Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 06.10.2018 Exécuté par Guilhaume (08-10-2018 20:44:52) Exécuté depuis C:\Users\Guilhaume\Desktop Windows 10 Home Version 1803 17134.285 (X64) (2018-06-08 08:59:23) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1652084678-2015630781-2717873566-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1652084678-2015630781-2717873566-503 - Limited - Disabled) Guilhaume (S-1-5-21-1652084678-2015630781-2717873566-1001 - Administrator - Enabled) => C:\Users\Guilhaume Invité (S-1-5-21-1652084678-2015630781-2717873566-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1652084678-2015630781-2717873566-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\...\uTorrent) (Version: 3.5.4.44520 - BitTorrent Inc.) µTorrent (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\...\uTorrent) (Version: 3.5.4.44520 - BitTorrent Inc.) Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 19.008.20071 - Adobe Systems Incorporated) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 19.008.20071 - Adobe Systems Incorporated) Adobe After Effects CC 2017 (HKLM-x32\...\AEFT_14_1_0) (Version: 14.1.0 - Adobe Systems Incorporated) Adobe Character Animator CC (Beta) (HKLM-x32\...\ANMLBETA_1_0_5) (Version: 1.0.5 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.1.335 - Adobe Systems Incorporated) Adobe Illustrator CC 2017 (HKLM-x32\...\ILST_21_0_2) (Version: 21.0.2 - Adobe Systems Incorporated) Adobe InDesign CC 2017 (HKLM-x32\...\IDSN_12_0_0) (Version: 12.0 - Adobe Systems Incorporated) Adobe Media Encoder CC 2017 (HKLM-x32\...\AME_11_0_2) (Version: 11.0.2 - Adobe Systems Incorporated) Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0_1) (Version: 18.0.1 - Adobe Systems Incorporated) Application Blizzard (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{0E4C791E-B78E-477D-BD5A-CDD0985BA6EC}) (Version: 7.0.20622.1 - Microsoft Corporation) ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 4.0.16 - ASUS) ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 4.1.6 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.30 - ASUS) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0040 - ASUS) AudioWizard (HKLM-x32\...\{57E770A2-2BAF-4CAA-BAA3-BD896E2254D3}) (Version: 1.0.0.85 - ICEpower a/s) Autodesk 3ds Max 2016 (HKLM\...\{52B37EC7-D836-0410-0464-3C24BCED2010}) (Version: 18.0.873.0 - Autodesk) Hidden Autodesk 3ds Max 2016 (HKLM\...\Autodesk 3ds Max 2016) (Version: 18.0.873.0 - Autodesk) Autodesk 3ds Max 2016 Populate Data (HKLM\...\{57E92DED-DC7C-41E5-B9E1-76D83BD2EABE}) (Version: 18.0.0.0 - Autodesk) Autodesk Advanced Material Library Image Library 2016 (HKLM-x32\...\{94AD53E7-493B-4291-8714-7A3B761D2783}) (Version: 6.3.0.19 - Autodesk) Autodesk Backburner 2016 (HKLM-x32\...\{8C5F38D2-9EFE-49A4-B3F5-BF3210FED168}) (Version: 16.0.0.0 - Autodesk) Autodesk Civil View for 3ds Max 2016 64-bit (HKLM\...\{1C4FFAF0-6DBB-4F7A-A386-46747D060826}) (Version: 18.0.0.0 - Autodesk) Autodesk Inventor Server Engine for 3ds Max 2016 (HKLM\...\{9167CA34-4E58-49E3-8892-3C439739D2D3}) (Version: 18.0 - Autodesk) Autodesk Material Library 2016 (HKLM-x32\...\{29A7D6EC-63C2-42FD-8143-5812ABD2923F}) (Version: 6.3.0.19 - Autodesk) Autodesk Material Library Base Resolution Image Library 2016 (HKLM-x32\...\{6B4CFC6E-ECB0-47FE-95D3-65C680ED0687}) (Version: 6.3.0.19 - Autodesk) Autodesk Material Library Medium Resolution Image Library 2016 (HKLM-x32\...\{415A5A54-325E-4815-9940-62A889CA3877}) (Version: 6.3.0.19 - Autodesk) Autodesk Revit Interoperability for 3ds Max (HKLM\...\{0BB716E0-1600-0610-0000-097DC2F354DF}) (Version: 16.0.394.0 - Autodesk) Hidden Autodesk Revit Interoperability for 3ds Max (HKLM\...\Autodesk Revit Interoperability for 3ds Max ) (Version: 16.0.394.0 - Autodesk) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.30.60 - Conexant) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden Epic Games Launcher (HKLM-x32\...\{44A2E0CC-A3A2-45CA-A007-CB8BFBE7339E}) (Version: 1.1.117.0 - Epic Games, Inc.) Galerie de photos (HKLM-x32\...\{439B34FF-F74E-4807-B5E2-4B758551DA6B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 69.0.3497.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Gtk# for .Net 2.12.26 (HKLM-x32\...\{BC25B808-A11C-4C9F-9C0A-6682E47AAB83}) (Version: 2.12.26 - Xamarin, Inc.) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Hearthstone Deck Tracker (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\...\HearthstoneDeckTracker) (Version: 1.7.5 - HearthSim) Hearthstone Deck Tracker (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\...\HearthstoneDeckTracker) (Version: 1.7.5 - HearthSim) Heroes of Might and Magic 3 Complete (4.0) (HKLM-x32\...\1207658787_is1) (Version: 0.1.1.310 - GOG.com) Intel(R) Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.1.10600.150 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1159 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 - Intel Corporation) Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1519.7 - Intel Corporation) Intel(R) WiDi (HKLM\...