationApp.exe" -deviceID "TH4AK6213005ZC:NW" -scfn "HP ENVY 5640 series (NET)" -AutoStart 1 MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: LogMeIn Hamachi Ui => MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\StartupApproved\Run: => "Dropbox Update" HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\StartupApproved\Run: => "iCloudServices" HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\StartupApproved\Run: => "iCloudDrive" HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-113982557-2547831206-2281869915-1001\...\StartupApproved\Run: => "TomTomHOME.exe" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{38126CCF-A6EC-496C-98D2-D0B4C159D8AF}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe FirewallRules: [{C000FB15-3B53-407E-9165-BA9F5D379268}] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{503C7CA9-AAFB-41E8-B68E-4EFBEBB7E344}] => (Block) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{CC15B6DF-B05A-4F63-86F1-08651C6DE432}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{1F60A6AB-1260-431D-AC1E-4AB28FC26850}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [{E3E02D54-3991-4E2C-BCE1-0DACB094DB2E}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{7A4A9602-A417-4E5C-9A0A-99823DE9143D}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{F808EC92-80F9-460D-BA37-F5852073B422}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{517389C4-7264-4E35-B630-70592678A816}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{AD05394A-7C2B-478F-8428-5CC966A4E0AD}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [{196AD8D7-D979-4613-810B-6B58BD11DD21}] => (Block) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{714452F5-ED79-4B71-B830-C222BE1BA009}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{AEA5AAD1-424B-449A-9B4A-8C025568C388}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{6359F615-C444-4700-AB1C-424311C8F8A0}C:\program files\interactive data\esignal\esignal.exe] => (Block) C:\program files\interactive data\esignal\esignal.exe FirewallRules: [TCP Query User{A1BC59F6-DFB0-4705-904D-08770324B3CF}C:\program files\interactive data\esignal\esignal.exe] => (Block) C:\program files\interactive data\esignal\esignal.exe FirewallRules: [UDP Query User{A963F5F0-ABAF-49D7-B4AC-20B65D1D2CAF}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [TCP Query User{684CBE2F-09D9-4BBF-B43D-CDCA936764BF}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{E81157ED-888C-498E-859F-817840673190}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{23A63280-13FA-430A-85D6-075B624E65A1}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{0A1044A4-A2BF-418B-B845-541936492236}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{5004E963-49ED-43A3-8AE4-F12A3B514942}] => (Allow) %systemroot%\system32\alg.exe FirewallRules: [{7B217FDB-25A2-453B-9AD0-5FBB1C875571}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{9A28DFB8-316C-44A7-BE89-5942AAF62F23}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{DF6842A5-A2D7-427D-A3C7-1DD088EA1188}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{157CF452-E46F-4F39-9960-D2F50C21EC15}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{56864B36-A063-42F3-9BFA-7EADECF0F98F}] => (Allow) C:\Users\boss\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [{93FBB9F0-CA8B-4A58-8F9D-F89039488718}] => (Allow) C:\Users\boss\AppData\Roaming\McAfee\Supportability\MVTLogs\ProductDetection64.exe FirewallRules: [UDP Query User{5C82279C-BEC5-4299-8801-DDB07E013154}C:\users\boss\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\boss\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{D8D67179-CAB5-4929-9909-B0F3D7C70273}C:\users\boss\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\boss\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{4E70F251-AFB8-45F8-831D-7CF9B0E2953E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F166335B-3630-4805-8ECA-03B81AF70E22}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [UDP Query User{37F18172-D55D-4D7D-8515-7850F49B111B}C:\program files (x86)\common files\interactive data\dm\winros.exe] => (Allow) C:\program files (x86)\common files\interactive data\dm\winros.exe FirewallRules: [TCP Query User{A67D2802-EF16-4C7F-97E8-EB9511F202DB}C:\program files (x86)\common files\interactive data\dm\winros.exe] => (Allow) C:\program files (x86)\common files\interactive data\dm\winros.exe FirewallRules: [{D513B33C-FB6A-4028-9C56-3E0C8D4EBF2F}] => (Allow) C:\Users\boss\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{C77AECE2-4A00-496B-A018-2F10C68EADC1}] => (Allow) C:\Users\boss\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [UDP Query User{08F4A8A1-CD54-4D4C-85E9-BE34AF2AAAFD}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [TCP Query