Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 08-02-2021 Exécuté par RAYANE (08-02-2021 18:17:50) Exécuté depuis C:\Users\RAYANE\Downloads Windows 10 Home Version 20H2 19042.746 (X64) (2020-12-19 05:29:14) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-4082719649-2526960405-3045792572-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-4082719649-2526960405-3045792572-503 - Limited - Disabled) Invité (S-1-5-21-4082719649-2526960405-3045792572-501 - Limited - Disabled) RAYANE (S-1-5-21-4082719649-2526960405-3045792572-1001 - Administrator - Enabled) => C:\Users\RAYANE WDAGUtilityAccount (S-1-5-21-4082719649-2526960405-3045792572-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AV: Trend Micro Internet Security (Enabled - Up to date) {76C8F930-C23E-653D-16C6-49C7176F8B9D} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov) Adobe Acrobat XI Pro (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.00 - Adobe Systems) AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.6.0.1702 - Advanced Micro Devices, Inc.) AMD Ryzen Master SDK (HKLM\...\{DBD50508-5F75-416B-995D-C42433A00944}) (Version: 2.7.0.1725 - Advanced Micro Devices, Inc.) Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.5.4 - Electronic Arts, Inc.) Assassin's Creed Valhalla (HKLM-x32\...\Uplay Install 13504) (Version: - Ubisoft) Ballistix MOD Utility (HKLM\...\{E1FEA5BB-D13F-4860-8306-C1D1650FB57C}) (Version: 1.0.0 - Crucial) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Battlefield™ 1 (HKLM-x32\...\{335B50BC-6130-4BAF-9A6A-F1561270587B}) (Version: 1.0.57.44284 - Electronic Arts) Call of Duty Black Ops Cold War (HKLM-x32\...\Call of Duty Black Ops Cold War) (Version: - Blizzard Entertainment) cFosSpeed 11.07 (HKLM\...\cFosSpeed) (Version: 11.07 - cFos Software GmbH, Bonn) CPUID HWMonitor 1.43 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.43 - CPUID, Inc.) Discord (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\Discord) (Version: 0.0.309 - Discord Inc.) DroidCam Client (HKLM-x32\...\DroidCam) (Version: 6.3.3 - Dev47apps) EA Desktop (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.0.38.4820 - Electronic Arts) Hidden EA Desktop (HKLM-x32\...\{aa1343ed-95e9-4c16-8c18-52dca483afd1}) (Version: 12.0.38.4820 - Electronic Arts) ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.3.0 - ENE TECHNOLOGY INC.) Hidden ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_DRAM_RGB_AIO (HKLM-x32\...\{52d1d7de-19c3-4f83-97bb-f9435dc84c5b}) (Version: 1.0.0.10 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.7.11 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{fd812556-e0bb-4961-ac2b-cf5643484519}) (Version: 1.0.7.11 - ENE TECHNOLOGY INC.) Hidden ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.1.2 - ENE TECHNOLOGY INC.) Hidden ENE_MousePad_HAL (HKLM-x32\...\{0c535d48-a3ba-4f7d-a1e2-10a941313631}) (Version: 1.0.1.2 - ENE TECHNOLOGY INC.) Hidden ENE_X-JMI_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.5.1 - ENE Tech) Hidden ENE_X-JMI_HAL (HKLM-x32\...\{50ec3a07-291b-463e-be86-487eb8cbb71c}) (Version: 1.0.5.1 - ENE Tech) Hidden Epic Games Launcher (HKLM-x32\...\{5C415481-ECCD-4875-AF77-A97B79825F2C}) (Version: 1.1.298.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{6D70A161-C29B-441B-9AA5-2ABBAB3B4B4D}) (Version: 1.1.1.0 - Epic Games, Inc.) FireStorm version 3.0.0.019 (HKLM-x32\...\FireStorm_is1) (Version: 3.0.0.019 - ) Futuremark SystemInfo (HKLM-x32\...\{20CAF520-CA4A-4BB5-85B3-0E94E4434BD0}) (Version: 5.36.886.0 - Futuremark) Ghost Recon Breakpoint (HKLM-x32\...\Uplay Install 11903) (Version: - Ubisoft) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 88.0.4324.146 - Google LLC) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden League of Legends (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc) Malwarebytes version 4.3.0.98 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.3.0.98 - Malwarebytes) Microsoft 365 Apps for enterprise - fr-fr (HKLM\...\O365ProPlusRetail - fr-fr) (Version: 16.0.13628.20274 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.63 - Microsoft Corporation) Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.71 - ) Microsoft OneDrive (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\OneDriveSetup.exe) (Version: 21.002.0104.0005 - Microsoft Corporation) Microsoft Teams (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\Teams) (Version: 1.3.00.26064 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.27.29016 (HKLM-x32\...