Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 01.09.2018 03 Exécuté par plous (08-09-2018 09:39:24) Exécuté depuis C:\Users\plous\Downloads Windows 10 Home Version 1803 17134.228 (X64) (2018-05-18 00:13:02) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1352535287-3790336422-502607612-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1352535287-3790336422-502607612-503 - Limited - Disabled) Invité (S-1-5-21-1352535287-3790336422-502607612-501 - Limited - Disabled) plous (S-1-5-21-1352535287-3790336422-502607612-1001 - Administrator - Enabled) => C:\Users\plous WDAGUtilityAccount (S-1-5-21-1352535287-3790336422-502607612-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 18.011.20058 - Adobe Systems Incorporated) Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Shockwave Player 12.3 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.3.4.204 - Adobe Systems, Inc.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 9.0.000.8 - Advanced Micro Devices, Inc.) Avast Cleanup Premium (HKLM-x32\...\{075CC190-59EE-499F-828B-0B5C098C8C15}_is1) (Version: 18.1.5273 - AVAST Software) Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 18.6.2349 - AVAST Software) Bejeweled 3 (HKLM-x32\...\WTA-88f326f1-f9fd-4189-b74e-1ae81156defe) (Version: 2.2.0.95 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Build-a-lot (HKLM-x32\...\WTA-233520e9-429a-4dbb-8db5-7b63a1482a79) (Version: 3.0.2.59 - WildTangent) Hidden Building the Great Wall of China Collector's Edition (HKLM-x32\...\WTA-2992d8df-e98c-4100-8a91-525621aa24ef) (Version: 3.0.2.48 - WildTangent) Hidden Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Crazy Chicken Soccer (HKLM-x32\...\WTA-169f4016-a78f-4144-8422-1e9c600cef91) (Version: 2.2.0.110 - WildTangent) Hidden CyberLink Power Media Player 14 (HKLM-x32\...\{32C8E300-BDB4-4398-92C2-E9B7D8A233DB}) (Version: 14.0.3.6129 - CyberLink Corp.) CyberLink PowerDirector 12 (HKLM\...\{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.6.4925 - Nom de votre société) Hidden CyberLink PowerDirector 12 (HKLM-x32\...\InstallShield_{E1646825-D391-42A0-93AA-27FA810DA093}) (Version: 12.0.6.4925 - CyberLink Corp.) Delicious: Emily's Wonder Wedding Premium Edition (HKLM-x32\...\WTA-778c5f72-d10c-43a4-a4db-1867ed35297c) (Version: 3.0.2.59 - WildTangent) Hidden DisableMSDefender (HKLM\...\{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}) (Version: 1.0.0 - Hewlett-Packard Company) Hidden Dropbox 25 GB (HKLM-x32\...\{0867A88D-764F-366E-9E21-130DA8B472C3}) (Version: 3.1.18.0 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.75.1 - Dropbox, Inc.) Hidden Energy Star (HKLM\...\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}) (Version: 1.1.1 - HP Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 68.0.3440.106 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.) HP ePrint SW (HKLM-x32\...\{88970959-baf7-4864-a39a-69a58e8ae5cf}) (Version: 5.0.18701 - HP) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.8318.5320 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{78E2C850-ADA6-420D-BA35-2F4A9BE733CC}) (Version: 8.5.37.19 - HP) HP Support Solutions Framework (HKLM-x32\...\{C255181E-049B-4B54-A39C-61A94E32C374}) (Version: 12.8.47.1 - HP) HP System Event Utility (HKLM-x32\...\{09D0DB68-90EA-4015-983E-A0BD777D5A02}) (Version: 1.4.10 - HP Inc.) HP Welcome (HKLM\...\HPWelcome) (Version: 1.0 - HP Inc.) Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10605.221 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4364 - Intel Corporation) Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Jeux WildTangent (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.1.0.28 - WildTangent) Jewel Match 3 (HKLM-x32\...\WTA-4e48b296-db44-4e14-94c1-b6b4df6e8b2e) (Version: 2.2.0.97 - WildTangent) Hidden Little Boy: Walter's Scooter (HKLM-x32\...\WTA-a0375186-1dce-471a-b6d7-5779ef3d6ee2) (Version: 3.0.2.59 - WildTangent) Hidden Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Malwarebytes version 3.5.1.2522 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.5.1.2522 - Malwarebytes) Microsoft Office 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.10325.20082 - Microsoft Corporation) Microsoft Office 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.10325.20082 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1352535287-3790336422-502607612-1001\...\OneDriveSetup.exe) (Version: 18.131.0701.0007 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation) Mozilla Firefox 62.0 (x64 fr) (HKLM\...\Mozilla Firefox 62.0 (x64 fr)) (Version: 62.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 56.0.2 - Mozilla) OEM Application Profile (HKLM-x32\...\{B4B7FD8F-06FC-E277-4F29-8F75F8281D8F}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.10325.20082 - Microsoft Corporation) Hidden PhoneRescue for Android (HKLM-x32\...\PhoneRescue for Android) (Version: 3.6.0.0 - iMobie Inc.) Playground (HKLM-x32\...\{E06FC099-35B9-44D0-8B6E-F2612971052A}) (Version: 2.5.582 - Playground Sessions) Polar Bowler 1st Frame (HKLM-x32\...\WTA-bf19cf6b-354b-4152-9740-3792e676691d) (Version: 3.0.2.59 - WildTangent) Hidden PuppetShow: Return to Joyville (HKLM-x32\...\WTA-31e33348-8760-4041-bcaf-e08af56edc51) (Version: 3.0.2.126 - WildTangent) Hidden PX Profile Update (HKLM-x32\...\{3E213129-0089-388B-0CB7-DA55852F2184}) (Version: 1.00.1. - AMD) Hidden Ranch Rush 2 - Premium Edition (HKLM-x32\...\WTA-45076732-3cd5-47bb-8b31-15502b78342a) (Version: 2.2.0.97 - WildTangent) Hidden REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.48 - REALTEK Semiconductor Corp.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.7.107.2016 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7993 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.64 - REALTEK Semiconductor Corp.) Regency Solitaire (HKLM-x32\...\WTA-408defd1-442d-40b4-ae53-572c5d6cebce) (Version: 3.0.2.126 - WildTangent) Hidden Runefall (HKLM-x32\...\WTA-652c4f35-efe1-462a-bb4a-de05c3065a7b) (Version: 3.0.2.126 - WildTangent) Hidden swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated) Tasty Blue (HKLM-x32\...\WTA-95d1a47e-c92d-4623-8954-6a9b8fd56656) (Version: 3.0.2.59 - WildTangent) Hidden Trinklit Supreme (HKLM-x32\...