Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 29.12.2018 Exécuté par TCHAKMANDOO (30-12-2018 16:31:42) Exécuté depuis C:\Users\TCHAKMANDOO\Desktop Windows 7 Professional Service Pack 1 (X64) (2016-07-30 22:10:31) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-203652306-1941884050-1855596019-500 - Administrator - Disabled) ASPNET (S-1-5-21-203652306-1941884050-1855596019-1012 - Limited - Enabled) Invité (S-1-5-21-203652306-1941884050-1855596019-501 - Limited - Disabled) => C:\Users\Invité TCHAKMANDOO (S-1-5-21-203652306-1941884050-1855596019-1000 - Administrator - Enabled) => C:\Users\TCHAKMANDOO ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: ESET Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70} AS: ESET Security (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: ESET Pare-feu (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 27.0.0.124 - Adobe Systems Incorporated) Adobe Flash Player 32 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 32.0.0.101 - Adobe Systems Incorporated) Apple Application Support (32 bits) (HKLM-x32\...\{9BA1A894-B42F-4805-BC8C-349C905A3930}) (Version: 5.3.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{7EAC8A42-9FAC-4F6B-AABF-C08C9F2E0F13}) (Version: 5.3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{55BB2110-FB43-49B3-93F4-945A0CFB0A6C}) (Version: 10.0.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.) Aura Kingdom-FR version 1 (HKLM-x32\...\Aura Kingdom-FR_is1) (Version: 1 - Aeria Games) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Call Of Duty World At War version 1.7.1263.0 (HKLM-x32\...\Call Of Duty World At War_is1) (Version: 1.7.1263.0 - Mr DJ) CCleaner (HKLM\...\CCleaner) (Version: 5.51 - Piriform) Cheat Engine 6.5.1 (HKLM-x32\...\Cheat Engine 6.5.1_is1) (Version: - Cheat Engine) Counter-Strike 1.6 - 2017 (HKLM-x32\...\Counter-Strike 1.6 - 2017) (Version: 2017 - Valve & csget.me) Discord (HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\Discord) (Version: 0.0.301 - Discord Inc.) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.22 - NVIDIA Corporation) Hidden Driver Booster 6 (HKLM-x32\...\Driver Booster_is1) (Version: 6.2.0 - IObit) Epic Games Launcher (HKLM-x32\...\{A17FC61C-F723-4856-9116-3087712BCB11}) (Version: 1.1.167.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden ESET Premium Line Encryption (HKLM\...\{2B31C297-1E0A-4082-B95B-E41B8822FF3D}) (Version: 1.0.14 - ESET) Hidden ESET Security (HKLM\...\{F1544F11-BFCC-43CC-9D0C-169A7E99369E}) (Version: 12.0.31.0 - ESET, spol. s r.o.) FACEIT (HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\FACEITApp) (Version: 1.20.0 - FACEIT Ltd.) Far Cry 3 Blood Dragon (HKLM-x32\...\Uplay Install 205) (Version: - Ubisoft) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Hitman - Contracts (HKLM-x32\...\GOGPACKHITMAN3_is1) (Version: 2.0.0.11 - GOG.com) Intel(R) Network Connections 21.0.504.0 (HKLM\...\PROSetDX) (Version: 21.0.504.0 - Intel) iTunes (HKLM\...\{9D0D2A8B-7E7B-4D88-8D50-24286ED6A5EB}) (Version: 12.5.5.5 - Apple Inc.) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Lightshot-5.4.0.1 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.1 - Skillbrains) Medal of Honor Batailles du Pacifique™ (HKLM-x32\...\{56CFA833-F44F-4199-8C58-7F8B38F2BC7B}) (Version: 1.2.1.281 - Electronic Arts) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Metric Collection SDK 35 (HKLM-x32\...\{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}) (Version: 1.2.0010.00 - Lenovo Group Limited) Hidden Microsoft .NET Framework 1.1 (HKLM-x32\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23506 (HKLM-x32\...\{3ee5e5bb-b7cc-4556-8861-a00a82977d6c}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 (HKLM-x32\...\{23daf363-3020-4059-b3ae-dc4ad39fed19}) (Version: 14.0.23506.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{d6f233bd-3f8c-43f6-878b-07bd0568d595}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{cb7c3049-21de-415b-bd85-b65c14e547df}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation) Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Need for Speed Most Wanted (HKLM-x32\...