Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 11-07-2021 Exécuté par Cédric Bourson (12-07-2021 15:02:34) Exécuté depuis C:\Users\Cédric Bourson\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2011-04-09 10:05:59) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-1413137251-2671438739-3149395470-500 - Administrator - Disabled) Cédric Bourson (S-1-5-21-1413137251-2671438739-3149395470-1001 - Administrator - Enabled) => C:\Users\Cédric Bourson HomeGroupUser$ (S-1-5-21-1413137251-2671438739-3149395470-1002 - Limited - Enabled) Invité (S-1-5-21-1413137251-2671438739-3149395470-501 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Microsoft Security Essentials (Enabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189} AS: Microsoft Security Essentials (Enabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Acer Arcade Deluxe (HKLM-x32\...\{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 4.5.7828 - CyberLink Corp.) Hidden Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 4.5.7828 - CyberLink Corp.) Acer Arcade Movie (HKLM-x32\...\{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}) (Version: 9.0.6629 - CyberLink Corp.) Hidden Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0825.2010 - Acer Incorporated) Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated) Adblock Plus pour IE (32-bits et 64-bits) (HKLM\...\{40F6FB81-1B50-443B-A8E0-BC70E62CFB21}) (Version: 1.6 - Eyeo GmbH) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 21.005.20048 - Adobe Systems Incorporated) Advertising Center (HKLM-x32\...\{B2EC4A38-B545-4A00-8214-13FE0E915E6D}) (Version: 0.0.0.2 - Nero AG) Hidden AoA Audio Extractor 1.0 (HKLM-x32\...\AoA Audio Extractor_is1) (Version: - AoAMedia.Com) Apple Application Support (32 bits) (HKLM-x32\...\{CCA8C50D-785B-4896-8675-FFE0C4ECCBC3}) (Version: 8.7 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{75BEF7E8-4370-4D42-94F3-B5AA77057965}) (Version: 8.7 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{74CC99EB-7DC0-4CB0-847A-F8C2FE39690C}) (Version: 14.5.0.7 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.78 - Piriform) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation) Configuration DivX (HKLM\...\DivX Setup) (Version: 3.0.0.255 - DivX, LLC) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) DelThumbs (HKLM-x32\...\DelThumbs_is1) (Version: - Pierre TORRIS) Désinstallation de l'imprimante EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation) D-Link ShareCenter (DNS-320) Setup Wizard (HKLM-x32\...\{0975A8CC-C180-4980-94B8-E58D69BE3BD7}) (Version: 1.0.3.0 - D-Link Corporation) DolbyFiles (HKLM-x32\...\{B1ADF008-E898-4FE2-8A1F-690D9A06ACAF}) (Version: 2.0 - Nero AG) Hidden DriversCloud.com (64 bits) (HKLM\...\{8A6F0F58-AE48-4F4C-A06F-C391AB17069C}) (Version: 8.0.2.1 - Cybelsoft) Dropbox (HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\Dropbox) (Version: 126.4.4618 - Dropbox, Inc.) EnveloppesEditor1.12 (HKLM-x32\...\EnveloppesEditor1.12_is1) (Version: 1.12 - J.L.F.) Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.4.3 - Seiko Epson Corporation) Epson Easy Photo Print 2 (HKLM-x32\...\{02A312B5-1542-47B6-BFE9-F51358C39E86}) (Version: 2.4.0.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION2) Epson Event Manager (HKLM-x32\...\{BECE9CCD-83F6-4BAA-9B26-227DF7D2E932}) (Version: 3.01.0000 - Seiko Epson Corporation) Epson E-Web Print (HKLM-x32\...\{6BF9F374-EC67-4808-A90C-F127DE6D989D}) (Version: 1.23.0000 - SEIKO EPSON CORPORATION) Epson Guide réseau EPSON XP-302 303 305 306 Series (HKLM-x32\...\EPSON XP-302 303 305 306 Series Netg) (Version: - ) EPSON Printer Finder (HKLM-x32\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION) Gestionnaire pour appareils Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation) GIMP 2.10.24 (HKLM\...\GIMP-2_is1) (Version: 2.10.24 - The GIMP Team) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.441 - Google LLC) Hidden Google Chrome (HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\Google Chrome) (Version: 91.0.4472.124 - Google LLC) Guide des opérations de base EPSON XP-302 303 305 306 Series (HKLM-x32\...\EPSON XP-302 303 305 306 Series Bog) (Version: - ) Guide d'utilisation EPSON XP-302 303 305 306 Series (HKLM-x32\...\EPSON XP-302 303 305 306 Series Useg) (Version: - ) HandBrake 1.2.2 (HKLM-x32\...