Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x86) Version: 27-01-2019 Exécuté par Bernard (29-01-2019 19:12:16) Exécuté depuis C:\Users\Bernard\Downloads Microsoft Windows 10 Famille Version 1809 17763.292 (X86) (2019-01-11 12:29:43) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-1667138212-427308065-1583302378-500 - Administrator - Disabled) Bernard (S-1-5-21-1667138212-427308065-1583302378-1000 - Administrator - Enabled) => C:\Users\Bernard DefaultAccount (S-1-5-21-1667138212-427308065-1583302378-503 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1667138212-427308065-1583302378-1002 - Limited - Enabled) Invité (S-1-5-21-1667138212-427308065-1583302378-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1667138212-427308065-1583302378-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Avira Antivirus (Enabled - Up to date) {B3F630BD-538D-1B4A-14FA-14B63235278F} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {0897D159-75B7-14C4-2E4A-2FC449B26D32} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Flash Player 32 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated) Avira (HKLM\...\{8FB15125-F526-4632-8055-837D0083EA3B}) (Version: 1.2.126.28786 - Avira Operations GmbH & Co. KG) Hidden Avira (HKLM\...\{f71ab662-e492-44ad-9c93-e995ad4afb95}) (Version: 1.2.126.28786 - Avira Operations GmbH & Co. KG) Avira Antivirus (HKLM\...\Avira Antivirus) (Version: 15.0.43.24 - Avira Operations GmbH & Co. KG) Avira Home Guard (HKLM\...\{DEB114AB-FAC4-4DEB-AA31-213AD0D2CA8F}) (Version: 1.0.649 - Avira Operations GmbH & Co. KG) Avira Phantom VPN (HKLM\...\Avira Phantom VPN) (Version: 2.19.1.25749 - Avira Operations GmbH & Co. KG) Avira Privacy Pal (HKLM\...\{F2BC8305-DFBE-4C02-A906-9BBD8EE299A3}_is1) (Version: 1.7.2.1820 - Avira Operations GmbH & Co. KG) Avira Safe Shopping (HKLM\...\{3CE6980A-B812-45B3-8FDD-E3AC6078A2AF}) (Version: 1.1.9.3381 - Avira Operations GmbH & Co. KG) Avira Software Updater (HKLM\...\{913AB311-D7E2-4938-BDEA-BC67742CE1C1}) (Version: 2.0.6.9297 - Avira Operations GmbH & Co. KG) Avira System Speedup (HKLM\...\Avira System Speedup_is1) (Version: 4.16.0.7799 - Avira Operations GmbH & Co. KG) Canon Easy-WebPrint EX (HKLM\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM\...\Canon_IJ_Scan_Utility) (Version: 1.1.10.15 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM\...\CANONIJPLM100) (Version: 4.2.0 - Canon Inc.) Canon MG5600 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5600_series) (Version: - Canon Inc.) Canon MG5600 series On-screen Manual (HKLM\...\Canon MG5600 series On-screen Manual) (Version: 7.7.1 - Canon Inc.) Canon My Image Garden (HKLM\...\Canon My Image Garden) (Version: 3.0.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM\...\Canon My Image Garden Design Files) (Version: 3.0.0 - Canon Inc.) Canon My Printer (HKLM\...\CanonMyPrinter) (Version: 3.2.1 - Canon Inc.) Canon Quick Menu (HKLM\...\CanonQuickMenu) (Version: 2.4.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.52 - Piriform) Cozy Drive 3.11.2 (only current user) (HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\4e3f3566-be06-5f9a-b012-0cf924cd77aa) (Version: 3.11.2 - Cozy Cloud) Enregistrement utilisateur de Canon MG5600 series (HKLM\...\Enregistrement utilisateur de Canon MG5600 series) (Version: - ‭Canon Inc.) Google Chrome (HKLM\...\Google Chrome) (Version: 71.0.3578.98 - Google Inc.) Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden Malwarebytes version 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes) Microsoft Office Standard 2010 (HKLM\...\Office14.STANDARD) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\OneDriveSetup.exe) (Version: 18.240.1202.0004 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x86) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 64.0.2 (x86 fr) (HKLM\...\Mozilla Firefox 64.0.2 (x86 fr)) (Version: 64.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 64.0.2 - Mozilla) NordVPN (HKLM\...\{F11DDED0-213C-41B7-B120-514E402A7B53}) (Version: 6.19.6 - NordVPN) Hidden NordVPN (HKLM\...\NordVPN 6.19.6) (Version: 6.19.6 - NordVPN) NordVPN network TAP (HKLM\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation) PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.322.10 - Tracker Software Products Ltd) PhotoFiltre 7 (HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\PhotoFiltre 7) (Version: - ) PHOTOfunSTUDIO -viewer- (HKLM\...\{9A9DBEBC-C800-4776-A970-D76D6AA405B1}) (Version: 2.01.000 - Panasonic) Picasa 3 (HKLM\...\Picasa 3) (Version: 3.9.141.259 - Google, Inc.) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8186 - Realtek Semiconductor Corp.) Revo Uninstaller 2.0.4 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.4 - VS Revo Group, Ltd.) RogueKiller version 13.1.3.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 13.1.3.0 - Adlice Software) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) TAP-NordVPN 9.21.2 (HKLM\...\TAP-NordVPN) (Version: 9.21.2 - NordVPN.com) VLC media player (HKLM\...\VLC media player) (Version: 3.0.6 - VideoLAN) WebAcappella4 (HKLM\...\WebAcappella4_is1) (Version: - Intuisphere) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1667138212-427308065-1583302378-1000_Classes\CLSID\{d33c6260-dafc-4b90-bf39-8ad6a5f19b7d}\localserver32 -> C:\Program Files\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe (Avira Operations GmbH & Co. KG) ContextMenuHandlers1: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files\Avira\Antivirus\shlext.dll [2018-11-05] (Avira Operations GmbH & Co. KG) ContextMenuHandlers1: [SystemSpeedupFilesMenu] -> {ef263503-8f0e-3e6a-ae2e-fe0b4b441d52} => C:\WINDOWS\system32\mscoree.dll [2018-09-15] (Microsoft Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers4: [SystemSpeedupFoldersMenu] -> {3d52b24d-33bb-3895-99ea-a0156f24a3f9} => C:\WINDOWS\system32\mscoree.dll [2018-09-15] (Microsoft Corporation) ContextMenuHandlers5: [SystemSpeedupDesktopMenu] -> {cefaf456-bc17-3f4b-b7d9-75070925911b} => C:\WINDOWS\system32\mscoree.dll [2018-09-15] (Microsoft Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes) ContextMenuHandlers6: [Shell Extension for Malware scanning] -> {45AC2688-0253-4ED8-97DE-B5370FA7D48A} => C:\Program Files\Avira\Antivirus\shlext.dll [2018-11-05] (Avira Operations GmbH & Co. KG) ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {0F6BE366-A37C-486D-8032-5379DDB691B4} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2019-01-11] (Adobe Systems Incorporated) Task: {1D2FB91B-EEE1-4D33-A633-FBE89330EDA0} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2019-01-10] (Piriform Ltd) Task: {200C1892-8912-4C47-8248-911EFAAE43C8} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback Task: {24A2D63D-B4FB-4662-81E2-A3EEC70BF6DC} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-09-15] () Task: {5E466C53-BA15-4670-8973-28343C3A26B8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2019-01-10] (Piriform Software Ltd) Task: {65CAA452-1E80-48A3-9C03-D7F96A9D75C8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2019-01-11] (Google Inc.) Task: {8CC70141-AFB7-49D9-AA94-329F71A6D9B5} - System32\Tasks\Avira\System Speedup\TestScheduler => C:\Program Files\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [2018-12-20] (Avira Operations GmbH & Co. KG) Task: {8FEA5F5B-AE8F-422B-8505-88D8B84AB5CC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2019-01-11] (Google Inc.) Task: {913AF2B8-0B43-41D1-9DC9-DF889AC110E5} - System32\Tasks\TrackerAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [2018-12-13] (Tracker Software Products (Canada) Ltd.) Task: {9E82376F-0C97-4560-A47F-B2E86474B8BC} - System32\Tasks\Avira_Antivirus_Systray => C:\Program Files\Avira\Antivirus\avgnt.exe [2018-11-05] (Avira Operations GmbH & Co. KG) Task: {A8DC2741-324C-445D-8BFA-E1946F2C9358} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\system32\Macromed\Flash\FlashUtil32_32_0_0_114_Plugin.exe [2019-01-11] (Adobe Systems Incorporated) Task: {D0FF5AA5-FE7A-4484-B24A-896937FA0BAE} - System32\Tasks\Avira\Safe Shopping\Update => C:\Program Files\Avira\Safe Shopping\Updater\Updater.exe [2018-11-19] (Avira) Task: {D49386CE-8664-476A-9B4C-277947F64541} - System32\Tasks\Avira\Safe Shopping\Check => C:\Program Files\Avira\Safe Shopping\Updater\Updater.exe [2018-11-19] (Avira) Task: {DA9E8D21-06D1-4355-BAB0-E20CD59585D6} - System32\Tasks\Avira\Safe Shopping\Launch => C:\Program Files\Avira\Safe Shopping\Updater\Updater.exe [2018-11-19] (Avira) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\TrackerAutoUpdate.job => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe-CheckUpdate(Tracker Software Products (Canada) Ltd.Kee ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ==================== Modules chargés (Avec liste blanche) ============== 2019-01-11 16:00 - 2018-11-05 16:35 - 001205792 _____ () C:\Program Files\Avira\Antivirus\crypto-42.dll 2019-01-11 16:00 - 2018-11-05 16:35 - 000244672 _____ () C:\Program Files\Avira\Antivirus\ssl-44.dll 2019-01-12 11:26 - 2013-06-28 16:28 - 000084616 _____ () C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE 2019-01-29 14:06 - 2018-11-15 11:01 - 002234688 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll 2018-09-15 06:06 - 2018-09-15 06:06 - 000591840 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2018-09-15 06:06 - 2018-09-15 06:06 - 000316416 _____ () C:\Windows\ShellExperiences\TileControl.dll 2019-01-28 10:23 - 2019-01-28 10:23 - 001799680 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll 2019-01-28 10:24 - 2019-01-28 10:24 - 001283584 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2018-09-15 14:34 - 2018-09-15 14:34 - 000008192 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\ImagePipelineNative.dll 2019-01-23 09:57 - 2019-01-23 09:57 - 000053760 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\ChakraBridge.dll 2019-01-23 09:57 - 2019-01-23 09:58 - 000013312 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\SkypeProxiesAndStubs.dll 2019-01-23 09:57 - 2019-01-23 09:58 - 006850560 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\LibWrapper.dll 2019-01-23 09:57 - 2019-01-23 09:58 - 001981952 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\skypert.dll 2019-01-23 09:57 - 2019-01-23 09:58 - 000157184 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.37.98.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe 2019-01-11 13:52 - 2019-01-11 13:52 - 004270080 _____ () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20094.0_x86__8wekyb3d8bbwe\YourPhone.exe 2019-01-11 13:52 - 2019-01-11 13:52 - 001820672 _____ () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20094.0_x86__8wekyb3d8bbwe\YourPhone.AppCore.dll 2019-01-11 13:52 - 2019-01-11 13:52 - 001488384 _____ () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20094.0_x86__8wekyb3d8bbwe\PhoneContentDataStore.dll 2018-10-29 08:56 - 2018-10-29 08:58 - 000662528 _____ () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20094.0_x86__8wekyb3d8bbwe\RuntimeConfiguration.dll 2019-01-11 13:52 - 2019-01-11 13:52 - 002400768 _____ () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20094.0_x86__8wekyb3d8bbwe\PhoneCommunicationAppService.dll 2018-11-19 00:28 - 2018-11-19 00:28 - 000078984 _____ () C:\Program Files\Avira\Safe Shopping\ScreenClick.dll 2018-11-06 11:32 - 2018-11-06 11:32 - 000172032 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x86__8wekyb3d8bbwe\WinStore.Preview.dll 2018-11-06 11:32 - 2018-11-06 11:32 - 001847368 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x86__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2018-11-06 11:32 - 2018-11-06 11:32 - 001366528 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x86__8wekyb3d8bbwe\Microsoft.Membership.MeControl.dll 2019-01-09 17:11 - 2019-01-09 17:13 - 000774968 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11029.20108.0_x86__8wekyb3d8bbwe\Office.UI.Xaml.Word.dll 2019-01-16 16:28 - 2019-01-16 16:29 - 000479232 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe 2019-01-16 16:28 - 2019-01-16 16:29 - 055853568 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\Microsoft.Photos.dll 2019-01-16 16:28 - 2019-01-16 16:30 - 000009728 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\RenderingPlugin.dll 2018-11-16 09:31 - 2018-11-16 09:34 - 003227648 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\MediaEngineCSWrapper.dll 2018-01-08 12:35 - 2018-01-08 12:41 - 002366464 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\UnityEngineDelegates.dll 2018-11-16 09:31 - 2018-11-16 09:35 - 000029184 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\WinMLWrapper.UWP.dll 2018-03-30 10:03 - 2018-03-30 10:06 - 001787904 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\TrackingDLLUWP.dll 2018-08-23 10:47 - 2018-08-23 11:01 - 001875968 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\opencv_imgproc320.dll 2018-08-23 10:47 - 2018-08-23 11:01 - 001818112 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\opencv_core320.dll 2019-01-16 16:28 - 2019-01-16 16:30 - 009124352 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\PhotosApp.Windows.dll 2018-11-16 09:31 - 2018-11-16 09:34 - 003131392 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\MediaEngine.dll 2019-01-16 16:28 - 2019-01-16 16:29 - 001764864 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\AppCore.Windows.dll 2018-08-31 08:55 - 2018-08-31 08:59 - 000645120 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\RuntimeConfiguration.dll 2018-07-26 07:56 - 2018-07-26 07:58 - 003565056 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll 2019-01-16 16:28 - 2019-01-16 16:30 - 000104448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.18112.20010.0_x86__8wekyb3d8bbwe\SKU.