Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 10.10.2018 Exécuté par Mathieu (11-10-2018 20:27:28) Exécuté depuis C:\Users\Mathieu\Desktop Windows 8 (X64) (2014-02-14 08:08:31) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-565260823-566925515-856121267-500 - Administrator - Enabled) => C:\Users\Administrateur Invité (S-1-5-21-565260823-566925515-856121267-501 - Limited - Disabled) Mathieu (S-1-5-21-565260823-566925515-856121267-1002 - Administrator - Enabled) => C:\Users\Mathieu ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Ableton Live 9 Lite (HKLM\...\{82620B58-854D-4B82-9A69-1F8BE62F7B6B}) (Version: 9.0.0.0 - Ableton) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 19.008.20074 - Adobe Systems Incorporated) Adobe Digital Editions 3.0 (HKLM-x32\...\Adobe Digital Editions 3.0) (Version: 3.0.1 - Adobe Systems Incorporated) Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.122 - Adobe Systems Incorporated) Adobe Photoshop CC (HKLM-x32\...\{2D99B50E-431D-4AA8-85C1-172A6F8BCF09}) (Version: 14.0 - Adobe Systems Incorporated) Adobe Photoshop Lightroom 5.3 64-bit (HKLM\...\{2DD71ACB-552D-402C-9529-7906ACB95C30}) (Version: 5.3.1 - Adobe Systems Incorporated) Adobe Premiere Pro CC (HKLM-x32\...\{505FF1AC-E7F5-4462-BBA7-08900E7E9EEF}) (Version: 7.0.1 - Adobe Systems Incorporated) Android SDK Tools (HKLM-x32\...\Android SDK Tools) (Version: 1.16 - Google Inc.) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.53 - NVIDIA Corporation) Hidden Apple Application Support (32 bits) (HKLM-x32\...\{9BA1A894-B42F-4805-BC8C-349C905A3930}) (Version: 5.3.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{7EAC8A42-9FAC-4F6B-AABF-C08C9F2E0F13}) (Version: 5.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) ARIA Engine v1.9.3.3 (HKLM\...\ARIA Engine_is1) (Version: v1.9.3.3 - Plogue Art et Technologie, Inc) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.13 - Michael Tippach) ASUS Console (HKLM\...\{6D989E08-8143-4AB8-B0A8-5B836235CAA4}) (Version: 1.0.3 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 3.0.6 - ASUS) ASUS Screen Saver (HKLM\...\{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}) (Version: 1.0.1 - ASUS) Audacity 2.1.0 (HKLM-x32\...\Audacity_is1) (Version: 2.1.0 - Audacity Team) Authorizer 2.9.3d5 (HKLM\...\{F6762963-9AE5-4bc6-A70F-2D749F6AC02F}_is1) (Version: 2.9.3d5 - Propellerhead Software AB) AutoCAD 2014 - Français (French) (HKLM\...\{5783F2D7-D001-0000-0102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2014 - Français (French) (HKLM\...\{5783F2D7-D001-040C-2102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2014 Help - Français (French) (HKLM\...\{5783F2D7-D034-040C-0100-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden AutoCAD 2014 Language Pack - Français (French) (HKLM\...\{5783F2D7-D001-040C-1102-0060B0CE6BBA}) (Version: 19.1.18.0 - Autodesk) Hidden Autodesk 360 (HKLM\...\{52B28CAD-F49D-47BA-9FFE-29C2E85F0D0B}) (Version: 4.0.27.1 - Autodesk) Autodesk App Manager (HKLM-x32\...\{C070121A-C8C5-4D52-9A7D-D240631BD433}) (Version: 1.1.0 - Autodesk) Autodesk AutoCAD 2014 - Français (French) (HKLM\...\AutoCAD 2014 - Français (French)) (Version: 19.1.18.0 - Autodesk) Autodesk AutoCAD 2014 Help - Français (French) (HKLM\...\AutoCAD 2014 Help - Français (French)) (Version: 19.1.18.0 - Autodesk) Autodesk Content Service (HKLM-x32\...\{62F029AB-85F2-0000-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.1.3.0 - Autodesk) Autodesk Content Service Language Pack (HKLM-x32\...\{62F029AB-85F2-0001-866A-9FC0DD99DDBC}) (Version: 3.1.3.0 - Autodesk) Hidden Autodesk Express Viewer (HKLM-x32\...\Autodesk Express Viewer) (Version: 3.1 - Autodesk, Inc.) Autodesk Featured Apps (HKLM-x32\...\{F732FEDA-7713-4428-934B-EF83B8DD65D0}) (Version: 1.1.0 - Autodesk) Autodesk Material Library 2014 (HKLM-x32\...\{644F9B19-A462-499C-BF4D-300ABC2A28B1}) (Version: 4.0.19.0 - Autodesk) Autodesk Material Library Base Resolution Image Library 2014 (HKLM-x32\...\{51BF3210-B825-4092-8E0D-66D689916E02}) (Version: 4.0.19.0 - Autodesk) Autodesk ReCap (HKLM\...\{31ABA3F2-0000-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.0.43.13 - Autodesk) Autodesk ReCap Language Pack-English (HKLM\...\{31ABA3F2-0010-1033-0102-111D43815377}) (Version: 1.0.43.13 - Autodesk) Hidden Avira (HKLM-x32\...\{532da46c-2aa3-4588-a4a2-b02bc641bf95}) (Version: 1.2.119.17994 - Avira Operations GmbH & Co. KG) Avira (HKLM-x32\...\{9620D4C2-CF5B-4DBE-8103-CC9DAB0871C6}) (Version: 1.2.119.17994 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.40.12 - Avira Operations GmbH & Co. KG) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 2.6.100.6363 - BlueStack Systems, Inc.) Bome's Mouse Keyboard 2.00 (HKLM-x32\...\Bome's Mouse Keyboard_is1) (Version: - Bome Software) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Canon iP2700 series Printer Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP2700_series) (Version: - Canon Inc.) Canon MP150 (HKLM\...\{CA9A3609-3ECC-4574-8824-A8161A71A603}) (Version: - ) Cantabile 3 (HKLM\...\{BE839268-14EC-424B-B172-8B360A005E37}_is1) (Version: 3.0 - Topten Software) CardRecovery 6.00 (HKLM-x32\...\{88D68A69-D247-466B-90DD-575F6BE16230}_is1) (Version: - WinRecovery Software) CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform) Condor: The Competition Soaring Simulator 1.1.2 (HKLM-x32\...\Condor: The Competition Soaring Simulator) (Version: 1.1.2 - Condor Team) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.6.0.0283 - Disc Soft Ltd) Dexed version 0.9.4 (HKLM\...\Dexed_is1) (Version: 0.9.4 - Digital Suburban) DxO Optics Pro 9 (HKLM\...\{2807A307-808B-44FA-8C85-FFAC7A9B0579}) (Version: 9.1.1 - DxO Labs) eLicenser Control (HKLM-x32\...\eLicenser Control) (Version: - Steinberg Media Technologies GmbH) EPSON Copy Utility (HKLM-x32\...\{B69CC1A5-0404-11D6-ABCB-005004C21D30}) (Version: - ) EPSON Photo Print (HKLM-x32\...\{C24FE0B8-0A25-42E6-8532-A4ABAA1FA400}) (Version: - ) EPSON Smart Panel (HKLM-x32\...\{6C11D561-620B-47DA-A693-4C597F3CDF40}) (Version: - ) FARO LS 1.1.501.0 (64bit) (HKLM-x32\...\{8A470330-70B2-49AD-86AF-79885EF9898A}) (Version: 5.1.0.30630 - FARO Scanner Production) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 69.0.3497.100 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Handset WinDriver 1.02.03.00 (HKLM-x32\...