Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 01.12.2018 01 Exécuté par Weloss (04-12-2018 13:14:47) Exécuté depuis C:\Users\Weloss\Desktop Windows 10 Home Version 1803 17134.441 (X64) (2018-05-16 10:17:25) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-2701314721-994308290-3501443965-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2701314721-994308290-3501443965-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2701314721-994308290-3501443965-1002 - Limited - Enabled) Invité (S-1-5-21-2701314721-994308290-3501443965-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-2701314721-994308290-3501443965-504 - Limited - Disabled) Weloss (S-1-5-21-2701314721-994308290-3501443965-1000 - Administrator - Enabled) => C:\Users\Weloss ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) "Spore" (HKLM-x32\...\{6D35DF2D-7523-4CB6-9E8F-A1660D9F8637}_is1) (Version: 3.0.0.2818 - ) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 19.008.20081 - Adobe Systems Incorporated) Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated) Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated) Application Blizzard (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Assassin's Creed Odyssey (HKLM-x32\...\{B7EC622B-1979-450E-8281-C5648506DB83}_is1) (Version: - Ubisoft) ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.) AutoHotkey 1.1.26.01 (HKLM\...\AutoHotkey) (Version: 1.1.26.01 - Lexikos) Battle Chasers Nightwar (HKLM-x32\...\1345854066_is1) (Version: - GOG.com) BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC) BlueStacks 3 (HKLM-x32\...\BlueStacks) (Version: 3.7.46.1633 - BlueStack Systems, Inc.) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.6.0.0 - Canon Inc.) Canon IJ Network Scanner Selector EX (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX) (Version: 1.5.2.3 - Canon Inc.) Canon IJ Network Tool (HKLM-x32\...\Canon_IJ_Network_UTILITY) (Version: 3.5.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.1.10.15 - Canon Inc.) Canon MG5600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5600_series) (Version: 1.00 - Canon Inc.) Canon MG5600 series On-screen Manual (HKLM-x32\...\Canon MG5600 series On-screen Manual) (Version: 7.7.1 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.0.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.0.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.2.1 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.4.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.50 - Piriform) Cities - Skylines (HKLM-x32\...\Cities - Skylines_is1) (Version: - ) Coquille magique (HKLM-x32\...\InstallShield_{399534C4-4B96-477C-BD2E-90B46EF7CBF1}) (Version: 1.00.0006 - Eushully) Crossout Launcher 1.0.3.36 (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\CrossOutLauncher_is1) (Version: - ) Custom Maid 3D2 (HKLM-x32\...\カスタムメイド3D2) (Version: - KISS) D.C.Ⅲ W.Y. (HKLM-x32\...\DC3WY) (Version: - CIRCUS) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.8.0.0446 - Disc Soft Ltd) DBVR (HKLM-x32\...\{1BD9CD38-88ED-4A18-B132-C1A41AEA5964}) (Version: 1.00.0000 - ILLUSION SOFT) Discord (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\Discord) (Version: 0.0.301 - Discord Inc.) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 417.01 - NVIDIA Corporation) Hidden DRAGON QUEST XI Echoes of an Elusive Age (HKLM-x32\...\DRAGON QUEST XI Echoes of an Elusive Age_is1) (Version: - ) DriversCloud.com (64 bits) (HKLM\...\{8B044631-6E1E-4A0B-8E7F-8CB932CC660F}) (Version: 10.0.5.3 - Cybelsoft) Dynasty Warriors 9 (HKLM-x32\...\Dynasty Warriors 9_is1) (Version: - ) EAX4 Unified Redist (HKLM-x32\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs) Enregistrement utilisateur de Canon MG5600 series (HKLM-x32\...\Enregistrement utilisateur de Canon MG5600 series) (Version: - ‭Canon Inc.) Epic Games Launcher (HKLM-x32\...\{5608B570-62D0-432A-A7CE-420EE204DDD1}) (Version: 1.1.121.0 - Epic Games, Inc.) Euro Fishng Lilies (HKLM-x32\...\Euro Fishng Lilies_is1) (Version: - ) Euro Truck Simulator 2 - ElAmigos version 1.32.3 (HKLM-x32\...\{9384C835-3AAB-4AEB-A190-765E3FB774E1}_is1) (Version: 1.32.3 - SCS Software) FINAL FANTASY XV (HKLM-x32\...\FINAL FANTASY XV_is1) (Version: - ) Game Center My.com (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\GameCenter) (Version: 4.1458 - My.Com B.V.) Gameforge Live 2.0.13 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.13 - Gameforge) GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) Grand Theft Auto V (HKLM-x32\...\{F18E5F7D-AC26-49F7-9DF6-1759DDFA7EDF}_is1) (Version: 1.0.350.1 - Rockstar Games) Grim Dawn - Crucible (HKLM-x32\...\1812959072_is1) (Version: 2.0.0.1 - GOG.com) Grim Dawn (HKLM-x32\...\1449651388_is1) (Version: 2.6.0.11 - GOG.com) HF pAppLoc version 1.0 (HKLM-x32\...\{9143B17E-BBDE-4EA7-A4E3-20D384D9C8A5}_is1) (Version: 1.0 - Inquisitor) Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios) Homeworld Deserts of Kharak (HKLM-x32\...\Homeworld Deserts of Kharak_is1) (Version: - ) Imouto Paradise! version 1.0 (HKLM-x32\...\{38073150-656E-4A04-8547-84D3531AB7D6}_is1) (Version: 1.0 - MangaGamer) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1017 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.8.1.1007 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Launchpad Enhanced (HKLM-x32\...\{BAA11826-70EF-4E44-9E97-8476793E022F}) (Version: 0.05.000 - SWGEmu) LEGO Worlds (HKLM-x32\...\LEGO Worlds_is1) (Version: - ) LEGO® Harry Potter™: Années 1 à 4 (HKLM-x32\...\{C5A8DF48-580B-44D3-B2B2-E965A9368F28}) (Version: 1.0.0.0 - WB Games) Les Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.20.60.1020 - Electronic Arts Inc.) Life is Strange Complete First Season version 1.0.0.371598 (HKLM-x32\...\{D5DF0D21-62C1-46E0-BD21-4E3DAE94DA32}_is1) (Version: 1.0.0.371598 - Square Enix) Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden Logitech - Assistant pour jeux vidéo 8.96 (HKLM\...\Logitech Gaming Software) (Version: 8.96.81 - Logitech Inc.) LogMeIn Hamachi (HKLM-x32\...\{BE82D2D7-6CA2-43B3-8C22-CCF6405806E7}) (Version: 2.2.0.579 - LogMeIn, Inc.) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.579 - LogMeIn, Inc.) Mad Max Road Warrior (HKLM-x32\...\Mad Max Road Warrior_is1) (Version: - ) Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes) MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited) Microsoft Office Professional Edition 2003 (HKLM-x32\...\{9011040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\OneDriveSetup.exe) (Version: 18.212.1021.0008 - Microsoft Corporation) Microsoft StarLancer (HKLM-x32\...\StarLancer 1.0) (Version: - ) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{b3c7f59f-dc40-4be9-829c-77dd292978ea}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{4549ceb8-695a-42eb-a183-4820d542a15f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26429 (HKLM-x32\...\{2019b6a0-8533-4a04-ac0e-b2c10bdb9841}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Windows Application Compatibility Database (HKLM\...\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb) (Version: - ) Microsoft Xbox One Controller for Windows (HKLM\...\{DC2CB48C-FD96-48EB-A36A-7D995BB587EB}) (Version: 1.0.2 - Microsoft Corporation) Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mises à jour NVIDIA 34.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 34.0.0.0 - NVIDIA Corporation) Hidden Mozilla Firefox 63.0.3 (x64 fr) (HKLM\...\Mozilla Firefox 63.0.3 (x64 fr)) (Version: 63.0.3 - Mozilla) Mumble 1.2.12 (HKLM-x32\...\{EF30BA16-8DAB-4EA5-AF2C-D4F0D9B0B0CB}) (Version: 1.2.12 - Thorvald Natvig) NBA 2K Playgrounds 2 (HKLM-x32\...\NBA 2K Playgrounds 2_is1) (Version: - ) NCSOFT Game Launcher (HKLM-x32\...\NCLauncher_NCWest) (Version: - NCSOFT) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.16.0.122 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.122 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 417.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 417.01 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.38.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.4 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) NVIDIA Pilote graphique 417.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 417.01 - NVIDIA Corporation) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Opera Stable 56.0.3051.116 (HKLM-x32\...\Opera 56.0.3051.116) (Version: 56.0.3051.116 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 10.5.30.15625 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 417.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 417.01 - NVIDIA Corporation) Hidden Pathfinder: Kingmaker - Bloody Mess (HKLM-x32\...\1329787908_is1) (Version: 1.0.15b - GOG.com) Pathfinder: Kingmaker - In-Game Pet - Red Panda (HKLM-x32\...\1975006427_is1) (Version: 1.0.15b - GOG.com) Pathfinder: Kingmaker - In-game player's portraits (HKLM-x32\...\1429768868_is1) (Version: 1.0.15b - GOG.com) Pathfinder: Kingmaker - Premium Digital Copy (HKLM-x32\...\1853261348_is1) (Version: 1.0.15b - GOG.com) Pathfinder: Kingmaker (HKLM-x32\...\1982293831_is1) (Version: 1.0.9c+ - GOG.com) piaip AppLocale (HKLM-x32\...\{394BE3D9-7F57-4638-A8D1-1D88671913B7}) (Version: 1.0.0 - MS) Planetbase (HKLM-x32\...\1351624781_is1) (Version: 1.2.2 - GOG.com) Pool Nation REPACK (HKLM-x32\...\UG9vbE5hdGlvbg==_is1) (Version: 1 - ) qBittorrent 4.1.3 (HKLM-x32\...\qBittorrent) (Version: 4.1.3 - The qBittorrent project) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.21.21.1 - Razer Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.21.811.2017 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Revo Uninstaller 2.0.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.5 - VS Revo Group, Ltd.) Ride 2 (HKLM-x32\...\Ride 2_is1) (Version: - ) RivaTuner Statistics Server 6.4.1 (HKLM-x32\...\RTSS) (Version: 6.4.1 - Unwinder) RPG MAKER VX Ace RTP (HKLM-x32\...\RPGVXAce_RTP_is1) (Version: 1.00 - Enterbrain) RPG Maker VX RTP (HKLM-x32\...\RPG Maker VX RTP_is1) (Version: 1.02 - Enterbrain) RSI Launcher 1.0.1 (HKLM\...\81bfc699-f883-50c7-b674-2483b6baae23) (Version: 1.0.1 - Cloud Imperium Games) Sades 7.1CH Gaming Headset (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006620}) (Version: 1.00.0019 - SHENZHEN SADES DIGITAL TECHNOLOGY CO.,LTD) Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.4.16113.3 - Samsung Electronics Co., Ltd.) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.4.16113.3 - Samsung Electronics Co., Ltd.) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.) Sandlot Games Client Services (HKLM-x32\...\Sandlot Games Client Services_is1) (Version: - Sandlot Games) Security Task Manager 2.3 (HKLM-x32\...\Security Task Manager) (Version: 2.3 - Neuber Software) Sid Meier's Railroads! (HKLM-x32\...