Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 25.01.2024 Exécuté par jean subra (26-01-2024 22:13:51) Exécuté depuis C:\Users\jean subra\Downloads Microsoft Windows 10 Famille Version 21H1 19043.2006 (X64) (2022-01-20 15:26:05) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-847084979-187447845-3037764540-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-847084979-187447845-3037764540-503 - Limited - Disabled) Invité (S-1-5-21-847084979-187447845-3037764540-501 - Limited - Disabled) jean subra (S-1-5-21-847084979-187447845-3037764540-1001 - Administrator - Enabled) => C:\Users\jean subra WDAGUtilityAccount (S-1-5-21-847084979-187447845-3037764540-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF} FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 4K Video Downloader (HKLM\...\{AC1A4B11-192E-45F2-A205-D3BF4CC8D938}) (Version: 4.26.0.5500 - Open Media LLC) 7-Zip 22.01 (HKLM-x32\...\7-Zip) (Version: 22.01 - Igor Pavlov) abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.03.2003 - Acer Incorporated) abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated) Acer Configuration Manager (HKLM-x32\...\{8CB1A03C-9849-4744-AD56-341A18F9E3E2}) (Version: 2.5.22250 - Acer) Acer Jumpstart (HKLM-x32\...\{0C5ED25A-B8D1-4E71-BFCB-6B370A4EA19C}) (Version: 3.5.22220.20 - Acer) Acer Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2004 - Acer Incorporated) Acer Quick Access (HKLM\...\{8BBF04F1-C68A-441C-B5EF-446EE9960EAF}) (Version: 2.01.3003 - Acer Incorporated) Acer UEIP Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 3.01.3001 - Acer Incorporated) AMD Catalyst Install Manager (HKLM\...\{E55C7871-5F3D-6BC2-1ACD-8F82D9DD0F2F}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AOP Framework (HKLM-x32\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated) App Explorer (HKU\S-1-5-21-847084979-187447845-3037764540-1001\...\Host App Service) (Version: 0.273.4.677 - SweetLabs) <==== ATTENTION Apple Application Support (32 bits) (HKLM-x32\...\{6CF0CAEE-54B6-4D84-A055-3AF110F189D3}) (Version: 8.4 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{8B127943-89E7-4691-A7A4-D05807920A84}) (Version: 8.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{0A394C41-FBA7-4930-85FC-3A973B34E6C6}) (Version: 13.5.0.26 - Apple Inc.) Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.) Avast Antivirus Gratuit (HKLM\...\Avast Antivirus) (Version: 23.12.6094 - Avast Software) Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1206.2 - AVAST Software) Hidden Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 27.0.1.266 - Bitdefender) Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 25.5.6.3 - Bitdefender) Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.) Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3029 - Acer Incorporated) Catalyst Control Center - Branding (HKLM-x32\...\{BA1D24C3-E4B6-02B2-89AA-56986278B93E}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Contrôle d’intégrité du PC Windows (HKLM\...\{0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2}) (Version: 3.2.2110.14001 - Microsoft Corporation) Contrôle d’intégrité du PC Windows (HKLM\...\{DB3AADA3-0996-4427-87CC-8BA140012410}) (Version: 3.7.2204.15001 - Microsoft Corporation) CyberLink PowerDVD 12 (HKLM-x32\...\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5917.02 - CyberLink Corp.) Hidden CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.5917.02 - CyberLink Corp.) Dashlane Upgrade Service (HKLM-x32\...\Dashlane Upgrade Service) (Version: 2.0.14.0 - Dashlane SAS) ELAN HIDI2C Filter Driver X64 13.6.3.1_WHQL (HKLM\...\Elantech) (Version: 13.6.3.1 - ELAN Microelectronic Corp.) ENE KB9X I2C Controller Driver (HKLM\...\0C78F1298C9A10E6EE6050EC07C69913C7E56B2C) (Version: 05/13/2015 1.0.1.0 - ENE) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.225 - Google LLC) HP Dropbox Plugin (HKLM-x32\...\{C722A9DD-471B-4F25-9E7E-7DD112D1BC35}) (Version: 36.0.102.68541 - HP) HP EmailSMTP Plugin (HKLM-x32\...\{C3739212-3C21-4138-9607-C31F9EA8A514}) (Version: 43.0.0.0 - HP) HP ENVY 5000 series Aide (HKLM-x32\...\{CF5BB2C7-4597-44E7-9774-57AD4355031D}) (Version: 44.0.0 - HP) HP FTP Plugin (HKLM-x32\...\{FC93D1CC-102B-4B59-92DA-30E0DE232FF6}) (Version: 43.0.0.0 - HP) HP Google Drive Plugin (HKLM-x32\...\{06505D9F-A3AD-4DC0-8119-8836BAD1938E}) (Version: 36.0.102.68541 - HP) HP OneDrive Plugin (HKLM-x32\...\{6ECCAD1A-2BD7-489C-8D43-68B69A2AA879}) (Version: 36.0.0.0 - HP) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) HP SharePoint Plugin (HKLM-x32\...\{0758DCDE-50A2-4D6D-B025-FBB2BF342743}) (Version: 43.0.0.0 - HP) iCloud (HKLM\...