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\Bernard\Desktop\Ebook-La-face-cachee-de-noel.pdf:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Bernard\Desktop\Ebook-La-face-cachee-de-noel.pdf:com.dropbox.attrs [58] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-01-11 12:48 - 2019-01-11 12:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1667138212-427308065-1583302378-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Bernard\AppData\Roaming\Mozilla\Firefox\Fond d’écran.bmp DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. MSCONFIG\Services: nordvpn-service => 2 HKLM\...\StartupApproved\StartupFolder: => "PHOTOfunSTUDIO -viewer-.lnk" HKLM\...\StartupApproved\Run: => "CanonQuickMenu" HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\StartupApproved\Run: => "CCleaner Smart Cleaning" HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-1667138212-427308065-1583302378-1000\...\StartupApproved\Run: => "NordVPN" ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{0DF5F31A-8986-4717-AAF1-61DC517DEDB0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) FirewallRules: [{58229536-B5B4-4DCD-85F6-30E728FD5DA3}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) FirewallRules: [{FF6B2B7E-3950-4B05-9727-4591798C8E1C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) FirewallRules: [{A6541D42-CA09-4C1B-82E8-96ACD88C96E2}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DF189294-0A43-4A9C-AFA2-4A003FE6A966}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{C26387C0-9908-4D6E-9B7D-78A88A6FD90A}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{BD6F931C-58C1-4760-97FA-C84D461EC0A1}] => (Allow) C:\Program Files\Avira\Home Guard\Avira.HomeGuard.Service.exe (Avira Operations GmbH & Co. KG;) FirewallRules: [{1981740F-3DFA-4CB2-877A-7ECFB76DFFEA}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3DF01C77-6E46-4204-80E1-B1AA1E71BAE9}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{CA84481A-39B2-427C-B8E0-A95ECF7E19EC}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{D73D82DE-D3F7-4EA7-BCAD-CA2215E236C5}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{33EF6521-FC60-4889-8FA6-886350422E73}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{13620734-364D-4490-8CDA-74DB4B8DC55D}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B5F519EB-6E2B-4341-A53B-E9CE4AD3DE72}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DB27C719-6251-4041-AF62-1890B525674F}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{00E1F0B7-2FC6-4A80-81DB-309520AD05EB}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [TCP Query User{984FC8E7-00D2-442A-881C-AEAD8CB68F75}C:\program files\intuisphere\webacappella4\webacappella4.exe] => (Allow) C:\program files\intuisphere\webacappella4\webacappella4.exe () FirewallRules: [UDP Query User{C60D67E4-FA3E-437D-8C88-F1898935B5CE}C:\program files\intuisphere\webacappella4\webacappella4.exe] => (Allow) C:\program files\intuisphere\webacappella4\webacappella4.exe () FirewallRules: [{3CEFF6BC-0521-418D-A691-6C6BF584F8D7}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{990A5D94-92BA-4983-8094-204379DF7841}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{A3E78D32-0FB5-4BCA-A715-30C4CA8928A5}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{E0ABE259-A5CE-4F5B-94DA-AF1A47F9E233}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{0D114416-A8F3-447F-9754-FA112C337F21}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8CC5BE7A-5F76-4B52-8930-789AF8FFC853}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{07B68884-C421-40C4-8E16-B16CA2192747}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{54701AD0-C407-4F37-B768-1A7D15DB264F}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DE5A52C5-114B-4566-9FFA-937AAE4E0332}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{29D268E6-8F2C-4889-BEEB-4274333DD9A7}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3F64CF7A-9339-457F-8253-301715F83EC9}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{CFAD1173-0BF6-4567-9436-640DECE27452}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{732EDD74-17A5-494D-945A-D06D7DBCC34B}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{2900AA5B-3BF4-4869-98C6-AF57D24FC50E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3C893922-CB30-481F-AA25-23EDA1DA6647}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{548E047B-0BDC-4F77-9B81-BCB477B033F5}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{2609A0EA-C569-4722-AC75-37EBA458D7CB}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{9F2203B6-1F0F-4808-B2CA-9579CBAE8556}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