Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 14-11-2019 Exécuté par Olivier (16-11-2019 17:47:09) Exécuté depuis C:\Users\Olivier\Desktop Windows 8 Pro (X64) (2019-08-29 15:13:19) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-153319874-3285867458-1482135188-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-153319874-3285867458-1482135188-503 - Limited - Disabled) defaultuser0 (S-1-5-21-153319874-3285867458-1482135188-1000 - Limited - Disabled) => C:\Users\defaultuser0 Invité (S-1-5-21-153319874-3285867458-1482135188-501 - Limited - Enabled) Olivier (S-1-5-21-153319874-3285867458-1482135188-1001 - Administrator - Enabled) => C:\Users\Olivier WDAGUtilityAccount (S-1-5-21-153319874-3285867458-1482135188-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {33CF8AA2-FA06-4AD4-98AB-332D53DD7FFB} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) A Way Out (HKLM-x32\...\{E8D752CF-2FCC-470D-B0C5-4BFC6F42ACCE}) (Version: 1.0.62.0 - Electronic Arts, Inc.) abgx360 v1.0.6 (HKLM-x32\...\abgx360) (Version: - ) Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.270 - Adobe) AIMP (HKLM-x32\...\AIMP) (Version: v4.51.2084, 01.12.2018 - AIMP DevTeam) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.0.4 - Electronic Arts, Inc.) Apple Application Support (32 bits) (HKLM-x32\...\{BC7C46A4-D7A7-48EC-A98C-32A7762B5EFA}) (Version: 6.2.1 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{F0C4B709-8BF4-4A72-B527-12E7BF5482F8}) (Version: 6.2.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BD6778C5-6FA5-492A-ADD6-E706339C2A7B}) (Version: 11.0.2.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - Canon Inc.) Canon MX720 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX720_series) (Version: 1.01 - Canon Inc.) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.6795 - CDBurnerXP) Cities Skylines Mass Transit (HKLM-x32\...\Cities Skylines Mass Transit_is1) (Version: - ) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.5.0.0222 - Disc Soft Ltd) Discord (HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\Discord) (Version: 0.0.301 - Discord Inc.) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden EagleGet version 2.1.5.10 (HKLM-x32\...\{F6D8142A-B30B-454B-9EE0-08A7B997DFE4}_is1) (Version: 2.1.5.10 - EagleGet) Epic Games Launcher (HKLM-x32\...\{D55AA8F9-1DD5-4EFD-BBAA-7879A5C32ACC}) (Version: 1.1.151.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com) iMazing 2.8.5.0 (HKLM\...\iMazing_is1) (Version: 2.8.5.0 - DigiDNA) iTunes (HKLM\...\{F3D76007-5A86-4D79-AFF5-103760F02B60}) (Version: 12.7.2.60 - Apple Inc.) Java 8 Update 231 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180231F0}) (Version: 8.0.2310.11 - Oracle Corporation) Junk Mail filter update (HKLM-x32\...\{0BE9E708-5DC0-4963-9CFD-0AA519090E79}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Malwarebytes version 3.7.1.2839 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.7.1.2839 - Malwarebytes) Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\OneDriveSetup.exe) (Version: 19.174.0902.0013 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Mozilla Firefox 70.0.1 (x64 fr) (HKLM\...\Mozilla Firefox 70.0.1 (x64 fr)) (Version: 70.0.1 - Mozilla) NordVPN (HKLM-x32\...\{A97BFB14-D0E2-4B55-9AA4-DC6A2A387DAB}) (Version: 6.24.14 - NordVPN) Hidden NordVPN (HKLM-x32\...\NordVPN 6.24.14) (Version: 6.24.14 - NordVPN) NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 398.36 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.37.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation) NVIDIA Pilote graphique 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.36 - NVIDIA Corporation) Origin (HKLM-x32\...\Origin) (Version: 10.5.48.31055 - Electronic Arts, Inc.) Panneau de configuration NVIDIA 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 398.36 - NVIDIA Corporation) Hidden PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.316.0 - Tracker Software Products Ltd) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7954 - Realtek Semiconductor Corp.) Revo Uninstaller Pro 3.1.6 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.6 - VS Revo Group, Ltd.) SopCast 3.9.6 (HKLM-x32\...