\{8808B208-87D1-4725-8192-76D257E9DEAE}) (Version: 7.21.0.23 - Apple Inc.) iTunes (HKLM\...\{6C7B2898-2AAA-42BF-9CD8-6AA1E2D97E0B}) (Version: 12.10.10.2 - Apple Inc.) Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky) Kaspersky VPN (HKLM-x32\...\{83302B7A-F14F-3CB5-9CB3-7D16F979CE94}) (Version: 21.9.6.465 - Kaspersky) Hidden Kaspersky VPN (HKLM-x32\...\InstallWIX_{83302B7A-F14F-3CB5-9CB3-7D16F979CE94}) (Version: 21.9.6.465 - Kaspersky) Lifesize (HKU\S-1-5-21-847084979-187447845-3037764540-1001\...\lifesize_app) (Version: 2.216.2840 - Lifesize) Logiciel de base du périphérique HP ENVY 5000 series (HKLM\...\{E970997F-B4F9-4CC4-856A-28605CE70186}) (Version: 44.4.2678.1977 - HP Inc.) Microsoft .NET Host - 5.0.10 (x86) (HKLM-x32\...\{EEC610D2-6934-4567-A658-092A1429A21A}) (Version: 40.40.30412 - Microsoft Corporation) Hidden Microsoft .NET Host - 6.0.10 (x86) (HKLM-x32\...\{3B28977C-9163-48A5-A08C-C01327E18AE2}) (Version: 48.43.48869 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 5.0.10 (x86) (HKLM-x32\...\{29F55E7D-9FB8-4F1D-A233-1F5995CB0FF5}) (Version: 40.40.30412 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 6.0.10 (x86) (HKLM-x32\...\{EBD44C5E-F1AF-4955-AEDF-F15D06384A9C}) (Version: 48.43.48869 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 5.0.10 (x86) (HKLM-x32\...\{17675144-2D5B-4BA3-AF21-A65F7D824149}) (Version: 40.40.30412 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 6.0.10 (x86) (HKLM-x32\...\{98CA5A6B-4ECC-4E6D-BF18-6B20CBB6E5F4}) (Version: 48.43.48869 - Microsoft Corporation) Hidden Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.17126.20132 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 120.0.2210.144 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 120.0.2210.144 - Microsoft Corporation) Microsoft Office Professionnel Plus 2016 - fr-fr (HKLM\...\ProPlusRetail - fr-fr) (Version: 16.0.17126.20132 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-847084979-187447845-3037764540-1001\...\OneDriveSetup.exe) (Version: 23.246.1127.0002 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026 (HKLM-x32\...\{BE960C1C-7BAD-3DE6-8B1A-2616FE532845}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026 (HKLM-x32\...\{A2563E55-3BEC-3828-8D67-E5E8B9E8B675}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 5.0.10 (x86) (HKLM-x32\...\{ba8ab6bd-ad21-447e-b617-feee84353247}) (Version: 5.0.10.30418 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 5.0.10 (x86) (HKLM-x32\...\{DCE5198A-7449-4F9F-A630-C8363759D0FB}) (Version: 40.40.30418 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{0F3E4057-E2BB-4114-A646-F143DB5CE4C9}) (Version: 48.43.48870 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{9dd24b73-88e0-4f0f-882a-500e00d2bdef}) (Version: 6.0.10.31726 - Microsoft Corporation) Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 122.0 (x64 fr)) (Version: 122.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.1 - Mozilla) OEM Application Profile (HKLM-x32\...\{60499BF0-C3D1-40CC-8600-8A7246534466}) (Version: 1.00.0000 - Nom de votre société) Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.17126.20132 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.17126.20132 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.17126.20132 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.17126.20132 - Microsoft Corporation) Hidden paint.net (HKLM\...\{67F0783F-E72F-4CD5-A91C-F9CD2E56C2E4}) (Version: 4.2.5 - dotPDN LLC) Qualcomm Atheros 11ac Wireless LAN&Bluetooth Installer (HKLM-x32\...\{3241744A-BA36-41F0-B4AA-EF3946D00632}) (Version: 11.0.0.10198 - Qualcomm Atheros) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21275 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.3.723.2015 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7719 - Realtek Semiconductor Corp.) Spotify Weblink (HKLM-x32\...\{8CADF0CB-E834-4019-9B11-B84E051F2A8E}) (Version: 1.16.1210 - Acer) Telegram Desktop (HKU\S-1-5-21-847084979-187447845-3037764540-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 4.9 - Telegram FZ-LLC) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.18 - VideoLAN) Zoom (HKU\S-1-5-21-847084979-187447845-3037764540-1001\...\ZoomUMX) (Version: 5.10.4 (5035) - Zoom Video Communications, Inc.) Packages: ========= Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.41.11.0_x64__kgqvnymyfvs32 [2024-01-20] (king.com) Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.256.300.0_x64__kgqvnymyfvs32 [2023-11-20] (king.com) Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_8.6.12.0_x86__h6adky7gbf63m [2023-11-28] (Gameloft SE) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_151.3.1092.0_x64__v10z8vjag6ke6 [2024-01-21] (HP Inc.) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2023-07-07] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2023-07-07] (Microsoft Corporation) [MS Ad] Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2020-01-16] (MAGIX) Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64__mcm4njqhnhss8 [2022-02-16] (Netflix, Inc.) Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-11-18] (Microsoft Studios) [MS Ad] Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2022-01-20] (Twitter Inc.) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2023-12-19] (Avast Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers-x32: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers-x32: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers-x32: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2016-09-09] (Acer Incorporated -> Acer Incorporated) ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2023-12-19] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2023-12-19] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2022-05-08] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers1: [PhotoStreamsExt] -> {89D984B3-813B-406A-8298-118AFA3A22AE} => C:\Program Files\Common Files\Apple\Internet Services\ShellStreams64.dll [2020-09-08] (Apple Inc. -> Apple Inc.) ContextMenuHandlers2: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2022-05-08] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2023-12-19] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers4: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2022-05-08] (AO Kaspersky Lab -> AO Kaspersky Lab) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-09-17] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2023-12-19] (Avast Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2022-05-08] (AO Kaspersky Lab -> AO Kaspersky Lab) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== HKU\S-1-5-21-847084979-187447845-3037764540-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer15.msn.com/?pc=ACTE HKU\S-1-5-21-847084979-187447845-3037764540-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE SearchScopes: HKU\S-1-5-21-847084979-187447845-3037764540-1001 -> DefaultScope {AEDAAFEB-86B0-4E01-AC52-685DA1B2D934} URL = SearchScopes: HKU\S-1-5-21-847084979-187447845-3037764540-1001 -> {AEDAAFEB-86B0-4E01-AC52-685DA1B2D934} URL = BHO: Amazon Assistant -> {0ddcea2a-7b00-4349-8acb-af7ba6da251f} -> C:\Program Files (x86)\Amazon\Amazon Assistant\aaMessenger.dll [2018-02-22] (Amazon Services LLC -> ) BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll => Pas de fichier BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Amazon Assistant -> {0ddcea2a-7b00-4349-8acb-af7ba6da251f} -> C:\Program Files (x86)\Amazon\Amazon Assistant\aaMessenger.dll [2018-02-22] (Amazon Services LLC -> ) BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll => Pas de fichier BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll Pas de fichier Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll Pas de fichier Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-01-09] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2015-10-30 08:24 - 2020-11-08 11:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts 2017-05-26 16:40 - 2017-05-26 16:40 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-847084979-187447845-3037764540-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jean subra\AppData\Roaming\Mozilla\Firefox\Fond d’écran.bmp DNS Servers: 80.67.169.12 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{E514571E-816F-4ABD-90A9-A4A008782A6F}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2437\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{09DE439D-44F8-4C59-A248-3A1932C393BC}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2437\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{5C6F7E46-EF73-4698-8592-5A1A9DA72FAE}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS7B6C\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{E1EC8129-D9FB-413F-BCED-6C053B04E158}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS7B6C\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [UDP Query User{5F7000AC-B6B0-4831-824F-0DC980A6102E}C:\users\jean subra\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\jean subra\appdata\local\microsoft\teams\current\teams.exe => Pas de fichier FirewallRules: [TCP Query User{3B2A9E51-A6A8-447A-90D5-E215BD556B2D}C:\users\jean subra\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\jean subra\appdata\local\microsoft\teams\current\teams.exe => Pas de fichier FirewallRules: [{7CA703DB-D2C4-48E4-A697-369189D01467}] => (Allow) C:\Users\jean