\{44E1DE63-C8FA-4C70-B4AA-0C49A947ACDE}) (Version: 1.00 - Firaxis Games) Hidden Skype™ 7.36 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.36.101 - Skype Technologies S.A.) Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.17054.16 - Samsung Electronics Co., Ltd.) Hidden Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.1.17054.16 - Samsung Electronics Co., Ltd.) SoulSeekkor's TQ Defiler (HKLM-x32\...\{A111D34B-7021-44CE-BEFB-3C17688F463B}) (Version: 3.3.4.0 - DemorTex Services) SpellForce 3 (HKLM-x32\...\1419313792_is1) (Version: - GOG.com) SpellForce 3 Digital Extras (HKLM-x32\...\1957394745_is1) (Version: 1.38 - GOG.com) Sword Art Online - Fatal Bullet (HKLM-x32\...\{EEEF9108-02A5-4336-BFB4-7E5A3F71682E}_is1) (Version: - BANDAI NAMCO Entertainment) Talisman Digital Edition The Cataclysm (HKLM-x32\...\Talisman Digital Edition The Cataclysm_is1) (Version: - ) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH) Terraria Inventory Editor (HKLM-x32\...\{ED31E5DD-CCD7-431C-9673-FBB90AE60414}) (Version: 7.0.0 - ChbShoot) The Amazing Spider-Man 2 (HKLM-x32\...\VGhlQW1hemluZ1NwaWRlck1hbjI=_is1) (Version: 1 - ) The Incredible Adventures of Van Helsing - Final Cut (HKLM-x32\...\1448013298_is1) (Version: 2.0.0.5 - GOG.com) The Sims 4 Seasons (HKLM-x32\...\The Sims 4 Seasons_is1) (Version: - ) This War of Mine Stories The Last Broadcast (HKLM-x32\...\This War of Mine Stories The Last Broadcast_is1) (Version: - ) TroveTools .NET (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\0ad522f4516a2a4e) (Version: 1.2.0.5 - Dazo) TS Notifier (HKLM-x32\...\{111F6732-10D8-475F-90B1-1F6B1672971C}) (Version: 1.6.0007 - Andreas Gebert) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) UnEpic version 1.50.5 (HKLM-x32\...\{DD32BEAD-3E09-4776-A068-78F159D9A689}_is1) (Version: 1.50.5 - REVOLUTiONiT) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C5FDDED7-DEC7-48B4-AFD8-DFB8A0FD199A}) (Version: 2.51.0.0 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 25.0.1 - Ubisoft) Victor Vran (HKLM-x32\...\Victor Vran_is1) (Version: - ) VLC media player (HKLM\...\VLC media player) (Version: 3.0.4 - VideoLAN) Vulkan Run Time Libraries 1.0.3.0 (HKLM\...\VulkanRT1.0.3.0) (Version: 1.0.3.0 - LunarG, Inc.) Wargaming.net Game Center (HKU\S-1-5-21-2701314721-994308290-3501443965-1000\...\Wargaming.net Game Center) (Version: 18.6.2.1776 - Wargaming.net) Warhammer 40000 Mechanicus (HKLM-x32\...\Warhammer 40000 Mechanicus_is1) (Version: - ) WhoCrashed 5.54 (HKLM\...\WhoCrashed_is1) (Version: - Resplendence Software Projects Sp.) WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH) WORLD OF FINAL FANTASY (HKLM-x32\...\WORLD OF FINAL FANTASY_is1) (Version: - ) X4 Foundations (HKLM-x32\...\X4 Foundations_is1) (Version: - ) 魔導巧殻 (HKLM-x32\...\{399534C4-4B96-477C-BD2E-90B46EF7CBF1}) (Version: 1.00.0006 - Eushully) Hidden ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2701314721-994308290-3501443965-1000_Classes\CLSID\{C52B9871-E5E9-41FD-B84D-C5ACADBEC7AE}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Users\Weloss\DAEMON Tools Lite\DTShl64.dll [2018-05-22] (Disc Soft Ltd) ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Users\Weloss\DAEMON Tools Lite\DTShl64.dll [2018-05-22] (Disc Soft Ltd) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll [2017-10-18] () ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-11-16] (NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (Alexander Roshal) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {014F413F-D613-48E9-A062-D1226CD862D3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16] (NVIDIA Corporation) Task: {05ADD212-3FEC-4E6C-B861-13CF604106C0} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation) Task: {132A496F-936D-4208-8B0D-8688B7229A01} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-11-16] (NVIDIA Corporation) Task: {16ED11F5-A3D2-4D8B-9CA1-3BA40E01FDB9} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {1821414B-D075-4625-AF0B-6EAC65910F6F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-11-28] (Piriform Ltd) Task: {1BD7C3DC-E2CA-4DAA-B806-285F4FDF1AC7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation) Task: {1BDFAEC6-DCEC-445B-B0F4-C17F403CFA7A} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2701314721-994308290-3501443965-1000 => C:\ProgramData\MEGAsync\MEGAupdater.exe [2018-01-15] (Mega Limited) Task: {1E2801B3-C2E0-41F9-B5E3-8864FA9A685A} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2A4F7833-7FB4-4630-A036-B6088839A674} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {30D5B6CD-6AC7-46F7-974E-F442C37E710D} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {34803F9F-D0E2-46E2-897F-BEFF141E5D46} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_pepper.exe [2018-11-20] (Adobe Systems Incorporated) Task: {396EB0A4-402B-429D-B571-B82E30757F2C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {3BE4E36A-20CC-461A-B7B8-AD1011DDE4DC} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {4842F9D4-3863-4881-A619-2C3302C1523C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-11-16] (NVIDIA Corporation) Task: {4AC0CE3B-C423-4BD7-933A-593F7E4B32C6} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-11-16] (NVIDIA Corporation) Task: {4E990A71-BBA6-409A-91AC-95B161003E89} - System32\Tasks\{0AB52947-0DAF-4D30-A1BA-261D4C00F316} => "c:\program files (x86)\mozilla firefox\firefox.exe" hxxp://ui.skype.com/ui/0/7.23.0.105/fr/abandoninstall?page=tsBing Task: {5438F9DB-8BA0-41CE-AE23-CE2993F8CA8A} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] () Task: {661F36EC-865E-42B7-8A58-8D85DB835516} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {66EE75D7-D975-4C2D-99CB-6665DDF7E704} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-11-20] (Adobe Systems Incorporated) Task: {6882B588-B335-4B9D-9E58-ADD35B4F9E0A} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation) Task: {6AE35014-D2DD-4A2C-ABBF-FB8C326FF00F} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {6BA3296A-F5EF-499C-87C0-85B490F7A777} - \Microsoft\Windows\UNP\RunCampaignManager -> Pas de fichier <==== ATTENTION Task: {6E3863E7-32DD-42AF-B139-94312316E94F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {750953B0-AEFC-4CF5-99EB-BD0194A0EEFF} - System32\Tasks\{24126434-3845-445A-AAF9-03DFA941E550} => C:\WINDOWS\system32\pcalua.exe -a C:\Users\Weloss\Desktop\ToolBarSD.exe -d C:\Users\Weloss\Desktop Task: {792E7839-D679-4268-97E0-1FA9B8FD42BF} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {7B450959-2082-4AA8-B0EB-D40EB12B35FC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {8D9B184E-05E8-4C0F-AAE9-CA192DD459A6} - System32\Tasks\RunAsStdUser_MyComGames => C:\Users\Weloss\AppData\Local\MyComGames\MyComGames.exe [2018-09-13] (MY.COM B.V.) Task: {99EEA48C-B478-4D8B-BEB7-2BEFAFC50552} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {9BA15D35-7D09-4FDE-BCA1-4ABE5417E5B3} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {9BE2BC72-BA4C-45C5-B86A-2DD0A971C2CA} - System32\Tasks\{B6BC75E3-2A1B-476F-A7E4-E48B04747014} => C:\WINDOWS\system32\pcalua.exe -a "G:\RollerCoaster Tycoon 3\RCT3plus.exe" -d "G:\RollerCoaster Tycoon 3" Task: {A19E631D-5EFE-473C-8770-D99F9826EB91} - System32\Tasks\Opera scheduled Autoupdate 1525158145 => C:\Program Files\Opera\launcher.exe [2018-11-26] (Opera Software) Task: {A4BE9799-DE6F-4A1A-A161-5E29436977C1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-11-16] (NVIDIA Corporation) Task: {A57099AB-63E2-4767-98EC-C0E862ABE5A7} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B2526A0F-0D86-4496-8397-CC078495AE92} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation) Task: {B51FB392-2C21-49BB-9A6D-92C65DEED2C9} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B8853869-2F80-4CEE-8BD1-D51F076D2C65} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {BBAED92D-8B2E-415A-B1F9-43A527FBFDDB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation) Task: {BDA73AF4-3FBF-4102-96B2-198392C3CB54} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe Task: {C1C0D6F3-258B-42C3-A690-60E0DF28EA6C} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-11-16] (NVIDIA Corporation) Task: {C77E9ECF-73C4-43C3-8F12-009D2B781B8E} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {C79D1BEC-5474-4C08-90E5-D634B822C3C2} - System32\Tasks\{8EAEC0C2-7DC1-462F-BC6D-839F357C08B3} => C:\WINDOWS\system32\pcalua.exe -a "G:\LACIE\SOFTWARE\Windows Utilities\USB Boost\Setup.exe" -d "G:\LACIE\SOFTWARE\Windows Utilities\USB Boost" Task: {C831553A-FED9-469A-B82F-E10FCCA5787F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {CA49069D-A4A0-424F-86E2-1E4BF52B47A4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-11-28] (Piriform Software Ltd) Task: {CCAF1C80-E95D-4BA6-ABB5-0CB56AF448C4} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-11-16] (NVIDIA Corporation) Task: {CF61BBBB-2839-459A-B668-A4DBBFE73456} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-11-16] (NVIDIA Corporation) Task: {D7E9D660-A4F4-4A60-A564-ED2EE4EA5652} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [2015-05-14] () Task: {DD663A30-C1E9-4E49-872D-4A8C8566FEA5} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe Task: {E1A6F66E-9988-4945-88FC-6AF1DD737E1F} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {E2BAE522-8C3E-468F-A04E-5F5F8E2292B2} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {F0930E83-A377-4B67-B0B8-A2E296522FFD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation) Task: {F2564443-0A26-4535-9FD2-52130E3A7ED0} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [2018-11-20] (Adobe Systems Incorporated) Task: {F384F6FB-5823-4FDA-A53D-F4E199B41BFE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-08-13] (Adobe Systems Incorporated) Task: {FA3E93DC-5A0C-494E-9F67-EEB7C1EE247F} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe Task: {FE5984A2-F92B-47B2-A682-ED23F329F9C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1810.5-0\MpCmdRun.exe [2018-10-23] (Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) Shortcut: C:\Users\Weloss\Desktop\Minecraft\Server Start.lnk -> C:\Games\Minecraft Server\ServerStart.bat () Shortcut: C:\Users\Weloss\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MCEdit-64bit\MCEdit forum thread.lnk -> hxxp://www.minecraftforum.net/viewtopic.php?f=25&t=1552 ==================== Modules chargés (Avec liste blanche) ============== 2018-04-12 00:34 - 2018-04-12 00:34 - 000444416 _____ () c:\windows\system32\SSDM.dll 2018-10-25 19:24 - 2018-11-16 12:55 - 001314672 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2018-12-04 04:05 - 2018-10-18 08:44 - 002695360 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 000491744 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2017-10-18 22:51 - 2017-10-18 22:51 - 000598528 _____ () C:\ProgramData\MEGAsync\ShellExtX64.dll 2018-04-12 00:34 - 2018-04-12 00:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll 2018-12-04 04:16 - 2018-11-09 03:17 - 002759680 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2018-12-04 04:16 - 2018-11-09 03:17 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-10-04 04:34 - 2018-10-04 04:35 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 000060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\ChakraBridge.