\HandBrake) (Version: 1.2.2 - ) Hotkey Utility (HKLM-x32\...\Hotkey Utility) (Version: 2.05.3009 - Acer Incorporated) iCloud (HKLM\...\{8808B208-87D1-4725-8192-76D257E9DEAE}) (Version: 7.21.0.23 - Apple Inc.) Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated) IObit Unlocker (HKLM-x32\...\IObit Unlocker_is1) (Version: 1.1 - IObit) iTunes (HKLM\...\{BA11FD7E-C323-404E-B400-D47B7C8BCEEF}) (Version: 12.10.11.2 - Apple Inc.) K-Lite Codec Pack 13.7.5 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.7.5 - KLCP) Malwarebytes version 4.4.2.123 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.2.123 - Malwarebytes) MediaShow Espresso (HKLM-x32\...\{4968622A-4D3F-489E-9ACE-5FEC4CC0BDE3}) (Version: 5.5.1713_26701 - CyberLink Corp.) Hidden Microsoft .NET Framework 4.8 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.8.03761 - Microsoft Corporation) Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 91.0.864.67 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation) Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation) Microsoft Office Famille et Petite Entreprise 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professionnel Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.11.25325 (HKLM-x32\...\{404c9c27-8377-4fd1-b607-7ca635db4e49}) (Version: 14.11.25325.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 84.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 84.0.2 (x64 fr)) (Version: 84.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 84.0.2 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) mydlink services plugin (HKLM-x32\...\{1A9B665A-5F27-4F71-BF90-22FDFE7A1635}) (Version: 1.0.2.7 - D-Link Corporation) MyEpson Portal (HKLM-x32\...\{3361D415-BA35-4143-B301-661991BA6219}) (Version: 1.1.1.0 - SEIKO EPSON CORPORATION) Hidden MyEpson Portal (HKLM-x32\...\MyEpson Portal) (Version: - SEIKO EPSON Corporation) MyHarmony (HKLM-x32\...\{2AD8F8A1-ECE5-4890-BCC2-B4396370A0D4}) (Version: 1.0.308 - Logitech) MySurveillance Plugin for DNS320L (HKLM-x32\...\{32411CBC-C2F2-4979-B77B-9D528AF2D7AE}) (Version: 1.0.3 - D-LINK CORPORATION) NVIDIA GeForce Experience 3.10.0.95 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.10.0.95 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 342.01 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 340.50 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 340.50 - NVIDIA Corporation) NVIDIA Pilote graphique 342.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 342.01 - NVIDIA Corporation) OneSwarm 0.7.5 (HKLM-x32\...\2849-8758-5167-8645) (Version: 0.7.5 - OneSwarm) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.5.0 - Frank Heindörfer, Philip Chinery) PeerBlock 1.2 (r693) (HKLM\...\{015C5B35-B678-451C-9AEE-821E8D69621C}_is1) (Version: 1.2.0.693 - PeerBlock, LLC) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8454 - Realtek Semiconductor Corp.) Remote Control USB Driver (HKLM-x32\...\{8471021C-F529-43DE-84DF-3612E10F58C4}) (Version: 2.3.2.317 - ) Semiolog (HKLM-x32\...\Semiolog2) (Version: - ) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) ShareCenterSync (HKLM-x32\...\ShareCenterSync_is1) (Version: 2.0.0.5 - D-Link Corporation.) Splashtop Software Updater (HKLM-x32\...\Splashtop Software Updater) (Version: 1.5.6.19 - Splashtop Inc.) Splashtop Streamer (HKLM-x32\...\{B7C5EA94-B96A-41F5-BE95-25D78B486678}) (Version: 3.4.6.2 - Splashtop Inc.) TagScanner 6.1.7 (64-bit) (HKLM\...\TagScanner_is1) (Version: - Sergey Serkov) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: 5.5.0.0 - Elaborate Bytes) Vista Shortcut Manager x64 (HKLM\...\{C7311329-C491-427B-8880-133E84869B3A}) (Version: 2.0 - Frameworkx) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.12 - VideoLAN) vs2015_redist x86 (HKLM-x32\...\{BD46163A-0331-4A61-B65A-7B66D7C93F8E}) (Version: 1.0.0.0 - Realnetworks) Hidden WinRAR 4.