\SopCast) (Version: 3.9.6 - www.sopcast.com) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 46.0 - Ubisoft) VLC media player (HKLM\...\VLC media player) (Version: 3.0.7.1 - VideoLAN) VoiceOver Kit (HKLM\...\{703D47B8-2869-4A50-B988-BDE18772A474}) (Version: 1.43.128.3 - Apple Inc.) vShare Helper (HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\vShare Helper) (Version: 2.4.3.0 - vShare.com Co.,LTD) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinRAR 5.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) Packages: ========= Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_2.8.0.1_neutral__6e5tt8cgb93ep [2019-05-23] (Canon Inc.) Courrier et calendrier -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-05] (Microsoft Corporation) [MS Ad] Extension Photos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2018-09-13] (Microsoft Corporation) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad] Microsoft News: les actualités à ne pas manquer -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-10] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad] MSN Météo -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.95.602.0_x64__mcm4njqhnhss8 [2019-10-26] (Netflix, Inc.) Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-08] (Twitter Inc.) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => D:\Utilitaires\Securite\Malwarebytes Anti-Malware\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => D:\Utilitaires\Securite\Malwarebytes Anti-Malware\Anti-Malware\mbshlext.dll [2019-02-01] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => D:\Utilitaires\Système\DESINSTALLATION\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2019-01-21 12:55 - 2019-01-21 12:55 - 000251392 _____ () [Fichier non signé] D:\Utilitaires\Internet\NordVPN\x86\Liberation.Native.Firewall.dll 2019-10-13 08:12 - 2019-06-11 07:21 - 001277440 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] D:\Jeux\Origin\LIBEAY32.dll 2019-10-13 08:12 - 2019-06-11 07:22 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] D:\Jeux\Origin\ssleay32.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 001611264 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\platforms\qwindows.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 005487104 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\Qt5Core.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 005841920 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\Qt5Gui.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 001179136 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\Qt5Network.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 005089792 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\Qt5Widgets.dll 2019-10-13 08:12 - 2019-07-12 08:23 - 000184832 _____ (The Qt Company Ltd) [Fichier non signé] D:\Jeux\Origin\Qt5Xml.dll ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WmsSelfHealing => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\hvsifltr => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\WmsSelfHealing => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer sites de confiance/sensibles ========== ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2016-07-16 12:47 - 2019-11-16 10:52 - 000000855 _____ C:\WINDOWS\system32\drivers\etc\hosts 127.0.0.1 localhost ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-153319874-3285867458-1482135188-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Olivier\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\The Simpsons 9.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) MpsSvc => Le service Pare-feu n'est pas actif. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched" HKLM\...