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 000019456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeProxiesAndStubs.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 010873344 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\LibWrapper.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 002834432 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\skypert.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 000685568 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll 2018-11-13 09:44 - 2018-11-13 09:44 - 000183808 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe 2018-07-10 17:42 - 2018-07-10 17:43 - 001922224 _____ () C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.1000_x64__8wekyb3d8bbwe\Microsoft.Applications.Telemetry.Windows.dll 2018-10-25 19:24 - 2018-11-16 12:54 - 101251952 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2018-10-25 19:24 - 2018-11-16 12:54 - 004619632 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libglesv2.dll 2018-10-25 19:24 - 2018-11-16 12:54 - 000108400 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libegl.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 000908568 _____ () C:\Program Files\Logitech Gaming Software\libGLESv2.dll 2017-08-18 10:01 - 2017-08-18 10:01 - 001096824 _____ () C:\Program Files\Logitech Gaming Software\platforms\qwindows.dll 2015-03-07 01:07 - 2015-03-07 01:07 - 000060184 _____ () C:\Program Files\Logitech Gaming Software\libEGL.dll 2017-08-18 10:01 - 2017-08-18 10:01 - 000241784 _____ () C:\Program Files\Logitech Gaming Software\imageformats\qjpeg.dll 2017-08-18 09:41 - 2017-08-18 09:41 - 000077824 _____ () C:\Program Files\Logitech Gaming Software\LAClient\zlib.dll 2017-08-18 09:41 - 2017-08-18 09:41 - 000144896 _____ () C:\Program Files\Logitech Gaming Software\LAClient\libssh2.dll 2016-09-30 20:38 - 2016-09-30 20:38 - 002341376 _____ () C:\Program Files\Sades 7.1CH Gaming Headset\CPL\FaceLift_x64.exe 2018-08-29 11:28 - 2018-09-23 01:00 - 102804768 _____ () C:\Steam\bin\cef\cef.win7x64\libcef.dll 2018-08-29 11:28 - 2018-10-30 19:06 - 001057056 _____ () C:\Steam\bin\cef\cef.win7x64\SDL2.dll 2018-08-29 11:28 - 2018-09-23 01:00 - 004866336 _____ () C:\Steam\bin\cef\cef.win7x64\libglesv2.dll 2018-08-29 11:28 - 2018-09-23 01:00 - 000116000 _____ () C:\Steam\bin\cef\cef.win7x64\libegl.dll 2018-11-28 17:11 - 2018-11-28 17:11 - 000107712 _____ () C:\Program Files\CCleaner\lang\lang-1036.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 000478720 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe 2018-11-17 00:38 - 2018-11-17 00:45 - 066031104 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 000010752 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\RenderingPlugin.dll 2017-10-04 13:41 - 2017-10-04 13:41 - 002523136 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\UnityEngineDelegates.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 003715072 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\MediaEngineCSWrapper.dll 2018-08-19 22:22 - 2018-08-19 22:25 - 002480640 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\opencv_imgproc320.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 000036352 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\WinMLWrapper.UWP.dll 2018-04-05 12:57 - 2018-04-05 12:59 - 002283008 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\TrackingDLLUWP.dll 2018-08-19 22:22 - 2018-08-19 22:25 - 002280960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\opencv_core320.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 014097920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll 2018-11-17 00:38 - 2018-11-17 00:45 - 003569152 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\MediaEngine.dll 2018-11-17 00:38 - 2018-11-17 00:39 - 002863616 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll 2018-08-28 19:05 - 2018-08-28 19:07 - 000973312 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\RuntimeConfiguration.dll 2018-08-19 22:22 - 2018-08-19 22:25 - 004584960 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18091.17210.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-11-06 04:15 - 2018-11-06 04:15 - 000194048 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStore.Preview.dll 2018-11-06 04:15 - 2018-11-06 04:15 - 002538056 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-11-06 04:15 - 2018-11-06 04:15 - 001754112 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\Microsoft.Membership.MeControl.dll 2018-11-20 23:39 - 2018-11-20 23:41 - 001434192 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11001.20106.0_x64__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll 2018-10-25 19:24 - 2018-11-16 12:55 - 001032560 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-12-15 20:47 - 2018-10-30 19:06 - 000879904 _____ () C:\Steam\SDL2.dll 2015-12-15 20:47 - 2018-11-26 21:29 - 002649376 _____ () C:\Steam\video.dll 2015-12-15 20:47 - 2016-09-01 02:02 - 004969248 _____ () C:\Steam\v8.dll 2017-12-14 14:34 - 2017-12-20 02:43 - 000695584 _____ () C:\Steam\libavformat-57.dll 2017-12-14 14:34 - 2017-12-20 02:43 - 000351520 _____ () C:\Steam\libavresample-3.dll 2017-12-14 14:34 - 2017-12-20 02:43 - 005137696 _____ () C:\Steam\libavcodec-57.dll 2015-12-15 20:47 - 2016-09-01 02:02 - 001563936 _____ () C:\Steam\icui18n.dll 2017-12-14 14:34 - 2017-12-20 02:43 - 000847136 _____ () C:\Steam\libavutil-55.dll 2017-12-14 14:34 - 2017-12-20 02:43 - 000783648 _____ () C:\Steam\libswscale-4.dll 2015-12-15 20:47 - 2016-09-01 02:02 - 001195296 _____ () C:\Steam\icuuc.dll 2015-12-15 20:47 - 2018-11-26 21:29 - 001028384 _____ () C:\Steam\bin\chromehtml.DLL 2016-03-14 17:27 - 2016-07-04 23:17 - 000266560 _____ () C:\Steam\openvr_api.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000503368 _____ () C:\Program Files (x86)\GOG Galaxy\PocoUtil.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 067919944 _____ () C:\Program Files (x86)\GOG Galaxy\libcef.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 001856072 _____ () C:\Program Files (x86)\GOG Galaxy\PocoData.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 001071176 _____ () C:\Program Files (x86)\GOG Galaxy\PocoNet.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000387656 _____ () C:\Program Files (x86)\GOG Galaxy\PocoDataSQLite.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000327752 _____ () C:\Program Files (x86)\GOG Galaxy\PocoJSON.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000306248 _____ () C:\Program Files (x86)\GOG Galaxy\PocoNetSSL.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 001656392 _____ () C:\Program Files (x86)\GOG Galaxy\PocoFoundation.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000681032 _____ () C:\Program Files (x86)\GOG Galaxy\sqlite.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000107592 _____ () C:\Program Files (x86)\GOG Galaxy\zlib.dll 2017-06-22 00:55 - 2018-11-29 18:43 - 000130120 _____ () C:\Program Files (x86)\GOG Galaxy\xdelta3.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000513608 _____ () C:\Program Files (x86)\GOG Galaxy\PocoXML.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000157256 _____ () C:\Program Files (x86)\GOG Galaxy\PocoCrypto.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000270920 _____ () C:\Program Files (x86)\GOG Galaxy\PocoZip.dll 2017-04-22 15:07 - 2018-11-29 18:42 - 000152648 _____ () C:\Program Files (x86)\GOG Galaxy\expat.dll 2017-04-22 15:07 - 2018-11-29 18:43 - 000426568 _____ () C:\Program Files (x86)\GOG Galaxy\pcre.dll 2018-05-01 18:31 - 2018-04-30 22:01 - 001891672 _____ () C:\Users\Weloss\AppData\Local\Discord\app-0.0.301\ffmpeg.dll 2018-05-01 18:31 - 2018-04-30 22:01 - 001937752 _____ () C:\Users\Weloss\AppData\Local\Discord\app-0.0.301\libglesv2.dll 2018-05-01 18:31 - 2018-04-30 22:01 - 000095576 _____ () C:\Users\Weloss\AppData\Local\Discord\app-0.0.301\libegl.dll 2018-05-01 20:55 - 2018-12-01 12:31 - 011301720 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_voice\discord_voice.node 2018-05-01 20:55 - 2018-11-21 00:18 - 001639256 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_utils\discord_utils.node 2018-05-01 20:55 - 2018-05-01 20:55 - 001910104 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\cld\build\Release\cld.node 2018-05-01 20:55 - 2018-05-01 20:55 - 000422744 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\spellchecker\build\Release\spellchecker.node 2018-05-01 20:55 - 2018-05-01 20:55 - 000145240 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_spellcheck\node_modules\keyboard-layout\build\Release\keyboard-layout-manager.node 2018-05-01 20:55 - 2018-05-01 20:55 - 000512856 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_erlpack\discord_erlpack.node 2018-05-01 20:55 - 2018-11-21 00:18 - 001658712 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_game_utils\discord_game_utils.node 2018-10-01 10:59 - 2018-10-10 16:51 - 009621848 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_cloudsync\discord_cloudsync.node 2018-05-01 20:55 - 2018-11-29 12:37 - 001718104 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_overlay2\discord_overlay2.node 2018-05-01 20:55 - 2018-05-01 20:55 - 002722648 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_rpc\discord_rpc.node 2018-08-19 22:06 - 2018-11-14 15:39 - 001261400 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_modules\discord_modules.node 2018-08-19 22:06 - 2018-11-29 12:37 - 024944472 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_dispatch\discord_dispatch.node 2018-05-01 20:55 - 2018-05-01 20:55 - 002760536 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_contact_import\discord_contact_import.node 2018-05-01 20:55 - 2018-05-01 20:55 - 001249112 _____ () \\?