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.00.0 - win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\ChromeHTML: -> C:\Users\Cédric Bourson\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) <==== ATTENTION CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{85D8EE2F-794F-41F0-BB03-49D56A23BEF4}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Local\Google\Update\1.3.36.82\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{A2C6CB58-C076-425C-ACB7-6D19D64428CD}\localserver32 -> C:\Users\Cédric Bourson\AppData\Local\Google\Chrome\Application\91.0.4472.124\notification_helper.exe (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{CA8FA699-91CD-412F-9D13-9B1222F4370E}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Local\Google\Update\1.3.36.82\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{DEDF773D-E27B-485E-8E7D-85C5B0EB5A67}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Local\Google\Update\1.3.36.72\psuser_64.dll => Pas de fichier CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Local\Google\Update\1.3.36.82\psuser_64.dll (Google LLC -> Google LLC) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EE1-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FB314EE2-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll (Dropbox, Inc -> Dropbox, Inc.) ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [jZip] -> {E677C7AD-2B66-4539-AA29-3771A1CFEDA9} => -> Pas de fichier ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2020-09-08] (Apple Inc. -> Apple Inc.) ContextMenuHandlers1: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit Information Technology -> IObit) ContextMenuHandlers1: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -> Elaborate Bytes AG) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers2: [VirtualCloneDrive] -> {B7056B8E-4F99-44f8-8CBD-282390FE5428} => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -> Elaborate Bytes AG) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => C:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> Pas de fichier ContextMenuHandlers4: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit Information Technology -> IObit) ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-11-14] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-06-26] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> Pas de fichier ContextMenuHandlers6: [UnLockerMenu] -> {410BF280-86EF-4E0F-8279-EC5848546AD3} => C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlockerExtension.dll [2014-03-04] (IObit Information Technology -> IObit) ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> ) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () [Fichier non signé] ContextMenuHandlers1_S-1-5-21-1413137251-2671438739-3149395470-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers4_S-1-5-21-1413137251-2671438739-3149395470-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ContextMenuHandlers5_S-1-5-21-1413137251-2671438739-3149395470-1001: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\DropboxExt64.48.0.dll [2021-05-11] (Dropbox, Inc -> Dropbox, Inc.) ==================== Codecs (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Drivers32: [vidc.DIVX] => C:\Windows\SysWOW64\DivX.dll [720384 2010-02-19] (DivX, Inc.) [Fichier non signé] ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2017-07-17 15:53 - 2015-02-11 11:06 - 000022528 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\iconv.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000607979 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libgmp-10.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 001360517 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libgnutls-28.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000522433 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libgsasl-7.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 002013260 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libhogweed-2-1.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 001977988 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libnettle-4-3.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000280417 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libp11-kit-0.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000031744 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\rsync.dll 2017-07-17 15:53 - 2015-03-04 10:04 - 000151552 _____ () [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\TunnelLibrary.dll 2021-05-20 17:57 - 2021-05-20 17:57 - 000108032 _____ () [Fichier non signé] C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\qrcodelib.dll 2011-04-09 23:48 - 2010-08-25 05:00 - 000361472 _____ (CANON INC.) [Fichier non signé] C:\Windows\System32\CNMLMAE.DLL 2011-04-10 11:17 - 2010-02-05 03:37 - 000327680 _____ (CANON INC.) [Fichier non signé] C:\Windows\System32\CNMN6PPM.DLL 2011-04-09 23:48 - 2010-08-25 06:00 - 000028672 _____ (CANON INC.) [Fichier non signé] C:\Windows\system32\spool\PRTPROCS\x64\CNMPDAE.DLL 2017-07-17 15:53 - 2015-02-11 11:06 - 000152489 _____ (Free Software Foundation) [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\intl.