\{5DD8D7E4-87F1-4134-AD28-4228FB1A03BA}) (Version: 6.0.44.0 - Intel Corporation) Intel(R) WiDi Software Asset Manager (HKLM-x32\...\{86905E62-645F-482E-A417-82C812ABD787}) (Version: 1.1.383 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) itch (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\...\itch) (Version: 23.6.3 - Itch Corp) itch (HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\...\itch) (Version: 23.6.3 - Itch Corp) Kit de développement logiciel (SDK) Microsoft .NET Framework 4.6.1 (Français) (HKLM-x32\...\{9369E1F2-44C9-4864-843E-159725E660CB}) (Version: 4.6.01055 - Microsoft Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKLM-x32\...\{11B73856-A062-4E6B-A80E-A3F380BBAB65}) (Version: 4.2.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\League of Legends 4.2.1) (Version: 4.2.1 - Riot Games) Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{5853172b-5520-4089-9ef4-e26c594382b3}) (Version: 19.30.0 - Intel Corporation) Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Italiano) (HKLM-x32\...\{ABA6C339-F1BA-4394-8307-2EDCE4D7F7A4}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (Italiano) (HKLM-x32\...\{ABED3B49-63B0-45F2-A2BA-E93A97FCB557}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (Français) (HKLM-x32\...\{AD054CB0-F527-48AD-832B-E65D46237C88}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.25420 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (HKLM-x32\...\{2774595F-BC2A-4B12-A25B-0C37A37049B0}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Management Objects (x64) (HKLM\...\{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 Transact-SQL ScriptDom (HKLM\...\{020CDFE0-C127-4047-B571-37C82396B662}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server 2014 T-SQL Language Service (HKLM-x32\...\{47D08E7A-92A1-489B-B0BF-415516497BCE}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM\...\{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft System CLR Types for SQL Server 2014 (HKLM-x32\...\{091CE6AA-2753-4F6E-AD1C-0E875744EB54}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual Studio 2015 Tools for Unity (HKLM-x32\...\{5359C5C6-F83D-4E74-9170-F9A68BE1C57F}) (Version: 2.3.0.0 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{94E1227C-08A9-4962-B388-1F05D89AEA75}) (Version: 3.1238.1962 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation) Mises à jour NVIDIA 31.2.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.2.0.0 - NVIDIA Corporation) Hidden Movie Maker (HKLM-x32\...\{21764A96-6748-4B83-89E7-7A5063BF156C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 56.0 (x64 en-GB) (HKLM\...\Mozilla Firefox 56.0 (x64 en-GB)) (Version: 56.0 - Mozilla) My Game Long Name (HKLM\...\UDK-4ee39167-fd84-41da-b95d-14800f59c399) (Version: - Epic Games, Inc.) NVIDIA GeForce Experience 3.14.1.48 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.14.1.48 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote graphique 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.36 - NVIDIA Corporation) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) Package de pilotes Windows - ASUS (AsusSGDrv) Mouse (08/19/2016 8.0.0.26) (HKLM\...\912D9B7DE050AA48F945407778CC01897B5E23BB) (Version: 08/19/2016 8.0.0.26 - ASUS) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) Panneau de configuration NVIDIA 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 398.36 - NVIDIA Corporation) Hidden PixelMaster Video HDR (HKLM\...\{65302154-AAF6-4020-A070-76CAA9CEC8D3}) (Version: 1.1.35 - ASUS) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10143.21278 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.2.703.2015 - Realtek) Roslyn Language Services - x86 (HKLM-x32\...\{D9008CB4-BA73-3754-993A-2464D3E2812D}) (Version: 14.0.25422 - Microsoft Corporation) Hidden Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SteelSeries Engine 3.8.3 (HKLM\...\SteelSeries Engine 3) (Version: 3.8.3 - SteelSeries ApS) Sublime Text 2.0.2 (HKLM-x32\...\Sublime Text 2_is1) (Version: - ) Sublime Text Build 3126 (HKLM\...\Sublime Text 3_is1) (Version: - Sublime HQ Pty Ltd) TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{00B079B8-3A55-4804-9D9F-3D47644827CB}) (Version: 1.8.35.0 - Microsoft Corporation) Hidden UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden Unity (HKLM-x32\...\Unity) (Version: 2017.1.1f1 - Unity Technologies ApS) Uplay (HKLM-x32\...\Uplay) (Version: 32.1 - Ubisoft) VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 3.0.1 - ASUS) WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH) WinRAR 5.50 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1652084678-2015630781-2717873566-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Pas de fichier ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Pas de fichier ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Advanced SystemCare\ASCExtMenu_64.dll -> Pas de fichier ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Softs\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Softs\rarext.