\StartupApproved\Run32: => "Discord" HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\StartupApproved\Run: => "iFunBox Price Watch" HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\StartupApproved\Run: => "GalaxyClient" HKU\S-1-5-21-153319874-3285867458-1482135188-1001\...\StartupApproved\Run: => "EpicGamesLauncher" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{642B705E-CB85-4A2B-B8C5-71684F8DF597}] => (Allow) D:\Jeux\STEAM\steamapps\common\RollersOfTheRealm\rollers.exe () [Fichier non signé] FirewallRules: [{C7790341-8053-48E7-8761-8E71FE8F1A9B}] => (Allow) D:\Jeux\STEAM\steamapps\common\RollersOfTheRealm\rollers.exe () [Fichier non signé] FirewallRules: [UDP Query User{D184AC90-C18A-4FCE-96E3-3E31F20CA76B}D:\jeux\apex\r5apex.exe] => (Allow) D:\jeux\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [TCP Query User{B79C57FF-07B5-41E0-A84D-66943B1A13A7}D:\jeux\apex\r5apex.exe] => (Allow) D:\jeux\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment) FirewallRules: [{2C78A655-80BF-400D-91D9-85840D09D4C9}] => (Allow) D:\Jeux\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{208E393C-D599-47B9-8078-F34A6425B003}] => (Allow) D:\Jeux\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{FD2371E7-7EC0-4EAE-AFA0-1B4DB87A72FE}] => (Allow) D:\Jeux\STEAM\steamapps\common\Warhammer Vermintide 2\launcher\Launcher.exe (Fatshark AB -> Fatshark AB) FirewallRules: [{D92F144D-C71B-48D8-9372-26AC3F03DC99}] => (Allow) D:\Jeux\STEAM\steamapps\common\Warhammer Vermintide 2\launcher\Launcher.exe (Fatshark AB -> Fatshark AB) FirewallRules: [{BAC449AA-6C84-4655-A92C-A69847B3837C}] => (Allow) D:\Jeux\STEAM\steamapps\common\Blast Zone! Tournament\BZ.exe () [Fichier non signé] FirewallRules: [{E9D3B456-D35E-4381-B620-164F2F2C64A6}] => (Allow) D:\Jeux\STEAM\steamapps\common\Blast Zone! Tournament\BZ.exe () [Fichier non signé] FirewallRules: [{AC9FFC46-12CF-4E60-AC9F-52544BCFF9FD}] => (Allow) D:\Jeux\STEAM\steamapps\common\DOOM\DOOMx64.exe (id Software) [Fichier non signé] FirewallRules: [{E67B83EB-277B-4F22-A6C7-C3343098A9BB}] => (Allow) D:\Jeux\STEAM\steamapps\common\DOOM\DOOMx64.exe (id Software) [Fichier non signé] FirewallRules: [UDP Query User{086A12F7-DBFE-4B20-B0C4-CD6760C453A0}D:\utilitaires\téléchargements\eagleget\eagleget.exe] => (Allow) D:\utilitaires\téléchargements\eagleget\eagleget.exe (Beijing Pu Technology Limited -> EagleGet.com) FirewallRules: [TCP Query User{7F96221A-8B5D-4118-91C1-59FF34F285B3}D:\utilitaires\téléchargements\eagleget\eagleget.exe] => (Allow) D:\utilitaires\téléchargements\eagleget\eagleget.exe (Beijing Pu Technology Limited -> EagleGet.com) FirewallRules: [{CB7B2BB1-5441-4637-BA32-6C7062925CF3}] => (Allow) D:\Jeux\STEAM\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{A1EAF2F0-435C-49E3-AFB9-C8099869D299}] => (Allow) D:\Jeux\STEAM\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> ) FirewallRules: [{4D85B183-8D4D-46CC-95A6-39C6C7266E8A}] => (Allow) D:\Utilitaires\Gravure\IPAD\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B07FFAD4-EFE4-42CB-9579-E0C716B3AD5C}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{C1E6959C-33DB-4FF3-8AA1-07569473688E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{61E3373E-9671-441A-B5B4-C9385EA2E7DB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{5303C929-CFAA-4A93-9AF2-26228EFC97F8}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{143C6FA5-0AE1-49F2-B4B0-76527D2EE3E3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [UDP Query User{029489CF-1A21-49BC-B9F4-A6B47EB1D9D3}D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe] => (Block) D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [TCP Query User{ABB650B3-1A63-4AEF-89D3-FC83443D2773}D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe] => (Block) D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [UDP Query User{196569EB-6010-4A1D-B6F4-76063E03BAF1}D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe] => (Allow) D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [TCP Query