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000065024 _____ (Free Software Foundation) [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libintl.DLL 2019-06-10 15:07 - 2016-11-14 11:45 - 001220424 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Fichier non signé] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI.dll 2012-10-21 21:29 - 2012-07-29 13:59 - 000096768 _____ (pdfforge GbR) [Fichier non signé] C:\Windows\System32\pdfcmon.dll 2005-01-13 11:47 - 2005-01-13 11:47 - 000049152 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\ESPSUTL.dll 2011-04-14 10:25 - 2011-04-14 10:25 - 000206336 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\ScnCom10.dll 2011-04-14 10:25 - 2011-04-14 10:25 - 000082944 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\ScnEps25.dll 2011-04-14 10:25 - 2011-04-14 10:25 - 000055808 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\ScnMgr10.dll 2011-11-25 18:47 - 2011-11-25 18:47 - 000110080 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\epnsm.dll 2009-10-21 18:39 - 2009-10-21 18:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll 2011-04-14 10:16 - 2011-04-14 10:16 - 000136704 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\EPSON Software\Event Manager\ScanEngine30.dll 2019-02-22 18:01 - 2019-02-22 18:01 - 000704512 _____ (Seiko Epson Corporation) [Fichier non signé] C:\Program Files (x86)\EPSON\MyEpson Portal\Configration_00000171\MepCfg.dll 2020-04-17 10:15 - 2020-04-17 10:15 - 000577536 _____ (Seiko Epson Corporation) [Fichier non signé] C:\Program Files (x86)\EPSON\MyEpson Portal\MepUploader_00000542\MepUploader.dll 2019-02-22 16:09 - 2019-02-22 16:09 - 000475136 _____ (Seiko Epson Corporation) [Fichier non signé] C:\Program Files (x86)\EPSON\MyEpson Portal\Online Manual_00000013\MepFAQ.dll 2014-01-06 20:06 - 2012-11-12 16:15 - 000558592 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Windows\System32\enppmon.dll 2014-01-06 20:06 - 2012-10-22 18:19 - 000219648 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Windows\System32\enpres.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 001243248 _____ (The GLib developer community) [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libglib-2.0-0.dll 2017-07-17 15:53 - 2015-02-11 11:06 - 000044287 _____ (The GLib developer community) [Fichier non signé] C:\Program Files (x86)\D-Link\ShareCenterSync\libgthread-2.0-0.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\Cédric Bourson:zylomtest [0] AlternateDataStreams: C:\Users\Cédric Bourson:zylomtr{00013KEU-UKQE-K6V0-70L9-2A8RJ1B4CVF3} [36] AlternateDataStreams: C:\ProgramData\Temp:0B9176C0 [244] AlternateDataStreams: C:\ProgramData\Temp:373E1720 [118] AlternateDataStreams: C:\ProgramData\Temp:4D066AD2 [234] AlternateDataStreams: C:\ProgramData\Temp:798A3728 [238] AlternateDataStreams: C:\ProgramData\Temp:7C60A173 [113] AlternateDataStreams: C:\ProgramData\Temp:8CE646EE [226] AlternateDataStreams: C:\ProgramData\Temp:8E5EA40F [388] AlternateDataStreams: C:\ProgramData\Temp:93EB7685 [288] AlternateDataStreams: C:\ProgramData\Temp:A5241382 [117] AlternateDataStreams: C:\ProgramData\Temp:CB0AACC9 [147] AlternateDataStreams: C:\ProgramData\Temp:CDFF58FE [288] AlternateDataStreams: C:\ProgramData\Temp:E36F5B57 [272] AlternateDataStreams: C:\Users\Cédric Bourson\Documents\BonBourson1.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\Cédric Bourson\Documents\Devis MR BOURSON.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\Cédric Bourson\Documents\offline-nt-password-registry-editor-v110511.iso:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\Cédric Bourson\Documents\Permis de conduire.pdf:com.dropbox.attrs [54] AlternateDataStreams: C:\Users\Cédric Bourson\Documents\Solde permis à points.pdf:com.dropbox.attrs [52] ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\29502483.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\46400582.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\73785460.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\29502483.