Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 07-08-2021 Exécuté par berna (07-08-2021 13:25:37) Exécuté depuis C:\Users\berna\Desktop Windows 10 Pro Version 21H1 19043.1110 (X64) (2021-07-05 10:20:12) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-3241833146-3736459403-4284518719-500 - Administrator - Disabled) berna (S-1-5-21-3241833146-3736459403-4284518719-1001 - Administrator - Enabled) => C:\Users\berna Bernard (S-1-5-21-3241833146-3736459403-4284518719-1004 - Administrator - Enabled) => C:\Users\Bernard besni (S-1-5-21-3241833146-3736459403-4284518719-1002 - Limited - Disabled) DefaultAccount (S-1-5-21-3241833146-3736459403-4284518719-503 - Limited - Disabled) Invité (S-1-5-21-3241833146-3736459403-4284518719-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-3241833146-3736459403-4284518719-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} FW: ESET Pare-feu (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 21.02 alpha (x64) (HKLM\...\7-Zip) (Version: 21.02 alpha - Igor Pavlov) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 21.005.20060 - Adobe Systems Incorporated) Adobe Photoshop 6.0 (HKLM-x32\...\Adobe Photoshop 6.0) (Version: 6.0 - Adobe Systems, Inc.) Adobe SVG Viewer (HKLM-x32\...\Adobe SVG Viewer) (Version: 1.0 - Adobe Systems, Inc.) ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.83 - Piriform) Cobian Backup 11 Gravity (HKLM-x32\...\CobBackup11) (Version: - ) ESET Security (HKLM\...\{6B1BBDBF-507A-4736-82B0-DE772C1D2AFE}) (Version: 14.2.19.0 - ESET, spol. s r.o.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 92.0.4515.131 - Google LLC) HashTab 6.0.0.34 (HKLM\...\HashTab) (Version: 6.0.0.34 - Implbits Software) HP Deskjet 2050 J510 series Aide (HKLM-x32\...\{7A3DF2E2-CF13-44FB-A93E-F71D5381DB3F}) (Version: 140.0.61.61 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) Logiciel de base du périphérique HP Deskjet 2050 J510 series (HKLM\...\{B7F83103-C83C-4081-B9B7-50FC6A6F929E}) (Version: 28.0.1313.0 - Hewlett-Packard Co.) Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden Malwarebytes version 4.4.4.126 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.4.126 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 92.0.902.67 - Microsoft Corporation) Microsoft Office Professionnel Plus 2019 - fr-fr (HKLM\...\ProPlus2019Retail - fr-fr) (Version: 16.0.14228.20204 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 21.129.0627.0002 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{E5A95BC5-81DF-4F0C-B910-B59DD012F037}) (Version: 2.81.0.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) MiniTool Partition Wizard Free 12.5 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 12.5 - MiniTool Software Limited) MiniTool Power Data Recovery 9.0 (HKLM\...\{E1BCD081-4BF4-4E2F-832A-911EC42EF3C5}_is1) (Version: 9.0 - MiniTool Software Limited) MiniTool ShadowMaker PW Edition (HKLM-x32\...\MT-75D7C412-925B-4AD0-90DC-5E4FEE22EAE1_is1) (Version: 3.6 - MiniTool Software Limited) Mozilla Firefox 89.0.2 (x64 fr) (HKLM\...\Mozilla Firefox 89.0.2 (x64 fr)) (Version: 89.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 89.0.2 - Mozilla) Mozilla Thunderbird 78.12.0 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 78.12.0 (x86 fr)) (Version: 78.12.0 - Mozilla) NVIDIA GeForce Experience 3.13.1.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.13.1.30 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.36.6 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.36.6 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14228.20204 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14228.20204 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.14228.20204 - Microsoft Corporation) Hidden Opera Stable 77.0.4054.277 (HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\...\Opera 77.0.4054.277) (Version: 77.0.4054.277 - Opera Software) Popcorn Time (HKLM-x32\...