\C:\Users\Weloss\AppData\Roaming\discord\0.0.301\modules\discord_vigilante\discord_vigilante.node 2017-09-10 21:51 - 2017-09-10 21:51 - 000798208 _____ () C:\ProgramData\MEGAsync\libsodium.dll 2018-10-15 07:08 - 2018-10-15 07:08 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2017-04-22 15:07 - 2018-03-13 14:18 - 003176448 _____ () C:\Program Files (x86)\GOG Galaxy\libglesv2.dll 2017-04-22 15:07 - 2018-03-13 14:18 - 000079872 _____ () C:\Program Files (x86)\GOG Galaxy\libegl.dll 2015-06-02 04:18 - 2015-06-02 04:18 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\TEMP:007D45CF [112] AlternateDataStreams: C:\ProgramData\TEMP:9D3C16C7 [97] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2009-07-14 03:34 - 2018-12-04 03:01 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2701314721-994308290-3501443965-1000\Control Panel\Desktop\\Wallpaper -> c:\users\weloss\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\{83bddc51-0cdd-430f-a53a-bd70ba06f51f}.png HKU\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\Control Panel\Desktop\\Wallpaper -> DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Prompt) HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (Pas de fichier) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{C30FDB0E-6986-4DDC-ADA8-3855EDA9CB12}D:\illusion\cm3d2\cm3d2x64.exe] => (Allow) D:\illusion\cm3d2\cm3d2x64.exe FirewallRules: [TCP Query User{D339B61D-7A88-477C-9E28-1F401D50FFB9}D:\illusion\cm3d2\cm3d2x64.exe] => (Allow) D:\illusion\cm3d2\cm3d2x64.exe FirewallRules: [UDP Query User{2D5767B6-E9BD-4FD2-A8CA-E5F11BA14BA2}E:\illusion\love.in.the.glen\nw.exe] => (Block) E:\illusion\love.in.the.glen\nw.exe FirewallRules: [TCP Query User{CE5BAF79-EC40-4EB0-A844-5AF1DB43D8DE}E:\illusion\love.in.the.glen\nw.exe] => (Block) E:\illusion\love.in.the.glen\nw.exe FirewallRules: [UDP Query User{8E8AF462-603F-4499-BA68-AEDD4D7097A8}E:\illusion\love kami useless goddess\advhd.exe] => (Block) E:\illusion\love kami useless goddess\advhd.exe FirewallRules: [TCP Query User{F1A7C673-DF33-4DBC-96A8-3E7A386BCDA4}E:\illusion\love kami useless goddess\advhd.exe] => (Block) E:\illusion\love kami useless goddess\advhd.exe FirewallRules: [UDP Query User{54137BB3-2970-495B-B66B-813E61C813DC}E:\illusion\toneworks\hatsukoi\siglusengine.exe] => (Block) E:\illusion\toneworks\hatsukoi\siglusengine.exe FirewallRules: [TCP Query User{935CFC87-B2B1-4870-AB02-C4E1AF9E4B64}E:\illusion\toneworks\hatsukoi\siglusengine.exe] => (Block) E:\illusion\toneworks\hatsukoi\siglusengine.exe FirewallRules: [UDP Query User{FDB8A671-995B-413C-9965-44911A327FD0}E:\illusion\purino party\purinoparty.exe] => (Block) E:\illusion\purino party\purinoparty.exe FirewallRules: [TCP Query User{E96650ED-6EBB-4B2A-9AD7-3B6A1D53762F}E:\illusion\purino party\purinoparty.exe] => (Block) E:\illusion\purino party\purinoparty.exe FirewallRules: [UDP Query User{E9F2DB55-0EE5-4DE8-93CE-1758FFEE2A74}E:\illusion\dragonia\game.exe] => (Allow) E:\illusion\dragonia\game.exe FirewallRules: [TCP Query User{5AA725A8-51D0-4D90-9881-B1A3A5DD02FA}E:\illusion\dragonia\game.exe] => (Allow) E:\illusion\dragonia\game.exe FirewallRules: [UDP Query User{2EFAA6B9-AC64-43CA-9449-C5265844BAE7}E:\illusion\deep space waifu\deep space waifu.exe] => (Allow) E:\illusion\deep space waifu\deep space waifu.exe FirewallRules: [TCP Query User{71234BA2-FDF6-4B00-BA01-FA5E236870D8}E:\illusion\deep space waifu\deep space waifu.exe] => (Allow) E:\illusion\deep space waifu\deep space waifu.exe FirewallRules: [UDP Query User{4024AAC6-D7D4-4F60-8EB9-EB469BA72AA9}E:\illusion\tropical liquor\tropical_liquor.exe] => (Allow) E:\illusion\tropical liquor\tropical_liquor.exe FirewallRules: [TCP Query User{A118F4E0-132D-4507-907D-1FD8EBD5B21B}E:\illusion\tropical liquor\tropical_liquor.exe] => (Allow) E:\illusion\tropical liquor\tropical_liquor.exe FirewallRules: [UDP Query User{05BC85C7-E837-430B-9FA2-45D1475ADECE}E:\illusion\playhome\playhome64bit.exe] => (Allow) E:\illusion\playhome\playhome64bit.exe FirewallRules: [TCP Query User{5AEED2BC-0076-4508-BC10-503579902C1E}E:\illusion\playhome\playhome64bit.exe] => (Allow) E:\illusion\playhome\playhome64bit.exe FirewallRules: [UDP Query User{CE0D4155-ECAF-49BF-8FD1-991AC9EC4F4C}I:\illusion\playhome\playhome64bit.exe] => (Allow) I:\illusion\playhome\playhome64bit.exe FirewallRules: [TCP Query User{65826BDD-7F84-4CF1-825A-3937CFF6E426}I:\illusion\playhome\playhome64bit.exe] => (Allow) I:\illusion\playhome\playhome64bit.exe FirewallRules: [UDP Query User{75D2D454-8E27-466F-B37B-96F5B579E7BF}C:\illusion\playhome\playhome64bit.exe] => (Allow) C:\illusion\playhome\playhome64bit.exe FirewallRules: [TCP Query User{34634060-E3DD-4F4D-8364-016363F7E92F}C:\illusion\playhome\playhome64bit.exe] => (Allow) C:\illusion\playhome\playhome64bit.exe FirewallRules: [UDP Query User{D33AD943-9EB3-4774-842D-086EBF74131C}C:\steam\steamapps\common\skyforge\mycomgames\gamecenter.exe] => (Allow) C:\steam\steamapps\common\skyforge\mycomgames\gamecenter.exe FirewallRules: [TCP Query User{4E714356-8D0C-4B79-980A-DDF68BC0FC74}C:\steam\steamapps\common\skyforge\mycomgames\gamecenter.exe] => (Allow) C:\steam\steamapps\common\skyforge\mycomgames\gamecenter.exe FirewallRules: [UDP Query User{0EFFEA8A-88B4-4822-92D6-05005E3B5FCE}C:\steam\steamapps\common\skyforge\mycomgames\mycomgames.exe] => (Allow) C:\steam\steamapps\common\skyforge\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{EF077E9D-6A94-42EE-BC8F-FF608DCE7CBC}C:\steam\steamapps\common\skyforge\mycomgames\mycomgames.exe] => (Allow) C:\steam\steamapps\common\skyforge\mycomgames\mycomgames.exe FirewallRules: [{AC1BED4E-D806-4F0B-84BE-B47ABBBD4021}] => (Allow) C:\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{41B91B65-407C-4095-9049-7A93AEF4F407}] => (Allow) C:\Steam\steamapps\common\DARK SOULS III\Game\DarkSoulsIII.exe FirewallRules: [{5BECAD24-A206-4B67-83A2-B6F9C4C8A98A}] => (Allow) C:\Games\Allods Online FR\bin\Launcher.exe FirewallRules: [UDP Query User{B3C8EED6-4F57-4269-994C-0E99C9138148}C:\users\weloss\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\weloss\appdata\local\mycomgames\mycomgames.exe FirewallRules: [TCP Query User{6822FAF0-7319-431B-A3A3-1D0C05E1FEF4}C:\users\weloss\appdata\local\mycomgames\mycomgames.exe] => (Allow) C:\users\weloss\appdata\local\mycomgames\mycomgames.exe FirewallRules: [{37F57890-1468-4047-8C1F-6983CDA0E441}] => (Allow) C:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{7A57B312-F5B8-4A90-B79E-E6EAC1C3E855}] => (Allow) C:\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{6CD6B3A8-4110-456F-8E80-1D001ED5075D}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{7A317162-092A-421F-A228-241BCCE412E0}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{01DD2D4C-BDF0-44C5-B70F-5BDF9C91D990}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{158E9BF8-B887-4295-9BD7-0B844D6A0827}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{04E50773-EA5C-40E9-89F5-43D82D4F2EC8}] => (Allow) C:\Steam\steamapps\common\Warframe\Tools\RemoteCrashSender.exe FirewallRules: [{E2CEE0E1-C8F7-4E2B-AE95-42219AFAC6CB}] => (Allow) C:\Steam\steamapps\common\Warframe\Tools\Launcher.exe FirewallRules: [{FF4CD2D0-D232-4F05-8E54-83DC4D7CB57C}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{97C0FEC4-DB50-40C3-B577-E8D4863CF273}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{0AF99D87-3FEA-4A48-A9B5-942A0736AFD9}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.x64.exe FirewallRules: [{B7DEA935-DE2A-4B5B-A97B-D18C9D0D9BA8}] => (Allow) C:\Steam\steamapps\common\Warframe\Warframe.exe FirewallRules: [{5D76F55B-F1AE-44BD-ACAF-CE19F88116B6}] => (Allow) C:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{C20CC48C-D378-40E4-AB4C-3EC558EE56E1}] => (Allow) C:\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe FirewallRules: [{5B6F011D-28CE-4392-845B-3ED223C8C41B}] => (Allow) C:\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{1B58E1FE-5689-427E-BD60-C807CDFF1719}] => (Allow) C:\Steam\steamapps\common\Total War WARHAMMER\launcher\launcher.exe FirewallRules: [{BFD61CCC-C819-457F-8F84-E23B6A4757E2}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{BF6FE1C5-B2B7-4745-9F51-3845FAF2EC16}] => (Allow) C:\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{1F546CF4-6231-4847-9649-ADFAB1AB096D}C:\steam\steamapps\common\planet explorers\server\pe_server.exe] => (Allow) C:\steam\steamapps\common\planet explorers\server\pe_server.exe FirewallRules: [TCP Query User{5398347E-AB43-4315-A9DB-E5EFE82F0762}C:\steam\steamapps\common\planet explorers\server\pe_server.exe] => (Allow) C:\steam\steamapps\common\planet explorers\server\pe_server.exe FirewallRules: [UDP Query User{8E270DB5-CBEF-4D75-A562-A0AE2B85A2A0}C:\steam\steamapps\common\planet explorers\pe_client.exe] => (Allow) C:\steam\steamapps\common\planet explorers\pe_client.exe FirewallRules: [TCP Query User{85EBED1C-49B8-4B0C-92C4-CE940186C6AD}C:\steam\steamapps\common\planet explorers\pe_client.exe] => (Allow) C:\steam\steamapps\common\planet explorers\pe_client.exe FirewallRules: [UDP Query User{1B7D4478-DB4C-4FFE-84F1-C91CEA17A4C6}D:\steamlibrary\steamapps\common\planet explorers\server\pe_server.exe] => (Allow) D:\steamlibrary\steamapps\common\planet explorers\server\pe_server.exe FirewallRules: [TCP Query User{5F0228BA-DBEF-4CD0-92E4-D275B1FDA27D}D:\steamlibrary\steamapps\common\planet explorers\server\pe_server.exe] => (Allow) D:\steamlibrary\steamapps\common\planet explorers\server\pe_server.exe FirewallRules: [UDP Query User{577504E6-E751-4E0A-A068-9B0FB25617BC}D:\steamlibrary\steamapps\common\planet explorers\pe_client.exe] => (Allow) D:\steamlibrary\steamapps\common\planet explorers\pe_client.exe FirewallRules: [TCP Query User{DBE079E4-DF9D-49A6-AEFF-1674434C7992}D:\steamlibrary\steamapps\common\planet explorers\pe_client.exe] => (Allow) D:\steamlibrary\steamapps\common\planet explorers\pe_client.exe FirewallRules: [UDP Query User{C2FC116C-AA7B-4984-BA26-F94290814EED}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [TCP Query User{EE1BEFA7-241C-4327-B6CE-8419F8489AD6}D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe] => (Allow) D:\steamlibrary\steamapps\common\planetside 2\planetside2_x64.exe FirewallRules: [{370813D2-AEEC-4DDB-9DCC-6A99118F23BD}] => (Allow) D:\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{9C377C5D-A044-4F73-BAC0-80EEEDA9AAC6}] => (Allow) D:\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{96E126CB-F0AC-4A14-BEB8-864E45E9A4CA}] => (Allow) D:\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{C37D907C-91ED-41A1-B245-E4238E202824}] => (Allow) D:\Games\Star Wars-The Old Republic\launcher.exe FirewallRules: [{18248BF4-DE65-4200-8691-EC8F94D61965}] => (Block) D:\games\titan quest - anniversary edition\tq.exe FirewallRules: [{4672C9E3-0E03-4DA1-8439-54881A723A2C}] => (Block) D:\games\titan quest - anniversary edition\tq.exe FirewallRules: [UDP Query User{5FC96B5F-814D-4589-9257-8D3FEC8E2D09}D:\games\titan quest - anniversary edition\tq.exe] => (Allow) D:\games\titan quest - anniversary edition\tq.exe FirewallRules: [TCP Query User{B0BAA935-3441-4693-A434-3BA95ED5A4BA}D:\games\titan quest - anniversary edition\tq.exe] => (Allow) D:\games\titan quest - anniversary