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Advanced SystemCare\ASCExtMenu_64.dll -> Pas de fichier ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Advanced SystemCare\ASCExtMenu_64.dll -> Pas de fichier ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_463164d40c3d26ce\igfxDTCM.dll [2016-11-30] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] () ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2015-03-17] (Adobe Systems Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Softs\rarext64.dll [2017-08-11] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Softs\rarext.dll [2017-08-11] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {142000D0-51CB-45C5-AD95-47AE79046053} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-07] (Google Inc.) Task: {25E35618-69FD-458D-B529-0E4D80B2AA53} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-14] (Adobe Systems Incorporated) Task: {31E9B0E0-1B37-41AE-8603-C77D60C9DB62} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {44EB4D82-41A9-4B20-A002-982CEFB3B3EB} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-EO92J2T-Guilhaume => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2018-04-11] (Adobe Systems Incorporated) Task: {459D9D56-B88B-4B68-87F8-60052A1434C3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation) Task: {4A8E7BD9-DA42-4AD0-B999-9ADF0A1FE4FA} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {4D868A86-35BB-4B7D-B098-856C3109DC90} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2015-03-10] (ASUSTek Computer Inc.) Task: {5111B87E-0130-4368-85F8-9B0BCA4D5758} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-04-07] (Google Inc.) Task: {519E6D20-5E1F-41FC-B967-2140BE39682C} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2015-05-25] (ASUSTek Computer Inc.) Task: {5EB2EEAE-5E4C-442A-8A9A-EEC0416526C5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-07-19] (NVIDIA Corporation) Task: {5F849C3F-5E0F-4CFE-9138-9BB0DED2CF4F} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2016-09-02] (AsusTek) Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () Task: {68FBE477-2A59-4C5A-AE7B-33CE29B4A977} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-07-19] (NVIDIA Corporation) Task: {6E9FB127-090C-4529-9C63-8E5B53FA2F64} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [2015-03-10] (ASUSTek Computer Inc.) Task: {79221F23-AE51-4ED5-ADF9-C5C7A40EC6C8} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {901592D4-BD11-4540-9694-33A9C301A4E9} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation) Task: {9978A0CD-AD0D-42E5-96C1-3730CD70E06A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-07-19] (NVIDIA Corporation) Task: {A27E2031-FFEE-4E9E-B2F9-7A7C5939ECDE} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {A611A323-28F7-459D-953B-322948CD169D} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-07-19] (NVIDIA Corporation) Task: {B4462569-D457-42AA-A4B4-9ADABCB531B2} - System32\Tasks\Microsoft\VisualStudio\VSIX Auto Update 14 => C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\VSIXAutoUpdate.exe Task: {C2200267-3773-4B9C-9EA6-A5D26B551225} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-EO92J2T-Guilhaume => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-09-10] (Adobe Systems, Incorporated) Task: {CF7B01FC-DEC1-4DA7-AF7F-94AA26200A6C} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {E5AE96FA-A2A2-4480-B898-7297043984CE} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation) Task: {E98C81AB-A1CF-424A-BA3A-E39080D62075} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-07-19] (NVIDIA Corporation) Task: {EABDC9AC-0A3C-416B-87A4-ADE1A7F0C337} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-07-19] (NVIDIA Corporation) Task: {EECDF451-F770-437C-8D5C-5B996BA00658} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-24] (Intel Corporation) Task: {F0C643E2-93FC-471F-BE82-5BBAA4297A1C} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation) Task: {FE1BE21B-A091-409D-AC33-970418C62D10} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\WINDOWS\system32\Notifier.exe (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\Guilhaume\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory="Profile 2" ==================== Modules chargés (Avec liste blanche) ============== 2018-07-31 23:06 - 2018-07-19 22:20 - 001314856 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-05-19 11:11 - 2015-05-19 11:11 - 000007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 2018-09-28 11:13 - 2018-09-12 11:35 - 002701064 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-09-28 11:13 - 2018-09-12 17:57 - 002785784 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2016-10-25 09:57 - 2016-10-25 09:57 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll 2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2018-09-13 18:53 - 2018-08-31 05:12 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-10-25 09:57 - 2016-10-25 09:57 - 031723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2018-09-18 22:29 - 2018-09-15 10:26 - 005110616 _____ () C:\Program Files (x86)\Google\Chrome\Application\69.0.3497.100\libglesv2.dll 