\Popcorn Time_is1) (Version: 6.2.1.17 - Popcorn Time) <==== ATTENTION Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.50.511.2021 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9151.1 - Realtek Semiconductor Corp.) Revo Uninstaller 2.2.8 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.2.8 - VS Revo Group, Ltd.) Speedtest by Ookla (HKLM\...\{94F2FE59-500F-4401-A5D7-1D180E7F9B0F}) (Version: 1.8.156.001 - Ookla) Technologie de stockage Intel(R) Rapid entreprise (HKLM-x32\...\{1a1a8962-f5a0-47f7-bb11-3eea93944169}) (Version: 5.5.0.1367 - Intel Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.16 - VideoLAN) Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden Zedeo version 1.3.0 (HKLM-x32\...\{095074AE-E4BD-41EC-AE78-21969805AB7C}_is1) (Version: 1.3.0 - ZedSoft) Packages: ========= Club Vegas -> C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_99.0.10.0_x64__5dvc9f3b38e20 [2021-07-30] (Bagelcode) Jewels of Egypt -> C:\Program Files\WindowsApps\828B5831.JewelsofEgyptMatchGame_1.16.1601.0_x86__ytsefhwckbdv6 [2021-07-23] (G5 Entertainment AB) Jewels of Rome : Un jeu d’assemblage de gemmes -> C:\Program Files\WindowsApps\828B5831.JewelsofRomeMatchgemstorestorethecity_1.26.2602.0_x86__ytsefhwckbdv6 [2021-08-05] (G5 Entertainment AB) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-07-05] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-07-05] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.10.7290.0_x64__8wekyb3d8bbwe [2021-08-05] (Microsoft Studios) [MS Ad] myCANAL -> C:\Program Files\WindowsApps\CANALGroupe.CANALTOUCH_4.3.4.0_x64__4d0jsvmsaqz2m [2021-06-20] (Groupe Canal +) Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2021-06-20] (Netflix, Inc.) Solitaire Cruise Tripeaks Card Game -> C:\Program Files\WindowsApps\SamfinacoLimited.SolitaireCruiseTripeaksCardGame_2.8.21.0_x64__aj0b1qrpyg0w6 [2021-08-07] (Samfinaco Limited) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0 [2021-08-06] (Spotify AB) [Startup Task] ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-05-06] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-06-27] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-06-27] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2021-04-30] (VMware, Inc. -> VMware, Inc.) ContextMenuHandlers2: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2021-04-30] (VMware, Inc. -> VMware, Inc.) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-08-05] (Malwarebytes Corporation -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-05-06] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\21.129.0627.0002\FileSyncShell64.dll [2021-07-26] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-05-06] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-06-27] (ESET, spol. s r.o. -> ESET) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-08-05] (Malwarebytes Corporation -> Malwarebytes) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2021-07-11 13:29 - 2021-01-28 05:27 - 000097792 _____ () [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\coresync.dll 2021-07-11 13:29 - 2019-08-15 05:52 - 000076800 _____ () [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\SMTPEmail.dll 2021-06-25 11:18 - 2021-07-29 08:44 - 000029480 _____ (ASUSTeK Computer Inc. -> ) [Fichier non signé] C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2021-07-11 13:29 - 2021-01-28 05:27 - 000061952 _____ (Chengdu Speed Digital Technology Co..Ltd.) [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\ChannelNetFileInfo.dll 2021-07-11 13:29 - 2021-01-28 05:27 - 000175104 _____ (Chengdu Speed Digital Technology Co..Ltd.) [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\FileInfoCommon.dll 2021-06-20 17:27 - 2012-12-05 23:08 - 002684928 _____ (Luis Cobian, CobianSoft) [Fichier non signé] C:\Program Files (x86)\Cobian Backup 11\cbEngine.dll 2021-07-11 13:29 - 2017-09-14 14:40 - 000884736 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\sqldrivers\qsqlite.dll 2021-07-11 13:29 - 2021-01-28 05:27 - 001485312 _____ (TODO: ) [Fichier non signé] C:\Program Files\MiniTool ShadowMaker\core7z.dll ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2021-06-20] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-06-20] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-07-31] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-12-07 11:14 - 2021-06-20 18:00 - 000000935 ____R C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.0 activation.easeus.com 0.0.0.0 track.easeus.com 0.0.0.0 easeus.com 0.0.0.0 update.easeus.com 2021-07-04 12:12 - 2021-08-07 08:28 - 000000443 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics 172.29.0.1 DESKTOP-56NJAKP.mshome.net # 2026 8 4 6 6 28 53 41 ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\VMware\VMware Workstation\bin\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\berna\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg HKU\S-1-5-21-3241833146-3736459403-4284518719-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 89.2.0.1 - 89.2.0.2 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. Network Binding: ============= VMware Network Adapter VMnet1: VMware Bridge Protocol -> vmware_bridge (disabled) vEthernet (Default Switch): VMware Bridge Protocol -> vmware_bridge (enabled) VMware Network Adapter VMnet8: VMware Bridge Protocol -> vmware_bridge (disabled) Ethernet: VMware Bridge Protocol -> vmware_bridge (enabled) ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\StartupFolder: => "Adobe Gamma Loader.exe.lnk" HKLM\...\StartupApproved\Run: => "MTPW" HKLM\...\StartupApproved\Run32: => "HP Software Update" HKLM\...\StartupApproved\Run32: => "vmware-tray.exe" HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\...\StartupApproved\StartupFolder: => "Alertes de surveillance de l'encre - HP Deskjet 2050 J510 series.lnk" HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\...\StartupApproved\Run: => "BitTorrent" HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-3241833146-3736459403-4284518719-1001\...\StartupApproved\Run: => "Opera Browser Assistant" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{CD19B566-58B5-47CF-B1BC-A0BB9033620E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [UDP Query User{F7464F64-6CEE-42E5-B75D-C89EFEB5A852}C:\users\berna\appdata\local\programs\opera\77.0.4054.172\opera.exe] => (Allow) C:\users\berna\appdata\local\programs\opera\77.0.4054.172\opera.exe => Pas de fichier FirewallRules: [TCP Query User{6E07F0A6-C8A4-4211-A4A3-6696775FEEF6}C:\users\berna\appdata\local\programs\opera\77.0.4054.172\opera.exe] => (Allow) C:\users\berna\appdata\local\programs\opera\77.0.4054.172\opera.exe => Pas de fichier FirewallRules: [{013B83C8-EBFC-4B62-B709-A1B5B652EEB4}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> ) FirewallRules: [{436ED727-CB95-499D-9718-86DB88123866}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> ) FirewallRules: [{B4AE795F-B8E3-4AE0-93B4-9C331D1AD777}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.) FirewallRules: [{75F62303-D7B8-4995-B5B3-3FF7A0EEAD41}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.) FirewallRules: [{0E128832-EDF4-4EDE-929B-7EEFEEF19004}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7BD4A5C3-915A-4C07-95CD-9E6B61502AF1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{34F13ED5-338D-44D6-B7CF-0448D6B95DF9}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7A523D4D-611F-4286-89B5-4FD04AA87F18}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2D1569B0-87F7-43E8-B388-0FB8053FA9D6}] => (Allow) C:\Program Files\HP\HP Deskjet 2050 J510 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Co.) FirewallRules: [{EC0A57E1-3B04-42FD-9D86-D2291DAC13BC}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [Fichier non signé] FirewallRules: [{DA826FE4-D061-49E5-8AA7-711A1F17EB1C}] => (Allow) C:\Program Files (x86)\Popcorn Time\Updater.exe (Popcorn Time) [Fichier non signé] FirewallRules: [{C1128D23-371E-4B69-9507-11684BA38B82}] => (Allow) C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe () [Fichier non signé] FirewallRules: [{263139BD-88CB-4F3D-83DC-343EEC102B68}] => (Allow) C:\Program Files (x86)\Popcorn Time\PopcornTimeDesktop.exe () [Fichier non signé] FirewallRules: [{D3FDD97D-73B7-44F7-92B1-0B2A161970E0}] => (Allow) C:\Program Files (x86)\Popcorn Time\nodejs\node.exe (Node.js Foundation -> Node.js) FirewallRules: [{64F34DA9-68C8-4BE2-8230-DE3C5296144D}] => (Allow) C:\Program Files (x86)\Popcorn Time\nodejs\node.exe (Node.js Foundation -> Node.js) FirewallRules: [{A789B8BC-5A8F-4FC6-B06E-6F312D677068}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe (Joyent Inc -> Joyent, Inc) FirewallRules: [{B6A544A1-BDC6-485B-BFAC-9DFD1E26AC8C}] => (Allow) C:\Program Files (x86)\Popcorn Time\chromecast\node.exe (Joyent Inc -> Joyent, Inc) FirewallRules: [TCP Query User{50BD39F3-C4A5-4AA5-B95A-6666878D13FD}C:\users\berna\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\berna\appdata\local\programs\opera\77.0.4054.203\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [UDP Query User{72C936EE-6A10-44AE-910F-C35B66D454A2}C:\users\berna\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\berna\appdata\local\programs\opera\77.0.4054.203\opera.exe (Opera Software AS -> Opera Software) FirewallRules: [{37E3FEE0-C9F6-477A-9C6B-C40F62ECDC7E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{84FD2DA7-68EF-4383-B7CF-01C2FD1395A1}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{3FBA86F9-12A9-47D9-ABDC-2FD513AB3804}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{5312D8D0-7418-4E0B-A1AF-FB7D08003802}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{27D8641A-35BF-42E4-811D-D34CA13B019D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{1B49F367-3433-4810-8A37-3B384C3551CD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{DE67107C-FD61-4AD8-87CB-9BED041F10F2}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> ) FirewallRules: [{B303F8AC-1BD0-4F0D-84F4-FC39F2B034DF}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> ) FirewallRules: [{42F5F09D-2FFF-43A3-A2FB-26463DEA36CA}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{E35C9E15-18AA-4B78-8751-7E47561A431C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{F477D5D6-AA93-4FCC-8F52-26A1A1321666}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{95CA1BF2-CA68-4EA9-BA3B-60E7D9985BC7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{F2561C11-475A-4F69-AD86-63B42845A073}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{CC3A772E-671B-42E1-B6C6-7CF38FDF1072}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{7AEC5F42-DC76-49D1-9C21-7282816FA65B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{FB852841-2E90-47F0-9BA5-323AD467CF9A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) FirewallRules: [{041A3652-E640-42C1-AED8-6FA26A1931E0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.165.643.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd) ==================== Points de restauration ========================= 30-07-2021 12:21:30 Point de contrôle planifié 01-08-2021 12:00:09 Sauvegarde Windows 02-08-2021 10:10:08 Revo Uninstaller's restore point - Doremi ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (08/03/2021 12:45:34 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur SAMSUNG (H:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) Error: (08/03/2021 12:44:55 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur (D:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) Error: (08/03/2021 12:44:54 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur Disque local (E:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) Error: (08/02/2021 10:10:06 AM) (Source: VSS) (EventID: 8194) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé. . Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {e690a506-a410-4fca-9c0f-776b5f0f0a5f} Error: (07/30/2021 10:56:24 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante svchost.exe_FrameServer, version : 10.0.19041.546, horodatage : 0x058e175a Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.1110, horodatage : 0x4809adf2 Code d’exception : 0xc00d4e24 Décalage d’erreur : 0x000000000010bd3e ID du processus défaillant : 0x3754 Heure de début de l’application défaillante : 0x01d78520ba0002c8 Chemin d’accès de l’application défaillante : C:\WINDOWS\System32\svchost.