\Handset WinDriver) (Version: 1.02.03.00 - Huawei technologies Co., Ltd.) HomeByMe (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\SquareClock_Production_HBMV1) (Version: - 3DVIA Dassault Systemes) HomeByMe (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\SquareClock_Production_HBMV1) (Version: - 3DVIA Dassault Systemes) HomeByMe (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\SquareClock_Production_HBMV1) (Version: - 3DVIA Dassault Systemes) HomeByMe (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\SquareClock_Production_HBMV1) (Version: - 3DVIA Dassault Systemes) Intel® Hardware Accelerated Execution Manager (HKLM\...\{6230EE50-BD4E-4B39-904D-3E7600053E08}) (Version: 6.2.1 - Intel Corporation) iTunes (HKLM\...\{9D0D2A8B-7E7B-4D88-8D50-24286ED6A5EB}) (Version: 12.5.5.5 - Apple Inc.) Jap32 (HKLM-x32\...\ST4UNST #1) (Version: - ) Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) Java 8 Update 144 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180144F0}) (Version: 8.0.1440.1 - Oracle Corporation) Java SE Development Kit 8 Update 144 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180144}) (Version: 8.0.1440.1 - Oracle Corporation) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) LINE (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\LINE) (Version: 5.10.0.1789 - LINE Corporation) LINE (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\LINE) (Version: 5.10.0.1789 - LINE Corporation) LINE (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\LINE) (Version: 5.10.0.1789 - LINE Corporation) LINE (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\LINE) (Version: 5.10.0.1789 - LINE Corporation) LMMS 1.1.3 (HKLM-x32\...\LMMS) (Version: 1.1.3 - LMMS Developers) MAGIX Independence Libraries Common Files (HKLM\...\{34563DEE-79CD-4E2B-B41B-41A81B8188F0}) (Version: 3.2.0.0 - MAGIX AG) Hidden MAGIX Independence Libraries Common Files (HKLM\...\MX.{34563DEE-79CD-4E2B-B41B-41A81B8188F0}) (Version: 3.2.0.0 - MAGIX AG) MAGIX Independence Pro 3.2 VST-Plugins (HKLM\...\{CE4E2B9B-9D8C-4857-8BD5-230CE6E24A3B}) (Version: 3.2.0.0 - MAGIX AG) Hidden MAGIX Independence Pro 3.2 VST-Plugins (HKLM\...\MX.{CE4E2B9B-9D8C-4857-8BD5-230CE6E24A3B}) (Version: 3.2.0.0 - MAGIX AG) MAGIX Independence Pro Software Suite 3.2 (HKLM\...\{12FBE83D-482B-4D82-BAC7-665B7DD79DB2}) (Version: 3.2.0.91 - MAGIX AG) Hidden MAGIX Independence Pro Software Suite 3.2 (HKLM-x32\...\MX.{12FBE83D-482B-4D82-BAC7-665B7DD79DB2}) (Version: 3.2.0.91 - MAGIX AG) Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) MeldaProduction MDrummer Small (HKLM-x32\...\MeldaProduction MDrummer Small) (Version: - MeldaProduction) Microsoft Office 2000 Professional (HKLM-x32\...\{0001040C-78E1-11D2-B60F-006097C998E7}) (Version: - ) Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\OneDriveSetup.exe) (Version: 17.3.4726.0226 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710F4C1C-CC18-4C49-8CBF-51240C89A1A2}) (Version: - ) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{9EDBA064-0381-3D1F-9096-CD1710366647}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: - ) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: - ) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mises à jour NVIDIA 29.1.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 29.1.0.0 - NVIDIA Corporation) Hidden Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 62.0.3 (x64 fr) (HKLM\...\Mozilla Firefox 62.0.3 (x64 fr)) (Version: 62.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 62.0.3.6848 - Mozilla) MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) nv.digital (HKLM-x32\...\{E6601849-7CD7-4426-BB04-4F0BEDB481C7}) (Version: - Nautische Veröffentlichung) NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NVIDIA Pilote graphique 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.53 - NVIDIA Corporation) OpenCPN 4.8.6 (HKLM-x32\...\OpenCPN 4.8.6) (Version: 4.8.6 - opencpn.org) Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden P1670 Guide de référence (HKLM-x32\...\P1670 Guide de référence) (Version: - ) Package de pilotes Windows - Leaf Imaging Ltd. Image (12/03/2014 1.2.0.0) (HKLM\...\B758007C752D28F7C3542875CEEBDADCAE5941AE) (Version: 12/03/2014 1.2.0.0 - Leaf Imaging Ltd.) Package de pilotes Windows - Phase One / Mamiya V-Grip USB Driver (12/03/2014 1.2.0.0) (HKLM\...\3F504CC0B024052107934E093CC26DA720256A7A) (Version: 12/03/2014 1.2.0.0 - Phase One / Mamiya) Package de pilotes Windows - Phase One A/S (WinUSB) USBDevice (12/03/2014 1.13.0.0) (HKLM\...\7C6570ABBEB2F08EFBC23ED7925AE72DA6167BD8) (Version: 12/03/2014 1.13.0.0 - Phase One A/S) Panneau de configuration NVIDIA 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 382.53 - NVIDIA Corporation) Hidden PDF Settings CC (HKLM-x32\...\{1FBAE18D-4DE4-47AA-83EC-D1B046F262DC}) (Version: 12.0 - Adobe Systems Incorporated) Hidden Pilote PCR (HKLM\...\RolandRDID0027) (Version: - Roland Corporation) Plogue sforzando v1.933 (HKLM\...\__ARIA_1014___is1) (Version: v1.933 - Plogue) proXPN 4.0.3 (HKLM-x32\...\proXPN) (Version: 4.0.3 - ) PSD Codec by Ardfry Imaging, LLC (64 bit) (HKLM\...\{AD4E43FF-20E5-4E91-9B10-5BFAB7F66EE2}) (Version: 1.0.15.0 - Ardfry Imaging, LLC) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.1.305 - Qualcomm Atheros Communications) RapidTyping 5 (HKLM\...\RapidTyping5) (Version: 5.2 - RapidTyping Software) Readon TV Movie Radio Player 7.5.0.0 (HKLM-x32\...\{03840E8D-A75E-4C49-ADFC-09A867C7F943}) (Version: 7.5.0 - Readon Technology) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.) Recover My Files (HKLM\...\Recover My Files v6_is1) (Version: 6.2.2.2509 - GetData Pty Ltd) Recuva (HKLM\...\Recuva) (Version: 1.52 - Piriform) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SageThumbs 2.0.0.22 (HKLM\...\SageThumbs) (Version: 2.0.0.22 - Cherubic Software) Samsung SideSync (HKLM-x32\...\Samsung SideSync) (Version: 4.7.5.203 - Samsung Electronics Co., Ltd.) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) SketchUp 2013 (HKLM-x32\...\{8E51BAD6-6483-4B49-8030-141808BFD4B3}) (Version: 13.0.3689 - Trimble Navigation Limited) SketchUp 2016 (HKLM\...\{4A8F2944-0D02-440C-809C-D2B17C3E6623}) (Version: 16.1.1449 - Trimble Navigation Limited) SketchUp Import for AutoCAD 2014 (HKLM-x32\...