\{40d3fee2-b257-46c2-bdc0-cb1088d97327}) (Version: 14.27.29016.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Mises à jour NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden Mozilla Firefox 84.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 84.0.2 (x64 fr)) (Version: 84.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 84.0 - Mozilla) MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2021.0118.01 - MSI) NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation) NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation) NVIDIA GeForce NOW 2.0.26.116 (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeforceNOW) (Version: 2.0.26.116 - NVIDIA Corporation) NVIDIA Install Application (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer) (Version: 2.1002.344.0 - NVIDIA Corporation) Hidden NVIDIA Logiciel système PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.38.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.40 - NVIDIA Corporation) NVIDIA Pilote graphique 460.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 460.89 - NVIDIA Corporation) NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20158 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden Origin (HKLM-x32\...\Origin) (Version: 10.5.91.46291 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PuTTY release 0.74 (64-bit) (HKLM\...\{127B996B-5308-4012-865B-9446451EA326}) (Version: 0.74.0.0 - Simon Tatham) Python 2.7.18 (HKLM-x32\...\{A5F504DF-2ED9-4A2D-A2F3-9D2750DD42D5}) (Version: 2.7.18150 - Python Software Foundation) Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.33.319 - Rockstar Games) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.7.5 - Rockstar Games) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.26064 - Microsoft Corporation) Titanfall™ 2 (HKLM-x32\...\{4BD80373-FEE7-45B6-8249-6E8E98717405}) (Version: 1.0.1.3 - Electronic Arts, Inc.) Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal) Trend Micro Internet Security (HKLM\...\{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}) (Version: 17.0 - Trend Micro Inc.) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 117.0.10324 - Ubisoft) VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN) WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH) Zoom (HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\ZoomUMX) (Version: 5.4.7 (59784.1220) - Zoom Video Communications, Inc.) Packages: ========= Deep Rock Galactic -> C:\Program Files\WindowsApps\CoffeeStainStudios.DeepRockGalactic_1.32.47811.0_x64__496a1srhmar9w [2021-01-17] (Coffee Stain Publishing) DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.100.0_x64__kzh8wxbdkxb8p [2021-01-29] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task] Microsoft Flight Simulator -> C:\Program Files\WindowsApps\Microsoft.FlightSimulator_1.12.13.0_x64__8wekyb3d8bbwe [2021-02-08] (Microsoft Studios) Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-01-30] (Microsoft Studios) [MS Ad] NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.960.0_x64__56jybvy8sckqj [2021-01-30] (NVIDIA Corp.) Ori And The Will Of The Wisps -> C:\Program Files\WindowsApps\Microsoft.Patagonia_1.0.8978.0_x64__8wekyb3d8bbwe [2021-01-17] (Microsoft Studios) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0 [2021-02-08] (Spotify AB) [Startup Task] ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-4082719649-2526960405-3045792572-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\RAYANE\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-4082719649-2526960405-3045792572-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\RAYANE\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ FSOverlayIcon] -> {C0829D19-E5A0-44F5-B56E-D15030C53BB9} => C:\Program Files\Trend Micro\Titanium\plugin\TmOverlayIcon.dll [2020-07-29] (Trend Micro, Inc. -> Trend Micro Inc.) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1: [{48F45200-91E6-11CE-8A4F-0080C81A28D4}] -> {48F45200-91E6-11CE-8A4F-0080C81A28D4} => C:\Program Files\Trend Micro\UniClient\UiFrmwrk\tmdshell.dll [2020-07-29] (Trend Micro, Inc. -> Trend Micro Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-02-08] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a51067c0ac557884\nvshext.dll [2020-12-12] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-02-08] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6: [{48F45200-91E6-11CE-8A4F-0080C81A28D4}] -> {48F45200-91E6-11CE-8A4F-0080C81A28D4} => C:\Program Files\Trend Micro\UniClient\UiFrmwrk\tmdshell.dll [2020-07-29] (Trend Micro, Inc. -> Trend Micro Inc.) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2020-12-21 14:15 - 2017-08-03 05:48 - 000237568 _____ () [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDControl.dll 2020-12-21 14:15 - 2018-08-31 07:26 - 000053760 _____ (MS) [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\MsIo32_Galax.dll 2020-12-19 12:47 - 2020-12-19 12:47 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\Origin\LIBEAY32.dll 2020-12-19 12:47 - 2020-12-19 12:47 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\Origin\ssleay32.dll 2020-12-19 12:47 - 2020-12-19 12:47 - 001611264 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\platforms\qwindows.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 005487104 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Core.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 005841920 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Gui.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 001179136 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Network.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 000146432 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5WebSockets.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 005089792 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Widgets.dll 2021-01-28 19:04 - 2020-12-19 12:47 - 000184832 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Xml.dll 2020-12-21 14:15 - 2016-10-04 04:43 - 000399872 _____ (TODO: <公司名稱>) [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\SDKDLL.dll ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) BHO: Trend Micro Security Toolbar Helper -> {43C6D902-A1C5-45c9-91F6-FD9E90337E18} -> C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Trend Micro Security Toolbar Helper -> {43C6D902-A1C5-45c9-91F6-FD9E90337E18} -> C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) BHO-x32: Adobe Acrobat Create PDF Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Toolbar: HKLM - Trend Micro Security Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) Toolbar: HKLM-x32 - Trend Micro Security Toolbar - {CCAC5586-44D7-4c43-B64A-F042461A97D2} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-02-04] (Microsoft Corporation -> Microsoft Corporation) Handler: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) Handler-x32: tmtb - {04EAF3FB-4BAC-4B5A-A37D-A1CF210A5A42} - C:\Program Files\Trend Micro\Titanium\UIFramework\ToolbarIE.dll [2020-11-15] (Trend Micro, Inc. -> Trend Micro Inc.) Handler: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\plugin\ToolbarIE64\ProToolbarIMRatingActiveX.dll [2020-07-29] (Trend Micro, Inc. -> Trend Micro Inc.) Handler-x32: tmtbim - {0B37915C-8B98-4B9E-80D4-464D2C830D10} - C:\Program Files\Trend Micro\Titanium\UIFramework\ProToolbarIMRatingActiveX.dll [2020-07-29] (Trend Micro, Inc. -> Trend Micro Inc.) (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\sharepoint.com -> hxxps://grandest-files.sharepoint.com ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\RAYANE\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\annee-du-tigre_2560x1440.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 1) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. Network Binding: ============= Ethernet 2: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) Ethernet: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled) ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0" HKLM\...\StartupApproved\Run32: => "Discord" HKLM\...\StartupApproved\Run32: => "FireStormStartUpAutoRun" HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller" HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0" HKLM\...