DBEA3005-A29E-40A1-8FCC-6E9DFA86C4C0}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{00F45CAD-5FE3-45FE-A095-69D180236B36}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{2CD5663B-14F5-4842-B2A1-57ED088C6CC1}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{06F270C5-CED3-4567-82A2-B46D51933B32}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{254A82CD-E920-405E-896C-59883A80AD88}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{92DCF050-B220-4907-8208-CD37EAECA527}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{C4243D4B-D9D2-49C8-9903-FFE2B9F6CE64}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8BBD24FC-E111-443C-A847-D356D6EFDF3C}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3E2173F3-CA71-426B-83A2-0DFE8EB96C7D}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{E705D0B0-0BD5-469F-ABEB-30A2BC04CAF8}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{5A681DE6-4F42-4D7F-8E3C-FF9F6D271F08}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{E822F5DF-6679-404A-BB3E-01B4042B5042}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{BBAF2ECF-768A-4E57-A70C-9669177DC730}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{92ECC021-DC1B-4B9C-99EC-B36C668F82AA}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8DDEA6AE-8FD4-42F5-9097-A3C49D401669}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B87E40AF-8AB5-4663-A8DA-2B2E4B819D82}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{E59A4F92-9F18-4112-A734-8C589CC1FC2D}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8D92DF28-E327-465C-BD62-703243EDCA18}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{04484594-CDFC-432A-A794-EAC6C56BB230}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{1B70AA1E-C7C2-47AA-8CE0-CBB5E1F78110}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{1417E513-993B-4C68-903F-6DCBE2CC6DAE}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{BC9F8C08-29FD-41F2-9126-05BD8828F664}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3F2E1398-7BFB-4CC7-9948-A5F8D83BB2D1}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8430005D-9A2C-4083-AC14-52FB381C744C}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B980D122-2133-4E2F-B326-9DBA6EA2344C}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3424DDEC-BBD6-4FB4-9405-76368BD3D1B9}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B1A40D4A-BD5F-4331-8BE9-9BCC02B1F52C}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DCC673FA-601B-458E-B87E-DFDF5CADD4FC}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{BD6168B9-49B8-4B1F-808D-89A4D099C21E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3EF3CCEB-503D-4BF6-ADF8-E9D6060FBE83}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{4DE7B14D-CE46-4C60-8F9B-EF7C32134A72}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{12BF369E-9387-4050-AAF2-A59DD150A98D}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3734D827-E30A-4018-BC86-27D32804712E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{3E2A0BC8-ACC2-4251-8619-222D6CCEBCC5}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{ECC7FAB5-6DE5-488E-AC09-A1A736628BB2}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{ABDF2F1A-1D1D-4EB3-B8A9-48F01DD3F3E7}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{D2EFBA62-EA69-4470-BD6A-72104819D124}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{5E01488F-EA6A-4819-A665-4F541296071A}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{6D86C969-C6E0-4093-BAC1-BF010757C3B2}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{E572FC5A-6651-4C84-90A9-9B1219C4681E}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{FBD70823-6EB8-4421-9BA3-DF38F925C58F}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{A4425D8E-2BE5-469F-9538-7DDD5AEB0975}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{505EBEDF-68C6-49E6-8E1A-1AA9D5CE66CA}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{EF163907-E559-4341-9031-C326212787A3}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{871A35BF-96A3-4B43-B166-355C6A33738A}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{F1F0639F-A60D-4882-A67B-E681B868BF5E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd) FirewallRules: [{4780DD19-AE34-4FDA-94F4-208A37F001BB}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Ltd) FirewallRules: [{B92C7F1A-736F-4146-9CF4-580BF85A4329}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DAA1A52D-F10F-42F5-A81A-A0920EC8A643}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{D62EF54D-C8CC-4914-A411-86428EBA6694}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8BB76D1B-42C4-40A6-A4E2-C16A0C5041DF}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{25DE7BC0-E40C-4D98-8A33-A17AB0782F37}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{147AC023-8EA8-48D8-B8F7-6EF0FCEE8D34}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{BBB05CBB-5D84-4871-A829-19C3F1BA55AA}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{830C4581-9A93-4B72-A5DF-DB4707E77DCA}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{1258F11B-476F-4A4D-9D6B-4F62547BADCA}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{F623FEFD-2C93-471D-9956-FC634A4B0CBC}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{8D572659-DA08-44C9-A4D2-5D08A4BDDAE2}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{6A559EFB-2138-4697-9BD8-6AF3EBB9E23E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{794BA3E5-3B00-4FD6-B2F7-E7B5AF0FEDBE}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{6CC83789-48AF-443B-B0CC-1740152416BD}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{31EC48AB-4182-4229-B166-D08E98E7E983}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{28F9602F-070A-4833-97D2-BFBF6A501068}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{A78FF408-9B66-4F43-857E-217EE7D38362}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{A7D5587E-68C6-4387-8E66-03D7FEA5E92A}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{6EEE7AF5-FA2A-4C4C-BDD3-5E66456F222A}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B7CC1726-714C-41C6-BC26-54DD049EA737}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{CF0DA7E6-BFA0-4F98-A376-3723591165EA}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{EA2163D3-3ACB-4DB3-BC9E-21E586DAE974}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{025F855C-0009-4474-871B-A568CB65606E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{0058457D-BC0B-4710-A50F-554602CE8E3F}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{61B23316-2E72-4C07-9C41-B7E2E56531FC}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{C679B34C-AC90-4001-96CA-D9261D70128E}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{FE92491B-AC11-4F9E-A619-7D78C28C3E73}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B27CBDE0-D9C7-4834-8031-81353BAC5E23}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{24BAC89B-C3B6-4FE3-A255-5583D678FA4F}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{046DC9DF-5D48-448B-A9D6-232C9C20DC7B}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{DEB6ACBC-BC13-457C-84A4-1977D85A23DF}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{7BDC83E8-3209-444F-BA0B-79F6926776F7}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{54819B68-7189-4615-B43D-EC4CB2F20E8C}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{0D638534-3C9B-4E01-957D-51CA0C731928}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{02434A43-7F7D-4F41-A3D6-730E93FA0BBE}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B9C6274B-465B-4C49-A696-9743D14C3105}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{56BFD239-CCA7-46D1-B2B9-3821A8BFC8A8}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{871DB3CE-A75D-44AE-9271-816696F764E9}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{B6CCFFFA-E0DC-4B18-A079-793C8A29075A}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{F8DB44AF-3AE1-47D9-B903-958898A6B719}] => (Block) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{C0FE9254-DAFD-4CE4-A702-11063DC461C2}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) FirewallRules: [{0F75BAF6-B96F-4CA9-A027-329C8E22EF57}] => (Allow) C:\Program Files\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG) ==================== Points de restauration ========================= 15-01-2019 13:41:41 Sauvegarde Windows 16-01-2019 10:30:00 Sauvegarde Windows 17-01-2019 10:21:48 Sauvegarde Windows 22-01-2019 10:09:54 Sauvegarde Windows 28-01-2019 10:17:33 Windows Update 28-01-2019 11:02:48 Sauvegarde Windows 28-01-2019 11:23:35 Sauvegarde Windows 28-01-2019 13:20:57 sauvegarde du 28/01 28-01-2019 14:48:22 Avant désinfection 28-01-2019 15:07:33 JRT Pre-Junkware Removal 29-01-2019 10:00:48 Sauvegarde Windows 29-01-2019 14:36:10 JRT Pre-Junkware Removal ==================== Éléments en erreur du Gestionnaire de périphériques ============= ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (01/29/2019 07:05:47 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 06:45:23 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 06:35:23 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 06:25:22 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 06:15:22 