\WTA-4583dfbe-dc7e-43dc-a9cd-e5fe8bd52d90) (Version: 2.2.0.98 - WildTangent) Hidden UltraStar Deluxe (HKLM-x32\...\UltraStar Deluxe) (Version: 1.3.5 Beta - USDX Team) UltraStar Deluxe WorldParty (HKLM-x32\...\UltraStar Deluxe WorldParty) (Version: WorldParty - USDX Team & zup3r_vock) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{EC5A6438-850E-4AD1-9169-DD071C8EFFEF}) (Version: 2.10.0.0 - Microsoft Corporation) Update Installer for WildTangent Games App (HKLM-x32\...\{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App) (Version: - WildTangent) Hidden Vacation Quest™ - Australia (HKLM-x32\...\WTA-eb20a182-7cb2-4121-90a7-8432e65e297d) (Version: 3.0.2.59 - WildTangent) Hidden Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden WildTangent Games App pour HP (HKLM-x32\...\{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp) (Version: 4.1.1.2 - WildTangent) Hidden Youda Jewel Shop (HKLM-x32\...\WTA-abf61bd3-c560-4c07-856f-a9c2398a00d6) (Version: 3.0.2.51 - WildTangent) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-08-17] (AVAST Software) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-08-17] (AVAST Software) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-08-17] (AVAST Software) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-03-09] (Intel Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-08-17] (AVAST Software) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-05-09] (Malwarebytes) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0BAEED6F-4B25-45D4-AFCF-A177D658AB5B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [2017-06-22] (HP Inc.) Task: {0C4EAD16-F867-4A49-A52D-5ECE86D50936} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [2017-10-11] (HP Inc.) Task: {1ED149AA-CA70-46AD-909C-55320D72F58F} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-08-01] (Microsoft Corporation) Task: {2199BEC5-E7F9-498F-A23E-3F083ADE0AB3} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-08-01] (Microsoft Corporation) Task: {2B39611F-D138-4C1D-B2EF-FACEA0FE86D3} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-11-09] (Dropbox, Inc.) Task: {36CC22DA-C7AC-4FD0-AD21-338646CD90A8} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-08-01] (Microsoft Corporation) Task: {3748E2F8-EC67-4381-AB12-12BE527FA1E5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-22] (Microsoft Corporation) Task: {3AB54C93-362C-43F5-8EAC-4CEE6E531355} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-07-22] (Microsoft Corporation) Task: {3C0411A1-5EB3-4ABE-AE8E-F664246F0E51} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-13] (Google Inc.) Task: {3EE74969-C508-498D-858C-CEEA6DB2D595} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-08-17] (Adobe Systems Incorporated) Task: {4E911FC7-E8AB-47CF-8D09-799E3AAD6FAD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-11-13] (Google Inc.) Task: {52D49DC5-0054-482F-AE3C-F0FB1D009A48} - System32\Tasks\HPDAS => C:\Program [Argument = Files\HP\HP ePrint\HP.DeliveryAndStatus.Desktop.App.exe /CheckJobs] Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () Task: {7EEC4257-8262-4EB4-A80B-333C91CF2F25} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe [2018-07-24] (AVAST Software) Task: {88561866-64BF-4AEB-AAEC-7E521DACC339} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {8E2CD360-38BC-4AB3-802A-B7F6BCC964D0} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-11-09] (Dropbox, Inc.) Task: {8EDBF79E-6EB5-45AF-ADE2-C7509D6F923B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [2017-09-20] (HP Inc.) Task: {92052FE1-574D-42C7-B612-14005D11E9EF} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [2016-11-07] (HP Inc.) Task: {995349DF-9BA5-41AD-97FA-D3F6CA45707B} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-08-23] (AVAST Software) Task: {AC2274A4-E337-4E39-A66F-7589A1A60DFA} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-08-01] (Microsoft Corporation) Task: {B0C87FF5-A571-4824-8712-4472CC5D2895} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2017-09-27] (HP Inc.) Task: {C0088A66-E7C2-47C8-9781-1DB86C59818B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-03-21] (Adobe Systems Incorporated) Task: {C71376BA-7CA6-42AA-A7D0-A293512409E8} - System32\Tasks\DropboxOEM => C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [2016-09-21] () Task: {DE5DAF30-2FAB-468F-B9AB-641D3BE723D9} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_Plugin.exe [2018-08-17] (Adobe Systems Incorporated) Task: {F794A224-80A8-404E-A73B-2829CC01D91A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-08-18] (AVAST Software) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\plous\Desktop\Pre_Scan_Donate.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxps://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=S3AQ8V3XRWWYN ==================== Modules chargés (Avec liste blanche) ============== 2016-06-12 02:19 - 2014-04-14 18:59 - 000389896 _____ () C:\Program Files\CyberLink\Shared files\RichVideo64.exe 2018-08-06 16:49 - 2018-09-08 07:46 - 002681424 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2018-08-18 23:36 - 2018-08-03 05:09 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-07-17 15:52 - 2018-07-17 15:53 - 000086528 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkypeHost.exe 2018-07-17 15:52 - 2018-07-17 15:53 - 000195072 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll 2018-07-17 15:52 - 2018-07-17 15:53 - 022373888 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkyWrap.dll 2018-07-17 15:52 - 2018-07-17 15:53 - 002610176 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\skypert.dll 2018-07-17 15:52 - 2018-07-17 15:53 - 000653824 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2018-07-11 23:07 - 2018-07-11 23:09 - 001922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.0_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 000479232 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2018-08-30 07:43 - 2018-08-30 07:44 - 069283840 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2018-01-27 20:10 - 2018-01-27 20:15 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll 2018-08-19 22:07 - 2018-08-19 22:09 - 000049664 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\RenderingPlugin.