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 8ba92bef-cc70-474c-a3bb-998287db8250 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (07/27/2021 02:16:02 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur (D:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) Error: (07/27/2021 02:16:01 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: ) Description: L’optimiseur de stockage n’a pas pu terminer réoptimisation sur Disque local (E:) car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) Error: (07/26/2021 02:04:03 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme JoE.uwp_x86.exe version 0.0.0.0 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de processus : 17a0 Heure de début : 01d7821152e43fab Heure d'arrêt : 4294967295 Chemin d'accès à l'application : C:\Program Files\WindowsApps\828B5831.JewelsofEgyptMatchGame_1.16.1601.0_x86__ytsefhwckbdv6\JoE.uwp_x86.exe ID de rapport : 67054981-267f-44c1-adfd-1c9e1e4afa35 Nom complet du package défectueux : 828B5831.JewelsofEgyptMatchGame_1.16.1601.0_x86__ytsefhwckbdv6 ID de l'application relative à un package défectueux : com.g5e.jewelsofegypt.winrt Type de blocage : Quiesce Erreurs système: ============= Error: (08/04/2021 05:34:27 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-56NJAKP) Description: Le serveur {776DBC8D-7347-478C-8D71-791E12EF49D8} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (08/01/2021 06:05:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (08/01/2021 06:05:13 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\berna\AppData\Local\Temp\ehdrv.sys Error: (08/01/2021 06:05:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (08/01/2021 06:05:13 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\berna\AppData\Local\Temp\ehdrv.sys Error: (08/01/2021 06:05:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué Error: (08/01/2021 06:05:13 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\berna\AppData\Local\Temp\ehdrv.sys Error: (08/01/2021 06:05:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service eapihdrv n’a pas pu démarrer en raison de l’erreur : Le chargement du pilote a été bloqué CodeIntegrity: =============== Date: 2021-08-07 12:14:15 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2021-08-07 09:23:58 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\ebehmoni.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. 3602 03/26/2018 Carte mère: ASUSTeK COMPUTER INC. H81M-C Processeur: Intel(R) Pentium(R) CPU G3220 @ 3.00GHz Pourcentage de mémoire utilisée: 58% Mémoire physique - RAM - totale: 16320.82 MB Mémoire physique - RAM - disponible: 6791.8 MB Mémoire virtuelle totale: 18752.82 MB Mémoire virtuelle disponible: 7142.21 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:414.71 GB) (Free:235.03 GB) NTFS Drive d: () (Fixed) (Total:149.04 GB) (Free:148.95 GB) NTFS Drive e: (Disque local) (Fixed) (Total:465.76 GB) (Free:320.61 GB) NTFS Drive g: (ESD-USB) (Removable) (Total:28.64 GB) (Free:18 GB) FAT32 Drive h: (SAMSUNG) (Fixed) (Total:465.76 GB) (Free:114.56 GB) NTFS Drive j: (GRTMPFPP_FR) (CDROM) (Total:0.58 GB) (Free:0 GB) CDFS \\?\Volume{e74db14c-4394-4f2b-af39-b65604b38633}\ () (Fixed) (Total:50.94 GB) (Free:50.46 GB) NTFS \\?\Volume{43f6a1f8-fbc7-4a43-91df-91c0bb5d93c1}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 2528B45C) Partition: GPT. ========================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 149.1 GB) (Disk ID: D9DAD9DA) Partition 1: (Active) - (Size=149 GB) - (Type=07 NTFS) ========================================================== Disk: 2 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 3 (Size: 465.8 GB) (Disk ID: 10D1B2AF) Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS) ========================================================== Disk: 4 (MBR Code: Windows 7/8/10) (Size: 28.7 GB) (Disk ID: 3DC7CC74) Partition 1: (Active) - (Size=28.7 GB) - (Type=0C) ==================== Fin de Addition.txt =======================