Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 30-08-2022 Exécuté par 33769 (02-09-2022 13:26:11) Exécuté depuis C:\Users\33769\OneDrive\Bureau Microsoft Windows 10 Famille Version 21H2 19044.1889 (X64) (2021-03-18 10:31:35) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) 33769 (S-1-5-21-1805736365-329377465-3708726696-1001 - Administrator - Enabled) => C:\Users\33769 Administrateur (S-1-5-21-1805736365-329377465-3708726696-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-1805736365-329377465-3708726696-503 - Limited - Disabled) Invité (S-1-5-21-1805736365-329377465-3708726696-501 - Limited - Disabled) MOI (S-1-5-21-1805736365-329377465-3708726696-1002 - Limited - Enabled) WDAGUtilityAccount (S-1-5-21-1805736365-329377465-3708726696-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 21.07 (x64) (HKLM\...\7-Zip) (Version: 21.07 - Igor Pavlov) 8GadgetPack (HKLM-x32\...\{2C6DC07C-5D68-4E32-B6C6-EF5F24DA9FDF}) (Version: 33.0.0 - 8GadgetPack.net) ABBYY FineReader 9.0 Sprint (HKLM-x32\...\{F9000000-0018-0000-0000-074957833700}) (Version: 9.01.513.58212 - ABBYY) Hidden ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY) adsl TV (HKLM-x32\...\{3AFDD2C6-8663-46B5-B195-6CEB00D44768}) (Version: 2018.1 - adsl TV / FM) AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2020.0924.2357.43118 - Advanced Micro Devices, Inc.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.08.03 - Advanced Micro Devices, Inc.) Android Messages 3.1.0 (HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\{413df5fa-3016-59ca-a5b2-a69afc9a5c1f}) (Version: 3.1.0 - Chris Knepper) Assistant Mise à jour de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22925 - Microsoft Corporation) Blender (HKLM\...\{D6E38255-FB12-4724-A6FF-075B43272C66}) (Version: 2.92.0 - Blender Foundation) BootRacer 8.0 (HKLM-x32\...\{50EB4E13-A810-411E-8F1F-C22FE7841DA2}_is1) (Version: 8.0 - Greatis Software) Branding64 (HKLM\...\{7659552A-136F-4615-A9FA-3E3EF2CCA77C}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Canon Utilities Digital Photo Professional 4 (HKLM-x32\...\Digital Photo Professional 4 (x64)) (Version: 4.7.21.0 - Canon Inc.) Canon Utilities EOS Lens Registration Tool (HKLM-x32\...\EOS Lens Registration Tool) (Version: 1.7.10.0 - Canon Inc.) Canon Utilities EOS Sample Music (HKLM-x32\...\EOS Sample Music) (Version: 1.0.2.0 - Canon Inc.) Canon Utilities EOS Utility 2 (HKLM-x32\...\EOS Utility 2) (Version: 2.14.20.0 - Canon Inc.) Canon Utilities EOS Utility 3 (HKLM-x32\...\EOS Utility 3) (Version: 3.7.0.0 - Canon Inc.) Canon Utilities EOS Web Service Registration Tool (HKLM-x32\...\EOS Web Service Registration Tool) (Version: 1.6.30.1 - Canon Inc.) Canon Utilities Picture Style Editor (HKLM-x32\...\Picture Style Editor) (Version: 1.19.10.0 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 6.03 - Piriform) Contrôle d’intégrité du PC Windows (HKLM\...\{90C6971F-ABF1-4FBF-BD98-24F14C5F5AB4}) (Version: 3.6.2204.08001 - Microsoft Corporation) Contrôle d’intégrité du PC Windows (HKLM\...\{DF8C3BDB-5439-431D-89FA-A45643F262C6}) (Version: 3.1.2109.29003 - Microsoft Corporation) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Désinstaller l'imprimante EPSON SX218 Series (HKLM\...\EPSON SX218 Series) (Version: - SEIKO EPSON Corporation) EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS) Epson Easy Photo Print 2 (HKLM-x32\...\{310C1558-F6B5-4889-98B0-7471966BA7F2}) (Version: 2.2.3.0 - SEIKO EPSON CORPORATION) Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (HKLM-x32\...\{B2D55EB8-32C5-4B43-9006-9E97DECBA178}) (Version: 1.00.0000 - SEIKO EPSON CORPORATION) Epson Event Manager (HKLM-x32\...\{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}) (Version: 2.40.0001 - SEIKO EPSON CORPORATION) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX218 Series Manuel (HKLM-x32\...\EPSON SX218 Series Manual) (Version: - ) FastStone Image Viewer 7.6 (HKLM-x32\...\FastStone Image Viewer) (Version: 7.6 - FastStone Corporation) Free Window Registry Repair (HKLM-x32\...\Free Window Registry Repair) (Version: - ) Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.3.38.1224 - Digital Wave Ltd) FreeCommander XE (HKLM-x32\...\FreeCommander XE_is1) (Version: - Marek Jasinski) Google Earth Pro (HKLM\...\{DE181B35-ACEF-4DB0-86D9-731D5767ABB1}) (Version: 7.3.4.8642 - Google) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 104.0.5112.102 - Google LLC) Groobax (HKLM-x32\...\Groobax_is1) (Version: - Groobax) Hamster Free Video Converter (HKLM-x32\...\{7E350663-86D3-466A-AB79-28156A9ABF6E}_is1) (Version: 2.5.2.33 - Hamster Soft) HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.16.0 - HP Inc.) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.) HP Software Framework (HKLM-x32\...\{71E18A14-1BDB-4B58-A67F-1BCDA12462FD}) (Version: 7.1.15.1 - HP) Inkscape (HKLM-x32\...\Inkscape) (Version: 1.0.2--2 - Inkscape) Kamo (HKLM-x32\...\Kamo) (Version: 4.3.582.1062 - Piriform) K-Lite Codec Pack 16.0.5 Basic (HKLM-x32\...\KLiteCodecPack_is1) (Version: 16.0.5 - KLCP) LAV Filters 0.74.1 (HKLM-x32\...