edition\tq.exe FirewallRules: [{697E637D-4BC2-46B6-AD53-B5A8D7F7655D}] => (Allow) C:\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe FirewallRules: [{B7A9ECDD-5FB5-4824-982B-9904A219D7C2}] => (Allow) C:\Steam\steamapps\common\How to Survive 2\Exe\Detect.exe FirewallRules: [{14DD6CA2-F6FB-48C2-8C70-9B9830CEB235}] => (Allow) C:\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe FirewallRules: [{D766FC78-AFF6-4CB1-B15C-67608DD4E9D2}] => (Allow) C:\Steam\steamapps\common\How to Survive 2\Exe\HowToSurvive2.exe FirewallRules: [{BC40BD69-D64D-4B9B-8480-7C4D4938CC07}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{F3346154-DBCA-4E43-B8C1-644EAD1FE71E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F325B39A-713D-4927-86A9-0F86118788EB}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{03EB6A15-1CAF-40EA-AA45-A1F25D773EF5}] => (Block) G:\okhlos\okhlos.exe FirewallRules: [{9371CC15-BFCD-4E3A-B34F-13046AF0B9CD}] => (Block) G:\okhlos\okhlos.exe FirewallRules: [UDP Query User{AF130B87-ECF2-4693-BBA7-4303AF948525}G:\okhlos\okhlos.exe] => (Allow) G:\okhlos\okhlos.exe FirewallRules: [TCP Query User{BE21B97F-76F2-4CA1-AA78-CC3A32EE61B6}G:\okhlos\okhlos.exe] => (Allow) G:\okhlos\okhlos.exe FirewallRules: [{E4EE3DD2-3851-40B5-BCED-6A1A141736AB}] => (Allow) C:\Torrentex\Torrentex.exe FirewallRules: [{01D26FEF-5D12-41BC-A737-DB3D65E4C3DE}] => (Allow) C:\Torrentex\Torrentex.exe FirewallRules: [{09AE329E-49CE-4170-BAED-E907ADA373B1}] => (Allow) LPort=7777 FirewallRules: [{67CF2014-FFB2-4271-B7EB-46BBE3B56364}] => (Allow) LPort=7777 FirewallRules: [{150FAA4F-DD0A-4484-AA34-3568516B9393}] => (Block) G:\train simulator 2016 _ all dlc\railworks.exe FirewallRules: [{46B20FA6-85AF-4CAB-BA10-A1085D09BF2D}] => (Block) G:\train simulator 2016 _ all dlc\railworks.exe FirewallRules: [UDP Query User{77A6B333-CB47-4675-9214-93B451982DC9}G:\train simulator 2016 _ all dlc\railworks.exe] => (Allow) G:\train simulator 2016 _ all dlc\railworks.exe FirewallRules: [TCP Query User{F61A3C35-F633-4430-AF80-081A0945FAF8}G:\train simulator 2016 _ all dlc\railworks.exe] => (Allow) G:\train simulator 2016 _ all dlc\railworks.exe FirewallRules: [{CD70FB2C-4A9F-45A6-8040-97C703D6EB00}] => (Allow) G:\SimCity v10\SimCity\SimCity.exe FirewallRules: [{569ED3C3-CE6B-4632-B5A2-FCC475E5CAC5}] => (Allow) G:\SimCity v10\SimCity\SimCity.exe FirewallRules: [{F90AB2BE-B6F8-4915-9E39-3693E93DF921}] => (Allow) G:\SimCity\SimCity\SimCity.exe FirewallRules: [{9622FBF8-DA46-47B0-9B59-F5972AD8BD4D}] => (Allow) G:\SimCity\SimCity\SimCity.exe FirewallRules: [UDP Query User{80E1ABEA-504D-46FE-AC13-8E6D4A5D07FA}G:\simcity\simcity\simcity.exe] => (Allow) G:\simcity\simcity\simcity.exe FirewallRules: [TCP Query User{B017E3F4-608F-4CB4-856E-3ED5D82AA214}G:\simcity\simcity\simcity.exe] => (Allow) G:\simcity\simcity\simcity.exe FirewallRules: [{095557A8-BF56-4376-9976-EB8AD9EA9AA0}] => (Allow) G:\SimCity V10\SimCity.exe FirewallRules: [{03B605CF-13AE-495A-A324-EADEC27323FB}] => (Allow) G:\SimCity V10\SimCity.exe FirewallRules: [{C4B6962A-63B0-4621-A4CB-3417998BD9EF}] => (Block) G:\anno 2070\initengine.exe FirewallRules: [{FB1E1929-F4B2-4C55-ACBF-19038AC41C0C}] => (Block) G:\anno 2070\initengine.exe FirewallRules: [UDP Query User{B8CCC890-E997-4963-9C20-5ACE8F04A7E5}G:\anno 2070\initengine.exe] => (Allow) G:\anno 2070\initengine.exe FirewallRules: [TCP Query User{1160C4D8-9637-4743-86C3-117CD4877ED1}G:\anno 2070\initengine.exe] => (Allow) G:\anno 2070\initengine.exe FirewallRules: [UDP Query User{05CCE9D8-D617-4419-B752-DF1EB6647068}G:\anno 2070\autopatcher.exe] => (Block) G:\anno 2070\autopatcher.exe FirewallRules: [TCP Query User{68B8FD45-14FB-40AE-8FCC-1935C88CEB25}G:\anno 2070\autopatcher.exe] => (Block) G:\anno 2070\autopatcher.exe FirewallRules: [{92AECD44-4DC3-4D02-B0BC-DA40F66CBD0E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{A588746B-B1F4-4D6C-94C2-DBC9E1C15590}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe FirewallRules: [{A9FDD019-7EE7-4482-822A-069EDB8E702D}] => (Block) G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe FirewallRules: [{0D4040CE-4983-4EF2-8C2A-57788D2E0D36}] => (Block) G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe FirewallRules: [UDP Query User{55AAA816-4B7A-4E9E-B48F-F5BB04E5FFF6}G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe] => (Allow) G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe FirewallRules: [TCP Query User{A1047F93-A4F6-4CDD-AC76-202F8B3F5B3E}G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe] => (Allow) G:\forced showdown drone invasion\bugtracker\forcedshowdownbugtracker.exe FirewallRules: [{AAC9B985-00C2-4FFC-93CB-C5F8AA887B22}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{86E6E9CC-FB1D-4ABA-8FC6-317CC9D54C4D}] => (Allow) C:\Steam\bin\steamwebhelper.exe FirewallRules: [{FA99F526-5CE3-4FE0-B7AE-9CECC61324B9}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{1D9C6594-8916-43F7-BEB6-C648EEAE2B8C}] => (Allow) C:\Steam\Steam.exe FirewallRules: [{88393A56-AFAB-4D6F-A4E2-2413E7313C41}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{98C2563A-E828-4560-872C-847CEA777067}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{95393724-7FC8-447A-B72F-102CC6D431C7}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{A411A35E-68E9-4BEB-8066-AD00B31BD9F1}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{88124A66-C8A5-4A86-9EBD-27BAADE56E3F}] => (Allow) C:\Steam\steamapps\common\SNOW\Bin64\playSNOW.exe FirewallRules: [{9F9A72A1-7CB9-41BE-83C1-300F47622045}] => (Allow) C:\Steam\steamapps\common\SNOW\Bin64\playSNOW.exe FirewallRules: [{2C6334FF-30C1-4E14-A4E9-A11DEE603A0C}] => (Allow) C:\Steam\steamapps\common\Swordsman\patcher\patcher.exe FirewallRules: [{09DD5F30-A549-41B9-A274-886E416AD600}] => (Allow) C:\Steam\steamapps\common\Swordsman\patcher\patcher.exe FirewallRules: [TCP Query User{82EBD27E-76CB-4D6E-96C5-60A17B9BD717}C:\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [UDP Query User{92B8FEFC-A911-498D-BF61-B5E09C57A37C}C:\steam\steamapps\common\total war warhammer\warhammer.exe] => (Allow) C:\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [{EA85B378-5D8F-4ECE-A7BB-E13C4E4146E3}] => (Block) C:\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [{4B29B79B-9E0B-4C62-AF13-2C2F26B30A68}] => (Block) C:\steam\steamapps\common\total war warhammer\warhammer.exe FirewallRules: [{761EE7EC-CD69-4FAA-A5EB-7F1B16E06DE9}] => (Allow) C:\Steam\steamapps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{13722B57-8896-42D6-82E5-9C6D8B345BA7}] => (Allow) C:\Steam\steamapps\common\Total War Attila\launcher\launcher.exe FirewallRules: [{0491FDB0-8D3F-45DA-AD01-BC9D98CF0BDD}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{F53C5044-0CF2-40A0-B59F-BDCD87730E54}] => (Allow) G:\Spore\SporeBin\SporeApp.exe FirewallRules: [{10808656-FE97-464D-A86A-C656CDDD6C76}] => (Allow) G:\Spore\SporeBin\SporeApp.exe FirewallRules: [{1332FF96-5E6C-4AB9-8CE9-34A24931C864}] => (Allow) G:\Spore\SporebinEP1\SporeApp.exe FirewallRules: [{895E8BD2-DD3F-4BDD-B918-6637B467A28E}] => (Allow) G:\Spore\SporebinEP1\SporeApp.exe FirewallRules: [TCP Query User{641C363C-6380-4675-A4AE-51F9E5EC1E9C}G:\blood bowl 2 norse\benchmarkdx11.exe] => (Allow) G:\blood bowl 2 norse\benchmarkdx11.exe FirewallRules: [UDP Query User{D3D5438B-17F4-4E2E-B933-C24557725499}G:\blood bowl 2 norse\benchmarkdx11.exe] => (Allow) G:\blood bowl 2 norse\benchmarkdx11.exe FirewallRules: [TCP Query User{6EC71A45-D1C1-40C8-800F-48B1C9C3F180}G:\blood bowl 2 norse\bloodbowl2_dx_32.exe] => (Allow) G:\blood bowl 2 norse\bloodbowl2_dx_32.exe FirewallRules: [UDP Query User{B070DB40-C0F7-42FD-87A0-51B260875167}G:\blood bowl 2 norse\bloodbowl2_dx_32.exe] => (Allow) G:\blood bowl 2 norse\bloodbowl2_dx_32.exe FirewallRules: [{04042849-BEA4-4678-B48F-25B2AA823E6B}] => (Block) G:\blood bowl 2 norse\bloodbowl2_dx_32.exe FirewallRules: [{0B86137E-B1FF-425D-ACBF-F5026779CA4D}] => (Block) G:\blood bowl 2 norse\bloodbowl2_dx_32.exe FirewallRules: [{1460763D-5E25-46F3-B3E0-9A10854D1C77}] => (Block) G:\blood bowl 2 norse\benchmarkdx11.exe FirewallRules: [{8A71139C-FDD3-45EF-85C8-0FD3B35A5403}] => (Block) G:\blood bowl 2 norse\benchmarkdx11.exe FirewallRules: [{F039DAA1-EAA7-4AF4-B5E3-51C98F118DD0}] => (Allow) G:\Loki\GameCenter\GameCenter.exe FirewallRules: [{0A16DCE0-0009-4DB9-84A7-E9216B6E6565}] => (Allow) G:\Loki\GameCenter\GameCenter.exe FirewallRules: [{2C218CB9-B952-4110-8478-A2F1ECC25FE2}] => (Allow) G:\Loki\Loki.exe FirewallRules: [{195FCCA4-980D-44A2-A3A0-2EE7219B7D72}] => (Allow) G:\Loki\Loki.exe FirewallRules: [{771A26BF-5124-423E-A669-36778D2D3EB7}] => (Allow) G:\Loki\Autorun\AutoRun.exe FirewallRules: [{94B59365-54B9-4D79-8599-B71CB0415CF9}] => (Allow) G:\Loki\Autorun\AutoRun.exe FirewallRules: [TCP Query User{766B698A-1DEE-4025-89AC-7DED44B53C5A}G:\euro fishing\windowsnoeditor\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Allow) G:\euro fishing\windowsnoeditor\fishinggame\binaries\win64\fishinggame-win64-shipping.exe FirewallRules: [UDP Query User{F1B54BB4-E9F7-4E50-BAA9-F8A91D2BA3F8}G:\euro fishing\windowsnoeditor\fishinggame\binaries\win64\fishinggame-win64-shipping.exe] => (Allow) G:\euro fishing\windowsnoeditor\fishinggame\binaries\win64\fishinggame-win64-shipping.exe FirewallRules: [TCP Query User{381F7EC1-E721-404E-98CD-A045B78BD2FA}G:\trackmania united forever\tmforever.exe] => (Allow) G:\trackmania united forever\tmforever.exe FirewallRules: [UDP Query User{D26A500D-7603-4B47-9FE0-E089A81C3269}G:\trackmania united forever\tmforever.exe] => (Allow) G:\trackmania united forever\tmforever.exe FirewallRules: [TCP Query User{B471A54E-21D7-4F09-BC12-AB0B3E8E79CB}G:\blood bowl 2 norse\bloodbowl2_gl_32.exe] => (Block) G:\blood bowl 2 norse\bloodbowl2_gl_32.exe FirewallRules: [UDP Query User{F3EDB2DA-B838-4E0E-A897-2CA697724074}G:\blood bowl 2 norse\bloodbowl2_gl_32.exe] => (Block) G:\blood bowl 2 norse\bloodbowl2_gl_32.exe FirewallRules: [TCP Query User{56C10E7D-9371-49A9-BC59-2A3C63014587}G:\valentino rossi the game\motogpvr46x64.exe] => (Allow) G:\valentino rossi the game\motogpvr46x64.exe FirewallRules: [UDP Query User{AE72A163-4250-440E-8C07-3DAA2936E721}G:\valentino rossi the game\motogpvr46x64.exe] => (Allow) G:\valentino rossi the game\motogpvr46x64.exe FirewallRules: [TCP Query User{E9271CC6-E73E-4D88-BE5D-4BE614971509}J:\dollar dash (multi)\binaries\win32\pkgame-win32-shipping.exe] => (Allow) J:\dollar dash (multi)\binaries\win32\pkgame-win32-shipping.exe FirewallRules: [UDP Query User{CFA7D7B7-5EC7-4B7D-9757-D2AD172E49B7}J:\dollar dash (multi)\binaries\win32\pkgame-win32-shipping.exe] => (Allow) J:\dollar dash (multi)\binaries\win32\pkgame-win32-shipping.exe FirewallRules: [TCP Query User{7DB51D0A-E6FB-47D6-9EF0-763703CE20C2}G:\dollar