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 003699200 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll 2018-04-26 14:14 - 2018-04-26 14:16 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\ImagePipelineNative.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 000035328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\WinMLWrapper.UWP.dll 2018-08-19 22:07 - 2018-08-19 22:09 - 002280960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\opencv_core320.dll 2018-08-19 22:07 - 2018-08-19 22:09 - 002480640 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\opencv_imgproc320.dll 2018-04-05 20:17 - 2018-04-05 20:18 - 002283008 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\TrackingDLLUWP.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 014333440 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 003544576 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\MediaEngine.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 002869248 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\AppCore.Windows.dll 2018-08-30 07:43 - 2018-08-30 07:44 - 000973312 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll 2018-07-26 20:19 - 2018-07-26 20:27 - 004584960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-08-09 12:17 - 2018-08-08 02:41 - 004855640 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libglesv2.dll 2018-08-09 12:17 - 2018-08-08 02:41 - 000115544 _____ () C:\Program Files (x86)\Google\Chrome\Application\68.0.3440.106\libegl.dll 2018-09-08 08:19 - 2018-09-08 08:19 - 003275136 _____ () C:\Users\plous\Downloads\ZHPCleaner.exe 2018-09-08 08:32 - 2018-09-08 08:32 - 003164544 _____ () C:\Users\plous\AppData\Local\Microsoft\Windows\INetCache\IE\MA0LX60K\ZHPDiag3[1].exe 2018-08-17 00:26 - 2018-08-17 00:26 - 000483544 _____ () c:\program files\avast software\avast\streamback.dll 2018-08-17 00:32 - 2016-09-12 15:53 - 048936448 _____ () C:\Program Files (x86)\AVAST Software\Avast Cleanup\libcef.dll 2018-08-17 09:13 - 2018-08-17 09:13 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2018-08-17 00:25 - 2018-08-17 00:25 - 000282840 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\plous\Downloads\10270.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\11193.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\1397.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\1452.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\16231.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\20382.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\3439.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\39087009889918vol. 4 score.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\4-creer-du-lien-entre-les-outils-clg-tiraqueau_1453211362259-pdf.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ACFrOgDlL08g4ixE0tbSEbA8Ly9LtKBVjYapBxjNcxxr9XcMn4RC9LoGDtyBbwqlbSSdzjOjQrwOg-CXGHKJi2vp23F2SVyBfx7Fn24YrPSlBaXouMFc_dcwuxJ6r9A=.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ACFrOgDWfZFwZqxhsFBc9uoVUTZWwgDPoZv1m9Pvj59Qtuzuk4eruSawnmsUtA6bPx8_oY3d1jL3wRnK7yOg1pO2IQJnQieZLgtAWL6Myl_-3obl3Ivt_DarDDigKS0=.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\AdwCleaner-4.208.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\AP.Apprendre le vocabulaire avec un mur de mots.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\apres_2nde.ppt:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ARTICLES.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Article_South_Africa_now_and_then-_version_finale_deroule.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\beethoven-ludwig-van-for-elise-549.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\BO_special_9_30-09-10_CycleTerminal.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\cerfa_12753-02.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Dean Martin - Let it Snow! Let It Snow! Let It Snow!.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Deck the Hall.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\disciplines-et-horaires_136432.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Divina Tragedia - Camille Thirion 2D.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\dmPDF.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\DropboxInstaller.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\DSC_0249.JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Edition_1w3vjqaoyavojx2n5dg1repd.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Edition_2w5x2gnilpvzcvhu3png3nxx.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Edition_vyexq2mmhmcfq4zt1xngzxcp.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ENGLISHLETTER-1.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Ex présent simple.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Fairy_Tales_Justine_Doherty.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\FLT_PUPBR619010_0.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\GALETTE 14 JANV.xlsx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\GoogleEarthPluginSetup.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\GUIDE_2DE_2015_WEB.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\How-to-Really-Play-the-Piano.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\IMSLP164414-PMLP293892-beyerimslp.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ITINERARY_PRINT_PDF_FILE_NAME_CUSTOMER_COPY.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Jingle Bells - (2015 Rock Cover) by Amasic.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\justificatif(1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\justificatif(2).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\justificatif(3).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\justificatif(4).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\justificatif.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\kon-bootUSB.rar:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\lamb_to_the_slaughter_by_roald_dahl-2.