\{644E9589-F73A-49A4-AC61-A953B9DE5669}) (Version: 1.1.0 - Autodesk) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.33 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.33.105 - Skype Technologies S.A.) Steinberg VST Classics 1 64bit (HKLM\...\{AA322103-FC2B-4D86-BA6C-67D4DDB4209C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) Stellar Phoenix Photo Recovery (HKLM-x32\...\Stellar Phoenix Photo Recovery_is1) (Version: 7.0.0.0 - Stellar Information Technology Pvt Ltd.) SumatraPDF (HKLM-x32\...\SumatraPDF) (Version: 2.4 - Krzysztof Kowalczyk) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 5.7.1018 - SUPERAntiSpyware.com) SuperWave P8 (x86) (HKLM-x32\...\{B681D0E8-6676-4AB9-846F-38CA5E0B5412}) (Version: 2.4 - SuperWave) Tagaini Jisho (HKLM-x32\...\Tagaini Jisho) (Version: - ) Technitium MAC Address Changer v6.0.5 (HKLM-x32\...\TMACv6.0) (Version: 6.0.5 - Technitium) TVexe TV HD (HKLM-x32\...\TVexe TV HD) (Version: 6.0 - TVexe.com) Unity Web Player (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS) Unity Web Player (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS) Unity Web Player (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS) Unity Web Player (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\UnityWebPlayer) (Version: 5.3.6f1 - Unity Technologies ApS) Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod) Update for Japanese Microsoft IME Postal Code Dictionary (HKLM-x32\...\{15015752-9990-4516-A2B1-93823281FB8E}) (Version: 15.0.1759 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Dictionary (HKLM-x32\...\{E75B82FD-B6FD-4653-8685-F3A97BDFEA6E}) (Version: 15.0.2013 - Microsoft Corporation) Update for Japanese Microsoft IME Standard Extended Dictionary (HKLM-x32\...\{01E87699-A49D-413A-B75B-7C434FEF979C}) (Version: 15.0.2013 - Microsoft Corporation) Update for Skype for Business 2015 (KB4461446) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BFBBF6D0-F140-40E9-B5AE-BDE708FC4817}) (Version: - Microsoft) Update for Skype for Business 2015 (KB4461446) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BFBBF6D0-F140-40E9-B5AE-BDE708FC4817}) (Version: - Microsoft) Update for Skype for Business 2015 (KB4461446) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{BFBBF6D0-F140-40E9-B5AE-BDE708FC4817}) (Version: - Microsoft) VdhCoApp 1.2.4 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) Viber (HKLM-x32\...\{B974C1CA-B273-4F4A-91A0-45A24ADE8FD7}) (Version: 6.6.1.3 - Viber Media Inc.) Hidden Viber (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\{6e02a71a-b077-4226-9c03-94a515f9df53}) (Version: 6.6.1.3 - Viber Media Inc.) Viber (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\{6e02a71a-b077-4226-9c03-94a515f9df53}) (Version: 6.6.1.3 - Viber Media Inc.) Viber (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\{6e02a71a-b077-4226-9c03-94a515f9df53}) (Version: 6.6.1.3 - Viber Media Inc.) Viber (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\{6e02a71a-b077-4226-9c03-94a515f9df53}) (Version: 6.6.1.3 - Viber Media Inc.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Web Companion (HKLM-x32\...\{52e4f575-e4bb-48ce-b835-5729cbae7259}) (Version: 4.0.1780.3335 - Lavasoft) WhatsApp (HKU\S-1-5-21-565260823-566925515-856121267-1002\...\WhatsApp) (Version: 0.2.3699 - WhatsApp) WhatsApp (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\WhatsApp) (Version: 0.2.3699 - WhatsApp) WhatsApp (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\WhatsApp) (Version: 0.2.3699 - WhatsApp) WhatsApp (HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\WhatsApp) (Version: 0.2.3699 - WhatsApp) Windows Driver Package - ASUS (ATP) Mouse (09/17/2013 1.0.0.186) (HKLM\...\D9E691DCEE7D3B9B7C62A7F5C2EAABBB9335DC9A) (Version: 09/17/2013 1.0.0.186 - ASUS) WinRAR 5.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) XLN Online Installer (HKLM\...\XLN Online Installer Inno Setup ID_is1) (Version: - ) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-565260823-566925515-856121267-1002_Classes\CLSID\{6A221957-2D85-42A7-8E19-BE33950D1DEB}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-565260823-566925515-856121267-1002_Classes\CLSID\{7DE1BE5C-CEBA-4F1D-ACBC-9CE11EE9A2A1}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-565260823-566925515-856121267-1002_Classes\CLSID\{BD0DEB94-63DB-4392-9420-6EEE05094B1F}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2014\acad.exe (Autodesk, Inc.) CustomCLSID: HKU\S-1-5-21-565260823-566925515-856121267-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2014\fr-FR\acadficn.dll (Autodesk, Inc.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] () ShellIconOverlayIdentifiers: [!AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [!AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [!AsusWSShellExt_U] -> {1C5AB7B1-0B38-4EC4-9093-7FD277E2AF4D} => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\ASUSWSShellExt64.dll [2012-09-27] (ASUS Cloud Corporation.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2013-02-08] (Autodesk, Inc.) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] () ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2013-02-08] (Autodesk) ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll [2013-09-07] (Qualcomm®Atheros®) ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll [2017-06-24] () ContextMenuHandlers1: [MyPhoneExplorer] -> [CC]{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => -> Pas de fichier ContextMenuHandlers1: [SageThumbs] -> {4A34B3E3-F50E-4FF6-8979-7E4176466FF2} => C:\Program Files (x86)\SageThumbs\64\SageThumbs.dll [2015-03-10] (CherubicSoft) ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\AntiVir Desktop\shlext64.dll [2018-09-05] (Avira Operations GmbH & Co. KG) ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit) ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Pas de fichier ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Pas de fichier ContextMenuHandlers2: [AlcoholShellEx] -> [CC]{32020A01-506E-484D-A2A8-BE3CF17601C3} => -> Pas de fichier ContextMenuHandlers2: [AlcoholShellEx64] -> [CC]{AF67B665-D752-424E-9A03-C7C218F2844F} => -> Pas de fichier ContextMenuHandlers3: [BackupContextMenuExtension] -> {b1b96b20-da1d-4a3c-92c1-7229b32f2325} => C:\Windows\system32\mscoree.dll [2012-06-02] (Microsoft Corporation) ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll [2013-09-07] (Qualcomm®Atheros®) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers3: [MEGA (Context menu)] -> [CC]{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier ContextMenuHandlers4: [MEGA (Context menu)] -> [CC]{0229E5E7-09E9-45CF-9228-0228EC7D5F17} => -> Pas de fichier ContextMenuHandlers4: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Pas de fichier ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2013-09-03] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2017-06-08] (NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-03-20] () ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers6: [RecuvaShellExt] -> [CC]{435E5DF5-2510-463C-B223-BDA47006D002} => -> Pas de fichier ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files (x86)\Avira\AntiVir Desktop\shlext64.dll [2018-09-05] (Avira Operations GmbH & Co. KG) ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit) ContextMenuHandlers6: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> Pas de fichier ContextMenuHandlers6: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Pas de fichier ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0249F918-920E-4A34-94AC-D3218DE79BCF} - System32\Tasks\{7220286F-2E88-4568-87A1-511CCE4AEA67} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.21.0.104/fr/abandoninstall?page=tsMain Task: {0EEBF79A-37BF-428F-9234-011141594AFC} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-08-24] (Piriform Ltd) Task: {143F4889-A9C6-4AD1-AD8B-EE3FF40F5190} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {1EBFFF05-B5A3-4FCF-93F8-604180152C45} - System32\Tasks\AsusVibeSchedule => C:\Program Files (x86)\Asus\AsusVibe\AsusVibeLauncher.exe [2013-07-09] () Task: {20261B97-732E-4D33-870B-D0F286186847} - System32\Tasks\{421B3518-3471-42B5-97CD-121448AC76CF} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/7.28.80.101/fr/abandoninstall?page=tsProgressBar Task: {32A4E2CE-097B-4C99-B163-85AE58F9FC7F} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-10-11] (NVIDIA Corporation) Task: {341DFDCD-57F7-41FD-A6CF-85B9F38A1A77} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-08-24] (Piriform Ltd) Task: {3BECDD55-5D0B-483D-8180-9E1515BA911E} - System32\Tasks\{1A956D80-8C02-48E3-BBF9-C2353F95C4BA} => C:\Windows\system32\pcalua.exe -a C:\Windows\unvise32.exe -c C:\Program Files (x86)\Datacolor\Spyder4Express\uninstal.log Task: {3C609A9A-E205-43EB-8C54-32DE85F6BE2F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-10-11] (NVIDIA Corporation) Task: {3FF18488-B0AD-49EB-A8C1-1329CD22A68C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {51FFC954-4951-431E-9D37-37657FE3D76C} - System32\Tasks\ASUS Splendid ColorU => C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe [2013-08-16] (ASUSTeK Computer Inc.) Task: {55AA321A-4E9E-4FB7-97E6-D80F24A3A615} - System32\Tasks\avastBCLRestartS-1-5-21-565260823-566925515-856121267-1002 => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Task: {5E852103-AD41-47F8-9B99-D30D5B6B7B9C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-14] (Adobe Systems Incorporated) Task: {60030BF9-D501-4923-9415-B8DBA87CCC93} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {688D86AE-FECC-4FC7-92F5-A46FCB044D46} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {6D7B39C1-0E07-4792-BC2D-DA31A9CD75BB} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-10-11] (NVIDIA Corporation) Task: {7032693E-0F28-4C42-A862-CE1BB7C52B3F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-09-27] (AVAST Software) Task: {746B3629-1467-42B0-BE3D-C3CAA7281EA2} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-10-11] (NVIDIA Corporation) Task: {75056D8E-8B61-4058-BE30-217E0AA81B73} - System32\Tasks\ASUS Live Update2 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-08-28] (ASUSTeK Computer Inc.) Task: {97AFB106-A21B-4E86-8603-EA1C59AE4FCA} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-mathieu_ono@hotmail.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27] (Adobe Systems Incorporated) Task: {98F2D851-6946-4A2B-8E54-51690C866D1D} - System32\Tasks\ASUS Splendid ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2013-08-19] (ASUS) Task: {A0EEE056-DD90-498A-93E9-88F727859506} - System32\Tasks\ASUS Console => C:\Program Files\ASUS\ASUS Console\ASUS Console Starter.exe [2013-08-16] (ASUSTek Computer Inc.) Task: {A6C40833-0261-4D22-9BB3-89933C8F99FF} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2013-08-29] (ASUS) Task: {B34527EC-2CA3-4937-8307-29FFA2A98A30} - System32\Tasks\ASUS Live Update1 => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2013-08-28] (ASUSTeK Computer Inc.) Task: {C15D4F55-48E5-4748-A761-46D559CDF5BA} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2018-09-05] (Avira Operations GmbH & Co. KG) Task: {C677FB76-CFC6-44D3-BF0D-07D2841A64B0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {C93E3919-97D4-4B1F-8FDE-3F2D6B66C700} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-10-11] (NVIDIA Corporation) Task: {CDF050C1-9220-438B-B0C6-0C150F27FFF3} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2013-08-29] (ASUSTek Computer Inc.) Task: {CDF86D8F-D2E2-492F-B0A3-D36BD7A5C181} - System32\Tasks\{3EF5D124-E3AB-40D7-A95A-58BC8B5E1907} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.16.0.105/fr/abandoninstall?page=tsPlugin Task: {CEB6564C-4F08-4129-9D4C-54ADDB95B14D} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_Plugin.exe [2018-10-09] (Adobe Systems Incorporated) Task: {D286F617-0801-451D-9B97-AA7F69C478C4} - System32\Tasks\{F75864ED-F180-4994-A7ED-55F55F19B30F} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 Task: {D833ED40-F320-4278-A471-8EFE8F3EF7BC} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe [2013-09-23] (AsusTek) Task: {D8F8D3F9-7C7F-4C39-BE35-D6DDADD68D24} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-10-11] (NVIDIA Corporation) Task: {E90815C0-2481-4A03-A128-FEF9B5813A3D} - System32\Tasks\{D27A9D98-AA24-4477-8A37-4EED12960883} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 Task: {E9A1E023-BAA6-4827-B075-8114BC48BA5D} - System32\Tasks\{B19CBF4D-4339-49F3-8827-16589E9CFF90} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/7.28.80.101/fr/abandoninstall?page=tsProgressBar Task: {EBBD0CD0-F375-4884-BF71-F17B3C20E092} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-10-09] (Adobe Systems Incorporated) Task: {F3C6A371-4446-4DF1-AD12-A6EDB722F17E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.) Task: {F727D5A7-AA4C-482E-B3D8-8B1D32DD0AAD} - System32\Tasks\{D6537F3D-224B-4717-9C23-C9FD1D564275} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/6.16.0.105/fr/go/help.faq.installer?LastError=1638 Task: {F8A50013-82F8-4BEA-ADFB-0FE16DEC8C14} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Mathieu\Desktop\B\Tor Browser\Stаrt Tоr Вrowser.