dash\binaries\win32\pkgame-win32-shipping.exe] => (Allow) G:\dollar dash\binaries\win32\pkgame-win32-shipping.exe FirewallRules: [UDP Query User{6CF92C05-70A7-4F1E-B58E-29E0627ADBB0}G:\dollar dash\binaries\win32\pkgame-win32-shipping.exe] => (Allow) G:\dollar dash\binaries\win32\pkgame-win32-shipping.exe FirewallRules: [TCP Query User{45608FF1-1C53-40DB-B030-C09ABE66516A}G:\saving private sheep 2\sps2.exe] => (Allow) G:\saving private sheep 2\sps2.exe FirewallRules: [UDP Query User{246C2FD7-1B84-466D-9B1E-6DD11FC874CB}G:\saving private sheep 2\sps2.exe] => (Allow) G:\saving private sheep 2\sps2.exe FirewallRules: [TCP Query User{52BC82D4-B607-4B26-B3D8-C9EACD54DF18}G:\anno 1404 gold edition\tools\addonweb.exe] => (Allow) G:\anno 1404 gold edition\tools\addonweb.exe FirewallRules: [UDP Query User{AF7CFC1C-5694-4182-BF04-339DC873A843}G:\anno 1404 gold edition\tools\addonweb.exe] => (Allow) G:\anno 1404 gold edition\tools\addonweb.exe FirewallRules: [TCP Query User{11EE9B81-5738-4DF2-9641-56158592818E}G:\anno 1404 gold edition\tools\anno4web.exe] => (Allow) G:\anno 1404 gold edition\tools\anno4web.exe FirewallRules: [UDP Query User{F6E8D559-1CEF-4B30-B8B9-F0145BA4552A}G:\anno 1404 gold edition\tools\anno4web.exe] => (Allow) G:\anno 1404 gold edition\tools\anno4web.exe FirewallRules: [TCP Query User{05ACD557-EF06-4B5E-8F9C-C381E90BC8D8}I:\empires2.exe] => (Allow) I:\empires2.exe FirewallRules: [UDP Query User{E99EC76A-1AC4-4964-B863-D5ED1AAA2546}I:\empires2.exe] => (Allow) I:\empires2.exe FirewallRules: [TCP Query User{3762C98B-3FE3-4BF3-B7C1-2B6ACC004586}G:\age of empire ii -\empires2.exe] => (Allow) G:\age of empire ii -\empires2.exe FirewallRules: [UDP Query User{3E70F6D2-A5A2-4EF7-867A-476351D8F164}G:\age of empire ii -\empires2.exe] => (Allow) G:\age of empire ii -\empires2.exe FirewallRules: [TCP Query User{86AD7901-14E3-4167-A53F-AAC576602545}G:\age of empire ii -\age2_x1\age2_x1.exe] => (Allow) G:\age of empire ii -\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{B101F3D7-CEB2-4B1B-839C-214226BDC8FE}G:\age of empire ii -\age2_x1\age2_x1.exe] => (Allow) G:\age of empire ii -\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{0CC76304-DEF2-44E7-96F4-474176F9FFA2}G:\age of empire ii - the age of kings & conquerors\age2_x1\age2_x1.exe] => (Allow) G:\age of empire ii - the age of kings & conquerors\age2_x1\age2_x1.exe FirewallRules: [UDP Query User{93221ABC-DEF8-459F-9972-8C8488ED441D}G:\age of empire ii - the age of kings & conquerors\age2_x1\age2_x1.exe] => (Allow) G:\age of empire ii - the age of kings & conquerors\age2_x1\age2_x1.exe FirewallRules: [TCP Query User{54B8B369-7C1F-414E-942E-EE02BF71DF2F}G:\age of empire ii - the age of kings & conquerors\empires2.exe] => (Allow) G:\age of empire ii - the age of kings & conquerors\empires2.exe FirewallRules: [UDP Query User{0A842C5B-D0C6-4262-AE7E-AAFB8ACACFB0}G:\age of empire ii - the age of kings & conquerors\empires2.exe] => (Allow) G:\age of empire ii - the age of kings & conquerors\empires2.exe FirewallRules: [TCP Query User{F16E2020-D364-4AE6-8F67-AECA0F64712B}G:\risk - the game of global domination\risk.exe] => (Allow) G:\risk - the game of global domination\risk.exe FirewallRules: [UDP Query User{561C972B-A01B-45EA-8254-85A0C606F496}G:\risk - the game of global domination\risk.exe] => (Allow) G:\risk - the game of global domination\risk.exe FirewallRules: [TCP Query User{1D4CA5E5-CFA1-4919-84A5-7EE739BA5A21}G:\terraria\terrariaserver.exe] => (Allow) G:\terraria\terrariaserver.exe FirewallRules: [UDP Query User{AFD2B3E7-49AA-4884-A2A1-6B9BD932A4DA}G:\terraria\terrariaserver.exe] => (Allow) G:\terraria\terrariaserver.exe FirewallRules: [TCP Query User{9C091761-A761-43C0-98CF-3E51A4DDF8E3}G:\sword coast legends\swordcoast.exe] => (Allow) G:\sword coast legends\swordcoast.exe FirewallRules: [UDP Query User{7DD7274E-1284-430B-91BE-074E588CF066}G:\sword coast legends\swordcoast.exe] => (Allow) G:\sword coast legends\swordcoast.exe FirewallRules: [{7FBA4DB3-6661-4974-A5F7-F10493C39A37}] => (Allow) G:\The SIMS 4\Game\Bin\TS4.exe FirewallRules: [{C0040FFA-2525-4E63-BE91-5FCAE684F65A}] => (Allow) G:\The SIMS 4\Game\Bin\TS4.exe FirewallRules: [{FBCDCEDD-29A6-499D-A0C9-837E73A3ABFA}] => (Allow) G:\The SIMS 4\Game\Bin\TS4_x64.exe FirewallRules: [{81B82E7C-645A-4BB9-B07C-DED23E92F706}] => (Allow) G:\The SIMS 4\Game\Bin\TS4_x64.exe FirewallRules: [TCP Query User{C8741E90-FA9A-49C4-A53A-A4BBC63E7997}G:\leap of fate\lof.exe] => (Allow) G:\leap of fate\lof.exe FirewallRules: [UDP Query User{42A9680C-56DB-4FFF-9F21-18799E09BE5D}G:\leap of fate\lof.exe] => (Allow) G:\leap of fate\lof.exe FirewallRules: [TCP Query User{DC5889A3-02D5-4DE3-982D-FB05208B79E8}G:\smashing the batlle v1.05\stb.exe] => (Allow) G:\smashing the batlle v1.05\stb.exe FirewallRules: [UDP Query User{08440452-303D-4330-A3CB-691AF3832EDB}G:\smashing the batlle v1.05\stb.exe] => (Allow) G:\smashing the batlle v1.05\stb.exe FirewallRules: [TCP Query User{3B61BDCC-C8A6-43D0-90F0-0B1CFD904231}G:\xcom 2\binaries\win64\xcom2.exe] => (Allow) G:\xcom 2\binaries\win64\xcom2.exe FirewallRules: [UDP Query User{9453AABB-C820-4252-BD2A-5F4370A7926D}G:\xcom 2\binaries\win64\xcom2.exe] => (Allow) G:\xcom 2\binaries\win64\xcom2.exe FirewallRules: [TCP Query User{1FBB51EE-68EB-47A4-9178-05D0A23822FA}G:\tron run - outlands\trongame\binaries\win64\trongame-win64-shipping.exe] => (Allow) G:\tron run - outlands\trongame\binaries\win64\trongame-win64-shipping.exe FirewallRules: [UDP Query User{E45D2562-670F-4D6F-84BD-45567B54B421}G:\tron run - outlands\trongame\binaries\win64\trongame-win64-shipping.exe] => (Allow) G:\tron run - outlands\trongame\binaries\win64\trongame-win64-shipping.exe FirewallRules: [TCP Query User{78540ECC-F1EA-499C-95AA-6B6C5E814F24}G:\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe] => (Allow) G:\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe FirewallRules: [UDP Query User{A6FA5D37-E00F-47B2-AEFA-F87CB47261FA}G:\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe] => (Allow) G:\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe FirewallRules: [TCP Query User{85EAFCE7-2250-41ED-83F0-A69C6E57085B}G:\oddworld - new 'n' tasty\nnt.exe] => (Allow) G:\oddworld - new 'n' tasty\nnt.exe FirewallRules: [UDP Query User{868C0B4D-8217-45FC-BEEB-645BB236A10F}G:\oddworld - new 'n' tasty\nnt.exe] => (Allow) G:\oddworld - new 'n' tasty\nnt.exe FirewallRules: [TCP Query User{69827590-E7E8-46D1-8ED8-2A0D0E4DAA4D}G:\fortified\fenris\binaries\win64\fenris-win64-shipping.exe] => (Allow) G:\fortified\fenris\binaries\win64\fenris-win64-shipping.exe FirewallRules: [UDP Query User{E083A3D7-E3C0-497F-8A7B-A265AC6BD791}G:\fortified\fenris\binaries\win64\fenris-win64-shipping.exe] => (Allow) G:\fortified\fenris\binaries\win64\fenris-win64-shipping.exe FirewallRules: [TCP Query User{4179A91B-001B-4B72-862F-0D08435A0557}G:\assetto corsa\acs.exe] => (Allow) G:\assetto corsa\acs.exe FirewallRules: [UDP Query User{69C189C8-1C35-424A-A8FA-6F3E7ADA75F5}G:\assetto corsa\acs.exe] => (Allow) G:\assetto corsa\acs.exe FirewallRules: [{09DBB5A6-5996-4F0F-B9F6-DC749A3B6F51}] => (Allow) E:2\ABZU\Steam\Steam.exe FirewallRules: [{B6919E95-0BF9-4684-9D12-3ED16CB520A0}] => (Allow) E:2\ABZU\Steam\Steam.exe FirewallRules: [{734DE0FE-F8B3-4E4D-813A-90D427AB5D55}] => (Allow) E:2\ABZU\Steam\bin\steamwebhelper.exe FirewallRules: [{E303FC26-D1E1-4D02-9288-F95D1FC81EAC}] => (Allow) E:2\ABZU\Steam\bin\steamwebhelper.exe FirewallRules: [TCP Query User{E2BE48B3-877F-488B-B935-F854EA85FBF5}E:2\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe] => (Allow) E:2\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe FirewallRules: [UDP Query User{E72809F2-18BF-47E2-86FF-F0B23F76C118}E:2\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe] => (Allow) E:2\ghostbusters\ghostbusters\binaries\win64\ghostbusters.exe FirewallRules: [TCP Query User{04E8B69E-9FDF-4790-A8B5-4A9F710B823A}E:2\grand theft auto v\gta5.exe] => (Allow) E:2\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{949501A7-0A4E-4100-B15B-CC05225748B5}E:2\grand theft auto v\gta5.exe] => (Allow) E:2\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{98929DA6-3A02-4533-834A-80BEA16430D0}E:2\arma 3 apex\arma3.exe] => (Allow) E:2\arma 3 apex\arma3.exe FirewallRules: [UDP Query User{6D9BB9C1-44A7-43E4-812B-2D47B02ADC4D}E:2\arma 3 apex\arma3.exe] => (Allow) E:2\arma 3 apex\arma3.exe FirewallRules: [TCP Query User{39072A87-0C47-4176-9E1E-606CAA4D4FD8}E:2\sword coast legends\swordcoast.exe] => (Allow) E:2\sword coast legends\swordcoast.exe FirewallRules: [UDP Query User{0720B12C-EB3D-45E8-8774-94EB10F32343}E:2\sword coast legends\swordcoast.exe] => (Allow) E:2\sword coast legends\swordcoast.exe FirewallRules: [TCP Query User{6D5725E8-5C64-48D9-91FE-33CD2492D84C}E:2\terraria\terrariaserver.exe] => (Allow) E:2\terraria\terrariaserver.exe FirewallRules: [UDP Query User{6B233024-195D-4B27-A9B1-293A70B01D6C}E:2\terraria\terrariaserver.exe] => (Allow) E:2\terraria\terrariaserver.exe FirewallRules: [{C79F89FB-341D-4E65-BFD6-7D48C9C559D1}] => (Allow) G:\Spore - Galaxy Adventure\SporeBin\SporeApp.exe FirewallRules: [{7B856E42-D894-47DB-9CDC-66B9915BC1EB}] => (Allow) G:\Spore - Galaxy Adventure\SporeBin\SporeApp.exe FirewallRules: [{979BC16A-88BE-4122-98A2-E1FB064A61AD}] => (Allow) G:\Spore - Galaxy Adventure\SporebinEP1\SporeApp.exe FirewallRules: [{5BE02E70-12D6-47F7-BC15-6188A239B415}] => (Allow) G:\Spore - Galaxy Adventure\SporebinEP1\SporeApp.exe FirewallRules: [{895C414E-5C64-46E2-8AD4-9D2AEC152FF7}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{BF48E308-67A8-4C45-B18B-D803D7CC66F0}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{215B03C5-22D8-4B0C-B5A0-BC54AE669D59}] => (Allow) C:\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [{C2FB429A-E268-44B2-B8C5-19F2419EA8EA}] => (Allow) C:\Steam\steamapps\common\Terraria\Terraria.exe FirewallRules: [{543EFCA8-80B0-4BF7-BD31-B6A8493ABF7A}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{2932D850-1AB7-4D18-8379-B880BF8D29FD}] => (Allow) C:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [TCP Query User{AA92937E-D1F7-4DC5-BE91-D906CAD4DF94}C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe FirewallRules: [UDP Query User{48DA1EF1-7B29-47D2-A9F7-A4691C075F40}C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{17A3D653-B9AA-4DE3-8B0F-FE9E65825F4E}C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe FirewallRules: [UDP Query User{E1107C9E-2FDC-4574-AD1B-3C3664F9697D}C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe] => (Allow) C:\program files (x86)\blizzard app\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{01ED4FA8-B474-4DEE-AF29-4D4D2D118055}C:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [UDP