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Lettre de Monsieur le Recteur d Academie.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Lettre EEP Sante ndeg1 - 8 juillet 2015.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Listes%20élèves.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Liste_des_verbes.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Livret:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\LVA.zip:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\MAJ_dossier_1_euro_été_2014.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Manuel_p030-043_U2.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Mariah Carey - All I Want For Christmas Is You.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\mediacreationtool.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\media_file_14230.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meeting1re_Fiches_video_et_corriges(1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meeting1re_Fiches_video_et_corriges.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meeting1re_Livret_Video.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meetingt1re_Fichier_pedago(1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meetingt1re_Fichier_pedago(2).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meetingt1re_Fichier_pedago.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Meeting_2de_2014_Exploitation du DVD.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\memento-pour-la-cooperation-entre-eleves-dgesco-1.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\message_vocal.wav:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\met-LS-LV2-2006.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\MicrosoftFixit.HomeGroup.Run.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\MicrosoftFixit50123.msi:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\New:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\NS_Civil_War_To_Civil_Rights.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ODIN3_v1.85.zip:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\P5259829(1).JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\P5259829.JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\P5259839(1).JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\P5259839(2).JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\P5259839.JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\PAP PDF modifiable maxime clouet (1) (1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\PAP PDF modifiable maxime clouet.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\PartitionCleSolCleFa.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\planvince.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\programmes-cycle4.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\puren_medioni_sebahi_2013c_ilots_bonifi_s_2013_03_27.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Q-park-Resa-QR-code-VWH5qCwXfP-183594.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\relative-clauses-exercises.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ReserveWindows10(1).cmd:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ReserveWindows10.cmd:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\ressourcesComp_NewMeetingPoint2e.zip:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Ressources_enseigner_langues_vivantes_364040.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\RESS_LV_cycle_terminal_LELE_anglais_316004.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\RICE(1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\RICE.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\rufus-2.7.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\scenario_interactif_LELE_anglais_presentation_simulation_bac_audio_322116(1).pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\scenario_interactif_LELE_anglais_presentation_simulation_bac_audio_322116.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Sequence_Superman_Superheroes_NathalieMERON.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\sfr-facture-09-B315-005603003.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\sfr-facture-1154281026.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Si l’histoire de la musique américaine m’était contée (1).pptx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Si l’histoire de la musique américaine m’était contée.pptx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Silent Night - Mariah Carey.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\SkypeSetup.exe:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\social-media-discussion-questions1.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\social-media-vocabulary.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Socle_commun_de_connaissances,_de_competences_et_de_culture_415456.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\spellmaster_myths_heroes.zip:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Stevie Wonder - I Just Called To Say I Love You.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\STRASBOURG-ANGERS_ST_LAUD_10-08-15_PLOU_LUCIE_QLNTRA_i6GqwV9tdEwozHW2r6Om.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Tableau+des+gammes.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Timbres-electroniques_I160624602747.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\whats-on-your-mind-lesson-instructions.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\win10fix_full.zip:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\Winston Churchill Blood, Toil, Tears and Sweat.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\WITCH_HUNTS_SBouverat_JDoherty.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\WP_20160512_001 (2).jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Downloads\[Free-scores.com]_beethoven-ludwig-van-piano-concerto-eb-major-emperor-adagio-poco-mosso-23862.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\._1914_Soir_bleu.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\00111.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\150016_Putte-betend.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\1a10158009299.