\StartupApproved\Run32: => "Adobe ARM" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "Steam" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams" HKU\S-1-5-21-4082719649-2526960405-3045792572-1001\...\StartupApproved\Run: => "Advanced SystemCare" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{9012198C-BB55-49DD-9EDA-309B41C94658}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{946410E7-126E-4D7C-B0B9-5E3CE1782D23}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{6CD271F6-49AF-43E5-A1FE-F5FC421E5FEB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{C1472B88-E719-4492-9715-E983E835F5D8}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation) FirewallRules: [{32B21771-5790-46FD-A269-A476D105ED5D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{5A4286D8-87A8-49E1-85A7-9DF184252D90}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{2B14C9DB-12AE-41F2-ADCC-D52074B8FFE3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{6F4F6065-E69B-4CB9-9B67-20B27134B084}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{9A98B82B-5876-499C-88E0-F855F3473D9B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{02633B5D-E64D-41BF-8171-3C47A714377D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{068C4ACE-510D-40D1-8772-209CB3CB1944}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [Fichier non signé] FirewallRules: [UDP Query User{B7614B89-0D35-4F0C-BFC2-0B00E881A8C3}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [Fichier non signé] FirewallRules: [{0C3EA42F-1CCD-432C-98E3-157F4113A9C7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3107A8C8-2564-4EDA-AC44-64A87AC7C3E5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{ED5BA035-ADF3-4ECE-BEC2-77E832DF5477}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B878E432-CF1F-48C3-9EB5-791F3AAFD94D}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{B471D2A6-8D3B-4F2E-B3E3-996B1928035B}C:\users\rayane\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe] => (Allow) C:\users\rayane\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [UDP Query User{C5DE197E-3099-438E-A786-8E6DF02750CF}C:\users\rayane\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe] => (Allow) C:\users\rayane\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{E8DAACAC-86BD-4585-9F5A-5B54CB9FA521}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{282CD8B5-3DBE-48DF-A9A3-AE37214D9A65}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) FirewallRules: [{93457651-E3FE-477E-80F7-C3732B151516}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Dead Redemption 2\PlayRDR2.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{42FDC59C-6920-4AFF-B383-5EDCE2BD6199}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Red Dead Redemption 2\PlayRDR2.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{4DB58AD0-5530-4555-A18C-C3CA1ED30339}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Hunter World\MonsterHunterWorld.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.) FirewallRules: [{E0FDEDBF-D008-4B47-B92D-A77BBDBADA6F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Monster Hunter World\MonsterHunterWorld.exe (CAPCOM CO., LTD. -> CAPCOM CO., LTD.) FirewallRules: [{43E430FD-191F-4427-A496-28CCEAF663D6}] => (Allow) E:\SteamLibrary\steamapps\common\GTFO\GTFO.exe () [Fichier non signé] FirewallRules: [{320A38EF-ABF8-4553-BE86-E55ECC8E8B57}] => (Allow) E:\SteamLibrary\steamapps\common\GTFO\GTFO.exe () [Fichier non signé] FirewallRules: [{8B92B166-A397-468A-B07D-91B9FC327572}] => (Allow) E:\SteamLibrary\steamapps\common\StickFightTheGame\StickFight.exe () [Fichier non signé] FirewallRules: [{3A1E1EE3-B050-45B0-B25E-19B7942D2EB6}] => (Allow) E:\SteamLibrary\steamapps\common\StickFightTheGame\StickFight.exe () [Fichier non signé] FirewallRules: [{A1DAED7E-896C-4D5C-B67C-FF258449CE1B}] => (Allow) E:\origine games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{2F554DA8-7DE2-4D1D-9DD4-53D724F2E90A}] => (Allow) E:\origine games\Titanfall2\Titanfall2.