\lavfilters_is1) (Version: 0.74.1 - Hendrik Leppkes) Malwarebytes version 4.5.13.208 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.13.208 - Malwarebytes) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 104.0.1293.70 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 104.0.1293.70 - Microsoft Corporation) Microsoft Office Access MUI (French) 2010 (HKLM\...\{90140000-0015-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (French) 2010 (HKLM\...\{90140000-0016-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (French) 2010 (HKLM\...\{90140000-00BA-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (French) 2010 (HKLM\...\{90140000-0044-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Office 32-bit Components 2010 (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (French) 2010 (HKLM\...\{90140000-00A1-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (French) 2010 (HKLM\...\{90140000-001A-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (French) 2010 (HKLM\...\{90140000-0018-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professionnel Plus 2010 (HKLM\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Proof (Arabic) 2010 (HKLM\...\{90140000-001F-0401-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Dutch) 2010 (HKLM\...\{90140000-001F-0413-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (HKLM\...\{90140000-001F-0409-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (HKLM\...\{90140000-001F-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (HKLM\...\{90140000-001F-0407-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Spanish) 2010 (HKLM\...\{90140000-001F-0C0A-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (French) 2010 (HKLM\...\{90140000-002C-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (French) 2010 (HKLM\...\{90140000-0019-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 32-bit MUI (French) 2010 (HKLM\...\{90140000-0043-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (French) 2010 (HKLM\...\{90140000-006E-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (French) 2010 (HKLM\...\{90140000-001B-040C-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\OneDriveSetup.exe) (Version: 22.166.0807.0002 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{5e4b593b-ca3c-429c-bc49-b51cbf46e72a}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26429 (HKLM-x32\...\{2019b6a0-8533-4a04-ac0e-b2c10bdb9841}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 x64 Additional Runtime - 14.14.26429 (HKLM\...\{B12F584A-DE7A-3EE3-8EC4-8A64DBC0F2A7}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.14.26429 (HKLM\...\{03EBF679-E886-38AD-8E70-28658449F7F9}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 x86 Additional Runtime - 14.14.26429 (HKLM-x32\...\{6F0267F3-7467-350D-A8C8-33B72E3658D8}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.14.26429 (HKLM-x32\...\{7753EC39-3039-3629-98BE-447C5D869C09}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) MiniTool MovieMaker (HKLM-x32\...\{MT-39B9213B-B182-41FB-B149-CD1016372F9C}_is1) (Version: 2.4.2 - MiniTool) MiniTool Video Converter (HKLM-x32\...\MT-VC-85D7C412-925B-4AD0-789C-5E4FEE22EAE1_is1) (Version: 3.1.0 - MiniTool Software Limited) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 104.0.1 (x64 fr)) (Version: 104.0.1 - Mozilla) Mozilla Thunderbird (x64 fr) (HKLM\...\Mozilla Thunderbird 91.13.0 (x64 fr)) (Version: 91.13.0 - Mozilla) MSVCRT (HKLM-x32\...\{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}) (Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (HKLM-x32\...\{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}) (Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (HKLM\...\{E9FA781F-3E80-4399-825A-AD3E11C28C77}) (Version: 16.4.1109.0912 - Microsoft) Hidden MuseScore 3 (HKLM\...\{FF67E071-104C-4C42-9301-184442745671}) (Version: 3.6.2.548021803 - Werner Schweer and Others) OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) OpenOffice 4.1.11 (HKLM-x32\...\{89DCB28E-BB7B-41AA-8E58-F710C6C4F234}) (Version: 4.111.9808 - Apache Software Foundation) OpenShot Video Editor version 2.5.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.5.1 - OpenShot Studios, LLC) Opera Stable 89.0.4447.56 (HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\Opera 89.0.4447.56) (Version: 89.0.4447.56 - Opera Software) PDFCreator (HKLM\...\{00010FEF-82A2-497E-983A-7105A0166FA7}) (Version: 4.0.2 - pdfforge GmbH) Photo Gallery (HKLM-x32\...\{07AAB66E-4718-422D-9218-4AFB3C922A71}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden PhotoFiltre 7 (HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\PhotoFiltre 7) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.88 - REALTEK Semiconductor Corp.