Query User{BA9A9279-9DE3-4E2D-A2A8-6B10FF01CAB0}C:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe FirewallRules: [TCP Query User{C051F8C5-C937-47D9-B214-25DF7B8E7AF9}C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{6B9AAF06-CD51-470D-9891-48C4135BC8DA}C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [{8585D18C-2F88-40B5-BAF9-4264A301615E}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe FirewallRules: [{A21160DE-C9C9-480E-AFAA-73816B9B82AA}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [{C574A620-4D10-44E0-9428-D87B4A7D7A9B}] => (Allow) C:\Program Files\DriversCloud.com\DriversCloud.exe FirewallRules: [TCP Query User{D0C2D9D5-0BB0-4333-8D2F-84430AC87430}C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [UDP Query User{1CB723B6-FD67-431E-98AB-B89C475F2005}C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\games\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe FirewallRules: [TCP Query User{E2A7C4DC-BC32-46A4-A17D-E3187133BBB8}C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{7C606639-B2DA-4D85-8EB0-5D08B00E1426}C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{8841A734-9D19-40C3-B6D2-7FA6B100348B}C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [UDP Query User{1DF33404-8292-43A5-AFB3-5E86096101D3}C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\games\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe FirewallRules: [TCP Query User{B10FED99-A4F9-4556-AEEB-E45B5F97389B}C:\games\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\games\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [UDP Query User{5D63C430-9BE3-4C03-B403-5B244100C874}C:\games\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Block) C:\games\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe FirewallRules: [TCP Query User{BD600871-AF72-40A6-994A-7AA406A215D3}G:\grand theft auto v\gta5.exe] => (Block) G:\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{D325049D-9814-47A4-9EEA-11AC36A28F56}G:\grand theft auto v\gta5.exe] => (Block) G:\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{2504C106-A15D-40A9-B6CA-D4004E63DBEA}C:\illusion\playhome\playhome64bit.exe] => (Allow) C:\illusion\playhome\playhome64bit.exe FirewallRules: [UDP Query User{29BEF0E1-2BB3-4783-8723-CB4ED8AF92C2}C:\illusion\playhome\playhome64bit.exe] => (Allow) C:\illusion\playhome\playhome64bit.exe FirewallRules: [{40095805-C317-4EEA-AED4-6687F4FDC6D6}] => (Allow) C:\Users\Weloss\DAEMON Tools Lite\DiscSoftBusServiceLite.exe FirewallRules: [TCP Query User{5325A766-97A1-4A44-9C6C-F2502439D3E5}D:\illusion\whorecraft game\binaries\win32\udk.exe] => (Allow) D:\illusion\whorecraft game\binaries\win32\udk.exe FirewallRules: [UDP Query User{666902D4-62EF-4A66-9F58-A9217A1C6F52}D:\illusion\whorecraft game\binaries\win32\udk.exe] => (Allow) D:\illusion\whorecraft game\binaries\win32\udk.exe FirewallRules: [TCP Query User{8585F1BB-7F47-42C7-A528-5726B58F1625}D:\illusion\whorecraftpre-demo_beta\binaries\win32\udk.exe] => (Allow) D:\illusion\whorecraftpre-demo_beta\binaries\win32\udk.exe FirewallRules: [UDP Query User{620BD472-552A-4383-BAC1-722AEA285519}D:\illusion\whorecraftpre-demo_beta\binaries\win32\udk.exe] => (Allow) D:\illusion\whorecraftpre-demo_beta\binaries\win32\udk.exe FirewallRules: [{4A5AAA25-4A4C-400E-88BD-3D0F1D692ED4}] => (Allow) D:\qBittorrent\qbittorrent.exe FirewallRules: [{EA0FBC98-DB67-43AB-8E00-1980191F7C72}] => (Allow) D:\qBittorrent\qbittorrent.exe FirewallRules: [{9CD18E7E-B972-42DB-BF3F-9F55D8B4BB19}] => (Allow) C:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [{08597085-6E7B-4125-9B63-0AB09F2F5F7A}] => (Allow) C:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe FirewallRules: [TCP Query User{1FFDC19E-481D-44EE-A44C-73B6FD55AB5D}D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe FirewallRules: [UDP Query User{6CC3F690-0FF0-4655-B627-B645E7E748A4}D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Allow) D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe FirewallRules: [{750706B8-6BB4-454C-A1DA-4EF2A04A3C09}] => (Allow) C:\Users\Weloss\AppData\Local\MyComGames\MyComGames.exe FirewallRules: [{8B3F322F-D008-402E-9335-ADE782D1FDA7}] => (Allow) C:\Users\Weloss\AppData\Local\MyComGames\MyComGames.exe FirewallRules: [TCP Query User{C06EE8C0-D68B-48C9-9601-F8AF82AE0638}C:\users\weloss\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\weloss\appdata\local\gamecenter\gamecenter.exe FirewallRules: [UDP Query User{5B7DAAC7-D645-45D5-8441-806661F1AC89}C:\users\weloss\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\weloss\appdata\local\gamecenter\gamecenter.exe FirewallRules: [{48649C61-BFA9-4115-A98E-A5E124EE9E4F}] => (Allow) C:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{E8A6CE71-23F1-428A-A3C1-B6357073E00C}] => (Allow) C:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [TCP Query User{B300E16A-29A5-4B28-9CBA-2C8D8ADCC062}C:\steam\steamapps\common\scum\scum\binaries\win64\scum.exe] => (Allow) C:\steam\steamapps\common\scum\scum\binaries\win64\scum.exe FirewallRules: [UDP Query User{7B7A9FEB-7A9B-4151-9B2C-E9D7754BFFFC}C:\steam\steamapps\common\scum\scum\binaries\win64\scum.exe] => (Allow) C:\steam\steamapps\common\scum\scum\binaries\win64\scum.exe FirewallRules: [TCP Query User{2E4DC320-10B7-4DA2-BFA3-915708906598}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe FirewallRules: [UDP Query User{A00DBF55-3F96-4825-B0A3-AE6B46080E8F}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe FirewallRules: [{7DAEAE2D-03F0-4C77-AE38-7E6D58213EBE}] => (Allow) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe FirewallRules: [{14E93934-DAF2-4898-8118-48B45D0BB555}] => (Allow) C:\ProgramData\Wargaming.net\GameCenter\wgc.exe FirewallRules: [{E1F9280C-467F-4738-B6C1-27CB2AF2DE67}] => (Allow) C:\Games\World_of_Warplanes_EU\WorldOfWarplanes.exe FirewallRules: [{1679C520-F42C-455B-9DD7-B5A92E808307}] => (Allow) C:\Games\World_of_Warplanes_EU\WorldOfWarplanes.exe FirewallRules: [TCP Query User{AA27C531-A39A-4CFC-BD09-26D70C542D85}D:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) D:\games\the sims 4 seasons\game\bin\ts4_x64.exe FirewallRules: [UDP Query User{70996A02-1E27-4140-9FE4-B2988CAD0D89}D:\games\the sims 4 seasons\game\bin\ts4_x64.exe] => (Allow) D:\games\the sims 4 seasons\game\bin\ts4_x64.exe FirewallRules: [TCP Query User{706932BC-57B1-4E01-8F04-6730B2E2BF9A}D:\games\the sims 4 seasons\game\bin\ts4.exe] => (Allow) D:\games\the sims 4 seasons\game\bin\ts4.exe FirewallRules: [UDP Query User{86059F6A-D601-4734-9420-CD08DC6D51CC}D:\games\the sims 4 seasons\game\bin\ts4.exe] => (Allow) D:\games\the sims 4 seasons\game\bin\ts4.exe FirewallRules: [TCP Query User{96C9C5C8-FED4-486A-8B9D-23845588D8DE}C:\users\weloss\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\weloss\appdata\local\gamecenter\gamecenter.exe FirewallRules: [UDP Query User{0F6EBB05-470E-47AC-9174-59C4947DA811}C:\users\weloss\appdata\local\gamecenter\gamecenter.exe] => (Allow) C:\users\weloss\appdata\local\gamecenter\gamecenter.exe FirewallRules: [{3775F4E5-058B-40A1-B980-7119EA6E9B2D}] => (Allow) D:\GameforgeLive\gfl_client.exe FirewallRules: [{CB407F7D-41D8-465C-AF0A-DE47EBD2DF3B}] => (Allow) D:\qBittorrent\qbittorrent.exe FirewallRules: [{350C8CCD-6380-4FAF-8520-ECFAA3903B9F}] => (Allow) D:\qBittorrent\qbittorrent.exe FirewallRules: [{1C117D02-9A0C-460F-A92F-9BF04CB90E03}] => (Allow) C:\WINDOWS\SysWOW64\msiexec.exe FirewallRules: [{B7A18AD2-13EE-4146-9613-21B0CF5348D2}] => (Allow) C:\Users\Weloss\AppData\Local\UseRGREIO.exe FirewallRules: [{A205CB52-A560-4440-B355-B0DBC941D429}] => (Allow) C:\Users\Weloss\rIJaviw.exe FirewallRules: [{4D8FCB47-DD73-4418-835E-255393B69CFD}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{9DC2E6D1-AE15-4921-B31F-EC19AF675E2C}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{CCE44FBD-48A4-4783-8FE7-07787C1EA9FB}] => (Allow) C:\WINDOWS\SysWOW64\svchost.exe FirewallRules: [{9AA9DACB-9AC9-49FB-BF5E-90F7BDDAACA6}] => (Allow) C:\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe FirewallRules: [{7D8D60AE-AD81-4C0C-9EBB-E0516B60EFFE}] => (Allow) C:\Steam\steamapps\common\Car Mechanic Simulator 2018\cms2018.exe FirewallRules: [TCP Query User{39C7FEDF-2005-4E1E-8A74-F2F1E42795D2}I:\jeux courrants\xcom 2\binaries\win64\xcom2.exe] => (Allow) I:\jeux courrants\xcom 2\binaries\win64\xcom2.exe FirewallRules: [UDP Query User{61BEA653-D8BE-4F33-8B2F-B39F8873A1DB}I:\jeux courrants\xcom 2\binaries\win64\xcom2.exe] => (Allow) I:\jeux courrants\xcom 2\binaries\win64\xcom2.exe FirewallRules: [TCP Query User{9B20E86A-A2B1-4A51-AC08-0E3F75760A70}D:\games\ride\ride.exe] => (Allow) D:\games\ride\ride.exe FirewallRules: [UDP Query User{3ABCBF56-7975-4F76-B2C3-F23BA46454A4}D:\games\ride\ride.exe] => (Allow) D:\games\ride\ride.exe FirewallRules: [TCP Query User{2F092C78-4C39-4AC4-B819-C8589B187DAA}D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Block) D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe FirewallRules: [UDP Query User{2AF533B9-7B22-44D7-863A-1B12C5C71F39}D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe] => (Block) D:\illusion\lewd red riding hoof 1.0.2\ost_game\binaries\win64\ost_game-win64-shipping.exe FirewallRules: [TCP Query User{379C33F1-4E3A-4020-9269-D08E2B4C36D9}D:\games\city car driving\bin\win32\starter.exe] => (Allow) D:\games\city car driving\bin\win32\starter.exe FirewallRules: [UDP Query User{D01B3B04-D004-47F0-B93E-930B2F3E68A3}D:\games\city car driving\bin\win32\starter.exe] => (Allow) D:\games\city car driving\bin\win32\starter.exe FirewallRules: [TCP Query User{8604D566-1E16-4718-BBAA-922F88B6F2C6}D:\games\monopoly plus\monopoly.exe] => (Allow) D:\games\monopoly plus\monopoly.exe FirewallRules: [UDP Query User{22F043F9-A864-4E3E-AEEB-1131D9346A74}D:\games\monopoly plus\monopoly.exe] => (Allow) D:\games\monopoly plus\monopoly.exe FirewallRules: [{1D15BAA0-8B2B-48B9-9A95-7694B5B15C4D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{8F459FA7-A197-489F-8B7F-AD882ACE838B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [TCP Query User{B8DB1DEC-CC8F-4AE0-896B-F928694F0331}E:\games\super mega baseball 2 red rock park\supermegabaseball.exe] => (Allow) E:\games\super mega baseball 2 red rock park\supermegabaseball.exe FirewallRules: [UDP Query User{035075B1-E2B3-4F55-9828-ED3E11BCFE32}E:\games\super mega baseball 2 red rock park\supermegabaseball.exe] => (Allow) E:\games\super mega baseball 2 red rock park\supermegabaseball.exe FirewallRules: [TCP Query User{6268FF80-8C23-47B2-8D40-6AEE8965E0A9}E:\games\battle chasers nightwar\bc.exe] => (Allow) E:\games\battle chasers nightwar\bc.exe FirewallRules: [UDP Query User{5DA5D6F2-AEDF-49B8-9657-B224005FAE2B}E:\games\battle chasers nightwar\bc.exe] => (Allow) E:\games\battle chasers