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Windows\Start Menu\LINЕ.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.rehcnualenil.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stаrt Тоr Brоwser.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Gоogle Сhrоme.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.emorhc.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Lаunch Intеrnet Eхрlоrer Brоwser.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.erolpxei.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gоogle Chrоmе.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.emorhc.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Gоoglе Сhrome.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.emorhc.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\LINЕ.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.rehcnualenil.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozilla Firеfох (2).lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozilla Firеfох (3).lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozilla Firеfох.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\Users\Mathieu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Мozillа Firеfох.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gоogle Chrоmе.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.emorhc.bat (Pas de fichier) <==== Cyrillic Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Мozilla Firеfох.lnk -> C:\Users\Mathieu\AppData\Roaming\Browsers\exe.xoferif.bat (Pas de fichier) <==== Cyrillic ==================== Modules chargés (Avec liste blanche) ============== 2016-10-31 21:45 - 2017-06-24 22:04 - 000598528 _____ () C:\Users\Mathieu\AppData\Local\MEGAsync\ShellExtX64.dll 2014-03-20 12:24 - 2014-03-20 12:24 - 000667808 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll 2013-08-29 18:01 - 2013-08-29 18:01 - 000031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll 2017-01-13 06:56 - 2017-01-13 06:56 - 000092472 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2017-01-13 06:56 - 2017-01-13 06:56 - 001353528 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2012-12-19 08:10 - 2012-12-19 08:10 - 000072192 _____ () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe 2017-06-10 17:10 - 2017-10-11 03:05 - 001267136 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-05-21 05:12 - 2015-05-21 05:12 - 000102264 _____ () C:\Program Files (x86)\proXPN\bin\proXPNService.exe 2013-12-27 14:26 - 2009-04-17 12:01 - 000247152 _____ () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe 2014-05-30 04:41 - 2014-05-30 04:41 - 000176048 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll 2018-10-11 20:04 - 2018-10-11 20:04 - 003171200 _____ () C:\Users\Mathieu\Desktop\ZHPDiag3.exe 2013-08-19 19:16 - 2013-08-19 19:16 - 000015440 _____ () C:\Program Files (x86)\ASUS\Splendid\DetectDisplayDC.dll 2013-08-16 12:03 - 2013-08-16 12:03 - 000023040 _____ () C:\Program Files (x86)\ASUS\Splendid\CCTAdjust.dll 2018-08-14 12:10 - 2018-08-14 12:09 - 001204472 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\crypto-42.dll 2018-08-14 12:10 - 2018-08-14 12:09 - 000243352 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\ssl-44.dll 2014-10-23 12:27 - 2014-10-23 12:27 - 000119822 _____ () C:\Program Files (x86)\proXPN\bin\libgcc_s_dw2-1.dll 2014-10-23 12:27 - 2014-10-23 12:27 - 001026574 _____ () C:\Program Files (x86)\proXPN\bin\libstdc++-6.dll 2014-10-16 12:34 - 2014-10-16 12:34 - 003758809 _____ () C:\Program Files (x86)\proXPN\bin\icuin53.dll 2014-10-16 12:33 - 2014-10-16 12:33 - 002093901 _____ () C:\Program Files (x86)\proXPN\bin\icuuc53.dll 2014-10-16 12:34 - 2014-10-16 12:34 - 021565880 _____ () C:\Program Files (x86)\proXPN\bin\icudt53.dll 2017-06-10 17:10 - 2017-10-11 03:05 - 001040320 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2013-12-27 14:05 - 2013-06-23 22:05 - 001199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Windows:CM_36faabd924501fcd2f743302621d89eb425ec11f74fef19a5e0fe69c3f0b5201 [74] AlternateDataStreams: C:\Windows:CM_e0501b65315a77c6cde279a3a8d62a1a6c48bf2c2e353a3654218165115f1673 [74] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0] AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`27hfm [0] AlternateDataStreams: C:\ProgramData\Temp:373E1720 [118] AlternateDataStreams: C:\ProgramData\Temp:4ABA35EE [124] AlternateDataStreams: C:\ProgramData\Temp:972E3A44 [127] AlternateDataStreams: C:\ProgramData\Temp:C76EDAC3 [153] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) HKU\S-1-5-21-565260823-566925515-856121267-1002\Software\Classes\.scr: SageThumbsImage.scr => <==== ATTENTION ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-565260823-566925515-856121267-1002\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\localhost -> localhost ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2012-07-26 07:26 - 2012-07-26 07:26 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-565260823-566925515-856121267-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Mathieu\Desktop\697_85422_vignette_82-PORT-ANTIQE-MHM.jpeg HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\Control Panel\Desktop\\Wallpaper -> C:\Users\Mathieu\Desktop\697_85422_vignette_82-PORT-ANTIQE-MHM.jpeg HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\Control Panel\Desktop\\Wallpaper -> C:\Users\Mathieu\Desktop\697_85422_vignette_82-PORT-ANTIQE-MHM.jpeg HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\Control Panel\Desktop\\Wallpaper -> C:\Users\Mathieu\Desktop\697_85422_vignette_82-PORT-ANTIQE-MHM.jpeg DNS Servers: 10.188.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. HKLM\...