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0011-0000-1000-0000000FF1CE}_Office14.PROPLUS_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0015-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0016-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0018-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0019-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001A-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001B-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-0401-1000-0000000FF1CE}_Office14.PROPLUS_{95D2BA54-BC12-44A2-8DDA-A79449EC8BAA}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-0407-1000-0000000FF1CE}_Office14.PROPLUS_{EE3A99C9-FD8F-4923-9F82-27365DA4B873}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-0409-1000-0000000FF1CE}_Office14.PROPLUS_{C814F7D9-CE9D-45AA-BA7C-88BDD0E1EB7C}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-040C-1000-0000000FF1CE}_Office14.PROPLUS_{77A8B979-11B0-4774-8003-574EE8A4BC22}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-0413-1000-0000000FF1CE}_Office14.PROPLUS_{C281A20E-A7DE-4950-8656-13E31F2DF194}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-001F-0C0A-1000-0000000FF1CE}_Office14.PROPLUS_{05916788-991E-417B-A8F3-77F90A2B8271}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-002C-040C-1000-0000000FF1CE}_Office14.PROPLUS_{383712B7-1113-46EC-9BE4-01DAF8E8BB02}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0043-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F3FAAB68-7697-4B1F-A23A-72312565AEAB}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0043-040C-1000-0000000FF1CE}_Office14.PROPLUS_{CEE5B747-2AA9-43A5-A069-34A7E81E588F}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0044-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-006E-040C-1000-0000000FF1CE}_Office14.PROPLUS_{8AAFBABE-DDD8-4815-A567-FEBFB72E9E70}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-00A1-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-00BA-040C-1000-0000000FF1CE}_Office14.PROPLUS_{E23A2A78-D3DC-4E12-A0A4-1568477DF429}) (Version: - Microsoft) Hidden Serviio (HKLM\...\Serviio) (Version: 2.2 - Six Lines Ltd) SketchUp 2017 (HKLM\...\{7B8F376D-7D82-41A4-A14E-6DAAA426CBD9}) (Version: 17.2.2555 - Trimble Navigation Limited) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) VideoPad - Logiciel de montage vidéo (HKLM-x32\...\VideoPad) (Version: 8.81 - NCH Software) VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN) WhatsApp (HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\WhatsApp) (Version: 2.2222.12 - WhatsApp) Windows Live Communications Platform (HKLM-x32\...\{41C61308-6CFD-4D54-AB6A-7136ED08A18E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\{66B5819D-DE70-42BE-B40F-978FBA12452E}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Installer (HKLM-x32\...\{659CB81C-B54E-4DF1-B618-F35777393A54}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (HKLM-x32\...\{1D6432B4-E24D-405E-A4AB-D7E6D088CBC9}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (HKLM-x32\...\{B2611F8A-EFE7-4E88-875D-19F0EFAE87E4}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (HKLM-x32\...\{CDC1AB00-01FF-4FC7-816A-16C67F0923C0}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (HKLM-x32\...\{D1893000-EA77-493C-8DDD-E262436E959B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (HKLM-x32\...\{00F9DB8C-65D7-4D47-AB5F-F698EE38580D}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (HKLM-x32\...\{6522F5F9-411B-4513-A75B-CEA00395F032}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Packages: ========= Adobe Reader Touch -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobeReader_3.1.8.7675_x86__ynb6jyjzte8ga [2020-04-28] (Adobe Systems Incorporated) Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-18] (Microsoft Corporation) Dropbox - offre promotionnelle -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_22.4.17.0_x64__xbfy0k16fey96 [2022-07-20] (Dropbox Inc.) ELAN Touchpad Setting -> C:\Program Files\WindowsApps\ELANMicroelectronicsCorpo.ELANTouchpadSetting_11.2.63.0_x64__stws0m115j6hg [2021-03-18] (ELAN Microelectronics Corporation) Energy Star -> C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0.0_x64__v10z8vjag6ke6 [2020-03-18] (HP Inc.) HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.11.218.0_x64__v10z8vjag6ke6 [2021-03-18] (HP Inc.) HP JumpStarts -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6 [2022-01-11] (HP Inc.) HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.8.2.0_x64__v10z8vjag6ke6 [2022-08-06] (HP Inc.) HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.42.0_x64__v10z8vjag6ke6 [2021-04-09] (HP Inc.) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6 [2022-08-27] (HP Inc.) HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.20.22.0_x64__v10z8vjag6ke6 [2022-08-23] (HP Inc.) HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6 [2022-08-13] (HP Inc.) Ico Converter -> C:\Program Files\WindowsApps\60419chengcong.IcoConverter_1.0.2.0_neutral__t9fsqbj7rngfm [2020-10-12] (chengcong) LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2020-03-18] (LinkedIn) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-03-18] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-03-18] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.7180.0_x64__8wekyb3d8bbwe [2022-07-30] (Microsoft Studios) [MS Ad] PDF Viewer Plus -> C:\Program Files\WindowsApps\29124GSnathan.PDFViewerPlus_1.2.9.0_x64__99e2r9s0h589p [2020-03-18] (GSnathan) PowerPoint Mobile -> C:\Program Files\WindowsApps\Microsoft.Office.PowerPoint_16001.14326.21096.0_x64__8wekyb3d8bbwe [2022-08-09] (Microsoft Corporation) sMedio True DVD for HP -> C:\Program Files\WindowsApps\0E3921EB.sMedioTrueDVDforHP_1.1.156.0_x64__agwrg61xdd7p4 [2022-07-15] (sMedio Inc.) Solitaire Français -> C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.SimpleSolitaire_7.4.4.0_x64__kx24dqmazqk8j [2021-10-10] (Random Salad Games LLC) WildTangent Games -> C:\Program Files\WindowsApps\WildTangentGames.63435CFB65F55_2.0.84.0_x64__qt5r5pa5dyg8m [2021-02-28] (WildTangent Games) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1805736365-329377465-3708726696-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\33769\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) [Fichier non signé] CustomCLSID: HKU\S-1-5-21-1805736365-329377465-3708726696-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\33769\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) [Fichier non signé] ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [PDFCreator.ShellContextMenu] -> {d9cea52e-100d-4159-89ea-76e845bc13e1} => C:\Program Files\PDFCreator\PDFCreatorShell.DLL [2019-11-19] (pdfforge GmbH -> pdfforge GmbH) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-05-14] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-09-25] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2021-12-26] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-05-14] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2022-08-23 17:35 - 2022-08-23 17:35 - 001411584 _____ () [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Kamo\CefSharp.Core.Runtime.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000017920 _____ () [Fichier non signé] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 003567616 _____ () [Fichier non signé] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2022-01-28 23:03 - 2022-01-28 23:05 - 001469440 _____ () [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6\e_sqlite3.dll 2020-09-25 00:47 - 2020-09-25 00:47 - 001562624 _____ (Advanced Micro Devices, Inc.) [Fichier non signé] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll 2022-08-25 15:35 - 2022-08-25 17:21 - 124375040 _____ (HP Development Company, L.P.) [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6\HP.Smart.dll 2022-08-25 15:35 - 2022-08-25 18:22 - 008856064 _____ (HP Development Company, L.P.) [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6\HPPageLift.UWP.dll 2022-08-25 15:35 - 2022-08-25 15:35 - 000133632 _____ (HP Inc) [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6\HP.OneDriver.UserForms.dll 2022-03-21 18:29 - 2022-03-21 18:32 - 000013824 _____ (HP Inc.) [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_138.2.412.0_x64__v10z8vjag6ke6\NativeRpcClient.dll 2020-06-20 14:55 - 2020-06-20 14:56 - 000014336 _____ (HP Inc.) [Fichier non signé] C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6\SystemEventUtility\NativeRpcClient.DLL 2022-06-16 15:08 - 2021-12-26 16:00 - 000093696 _____ (Igor Pavlov) [Fichier non signé] C:\Program Files\7-Zip\7-zip.dll 2008-04-11 11:54 - 2008-04-11 11:54 - 000348160 _____ (Microsoft Corporation) [Fichier non signé] C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\MSVCR71.dll 2020-02-13 19:47 - 2020-02-13 19:47 - 000116736 _____ (pdfforge GmbH) [Fichier non signé] C:\WINDOWS\System32\pdfcmon.dll 2005-01-13 10:47 - 2005-01-13 10:47 - 000049152 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\ESPSUTL.dll 2009-11-26 16:53 - 2009-11-26 16:53 - 000055296 _____ (SEIKO EPSON CORP.) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\ScnMgr10.dll 2022-06-16 15:28 - 2009-08-24 10:10 - 000430592 _____ (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Fichier non signé] C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll 2009-11-20 10:46 - 2009-11-20 10:46 - 000103936 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\epnsm.dll 2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\LcMgr.dll 2009-11-24 15:18 - 2009-11-24 15:18 - 000142336 _____ (SEIKO EPSON CORPORATION) [Fichier non signé] C:\Program Files (x86)\Epson Software\Event Manager\ScanEngine30.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000031744 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000039424 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000031744 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000413696 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000025088 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000025088 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000023552 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000519168 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 001431040 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 001180672 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000135680 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll 2020-09-25 00:55 - 2020-09-25 00:55 - 006010880 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 006345216 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 001078272 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000313856 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 004000256 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 003802624 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000171008 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 