nightwar\bc.exe FirewallRules: [TCP Query User{1E56E9BE-AACA-44FD-B692-F505D400467F}E:\games\helldivers a new hell edition\binaries\x64\helldivers.exe] => (Allow) E:\games\helldivers a new hell edition\binaries\x64\helldivers.exe FirewallRules: [UDP Query User{C4D8F066-BE63-4A2D-9409-D8BA75AD8577}E:\games\helldivers a new hell edition\binaries\x64\helldivers.exe] => (Allow) E:\games\helldivers a new hell edition\binaries\x64\helldivers.exe FirewallRules: [TCP Query User{55247F63-7BE4-4B4F-BCBF-CB6F5AB14BA0}D:\games\life is strange before the storm farewell\life is strange - before the storm.exe] => (Allow) D:\games\life is strange before the storm farewell\life is strange - before the storm.exe FirewallRules: [UDP Query User{6547E959-C52A-4FD9-8FCB-E471B8A283F1}D:\games\life is strange before the storm farewell\life is strange - before the storm.exe] => (Allow) D:\games\life is strange before the storm farewell\life is strange - before the storm.exe FirewallRules: [TCP Query User{6A208AA9-BDEF-42D4-8EFF-5B75C858585E}D:\games\talisman digital edition the cataclysm\talisman.exe] => (Allow) D:\games\talisman digital edition the cataclysm\talisman.exe FirewallRules: [UDP Query User{14E50001-19FB-41F0-ADCB-84A454AF4E58}D:\games\talisman digital edition the cataclysm\talisman.exe] => (Allow) D:\games\talisman digital edition the cataclysm\talisman.exe FirewallRules: [TCP Query User{C1230519-A116-4F25-94EC-A434FEDAC413}E:\games\pathfinder kingmaker\kingmaker.exe] => (Allow) E:\games\pathfinder kingmaker\kingmaker.exe FirewallRules: [UDP Query User{A6FE0213-D8C4-4BCD-9223-E2CCE6712405}E:\games\pathfinder kingmaker\kingmaker.exe] => (Allow) E:\games\pathfinder kingmaker\kingmaker.exe FirewallRules: [{F7053646-9803-4645-802A-3F2405871EE0}] => (Allow) C:\Program Files\Opera\56.0.3051.104\opera.exe FirewallRules: [TCP Query User{11EFB4BF-05B4-4841-A32D-D4F257984092}I:\jeux courrants\grand theft auto v\gta5.exe] => (Allow) I:\jeux courrants\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{C54B4259-E600-4A44-927A-FA839A3540C1}I:\jeux courrants\grand theft auto v\gta5.exe] => (Allow) I:\jeux courrants\grand theft auto v\gta5.exe FirewallRules: [{C3B2E7A1-C050-441A-94B0-8BE1E3887820}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{361B003E-12FE-49C7-8273-2D974E80F95D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{9601EB08-1270-4434-AB17-21A49A9875A1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{C4B40D40-0192-4FB6-B5B4-D6E548BBBAE0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{F5375EA6-B91F-4F74-9A8B-15CFB2ECF3B3}] => (Allow) C:\Program Files\Opera\56.0.3051.116\opera.exe FirewallRules: [TCP Query User{47617AF7-EC99-45B2-B799-530BC5C88431}C:\games\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) C:\games\roberts space industries\starcitizen\live\bin64\starcitizen.exe FirewallRules: [UDP Query User{AAC07F86-138C-4972-8291-12A095EA5521}C:\games\roberts space industries\starcitizen\live\bin64\starcitizen.exe] => (Allow) C:\games\roberts space industries\starcitizen\live\bin64\starcitizen.exe FirewallRules: [{635F3B0B-EC8C-4450-ADE3-52F50530E92F}] => (Allow) C:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{35374FAC-3420-41AC-A546-F0069D55F6C8}] => (Allow) C:\Steam\steamapps\common\Factorio\bin\x64\factorio.exe FirewallRules: [{E2B6AA43-4ACB-47C7-A4D1-AB6B43C82F22}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe FirewallRules: [{74AEEE61-50E9-4BCB-A9BD-02DCD32BC6D5}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe ==================== Points de restauration ========================= 02-12-2018 14:59:13 Programme d’installation pour les modules Windows 03-12-2018 16:59:16 Programme d’installation pour les modules Windows 04-12-2018 12:21:42 Removed Java 8 Update 191 (64-bit) ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: LogMeIn Hamachi Virtual Ethernet Adapter Description: LogMeIn Hamachi Virtual Ethernet Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: LogMeIn Inc. Service: Hamachi Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (12/04/2018 12:21:47 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary SASKUTIL. System Error: Le fichier spécifié est introuvable. . Error: (12/04/2018 12:21:46 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (12/04/2018 12:21:31 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary SASKUTIL. System Error: Le fichier spécifié est introuvable. . Error: (12/04/2018 12:19:49 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (12/04/2018 12:19:35 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary SASKUTIL. System Error: Le fichier spécifié est introuvable. . Error: (12/04/2018 12:18:44 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (12/04/2018 12:17:29 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (12/04/2018 12:15:58 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide . Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Erreurs système: ============= Error: (12/04/2018 12:27:37 PM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 12:01:29 PM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 08:52:33 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 08:28:36 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 08:28:36 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {8BC3F05E-D86B-11D0-A075-00C04FB68820} et l’APPID {8BC3F05E-D86B-11D0-A075-00C04FB68820} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Microsoft.Windows.ContentDeliveryManager_10.0.17134.1_neutral_neutral_cw5n1h2txyewy du conteneur d’applications (S-1-15-2-350187224-1905355452-1037786396-3028148496-2624191407-3283318427-1255436723). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 08:27:24 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 08:23:05 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (12/04/2018 07:08:49 AM) (Source: DCOM) (EventID: 10016) (User: WELOSS_Z170-P) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} et l’APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} au SID Weloss_Z170-P\Weloss de l’utilisateur (S-1-5-21-2701314721-994308290-3501443965-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Windows Defender: =================================== Date: 2018-11-14 00:43:37.764 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Behavior:Win32/Wadhrama.B!rsm&threatid=2147723252&enterprise=0 Nom : Behavior:Win32/Wadhrama.B!rsm ID : 2147723252 Gravité : Grave Catégorie : Ransomware Chemin : behavior:_pid:22344:410887156898692; process:_pid:22344,ProcessStart:131866256584014151 Origine de la détection : Inconnu Type de détection : Concret Source de détection : Inconnu Utilisateur : Nom du processus : Unknown Version de la signature : AV: 1.281.67.0, AS: 1.281.67.0, NIS: 1.281.67.0 Version du moteur : AM: 1.1.15400.5, NIS: 1.1.15400.5 Date: 2018-11-13 22:37:32.799 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Behavior:Win32/Wadhrama.B!rsm&threatid=2147723252&enterprise=0 Nom : Behavior:Win32/Wadhrama.B!rsm ID : 2147723252 Gravité : Grave Catégorie : Ransomware Chemin : behavior:_pid:15556:410887156898692; process:_pid:15556,ProcessStart:131866184505176157 Origine de la détection : Inconnu Type de détection : Concret Source de détection : Inconnu Utilisateur : Nom du processus : Unknown Version de la signature : AV: 1.281.64.0, AS: 1.281.64.0, NIS: 1.281.64.0 Version du moteur : AM: 1.1.15400.5, NIS: 1.1.15400.5 Date: 2018-11-13 22:32:51.049 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Behavior:Win32/Wadhrama.B!rsm&threatid=2147723252&enterprise=0 Nom : Behavior:Win32/Wadhrama.B!rsm ID : 2147723252 Gravité : Grave Catégorie : Ransomware Chemin : behavior:_pid:33116:410887156898692; process:_pid:33116,ProcessStart:131866181247818228 Origine de la détection : Inconnu Type de détection : Concret Source de détection : Inconnu Utilisateur : Nom du processus : Unknown Version de la signature : AV: 1.281.64.0, AS: 1.281.64.0, NIS: 1.281.64.0 Version du moteur : AM: 1.1.15400.5, NIS: 1.1.15400.5 Date: 2018-11-11 14:15:09.939 Description: L’analyse Antivirus Windows Defender a été arrêtée avant la fin. ID de l’analyse : {B751D01A-02E8-4891-A043-278AFF72B794} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse complète Utilisateur : Weloss_Z170-P\Weloss Date: 2018-11-11 12:43:15.918 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Hoodlu&threatid=2147730207&enterprise=0 Nom : Trojan:Win32/Hoodlu ID : 2147730207 Gravité : Grave Catégorie : Cheval de Troie Chemin : file:_G:\setup.exe Origine de la détection : Ordinateur local Type de détection : Concret Source de détection : Utilisateur Utilisateur : Weloss_Z170-P\Weloss Nom du processus : Unknown Version de la signature : AV: 1.279.1587.0, AS: 1.279.1587.0, NIS: 1.279.1587.0 Version du moteur : AM: 1.1.15400.4, NIS: 1.1.15400.4 CodeIntegrity: =================================== Date: 2018-12-04 12:35:27.475 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 12:35:27.470 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 12:35:27.454 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 12:35:27.454 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 06:47:57.388 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 06:47:57.137 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 06:47:54.030 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. Date: 2018-12-04 06:47:54.021 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz Pourcentage de mémoire utilisée: 36% Mémoire physique - RAM - totale: 16317.58 MB Mémoire physique - RAM - disponible: 10417.76 MB Mémoire virtuelle totale: 32701.58 MB Mémoire virtuelle disponible: 24123.71 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:465.32 GB) (Free:61.88 GB) NTFS Drive d: () (Fixed) (Total:298.09 GB) (Free:48.82 GB) NTFS Drive e: () (Fixed) (Total:372.61 GB) (Free:171.29 GB) NTFS ==>[système avec composants d'amorçage (obtenu depuis lecteur)] Drive h: (TOSHIBA Externe 2018) (Fixed) (Total:931.51 GB) (Free:5.56 GB) NTFS Drive i: (TOSHIBA Externe 2016) (Fixed) (Total:931.51 GB) (Free:114.2 GB) NTFS \\?\Volume{2d266229-0000-0000-0000-905474000000}\ () (Fixed) (Total:0.44 GB) (Free:0.03 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 372.6 GB) (Disk ID: F163F163) Partition 1: (Active) - (Size=372.6 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: E4FE9F5E) Partition 1: (Not Active) - (Size=298.1 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 2D266229) Partition 1: (Not Active) - (Size=465.3 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 3 (Size: 931.5 GB) (Disk ID: B08E714A) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 4 (Size: 931.5 GB) (Disk ID: 9814E1B7) Partition 1: (Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================