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{077EAE7D-8855-4B52-9435-65D84150BA21}] => (Allow) E:\origine games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{88E7571A-DC5C-4E6E-8151-83DC18BF3442}] => (Allow) E:\origine games\Titanfall2\Titanfall2_trial.exe (Respawn Entertainment, LLC -> Respawn Entertainment) FirewallRules: [{6DC1AF4E-7091-4E45-BCEF-E65FEB1F2983}] => (Allow) E:\origine games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{BDB528CE-3091-433C-8736-36E770F04601}] => (Allow) E:\origine games\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{18AA8FDD-0793-4264-B316-1F8EAB1C3FA0}] => (Allow) E:\origine games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{B33D23FF-2357-4A86-A78D-57D9B12ADC6D}] => (Allow) E:\origine games\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.) FirewallRules: [{83236335-6CFB-4902-91CB-8969DF3A5C64}] => (Allow) E:\origine games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{11138792-E6DE-4AFD-982E-C1CCF3192F36}] => (Allow) E:\origine games\Battlefield 1\bf1Trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{B219850B-3A66-45E9-A042-458C74B8B894}] => (Allow) E:\origine games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [{AEE3999A-BE6F-4778-BCD6-8862F1F48FC3}] => (Allow) E:\origine games\Battlefield 1\bf1.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB) FirewallRules: [TCP Query User{CD286251-493A-4E9B-8725-AC84C2E50998}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{875E2ACC-EA58-406E-8C88-0D41BF4EEE05}C:\program files\epic games\gtav\gta5.exe] => (Allow) C:\program files\epic games\gtav\gta5.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{018702D3-A958-4991-96A5-41F97F8F8542}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Ghost Recon Breakpoint\GRB_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations) FirewallRules: [{5C8468FB-7148-4B65-9FDB-CA84EC6F5CE2}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Ghost Recon Breakpoint\GRB_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations) FirewallRules: [TCP Query User{A0EB9002-1BFB-4BC0-934E-FE138B35633D}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [UDP Query User{8B5CB6FC-8991-45AA-886D-52256C25C2CE}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe (Rockstar Games, Inc. -> Rockstar Games) FirewallRules: [{C4539167-760B-4F0E-B19C-F5411B96019A}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Assassin's Creed Valhalla\ACValhalla_Plus.exe (UBISOFT ENTERTAINMENT INC. -> ) FirewallRules: [TCP Query User{21ED9573-5976-4221-8674-CA2F3164FC92}C:\program files\epic games\totalwarsagatroy\troy.exe] => (Allow) C:\program files\epic games\totalwarsagatroy\troy.exe (The Creative Assembly Limited -> The Creative Assembly Ltd) FirewallRules: [UDP Query User{854D2BC7-0D1A-4ADD-98D9-011A8B60524A}C:\program files\epic games\totalwarsagatroy\troy.exe] => (Allow) C:\program files\epic games\totalwarsagatroy\troy.exe (The Creative Assembly Limited -> The Creative Assembly Ltd) FirewallRules: [{9CBCFC96-C0BA-430B-80D8-221FFB8B8FAE}] => (Allow) C:\Users\RAYANE\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [TCP Query User{9560A714-6878-4429-B856-68D70D0CD049}E:\epic games\rocketleague\binaries\win64\rocketleague.exe] => (Allow) E:\epic games\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC -> Psyonix, LLC) FirewallRules: [UDP Query User{0A08FA22-9FCC-4D54-BF31-F52846132587}E:\epic games\rocketleague\binaries\win64\rocketleague.exe] => (Allow) E:\epic games\rocketleague\binaries\win64\rocketleague.exe (Psyonix, LLC -> Psyonix, LLC) FirewallRules: [TCP Query User{64351759-7A0A-4A73-BC67-7A8430F16CA5}C:\users\rayane\desktop\among us 11.17s\among us\among us.exe] => (Allow) C:\users\rayane\desktop\among us 11.17s\among us\among us.exe () [Fichier non signé] FirewallRules: [UDP Query User{D097C046-8FB6-4319-ADF0-A5C1C7EC9D75}C:\users\rayane\desktop\among us 11.17s\among us\among us.exe] => (Allow) C:\users\rayane\desktop\among us 11.17s\among us\among us.exe () [Fichier non signé] FirewallRules: [TCP Query User{E36788AA-0A17-4619-84E6-AF0C9A294809}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [Fichier non signé] FirewallRules: [UDP Query User{C36E3845-33AA-42AD-B9CA-602742F49300}C:\program files (x86)\zotacfirestorm\firestorm.exe] => (Allow) C:\program files (x86)\zotacfirestorm\firestorm.exe (ZOTAC Co.Ltd) [Fichier non signé] FirewallRules: [{826A4536-0105-4DFA-A507-09EC5D7E428F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9200832A-65DD-4529-9CE1-0B37827B172C}] => (Allow) E:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe () [Fichier non signé] FirewallRules: [{8C1383A9-4297-4422-9A87-C3FCE51B5080}] => (Allow) E:\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe () [Fichier non signé] FirewallRules: [{41B3D4BF-8DD3-4B1F-B241-C9E6C19E797F}] => (Allow) E:\SteamLibrary\steamapps\common\BeamNG.drive\BeamNG.drive.exe (BeamNG GmbH) [Fichier non signé] FirewallRules: [{95A7B694-90CF-455E-877F-C126372E85D1}] => (Allow) E:\SteamLibrary\steamapps\common\BeamNG.drive\BeamNG.drive.exe (BeamNG GmbH) [Fichier non signé] FirewallRules: [TCP Query User{00897408-66D5-45D5-8DDC-6050AFD52CF3}E:\steamlibrary\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe] => (Allow) E:\steamlibrary\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe (BeamNG GmbH) [Fichier non signé] FirewallRules: [UDP Query User{8A27D840-85F4-45C7-A7C6-334342148050}E:\steamlibrary\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe] => (Allow) E:\steamlibrary\steamapps\common\beamng.drive\bin64\beamng.drive.x64.exe (BeamNG GmbH) [Fichier non signé] FirewallRules: [{FAA79C15-D892-418E-91DF-142D0038CC16}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe (FUTUREMARK INC -> Futuremark) FirewallRules: [{375272D1-1E88-446B-8301-EF5A506F1AE4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\3DMarkLauncher.exe (FUTUREMARK INC -> Futuremark) FirewallRules: [{F0057972-AE15-4384-91CD-C02970BE5DC4}] => (Allow) E:\SteamLibrary\steamapps\common\Pacify\Pacify.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [{DA53C055-D227-4CB9-BD25-547B2A78174D}] => (Allow) E:\SteamLibrary\steamapps\common\Pacify\Pacify.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [{60027FE3-7256-4685-87A1-9BBE4D13DF5A}] => (Allow) E:\SteamLibrary\steamapps\common\Little Nightmares\Atlas\Binaries\Win64\LittleNightmares.exe (Tarsier Studios) [Fichier non signé] FirewallRules: [{9CA77856-45A6-4C4F-AB21-B66D3BB0E5A3}] => (Allow) E:\SteamLibrary\steamapps\common\Little Nightmares\Atlas\Binaries\Win64\LittleNightmares.exe (Tarsier Studios) [Fichier non signé] FirewallRules: [{354494BF-0B8E-45DC-A6CA-40027667A457}] => (Allow) E:\SteamLibrary\steamapps\common\Fear Deception\MistsOfAiden.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [{E76EF12D-9043-4913-82BF-CF50092A7F83}] => (Allow) E:\SteamLibrary\steamapps\common\Fear Deception\MistsOfAiden.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [{9645FEF1-4ACF-472D-BD36-40CF71E0E62E}] => (Allow) E:\Origine games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{8BE192C1-94C0-49E3-BE1E-D0571B624496}] => (Allow) E:\Origine games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{3D5E669C-CA60-4FAE-904C-E9D340606BA5}] => (Allow) E:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [{332C17F4-1C89-4F1F-8126-3C66BF367CF6}] => (Allow) E:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.) FirewallRules: [TCP Query User{9E77ACAE-1FDF-4A69-8869-AE2C140EC3C7}E:\battle net\overwatch\_retail_\overwatch.exe] => (Allow) E:\battle net\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [UDP Query User{D0081E9D-D336-42A2-B12D-CB47246705E2}E:\battle net\overwatch\_retail_\overwatch.exe] => (Allow) E:\battle net\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) FirewallRules: [{602BE50C-E969-42F0-8949-C80401E366DA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe (FUTUREMARK INC -> ) FirewallRules: [{71C4129E-E771-42F9-959F-050C127420C1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe (FUTUREMARK INC -> ) FirewallRules: [{832F8B7C-BAE2-4D46-BBD7-DD35F5D0275D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe (FUTUREMARK INC -> ) FirewallRules: [{ED9E0198-43D2-4B2F-8896-B14C7978E734}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe (FUTUREMARK INC -> ) FirewallRules: [{72FABD0B-D5F0-4D1D-8825-87C3B95A2682}] => (Allow) E:\SteamLibrary\steamapps\common\Devour\DEVOUR.exe () [Fichier non signé] FirewallRules: [{763BAF3A-BCE8-40FF-8387-1CED331BAA98}] => (Allow) E:\SteamLibrary\steamapps\common\Devour\DEVOUR.exe () [Fichier non signé] FirewallRules: [TCP Query User{CF3A5845-4458-4DB2-9353-2BC21B01115F}E:\battle