001083904 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000205312 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000329728 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000113152 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000376320 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 092323328 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 005560832 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000463360 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000188416 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 002888704 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000053760 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000059392 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000017408 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000287232 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000329216 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000136192 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000089088 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000312320 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2020-08-18 13:36 - 2020-08-18 13:36 - 000017920 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2020-09-25 00:55 - 2020-09-25 00:55 - 000085504 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0] ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-1805736365-329377465-3708726696-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-1805736365-329377465-3708726696-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Fichier non signé] BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2022-08-17] (HP Inc. -> HP Inc.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2022-08-17] (HP Inc. -> HP Inc.) Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2009-08-24] (SEIKO EPSON CORPORATION / CyCom Technology Corp.) [Fichier non signé] (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\.DEFAULT\...\webcompanion.com -> hxxp://webcompanion.com IE trusted site: HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2019-12-15 11:06 - 2020-09-28 16:23 - 000000445 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1805736365-329377465-3708726696-1001\Control Panel\Desktop\\Wallpaper -> c:\users\33769\onedrive\images\ancolie.jpg DNS Servers: 192.168.0.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\StartupFolder: => "EOS Utility.lnk" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "HPSEU_Host_Launcher" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "vidnotifier.exe" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "Web Companion" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "uTorrent" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "Opera Browser Assistant" HKU\S-1-5-21-1805736365-329377465-3708726696-1001\...\StartupApproved\Run: => "Speech Recognition" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{C426AD91-217E-4F30-A987-302463122435}] => (Allow) C:\Program Files (x86)\adslTV\adsltv.exe (adsl TV/FM (adsl prod) -> adsl TV / FM) FirewallRules: [{5CF3C4BF-80F0-42E0-A4C4-F5531F20741C}] => (Allow) C:\Program Files (x86)\adslTV\adsltv.exe (adsl TV/FM (adsl prod) -> adsl TV / FM) FirewallRules: [TCP Query User{7422A3F5-F631-4FAE-BCFD-E0F4C0030E29}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [UDP Query User{D352B5AF-34E7-41C2-999E-BAFE12B042B9}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [TCP Query User{A860921D-C657-45F2-A27F-95EA1F2BA39E}C:\program files\openshot video editor\openshot-qt.exe] => (Allow) C:\program files\openshot video editor\openshot-qt.exe (OpenShot Studios, LLC) [Fichier non signé] FirewallRules: [UDP Query User{EA4BFEB8-0D0C-4593-865F-6CEA238E1BD6}C:\program files\openshot video editor\openshot-qt.exe] => (Allow) C:\program files\openshot video editor\openshot-qt.exe (OpenShot Studios, LLC) [Fichier non signé] FirewallRules: [{69F81860-B809-4337-8D20-26DF2AC49639}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe (Canon Inc. -> CANON INC.) FirewallRules: [{647BD421-2E1A-4AFA-B98F-BD6758DA5A97}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe (Canon Inc. -> CANON INC.) FirewallRules: [{0141E587-22A2-4BAE-9073-FABA48593995}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{07BD81BB-8936-4001-8D74-E7D1730D2B48}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{AD3FB392-2338-4275-8FD7-6FE6A2E3C189}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [Fichier non signé] FirewallRules: [{F60CEA32-96E5-47A4-B89D-DA8EB22D8888}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [Fichier non signé] FirewallRules: [{3B78B75E-CBF6-446D-B8CF-C580D9ED79C3}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [Fichier non signé] FirewallRules: [TCP Query User{D0A61F90-2817-4ED3-A936-359B1415A9C6}C:\users\33769\appdata\roaming\utorrent\updates\3.5.5_46096.exe] => (Block) C:\users\33769\appdata\roaming\utorrent\updates\3.5.5_46096.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [UDP Query User{9573CCDE-6F10-4F81-A68C-5D4E4502E566}C:\users\33769\appdata\roaming\utorrent\updates\3.5.5_46096.exe] => (Block) C:\users\33769\appdata\roaming\utorrent\updates\3.5.5_46096.