Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 14-09-2023 Exécuté par Adélaïde (15-09-2023 20:48:38) Exécuté depuis C:\Users\Adélaïde\Desktop Microsoft Windows 11 Famille Version 22H2 22621.2283 (X64) (2023-09-11 18:47:53) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-1182664788-3244000607-1293811409-500 - Administrator - Disabled) Adélaïde (S-1-5-21-1182664788-3244000607-1293811409-1003 - Administrator - Enabled) => C:\Users\Adélaïde DefaultAccount (S-1-5-21-1182664788-3244000607-1293811409-503 - Limited - Disabled) Invité (S-1-5-21-1182664788-3244000607-1293811409-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-1182664788-3244000607-1293811409-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee VirusScan (Enabled - Up to date) {FE987762-0FB6-6BB6-1BF1-73F8ED8566FA} FW: Pare-feu McAfee (Enabled) {C6A3F647-45D9-6AEE-30AE-DACD13562181} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Absolute Tactics: Daughters of Mercy (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/Absolute Tactics - Daughters of) (Version: - Akupara Games) Amazon Games (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\{4DD10B06-78A4-4E6F-AA39-25E9C38FA568}) (Version: 2.3.8425.2 - Amazon.com Services, Inc.) Crossed Swords (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/Crossed Swords) (Version: - SNK) CyberLink PowerRecover (HKLM\...\{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.11813 - CyberLink Corp.) Hidden CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.7.0.11813 - CyberLink Corp.) Driftland: The Magic Revival (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/Driftland - The Magic Revival) (Version: - Star Drifters) Foretales (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/Foretales) (Version: - Plug In Digital) Intel(R) Chipset Device Software (HKLM\...\{C6A1126A-6ED6-4231-BA48-4DA77986FA1C}) (Version: 10.1.18950.8298 - Intel Corporation) Hidden Intel(R) Chipset Device Software (HKLM-x32\...\{db747e10-c752-4e5a-b099-922800123b36}) (Version: 10.1.18950.8298 - Intel(R) Corporation) King of the Monsters 2 (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/King of the Monsters 2) (Version: - SNK) Kizuna Encounter: Super Tag Battle (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/Kizuna Encounter - Super Tag Battle) (Version: - SNK) Malwarebytes version 4.6.2.281 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.2.281 - Malwarebytes) McAfee® (HKLM-x32\...\MSC) (Version: 16.0 R52 - McAfee, LLC) Medion Control Center version 2.6.4 (HKLM-x32\...\{FD3C562B-3024-4FFA-A1ED-69150BA38337}_is1) (Version: 2.6.4 - Medion) Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.16731.20170 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 116.0.1938.81 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 116.0.1938.81 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\OneDriveSetup.exe) (Version: 23.180.0828.0001 - Microsoft Corporation) Microsoft OneNote - fr-fr (HKLM\...\OneNoteFreeRetail - fr-fr) (Version: 16.0.16731.20170 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{AF47B488-9780-4AB5-A97E-762E28013CA6}) (Version: 5.71.0.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation) Microsoft Visual C++ 2019 X64 Additional Runtime - 14.24.28127 (HKLM\...\{8678BA04-D161-45BE-ACA4-CC5D13073F35}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.24.28127 (HKLM\...\{7DC387B8-E6A2-480C-8EF9-A6E51AE81C19}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 (HKLM-x32\...\{EAC73207-74BD-4B13-AACF-8C0E751FA4E8}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 (HKLM-x32\...\{2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D}) (Version: 14.24.28127 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.16731.20052 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16731.20170 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.16731.20052 - Microsoft Corporation) Hidden SupportAPP (HKLM\...\{0000A0AB-3A12-1EF4-A21C-9ADE1843AB04}) (Version: 1.1 - ) The King of Fighters 2003 (HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\...