subra\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{0321A2AB-37A2-4AAB-8D32-B5D4CE1D80D5}] => (Allow) C:\Users\jean subra\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{DD897F53-0BFD-4C2F-AC6E-D833D1365D05}] => (Allow) C:\Users\jean subra\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [UDP Query User{636A479F-E8C8-4919-A738-F37409832427}C:\users\jean subra\appdata\local\lifesize_app\app-2.216.2840\lifesize.exe] => (Allow) C:\users\jean subra\appdata\local\lifesize_app\app-2.216.2840\lifesize.exe (Lifesize, Inc -> Lifesize) FirewallRules: [TCP Query User{CA594DFD-2008-4228-83C8-3C5FD0EF9892}C:\users\jean subra\appdata\local\lifesize_app\app-2.216.2840\lifesize.exe] => (Allow) C:\users\jean subra\appdata\local\lifesize_app\app-2.216.2840\lifesize.exe (Lifesize, Inc -> Lifesize) FirewallRules: [UDP Query User{151581B6-C4FC-489A-B212-F1EE20BF292C}C:\programdata\jean subra\lifesize_app\app-2.216.2840\lifesize.exe] => (Allow) C:\programdata\jean subra\lifesize_app\app-2.216.2840\lifesize.exe (Lifesize, Inc -> Lifesize) FirewallRules: [TCP Query User{FC934023-BB7C-4F9A-94C4-FBDADFD95DDC}C:\programdata\jean subra\lifesize_app\app-2.216.2840\lifesize.exe] => (Allow) C:\programdata\jean subra\lifesize_app\app-2.216.2840\lifesize.exe (Lifesize, Inc -> Lifesize) FirewallRules: [{476F2CEE-1376-4AA1-9A0B-750F046F2ECD}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{BF177DB9-63F7-4631-8FF6-8BFC9E863EBE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{640C6F50-4AFF-462F-8F65-8C9F81296385}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{08D290AB-E9A1-4EF9-9CC3-3B5506758DD2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{D306158C-AA63-4E5F-B7AF-BA6DDD91DDEA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{0863D61D-CEA5-40B8-B7A2-322A252DB0F6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{3790774D-6EB9-4E60-8EAE-B324DFCBF0A2}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{875F320C-5F94-4750-A447-E6A54E75D226}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe => Pas de fichier FirewallRules: [{ACF093E0-F418-4F56-87D7-3A0719514CBD}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe => Pas de fichier FirewallRules: [{979FBA52-FCA9-4BA5-B772-E57546252846}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe => Pas de fichier FirewallRules: [{067B5638-35A1-4B9C-AEE7-4F9A791FAEE3}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.) FirewallRules: [{6032BBA3-5272-4047-92D1-009091E3995B}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{5A016586-8886-4B18-BB4E-67802637834E}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer) FirewallRules: [{B1598C2E-DF3E-46F5-B29E-ABBD23DC2567}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{59948178-E359-4618-8A68-4E637B4B89B3}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer) FirewallRules: [{FDC37BBE-8A5A-402D-92C7-CDD1962B3DFD}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe => Pas de fichier FirewallRules: [{AD1E1658-D1BB-454C-80C8-2CC5E7445E45}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe => Pas de fichier FirewallRules: [{64BD1B35-1750-49BC-9E2F-D28DFCD81032}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{1D3A9B7C-E51D-4943-87B6-124DA4F6A58C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{F79C44C9-672B-4E54-A2B4-1F8A3F43CA86}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [UDP Query User{61A0E67C-CBD5-4F4F-8659-B185C57EA17B}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{118E0C62-3481-409D-A74D-CE69BC688754}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{187C9C33-AB69-4471-9C23-B39675F33D4C}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS68FB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{19F34226-EE21-42DB-91FD-5F78707B8A66}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS68FB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{33232A3B-1490-40CA-983E-59CF88E5ED4E}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS14CB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{1781CB57-BDFE-4F91-801E-ACA452DE5DCF}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS14CB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{D344AA33-89F6-42C4-B8D9-E5C612490399}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2119\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{B8C779F5-DF33-4032-AEEF-8F5CFDE17FB0}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2119\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{BE28452A-AA40-4BAA-9774-6D7F600AF8E4}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS4D94\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{7088DA58-5EF7-41EF