User{B092768F-61B9-4317-AF5A-6433F2FFCE84}D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe] => (Allow) D:\utilitaires\vidéo\freemi\freemiportable 2.0.10\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [UDP Query User{57C0D93A-FAB7-4981-B090-FB9685782530}D:\utilitaires\vidéo\vlc\vlc.exe] => (Allow) D:\utilitaires\vidéo\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [TCP Query User{749A4E55-157C-401D-B206-677389DA9CE8}D:\utilitaires\vidéo\vlc\vlc.exe] => (Allow) D:\utilitaires\vidéo\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{47BAD813-2E46-469E-8AC0-022FC0902277}] => (Allow) LPort=1900 FirewallRules: [{AEE99669-2A92-4B99-A5D8-3D64ED368F21}] => (Allow) LPort=2869 FirewallRules: [{52E50335-B215-4090-9968-EFCF956F6470}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{193D0FDC-DD15-44CC-B608-5BB6ACC74D93}] => (Allow) D:\Jeux\STEAM\bin\cef\cef.win7\steamwebhelper.exe Pas de fichier FirewallRules: [{51976BE0-48A0-43DE-BA41-53BEE99F2843}] => (Allow) D:\Jeux\STEAM\bin\cef\cef.win7\steamwebhelper.exe Pas de fichier FirewallRules: [{87CE32FC-849D-41F6-AA25-F7C6EB83B596}] => (Allow) D:\Jeux\STEAM\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{8BED444C-54A5-4F43-BC8A-79B650446BC4}] => (Allow) D:\Jeux\STEAM\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{E482AFBE-3710-490B-85BB-2CD22B6F682C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{986C10D9-1077-4D60-9596-1E09D7CE61E9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{D81AC9EB-0FF2-4BB6-ACF1-7C7CF5557FF6}D:\utilitaires\vidéo\sopcast\sopcast.exe] => (Allow) D:\utilitaires\vidéo\sopcast\sopcast.exe (www.sopcast.com) [Fichier non signé] FirewallRules: [UDP Query User{7D6F18AF-84B9-4B1C-8EA1-12EA133C2581}D:\utilitaires\vidéo\sopcast\sopcast.exe] => (Allow) D:\utilitaires\vidéo\sopcast\sopcast.exe (www.sopcast.com) [Fichier non signé] FirewallRules: [{0BA51483-8B7B-418F-ACCA-D30D10A6D1D0}] => (Allow) D:\Jeux\AWayOut\Haze1\Binaries\Win64\AWayOut.exe (Hazelight Studios AB -> Hazelight Studios AB) FirewallRules: [{243B2A43-179F-44FB-82A9-5514BE6FF489}] => (Allow) D:\Jeux\AWayOut\Haze1\Binaries\Win64\AWayOut.exe (Hazelight Studios AB -> Hazelight Studios AB) FirewallRules: [{38B2A63F-E2B9-4700-AA58-E0DE2CC8946E}] => (Allow) D:\Jeux\AWayOut\Haze1\Binaries\Win64\AWayOut_friend.exe (Hazelight Studios AB -> Hazelight Studios AB) FirewallRules: [{B8574D05-955B-4950-9470-7DBDFC8F9C2A}] => (Allow) D:\Jeux\AWayOut\Haze1\Binaries\Win64\AWayOut_friend.exe (Hazelight Studios AB -> Hazelight Studios AB) FirewallRules: [TCP Query User{D5591777-6D09-4C87-BFF9-2410D56D7A19}D:\jeux\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\jeux\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{94B1F830-421D-401B-A7BA-0F77BFAF280C}D:\jeux\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\jeux\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{AE31157F-1E98-43CB-ADE5-6D0124539A71}D:\jeux\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\jeux\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{10DC6BBA-C8BA-4E10-841B-10E1E0C5CEBD}D:\jeux\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\jeux\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{80196836-44E2-46CC-B149-16516CEA16AF}D:\jeux\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\jeux\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe Pas de fichier FirewallRules: [UDP Query User{AAEFA777-A49E-4D40-98B4-5B0FDF0314B9}D:\jeux\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\jeux\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe Pas de fichier FirewallRules: [{0CE83987-790B-4DB5-943F-056670949A79}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here\We Were Here.exe () [Fichier non signé] FirewallRules: [{31D36449-F4CE-412D-AC02-04C1F6D2A9D5}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here\We Were Here.exe () [Fichier non signé] FirewallRules: [{7E15EF8F-4614-4677-87D6-0720BF2EE368}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here\We Were Here VR.exe () [Fichier non signé] FirewallRules: [{D045E4BB-9269-4247-8B7B-18A98C4BF6B5}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here\We Were Here VR.exe () [Fichier non signé] FirewallRules: [{D5F21A12-5D78-4E5D-85B9-ED59B61C7EF9}] => (Allow) D:\Jeux\STEAM\steamapps\common\H1Z1\H1Z1_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations) FirewallRules: [{46087A31-4F10-470C-B6C1-7AC389D99C4F}] => (Allow) D:\Jeux\STEAM\steamapps\common\H1Z1\H1Z1_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations) FirewallRules: [TCP Query User{42A041D7-D15A-4556-B09C-7A52F5B68333}D:\jeux\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\jeux\steam\steamapps\common\h1z1\h1z1.exe (Daybreak Game Company LLC -> Daybreak Game Company) FirewallRules: [UDP Query User{195F96A1-C27A-4051-BB37-70D209C2F5EA}D:\jeux\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\jeux\steam\steamapps\common\h1z1\h1z1.exe (Daybreak Game Company LLC -> Daybreak Game Company) FirewallRules: [{65562ABF-2E46-41B7-BF12-990ECED814AE}] => (Allow) D:\Jeux\STEAM\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{D62E154E-81F8-49E0-A193-A1722814EFB8}] => (Allow) D:\Jeux\STEAM\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{3B9212FE-6117-4FF6-9DA0-B24F336DFF98}] => (Allow) D:\Jeux\STEAM\steamapps\common\Alien Swarm Reactive Drop\reactivedrop.exe () [Fichier non signé] FirewallRules: [{5BB89408-47F3-4F1D-8909-EE8DAF4EC6EC}] => (Allow) D:\Jeux\STEAM\steamapps\common\Alien Swarm Reactive Drop\reactivedrop.exe () [Fichier non signé] FirewallRules: [{E54E13CC-8D3F-4254-8F96-1036882D56C0}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here Too\We Were Here Too.exe () [Fichier non signé] FirewallRules: [{324D765C-F68F-4627-9F56-C29FB40202A4}] => (Allow) D:\Jeux\STEAM\steamapps\common\We Were Here Too\We Were Here Too.exe () [Fichier non signé] FirewallRules: [{6D0585AD-7AC7-437C-84B0-D68DBB1C56A7}] => (Allow) D:\Jeux\STEAM\steamapps\common\Planet Coaster\PlanetCoaster.exe (Frontier Developments) [Fichier non signé] FirewallRules: [{EC56D789-1D9E-431E-BDD5-3C18342D8D3E}] => (Allow) D:\Jeux\STEAM\steamapps\common\Planet Coaster\PlanetCoaster.exe (Frontier Developments) [Fichier non signé] FirewallRules: [{45AA862C-45E2-46C1-980E-C2272806B1B2}] => (Allow) D:\Jeux\STEAM\steamapps\common\Gauntlet\binaries\gauntlet.exe () [Fichier non signé] FirewallRules: [{B3C6CF8C-0985-47CF-AA2C-B4AE3869C4DB}] => (Allow) D:\Jeux\STEAM\steamapps\common\Gauntlet\binaries\gauntlet.exe () [Fichier non signé] FirewallRules: [TCP Query User{6E4B6A65-17DF-4F46-BF3E-29FC1EA97259}D:\utilitaires\vidéo\freemi\install\freemiportable 2.0.9\freemi upnp media server.exe] => (Allow) D:\utilitaires\vidéo\freemi\install\freemiportable 2.0.9\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [UDP Query User{3BBB1034-114D-4AAC-B279-2F35D5D88BB8}D:\utilitaires\vidéo\freemi\install\freemiportable 2.0.9\freemi upnp media server.exe] => (Allow) D:\utilitaires\vidéo\freemi\install\freemiportable 2.0.9\freemi upnp media server.exe (Stéphane Mitermite) [Fichier non signé] FirewallRules: [WMS-Dashboard] => (Allow) %ProgramFiles%\Windows MultiPoint Server\WmsDashboard.exe Pas de fichier FirewallRules: [Microsoft-Windows-NFS-ClientCore-NfsClnt-UDP-Out] => (Allow) %systemroot%\system32\nfsclnt.exe Pas de fichier FirewallRules: [Microsoft-Windows-NFS-ClientCore-NfsClnt-TCP-Out] => (Allow) %systemroot%\system32\nfsclnt.exe Pas de fichier FirewallRules: [WMS-Manager] => (Allow) %ProgramFiles%\Windows MultiPoint Server\WmsManager.exe Pas de fichier FirewallRules: [WMS-Service] => (Allow) %ProgramFiles%\Windows MultiPoint Server\Wmssvc.exe Pas de fichier FirewallRules: [VIRT-MIGL-In-TCP-NoScope] => (Allow) %systemroot%\system32\vmms.exe Pas de fichier FirewallRules: [VIRT-REMOTEDESKTOP-In-TCP-NoScope] => (Allow) %systemroot%\system32\vmms.exe Pas de fichier FirewallRules: [HNS Container Networking - DNS (UDP-In) - 879AA28C-BC5D-4082-82F6-B488CD887C81 - 0] => (Allow) LPort=53 ==================== Points de restauration ========================= ==================== Éléments en erreur du Gestionnaire de périphériques ============ Name: Clavier standard PS/2 Description: Clavier standard PS/2 Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318} Manufacturer: (Claviers standard) Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Souris Microsoft PS/2 Description: Souris Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (11/16/2019 05:48:02 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3860,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (11/16/2019 05:31:33 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . Error: (11/16/2019 05:31:33 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} et de nom CEventSystem. [0x8007045b, Un arrêt système est en cours. ] Error: (11/16/2019 12:23:21 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (6792,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (11/16/2019 12:09:37 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (7744,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (11/16/2019 11:45:29 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3172,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (11/16/2019 11:30:45 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (5920,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (11/16/2019 11:17:05 AM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (3096,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Erreurs système: ============= Error: (11/16/2019 05:38:27 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.SecHealthUI_10.0.18362.387_neutral__cw5n1h2txyewy!SecHealthUI.AppX73bpxf4sp6pxkykmznv2ft8v666ma3ps.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe" -ServerName:SecHealthUI.AppXep4x2tbtjws1v9qqs0rmb3hxykvkpqtn.mca Error: (11/16/2019 05:38:25 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Apprep.ChxApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App.AppXc99k5qnnsvxj5szemm7fp3g7y08we5vm.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe" -ServerName:App.AppXk7vvv12h4qrkhkbvf6j86ja45mzj5km9.mca Error: (11/16/2019 05:38:23 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Apprep.ChxApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App.AppXc99k5qnnsvxj5szemm7fp3g7y08we5vm.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe" -ServerName:App.AppXk7vvv12h4qrkhkbvf6j86ja45mzj5km9.mca Error: (11/16/2019 05:38:23 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Apprep.ChxApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App.AppXc99k5qnnsvxj5szemm7fp3g7y08we5vm.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe" -ServerName:App.AppXk7vvv12h4qrkhkbvf6j86ja45mzj5km9.mca Error: (11/16/2019 05:38:21 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Apprep.ChxApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App.AppXc99k5qnnsvxj5szemm7fp3g7y08we5vm.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe" -ServerName:App.AppXk7vvv12h4qrkhkbvf6j86ja45mzj5km9.mca Error: (11/16/2019 05:36:38 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : Microsoft.Windows.Apprep.ChxApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App.AppXc99k5qnnsvxj5szemm7fp3g7y08we5vm.mca en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe" -ServerName:App.AppXk7vvv12h4qrkhkbvf6j86ja45mzj5km9.mca Error: (11/16/2019 05:34:18 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-02OD6QM) Description: Impossible de démarrer un serveur DCOM : InputApp_1000.18362.387.0_neutral_neutral_cw5n1h2txyewy!App en tant que Non disponible/Non disponible. L’erreur « 2147942402 » s’est produite lors du démarrage de la commande : "C:\WINDOWS\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe" -ServerName:App.AppXagta193n5rpf7mheremt3yyfa1g555vc.mca Error: (11/16/2019 05:33:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service egGetSvc s’est terminé de façon inattendue pour la 1ème fois. Windows Defender: =================================== Date: 2019-11-13 14:52:10.385 