net\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) E:\battle net\call of duty black ops cold war\blackopscoldwar.exe (Activision Publishing Inc -> Activision Publishing, Inc.) FirewallRules: [UDP Query User{52EC177A-B122-42AC-A6EC-BA67531B3AB9}E:\battle net\call of duty black ops cold war\blackopscoldwar.exe] => (Allow) E:\battle net\call of duty black ops cold war\blackopscoldwar.exe (Activision Publishing Inc -> Activision Publishing, Inc.) FirewallRules: [{4DDD7191-377C-4BCE-A1E6-762497C177D0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8500E123-0DB0-4801-A8E8-367F1711C109}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{F870DD42-FB13-488E-98CD-59F8A0D31FF6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{74949C80-1B97-4A9A-A105-07C9F75687B3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{BB90ED71-907C-41FD-8631-F50EF037E4FF}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{D814635C-50F3-47BB-8CAA-47A6AFAB7474}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{29C2EEFD-8201-47FE-8B91-AAF65440D9AE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4B7DD3DC-90ED-4CFA-BBEF-D9AC500A7DE3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{0512E98F-B24B-49EE-89D2-1A2ABF635412}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{85D79B44-8DC4-4723-B4DD-35C623BEEBFD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{053B6D70-51F2-4701-9111-F545F9F702D9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{4850CCB0-0ABC-4F4E-84F0-25B851352020}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{8D0F23F6-A517-46ED-B63D-FA0A82EB9430}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{F87FBDBE-BE7D-45F8-8657-74AA068F444D}] => (Allow) LPort=32682 ==================== Points de restauration ========================= 31-01-2021 13:55:58 Programme d’installation pour les modules Windows 31-01-2021 15:55:03 Driver Booster : Périphérique d’entrée USB 04-02-2021 21:24:45 Programme d’installation pour les modules Windows 06-02-2021 16:34:49 Removed AMD Ryzen Master SDK. 08-02-2021 15:27:41 ZHPcleaner ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (02/08/2021 06:15:37 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante EABackgroundService.exe, version : 12.0.38.4820, horodatage : 0x600734b9 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.662, horodatage : 0xec58f015 Code d’exception : 0xe06d7363 Décalage d’erreur : 0x000000000002d759 ID du processus défaillant : 0x106c Heure de début de l’application défaillante : 0x01d6fe3e03fdd23a Chemin d’accès de l’application défaillante : C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 078d26f4-cbf4-4b8f-aaf4-8e6ee322c11e Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (02/08/2021 04:33:08 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante EABackgroundService.exe, version : 12.0.38.4820, horodatage : 0x600734b9 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.662, horodatage : 0xec58f015 Code d’exception : 0xe06d7363 Décalage d’erreur : 0x000000000002d759 ID du processus défaillant : 0x1220 Heure de début de l’application défaillante : 0x01d6fe2fb16ffd54 Chemin d’accès de l’application défaillante : C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 6ded6988-cd49-4d93-8eee-95dd02d4c292 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (02/08/2021 04:32:24 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . Error: (02/08/2021 04:32:24 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} et de nom CEventSystem. [0x8007045b, Un arrêt système est en cours. ] Error: (02/08/2021 04:32:24 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine CoCreateInstance. hr = 0x8007045b, Un arrêt système est en cours. . Error: (02/08/2021 04:32:24 PM) (Source: VSS) (EventID: 13) (User: ) Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} et de nom CEventSystem. [0x8007045b, Un arrêt système est en cours. ] Error: (02/08/2021 03:55:31 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (02/08/2021 03:46:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante EABackgroundService.exe, version : 12.0.38.4820, horodatage : 0x600734b9 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.662, horodatage : 0xec58f015 Code d’exception : 0xe06d7363 