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [TCP Query User{26324C27-7F36-47CE-8432-9C644DBEBF7D}C:\program files (x86)\wondershare\wondershare recoverit pro\drc.exe] => (Allow) C:\program files (x86)\wondershare\wondershare recoverit pro\drc.exe (Wondershare Technology Co.,Ltd -> Wondershare Inc.) FirewallRules: [UDP Query User{821A3013-4552-4CC4-8443-320163CDB66D}C:\program files (x86)\wondershare\wondershare recoverit pro\drc.exe] => (Allow) C:\program files (x86)\wondershare\wondershare recoverit pro\drc.exe (Wondershare Technology Co.,Ltd -> Wondershare Inc.) FirewallRules: [{DFC51ECA-BD74-44E4-9FDA-9FDE3736A83D}] => (Allow) LPort=57209 FirewallRules: [{8C0EB14C-D0EA-416A-AB6D-13F3409EE68E}] => (Allow) LPort=57210 FirewallRules: [{6C4BB348-95A3-4E23-BBB8-D2B4E8C5138F}] => (Allow) LPort=57211 FirewallRules: [{BAFE48B1-E6FD-4DD5-AF01-B2174DD86F7F}] => (Allow) LPort=57212 FirewallRules: [{07632AF1-CB05-48AC-BBC2-DE4078D96279}] => (Allow) LPort=57213 FirewallRules: [{7F32D34E-6B3A-458C-BB4E-F323091BAC05}] => (Allow) LPort=57214 FirewallRules: [{325C0B79-0360-49ED-BB19-47047CD521F4}] => (Allow) LPort=57215 FirewallRules: [{0A074C45-2755-4F7C-A619-56429A3FA7BF}] => (Allow) LPort=57216 FirewallRules: [{E178BE50-0027-4313-9FBD-D5734CB06D54}] => (Allow) LPort=57217 FirewallRules: [{9EEED3DB-8765-4027-84B6-C1AC5D05E627}] => (Allow) LPort=57218 FirewallRules: [{28B944F4-6516-410F-9366-F2D983899B01}] => (Allow) LPort=57209 FirewallRules: [{93663DFC-D953-4776-BDD4-C1A0E6FB9B59}] => (Allow) LPort=57210 FirewallRules: [{13D25173-3ED5-4B0F-9B51-AF5B35F8FC24}] => (Allow) LPort=57211 FirewallRules: [{AA1336A2-9626-4006-A841-1364B78B7569}] => (Allow) LPort=57212 FirewallRules: [{53B07BAC-84FF-48FD-936F-D047AE6FA24B}] => (Allow) LPort=57213 FirewallRules: [{42D97C55-0D13-43B1-820C-4F483294A0EB}] => (Allow) LPort=57214 FirewallRules: [{181F880E-43CE-4189-A655-6EF0D9673FEA}] => (Allow) LPort=57215 FirewallRules: [{521CB8D4-33B6-469B-B469-5A0950B3BD2E}] => (Allow) LPort=57216 FirewallRules: [{A007DA30-A6C4-4350-A812-1DE67920DC7C}] => (Allow) LPort=57217 FirewallRules: [{A17EC80E-A15B-47F0-BD49-86C931C985EB}] => (Allow) LPort=57218 FirewallRules: [{5DA94E79-C1F5-48A4-965E-E8044CF0F421}] => (Allow) LPort=23007 FirewallRules: [{923F8B67-E224-4C41-92EA-AFE868DE349B}] => (Allow) LPort=23008 FirewallRules: [{823FD208-0AD5-4CC4-AE06-B1045E28F28F}] => (Allow) LPort=33009 FirewallRules: [{B7EA3E23-24D9-4A96-8505-1024A78C45FC}] => (Allow) LPort=33010 FirewallRules: [{5A0B45CD-3708-44AB-B500-38BD46AF9460}] => (Allow) LPort=33011 FirewallRules: [{E5D6C9C5-0AD2-4FDB-99CC-B5FEF9A85C1E}] => (Allow) LPort=43012 FirewallRules: [{5F58DF3E-11FA-4BC3-93A6-1ED7148CE87B}] => (Allow) LPort=43013 FirewallRules: [{5789CCB7-14F2-47C7-B2DE-1384EC59FA22}] => (Allow) LPort=53014 FirewallRules: [{8F434574-5C74-41B6-BE6B-454D3D306BBE}] => (Allow) LPort=53015 FirewallRules: [{959F5BBC-FD47-4487-AABA-74A8F58E930F}] => (Allow) LPort=53016 FirewallRules: [{F1359634-8EFD-4DFE-8DE0-DE00C668606A}] => (Allow) LPort=23007 FirewallRules: [{52BE0193-87BB-4374-A525-5403A06AA45C}] => (Allow) LPort=23008 FirewallRules: [{AD56E9E3-5DCE-46EB-921D-B4FD0F8E0CAF}] => (Allow) LPort=33009 FirewallRules: [{AEE02713-638B-4CA6-BAE0-19808A5C5521}] => (Allow) LPort=33010 FirewallRules: [{3F126C54-9E18-43FA-AFD9-CEC25EC376AA}] => (Allow) LPort=33011 FirewallRules: [{BB317FBE-2F8F-441C-B1F3-8863B62B5729}] => (Allow) LPort=43012 FirewallRules: [{B97A5ED4-AEAC-478A-B687-EDF6134979BF}] => (Allow) LPort=43013 FirewallRules: [{04351446-F0A5-4880-BA36-5B9B5999B63C}] => (Allow) LPort=53014 FirewallRules: [{D47C3149-81CB-4817-900A-EE56E480DF99}] => (Allow) LPort=53015 FirewallRules: [{E8E43D11-3BE9-46B8-9235-4AD0E85A6AA6}] => (Allow) LPort=53016 FirewallRules: [{C03D0311-8CBC-495F-96D5-6BBE32A2788B}] => (Allow) LPort=50053 FirewallRules: [{956DC9FB-5EC0-4075-A575-170D21178B5A}] => (Allow) LPort=50053 FirewallRules: [{FDCC137D-6DF7-45A5-8AB3-927C040A6748}] => (Allow) LPort=57209 FirewallRules: [{AF55C351-952E-4E0C-A3F2-2790086C08B0}] => (Allow) LPort=57210 FirewallRules: [{1C236014-375D-49AA-BD20-3977598EE665}] => (Allow) LPort=57211 FirewallRules: [{1D765979-E650-460F-9906-9E7017321518}] => (Allow) LPort=57212 FirewallRules: [{B95E9922-6F02-478C-A4C8-1B1B5B889733}] => (Allow) LPort=57213 FirewallRules: [{B1BFF8C9-0728-419C-AECA-CD01165F954A}] => (Allow) LPort=57214 FirewallRules: [{1670ED6F-35AE-4387-A766-8CA6A0C000D1}] => (Allow) LPort=57215 FirewallRules: [{A4D3AF0A-8330-40AA-8AA0-3B47F2B13DAE}] => (Allow) LPort=57216 FirewallRules: [{31B6A3BC-5088-4860-9A59-A11E0E9A1425}] => (Allow) LPort=57217 FirewallRules: [{D43EAE32-81B8-4C9B-A16D-8107E7EDE1F8}] => (Allow) LPort=57218 FirewallRules: [{57251B7B-7C3C-47AB-B47A-A560E4E1B314}] => (Allow) LPort=57209 FirewallRules: [{6400CD2A-A097-4E5F-858C-168D9F079DE5}] => (Allow) LPort=57210 FirewallRules: [{1A7D63E4-013A-457C-B402-3443D013F1DA}] => (Allow) LPort=57211 FirewallRules: [{CD868FD1-BF7F-42CB-8C75-5A4C03E28947}] => (Allow) LPort=57212 FirewallRules: [{F4D67176-34E5-4C7A-A7B3-7ACB5A3B5EE8}] => (Allow) LPort=57213 FirewallRules: [{36ED53E7-7C71-4E47-AB12-99794363D9F0}] => (Allow) LPort=57214 FirewallRules: [{23627EA2-96D4-4764-95A8-58FF6AABC3B9}] => (Allow) LPort=57215 FirewallRules: [{5E077698-D569-4CEE-B7A5-C1E8E313FDB9}] => (Allow) LPort=57216 FirewallRules: [{CCDBFECC-2DD5-4391-B721-EE6F82DA9F4A}] => (Allow) LPort=57217 FirewallRules: [{4A7FF55C-6F16-40EC-A92A-A30CE76C3175}] => (Allow) LPort=57218 FirewallRules: [{9B2C65C5-30B3-4E9C-95AE-5FFEA075C02A}] => (Allow) LPort=23007 FirewallRules: [{2695F500-42B5-493B-AF01-9B9658BCF7D1}] => (Allow) LPort=23008 FirewallRules: [{87CF7615-8816-4627-8286-E08DFFDBDE82}] => (Allow) LPort=33009 FirewallRules: [{16D25D08-1FB5-432C-BDB2-9DDAD1677626}] => (Allow) LPort=33010 FirewallRules: [{3325A885-1613-4C77-819C-CFF119556508}] => (Allow) LPort=33011 FirewallRules: [{DD393765-9EA6-4290-8357-C7F55433952A}] => (Allow) LPort=43012 FirewallRules: [{D4386518-F269-4E61-9999-76D9EF77DB9B}] => (Allow) LPort=43013 FirewallRules: [{F2291179-6F0E-496E-889E-D1875A4696E0}] => (Allow) LPort=53014 FirewallRules: [{ADB45345-2D92-412F-AFBD-5F898A4E2C81}] => (Allow) LPort=53015 FirewallRules: [{D6C695D9-A8D8-4506-B960-182B8009376E}] => (Allow) LPort=53016 FirewallRules: [{EDA99578-7C5B-4BE0-83F0-6A610F0CFCE6}] => (Allow) LPort=23007 FirewallRules: [{110B5146-A17E-4FB8-8D25-EB8E74198222}] => (Allow) LPort=23008 FirewallRules: [{61064937-93FB-453F-8EF6-8EAF75451B22}] => (Allow) LPort=33009 FirewallRules: [{3E9870CC-B027-4431-87AC-505873D66AA4}] => (Allow) LPort=33010 FirewallRules: [{1AF8FFE7-0C36-4D42-B6CC-10A6C948334D}] => (Allow) LPort=33011 FirewallRules: [{082CB247-D8C8-4DCE-925E-3BA918BD7FF7}] => (Allow) LPort=43012 FirewallRules: [{EE763378-14AD-49E5-A3B4-E25CA721084C}] => (Allow) LPort=43013 FirewallRules: [{ED61DF8A-9100-4F17-ABB6-CA4D32F793A9}] => (Allow) LPort=53014 FirewallRules: [{0B94440F-9F64-4533-A492-86E61DA2E7A5}] => (Allow) LPort=53015 FirewallRules: [{E3AF4700-0C10-449B-9A56-7E317D8DF596}] => (Allow) LPort=53016 FirewallRules: [{0F9F4504-9961-43E4-8D85-053199D8B13E}] => (Allow) LPort=50053 FirewallRules: [{1137C851-7F04-4A9A-B869-E95E4425544B}] => (Allow) LPort=50053 FirewallRules: [TCP Query User{6EB92767-5C4E-4C5A-A8F4-32A0CA35F01A}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [UDP Query User{F7140DFD-F8E3-4550-A224-FBBCC3CBE59E}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Block) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [TCP Query User{780A1945-1273-4767-8B6B-7C6810193638}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [UDP Query User{A0CF5CDF-156D-4513-874D-572D8FB1B486}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) FirewallRules: [{079FB7FC-BFC2-4EFA-95B4-9F103F3B5529}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe (Canon Inc. -> CANON INC.) FirewallRules: [{6EEEC276-C378-443D-BB4E-91C329B3E9DB}] => (Allow) C:\Program Files (x86)\Canon\EOS Utility\EOSUPNPSV.exe (Canon Inc. -> CANON INC.) FirewallRules: [TCP Query User{9B259864-B303-4619-A157-1A0A2516BACA}C:\users\33769\appdata\local\programs\opera\89.0.4447.56_0\opera.exe] => (Block) C:\users\33769\appdata\local\programs\opera\89.0.4447.56_0\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{89E5656D-1F21-4D18-BCC6-FA4546DB150B}C:\users\33769\appdata\local\programs\opera\89.0.4447.56_0\opera.exe] => (Block) C:\users\33769\appdata\local\programs\opera\89.0.4447.56_0\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{AAD4E139-A011-49CB-A4FC-A68DD594F979}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{354D48E2-B0D5-447C-8BB3-D68319DBC433}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{8B616535-34AE-4B78-9488-B301A5F48686}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{08CA6D88-5EEA-456D-B31B-65C5A524A74B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.87.3406.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{BBB02576-126A-42E3-81DF-CBD5FF7D2F6F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{E56E6BC5-C475-4917-8FD5-6DC65FF3FB8E}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\104.0.1293.70\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Points de restauration ========================= 16-08-2022 10:44:31 Point de contrôle planifié 25-08-2022 08:52:15 Point de contrôle planifié 31-08-2022 16:17:40 Removed DriversCloud.com (64 bits) 31-08-2022 16:43:07 Removed DriversCloud.com (64 bits) ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (09/02/2022 01:29:41 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme Kamo.exe version 4.3.0.0 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de processus : 23ec Heure de début : 01d8bebc7dca4040 Heure d'arrêt : 35 Chemin d'accès à l'application : C:\Program Files (x86)\Kamo\Kamo.exe ID de rapport : d344b5d0-05b2-485e-ab14-803915b0759d Nom complet du package défectueux : ID de l'application relative à un package défectueux : Type de blocage : Unknown Error: (09/02/2022 01:22:26 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Error: (09/02/2022 01:22:19 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Error: (09/02/2022 01:21:25 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Error: (09/02/2022 01:08:30 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\LAPTOP-3MQ52Q3C$ via https://AMD-KeyId-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net/templates/Aik/scep : GetCACaps GetCACaps: Not Found {"Message":"The authority \"amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoftaik.azure.net\" does not exist."