Description: Antivirus Windows Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/Keygen&threatid=2147593794&enterprise=0 Nom : HackTool:Win32/Keygen ID : 2147593794 Gravité : Élevée Catégorie : Outil Chemin : file:_D:\Utilitaires\Système\OPTIMISATION & DIAGNOSTIC\Windows Loader\Windows Loader 2.2.2\windows.loader.v2.2.2\Windows Loader.exe Origine de la détection : Ordinateur local Type de détection : Concret Source de détection : Protection en temps réel Utilisateur : DESKTOP-02OD6QM\Olivier Nom du processus : C:\Windows\explorer.exe Version de la veille de sécurité : AV: 1.305.2017.0, AS: 1.305.2017.0, NIS: 1.305.2017.0 Version du moteur : AM: 1.1.16500.1, NIS: 1.1.16500.1 Date: 2019-11-13 12:17:39.862 Description: Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : 1.305.2010.0 Version précédente de la veille de sécurité : 1.233.3748.0 Source de mise à jour : Utilisateur Type de veille de sécurité : Logiciel anti-espion Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : 1.1.16500.1 Version précédente du moteur : 1.1.16500.1 Code d’erreur : 0x80004004 Description de l’erreur : Opération abandonnée Date: 2019-11-13 12:17:39.862 Description: Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : 1.305.2010.0 Version précédente de la veille de sécurité : 1.233.3748.0 Source de mise à jour : Utilisateur Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : 1.1.16500.1 Version précédente du moteur : 1.1.16500.1 Code d’erreur : 0x80004004 Description de l’erreur : Opération abandonnée Date: 2019-11-13 12:17:26.064 Description: Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.233.3748.0 Source de mise à jour : Serveur Microsoft Update Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.16500.1 Code d’erreur : 0x80240022 Description de l’erreur : Le programme ne peut pas rechercher les mises à jour de définitions. CodeIntegrity: =================================== Date: 2019-11-16 17:43:34.992 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:43:34.990 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:32:52.504 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:32:52.502 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:32:52.501 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:32:52.499 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume6\Utilitaires\Téléchargements\EagleGet\eagleGet_wfp_x64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 17:32:52.496 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume6\Utilitaires\Téléchargements\EagleGet\eagleGet_wfp_x64.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-11-16 11:11:27.243 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\eagleGet.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. 1.60 05/23/2016 Carte mère: MSI Z170A TOMAHAWK (MS-7970) Processeur: Intel(R) Core(TM) i5-6600K CPU @ 3.50GHz Pourcentage de mémoire utilisée: 15% Mémoire physique - RAM - totale: 16344.11 MB Mémoire physique - RAM - disponible: 13806.08 MB Mémoire virtuelle totale: 18776.11 MB Mémoire virtuelle disponible: 15091.18 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:76.72 GB) (Free:24.3 GB) NTFS Drive d: () (Fixed) (Total:1784.89 GB) (Free:465.68 GB) NTFS Drive e: (Disque local) (Fixed) (Total:596.17 GB) (Free:96.62 GB) NTFS Drive j: (Disque local) (Fixed) (Total:298.08 GB) (Free:17.8 GB) NTFS \\?\Volume{c9e2c21c-017c-4e61-b7c3-430198d86716}\ (Récupération) (Fixed) (Total:0.44 GB) (Free:0.42 GB) NTFS \\?\Volume{269c15b9-9fd8-4a90-ae1c-5494c09e7767}\ () (Fixed) (Total:0.85 GB) (Free:0.41 GB) NTFS \\?\Volume{86ac6921-303a-4448-be01-6be080e6b203}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Size: 596.2 GB) (Disk ID: 5804ABEA) Partition 1: (Not Active) - (Size=596.2 GB) - (Type=07 NTFS) ========================================================== Disk: 2 (Size: 298.1 GB) (Disk ID: D8356338) Partition 1: (Not Active) - (Size=298.1 GB) - (Type=0F Extended) ==================== Fin de Addition.txt =======================