\AmazonGames/The King of Fighters 2003) (Version: - SNK) UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden WebAdvisor par McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.834 - McAfee, LLC) Packages: ========= AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5185.0_x64__8j3eq9eme6ctt [2023-09-15] (INTEL CORP) [Startup Task] Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-09-11] (Microsoft Corporation) Internet-Security -> C:\Program Files\WindowsApps\MEDION.Internet-Security_1.1.38.0_x64__eqf9tz77ft5w8 [2023-09-15] (MEDION) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-09-15] (Microsoft Corp.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.10510.531.0_x64__8wekyb3d8bbwe [2023-09-15] (Microsoft Corporation) Microsoft.D3DMappingLayers -> C:\Program Files\WindowsApps\Microsoft.D3DMappingLayers_1.2302.1.0_x64__8wekyb3d8bbwe [2023-09-11] (Microsoft Corporation) Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2023-09-14] (Microsoft Corporation) Nahimic -> C:\Program Files\WindowsApps\A-Volute.Nahimic_1.9.20.0_x64__w2gh52qy24etm [2023-09-12] (A-Volute) SenarySmartAudio -> C:\Program Files\WindowsApps\SenaryTechnologyLimited.SenarySmartAudio_2.3.0.0_x64__dqz7eftfn33jw [2023-09-11] (Senary Technology Limited) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.17.8180.0_x64__8wekyb3d8bbwe [2023-09-11] (Microsoft Studios) [MS Ad] Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0 [2023-09-11] (Spotify AB) [Startup Task] Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2023-09-14] (Microsoft Corporation) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-1182664788-3244000607-1293811409-1003_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\Adélaïde\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute) ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2023-04-24] (McAfee, LLC -> McAfee, LLC) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-09-11] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-09-11] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => C:\Program Files\McAfee\MSC\McCtxMenuFrmWrk.dll [2023-04-24] (McAfee, LLC -> McAfee, LLC) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2022-08-12 22:14 - 2022-07-13 12:07 - 000216064 _____ () [Fichier non signé] C:\Program Files (x86)\MedionOSD\getMcuFnKey.dll 2022-08-12 22:14 - 2021-10-31 20:47 - 000072704 _____ () [Fichier non signé] C:\Program Files (x86)\MedionOSD\rwport.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\Adélaïde\Desktop\FRST64.exe:MBAM.Zone.Identifier [240] AlternateDataStreams: C:\Users\Adélaïde\Downloads\AmazonGamesSetup.exe:MBAM.Zone.Identifier [89] ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-09-12] (Microsoft Corporation -> Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll [2023-04-24] (McAfee, LLC -> McAfee, LLC) Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2023-04-24] (McAfee, LLC -> McAfee, LLC) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2021-06-05 14:08 - 2021-06-05 14:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-1182664788-3244000607-1293811409-1003\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\OEM\Wallpaper.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{9C08DF5E-7DE6-48D0-9831-CAD8C42BCF4C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CF67AF67-6151-4DDF-9A1E-4F6B4FBB54E3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F6685E90-25B5-4B97-A013-50B94F2E3845}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{04E6E354-F742-41FA-A057-C5777A5E0656}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{BA308DC5-9A38-4288-8987-1350102AE0AC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{1851CA18-E6CD-4B79-9AC9-2B80981E6B99}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{726B8255-F68B-48D2-A59E-863A1311469A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6A43110F-2167-49B6-A5EA-77B4ED4852E3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{4C0651F4-7A70-4ACE-9D86-B8993C1A577F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{FC0F7E4D-D90F-438D-B3AB-BD3A471D5D3E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{66FCCF3B-B85D-4535-A1C8-0FC294459CA2}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC -> McAfee, LLC) FirewallRules: [{3B6F4953-C53E-4F4F-9F35-CFC63C281027}] => (Allow) C:\Program Files (x86)\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, LLC -> McAfee, LLC) FirewallRules: [{3097984C-4CE7-4005-BEFA-200E467EB226}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6ADFBCBB-2B48-4A98-AE81-7A61167E3F3C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{FFF76091-2038-48A4-B301-5AF5B8F4826B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{0368415C-8E71-41AB-840D-8966B625B3FE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{014272D6-C565-47A9-A44B-FEEDD797078B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5FBF3612-D89D-416E-97CC-5CD95347573C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{8677C9FD-52E2-4B94-ABDB-1E5BABED638E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{55A5F2E0-DBAA-4FEA-A6A2-2FDF84BBBF0D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{0C008980-B60D-49E8-9F21-B4CA7C351A5B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{4B8F6AD7-A4D9-4C95-AAFE-7EFFE7FD0AA1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.219.941.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{6A991D38-6FBE-4E33-A73C-B4FDBDC58AD9}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{C597A497-EE12-4DCD-B166-2933B878C869}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{124D1498-CFBA-45A4-A93D-CE8A8594B568}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{152F5126-782F-4B49-9C8A-829BF5E39DF4}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\116.0.1938.81\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Points de restauration ========================= 11-09-2023 21:04:01 Windows Update 14-09-2023 15:38:39 UE4 Prerequisites (x64) ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (09/15/2023 03:02:52 PM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: Amazon Games Services.exe Path: C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.exe Message: Cannot use file stream for [C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.deps.json]: No such file or directory Error: (09/15/2023 11:45:42 AM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: Amazon Games Services.exe Path: C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.exe Message: Cannot use file stream for [C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.deps.json]: No such file or directory Error: (09/15/2023 11:09:04 AM) (Source: Application Error) (EventID: 1000) (User: Vodka-Redbull) Description: Nom de l’application défaillante msteamsupdate.exe, version : 23231.411.2342.9597, horodatage : 0x64ed3548 Nom du module défaillant : ucrtbase.dll, version : 10.0.22621.608, horodatage : 0xf5fc15a3 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000000000007f61e ID du processus défaillant : 0x0xfd8 Heure de début de l’application défaillante : 0x0x1d9e7b445379397 Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteamsupdate.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\ucrtbase.dll ID de rapport : efae6638-95dc-4d21-8612-4b944fbdba77 Nom complet du package défaillant : MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : msteamsupdate Error: (09/14/2023 05:59:06 PM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: Amazon Games Services.exe Path: C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.exe Message: Cannot use file stream for [C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.deps.json]: No such file or directory Error: (09/14/2023 05:59:05 PM) (Source: .NET Runtime) (EventID: 1023) (User: ) Description: Description: A .NET application failed. Application: Amazon Games Services.exe Path: C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.exe Message: Cannot use file stream for [C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games Services\Amazon Games Services.deps.json]: No such file or directory Error: (09/14/2023 04:01:56 PM) (Source: Application Error) (EventID: 1000) (User: Vodka-Redbull) Description: Nom de l’application défaillante Amazon Games.exe, version : 2.3.8425.2, horodatage : 0x6350bc15 Nom du module défaillant : Amazon Games.exe, version : 2.3.8425.2, horodatage : 0x6350bc15 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000cad69 ID du processus défaillant : 0x0x58b0 Heure de début de l’application défaillante : 0x0x1d9e713b091a3f0 Chemin d’accès de l’application défaillante : C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games.exe Chemin d’accès du module défaillant: C:\Users\Adélaïde\AppData\Local\Amazon