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\20140327_155214.mp4:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\3x Faber rotlese.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\805-AS0057.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\A year in the merde Crane.psd:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\adele hello.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Adele.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\adresse.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\afficeh art.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\An interesting town Tuesday.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Apéritif.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Au restaurant.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Avis de contravention.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Avis imposiiton 2011.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Avis imposiiton 2011.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\aydin.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\berlin.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\bon pour accord voisin.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\bulletin de salaire.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Cambridge Prep.mds:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Carrot Cake.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\cerfa_12100-02.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\cerfa_12100.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\cessation de vzhicule.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Chapter 4 Superheroes.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\chat-2-3.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Choose your school.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\ci.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\circulaire voyage 3èmes (3).docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Collaboration.gdoc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Consommation électrique Tröstau (relevé fait le matin).docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\contrat voiture.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Copie de Entretiens Indiv 3 ars 2012.docx.xlsx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\copie ecran.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\CS kirschnick.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\CSC_S5360_OXXLD5.tar.md5:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Das Fränkische Rom.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Default.rdp:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\degat appartement.JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\De_0622836109_09082016_15h34_57a9dc01dda00.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\De_0967302180_19082015_15h25_55d483d67c403.mp3:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Directeur de Service.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\DNL oral bis.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Donc vous voulez devenir coiffeur.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Dossier inspection validation.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Dossier inspection validation.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\edt 6.jpeg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Fiche nominative.doc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\FICHE REACTUALISATION 2012 pour FUSION DECSEC.doc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Flower power.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Frais voyage Angleterre.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\HAUSORDNUNG SCHULSTRASSE 10.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Hopper Benji Etude Soir Bleu en anglais:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Hopper Soir bleu:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\horloge cooperative.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\identite.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\images.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_0502.JPG:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20150626_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20150730_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20150920_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0003.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0004.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0005.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151003_0006.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151004_0001.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151004_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0003.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0004.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0005.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151005_0006.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151007_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151008_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151111_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151111_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20151112_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160121_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160121_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160302_0001.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160314_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160314_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160314_0003.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160324_0001.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160324_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160403_0001.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\IMG_20160403_0002.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\imposition 2010.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\imposition 2010.