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\46400582.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\73785460.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SplashtopRemoteService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Version 11) (Avec liste blanche) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=132705078729571012&GUID=A3BD0B89-6189-4989-87E9-D5CA5692079C HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=132705078729571012&GUID=A3BD0B89-6189-4989-87E9-D5CA5692079C HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.orange.fr/ SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope la valeur est absente SearchScopes: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2012-01-25] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2017-01-03] (Eyeo GmbH -> Eyeo GmbH) BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2017-01-03] (Eyeo GmbH -> Eyeo GmbH) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2012-01-25] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) Toolbar: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001 -> Pas de nom - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - Pas de fichier DPF: HKLM-x32 {0E8D0700-75DF-11D3-8B4A-0008C7450C4A} hxxps://biz.lgservice.com/DATA/cab/djvuctrl-6.1.4-en-r34387.cab DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxp://kitchenplanner.ikea.com/fr/Core/Player/2020PlayerAX_IKEA_Win32.cab DPF: HKLM-x32 {1C11B948-582A-433F-A98D-A8C4D5CC64F2} hxxp://kitchenplanner.ikea.com/fr/Core/Player/2020PlayerAX_Win32.cab DPF: HKLM-x32 {2D20E99C-1FD7-48EC-9FDF-CF3555B273D4} hxxp://192.168.1.92/VDControl.CAB?2,0,0,94 DPF: HKLM-x32 {5438A51F-6F8A-4936-A3B9-EB6921787343} hxxps://192.168.1.66/surveillancestation/DNS320LMySurveillance.cab DPF: HKLM-x32 {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} hxxp://fichiers.touslesdrivers.com/maconfig/MaConfig_5_1_4_0.cab DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab Handler: belarc - {6318E0AB-2E93-11D1-B8ED-00608CC9A71F} - Pas de fichier StartMenuInternet: IEXPLORE.EXE - iexplore.exe (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Il y a 7864 plus de sites. IE trusted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\webcompanion.com -> hxxp://webcompanion.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\...\123simsen.com -> www.123simsen.com Il y a 7865 plus de sites. 2011-12-29 23:56 - 2011-12-30 00:03 - 000000436 _____ C:\Windows\system32\drivers\etc\hosts.ics ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\ HKU\S-1-5-21-1413137251-2671438739-3149395470-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Cédric Bourson\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 8.8.8.8 - 8.8.4.4 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [TCP Query User{79EB3547-CF96-4970-9739-3B88A34650D2}E:\dns-320_a1_fw_v1.00_d-link_storage_utility_v5.0.0.0.exe] => (Allow) E:\dns-320_a1_fw_v1.00_d-link_storage_utility_v5.0.0.0.exe => Pas de fichier FirewallRules: [UDP Query User{F121F17C-06CC-491D-8D38-D89368A118F3}E:\dns-320_a1_fw_v1.00_d-link_storage_utility_v5.0.0.0.exe] => (Allow) E:\dns-320_a1_fw_v1.00_d-link_storage_utility_v5.0.0.0.exe => Pas de fichier FirewallRules: [TCP Query User{A459EE8B-5CB1-458B-A590-C21095AC4919}C:\program files (x86)\d-link\dns-320\setup wizard.exe] => (Allow) C:\program files (x86)\d-link\dns-320\setup wizard.exe (D-LINK CORPORATION -> Copyright (C) 2010 D-Link Systems, Inc.) FirewallRules: [UDP Query User{00BFC86C-AB7F-4079-B79E-FE1A637BC3B6}C:\program files (x86)\d-link\dns-320\setup wizard.exe] => (Allow) C:\program files (x86)\d-link\dns-320\setup wizard.exe (D-LINK CORPORATION -> Copyright (C) 2010 D-Link Systems, Inc.) FirewallRules: [TCP Query User{21D5F776-230F-4916-94C3-94FF1EB4673B}C:\program files (x86)\oneswarm\oneswarm.exe] => (Allow) C:\program files (x86)\oneswarm\oneswarm.exe () [Fichier non signé] FirewallRules: [UDP Query User{9E0DC39B-1E03-4042-972C-B8B6A45437D9}C:\program files (x86)\oneswarm\oneswarm.exe] => (Allow) C:\program files (x86)\oneswarm\oneswarm.exe () [Fichier non signé] FirewallRules: [TCP Query User{080912F1-423F-4EA4-8683-0AD34570C2D8}C:\program files (x86)\oneswarm\oneswarm.exe] => (Allow) C:\program files (x86)\oneswarm\oneswarm.exe () [Fichier non signé] FirewallRules: [UDP Query User{511E356B-4A58-4795-A2EE-D04EB8FA7822}C:\program files (x86)\oneswarm\oneswarm.exe] => (Allow) C:\program files (x86)\oneswarm\oneswarm.exe () [Fichier non signé] FirewallRules: [TCP Query User{35552E10-994A-4320-BB0A-305A29F5E5F9}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{A8E2AA7A-E425-45C6-A634-19234CB57C6B}C:\program files (x86)\internet explorer\iexplore.exe] => (Allow) C:\program files (x86)\internet explorer\iexplore.