\StartupApproved\StartupFolder: => "Microsoft Office.lnk" HKLM\...\StartupApproved\StartupFolder: => "BackupRemind.lnk" HKLM\...\StartupApproved\StartupFolder: => "SpyderUtility.lnk" HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run: => "VDownloader" HKLM\...\StartupApproved\Run: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKLM\...\StartupApproved\Run32: => "ASUSPRP" HKLM\...\StartupApproved\Run32: => "ASUSWebStorage" HKLM\...\StartupApproved\Run32: => "mcpltui_exe" HKLM\...\StartupApproved\Run32: => "AdobeCS6ServiceManager" HKLM\...\StartupApproved\Run32: => "APSDaemon" HKLM\...\StartupApproved\Run32: => "BDRegion" HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "KiesTrayAgent" HKLM\...\StartupApproved\Run32: => "UpdatePSTShortCut" HKLM\...\StartupApproved\Run32: => "RemoteControl10" HKLM\...\StartupApproved\Run32: => "QuickTime Task" HKLM\...\StartupApproved\Run32: => "SwitchBoard" HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud" HKLM\...\StartupApproved\Run32: => "AdobeCEPServiceManager" HKLM\...\StartupApproved\Run32: => "iTunesHelper" HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "VDownloader" HKLM\...\StartupApproved\Run32: => "AvastUI.exe" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "KiesAirMessage" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "SUPERAntiSpyware" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "Autodesk Sync" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "Windows Shutdown Assistant" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "Remote Mouse" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "Viber" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "AlcoholAutomount" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "SideSync" HKU\S-1-5-21-565260823-566925515-856121267-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "KiesAirMessage" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "SUPERAntiSpyware" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "Autodesk Sync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "Windows Shutdown Assistant" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "Remote Mouse" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "Viber" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "AlcoholAutomount" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "SideSync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194323990\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "KiesAirMessage" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "SUPERAntiSpyware" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "Autodesk Sync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "Windows Shutdown Assistant" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "Remote Mouse" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "Viber" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "AlcoholAutomount" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "SideSync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018194915190\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\StartupFolder: => "Envoyer à OneNote.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\StartupFolder: => "MEGAsync.lnk" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "KiesPreload" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "KiesAirMessage" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "SUPERAntiSpyware" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "CCleaner Monitoring" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "Autodesk Sync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "Windows Shutdown Assistant" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "Remote Mouse" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "Viber" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "AlcoholAutomount" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "SideSync" HKU\S-1-5-21-565260823-566925515-856121267-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10112018202228720\...\StartupApproved\Run: => "CCleaner Smart Cleaning" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [TCP Query User{CA926CA1-8FCD-4358-AD2E-A42A1A49598E}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{47CADCB4-EFCB-4445-9FEE-1A2E5CDD76E2}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{B67A2B5B-2889-4447-B831-FF2094A6B7CC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{BA64E2B9-3477-4E27-8734-E00659C9AC64}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{684F5B7B-8E3B-4377-975A-E39BF77B0F7B}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{83B9100B-18B7-44E6-9D37-B62F304CAF24}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{310E2950-5077-48E1-BE00-9CF4835C9B72}] => (Allow) C:\Program Files (x86)\Apowersoft\Windows Shutdown Assistant\Windows Shutdown Assistant.exe FirewallRules: [{8BDFFE4E-16BB-447B-91F0-C923223BD1E7}] => (Allow) C:\Program Files (x86)\Apowersoft\Windows Shutdown Assistant\Windows Shutdown Assistant.exe FirewallRules: [{FA405371-C72D-467B-B0C9-239C297CE9C9}] => (Allow) LPort=50248 FirewallRules: [TCP Query User{3E8543E8-A46B-4D91-95A3-283D923F069C}C:\program files\phase one\capture one 8\captureone.exe] => (Block) C:\program files\phase one\capture one 8\captureone.exe FirewallRules: [UDP Query User{83181626-35DB-4957-94F8-28254A220053}C:\program files\phase one\capture one 8\captureone.exe] => (Block) C:\program files\phase one\capture one 8\captureone.exe FirewallRules: [{74647922-6DA2-4818-B111-CC6B867F0CE7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{8E03CCC1-33A6-47BF-A1DC-98F7B085AA97}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{F48E693F-3CEC-4BED-A70F-992FC88A4789}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{BF3817EA-2557-4941-A3F6-32951B003561}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{8548A129-F813-42AF-BB4A-E987B2E0CEA4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{D06B41B9-4A2F-4752-B479-25CCEC4C3D72}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{9016A6C9-6155-4F12-B006-48FF599BA96E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{E276915A-582F-4569-BF0C-F84F551D59E6}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [TCP Query