Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 03-08-2016 Exécuté par mymy- (2018-11-05 19:53:34) Exécuté depuis C:\Users\mymy-\Downloads Windows 10 Home Version 1803 (X64) (2018-05-30 17:06:40) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1797015765-1254167479-3479602176-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1797015765-1254167479-3479602176-503 - Limited - Disabled) Invité (S-1-5-21-1797015765-1254167479-3479602176-501 - Limited - Disabled) mymy- (S-1-5-21-1797015765-1254167479-3479602176-1001 - Administrator - Enabled) => C:\Users\mymy- WDAGUtilityAccount (S-1-5-21-1797015765-1254167479-3479602176-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: adaware antivirus (Enabled - Up to date) {2C8A0DAA-E78D-4944-DB01-263173C8FFD9} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Out of date) {4C1D9672-63FE-5C90-371E-8FDA591C5B75} AS: adaware antivirus (Enabled - Up to date) {97EBEC4E-C1B7-46CA-E1B1-1D43084FB564} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) µTorrent (HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\uTorrent) (Version: 3.5.0.43804 - BitTorrent Inc.) adaware antivirus (HKLM\...\{079E0D92-67D4-4915-8A0A-B8C990BECA79}_AdAwareUpdater) (Version: 12.4.930.11587 - adaware) AdAwareInstaller (Version: 12.4.930.11587 - adaware) Hidden AdAwareProxyEngine (Version: 1.0.0.8 - adaware) Hidden AdAwareUpdater (Version: 12.4.930.11587 - adaware) Hidden Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.122 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.2.8.198 - Adobe Systems, Inc.) AntimalwareEngine (Version: 3.0.160.0 - adaware) Hidden AntispamEngine (Version: 2.5.337.0 - adaware) Hidden AvcEngine (Version: 3.13.18248.0 - adaware) Hidden Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bluetooth(R) Link (HKLM\...\{936D21BF-3344-4B20-BC4C-3B67580C19F5}) (Version: 4.3.04 - Toshiba Corporation) CodeBlocks (HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\CodeBlocks) (Version: 16.01 - The Code::Blocks Team) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.24.51 - Conexant) Creativerse (HKLM\...\Steam App 280790) (Version: - Playful Corporation) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Discord (HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\Discord) (Version: 0.0.301 - Discord Inc.) Dropbox (HKLM-x32\...\Dropbox) (Version: 60.4.107 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.141.1 - Dropbox, Inc.) Hidden DTS Sound (HKLM-x32\...\{793B70D2-41E9-46AB-9DDC-B34C99D07DB5}) (Version: 1.02.4100 - DTS, Inc.) ELAN Touchpad 15.8.12.5_X64_WHQL (HKLM\...\Elantech) (Version: 15.8.12.5 - ELAN Microelectronic Corp.) EPSON SX430 Series Printer Uninstall (HKLM\...\EPSON SX430 Series) (Version: - SEIKO EPSON Corporation) FirewallEngine (Version: 3.0.0.21 - adaware) Hidden Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel(R) Chipset Device Software (x32 Version: 10.1.1.7 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1167 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4281 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.5.0.1081 - Intel Corporation) Intel(R) WiDi (HKLM\...\{5DD8D7E4-87F1-4134-AD28-4228FB1A03BA}) (Version: 6.0.44.0 - Intel Corporation) Intel(R) WiDi Software Asset Manager (x32 Version: 1.1.383 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation) Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation) League of Legends (HKLM-x32\...\League of Legends 4.1.2) (Version: 4.1.2 - Riot Games) League of Legends (x32 Version: 4.1.2 - Riot Games) Hidden Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{ba25c46f-28f8-4449-97ab-7bb20f3f9a9c}) (Version: 20.30.0 - Intel Corporation) Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes) ManiaPlanet (HKLM-x32\...\ManiaPlanet_is1) (Version: - Nadeo) Microsoft Office 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.11001.20074 - Microsoft Corporation) Microsoft Office 365 ProPlus - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.11001.20074 - Microsoft Corporation) Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\OneDriveSetup.exe) (Version: 18.172.0826.0010 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mises à jour NVIDIA 2.11.3.5 (Version: 2.11.3.5 - NVIDIA Corporation) Hidden Mozilla Firefox 63.0.1 (x64 fr) (HKLM\...\Mozilla Firefox 63.0.1 (x64 fr)) (Version: 63.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 63.0.1.6877 - Mozilla) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.1 - Notepad++ Team) NVIDIA GeForce Experience 2.11.3.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.11.3.5 - NVIDIA Corporation) NVIDIA PhysX System Software 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (x32 Version: 16.0.11001.20074 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (Version: 16.0.11001.20074 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (Version: 16.0.11001.20074 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (x32 Version: 16.0.11001.20074 - Microsoft Corporation) Hidden OnlineThreatsEngine (Version: 3.0.1.23 - adaware) Hidden osu! (HKLM-x32\...\{57bab5ba-fab5-4ba5-a130-07d56c93c897}) (Version: latest - ppy Pty Ltd) Panneau de configuration NVIDIA 376.54 (Version: 376.54 - NVIDIA Corporation) Hidden Pixelmon Launcher (Beta) (HKLM-x32\...