} HTTP/1.1 404 Not Found Date: Fri, 02 Sep 2022 11:08:32 GMT Content-Length: 121 Content-Type: application/json; charset=utf-8 X-Content-Type-Options: nosniff Strict-Transport-Security: max-age=31536000;includeSubDomains x-ms-request-id: a65de09c-622d-49b7-b925-6aff8d326688 Méthode : GET(1594ms) Étape : GetCACaps Non trouvé (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND) Error: (09/02/2022 11:24:11 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Error: (09/02/2022 11:24:10 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Error: (09/02/2022 11:24:02 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : CefSharp.BrowserSubprocess.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.AccessViolationException à .CefExecuteProcess(CefMainArgs*, scoped_refptr*, Void*) à CefSharp.BrowserSubprocess.SubProcess.ExecuteProcess(System.Collections.Generic.IEnumerable`1) à CefSharp.BrowserSubprocess.BrowserSubprocessExecutable.Main(System.Collections.Generic.IEnumerable`1, CefSharp.RenderProcess.IRenderProcessHandler) à CefSharp.BrowserSubprocess.Program.Main(System.String[]) Erreurs système: ============= Error: (09/02/2022 01:14:12 PM) (Source: Schannel) (EventID: 4103) (User: AUTORITE NT) Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification client pour TLS. État d'erreur interne : 10013. Error: (09/02/2022 01:07:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service ElevationService n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (09/02/2022 01:07:17 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service DFWSIDService n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (09/02/2022 01:07:08 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 12:46:22 le ‎02/‎09/‎2022 n’était pas prévu. Error: (09/02/2022 11:21:10 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Le service Service Broker du moniteur d'exécution System Guard est en attente de démarrage. Error: (09/02/2022 11:16:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service ElevationService n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (09/02/2022 11:16:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service DFWSIDService n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (09/02/2022 11:16:19 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 10:34:21 le ‎02/‎09/‎2022 n’était pas prévu. Windows Defender: ================ Date: 2022-09-02 11:33:32 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {06219F73-28EE-42BC-9E3E-68A0E67DBD7E} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2022-08-30 13:18:44 Description: Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:Win32/AutoKMS&threatid=2147685180&enterprise=0 Nom : HackTool:Win32/AutoKMS ID : 2147685180 Gravité : Élevée Catégorie : Outil Chemin : file:_C:\Program Files (x86)\WINDOWS 10 TOOLKIT\Microsoft_Toolkit_Pro_TutoGenial.Com.exe Origine de la détection : Ordinateur local Type de détection : Concret Source de détection : Protection en temps réel Utilisateur : LAPTOP-3MQ52Q3C\33769 Nom du processus : C:\Users\33769\OneDrive\Bureau\ZHPSuite (1).exe Version de la veille de sécurité : AV: 1.373.1190.0, AS: 1.373.1190.0, NIS: 1.373.1190.0 Version du moteur : AM: 1.1.19500.2, NIS: 1.1.19500.2 Date: 2022-08-26 16:23:35 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {A14EDA93-431F-4D6B-AF34-75A0BEB001F3} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2022-08-25 10:38:50 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {DC5E0BB7-6376-496E-BDCA-DD5DA164553A} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2022-08-25 10:30:15 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {1AD7C77E-456F-48EA-8178-79B2535C4E11} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Event[0]: Date: 2022-09-01 22:38:51 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.373.1292.0 Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\SERVICE RÉSEAU Version actuelle du moteur : Version précédente du moteur : 1.1.19500.2 Code d’erreur : 0x80070102 Description de l’erreur : Dépassement du délai d’attente. CodeIntegrity: =============== Date: 2022-09-02 11:33:17 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== BIOS: AMI F.42 07/03/2019 Carte mère: HP 84D0 Processeur: AMD A4-9125 RADEON R3, 4 COMPUTE CORES 2C+2G Pourcentage de mémoire utilisée: 57% Mémoire physique - RAM - totale: 7641.94 MB Mémoire physique - RAM - disponible: 3247.85 MB Mémoire virtuelle totale: 10573.94 MB Mémoire virtuelle disponible: 5095.74 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:930.68 GB) (Free:658.53 GB) (Model: TOSHIBA MQ04ABF100) NTFS Drive f: (HOPPY LABEL) (Removable) (Total:7.46 GB) (Free:2.61 GB) FAT32 \\?\Volume{eb836ce8-33a0-41d8-9a20-8ed9b3c018f6}\ () (Fixed) (Total:0.56 GB) (Free:0.11 GB) NTFS \\?\Volume{a2c445c4-5fce-4f55-b78a-2f96483c7d02}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Size: 7.5 GB) (Disk ID: 73696420) No partition Table on disk 1. ==================== Fin de Addition.txt =======================