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 06:05:22 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 05:55:22 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (01/29/2019 05:45:22 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Erreurs système: ============= Error: (01/29/2019 05:55:01 PM) (Source: DCOM) (EventID: 10016) (User: Sylver-PC) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} et l’APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} au SID Sylver-PC\Bernard de l’utilisateur (S-1-5-21-1667138212-427308065-1583302378-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:55:01 PM) (Source: DCOM) (EventID: 10016) (User: Sylver-PC) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} et l’APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} au SID Sylver-PC\Bernard de l’utilisateur (S-1-5-21-1667138212-427308065-1583302378-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:46:18 PM) (Source: DCOM) (EventID: 10016) (User: Sylver-PC) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} et l’APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} au SID Sylver-PC\Bernard de l’utilisateur (S-1-5-21-1667138212-427308065-1583302378-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:36:14 PM) (Source: DCOM) (EventID: 10016) (User: Sylver-PC) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} et l’APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} au SID Sylver-PC\Bernard de l’utilisateur (S-1-5-21-1667138212-427308065-1583302378-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:36:14 PM) (Source: DCOM) (EventID: 10016) (User: Sylver-PC) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Activation pour l’application serveur COM avec le CLSID {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} et l’APPID {15C20B67-12E7-4BB6-92BB-7AFF07997402} au SID Sylver-PC\Bernard de l’utilisateur (S-1-5-21-1667138212-427308065-1583302378-1000) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:16:53 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID Windows.SecurityCenter.SecurityAppBroker et l’APPID Non disponible au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:16:53 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: Les paramètres d’autorisation propres à l’application n’accordent pas l’autorisation Local Exécution pour l’application serveur COM avec le CLSID Windows.SecurityCenter.WscBrokerManager et l’APPID Non disponible au SID AUTORITE NT\Système de l’utilisateur (S-1-5-18) depuis l’adresse LocalHost (avec LRPC) s’exécutant dans le SID Non disponible du conteneur d’applications (Non disponible). Cette autorisation de sécurité peut être modifiée à l’aide de l’outil d’administration Services de composants. Error: (01/29/2019 05:14:34 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Avira.HomeGuard. CodeIntegrity: =================================== Date: 2019-01-11 13:30:55.840 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:55.833 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:55.644 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:55.637 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:55.626 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:55.615 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:54.065 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. Date: 2019-01-11 13:30:53.995 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM)2 Quad CPU Q6600 @ 2.40GHz Pourcentage de mémoire utilisée: 38% Mémoire physique - RAM - totale: 3326.49 MB Mémoire physique - RAM - disponible: 2034.66 MB Mémoire virtuelle totale: 4926.49 MB Mémoire virtuelle disponible: 2391.24 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:232 GB) (Free:184.01 GB) NTFS ==>[lecteur avec composants d'amorçage (obtenu depuis BCD)] Drive d: (Sauvegarde Systeme) (Fixed) (Total:114.48 GB) (Free:81.43 GB) NTFS Drive g: () (Fixed) (Total:0.44 GB) (Free:0.12 GB) NTFS Drive h: (TOSHIBA EXT) (Fixed) (Total:1863.01 GB) (Free:1716.47 GB) NTFS \\?\Volume{48e448e3-0000-0000-0000-c0ff39000000}\ () (Fixed) (Total:0.44 GB) (Free:0.11 GB) NTFS ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 114.5 GB) (Disk ID: FE87FE87) Partition 1: (Active) - (Size=114.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 48E448E3) Partition 1: (Active) - (Size=232 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=450 MB) - (Type=27) Partition 3: (Not Active) - (Size=450 MB) - (Type=27) ======================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 7FE88888) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================