2018-09-18 22:29 - 2018-09-15 10:26 - 000116056 _____ () C:\Program Files (x86)\Google\Chrome\Application\69.0.3497.100\libegl.dll 2018-09-01 13:55 - 2018-08-27 22:52 - 098006816 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll 2018-09-26 00:52 - 2018-09-05 22:14 - 001055520 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\SDL2.dll 2018-09-01 13:55 - 2018-08-27 22:52 - 004443424 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll 2018-09-01 13:55 - 2018-08-27 22:52 - 000100128 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll 2015-03-17 01:34 - 2015-03-17 01:34 - 000010240 _____ () C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\fr_fr\acrotray.fra 2016-10-12 01:08 - 2016-10-12 01:08 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node 2016-10-12 01:08 - 2016-10-12 01:08 - 000223232 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node 2016-10-12 01:08 - 2016-10-12 01:08 - 000117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node 2016-10-12 01:08 - 2016-10-12 01:08 - 000124928 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node 2016-10-25 10:49 - 2016-10-25 10:49 - 000098496 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll 2016-10-12 01:08 - 2016-10-12 01:08 - 000166400 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node 2015-07-22 02:18 - 2015-07-22 02:18 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2018-09-26 00:52 - 2018-09-05 22:14 - 000876320 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2018-09-26 00:52 - 2018-09-08 22:31 - 002646304 _____ () C:\Program Files (x86)\Steam\video.dll 2016-07-19 17:33 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2018-01-03 01:26 - 2017-12-20 03:43 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll 2018-01-03 01:26 - 2017-12-20 03:43 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll 2018-01-03 01:26 - 2017-12-20 03:43 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll 2018-01-03 01:26 - 2017-12-20 03:43 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll 2018-01-03 01:26 - 2017-12-20 03:43 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll 2016-07-19 17:33 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-07-19 17:33 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2018-09-26 00:52 - 2018-09-08 22:31 - 001015584 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-07-19 17:33 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2015-06-24 01:16 - 2015-06-24 01:16 - 000044176 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\win32api.pyd 2015-06-24 01:15 - 2015-06-24 01:15 - 000062608 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\pywintypes27.dll 2015-06-24 01:15 - 2015-06-24 01:15 - 000122000 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\pythoncom27.dll 2015-06-24 01:18 - 2015-06-24 01:18 - 000024208 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\_multiprocessing.pyd 2015-06-24 01:18 - 2015-06-24 01:18 - 000031376 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\_socket.pyd 2015-06-24 01:18 - 2015-06-24 01:18 - 000445072 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\_ssl.pyd 2015-06-24 01:18 - 2015-06-24 01:18 - 000288912 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\_hashlib.pyd 2015-06-24 01:16 - 2015-06-24 01:16 - 000019088 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\select.pyd 2015-06-24 01:18 - 2015-06-24 01:18 - 000046736 _____ () C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\_ctypes.pyd ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-10-30 09:24 - 2016-08-22 10:29 - 000001132 _____ C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 activate.adobe.com 127.0.0.1 practivate.adobe.com 127.0.0.1 lmlicenses.wip4.adobe.com 127.0.0.1 lm.licenses.adobe.com 127.0.0.1 na1r.services.adobe.com 127.0.0.1 hlrcv.stage.adobe.com ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950316\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950620\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg HKU\S-1-5-21-1652084678-2015630781-2717873566-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Guilhaume\Downloads\26223471_206247413282741_3570950726039371776_n.jpg HKU\S-1-5-21-1652084678-2015630781-2717873566-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10082018202950911\Control Panel\Desktop\\Wallpaper -> C:\Users\Guilhaume\Downloads\26223471_206247413282741_3570950726039371776_n.