\Pixelmon Launcher (Beta) 2.1.2) (Version: 2.1.2 - Ikara Software Limited) Pixelmon Launcher (Beta) (x32 Version: 2.1.2 - Ikara Software Limited) Hidden Racket v6.10.1 (x86_64) (HKLM-x32\...\Racket-x86_64-6.10.1) (Version: 6.10.1 - PLT Design Inc.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10130.29089 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek) RomStation (HKLM-x32\...\{223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1) (Version: - RomStation) SHIELD Streaming (Version: 7.1.0280 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.11.3.5 - NVIDIA Corporation) Hidden Skype™ 7.40 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.40.104 - Skype Technologies S.A.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.7.64.0 - Safer-Networking Ltd.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TOSHIBA PC Health Monitor (HKLM\...\{B507386D-1F61-4E55-B05B-F56ACB0086B3}) (Version: 5.01.02.6400 - Toshiba Corporation) TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 3.3.00.8003 - Toshiba Corporation) TOSHIBA Service Station (HKLM\...\{1404E6C5-5E3A-48D5-BE44-8C63CFB2A7C9}) (Version: 3.1.2.0 - Toshiba Corporation) TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 2.02.0002.02 - Toshiba Corporation) TOSHIBA System Settings (HKLM\...\{B040D5C9-C9AA-430A-A44E-696656012E61}) (Version: 3.0.7.6401 - Toshiba Corporation) Toshiba TEMPRO (HKLM-x32\...\{E4C7D9D7-19D4-4623-AF0C-EA313C466411}) (Version: 5.0.0 - Toshiba Europe GmbH) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-3) (Version: 1.0.33.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.33.0 (Version: 1.0.33.0 - LunarG, Inc.) Hidden Vulkan Run Time Libraries 1.1.70.0 (Version: 1.1.70.0 - LunarG, Inc.) Hidden XAMPP (HKLM-x32\...\xampp) (Version: 7.0.9-1 - Bitnami) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{389510b7-9e58-40d7-98bf-60b911cb0ea9}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{94269C4E-071A-4116-90E6-52E557067E4E}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001_Classes\CLSID\{A926714B-7BFC-4D08-A035-80021395FFA8}\localserver32 -> C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\18.172.0826.0010\FileCoAuth.exe (Microsoft Corporation) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {042D8A51-5878-4000-9C10-C04AFF122A1F} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand Task: {0A7AA876-862F-4F81-AA4B-B73950FA632C} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates Task: {0AC579FA-E6FA-4722-A217-5B96BCFC98E9} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2018-04-12] (Microsoft Corporation) Task: {108FC300-C6A5-45A2-808D-20B6F14F89C6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-11-02] (Microsoft Corporation) Task: {11F5D20A-8FD4-43A0-929C-A5413CE70DEE} - System32\Tasks\Microsoft\Windows\SMB\UninstallSMB1ClientTask => powershell.exe -ExecutionPolicy Unrestricted -NonInteractive -NoProfile -WindowStyle Hidden "& %windir%\system32\WindowsPowerShell\v1.0\Modules\SmbShare\DisableUnusedSmb1.ps1 -Scenario Client" Task: {1BE936D4-EE40-4F04-84E0-18FFD27C0A6A} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair => C:\Windows\system32\bcdboot.exe [2018-04-12] (Microsoft Corporation) Task: {2231CAFE-FABE-41F5-A0B3-842D9319DBF9} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\Windows\system32\AppHostRegistrationVerifier.exe [2018-05-28] (Microsoft Corporation) Task: {27ED7998-8629-4CD7-9517-E1CC9BA69DD0} - System32\Tasks\{263A1146-DEEC-400C-ABA9-8EBA754B124A} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends\" Task: {294EF281-56B6-4F71-8115-BAC2919EF034} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task Task: {29F3A47A-C0DC-48D8-ACAF-89413EE0731D} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => C:\Windows\System32\UNP\UpdateNotificationMgr.exe [2018-07-15] (Microsoft Corporation) Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask Task: {2BB8626D-BA4B-4B4F-95FB-8EA60C1602FC} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2018-10-10] (AVAST Software) Task: {2DBD790D-172A-4CFA-B3F7-824D7509680F} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration => Sc.exe start pushtoinstall registration Task: {2F4D1AF8-7057-40C6-A55E-FF0D9D5D798D} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-21] (Dropbox, Inc.) Task: {40854E4C-230E-45DF-A4AB-3EA30A04A5E9} - System32\Tasks\{3F028AF6-BC54-4C53-B346-4AF515BA9D23} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends\" Task: {430852CB-A87C-492E-A659-075C7BF1710C} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates Task: {4B470AED-728C-4F28-9D20-CDA96172F67D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2018-04-20] (Safer-Networking Ltd.) Task: {4BA01326-C353-412B-9A7A-F1D5D22CB666} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-10-10] (Adobe Systems Incorporated) Task: {4EC2546D-AF62-46CA-8FD7-1DB71CB72A8D} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-06-05] (Intel Corporation) Task: {51D31EBF-545E-411D-A21A-CB34004CC384} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh Task: {541BA5BF-1736-4A3E-B1E5-CE1C9EE13043} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdates Task: {557C7D6B-9167-4FFE-A794-DB04C453FE8D} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\Windows\system32\ClipRenew.exe [2018-04-12] (Microsoft Corporation) Task: {5648D09D-4DE2-419D-84A8-175B17B67D21} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-11-02] (Microsoft Corporation) Task: {577C3956-E492-42A5-AEFB-FDC54A537C64} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange Task: {57A7E0DF-F70E-43B1-AA2C-5BA67DBBE753} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask Task: {5DB4FD20-4FF2-4C58-9801-ADD6F0149633} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task Task: {62331915-A3E9-4B6E-9686-86034377E8CF} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications Task: {65A34F07-723D-4150-B109-13BD1AE3DFAA} - System32\Tasks\Microsoft\Windows\InstallService\SmartRetry Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () Task: {6A6E48AF-FE3D-4A65-9C46-8F1D91E1A3B8} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2016-06-21] (Dropbox, Inc.) Task: {6DE4F7DC-0B8D-404A-A6C9-83241658F8CA} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\Windows\system32\AppHostRegistrationVerifier.exe [2018-05-28] (Microsoft Corporation) Task: {7138D0D3-1873-4A77-86CF-4840F491C90F} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\Windows\System32\XblGameSaveTask.exe [2018-04-12] (Microsoft Corporation) Task: {721812CE-B726-403F-B673-579CC3CAE7CA} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {7301C48A-5D87-4D27-A8AE-07D12C5980F0} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe <==== ATTENTION Task: {73AF2872-AA17-4468-B80A-61F72D248E32} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-23] (Intel Corporation) Task: {749E286C-C205-4C7C-B742-BE5023BF06DE} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck => Sc.exe start pushtoinstall login Task: {78BABCCD-20B8-49B7-B4F8-87490C41C875} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdatesAsUser Task: {7EAE5A6B-00F4-4B9F-A255-E1C163B587A1} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession Task: {89EFB394-1BD2-4C0D-8894-7B816D759AB9} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe <==== ATTENTION Task: {8CCDCCC3-88F0-4860-84BE-5AC16A1C6FA9} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => Rundll32.exe %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance Task: {8F255F88-A87A-495F-B828-A4AFEC70BDB0} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache => C:\Windows\system32\dxgiadaptercache.exe [2018-04-12] (Microsoft Corporation) Task: {8FA6BC5F-7A5B-4FDB-8118-262175420E00} - System32\Tasks\Microsoft\Windows\SMB\UninstallSMB1ServerTask => powershell.exe -ExecutionPolicy Unrestricted -NonInteractive -NoProfile -WindowStyle Hidden "& %windir%\system32\WindowsPowerShell\v1.0\Modules\SmbShare\DisableUnusedSmb1.ps1 -Scenario Server" Task: {91B4F107-1765-4456-AB65-FE683925E89F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-11-02] (Microsoft Corporation) Task: {97E8D66D-0085-423C-BA11-DD777A1258AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask => C:\Windows\system32\MDMAgent.exe [2018-04-12] (Microsoft Corporation) Task: {983CF9F6-D8B2-41C1-9BC1-D2415B827E7E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-24] (Microsoft Corporation) Task: {9A9AE687-2E4B-4170-A625-5E1BBACB722F} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-06-23] (Intel Corporation) Task: {A167F6E0-ED47-419C-807E-2A11ECBA98D4} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation Task: {A305A22D-027E-43B8-A4A6-13FE8E12A9E5} - System32\Tasks\Microsoft\Windows\Setup\Notifier => C:\Windows\system32\Notifier.exe Task: {A305A840-EC8B-4C66-8EA8-5FF15F129CD2} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [2018-04-12] (Microsoft Corporation) Task: {A46DBD8B-CADC-4BF7-B793-E3C9BDC92474} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-11-02] (Microsoft Corporation) Task: {A6AF6D51-00D6-4F54-87EB-035F64FC77A0} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {B0287026-80B9-4C31-A697-AEC8CE912205} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2018-04-20] (Safer-Networking Ltd.) Task: {B0952E0A-C54F-4E8B-95E9-90E560086B37} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand Task: {B14C88F4-4AAC-4F00-A94E-8EA180D7AEDC} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense Task: {B27C3156-561E-4D4D-A69D-A24DC26AF98B} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2015-07-30] (TOSHIBA Corporation) Task: {B2F4AC84-A8D0-4524-9363-BFF5A5911A00} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask Task: {B69A5F86-7C33-4981-868A-E42DB16AE6BD} - \CCleanerSkipUAC -> Pas de fichier <==== ATTENTION Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - System32\Tasks\Microsoft\Windows\Speech\HeadsetButtonPress => C:\Windows\system32\speech_onecore\common\SpeechRuntime.exe [2018-05-28] (Microsoft Corporation) Task: {C30F1418-6F61-4BA5-8E15-05E02898E6E8} - System32\Tasks\dts_apo_service_task => C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_task.exe [2015-05-27] () Task: {C85E47D3-E9F4-46A4-B5F9-11B4E7E729BC} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2015-11-17] (Toshiba Europe GmbH) Task: {CC8D43FF-4290-4931-9A9E-C169B7DDF2A4} - System32\Tasks\{0D21C6D4-084C-44B4-A25A-B790031F3B5D} => pcalua.exe -a "C:\Riot Games\League of Legends\lol.launcher.exe" -d "C:\Riot Games\League of Legends\" Task: {CDA5D686-5D6C-4730-9907-B66710DC3670} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange Task: {D010978C-B666-4072-B7F3-DD6340CDD629} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task