User{B7C47605-13A3-4583-B76D-BBC9999C4805}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{7F410610-DFBE-458D-92A2-ADC47573FFFA}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [{F8FF5BDF-46C3-4E36-B488-DDE7CFFA68FA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{D22488F6-350D-4F1A-9218-4043391FBFA4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{0E2E9DE1-6E24-4E18-924F-410347CE4845}C:\program files (x86)\sketchup\sketchup 2013\sketchup.exe] => (Allow) C:\program files (x86)\sketchup\sketchup 2013\sketchup.exe FirewallRules: [UDP Query User{628F5028-5237-4ADD-BE6E-0F6DFC4FBA89}C:\program files (x86)\sketchup\sketchup 2013\sketchup.exe] => (Allow) C:\program files (x86)\sketchup\sketchup 2013\sketchup.exe FirewallRules: [{BE272BEE-4896-40B7-B9B5-AAE580C98E24}] => (Allow) C:\Program Files (x86)\MediaMonkey\MediaMonkey.exe FirewallRules: [{467AD40D-13CA-4EEB-931F-0B55EF397411}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{BCD6ECAF-D336-47DF-A790-F644E7BEB915}] => (Allow) C:\Users\Mathieu\AppData\Local\Line\bin\5.0.1.1394\LINE.exe FirewallRules: [{9B37D99F-4F29-4D61-8404-19CF858B6EE4}] => (Allow) C:\Users\Mathieu\AppData\Local\Line\bin\5.0.1.1394\LINE.exe FirewallRules: [{3FD3ADE7-394B-4CD2-A6C8-27CF4860604E}] => (Allow) C:\Users\Mathieu\AppData\Local\Line\bin\5.0.1.1394\LineUpdater.exe FirewallRules: [{5058B980-25BA-4E8F-B96F-F1BB5C9378DE}] => (Allow) C:\Users\Mathieu\AppData\Local\Line\bin\5.0.1.1394\LineUpdater.exe FirewallRules: [{2A7D137E-BF25-4857-8692-23A1CFE188BA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{B666D499-7F79-4C2C-BCFD-45ACB682D8DF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{FDC95CAB-4E23-43A0-A107-9C80E1FB6F5B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{DEFC34B7-4D75-4E59-A3E7-AE242CD7667A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{D41F0F18-3348-4ACB-A6BD-AF8A15DA9AF7}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe FirewallRules: [{FAA251CF-24CA-4142-8508-2CF00ED52CBC}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe FirewallRules: [TCP Query User{A4A66E92-229D-49A1-BD5C-C607FC2F9F0A}C:\users\mathieu\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\mathieu\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [UDP Query User{AB8EC748-DDB3-4063-B589-4DE0D68CCFAF}C:\users\mathieu\appdata\local\popcorn-time\popcorn-time.exe] => (Allow) C:\users\mathieu\appdata\local\popcorn-time\popcorn-time.exe FirewallRules: [{F98C263C-FF55-4F2D-96EA-E1ECC25D3608}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe FirewallRules: [{EF73F352-F84F-4C9C-B852-00E1A04DDFD8}] => (Allow) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe FirewallRules: [{97C3BD39-8F04-4CDC-944F-E1D151483576}] => (Allow) C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe FirewallRules: [{62133994-CF64-4890-AD69-6FD704CC2642}] => (Allow) C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe FirewallRules: [{C3CB230F-EE82-4767-88D9-2D2456FE6916}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{97837F30-55BF-455B-A622-6F7C36B43237}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{083470AF-0034-4FA8-9EF2-5427691E8968}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{86F4992B-F20D-416A-A6EF-2C88B2354D99}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [TCP Query User{C1341338-9DA7-402C-89EF-04D60AC1FF85}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{A35F1850-AB3B-423E-835D-BC5C4D915BDC}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{460AE529-D74F-47D9-9989-3780A3E9FADD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{2D3176A6-C517-4474-B9DF-4B810E016DAB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{8209A8B1-B28C-4F51-8CCC-C86FC4BE633F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{5CD53D54-A930-45AB-B693-1FCCBC143730}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{EDA310CF-37CE-41AC-9626-B5459663A05D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{68114A1C-AA6A-4ACB-A572-0883EE5A10E8}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe FirewallRules: [{8F50967B-CEA2-4D66-BC3A-D153EBC1252A}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe FirewallRules: [{A19258C7-BB76-4703-8012-918E1BBAE502}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Points de restauration ========================= 22-09-2018 00:01:56 Point de contrôle planifié 30-09-2018 10:53:39 Point de contrôle planifié 07-10-2018 11:57:41 Point de contrôle planifié 11-10-2018 19:53:48 1 ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Android ADB Interface Description: Android ADB Interface Class Guid: {3f966bd9-fa04-4ec5-991c-d326973b5128} Manufacturer: Google, Inc. Service: WinUSB Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (10/11/2018 08:09:10 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme ZHPDiag3.exe version 2018.10.9.181 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1c4 Heure de début : 01d4618d0262a388 Heure de fin : 4294967295 Chemin d’accès de l’application : C:\Users\Mathieu\Desktop\ZHPDiag3.exe ID de rapport : bfcf09b1-cd80-11e8-861c-240a6437475a Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (10/11/2018 07:42:23 PM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Error: (10/11/2018 07:42:23 PM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Error: (10/11/2018 07:42:23 PM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Error: (10/11/2018 07:42:23 PM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Error: (10/11/2018 10:41:47 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (10/11/2018 10:32:21 AM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Error: (10/11/2018 10:32:21 AM) (Source: TabletServiceWacom) (EventID: 0) (User: ) Description: Unhandled error opening USB device Erreurs système: ============= Error: (10/11/2018 08:22:29 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORITE NT) Description: 0x8000002a116\??\C:\PROGRAMDATA\MALWAREBYTES\MBAMSERVICE\S-1-5-21-565260823-566925515-856121267-1002-10112018202228720-ntuser.dat Error: (10/11/2018 08:22:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Malwarebytes Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 5000 millisecondes : Redémarrer le service. Error: (10/11/2018 08:05:57 PM) (Source: Schannel) (EventID: 4119) (User: AUTORITE NT) Description: Une alerte irrécupérable a été reçue du point de terminaison distant. Le code d’alerte irrécupérable défini par protocole de TLS est 70. Error: (10/11/2018 08:05:23 PM) (Source: Schannel) (EventID: 4119) (User: AUTORITE NT) Description: Une alerte irrécupérable a été reçue du point de terminaison distant. Le code d’alerte irrécupérable défini par protocole de TLS est 70. Error: (10/11/2018 07:49:16 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORITE NT) Description: 0x8000002a116\??