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{90DE8900-1D83-4B5C-A80A-28C4927A1084}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{4A907CC8-189D-4E37-940F-9B6DAF03406B}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B629A84E-C27F-4467-A42E-2901ECCC95AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead In Vinland\Dead In Vinland.exe FirewallRules: [{2F2C3219-2520-4C62-BC05-9CE29D63D3FF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead In Vinland\Dead In Vinland.exe FirewallRules: [{40737AD6-DCF4-435E-87E7-5E8BF9C1F12F}] => (Allow) D:\Steam_Games\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{2E7CA66F-B96D-4CAA-8201-4C513EBB35A7}] => (Allow) D:\Steam_Games\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{96B0F3F1-4A99-41D5-9D95-4D3FD2C20980}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Into the Breach\Breach.exe FirewallRules: [{5E63E859-E96C-44BD-A24C-C77FCD64E564}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Into the Breach\Breach.exe FirewallRules: [{E80045EB-0AB5-432B-9974-9F1202C46F97}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\SlayTheSpire.exe FirewallRules: [{36B1C4C7-C841-44F4-A936-34276754E789}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SlayTheSpire\SlayTheSpire.exe FirewallRules: [{764A29F9-E3E3-46F8-BDE1-29B24757ED53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\InvisibleInc\invisibleinc.exe FirewallRules: [{5B2F52D3-7E75-4D45-85BB-E00EC13C60BE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\InvisibleInc\invisibleinc.exe FirewallRules: [UDP Query User{0DF5A844-5448-472A-9931-8821F508ED19}D:\steam_games\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\steam_games\steamapps\common\xcom 2\binaries\win64\xcom2.exe FirewallRules: [TCP Query User{37E58557-3D2B-4D7C-923D-77BCA5329418}D:\steam_games\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\steam_games\steamapps\common\xcom 2\binaries\win64\xcom2.exe FirewallRules: [{A1B45427-7B62-4654-A5AA-3B818881E2D4}] => (Allow) D:\Steam_Games\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{991C61D2-345D-461E-AD39-3D1605049FF2}] => (Allow) D:\Steam_Games\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{D09A2DF5-62A6-447D-BDE1-60E8EE47E30C}] => (Allow) D:\Steam_Games\steamapps\common\EVERSPACE\RSG\Binaries\Win64\RSG-Win64-Shipping.exe FirewallRules: [{27A85854-96EB-436F-807F-2E9869DBFAAB}] => (Allow) D:\Steam_Games\steamapps\common\EVERSPACE\RSG\Binaries\Win64\RSG-Win64-Shipping.exe FirewallRules: [{AD2D26F0-6E1F-42C6-B3DF-A3177B672671}] => (Allow) D:\Steam_Games\steamapps\common\This War of Mine\Storyteller.exe FirewallRules: [{8A295AE0-919D-44A8-87D1-1E29C9AFB092}] => (Allow) D:\Steam_Games\steamapps\common\This War of Mine\Storyteller.exe FirewallRules: [{731E0EEE-644F-4684-B201-8DC33CE62D13}] => (Allow) D:\Steam_Games\steamapps\common\This War of Mine\This War of Mine.exe FirewallRules: [{B4E812E0-3CFD-4979-8E80-4087B04258DE}] => (Allow) D:\Steam_Games\steamapps\common\This War of Mine\This War of Mine.exe FirewallRules: [{9AE7FA3B-3DB5-42DF-A3AB-AB581AEC325D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells_gl.exe FirewallRules: [{20B6AD25-9BB2-499B-BE0A-5B0AB2381530}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells_gl.exe FirewallRules: [UDP Query User{693F2B52-C722-44C6-BC38-B9021571D09C}D:\unity\projects\soulsky\soulsky\builds\test_1.exe] => (Block) D:\unity\projects\soulsky\soulsky\builds\test_1.exe FirewallRules: [TCP Query User{3A355901-6A69-4E7A-B588-5981FCDCEE48}D:\unity\projects\soulsky\soulsky\builds\test_1.exe] => (Block) D:\unity\projects\soulsky\soulsky\builds\test_1.exe FirewallRules: [UDP Query User{BFEAE6A5-87F4-4338-8F6E-28085B025D77}D:\unity\projects\floating islands\builds\build_01.exe] => (Allow) D:\unity\projects\floating islands\builds\build_01.exe FirewallRules: [TCP Query User{91ACA509-8AC9-473B-99E1-BE61BA5DDD03}D:\unity\projects\floating islands\builds\build_01.exe] => (Allow) D:\unity\projects\floating islands\builds\build_01.exe FirewallRules: [{5E9D185B-9CEC-4282-B3F1-B15C206481AE}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [UDP Query User{F1D2D78C-C07A-41E1-A91B-CC194ED5A98E}C:\users\guilhaume\appdata\roaming\itch\apps\overland\overland.exe] => (Allow) C:\users\guilhaume\appdata\roaming\itch\apps\overland\overland.exe FirewallRules: [TCP Query User{B6D632B9-06BD-496E-A60E-BB3B9B0528B7}C:\users\guilhaume\appdata\roaming\itch\apps\overland\overland.exe] => (Allow) C:\users\guilhaume\appdata\roaming\itch\apps\overland\overland.exe FirewallRules: [{11BEB8BC-BD65-4661-AEE5-56210E5000AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{F944B23A-F5B4-4CEC-B004-CFD05455C62B}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{F78D6941-10A1-4157-8C16-311A33455D70}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{0A6DE2B3-E849-4FF3-950C-59B1C722EA64}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{A4A5973E-BA7C-444A-8152-F3F97E14DE52}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BA4F5095-2F46-474D-8CC0-A14A942489DF}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{69D5242E-8F99-4D0A-A075-182357F46783}] => (Allow) C:\Users\Guilhaume\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{BBAD927C-671B-4570-81CA-3CA1CCD56102}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe FirewallRules: [{2B321A21-011E-44B9-AC3B-D75EF37CF102}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OxygenNotIncluded\OxygenNotIncluded.exe FirewallRules: [{A854EF04-5E1E-4F82-A5AB-8870FC4E2C44}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{5BEFA604-2E88-49BB-B646-66E432399F0B}] => (Allow) C:\Windows\system32\ftp.exe FirewallRules: [{73721653-353A-47D5-B9D8-EE183C732484}] => (Allow) C:\Windows\SysWOW64\ftp.exe