Task: {D1CC320B-9A47-4DB4-AFE4-2BCE1A964E7A} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources Task: {D2BAA1CE-D289-4DAE-9F1A-6A8B1617AF6F} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-11-02] (Microsoft Corporation) Task: {D389DE1D-1CC7-4EA9-9ED0-6609088BCD84} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2018-11-02] (Microsoft Corporation) Task: {DA2E720D-29E8-4529-8242-4D5AED29D88D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-24] (Microsoft Corporation) Task: {DBEB84B7-13D4-4A3F-9A25-CC088C028E23} - System32\Tasks\BTSchedulerTask => C:\Program Files (x86)\TOSHIBA\Toshiba Bluetooth Device Profile Utility\TosBt_NotificationScheduler.exe [2015-07-08] (Toshiba Corporation) Task: {DC06DC00-99E0-49EE-84B6-B22DC27B594B} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {DD710A69-86C6-4932-97B1-01FB13ACFEF1} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged Task: {DF4EE47B-1466-4223-975A-7A8403FC7790} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1797015765-1254167479-3479602176-1001 => C:\Users\mymy-\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe [2018-10-19] (Microsoft Corporation) Task: {DFD097F9-835B-4B40-AF9B-3AC35C88C34E} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_Plugin.exe [2018-10-10] (Adobe Systems Incorporated) Task: {E0862994-9083-482D-A921-27B4860FFA21} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv => C:\Windows\system32\eduprintprov.exe [2018-04-12] (Microsoft Corporation) Task: {E3B9A25E-1C61-44A0-A822-6889193B752E} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTaskLogon => C:\Windows\System32\XblGameSaveTask.exe [2018-04-12] (Microsoft Corporation) Task: {ED14863D-81BE-41FD-B546-7605754DABBD} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback Task: {EFA86FF7-22AE-4997-AFD9-E89E1BF9B7D6} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\Windows\system32\devicecensus.exe [2018-04-12] (Microsoft Corporation) Task: {F4C73657-7A84-4D27-B7B5-93DAE50F38A5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-11-02] (Microsoft Corporation) Task: {F9181586-6872-49DB-BDCA-46215B196064} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2018-04-20] (Safer-Networking Ltd.) Task: {F955A09C-E83A-4AD5-9ABC-7D5D7A055117} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task Task: {FC779438-B7FD-4774-AA55-4DE2A4B098A4} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Raccourcis ============================= (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2018-06-22 20:56 - 2018-06-22 20:56 - 00587832 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareService.exe 2018-06-22 21:00 - 2018-06-22 21:00 - 00125400 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_thread-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00032728 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_system-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00067544 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_date_time-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00147416 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_filesystem-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00790488 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_log-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00526296 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_locale-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00039896 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_chrono-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 11660248 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\rpc_server.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 03717592 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\RCF.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01024472 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_regex-vc140-mt-1_65_1.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01228760 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareActivation.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 02846680 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareApplicationUpdater.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00861656 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareGamingMode.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00123352 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareReset.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00145368 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareTime.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01049048 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareDefinitionsUpdater.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 00926680 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareDefinitionsUpdaterScheduler.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01466328 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareIgnoreList.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00312792 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareQuarantine.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01732568 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareAntiMalwareEngine.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01229272 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareScannerHistory.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01574872 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareScanner.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00039384 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_timer-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01052632 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareScannerScheduler.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01195992 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareRealTimeProtection.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 03638744 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareIncompatibles.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01598424 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareAntiSpam.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01531864 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareAntiPhishing.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 03574232 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareParentalControl.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 03656152 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareWebProtection.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01683416 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareEmailProtection.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00072664 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\boost_iostreams-vc140-mt-1_65_1.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01789912 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareNetworkProtection.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01220568 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwarePromo.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00479192 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareFeedback.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 03230168 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareThreatWorkAlliance.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00720344 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwarePinCode.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01221592 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareNotice.dll 2018-06-22 20:59 - 2018-06-22 20:59 - 01674200 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareAvcEngine.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 01494488 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareRealTimeProtectionHistory.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 00845272 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareStatistics.dll 2018-10-25 13:36 - 2018-10-25 13:36 - 00994752 _____ () C:\Program Files\adaware\adaware antivirus\Online Threats Engine\definitions\loc3\ashttpbr.mdl 2018-10-25 13:36 - 2018-10-25 13:36 - 00544880 _____ () C:\Program Files\adaware\adaware antivirus\Online Threats Engine\definitions\loc3\ashttpdsp.mdl 2018-10-25 13:36 - 2018-10-25 13:36 - 03240080 _____ () C:\Program Files\adaware\adaware antivirus\Online Threats Engine\definitions\loc3\ashttpph.mdl 2018-10-25 13:36 - 2018-10-25 13:36 - 01530368 _____ () C:\Program Files\adaware\adaware antivirus\Online Threats Engine\definitions\loc3\ashttprbl.mdl 2018-10-18 20:17 - 2018-10-29 18:33 - 02695360 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-01-24 21:17 - 2018-01-24 21:17 - 00174664 _____ () C:\WINDOWS\system32\IntelWifiIhv04.dll 2015-05-27 12:46 - 2015-05-27 12:46 - 00019960 _____ () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe 2018-04-12 00:34 - 2018-04-12 00:34 - 00491744 _____ () C:\Windows\System32\InputHost.dll 2017-06-08 16:46 - 2016-12-29 14:16 - 00134712 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 00472064 _____ () C:\Windows\ShellExperiences\TileControl.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 02759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 00491744 _____ () C:\WINDOWS\SYSTEM32\InputHost.dll 2018-10-09 19:21 - 2018-09-20 04:38 - 02185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 00491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 00009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 00060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\ChakraBridge.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 00019456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeProxiesAndStubs.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 10978304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\LibWrapper.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 02810368 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\skypert.