User{B348BF49-71D8-4D54-82DA-750F93486485}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{55870BB2-30CA-468F-BAF7-7754A297D4D5}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{29854999-8AB3-4556-805F-9A058B319E1C}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{BEBC923C-F7C5-45A3-B489-D0A9B9E439A7}] => (Allow) LPort=1900 FirewallRules: [{9A99C450-D9E3-4447-949B-4635B7BF863A}] => (Allow) LPort=2869 FirewallRules: [{D98ACC31-9DC3-44CA-9B8B-00B529923CF9}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{ACB4C06D-20D8-4166-97F7-99CA2F3DBADE}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{6D6D56C7-3517-4639-9A5B-4E13B9F5AEDB}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{87CA2150-D3B3-4C4F-B1EE-CB98D628CDC5}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{045F745C-96CE-47F9-9F4C-320EEF5FC139}] => (Allow) C:\Program Files\HP\HP ENVY 5640 series\Bin\DeviceSetup.exe FirewallRules: [{A9066D85-BF71-468B-BC17-EDAF885BF87A}] => (Allow) LPort=5357 FirewallRules: [{AE2A0E82-0474-4324-85FF-CBBF6186D12B}] => (Allow) C:\Program Files\HP\HP ENVY 5640 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{C32AFEA6-6EEF-4856-B875-7493486A8038}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{C13CBEEE-250D-44FF-A96F-C13C29403587}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{B69E351F-0F8C-4776-8E57-985CAE2B0617}C:\program files (x86)\ti education\ti-nspire computer link\ti-nspire computer link.exe] => (Allow) C:\program files (x86)\ti education\ti-nspire computer link\ti-nspire computer link.exe FirewallRules: [UDP Query User{A097F4FD-F431-4C7E-A528-5B524B2B602F}C:\program files (x86)\ti education\ti-nspire computer link\ti-nspire computer link.exe] => (Allow) C:\program files (x86)\ti education\ti-nspire computer link\ti-nspire computer link.exe FirewallRules: [TCP Query User{50F55460-87BA-41C9-91A2-9B7A5AD06776}C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe] => (Allow) C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe FirewallRules: [UDP Query User{8C2532AE-FE48-48BE-8B64-B2404D1A7510}C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe] => (Allow) C:\program files (x86)\common files\ti shared\jre\3.2.0\bin\java.exe FirewallRules: [TCP Query User{3B1C4597-37B3-4300-A506-801E3A69E4B1}C:\program files\interactive data\esignal\esignal.exe] => (Block) C:\program files\interactive data\esignal\esignal.exe FirewallRules: [UDP Query User{C97D3D98-64D0-4E15-9BBB-7C059124E385}C:\program files\interactive data\esignal\esignal.exe] => (Block) C:\program files\interactive data\esignal\esignal.exe FirewallRules: [{9283C559-5E09-4ED0-96A3-64D49AE3C813}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{5F1CE884-9EBA-4C27-9130-71424AC79C7F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{2942C7D9-D0DF-4313-88A5-C4FDDA00F3B4}C:\users\boss\appdata\local\it-finance\prorealtime\runtime\bin\java.exe] => (Allow) C:\users\boss\appdata\local\it-finance\prorealtime\runtime\bin\java.exe FirewallRules: [UDP Query User{49B85E0A-6E48-4E94-9DBE-08AC1D43F6B3}C:\users\boss\appdata\local\it-finance\prorealtime\runtime\bin\java.exe] => (Allow) C:\users\boss\appdata\local\it-finance\prorealtime\runtime\bin\java.exe FirewallRules: [{319F5F7C-1EAC-4C7C-81C3-F62B29FBAC4F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{FF41E2EF-7EA3-4654-846A-A50343D29513}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{1F4DDC5B-B0F4-40FE-9F21-BBE455CD239F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{5CDD01F1-A5D1-44B3-84C0-032DA6F9698A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [{10911337-B2D4-451C-A7AC-6D227F0ADBF1}] => (Allow) C:\Users\boss\AppData\Local\Temp\7zS77C5\HPDiagnosticCoreUI.exe FirewallRules: [{B659657E-B041-41B6-A23C-84EC8D39AC9A}] => (Allow) C:\Users\boss\AppData\Local\Temp\7zS77C5\HPDiagnosticCoreUI.exe FirewallRules: [{2D085930-ABE4-46FC-9BC8-AEF87DA8EFF1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 18-05-2018 09:57:12 Windows Update 28-05-2018 18:33:43 Point de contrôle planifié 05-06-2018 11:47:37 Windows Update 05-06-2018 15:18:34 detox ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (06/05/2018 02:18:44 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante CHXSmartScreen.exe, version : 10.0.16299.15, horodatage : 0x59cdaa2a Nom du module défaillant : edgehtml.dll, version : 11.0.16299.431, horodatage : 0x5c8e39c5 Code d’exception : 0x80070005 Décalage d’erreur : 0x000000000052c1d9 ID du processus défaillant : 0x5304 Heure de début de l’application défaillante : 0x01d3fcc749215395 Chemin d’accès de l’application défaillante : C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\edgehtml.dll ID de rapport : 26b5acd0-9c30-41cd-b645-6554375d9b6f Nom complet du package défaillant : Microsoft.Windows.Apprep.ChxApp_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy ID de l’application relative au package défaillant : App Error: (06/05/2018 