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\impots 2015.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\it's halloween.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\JTT 4 CD 1.iso:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\juillet 2015.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\K.K DIA.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Karsten Kirschnick.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\kirschnick réclamation ter.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\La maison des CanapésFacture n.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Lewis and Clark at Three Forks oral.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\LISTE CORRIGEE.doc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Liste des pièces à fournir.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\London 2014.odp:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\London 2014.pptx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Make a poster to introduce a famous writer.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Mieterhöhung.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Mietvertrag.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\MODEM_S5360_XXLD5.tar.md5:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\naturalisation.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Now you gonna stay where you are and explain what you were up to.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\opposition cartes bleues.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\PACS PLOU KIRSCHNICK.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\PACS PLOU KIRSCHNICK.rar:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\pacs.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Page Reçu.htm:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\paie kirschnick juillet.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Pendant les vacances.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Permis Karsten.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\permis.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\phonetics chart.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\pied bulletin de salaire.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\plan de classe vierge.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\plan de séquence Superheroes.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Plou Sebastien motivation.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Plou Sebastien.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Plou Sébastien.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\pornic-satellite-gb.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Programme voyage en Angleterre du 18 juillet 2016 au 28 juillet 2016.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Prédiction karsten Janvier.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\pub reading.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Queen Elizabeth II.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Questionnaire Equipe.doc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Qx52WH6AW6 mot de passé réseau.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\readme.txt:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\rechnung christ schmuck.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\REF W201306FR99375.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\resiliation-bail-mutation.rtf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Ring.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\rothenbuecher.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Réforme.Questionnaire Profs Compétences.doc:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\salaire aout.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\salaire decembre.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\SALAIRE FEVRIER.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\salaire plou juin.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\sam smith.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\signature Plou.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Sport.odt:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\statue-abstraite-couple-union-infinie-h30cm-en-bois-massif-finition-naturelle.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Stromkosten Buttner.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Stromverbrauch.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Sébastien PLOU CV EN.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\test compréhension écrite.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\test on routines.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\The VampireFriday.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\TOEFL - Raccourci.lnk:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\trace écrite 4 3 lv2 Turner and forum des métiers.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\trace écrite Charly.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Tracking service for the parcel.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Tutoriel d'installation.url:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Uniformity vs.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\verso carte identité kirschnick.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\verso kirschnick identite.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\vinci.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Ways to change.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\WHAT TIME IS IT 6B.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\What to do in London.docx:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\plous\Documents\Épreuve.docx:com.dropbox.attributes [168] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-1352535287-3790336422-502607612-1001\...\localhost -> localhost ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-10-30 09:24 - 2018-08-06 10:21 - 000000833 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1352535287-3790336422-502607612-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\plous\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\backgrounddefault.jpg DNS Servers: 192.168.0.