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 00685056 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2018-10-23 15:09 - 2018-10-23 15:09 - 00183808 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe 2018-07-03 09:59 - 2018-07-03 09:59 - 01922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2018-06-22 21:00 - 2018-06-22 21:00 - 04749784 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\AdAwareTray.exe 2018-06-22 21:00 - 2018-06-22 21:00 - 11753944 _____ () C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.4.930.11587\rpc_client.dll 2015-09-04 20:34 - 2015-09-04 20:34 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2016-01-21 15:14 - 2016-05-02 07:02 - 00020536 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2018-05-01 21:47 - 2018-04-30 22:01 - 01891672 _____ () C:\Users\mymy-\AppData\Local\Discord\app-0.0.301\ffmpeg.dll 2017-09-26 21:22 - 2017-09-26 21:22 - 01984000 ____R () C:\Program Files (x86)\Skype\Phone\skypert.dll 2018-05-01 21:47 - 2018-04-30 22:01 - 01937752 _____ () C:\Users\mymy-\AppData\Local\Discord\app-0.0.301\libglesv2.dll 2018-05-01 21:47 - 2018-04-30 22:01 - 00095576 _____ () C:\Users\mymy-\AppData\Local\Discord\app-0.0.301\libegl.dll 2018-05-02 21:26 - 2018-08-30 16:04 - 11321176 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_voice\discord_voice.node 2018-05-02 21:26 - 2018-09-13 08:17 - 01615704 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_utils\discord_utils.node 2018-05-02 21:26 - 2018-05-02 21:26 - 01910104 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\cld\build\Release\cld.node 2018-05-02 21:26 - 2018-05-02 21:26 - 00422744 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\spellchecker\build\Release\spellchecker.node 2018-05-02 21:26 - 2018-05-02 21:26 - 00145240 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\keyboard-layout\build\Release\keyboard-layout-manager.node 2018-05-02 21:26 - 2018-05-02 21:26 - 00512856 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_erlpack\discord_erlpack.node 2018-05-02 21:26 - 2018-11-01 13:14 - 01629528 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_game_utils\discord_game_utils.node 2018-10-01 07:12 - 2018-10-10 10:25 - 09621848 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_cloudsync\discord_cloudsync.node 2018-05-02 21:26 - 2018-10-18 16:09 - 01705816 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_overlay2\discord_overlay2.node 2018-05-02 21:26 - 2018-05-02 21:26 - 02722648 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_rpc\discord_rpc.node 2018-08-14 16:38 - 2018-10-31 10:16 - 01248088 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_modules\discord_modules.node 2018-08-14 16:38 - 2018-10-29 12:29 - 25001816 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_dispatch\discord_dispatch.node 2018-05-02 21:27 - 2018-05-02 21:27 - 01249112 _____ () \\?\C:\Users\mymy-\AppData\Roaming\discord\0.0.301\modules\discord_vigilante\discord_vigilante.node ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\adawareantivirusservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\adawareantivirusservice => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Il y a 7942 plus de sites. IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\123simsen.com -> www.123simsen.com Il y a 7942 plus de sites. ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-10-30 08:24 - 2018-10-20 17:40 - 00454789 ____R C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123moviedownload.com 127.0.0.1 www.123moviedownload.com Il y a 15606 plus de lignes. ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\mymy-\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\...\StartupApproved\Run: => "SmartAudio" HKLM\...\StartupApproved\Run: => "TCrdMain" HKLM\...\StartupApproved\Run: => "TosWaitSrv" HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "Dropbox" HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\StartupApproved\Run: => "cacaoweb" HKU\S-1-5-21-1797015765-1254167479-3479602176-1001\...\StartupApproved\Run: => "SUPERAntiSpyware" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [WirelessDisplay-Infra-In-TCP] => (Allow) %systemroot%\system32\CastSrv.exe FirewallRules: [UDP Query User{554A32C3-3C80-4EC9-9757-988D11C03F24}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.147\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.147\deploy\leagueclient.exe FirewallRules: [TCP Query User{7EE3A09A-663A-4683-85BA-5EE6DBA7AE75}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.147\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.147\deploy\leagueclient.exe FirewallRules: [{1288815E-DEC4-422E-953B-49A557D3858B}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{881D2C32-E101-4B31-857F-4DD6FF878318}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [{1DABE3D5-3E87-4A89-BE20-6E04D1E4429B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe FirewallRules: [{8D6A8F77-FAF0-4EDE-89C8-C86E73AF68FD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{A2B9D55E-2E13-4344-ADC6-B9A576E5682A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{7EC7CE6E-4C04-42CE-BB7E-7F47A195D073}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C39B364C-528C-4CFF-BB69-0FB384CCC75E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [UDP Query User{112794F9-A560-444A-B07D-49251146FC09}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [TCP Query User{2D09D13F-E471-41DA-AC52-81804FED5027}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe FirewallRules: [UDP Query User{0D1FF57C-5BCD-4D98-AA32-6376DED3104F}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{36AAAB6D-AB35-4F81-BC7E-26C90BF331CD}C:\program files (x86)\diablo iii\diablo iii.exe] => (Allow) C:\program files (x86)\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{F88A3B1B-49EE-4492-AC8A-F6EAB2E1F966}C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe] => (Block) C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{5C41A549-8480-45DF-90E3-AA35F9D3ADD3}C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe] => (Block) C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{1A9F16C0-1CA4-4ECA-95E2-F5B566E85EA1}C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe] => (Block) C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{8DDA12A5-3096-4065-B593-2752A8A5F0B4}C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe] => (Block) C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{6625F7BC-BD5A-4FE0-8595-AB9EC8B24C1F}C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe] => (Allow) C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe FirewallRules: [TCP Query User{207963AD-598B-4F3B-9766-F434E07630D1}C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe] => (Allow) C:\users\mymy-\desktop\bdw1\xampp\mysql\bin\mysqld.exe FirewallRules: [UDP Query User{E7EFB1AB-C091-4D92-8894-99DE7DC56548}C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe] => (Allow) C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{20BDE2D8-241F-4561-986E-C1F1123421EE}C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe] => (Allow) C:\users\mymy-\desktop\bdw1\xampp\apache\bin\httpd.exe FirewallRules: [{3431B34F-7BB7-4331-AFB7-C49DFD4A0034}] => (Block) C:\xampp\apache\bin\httpd.exe FirewallRules: [{BF006AC9-BFD3-48C4-AF1C-D19D40CBF18E}] => (Block) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{8BE3D393-E38B-48B5-A4EF-0E228616B92A}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [TCP Query User{E6560032-9C0B-4C8E-BB81-2B973A7C9E4D}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe FirewallRules: [UDP Query User{0EE317ED-7BBB-4939-86A2-ED19593E1C7D}C:\users\mymy-\desktop\cacaoweb.exe] => (Block) C:\users\mymy-\desktop\cacaoweb.exe FirewallRules: [TCP Query User{984C951F-E1D2-4B7F-A9BA-A4E0A1F77CA6}C:\users\mymy-\desktop\cacaoweb.exe] => (Block) C:\users\mymy-\desktop\cacaoweb.exe FirewallRules: [{EA785F6F-32D1-4221-9836-19FC30047F8B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{9612FCDA-4DDD-4320-A3A6-A73AD3B2925F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{97055491-DAC9-4D25-BA83-1A2BEDB71026}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{53D25E7C-0210-42B7-B1AF-C6D61866383B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{07220FC4-92E1-40E6-A30A-97904964AF4D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{4DA21159-E3CF-4345-A285-2179A744FB75}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{3A546B4B-C37E-44ED-A10D-B5984537E1CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{7C0BF0DD-5952-462D-AE2E-6E99EB9F7B1A}] => (Allow) C:\Program Files\Intel Corporation\Intel WiDi\WiDiApp.exe FirewallRules: [{EE3E0398-4FA4-4C26-ACD5-235F6BF37304}] => (Allow) C:\Program Files (x86)\Spotify\Spotify.exe FirewallRules: [{4079F950-01E4-4FBD-910E-1BA0FE12F5AC}] => (Allow) C:\Program Files (x86)\Spotify\Spotify.exe FirewallRules: [{821E2B95-1CEE-4637-B0C8-BDECA20A992D}] => (Allow) C:\Program Files (x86)\Spotify\SpotifyWebHelper.exe FirewallRules: [{7A0C14B5-C83B-484D-A6A0-B7D2E2B50F75}] => (Allow) C:\Program Files (x86)\Spotify\SpotifyWebHelper.exe FirewallRules: [{6AEEB8E4-D534-4F42-AD96-3015D9C6F1A8}] => (Allow) C:\Program Files (x86)\Spotify\SpotifyCrashService.exe FirewallRules: [{E9C0DA89-F793-4C36-8D7F-6F3FC670024A}] => (Allow) C:\Program Files (x86)\Spotify\SpotifyCrashService.exe FirewallRules: [{A3B83161-37E8-4C9E-AC6D-F27285D8C08E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{27E3D8CC-E44A-4D15-B4FD-BA1EE5DB6C36}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{14B1179C-59EB-4C41-BE93-EB17F21976CA}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{FC337E71-0EEB-4277-A5EC-BA8584F09DFD}C:\users\mymy-\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\mymy-\appdata\roaming\cacaoweb\cacaoweb.exe FirewallRules: [UDP Query User{1CBBA5FF-EDD1-4E65-B15D-D3E4CB15DBD8}C:\users\mymy-\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\mymy-\appdata\roaming\cacaoweb\cacaoweb.exe FirewallRules: [TCP Query User{6C84D8EA-E3E9-4F59-A8C5-0832CCEDA7A9}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe FirewallRules: [UDP Query User{9D9FA43F-8142-4032-B688-D02CD9DE61BB}C:\program files (x86)\maniaplanet\maniaplanet.exe] => (Allow) C:\program files (x86)\maniaplanet\maniaplanet.exe FirewallRules: [TCP Query User{B13608DC-B5B5-491A-AF8B-590224E69779}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{342889FF-6F7F-4C8B-92E3-226940535643}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [{A59DE44D-2660-478E-ABEB-F960296AABA4}] => (Allow) C:\Users\mymy-\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{B85B522C-9ED5-43EF-9082-4A2D3DB6E79A}] => (Allow) C:\Users\mymy-\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [TCP Query User{43DC2709-F7F2-4643-A628-7D58A114FF75}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{84404119-FED2-4420-A77A-E0C8312EC0E1}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [{57A6C856-C2C9-48ED-BEE4-7C763717C190}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{F8C25AA5-3940-4161-AFB4-2544596490DD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{9BA5C343-481B-439F-89FE-BF10C07D72E2}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.156\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.156\deploy\leagueclient.exe FirewallRules: [UDP