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{38354125-8FAD-422E-9FB2-83B76DE0706C}] => (Allow) E:\Network\EpsonNetSetup\ENEasyApp.exe => Pas de fichier FirewallRules: [{54FA8A51-1B08-4E87-B67E-FB5E95983ACE}] => (Allow) E:\Network\EpsonNetSetup\ENEasyApp.exe => Pas de fichier FirewallRules: [TCP Query User{26CCB6D6-905E-43BA-A121-16ABB1EB032C}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [UDP Query User{DCF18C67-BB7E-4FE4-B718-7B8A149F1DA8}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [{22296CAF-D513-4762-B095-FA271FC4B6AF}] => (Allow) C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{33BA7069-4911-4020-AE7C-CC40F133AEC0}] => (Allow) C:\Users\Cédric Bourson\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [TCP Query User{5319B83A-780F-4DD2-8A3E-116FA72B2908}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [UDP Query User{A3632478-1E8A-4A47-9E6F-FBDF12C07120}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [{5A579465-0ECA-45B0-97CC-495E794ADAC4}] => (Allow) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{10D32519-3434-44D4-8781-54AC1446A59D}] => (Allow) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{6C1FDDFF-87FE-43B3-BBFC-54F00CD60038}] => (Allow) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{630D5689-3FB3-4381-AB21-4D507ADEB936}] => (Allow) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [TCP Query User{A083AAF9-FFD6-4657-B689-D69A03EBF0C0}C:\users\cédric bourson\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\cédric bourson\appdata\roaming\dropbox\bin\dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [UDP Query User{48587434-5579-4A03-9AFA-3BC3D5416123}C:\users\cédric bourson\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\cédric bourson\appdata\roaming\dropbox\bin\dropbox.exe (Dropbox, Inc -> Dropbox, Inc.) FirewallRules: [{4E1CF3C9-9E89-4453-A584-6EFF6CD3748B}] => (Allow) LPort=48113 FirewallRules: [{E402A79C-9CE3-4E04-915F-7707CE1B1F64}] => (Allow) LPort=48113 FirewallRules: [{D4A9D227-CB57-4619-8F23-696415BB5D09}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe (CYBELSOFT -> CybelSoft) FirewallRules: [{0E736C53-E113-43DE-A6BB-69C5993E9B5C}] => (Allow) C:\Program Files\DriversCloud.com\MCDetection.exe (CYBELSOFT -> CybelSoft) FirewallRules: [TCP Query User{50F4857A-3C63-441B-BC0D-26BADDDAA334}E:\advanced\autorun.exe] => (Allow) E:\advanced\autorun.exe => Pas de fichier FirewallRules: [UDP Query User{024F8000-D305-4ECE-9067-D04B8FDF3C70}E:\advanced\autorun.exe] => (Allow) E:\advanced\autorun.exe => Pas de fichier FirewallRules: [TCP Query User{6B406382-1D8E-45A1-8029-6359BD7913CE}E:\setup wizard\setup wizard.exe] => (Allow) E:\setup wizard\setup wizard.exe => Pas de fichier FirewallRules: [UDP Query User{07004577-90ED-4B90-AD8F-A223ED68DDC1}E:\setup wizard\setup wizard.exe] => (Allow) E:\setup wizard\setup wizard.exe => Pas de fichier FirewallRules: [{AA3965AE-97C8-42DC-83F8-2EE879863FB0}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRFeature.exe (Splashtop Inc. -> Splashtop Inc.) FirewallRules: [TCP Query User{FC978C84-39C4-4C4E-B7BB-A22D2ADC1629}C:\program files (x86)\microsoft office\office14\groove.exe] => (Block) C:\program files (x86)\microsoft office\office14\groove.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{BAEE4E17-EDCA-41ED-AFC9-6F6B33F6933D}C:\program files (x86)\microsoft office\office14\groove.exe] => (Block) C:\program files (x86)\microsoft office\office14\groove.