12:18:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante osfinstaller.exe, version : 16.0.9330.2087, horodatage : 0x5b049e6c Nom du module défaillant : Mso20Win32Client.dll, version : 16.0.9330.2073, horodatage : 0x5aff7102 Code d’exception : 0x01483052 Décalage d’erreur : 0x0016a930 ID du processus défaillant : 0x6300 Heure de début de l’application défaillante : 0x01d3fcb3f7b6b489 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\Mso20Win32Client.dll ID de rapport : 0f075fbf-1286-4950-8c0d-b62a92666354 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (06/05/2018 11:07:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbamservice.exe, version : 3.1.0.595, horodatage : 0x59f745cb Nom du module défaillant : mbamservice.exe, version : 3.1.0.595, horodatage : 0x59f745cb Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000001c6e66 ID du processus défaillant : 0x6598 Heure de début de l’application défaillante : 0x01d3fcac939e430d Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe ID de rapport : f4f972ae-a932-4cb3-9b47-e3a4489c8d8f Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (06/05/2018 10:49:36 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (06/05/2018 10:42:23 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (06/05/2018 10:30:03 AM) (Source: SupportAssistAgent) (EventID: 0) (User: ) Description: An exception occurred in session change of service start: La référence d'objet n'est pas définie à une instance d'un objet. Error: (06/04/2018 08:05:35 PM) (Source: SupportAssistAgent) (EventID: 0) (User: ) Description: An exception occurred in session change of service start: La référence d'objet n'est pas définie à une instance d'un objet. Error: (06/04/2018 08:05:25 PM) (Source: SupportAssistAgent) (EventID: 0) (User: ) Description: An exception occurred in session change of service start: La référence d'objet n'est pas définie à une instance d'un objet. Erreurs système: ============= Error: (06/05/2018 04:26:22 PM) (Source: DCOM) (EventID: 10010) (User: BOSS-PC) Description: Le serveur Microsoft.Windows.Photos_2018.18041.15210.0_x64__8wekyb3d8bbwe!App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (06/05/2018 02:58:08 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Rapport Management Service s’est terminé de façon inattendue pour la 1ème fois. Error: (06/05/2018 02:46:40 PM) (Source: DCOM) (EventID: 10010) (User: BOSS-PC) Description: Le serveur Microsoft.Windows.Photos_2018.18041.15210.0_x64__8wekyb3d8bbwe!App.AppXy9rh3t8m2jfpvhhxp6y2ksgeq77vymbq.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (06/05/2018 02:18:28 PM) (Source: DCOM) (EventID: 10001) (User: BOSS-PC) Description: Impossible de démarrer un serveur DCOM : {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} en tant que Non disponible/Non disponible. L’erreur « 5 » s’est produite lors du démarrage de la commande : C:\Windows\System32\RuntimeBroker.exe -Embedding Error: (06/05/2018 12:24:37 PM) (Source: DCOM) (EventID: 10001) (User: BOSS-PC) Description: Impossible de démarrer un serveur DCOM : {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} en tant que Non disponible/Non disponible. L’erreur « 5 » s’est produite lors du démarrage de la commande : C:\Windows\System32\RuntimeBroker.exe -Embedding Error: (06/05/2018 10:30:39 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (06/05/2018 10:30:39 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (06/05/2018 10:30:38 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. CodeIntegrity: =================================== Date: 2018-06-05 16:14:51.781 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 16:14:51.778 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 16:01:23.781 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 16:01:23.778 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 15:31:17.943 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 15:31:17.941 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 15:31:17.271 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2018-06-05 15:31:17.269 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-3450S CPU @ 2.80GHz Pourcentage de mémoire utilisée: 82% Mémoire physique - RAM - totale: 3991.8 MB Mémoire physique - RAM - disponible: 713.54 MB Mémoire virtuelle totale: 13665.06 MB Mémoire virtuelle disponible: 7309.59 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:919.22 GB) (Free:754.38 GB) NTFS \\?\Volume{399b4c44-b6aa-11e1-9d1a-806e6f6e6963}\ (RECOVERY) (Fixed) (Total:12.25 GB) (Free:2.92 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 931.5 GB) (Disk ID: D9EFFA8B) Partition 1: (Not Active) - (Size=39 MB) - (Type=DE) Partition 2: (Active) - (Size=12.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=919.2 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================