FirewallRules: [{D6759337-8499-49DF-9766-7A933ECD4FAA}] => (Allow) C:\Windows\SysWOW64\ftp.exe FirewallRules: [{68049631-5941-43ED-9EC4-39C9486245D6}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{3DE6749F-54CD-4209-99CC-B6EC2F88601E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{100611CD-DE2C-429C-B9A7-4C40A71279AB}] => (Allow) D:\Softs\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64server.exe FirewallRules: [{3ECF1D4F-2238-4DEE-98E9-A263507F3B06}] => (Allow) D:\Softs\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64server.exe FirewallRules: [{749C0A74-00D8-4D19-8F13-28BC062117F9}] => (Allow) D:\Softs\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64.exe FirewallRules: [{6CB3224B-A643-4E87-83B9-3B3BBB9E31A6}] => (Allow) D:\Softs\3ds Max 2016\NVIDIA\Satellite\raysat_3dsmax2016_64.exe FirewallRules: [{AA62BCC3-E75A-4484-A9BA-75E806F976C0}] => (Allow) C:\Program Files (x86)\Microsoft Visual Studio Tools for Unity\2015\UnityVS.OpenFile.exe FirewallRules: [{F1046DC5-B618-4671-94D1-639BFD817848}] => (Allow) D:\Unity\Editor\Unity.exe FirewallRules: [TCP Query User{CCD52B80-352F-49E8-9A94-B61D2A9A8524}D:\unity\monodevelop\bin\monodevelop.exe] => (Block) D:\unity\monodevelop\bin\monodevelop.exe FirewallRules: [UDP Query User{88202DFE-890D-46A9-B95D-5E958FDB9BC4}D:\unity\monodevelop\bin\monodevelop.exe] => (Block) D:\unity\monodevelop\bin\monodevelop.exe FirewallRules: [{69F1384E-A50B-47B4-92AD-080D0286007B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{E8BAE5BD-0998-4DEA-829C-41A0765402A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5BFFFC02-1F8C-4BEA-9D46-F2FE4C43EE41}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{8A0AFFB1-7CF4-45A3-BCC1-73B896AAD280}D:\softs\unity\editor\unity.exe] => (Block) D:\softs\unity\editor\unity.exe FirewallRules: [UDP Query User{676EA47C-7BBB-4043-951F-880D64ABA075}D:\softs\unity\editor\unity.exe] => (Block) D:\softs\unity\editor\unity.exe FirewallRules: [{E183E6D6-112E-44E6-81A0-2BD07C388CC5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells.exe FirewallRules: [{B9EA7EAB-FDEA-41FD-AC9F-94C029038A42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Cells\deadcells.exe FirewallRules: [{6AE7090F-90EF-4456-8F64-39C416C02F3B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{FB7CA619-53F6-4E7D-9EA3-28FCDA3605F5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{8924BD16-A028-4EE3-A997-CB0762631B0A}C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe FirewallRules: [UDP Query User{878C8A2F-8A27-41A7-B5EA-D97E238D7921}C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe FirewallRules: [TCP Query User{9060FEDE-1268-4B9D-829D-C045071EDD79}D:\softs\unity\editor\unity.exe] => (Allow) D:\softs\unity\editor\unity.exe FirewallRules: [UDP Query User{3074F621-35D1-425F-B34F-EEE73F0E867F}D:\softs\unity\editor\unity.exe] => (Allow) D:\softs\unity\editor\unity.exe FirewallRules: [TCP Query User{70BCE668-1B02-4C83-BC88-5C12EC58EF70}C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe FirewallRules: [UDP Query User{971DEE42-4B64-4C35-8509-194833C49438}C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\divinity original sin 2\bin\eocapp.exe FirewallRules: [{172776F6-DFE6-4D5B-8C47-9E2047A6C6C5}] => (Allow) C:\Program Files (x86)\Audiokinetic\Wwise 2017.1.2.6361\Authoring\x64\Release\bin\Wwise.exe FirewallRules: [{3CF93C84-7A36-4616-B992-B3F5A7BE13FF}] => (Allow) C:\Program Files (x86)\Audiokinetic\Wwise 2017.1.2.6361\Authoring\x64\Release\bin\Wwise.exe FirewallRules: [{DEB8C216-614A-4E87-B7E2-E385E7CD0FD9}] => (Allow) C:\Program Files (x86)\Audiokinetic\Wwise 2017.1.2.6361\Authoring\Win32\Release\bin\Wwise.exe FirewallRules: [{F72368B3-0CBC-438B-B5FE-64AB90B01B97}] => (Allow) C:\Program Files (x86)\Audiokinetic\Wwise 2017.1.2.6361\Authoring\Win32\Release\bin\Wwise.exe FirewallRules: [{DB5988D7-3BF4-4F1C-B7AC-52A3FC258B96}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{5C626453-B7F9-4135-9E72-9FF51B64F069}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{732B164E-C9DD-4257-BCE5-A381CD85B9AF}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{CA608B07-C73A-4AA4-AB15-C2358FF608B8}] => (Allow) LPort=2869 FirewallRules: [{ED23DFD4-056F-491F-8848-A04F805F37A6}] => (Allow) LPort=1900 FirewallRules: [{60636815-A682-4898-926C-01D9F4A0A469}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Synthetik\Synthetik.exe FirewallRules: [{E4BB7C2E-51B1-42E8-A6BE-04D7FC6DE504}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Synthetik\Synthetik.exe FirewallRules: [{1814E663-8587-43BA-B8C3-35DBEC974E2C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{4EB857D3-47DE-40FF-AC09-C3397E984CEB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{C4DE658B-760A-4462-A5AB-273BA21B6EE5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{B4EEBE6C-D1BF-4C78-A6F4-327939FAB8D5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{6E61A252-FA58-42A3-AEFF-6849199B0D79}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{57F9702F-02B6-419C-A476-918763BC2611}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D27664DE-6C7E-482E-9945-8FF73F07E270}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deep