Query User{425C1D49-2A45-46E9-9515-FB53DB07895A}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.156\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.156\deploy\leagueclient.exe FirewallRules: [TCP Query User{86A32D40-24C5-4C4D-A67B-35A6BDD51285}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe FirewallRules: [UDP Query User{7F1948F3-5AE1-49E7-A000-95643265E2C1}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe FirewallRules: [{1D563927-47FF-4FA7-8CEC-A10ACAB0124C}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe FirewallRules: [{AD86B39C-2ADA-498F-A569-83D049367602}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe FirewallRules: [{D039F534-DCD3-4F5E-9DB5-6335352F55FB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{B7C34742-C661-431C-9CA2-BEA355C2E704}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe FirewallRules: [{FDD9D0A3-0DD7-4672-AEF4-A8492FDACA41}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe FirewallRules: [TCP Query User{22A61F16-2FEC-4C41-8B18-EB953C265706}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [UDP Query User{6C20FE80-C06F-45AA-AC8A-6337232BE857}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe FirewallRules: [{420B82A2-A20D-4FB8-9F9B-7D9453C585A6}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Points de restauration ========================= 24-10-2018 15:02:29 Point de contrôle planifié 02-11-2018 11:02:33 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (11/05/2018 07:37:54 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422333 Error: (11/05/2018 07:35:39 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Error: (11/05/2018 08:03:12 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Error: (11/04/2018 06:11:01 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Error: (11/04/2018 03:41:45 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422333 Error: (11/04/2018 03:39:32 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Error: (11/03/2018 06:00:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante ETDCtrl.exe, version : 11.63.8.11, horodatage : 0x5745413c Nom du module défaillant : ntdll.dll, version : 10.0.17134.254, horodatage : 0xa5a334d4 Code d’exception : 0xc0000374 Décalage d’erreur : 0x00000000000f4d3b ID du processus défaillant : 0x1230 Heure de début de l’application défaillante : 0xETDCtrl.exe0 Chemin d’accès de l’application défaillante : ETDCtrl.exe1 Chemin d’accès du module défaillant: ETDCtrl.exe2 ID de rapport : ETDCtrl.exe3 Nom complet du package défaillant : ETDCtrl.exe4 ID de l’application relative au package défaillant : ETDCtrl.exe5 Error: (11/03/2018 02:40:15 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073422333 Error: (11/03/2018 10:05:08 AM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Error: (11/02/2018 11:59:03 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: LAPTOP-A5HQIK59) Description: httphttp-2147467263 Erreurs système: ============= Error: (11/05/2018 07:35:29 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (11/05/2018 07:34:53 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (11/05/2018 08:05:01 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (11/05/2018 08:02:53 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (11/05/2018 08:02:12 AM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible Error: (11/04/2018 10:38:48 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A5HQIK59) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (11/04/2018 10:38:48 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A5HQIK59) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (11/04/2018 10:38:48 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A5HQIK59) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (11/04/2018 10:38:48 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A5HQIK59) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Error: (11/04/2018 10:38:48 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A5HQIK59) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} CodeIntegrity: =================================== Date: 2018-11-03 00:04:52.520 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.507 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.491 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.464 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.394 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.354 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.293 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.213 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:52.054 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. Date: 2018-11-03 00:04:51.886 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\browser_broker.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Dropbox\Client\DropboxExt64.25.0.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz Pourcentage de mémoire utilisée: 72% Mémoire physique - RAM - totale: 8026.47 MB Mémoire physique - RAM - disponible: 2180 MB Mémoire virtuelle totale: 14178.68 MB Mémoire virtuelle disponible: 7645.75 MB ==================== Lecteurs ================================ Drive c: (TIH0103800A) (Fixed) (Total:465.66 GB) (Free:350.16 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fin de Addition.txt ============================