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == HKLM\...\StartupApproved\Run: => "RTHDVCPL" HKLM\...\StartupApproved\Run: => "BtServer" HKLM\...\StartupApproved\Run32: => "HPMessageService" HKLM\...\StartupApproved\Run32: => "HPRadioMgr" HKLM\...\StartupApproved\Run32: => "PowerDVD14Agent" HKU\S-1-5-21-1352535287-3790336422-502607612-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1352535287-3790336422-502607612-1001\...\StartupApproved\Run: => "BitTorrent" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{EB1C4C04-12BB-485F-863D-E2F5CDA25C19}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{A0C965C0-1ECC-439A-B7D9-0DD71074BE11}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe FirewallRules: [{8C733A0B-C0EB-44EC-8DA6-539C310FAB43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe FirewallRules: [{6560C03E-4AAD-4C42-8A2D-871F902E6DD5}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe FirewallRules: [{5E470CEA-E792-4B8E-81AC-31BE7F8D2E91}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe FirewallRules: [{E124426A-66E4-40FB-B6E3-0EB785CF6F97}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe FirewallRules: [{E2937285-4999-40DA-AD4B-06A3B02D6E37}] => (Allow) c:\Program Files\CyberLink\PowerDirector12\PDR10.EXE FirewallRules: [{B9CBB96F-28E7-4066-AA8E-0A9785112C9B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{998435B0-AEA5-41B0-AA7D-0665409162A0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{42FA63F4-563D-4F3F-8CAE-EB0D1CDBC3A6}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{09A1A2B1-660C-49AA-9643-6091679F661E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{3184C70C-DD11-4916-84C6-656337C4C007}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{BA1985C6-BF9A-407B-B7DD-54FADE6F2567}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{A8DC9D9E-6C39-4946-8340-22F5B50E24A2}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe FirewallRules: [{2E093AD6-213D-4975-A122-D9A8DC75B267}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe FirewallRules: [{D8C03F5D-287E-4513-AE30-DE03A432803F}] => (Allow) C:\Users\plous\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{F8C813F5-ACAC-4727-9137-2CE8F297FD3B}] => (Allow) C:\Users\plous\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{CEC12FCA-F806-4F0E-BBE8-5380E40497EA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{5653EEEA-6720-42E3-93F8-AEC9F9002871}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{15A6DE8E-CD04-4A3F-9C27-DB9F8405F5F2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{68FD1B72-71DB-4F34-8299-E4779EACCB36}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{36C553C3-919F-4834-A857-39B2AD74D550}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{3C9F54E0-742D-4173-9610-777E05AD2A27}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{6A4F0FA0-EB7B-4BD9-8FFF-6AEBC5B4C516}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{8CA244B3-5635-4D75-A44D-5F16A4998000}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{202407D3-1BBE-4646-B1B3-37DC6D5CD2BF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.88.353.0_x86__zpdnekdrzrea0\Spotify.exe FirewallRules: [{FEB96301-A366-4F29-A180-AFB69A93FF03}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe FirewallRules: [{E531378A-8394-44F6-BA75-4FA541E02EA2}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe ==================== Points de restauration ========================= 06-08-2018 11:23:41 Removed Bonjour 12-08-2018 22:51:09 Programme d’installation pour les modules Windows 17-08-2018 10:52:45 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (09/02/2018 10:47:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbamservice.exe, version : 3.1.0.667, horodatage : 0x5ad8e0a1 Nom du module défaillant : UpdateControllerImpl.dll, version : 3.2.0.380, horodatage : 0x5b632a10 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000006177c ID du processus défaillant : 0x9d8 Heure de début de l’application défaillante : 0x01d43d781f11a985 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\UpdateControllerImpl.dll ID de rapport : bb066d4d-0c6d-4ac7-9333-0dd1310d3b9b Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (08/26/2018 10:04:53 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbamservice.exe, version : 3.1.0.667, horodatage : 0x5ad8e0a1 Nom du module défaillant : UpdateControllerImpl.dll, version : 3.2.0.380, horodatage : 0x5b632a10 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000006177c ID du processus défaillant : 0x49c Heure de début de l’application défaillante : 0x01d438a5e2a9c1bd Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\UpdateControllerImpl.dll ID de rapport : 0f7bcf00-bc20-445b-97a3-6dc125fa28f6 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (08/20/2018 06:52:06 PM) (Source: SecurityCenter) (EventID: 16) (User: ) Description: Erreur lors de la mise à jour du statut Malwarebytes vers SECURITY_PRODUCT_STATE_EXPIRED. Error: (08/20/2018 06:49:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante mbamservice.exe, version : 3.1.0.667, horodatage : 0x5ad8e0a1 Nom du module défaillant : UpdateControllerImpl.dll, version : 3.1.0.365, horodatage : 0x5b3567aa Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000053f8b ID du processus défaillant : 0xe60 Heure de début de l’application défaillante : 0x01d4380879d57349 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\UpdateControllerImpl.dll ID de rapport : 8ca85c6c-54bf-4379-b4ce-e760bf2692c1 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (08/18/2018 01:05:28 AM) (Source: ESENT) (EventID: 454) (User: ) Description: SettingSyncHost (1716,R,98) {8265BEDF-1EDC-41A4-B275-861214B209DA}: La récupération/restauration de la base de données a échoué en raison d’une erreur inattendue -543. Error: (08/18/2018 01:05:27 AM) (Source: ESENT) (EventID: 453) (User: ) Description: SettingSyncHost (1716,R,98) {8265BEDF-1EDC-41A4-B275-861214B209DA}: La base de données C:\Users\plous\AppData\Local\Microsoft\Windows\SettingSync\metastore\meta.edb requiert les fichiers journaux 53-54 (C:\Users\plous\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00035.log - C:\Users\plous\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb.log) pour récupérer. Le processus de récupération a seulement pu repérer les fichiers journaux à partir de 53(C:\Users\plous\AppData\Local\Microsoft\Windows\SettingSync\metastore\edb00035.log). Error: (08/17/2018 10:53:13 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary aswHdsKe. System Error: Le fichier spécifié est introuvable. . Error: (08/17/2018 10:51:22 AM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « aspnet_state » dans la DLL « C:\Windows\System32\aspnet_counters.