Games\App\Amazon Games.exe ID de rapport : f600b3bf-2661-498f-a6bd-d0a7d35b1d31 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (09/14/2023 10:12:03 AM) (Source: Application Error) (EventID: 1000) (User: Vodka-Redbull) Description: Nom de l’application défaillante msteamsupdate.exe, version : 23231.411.2342.9597, horodatage : 0x64ed3548 Nom du module défaillant : ucrtbase.dll, version : 10.0.22621.608, horodatage : 0xf5fc15a3 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000000000007f61e ID du processus défaillant : 0x0x4970 Heure de début de l’application défaillante : 0x0x1d9e6e324a599a8 Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteamsupdate.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\ucrtbase.dll ID de rapport : 315177f0-c3f4-4a62-8caf-de6e354e7e70 Nom complet du package défaillant : MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : msteamsupdate Error: (09/13/2023 08:20:05 PM) (Source: Application Error) (EventID: 1000) (User: Vodka-Redbull) Description: Nom de l’application défaillante msteamsupdate.exe, version : 23231.411.2342.9597, horodatage : 0x64ed3548 Nom du module défaillant : ucrtbase.dll, version : 10.0.22621.608, horodatage : 0xf5fc15a3 Code d’exception : 0xc0000409 Décalage d’erreur : 0x000000000007f61e ID du processus défaillant : 0x0x6930 Heure de début de l’application défaillante : 0x0x1d9e66eeb588292 Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteamsupdate.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\ucrtbase.dll ID de rapport : 72bce663-d9c6-4ffa-9bc7-213d8a9bbc7b Nom complet du package défaillant : MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : msteamsupdate Erreurs système: ============= Error: (09/15/2023 08:23:21 PM) (Source: Netwtw10) (EventID: 5005) (User: ) Description: Intel(R) Wi-Fi 6 AX201 160MHz : a rencontré une erreur interne et a échoué. 5005 - Driver internal error Error: (09/15/2023 08:23:21 PM) (Source: Netwtw10) (EventID: 5002) (User: ) Description: Intel(R) Wi-Fi 6 AX201 160MHz : a déterminé que la carte réseau ne fonctionne pas correctement. 5002 - uCode SW error (SysAssert, NMI) Error: (09/15/2023 08:10:35 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service cphs n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (09/15/2023 08:10:34 PM) (Source: Microsoft-Windows-WER-SystemErrorReporting) (EventID: 1001) (User: AUTORITE NT) Description: 0x0000009f (0x0000000000000003, 0xffffd282cada3dd0, 0xffffa90c16d67758, 0xffffd282da215aa0)C:\WINDOWS\Minidump\091523-13312-01.dmp5bd74916-66c3-41b2-949b-55e876fc06ad Error: (09/15/2023 08:10:34 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 19:40:54 le ‎15/‎09/‎2023 n’était pas prévu. Error: (09/15/2023 07:17:25 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80073d02 : 9NMPJ99VJBWV-Microsoft.YourPhone. Error: (09/15/2023 07:03:54 PM) (Source: DCOM) (EventID: 10010) (User: Vodka-Redbull) Description: Le serveur {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (09/15/2023 07:00:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service cphs n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. CodeIntegrity: =============== Date: 2023-09-15 20:40:21 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements. Date: 2023-09-15 20:26:37 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Infos Mémoire =========================== BIOS: MEDION M1IB005 08/05/2022 Carte mère: MEDION N68630 Processeur: 12th Gen Intel(R) Core(TM) i7-12700H Pourcentage de mémoire utilisée: 44% Mémoire physique - RAM - totale: 16108.49 MB Mémoire physique - RAM - disponible: 8952.83 MB Mémoire virtuelle totale: 19052.49 MB Mémoire virtuelle disponible: 10509.3 MB ==================== Lecteurs ================================ Drive c: (Boot) (Fixed) (Total:921.78 GB) (Free:832.46 GB) (Model: E18-1TB-PHISON-SSD-B47R) NTFS Drive d: (Recover) (Fixed) (Total:30 GB) (Free:7.12 GB) (Model: E18-1TB-PHISON-SSD-B47R) NTFS \\?\Volume{e5cb84cd-ec4d-4302-8c31-fbf16ab0748f}\ (Recovery) (Fixed) (Total:0.98 GB) (Free:0.28 GB) NTFS \\?\Volume{23faa6ee-509d-4e5c-9bc7-f0a348882647}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 953.9 GB) (Disk ID: AE547647) Partition: GPT. ==================== Fin de Addition.txt =======================