Sky Derelicts\Deep Sky Derelicts.exe FirewallRules: [{AB8B90C3-8E9F-44A3-A943-E304B97215B6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Deep Sky Derelicts\Deep Sky Derelicts.exe FirewallRules: [{A4C6EB64-C013-4B6A-8EDC-F3A6117C7E7A}] => (Allow) D:\Steam_Games\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{B19718D3-3221-49E0-888F-912EABD96E81}] => (Allow) D:\Steam_Games\steamapps\common\dont_starve\bin\dontstarve_steam.exe FirewallRules: [{913C41D8-4937-4DD1-AD4C-52A1924F5C89}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\For The King\FTK.exe FirewallRules: [{8E957664-DCF9-4AA6-83DF-0D1F7B36F0CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\For The King\FTK.exe FirewallRules: [TCP Query User{D5710190-1839-4A91-9A9A-30FE975BF2A1}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{2CFCBA0B-0274-407A-8620-8C087AA50E1A}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [{A7266C7C-0342-45AF-BE9A-012658A64131}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [{3375C986-7597-48A0-ADE0-B4F941AA6CE5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [{7B22F76F-8DFE-4A37-8166-B633646AF00B}] => (Allow) D:\Steam_Games\steamapps\common\DarkestDungeon\_windows\Darkest.exe FirewallRules: [{3A13C350-2D22-40DC-96BE-D2884A4B1DB8}] => (Allow) D:\Steam_Games\steamapps\common\DarkestDungeon\_windows\Darkest.exe FirewallRules: [TCP Query User{5B88254D-1501-4003-98F7-7C8DE0253D62}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [UDP Query User{4F1F6B6E-B192-4614-94C8-70B19E1799C8}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe FirewallRules: [TCP Query User{FC1AA075-A4DF-47A9-A248-24C856E7ACCA}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe FirewallRules: [UDP Query User{018F2452-0B11-48AB-9B9B-2158A12D931C}C:\program files (x86)\blizzard app\battle.net.exe] => (Allow) C:\program files (x86)\blizzard app\battle.net.exe FirewallRules: [{BDF2BB66-D8FE-4676-8008-237A11FD83BF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{80709217-EAFE-475A-8B11-C35B2916ACC2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WeHappyFew\GlimpseGame\Binaries\Win64\GlimpseGame.exe FirewallRules: [{4B44A125-1049-446D-BE55-613DEA5C1E68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WeHappyFew\GlimpseGame\Binaries\Win64\GlimpseGame.exe FirewallRules: [{34B7CA8F-25E6-4359-A6CA-EE8AE25538BB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guild of Dungeoneering\dungeoneering.exe FirewallRules: [{B5B28507-85DB-49D2-81E4-B9E9C24DCA99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Guild of Dungeoneering\dungeoneering.exe FirewallRules: [TCP Query User{E1ADC7FE-A39E-4DE7-8902-8560E56ADAB5}C:\program files (x86)\steam\steamapps\common\wartile\wartile\binaries\win64\game-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\wartile\wartile\binaries\win64\game-win64-shipping.exe FirewallRules: [UDP Query User{FFA30A0D-5684-4C07-AD3C-97583F5440D6}C:\program files (x86)\steam\steamapps\common\wartile\wartile\binaries\win64\game-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\wartile\wartile\binaries\win64\game-win64-shipping.exe FirewallRules: [{524059F1-B396-4E5E-8EBF-5869C0503012}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe FirewallRules: [{7B6C6B81-4A8E-43FF-B568-8B1C7FEA70C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\TPH\TPH.exe FirewallRules: [{63781C31-77D6-4A1F-8873-087CA805FE3F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{E6704C28-F531-4033-A33B-5EDDD90FBF45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\tbs\win32\The Banner Saga.exe FirewallRules: [{4A44B026-9413-4D06-ADBD-3996AAC0D039}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe FirewallRules: [{E2BD6955-1F1A-4D20-B6A0-61705D8E042E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\tbs2\win32\The Banner Saga 2.exe FirewallRules: [{78F7DEF5-C58B-4F6C-86E5-624CD39C72A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon of the Endless\DungeonoftheEndless.exe FirewallRules: [{327E780A-3B0D-4B92-A3C1-305398BD0D29}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dungeon of the Endless\DungeonoftheEndless.exe FirewallRules: [{8733735A-6F03-4616-9444-998049936887}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Niffelheim\Niffelheim.exe FirewallRules: [{C2D04F8C-2225-4D18-ADBB-EF66D117A89F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Niffelheim\Niffelheim.exe ==================== Points de restauration ========================= 21-09-2018 07:40:58 Point de contrôle planifié 28-09-2018 10:18:05 Point de contrôle planifié 05-10-2018 13:38:09 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/08/2018 08:29:02 PM) (Source: Steam Client Service) (EventID: 1) (User: ) Description: Error: Failed to add firewall exception for C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe Error: (10/08/2018 08:16:52 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x8007001f, Un périphérique attaché au système ne fonctionne pas correctement. . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (10/08/2018 08:15:14 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé. . Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {676fa037-939f-4278-ab9b-8763271dfd2c} Error: (10/08/2018 06:28:39 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows ne parvient pas à charger la DLL de compteur extensible rdyboost. Le premier mot (DWORD) de la section Données contient le code d’erreur Windows. Error: (10/08/2018 06:28:39 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Échec de la procédure d’ouverture pour le service « BITS » dans la DLL « C:\Windows\System32\bitsperf.dll ». Les données de performance de ce service ne seront pas disponibles. Le premier mot (DWORD) de la section Données contient le code d’erreur. Error: (10/08/2018 10:16:51 AM) (Source: DPTF) (EventID: 256) (User: ) Description: Intel(R) Dynamic Platform and Thermal Framework : ESIF(8.1.10600.150) TYPE: ERROR DPTF Build Version: 8.1.10600.150 DPTF Build Date: Jun 26 2015 11:46:12 Source File: ..\..\..\Sources\Manager\EsifApplicationInterface.cpp @ line 737 Executing Function: DptfEvent Message: Received unexpected event Framework Event: DptfResume [3] Error: (10/07/2018 08:13:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante chrome.exe, version : 69.0.3497.100, horodatage : 0x5b9cbc86 Nom du module défaillant : KERNELBASE.dll, version : 10.0.17134.165, horodatage : 0xb0bb231d Code d’exception : 0xe0000008 Décalage d’erreur : 0x000000000003a388 ID du processus défaillant : 0x1154 Heure de début de l’application défaillante : 0x01d45dbced728a04 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : b440d439-334b-49ff-8be0-a3642127b9bd Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/07/2018 06:25:13 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Windows ne parvient pas à charger la DLL de compteur extensible rdyboost. Le premier mot (DWORD) de la section Données contient le code d’erreur Windows. Erreurs système: ============= Error: (10/08/2018 08:29:02 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-EO92J2T) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID DESKTOP-EO92J2T\Guilhaume de l’utilisateur (S-1-5-21-1652084678-2015630781-2717873566-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:27:19 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID Windows.SecurityCenter.WscBrokerManager et l’APPID Non disponible au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:25:21 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-EO92J2T) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID DESKTOP-EO92J2T\Guilhaume de l’utilisateur (S-1-5-21-1652084678-2015630781-2717873566-1001) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:23:32 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:23:32 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {6B3B8D23-FA8D-40B9-8DBD-B950333E2C52} et l’APPID {4839DDB7-58C2-48F5-8283-E1D1807D0D7D} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:23:32 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID AUTORITE NT\SERVICE LOCAL de l’utilisateur (S-1-5-19) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (10/08/2018 08:21:34 PM) (Source: Application Popup) (EventID: 56) (User: ) Description: ACPI5 Error: (10/08/2018 08:21:00 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\WINDOWS\System32\IWMSSvc.dll CodeIntegrity: =================================== Date: 2018-09-12 18:15:16.618 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\InfusedApps\Applications\Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe\x64\hevcdecoder_store.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-12 18:15:16.599 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\InfusedApps\Applications\Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe\x64\hevcdecoder_store.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-12 18:15:16.461 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\InfusedApps\Applications\Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe\x86\hevcdecoder_store.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2018-09-12 18:15:16.440 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\InfusedApps\Applications\Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe\x86\hevcdecoder_store.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-6700HQ CPU @ 2.60GHz Pourcentage de mémoire utilisée: 47% Mémoire physique - RAM - totale: 8090.52 MB Mémoire physique - RAM - disponible: 4260.64 MB Mémoire virtuelle totale: 13210.52 MB Mémoire virtuelle disponible: 9076 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:371.85 GB) (Free:215.72 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (DATA) (Fixed) (Total:558.91 GB) (Free:406.48 GB) NTFS \\?\Volume{45673279-76f9-40e4-88a4-32c5dd76478f}\ (RECOVERY) (Fixed) (Total:0.49 GB) (Free:0.08 GB) NTFS \\?\Volume{2be639e9-52f4-465b-abd1-d9e65c5f3882}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 4D473056) Partition: GPT. ==================== Fin de Addition.txt ============================