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Erreurs système: ============= Error: (09/08/2018 08:10:08 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-II5EU7U9) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-II5EU7U9\plous de l’utilisateur (S-1-5-21-1352535287-3790336422-502607612-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/08/2018 07:43:38 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/08/2018 07:40:50 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-II5EU7U9) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID LAPTOP-II5EU7U9\plous de l’utilisateur (S-1-5-21-1352535287-3790336422-502607612-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/08/2018 12:09:12 AM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-II5EU7U9) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID LAPTOP-II5EU7U9\plous de l’utilisateur (S-1-5-21-1352535287-3790336422-502607612-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/07/2018 11:57:31 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/07/2018 10:05:22 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-II5EU7U9) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID LAPTOP-II5EU7U9\plous de l’utilisateur (S-1-5-21-1352535287-3790336422-502607612-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/07/2018 10:05:09 PM) (Source: DCOM) (EventID: 10016) (User: LAPTOP-II5EU7U9) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID LAPTOP-II5EU7U9\plous de l’utilisateur (S-1-5-21-1352535287-3790336422-502607612-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (09/07/2018 07:32:55 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Windows Defender: =================================== Date: 2018-08-06 11:42:03.322 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {6218B298-AF75-4DEB-B7D0-402C17B969C3} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : LAPTOP-II5EU7U9\plous Date: 2018-08-18 01:03:45.892 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : Version précédente de la signature : 1.273.1555.0 Source de mise à jour : Serveur Microsoft Update Type de signature : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.15100.1 Code d’erreur : 0x80240016 Description de l’erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. Date: 2018-08-17 11:59:10.217 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : Version précédente de la signature : 1.273.1094.0 Source de mise à jour : Serveur Microsoft Update Type de signature : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.15100.1 Code d’erreur : 0x80240016 Description de l’erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. Date: 2018-08-17 11:57:45.358 Description: La fonctionnalité de protection en temps réel Antivirus Windows Defender a rencontré une erreur et échoué. Fonctionnalité : Système d’inspection réseau Code d’erreur : 0x8007041d Description de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Raison : Il manque des mises à jour nécessaires à l’exécution du système NIS (Network Inspection System) sur le système. Installez les mises à jour requises et redémarrez l’appareil. Date: 2018-08-17 00:21:22.748 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : 1.273.1520.0 Version précédente de la signature : 1.273.1094.0 Source de mise à jour : Utilisateur Type de signature : Logiciel anti-espion Type de mise à jour : Delta Utilisateur : AUTORITE NT\Système Version actuelle du moteur : 1.1.15100.1 Version précédente du moteur : 1.1.15100.1 Code d’erreur : 0x80004004 Description de l’erreur : Opération abandonnée Date: 2018-08-17 00:21:22.746 Description: Antivirus Windows Defender a rencontré une erreur lors d la mise à jour des signatures. Nouvelle version de la signature : 1.273.1520.0 Version précédente de la signature : 1.273.1094.0 Source de mise à jour : Utilisateur Type de signature : Anti-virus Type de mise à jour : Delta Utilisateur : AUTORITE NT\Système Version actuelle du moteur : 1.1.15100.1 Version précédente du moteur : 1.1.15100.1 Code d’erreur : 0x80004004 Description de l’erreur : Opération abandonnée CodeIntegrity: =================================== Date: 2018-09-08 08:46:10.499 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:10.481 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:10.461 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:10.449 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:10.434 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:10.291 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:09.887 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-08 08:46:09.445 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\drivers\atikmdag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Pentium(R) CPU N3710 @ 1.60GHz Pourcentage de mémoire utilisée: 73% Mémoire physique - RAM - totale: 3922.14 MB Mémoire physique - RAM - disponible: 1027.6 MB Mémoire virtuelle totale: 5668.78 MB Mémoire virtuelle disponible: 1897.91 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:916.55 GB) (Free:704.05 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:13.73 GB) (Free:1.59 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] \\?\Volume{c0baf8fa-995e-4176-ac4a-3c81235be19f}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.41 GB) NTFS \\?\Volume{be4f1fbc-634a-4733-8e05-52ea11c86681}\ () (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: A50E1C7D) Partition: GPT. ==================== Fin de Addition.txt ============================