\C:\PROGRAMDATA\MALWAREBYTES\MBAMSERVICE\S-1-5-21-565260823-566925515-856121267-1002-10112018194915190-ntuser.dat Error: (10/11/2018 07:43:25 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORITE NT) Description: 0x8000002a116\??\C:\PROGRAMDATA\MALWAREBYTES\MBAMSERVICE\S-1-5-21-565260823-566925515-856121267-1002-10112018194323990-ntuser.dat Error: (10/11/2018 07:42:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service WC Assistant n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (10/11/2018 07:42:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Update service n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Windows Defender: =================================== Date: 2014-04-21 08:48:12.172 Description: L'analyse Windows Defender a été arrêtée avant la fin. ID de l'analyse : {6B4903EB-965C-48D9-B070-AFCCE442521D} Type de l'analyse : Logiciel anti-programme malveillant Paramètres de l'analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2014-04-20 11:02:26.800 Description: L'analyse Windows Defender a été arrêtée avant la fin. ID de l'analyse : {7F51757B-E385-4E79-9953-592ED10D0AB9} Type de l'analyse : Logiciel anti-programme malveillant Paramètres de l'analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2014-04-20 10:52:37.125 Description: L'analyse Windows Defender a été arrêtée avant la fin. ID de l'analyse : {76B476FE-D456-4CA1-8565-A56D98352154} Type de l'analyse : Logiciel anti-programme malveillant Paramètres de l'analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2014-04-19 08:16:59.460 Description: L'analyse Windows Defender a été arrêtée avant la fin. ID de l'analyse : {56FBE958-DCC2-44C0-8DAB-1E17415541A2} Type de l'analyse : Logiciel anti-programme malveillant Paramètres de l'analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2014-04-17 08:06:35.844 Description: L'analyse Windows Defender a été arrêtée avant la fin. ID de l'analyse : {D460EB33-5F15-4263-8A26-6811144A9E3C} Type de l'analyse : Logiciel anti-programme malveillant Paramètres de l'analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2014-04-11 08:09:33.472 Description: Windows Defender a rencontré une erreur lors d'une tentative de mise à jour des signatures. Version de la nouvelle signature : Version de la signature précédente : 1.169.2210.0 Source des mises à jour : Serveur Microsoft Update Type de signature : Antivirus Type de mise à jour : Complète Utilisateur : AUTORITE NT\Système Version du moteur actuelle : Version précédente du moteur : 1.1.10401.0 Code d'erreur : 0x80240016 Description de l'erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. Date: 2014-04-11 08:09:33.471 Description: Windows Defender a rencontré une erreur lors d'une tentative de mise à jour des signatures. Version de la nouvelle signature : Version de la signature précédente : 1.169.2210.0 Source des mises à jour : Serveur Microsoft Update Type de signature : Antivirus Type de mise à jour : Complète Utilisateur : AUTORITE NT\Système Version du moteur actuelle : Version précédente du moteur : 1.1.10401.0 Code d'erreur : 0x80240016 Description de l'erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. Date: 2014-04-11 08:09:33.471 Description: Windows Defender a rencontré une erreur lors d'une tentative de mise à jour des signatures. Version de la nouvelle signature : Version de la signature précédente : 1.169.2210.0 Source des mises à jour : Serveur Microsoft Update Type de signature : Antivirus Type de mise à jour : Complète Utilisateur : AUTORITE NT\Système Version du moteur actuelle : Version précédente du moteur : 1.1.10401.0 Code d'erreur : 0x80240016 Description de l'erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support. CodeIntegrity: =================================== Date: 2015-03-28 09:59:41.053 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-28 09:59:16.893 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-28 09:56:07.792 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-28 09:54:41.597 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\hmpalert.dll because the set of per-page image hashes could not be found on the system. Date: 2015-03-28 09:29:27.911 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\hmpalert.dll with signing level Unsigned while the system requires signing level 6 or better to load. Date: 2015-03-28 09:29:10.704 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\SysWOW64\hmpalert.dll with signing level Unsigned while the system requires signing level Microsoft or better to load. Date: 2015-03-28 09:29:09.582 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\SysWOW64\hmpalert.dll with signing level Unsigned while the system requires signing level Microsoft or better to load. Date: 2015-03-28 09:29:08.410 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume4\Windows\SysWOW64\hmpalert.dll with signing level Unsigned while the system requires signing level Microsoft or better to load. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i7-4700HQ CPU @ 2.40GHz Pourcentage de mémoire utilisée: 30% Mémoire physique - RAM - totale: 16267.18 MB Mémoire physique - RAM - disponible: 11324.57 MB Mémoire virtuelle totale: 16267.18 MB Mémoire virtuelle disponible: 11433.2 MB ==================== Lecteurs ================================ Drive c: (OS) (Fixed) (Total:279.45 GB) (Free:66.58 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive d: (Data) (Fixed) (Total:398.07 GB) (Free:35.73 GB) NTFS \\?\Volume{bb2d121b-633f-4fd4-92e4-359a743d26c4}\ (Recovery) (Fixed) (Total:0.88 GB) (Free:0.52 GB) NTFS \\?\Volume{040d6739-6514-45b7-bb22-956baf16f75e}\ (Restore) (Fixed) (Total:20.01 GB) (Free:5.88 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 698.6 GB) (Disk ID: 1D35368E) Partition: GPT. ==================== Fin de Addition.txt ============================