Décalage d’erreur : 0x000000000002d759 ID du processus défaillant : 0x126c Heure de début de l’application défaillante : 0x01d6fe291fb8aca5 Chemin d’accès de l’application défaillante : C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe Chemin d’accès du module défaillant: C:\Windows\System32\KERNELBASE.dll ID de rapport : 3e292c5a-d9fb-4c76-95b7-dea75e9c49a0 Nom complet du package défaillant : ID de l’application relative au package défaillant : Erreurs système: ============= Error: (02/08/2021 06:15:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service EABackgroundService n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (02/08/2021 06:15:39 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service EABackgroundService. Error: (02/08/2021 06:15:35 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 18:13:03 le ‎08/‎02/‎2021 n’était pas prévu. Error: (02/08/2021 04:48:51 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Epic Online Services s’est terminé de façon inattendue pour la 1ème fois. Error: (02/08/2021 04:33:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service EABackgroundService n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (02/08/2021 04:33:10 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service EABackgroundService. Error: (02/08/2021 03:46:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service EABackgroundService n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (02/08/2021 03:46:07 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service EABackgroundService. CodeIntegrity: =================================== Date: 2021-02-08 18:17:43.7370000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\TmAMSI\TmAMSIProvider64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2021-02-08 18:17:43.7350000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\TmAMSI\TmAMSIProvider64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2021-02-08 18:17:43.7320000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\TmAMSI\TmAMSIProvider64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2021-02-08 18:17:43.7290000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMWsc.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\TmAMSI\TmAMSIProvider64.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2021-02-08 18:17:43.7090000Z Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\TmAMSI\TmAMSIProvider64.dll that did not meet the Windows signing level requirements. Date: 2021-02-08 18:17:43.3290000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Trend Micro\Titanium\TmWscSvc\WSCHandler.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-02-08 18:17:43.3260000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Trend Micro\Titanium\TmWscSvc\WSCHandler.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-02-08 18:17:43.3240000Z Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\Trend Micro\Titanium\TmWscSvc\WSCHandler.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. A.40 10/29/2020 Carte mère: Micro-Star International Co., Ltd. MAG B550 TOMAHAWK (MS-7C91) Processeur: AMD Ryzen 5 5600X 6-Core Processor Pourcentage de mémoire utilisée: 29% Mémoire physique - RAM - totale: 16310.23 MB Mémoire physique - RAM - disponible: 11553.17 MB Mémoire virtuelle totale: 22966.23 MB Mémoire virtuelle disponible: 16072.04 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:930.9 GB) (Free:359.92 GB) NTFS Drive e: (dlink-73ac48) (Fixed) (Total:931.51 GB) (Free:289.99 GB) NTFS \\?\Volume{7d0c943e-d8ab-4ee9-8f12-4c3e6dc53183}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS \\?\Volume{61c29726-62d5-2f87-c58a-65acd647c816}\ () (Fixed) (Total:1.66 GB) (Free:0 GB) NTFS \\?\Volume{11d48397-873b-a502-bb32-9165d1967c1a}\ () (Fixed) (Total:11.34 GB) (Free:0 GB) NTFS \\?\Volume{28e62878-b101-a079-8951-5885c200adfd}\ () (Fixed) (Total:1.39 GB) (Free:0 GB) NTFS \\?\Volume{89c7d8cb-8901-4207-8a82-4339a829448e}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 469E8113) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 2. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 3. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 4. ==================== Fin de Addition.txt =======================