\Need for Speed Most Wanted_R.G. Mechanics_is1) (Version: - R.G. Mechanics, Panky) Need for Speed Underground 2 (HKLM-x32\...\Need for Speed Underground 2) (Version: - ) Need for Speed™ Carbon (HKLM-x32\...\{259C0ABB-A3B2-4D70-008F-BF7EE491B70B}) (Version: - ) NVIDIA Logiciel système PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation) NVIDIA Pilote graphique 417.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 417.22 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 5.1.4 (HKLM\...\{4EF3FBF6-697D-440A-AADA-7F5D39B73E62}) (Version: 5.1.4 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.4.63358 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 417.22 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 417.22 - NVIDIA Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Return to Castle Wolfenstein (HKLM-x32\...\Return to Castle Wolfenstein) (Version: 1.0 - Activision, Inc.) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH) Tencent Gaming Buddy (HKLM-x32\...\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company) Unreal Development Kit: 2015-01 (HKLM\...\UDK-6900aa0e-f086-4739-9014-073b6fd67b82) (Version: - Epic Games, Inc.) Uplay (HKLM-x32\...\Uplay) (Version: 24.0.2 - Ubisoft) WinRAR 5.31 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.31.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ShellIconOverlayIdentifiers: [ESD Shell Icon Overlay Identifier] -> {AF106685-9C86-48AF-8524-8F485C459E17} => C:\Program Files\ESET\ESET Secure Data\esdovrly.dll [2017-11-02] (DESlock Limited) ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ContextMenuHandlers1: [KuaiZip2ShlExt] -> {6ADF19E3-77A3-4395-ADB4-9FD7D351EB3F} => -> Pas de fichier ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET) ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll [2017-11-18] () ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-11-29] (NVIDIA Corporation) ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-11-29] (ESET) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-02-04] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-02-04] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {05C5114C-EB40-45AB-8B24-41B3E7794B01} - System32\Tasks\Driver Booster SkipUAC (TCHAKMANDOO) => C:\Program Files (x86)\IObit\Driver Booster\6.2.0\DriverBooster.exe [2018-12-19] (IObit) Task: {4B88EFA3-97DE-413A-882B-1B603BA144BD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-12-10] (Piriform Software Ltd) Task: {56E1215E-8F69-4D6E-97C6-3926CB7C0332} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: ) Task: {9D7D6C66-FDDD-47B8-AD05-57D9604244CB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-12-05] (Adobe Systems Incorporated) Task: {D68530E3-3579-4B60-9251-9466BD299962} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-203652306-1941884050-1855596019-1000 => C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\MEGAupdater.exe [2018-10-23] (Mega Limited) Task: {F3942EC9-BB78-4E22-A55C-529D3EF6ED4E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-12-10] (Piriform Ltd) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2018-12-08 15:22 - 2018-11-29 17:11 - 000154424 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2017-06-07 21:09 - 2017-11-18 09:17 - 000598528 _____ () C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX64.dll 2018-11-28 16:46 - 2018-11-28 16:46 - 000061408 _____ () C:\Program Files\CCleaner\branding.dll 2018-11-27 23:38 - 2018-10-30 19:06 - 001057056 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\SDL2.dll 2018-11-27 23:38 - 2018-09-23 01:00 - 102804768 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll 2018-11-27 23:38 - 2018-09-23 01:00 - 004866336 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll 2018-11-27 23:38 - 2018-09-23 01:00 - 000116000 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll 2018-12-26 20:13 - 2018-12-12 06:11 - 005237216 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\libglesv2.dll 2018-12-26 20:13 - 2018-12-12 06:11 - 000117216 _____ () C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\libegl.dll 2016-09-12 18:34 - 2018-10-30 19:06 - 000879904 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2016-09-12 18:34 - 2016-09-01 02:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2016-09-12 18:33 - 2016-09-01 02:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2016-09-12 18:33 - 2016-09-01 02:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2016-09-12 18:33 - 2018-11-26 21:29 - 002649376 _____ () C:\Program Files (x86)\Steam\video.dll 2018-11-17 09:19 - 2017-12-20 02:43 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll 2018-11-17 09:19 - 2017-12-20 02:43 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll 2018-11-17 09:19 - 2017-12-20 02:43 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll 2018-11-17 09:19 - 2017-12-20 02:43 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll 2018-11-17 09:19 - 2017-12-20 02:43 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll 2016-09-12 18:34 - 2018-11-26 21:29 - 001028384 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-09-12 18:33 - 2016-07-04 23:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2017-06-07 21:07 - 2017-11-18 09:17 - 000570368 _____ () C:\Users\TCHAKMANDOO\AppData\Local\MEGAsync\ShellExtX32.dll 2018-10-02 09:25 - 2018-10-02 09:25 - 000145048 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\quazip.dll 2017-10-13 13:10 - 2017-10-13 13:10 - 000018584 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\libEGL.DLL 2017-10-13 13:10 - 2017-10-13 13:10 - 001583256 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\libGLESv2.dll 2018-10-02 09:25 - 2018-10-02 09:25 - 000098968 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\directsound_win32.dll 2018-10-02 09:25 - 2018-10-02 09:25 - 000124568 _____ () C:\Program Files (x86)\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win32.dll 2017-04-23 12:26 - 2017-07-21 16:32 - 000274200 _____ () C:\Users\TCHAKMANDOO\AppData\Roaming\TS3Client\plugins\clientquery_plugin_win32.dll 2017-04-23 12:30 - 2017-04-23 12:30 - 000245248 _____ () C:\Users\TCHAKMANDOO\AppData\Roaming\TS3Client\plugins\ClownfishForTeamspeak_win32.dll 2017-04-23 12:26 - 2017-07-18 16:04 - 000123392 _____ () C:\Users\TCHAKMANDOO\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win32.dll 2017-04-28 16:57 - 2017-07-18 16:04 - 000010752 _____ () C:\Users\TCHAKMANDOO\AppData\Roaming\TS3Client\plugins\gamepad_joystick\api_stub.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [476] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Il y a 7936 plus de sites. IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-203652306-1941884050-1855596019-1000\...\123simsen.com -> www.123simsen.com Il y a 7936 plus de sites. ==================== Hosts contenu: ========================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:34 - 2017-06-17 06:48 - 000454512 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123haustiereundmehr.com 127.0.0.1 123moviedownload.com 127.0.0.1 www.123moviedownload.com Il y a 15600 plus de lignes. ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-203652306-1941884050-1855596019-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\TCHAKMANDOO\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: Apple Mobile Device Service => 2 MSCONFIG\Services: BEService => 3 MSCONFIG\Services: Disc Soft Lite Bus Service => 3 MSCONFIG\Services: dlpsrv => 2 MSCONFIG\Services: EasyAntiCheat => 3 MSCONFIG\Services: GoogleChromeElevationService => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: gupdatem => 3 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: Origin Client Service => 3 MSCONFIG\Services: Origin Web Helper Service => 2 MSCONFIG\Services: QMEmulatorService => 2 