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{828A4C76-8284-4B03-AD09-600384DBEC9A}E:\d-link storage utility\d-link storage utility(5.2.1.4)_10082015.exe] => (Allow) E:\d-link storage utility\d-link storage utility(5.2.1.4)_10082015.exe => Pas de fichier FirewallRules: [UDP Query User{7B799700-10C8-4A2C-BD2E-D863E6B4B990}E:\d-link storage utility\d-link storage utility(5.2.1.4)_10082015.exe] => (Allow) E:\d-link storage utility\d-link storage utility(5.2.1.4)_10082015.exe => Pas de fichier FirewallRules: [TCP Query User{C0BAD57F-4F7D-48DD-9E48-41F576D23430}C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe] => (Allow) C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe (D-LINK CORPORATION -> ) FirewallRules: [UDP Query User{5D9EFE7D-4B22-4C3F-89B1-BF363F1273FE}C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe] => (Allow) C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe (D-LINK CORPORATION -> ) FirewallRules: [TCP Query User{F6F85B35-9A33-4424-9182-FAB7561CDD03}C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe] => (Allow) C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe (D-LINK CORPORATION -> ) FirewallRules: [UDP Query User{57888203-57E6-413B-BFBC-8CC88F24F62B}C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe] => (Allow) C:\program files (x86)\d-link\sharecentersync\sharecentersync.exe (D-LINK CORPORATION -> ) FirewallRules: [{D8C2E869-2066-4232-8FBE-361EEE057AD4}] => (Allow) C:\Users\Cédric Bourson\AppData\Local\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{F043B08A-EE22-4209-B2B0-EB853A1E9B6D}] => (Allow) C:\Users\Cédric Bourson\AppData\Local\Apowersoft\Online Video Downloader\Online Video Downloader.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{2173806E-48EF-43E4-BEC3-CB318F298A48}] => (Allow) C:\Users\Cédric Bourson\AppData\Local\Apowersoft\Online Video Downloader\Online Video Downloader.exe (Apowersoft Ltd -> Apowersoft) FirewallRules: [{50DFF028-DD1F-4214-AEA7-87CBCBE26E81}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{B13FB082-09FB-4750-8A6C-9D926B5724F2}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform) FirewallRules: [{DE4EF448-98B3-4B49-A3F7-BE4A07D2C02B}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform) FirewallRules: [{C4B15F9E-1F7B-4D44-B274-1E39D02E5322}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{D0A4F174-BD89-479A-9A7F-EB452B0A3E0D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{EB8312EC-588C-4286-98A3-CA2092A2AA4E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{97C8214F-5B98-4CB8-AFF4-32AD89D2B69B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{3282F90D-26A7-4D26-97C9-DF1E51FB9784}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) FirewallRules: [{B78E85B3-726B-4FEF-8E0F-21C0DB4F5A5B}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) FirewallRules: [{91B768D4-78B6-4167-B46F-3D871D942EBD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{83307B5A-0A8C-4FAE-899E-C52E970A7D8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{C1B5BE7E-0359-4578-B9D6-0F226C57DED3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{A2C2A509-3C95-4212-AB10-BD69DE5CB162}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{86FE0118-ADCB-47DA-8D14-36172AB33F6B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{D8F3B7E1-D21D-453B-8150-757C60EBBC82}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{37A7E878-04B0-4AAC-AD8E-168B453D1A06}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{FEE2FE39-EB58-4456-9B83-19F3143481D6}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{5C2DB54F-A735-4C00-8075-D59B33C6AE20}] => (Allow) C:\Program Files (x86)\Splashtop\Splashtop Remote\Server\SRManager.exe (Splashtop Inc. -> Splashtop Inc.) ==================== Points de restauration ========================= 09-07-2021 22:05:09 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============ Name: Souris Microsoft PS/2 Description: Souris Microsoft PS/2 Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: i8042prt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (07/12/2021 02:56:17 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MbamBgNativeMsg.exe, version : 4.0.0.41, horodatage : 0x60987db2 Nom du module défaillant : ole32.dll, version : 6.1.7601.24537, horodatage : 0x5dce0bdd Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000023f17 ID du processus défaillant : 0x1cec Heure de début de l’application défaillante : 0x01d7771cd9f5d98b Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe Chemin d’accès du module défaillant: C:\Windows\system32\ole32.dll ID de rapport : 8b39882d-e310-11eb-93a3-1078d29e0390 Error: (07/12/2021 02:53:30 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme mbamtray.exe version 4.0.0.1033 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 10cc Heure de début : 01d77713a2358b54 Heure de fin : 49059 Chemin d’accès