-B773-E81E052FBF60}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS4D94\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{8711C3A3-E67D-49A9-973B-4D571CF7D355}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS53B4\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{F4BA0782-7614-4D31-9FDD-9320B111CDDD}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS53B4\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{290E3BA3-50EC-400A-94A0-F441A9CFF8A4}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS5367\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{C8A478A1-C9CF-4A91-A9E0-FEF4BCBA3431}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS5367\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{90ACAA3C-66AA-4564-A5B1-211D3A852470}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS49BA\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{BD5B1DF1-A9EC-4039-B0C7-D5F2E76224B2}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS49BA\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{62C19615-6741-43C9-8295-4C9F9AC4593A}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2A03\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{6472809C-E35B-4885-88FD-D86D353BEF98}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2A03\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{55942F0F-FF53-43B2-9707-B4721A17A730}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS7689\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{556A714D-9D2E-4090-95A4-A87EDFD743F0}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS7689\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{0F7EAE7A-35D2-4D11-89A2-97E12C3B8789}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS38B2\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{8C96AF9D-652A-4B5C-BDD5-4B721F9AF2B9}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS38B2\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{C990A6C2-4DE3-47E7-9E55-A57F1AC183F8}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS183A\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{E83A5564-322A-4C80-A013-4198771634A9}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS183A\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{CD4D382F-4D77-4ADE-BDF3-436C61C40BD8}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS1329\7zS25DB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{1D0D3D86-BA23-4B71-A80C-F0D16419B47E}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS1329\7zS25DB\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{173CA8CB-7445-4B44-922B-B25B85448644}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS1C04\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{8DB70D7F-7BEA-4CB4-9CDF-5565221E469E}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS1C04\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{A5EEFA6B-2674-4556-8861-F546EB852814}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\DeviceSetup.exe (HP Inc -> HP Inc.) FirewallRules: [{065B8B8D-EB6B-43DC-BD57-1AD8065BD5D1}] => (Allow) LPort=5357 FirewallRules: [{CA14D03B-F25A-4DEE-8FD6-44898811E9B1}] => (Allow) C:\Program Files\HP\HP ENVY 5000 series\Bin\HPNetworkCommunicatorCom.exe (HP Inc -> HP Inc.) FirewallRules: [{D35574DF-41ED-4FAB-849E-7708FBE2784D}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS6030\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{CD793D52-9456-4F55-AEF4-C238EF7B52F9}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS6030\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{F3B15EB3-F95B-4271-AF2C-79785E1425FF}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS0DE1\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{9C6920D6-F2BD-42A2-A21F-13EC45521C09}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS0DE1\HPDiagnosticCoreUI.exe => Pas de fichier FirewallRules: [{0F007A41-5792-4189-927E-8FE42D804F84}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{E6B3EBC7-8FCE-4ED7-8B62-F47337120D3A}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{83435052-275F-426D-928A-BD954012FDBB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{FB8793E1-AA76-4DAC-89F3-53EE419B2404}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{14797913-81CC-4417-96B2-7C330F97CEE5}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2E797DA6-B544-4F7C-9B55-BE6C0CBFC213}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{ABC8671C-FF65-4F8F-A60A-720A2860CA26}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7C6863D1-68A7-4D52-8802-ADDEA78C8CC7}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software) FirewallRules: [{AE5E2B76-AF90-4B0E-9833-FDEF5CC252DC}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software) FirewallRules: [{E42BACDF-BEB0-4884-96A8-285FD7053E71}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2DD6\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{65FE59E6-CD28-4272-BCC2-E219E0C919B0}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2DD6\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{A165FAC5-9F14-4E22-86D3-771A0863B1D9}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS4710\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{95D3251C-F71B-4A2C-8F07-277F7885A186}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS4710\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{1FA1C8D9-81E0-46EF-B712-235C44256530}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS797E\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{DBA06DD0-3D26-44A6-8F1C-1AE2901085E2}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS797E\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{55CFABD4-6B2F-4870-8B44-1CD610D0F323}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS5014\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{C843AA21-9A3A-4070-8E61-9403DC02AC3D}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS5014\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{A864FE2F-DD2E-4644-8510-DD3A92422625}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS42B3\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{750AE0AF-7415-4757-9BEC-9E01488F7B92}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS42B3\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{E03785E4-857E-411E-9A19-ED5312B380D6}] => (Allow) C:\Users\jean subra\AppData\Local\Temp\7zS2D59\HP.EasyStart.exe (HP Inc. -> HP) FirewallRules: [{DF64206E-55B0-491D-A4D6-074FCA7FFCB8}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{B8168929-508D-4754-8661-BC8067BED1C1}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.) FirewallRules: [{6D6ECD92-F5B4-431A-9CCE-751996EBCF87}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{CF017450-E2EF-45FE-8236-0BA79342A75E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{A9A28A97-1848-4850-B013-FF75D3736CC2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{DD615E09-EC5A-4231-BF44-265B654928DA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{918877C8-D2A7-4DD0-B968-E36BA6CB8802}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.144\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{DED45E8D-18E3-4DEB-BE51-6EBDE94CD231}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Points de restauration ========================= 25-01-2024 19:22:40 Installed Windows PC Health Check 25-01-2024 19:59:29 Programme d’installation pour les modules Windows ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (01/26/2024 09:45:45 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme SearchApp.exe version 10.0.19041.1949 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de processus : 76c Heure de début : 01da5094ddf741e0 Heure d'arrêt : 4294967295 Chemin d'accès à l'application : C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe ID de rapport : e7a9cce0-14a2-413f-895f-6107da211fd7 Nom complet du package défectueux : Microsoft.Windows.Search_1.14.7.19041_neutral_neutral_cw5n1h2txyewy ID de l'application relative à un package défectueux : ShellFeedsUI Type de blocage : Quiesce Error: (01/26/2024 09:37:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante svchost.exe_FrameServer, version : 10.0.19041.1806, horodatage : 0x7dcad237 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.1949, horodatage : 0xcb12e58e Code d’exception : 0xc00d4e24 Décalage d’erreur : 0x000000000010fb62 ID du processus défaillant : 0x31bc Heure de début de l’application défaillante : 0x01da5097668cdb5f Chemin d’accès de l’application défaillante : C:\WINDOWS\System32\svchost.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 3e7830cf-bef4-437b-8508-6b1f3afa5841 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : NULL, PID : 11980, PID ProfSvc : 1424. Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : NULL, PID : 11980, PID ProfSvc : 1424. Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : C:\Windows\System32\lsass.exe, PID : 748, PID ProfSvc : 1424. Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : C:\Program Files\Avast Software\Avast\AvastSvc.exe, PID : 2640, PID ProfSvc : 1424. Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : NULL, PID : 11980, PID ProfSvc : 1424. Error: (01/26/2024 08:57:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: AUTORITE NT) Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : C:\Windows\System32\lsass.exe, PID : 748, PID ProfSvc : 1424. Erreurs système: ============= Error: (01/26/2024 09:40:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Serveur de trame de la Caméra Windows s’est terminé de façon inattendue pour la 1ème fois. Error: (01/26/2024 09:34:42 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {4991D34B-80A1-4291-83B6-3328366B9097} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/26/2024 08:30:58 PM) (Source: Schannel) (EventID: 4103) (User: AUTORITE NT) Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification client pour TLS. État d'erreur interne : 10013. Error: (01/26/2024 08:12:55 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {659CDEA7-489E-11D9-A9CD-000D56965251} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/26/2024 08:10:45 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {659CDEA7-489E-11D9-A9CD-000D56965251} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/26/2024 08:08:35 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {659CDEA7-489E-11D9-A9CD-000D56965251} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/26/2024 08:07:55 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (01/26/2024 08:06:25 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-MV10010C) Description: Le serveur {659CDEA7-489E-11D9-A9CD-000D56965251} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Windows Defender: ================ Date: 2022-05-08 19:17:10 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {87ABF515-81B6-4964-AC79-9033AFA953C3} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : LAPTOP-MV10010C\jean subra Event[0]: Date: 2022-05-08 18:53:57 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.327.21.0 Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\SERVICE RÉSEAU Version actuelle du moteur : Version précédente du moteur : 1.1.17600.5 Code d’erreur : 0x80070020 Description de l’erreur : Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. Date: 2022-05-08 18:53:57 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.327.21.0 Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants Type de veille de sécurité : Logiciel anti-espion Type de mise à jour : Complet Utilisateur : AUTORITE NT\SERVICE RÉSEAU Version actuelle du moteur : Version précédente du moteur : 1.1.17600.5 Code d’erreur : 0x80070020 Description de l’erreur : Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. Date: 2022-05-08 18:53:57 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.327.21.0 Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\SERVICE RÉSEAU Version actuelle du moteur : Version précédente du moteur : 1.1.17600.5 Code d’erreur : 0x80070020 Description de l’erreur : Le processus ne peut pas accéder au fichier car ce fichier est utilisé par un autre processus. Date: 2022-05-08 18:50:10 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.327.21.0 Source de mise à jour : Serveur Microsoft Update Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.17600.5 Code d’erreur : 0x80070102 Description de l’erreur : Dépassement du délai d’attente. Date: 2022-05-08 18:50:10 Description: Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité. Nouvelle version de la veille de sécurité : Version précédente de la veille de sécurité : 1.327.21.0 Source de mise à jour : Serveur Microsoft Update Type de veille de sécurité : Anti-virus Type de mise à jour : Complet Utilisateur : AUTORITE NT\Système Version actuelle du moteur : Version précédente du moteur : 1.1.17600.5 Code d’erreur : 0x80070102 Description de l’erreur : Dépassement du délai d’attente. CodeIntegrity: =============== Date: 2024-01-26 18:28:25 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. Date: 2024-01-26 18:28:25 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements. ==================== Infos Mémoire =========================== BIOS: Insyde Corp. V1.11 03/10/2016 Carte mère: Acer Aspire E5-722G Processeur: AMD A4-7210 APU with AMD Radeon R3 Graphics Pourcentage de mémoire utilisée: 90% Mémoire physique - RAM - totale: 3542.37 MB Mémoire physique - RAM - disponible: 353.28 MB Mémoire virtuelle totale: 8681.24 MB Mémoire virtuelle disponible: 1674.04 MB ==================== Lecteurs ================================ Drive c: (Acer) (Fixed) (Total:930.4 GB) (Free:799.24 GB) (Model: WDC WD10JPVX-22JC3T0) NTFS \\?\Volume{cdb81018-543f-4157-8ad9-3239354c1d8a}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.49 GB) NTFS \\?\Volume{24cca4f0-011d-44a8-8f22-1ad96dd2d7f6}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.05 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: A29FD012) Partition: GPT. ==================== Fin de Addition.txt =======================