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^fcbd.bat => C:\Windows\pss\fcbd.bat.CommonStartup MSCONFIG\startupfolder: C:^Users^TCHAKMANDOO^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^MEGAsync.lnk => C:\Windows\pss\MEGAsync.lnk.Startup MSCONFIG\startupfolder: C:^Users^TCHAKMANDOO^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^WO Mic Client.lnk => C:\Windows\pss\WO Mic Client.lnk.Startup MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: EpicGamesLauncher => "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent MSCONFIG\startupreg: EsetPasswordManager => C:\Program Files\ESET\ESET Password Manager\pwm.exe MSCONFIG\startupreg: FACEIT => "C:\Users\TCHAKMANDOO\AppData\Local\FACEITApp\update.exe" --processStart "FACEIT.exe" MSCONFIG\startupreg: Google Update => C:\Users\TCHAKMANDOO\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: Lightshot => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe MSCONFIG\startupreg: MouseServer => "C:\Program Files (x86)\Mouse Server\MouseServer.exe" MSCONFIG\startupreg: RTHDVCPL => "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe (Microsoft Corporation) FirewallRules: [{49A0CB5C-98A8-44EC-BC17-90CF398C4FC5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) FirewallRules: [{D2901B2F-B253-4AB8-9D83-84DEC43CC694}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) FirewallRules: [TCP Query User{374F6D5E-33A9-4278-B232-704E946DEBFA}C:\program files (x86)\steam\steamapps\common\sven co-op\svencoop.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sven co-op\svencoop.exe (Sven Co-op team) FirewallRules: [UDP Query User{9BE50846-96D7-4E9B-AD31-65CB6939044A}C:\program files (x86)\steam\steamapps\common\sven co-op\svencoop.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\sven co-op\svencoop.exe (Sven Co-op team) FirewallRules: [{E60E56EA-3798-42A2-AC9F-DCF94615F882}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sven Co-op\svencoop.exe (Sven Co-op team) FirewallRules: [{F95EE336-83CB-4BFD-A555-AF2023D420E1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sven Co-op\svencoop.exe (Sven Co-op team) FirewallRules: [{C4FB1628-B49E-4AC2-AD96-E0D9C92381AC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sven Co-op\svends.exe (Sven Co-op team) FirewallRules: [{78FD61A1-8CBF-4506-A030-9B573E18445D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sven Co-op\svends.exe (Sven Co-op team) FirewallRules: [TCP Query User{903F960E-A795-4DDA-BC28-2A6A3F4DF26F}C:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe () FirewallRules: [UDP Query User{A270CCA2-E54B-485F-932F-B0D93E580A3A}C:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike source\hl2.exe () FirewallRules: [{7516B269-04C3-4961-9B5B-29A6F8C00368}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe () FirewallRules: [{B31AF92A-F71F-4ED2-8D48-662EB03AD332}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Half-Life 2\hl2.exe () FirewallRules: [{34D29AAE-F56E-4E05-8964-03C026342408}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\hl2.exe () FirewallRules: [{4DF70A80-2009-4B43-96BF-8D38A754A631}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\nmrih\sdk\hl2.exe () FirewallRules: [{12F7C24D-A1F1-462F-A1DC-7426A3F4456E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe () FirewallRules: [{DB94E3FF-B162-4D48-9743-8BFF31E4160D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\GarrysMod\hl2.exe () FirewallRules: [{D6B50575-C825-40E0-A0F6-BB830F3BB2CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe () FirewallRules: [{F70CF379-8AC0-43A2-9FCF-C005173D7ADB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe () FirewallRules: [TCP Query User{14EFAEFD-F285-4780-942A-7EED66A39933}C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 3 blood dragon\bin\fc3_blooddragon_d3d11_b.