de l’application : C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe ID de rapport : 071d1cef-e310-11eb-93a3-1078d29e0390 Error: (07/12/2021 02:52:28 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MbamBgNativeMsg.exe, version : 4.0.0.41, horodatage : 0x60987db2 Nom du module défaillant : ole32.dll, version : 6.1.7601.24537, horodatage : 0x5dce0bdd Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000023f17 ID du processus défaillant : 0x1304 Heure de début de l’application défaillante : 0x01d77717dfc72ee6 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe Chemin d’accès du module défaillant: C:\Windows\system32\ole32.dll ID de rapport : 03224ff8-e310-11eb-93a3-1078d29e0390 Error: (07/12/2021 01:57:20 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante MbamBgNativeMsg.exe, version : 4.0.0.41, horodatage : 0x60987db2 Nom du module défaillant : ole32.dll, version : 6.1.7601.24537, horodatage : 0x5dce0bdd Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000023f17 ID du processus défaillant : 0x1f68 Heure de début de l’application défaillante : 0x01d777143cc600b6 Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe Chemin d’accès du module défaillant: C:\Windows\system32\ole32.dll ID de rapport : 4f179d0e-e308-11eb-93a3-1078d29e0390 Error: (07/12/2021 01:44:22 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : FreemakeUtilsService.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.IO.FileNotFoundException à FreemakeUtilsService.Program.Main(System.String[]) Error: (07/12/2021 01:36:39 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : FreemakeUtilsService.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.IO.FileNotFoundException à FreemakeUtilsService.Program.Main(System.String[]) Error: (07/11/2021 09:46:01 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: DNS Message from 192.168.1.20:58767 to 192.168.1.255:5353 length 4 too short Error: (07/11/2021 09:45:56 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: DNS Message from 192.168.1.20:55205 to 192.168.1.255:5353 length 4 too short Erreurs système: ============= Error: (07/12/2021 01:48:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Google Update (gupdate) n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (07/12/2021 01:48:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Service Google Update (gupdate). Error: (07/12/2021 01:44:52 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Freemake Improver n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (07/12/2021 01:44:52 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Freemake Improver. Error: (07/12/2021 01:44:22 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: AUTORITE NT) Description: Une erreur s’est produite lors de la lecture du fichier d’hôtes local. Error: (07/12/2021 01:44:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service ASPI32 n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (07/12/2021 01:44:16 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: AUTORITE NT) Description: Une erreur s’est produite lors de la lecture du fichier d’hôtes local. Error: (07/12/2021 01:40:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Google Update (gupdate) n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. P01-B0 06/01/2010 Carte mère: Acer EG43M Processeur: Pentium(R) Dual-Core CPU E5700 @ 3.00GHz Pourcentage de mémoire utilisée: 70% Mémoire physique - RAM - totale: 4095.14 MB Mémoire physique - RAM - disponible: 1188.95 MB Mémoire virtuelle totale: 8188.43 MB Mémoire virtuelle disponible: 4969.73 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:455.94 GB) (Free:182.28 GB) NTFS Drive d: (DATA) (Fixed) (Total:455.94 GB) (Free:376.09 GB) NTFS Drive y: () (Network) (Total:298.09 GB) (Free:291.52 GB) Drive z: () (Network) (Total:3662.64 GB) (Free:2153.03 GB) \\?\Volume{4efeb04d-772d-11dc-a99f-806e6f6e6963}\ (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS \\?\Volume{4efeb04c-772d-11dc-a99f-806e6f6e6963}\ (PQSERVICE) (Fixed) (Total:19.53 GB) (Free:7.45 GB) NTFS ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 907F15CC) Partition 1: (Not Active) - (Size=19.5 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=455.9 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=455.9 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt =======================