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 3 blood dragon\bin\fc3_blooddragon_d3d11_b.exe (Ubisoft Entertainment) FirewallRules: [UDP Query User{492C5058-F8B5-4412-8D87-6249B4747DEB}C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 3 blood dragon\bin\fc3_blooddragon_d3d11_b.exe] => (Allow) C:\program files (x86)\ubisoft\ubisoft game launcher\games\far cry 3 blood dragon\bin\fc3_blooddragon_d3d11_b.exe (Ubisoft Entertainment) FirewallRules: [{A42B8130-BC69-4E1C-A9A0-D9DB65A8BCCA}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe (Electronic Arts Inc.) FirewallRules: [{EC843D4E-9315-420E-85D1-DF3AB3B2B638}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa_setup.exe (Electronic Arts Inc.) FirewallRules: [{5999DC8F-512E-48A2-B97A-03AC08E4CCB4}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa.exe (Electronic Arts Inc.) FirewallRules: [{F11AC198-2F7B-49B9-9FF4-50ED89878B37}] => (Allow) C:\Program Files (x86)\Origin Games\Medal of Honor Pacific Assault\mohpa.exe (Electronic Arts Inc.) FirewallRules: [{9B2F0F23-DE72-4FD2-B3E6-E269299852EF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe (Nexon) FirewallRules: [{D708E58D-4C31-4BF8-9AB4-473E09CD833B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe (Nexon) FirewallRules: [TCP Query User{FB3E727D-AD22-4D29-9646-3C1CFCA5B831}C:\program files (x86)\return to castle wolfenstein\wolfmp.exe] => (Allow) C:\program files (x86)\return to castle wolfenstein\wolfmp.exe () FirewallRules: [UDP Query User{E8014A2A-664F-4EF4-B2C9-0966726E9909}C:\program files (x86)\return to castle wolfenstein\wolfmp.exe] => (Allow) C:\program files (x86)\return to castle wolfenstein\wolfmp.exe () FirewallRules: [TCP Query User{68D680AB-5200-412F-B6C0-F541B84C2089}C:\program files (x86)\electronic arts\need for speed carbon\nfsc.exe] => (Allow) C:\program files (x86)\electronic arts\need for speed carbon\nfsc.exe () FirewallRules: [UDP Query User{7DD0EA36-483A-4B2A-93E6-73AAFBFB770B}C:\program files (x86)\electronic arts\need for speed carbon\nfsc.exe] => (Allow) C:\program files (x86)\electronic arts\need for speed carbon\nfsc.exe () FirewallRules: [{52DF8826-C693-4497-8A2A-591FA9A2B6F2}] => (Allow) C:\Program Files (x86)\Call Of Duty World At War\CoDWaW.exe (Activision Blizzard, Inc.) FirewallRules: [{75403012-8E1A-4E3F-B2E5-359CA372A812}] => (Allow) C:\Program Files (x86)\Call Of Duty World At War\CoDWaW.exe (Activision Blizzard, Inc.) FirewallRules: [TCP Query User{BB07EC2B-030C-49C5-A565-C8BBD0BC9FBA}C:\program files (x86)\call of duty world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\call of duty world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) FirewallRules: [UDP Query User{11593364-9065-4A28-94CF-F6055A45DB46}C:\program files (x86)\call of duty world at war\codwaw lanfixed.exe] => (Allow) C:\program files (x86)\call of duty world at war\codwaw lanfixed.exe (Activision Blizzard, Inc.) FirewallRules: [TCP Query User{AF79542D-0AD5-4EC7-BC35-A83ACABD6A44}C:\program files (x86)\call of duty world at war\codwaw.exe] => (Block) C:\program files (x86)\call of duty world at war\codwaw.exe (Activision Blizzard, Inc.) FirewallRules: [UDP Query User{E3252906-0752-4D66-833E-C3F4E64EA7E2}C:\program files (x86)\call of duty world at war\codwaw.exe] => (Block) C:\program files (x86)\call of duty world at war\codwaw.exe (Activision Blizzard, Inc.) FirewallRules: [{4D53AFA2-0A43-4A07-821C-028513CAAC06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe (Flying Wild Hog) FirewallRules: [{C7185A11-E19E-401F-AA7D-2BEDBA23085E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\sw.exe (Flying Wild Hog) FirewallRules: [TCP Query User{DC39CD7C-755E-4D86-AD45-66AB544D36EC}C:\games\counter-strike 1.6 - 2017\hl.exe] => (Allow) C:\games\counter-strike 1.6 - 2017\hl.exe (Valve) FirewallRules: [UDP Query User{372E5C6C-69E3-4A64-8F6F-F566EE5930E1}C:\games\counter-strike 1.6 - 2017\hl.exe] => (Allow) C:\games\counter-strike 1.6 - 2017\hl.exe (Valve) FirewallRules: [{EF2F1799-2A2C-47BD-B41F-F5E4FD615BDC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\dx11\launcher.exe (Flying Wild Hog) FirewallRules: [{733B0F08-EAC4-44FC-8810-D32C4B4EF79A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shadow Warrior\dx11\launcher.exe (Flying Wild Hog) FirewallRules: [TCP Query User{ACE31995-2510-4459-ACF7-0757AA0BCC06}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games, Inc.) FirewallRules: [UDP Query User{9AF9314E-7281-4917-B597-F1B9E7466809}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games, Inc.) FirewallRules: [TCP Query User{09A56C4C-3766-49F2-AA0F-92FE9FB254FA}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games, Inc.) FirewallRules: [UDP Query User{F2259517-F83F-4DB4-92D0-2075014D1244}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games, Inc.) FirewallRules: [TCP Query User{D212BC54-CCA1-40C2-A15A-58D992B833B9}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games, Inc.) FirewallRules: [UDP Query User{FE79DFDE-7ACB-4C40-A241-160A097ECFBC}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games, Inc.) FirewallRules: [{D847A914-F7A9-4574-9D26-C1A0797DA96B}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe (Tencent) FirewallRules: [{891EA2A7-C42A-4327-A5CF-E4572820B654}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\TInst.exe () FirewallRules: [{E20DFCF2-34A7-4C90-AF3E-ABEAC232A633}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\bugreport.exe (腾讯公司) FirewallRules: [{F8C8E65B-349E-421B-A350-04D025EBEAB0}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\QQExternal.exe () FirewallRules: [{D61F5089-DF8C-4DA6-BFDF-458241578A05}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\GameDownload.exe (Tencent) FirewallRules: [{553228D6-5404-488C-B76C-42A643A2BF5E}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\GF186\TUpdate.exe (Tencent) FirewallRules: [{9E8A4281-BF83-421F-B72C-5771CE4DAD9C}] => (Allow) C:\Program Files\TxGameAssistant\UI\AndroidEmulator.exe (Tencent) FirewallRules: [{596CDF43-B4F9-4535-B52D-C4D3894E43FF}] => (Allow) C:\Program Files\TxGameAssistant\UI\adb.exe () FirewallRules: [{0510F19A-8FC2-4EAA-BB79-DE2C8E814BAB}] => (Allow) C:\Program Files\TxGameAssistant\UI\TInst.exe () FirewallRules: [{9924616F-75C8-49CC-A9F8-33D5F870F41C}] => (Allow) C:\Program Files\TxGameAssistant\UI\bugreport.exe (Tencent) FirewallRules: [{654D0E0E-C0EE-40B1-BE0A-68F51C56650E}] => (Allow) C:\Program Files\TxGameAssistant\UI\TxGaDcc.exe (Tencent) FirewallRules: [{2CCCB456-7401-4C89-AE0B-8790FA8A4B90}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) FirewallRules: [{8D5D560F-7149-4C24-9FFB-EC2DED06B49A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) FirewallRules: [{4301841C-74AF-42E8-BFAD-F6F46E8BFC20}] => (Allow) C:\AeriaGames\Aura Kingdom-FR\game.bin (X-LEGEND Entertaimment) FirewallRules: [{60C687D2-5127-4D17-9A6B-BF820A82C200}] => (Allow) C:\AeriaGames\Aura Kingdom-FR\game.bin (X-LEGEND Entertaimment) FirewallRules: [{B74269F2-729B-4252-BABC-6BA226F0A2CF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe (Nexon) FirewallRules: [{E4DDF8F6-2E59-4698-B421-BD858FBAF202}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\CSNZ\Bin\cstrike-online.exe (Nexon) FirewallRules: [{61785227-7BD7-4A2D-9C36-4D055106247A}] => (Allow) %SystemRoot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation) FirewallRules: [TCP Query User{27D0FBDE-8173-4187-86D4-8B0152126F02}C:\users\tchakmandoo\desktop\nouveau dossier\r.g. mechanics\need for speed most wanted\nfs13.exe] => (Block) C:\users\tchakmandoo\desktop\nouveau dossier\r.g. mechanics\need for speed most wanted\nfs13.exe (Electronic Arts) FirewallRules: [UDP Query User{52DA225D-1DC3-4794-B2F0-4CDF5B6C0BE7}C:\users\tchakmandoo\desktop\nouveau dossier\r.g. mechanics\need for speed most wanted\nfs13.exe] => (Block) C:\users\tchakmandoo\desktop\nouveau dossier\r.g. mechanics\need for speed most wanted\nfs13.exe (Electronic Arts) FirewallRules: [{C9A04D7A-6838-4FC2-BD24-AF7F9A4C6327}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\DriverBooster.exe (IObit) FirewallRules: [{A9FAB249-12A6-48BD-B41C-57D1DBDDE00C}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\DriverBooster.exe (IObit) FirewallRules: [{01020C5A-7407-4A16-B4AE-9D366172556B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\DBDownloader.exe (IObit) FirewallRules: [{304E90AC-C8E9-41D4-B769-C1E0426AA2CA}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\DBDownloader.exe (IObit) FirewallRules: [{5FD54AB8-8188-42F3-998B-AE3498506704}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\AutoUpdate.exe (IObit) FirewallRules: [{0ED72FFA-D585-4173-8E93-5093F930FEF8}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\6.2.0\AutoUpdate.exe (IObit) FirewallRules: [{D4D87DC3-A0B9-483D-9608-90910257BBC4}] => (Allow) C:\Program Files\TxGameAssistant\UI\AndroidEmulator.exe (Tencent) FirewallRules: [{784F4025-4AFF-458B-BAC2-278DD9477409}] => (Allow) C:\Program Files\TxGameAssistant\UI\adb.exe () FirewallRules: [{E22CFEAB-9282-4323-ADF3-24C4358E5C58}] => (Allow) C:\Program Files\TxGameAssistant\UI\TInst.exe () FirewallRules: [{57CA42BE-AF41-4825-8ADD-78DD9B6D4CF2}] => (Allow) C:\Program Files\TxGameAssistant\UI\bugreport.exe (Tencent) FirewallRules: [{7667831C-E072-46DD-8532-9A73174156FA}] => (Allow) C:\Program Files\TxGameAssistant\UI\TxGaDcc.exe (Tencent) FirewallRules: [{881A3F4A-4E70-4A59-9B9D-74DB0EFA87EC}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\AppMarket.exe (Tencent) FirewallRules: [{4CDF8767-DFFC-47B5-8A52-1863C232BAB9}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\TInst.exe () FirewallRules: [{5704A7E6-5747-49FA-BAC5-801CEA81FDD4}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\bugreport.exe (腾讯公司) FirewallRules: [{B9B4AA3B-C28C-4131-B800-890A723AD972}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\QQExternal.exe () FirewallRules: [{4482A3DB-7BF0-4727-A1F8-4BE6C4AD8330}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\GameDownload.exe (Tencent) FirewallRules: [{3FD08949-62E6-4865-8BBF-1C3B996DB3EE}] => (Allow) C:\Program Files\TxGameAssistant\AppMarket\GF186\TUpdate.exe (Tencent) FirewallRules: [{8D750099-F034-45A7-87E5-82D5BD9FCE04}] => (Allow) C:\Program Files\ESET\ESET Password Manager\pwm.exe (ESET) FirewallRules: [{3A29BA2D-6CC3-4AA8-9EFE-0FA0BA6CBC4D}] => (Allow) C:\Program Files\ESET\ESET Password Manager\pwm.exe (ESET) FirewallRules: [{9020A331-4B71-491A-858A-5F324EBF09CF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) FirewallRules: [{F8EA44D5-27CA-4E0C-A0EE-AB577B938DC3}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd) FirewallRules: [{1AE25EA7-70F8-4DB4-942B-49864A8A26A4}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd) ==================== Points de restauration ========================= 30-12-2018 16:18:58 desinecter ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: UCGuard Description: UCGuard Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: UCGuard Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (12/30/2018 04:12:19 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme CKScanner.exe version 2.5.1.1 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 14f0 Heure de début : 01d4a04f25db174a Heure de fin : 33 Chemin d’accès de l’application : C:\Users\TCHAKMANDOO\Desktop\CKScanner.exe ID de rapport : 472fa684-0c45-11e9-a982-38607793b0f1 Error: (12/30/2018 03:50:14 PM) (Source: MsiInstaller) (EventID: 10997) (User: AUTORITE NT) Description: Product: Microsoft .NET Framework 4.7.2 -- Error 997.Error 997.Une opération d’entrée/sortie avec chevauchement est en cours d’exécution. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/30/2018 03:50:13 PM) (Source: MsiInstaller) (EventID: 10997) (User: AUTORITE NT) Description: Product: Microsoft .NET Framework 4.7.2 -- Error 997.Une opération d’entrée/sortie avec chevauchement est en cours d’exécution. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/30/2018 03:31:31 PM) (Source: MsiInstaller) (EventID: 10997) (User: AUTORITE NT) Description: Product: Microsoft .NET Framework 4.7.2 -- Error 997.Error 997.Une opération d’entrée/sortie avec chevauchement est en cours d’exécution. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/30/2018 03:31:28 PM) (Source: MsiInstaller) (EventID: 10997) (User: AUTORITE NT) Description: Product: Microsoft .NET Framework 4.7.2 -- Error 997.Une opération d’entrée/sortie avec chevauchement est en cours d’exécution. (NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/30/2018 09:30:46 AM) (Source: .NET Runtime Optimization Service) (EventID: 1111) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80029c4a. Error: (12/30/2018 09:30:39 AM) (Source: .NET Runtime Optimization Service) (EventID: 1111) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80029c4a. Error: (12/29/2018 12:30:51 PM) (Source: .NET Runtime Optimization Service) (EventID: 1111) (User: ) Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_64) - Service reached limit of transient errors. Will shut down. Last error returned from Service Manager: 0x80029c4a. Erreurs système: ============= Error: (12/30/2018 04:27:24 PM) (Source: Schannel) (EventID: 4119) (User: AUTORITE NT) Description: L’alerte fatale suivante a été reçue : 49. Error: (12/30/2018 03:51:07 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070643 : Microsoft .NET Framework 4.7.2 pour Windows 7, pour les systèmes x64 (KB4054530). Error: (12/30/2018 03:49:20 PM) (Source: volsnap) (EventID: 25) (User: ) Description: Les clichés instantanés du volume C: ont été supprimés car le stockage du cliché instantané n’a pas pu s’agrandir à temps. Réduisez la charge d’E/S sur le système ou choisissez un volume stockage de cliché instantané qui n’est pas mis en cliché instantané. Error: (12/30/2018 03:38:48 PM) (Source: Schannel) (EventID: 4119) (User: AUTORITE NT) Description: L’alerte fatale suivante a été reçue : 49. Error: (12/30/2018 03:32:28 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070643 : Microsoft .NET Framework 4.7.2 pour Windows 7, pour les systèmes x64 (KB4054530). Error: (12/30/2018 02:33:04 PM) (Source: Schannel) (EventID: 4119) (User: AUTORITE NT) Description: L’alerte fatale suivante a été reçue : 49. Error: (12/30/2018 09:25:06 AM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger : cdrom UCGuard Error: (12/29/2018 12:48:21 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Les clichés instantanés du volume C: ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. Windows Defender: =================================== Date: 2018-12-30 16:17:12.908 Description: L’analyse Windows Defender a été arrêtée avant la fin. ID de l’analyse : {9D7750F4-AC41-4DC2-A053-74E73A7C2826} Type de l’analyse : Logiciel anti-espion Paramètres de l’analyse : Analyse complète Utilisateur : TCHAKMANDOO-PC\TCHAKMANDOO Date: 2018-12-24 23:58:55.668 Description: L’analyse Windows Defender a été arrêtée avant la fin. ID de l’analyse : {998A6EFA-9D5C-4E39-9CBB-9243F73B59E8} Type de l’analyse : Logiciel anti-espion Paramètres de l’analyse : Analyse personnalisée Utilisateur : TCHAKMANDOO-PC\TCHAKMANDOO Date: 2017-08-23 03:57:04.893 Description: L’analyse Windows Defender a été arrêtée avant la fin. ID de l’analyse : {C5547ADF-84E1-4FBC-9406-6DE032775BB5} Type de l’analyse : Logiciel anti-espion Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\SERVICE RÉSEAU Date: 2017-06-17 09:30:45.533 Description: L’analyse Windows Defender a été arrêtée avant la fin. ID de l’analyse : {8D67693E-F651-4328-AFE7-11780DBB9BEE} Type de l’analyse : Logiciel anti-espion Paramètres de l’analyse : Analyse rapide Utilisateur : TCHAKMANDOO-PC\TCHAKMANDOO ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz Pourcentage de mémoire utilisée: 54% Mémoire physique - RAM - totale: 6005.4 MB Mémoire physique - RAM - disponible: 2759.65 MB Mémoire virtuelle totale: 12008.94 MB Mémoire virtuelle disponible: 8238.86 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:465.76 GB) (Free:239.43 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: C4731D46) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================