Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 11.03.2024 Exécuté par benni (12-03-2024 00:18:54) Exécuté depuis C:\Users\benni\Downloads Microsoft Windows 11 Professionnel Version 23H2 22631.3155 (X64) (2023-10-04 14:42:12) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-606187956-4195221519-3182391363-500 - Administrator - Disabled) benni (S-1-5-21-606187956-4195221519-3182391363-1002 - Administrator - Enabled) => C:\Users\benni DefaultAccount (S-1-5-21-606187956-4195221519-3182391363-503 - Limited - Disabled) Invité (S-1-5-21-606187956-4195221519-3182391363-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-606187956-4195221519-3182391363-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Photoshop 2024 (HKLM-x32\...\PHSP_25_4) (Version: 25.4.0.319 - Adobe Inc.) Adobe Premiere Pro 2024 (HKLM-x32\...\PPRO_24_0_3) (Version: 24.0.3 - Adobe Inc.) AEJuice Pack Manager version 24.01.1107 (HKLM-x32\...\{A38A03B4-EC8B-4BBB-B6EE-5ED8D5893B64}_is1) (Version: 24.01.1107 - AEJuice LLC) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.15 - tippach engineering) Blackmagic RAW Common Components (HKLM\...\{62A102F5-FBA0-43BB-BFC2-657C07BC0901}) (Version: 3.4 - Blackmagic Design) Bobykit de survie YUZU version 1.104.120.3795 (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\Bobykit de survie YUZU_is1) (Version: 1.104.120.3795 - ) Boris FX Hub (HKLM\...\{C91F34DF-1EDC-4A9B-B931-99F312DD4B22}}_is1) (Version: 1.1.1 - Boris FX) Citra (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\{d380ef4f-2761-48cf-9614-a685751b6df1}) (Version: 1.0.0 - Citra Team) CPUID CPU-Z 2.09 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.09 - CPUID, Inc.) CurseForge 0.246.2-16769 (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\ca0e291c-abd4-5fc3-b6a0-3d4333eccbd7) (Version: 0.246.2-16769 - Overwolf) Discord (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\Discord) (Version: 1.0.9028 - Discord Inc.) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.128.0.5641 - Electronic Arts) Hidden EA app (HKLM-x32\...\{e3f2f8c4-e441-4118-a3e4-606dc8871bc0}) (Version: 13.128.0.5641 - Electronic Arts) Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.) Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design) FL Studio 21 (HKLM-x32\...\FL Studio 21) (Version: 21.2.3.4004 - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Gaomon Tablet v14.8.133.1259 (HKLM\...\{62047893-F186-48B8-83A5-1C74D8666D19}_is1) (Version: v14.8.133.1259 - ) Java 8 Update 401 (64-bit) (HKLM\...\{71024AE4-039E-4CA4-87B4-2F64180401F0}) (Version: 8.0.4010.10 - Oracle Corporation) Java(TM) SE Development Kit 21.0.1 (64-bit) (HKLM\...\{75B0E1AE-DC20-5AC0-A358-61B0256DADBE}) (Version: 21.0.1.0 - Oracle Corporation) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 122.0.2365.80 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 122.0.2365.80 - Microsoft Corporation) Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\OneDriveSetup.exe) (Version: 24.025.0204.0003 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation) NVIDIA GeForce Experience 3.27.0.120 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.120 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation) NVIDIA Pilote graphique 551.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 551.76 - NVIDIA Corporation) OBS Studio (HKLM-x32\...\OBS Studio) (Version: 30.0.2 - OBS Project) Opera GX Stable 107.0.5045.37 (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\Opera GX 107.0.5045.37) (Version: 107.0.5045.37 - Opera Software) osu! (HKLM-x32\...\{6372c91f-5896-4113-b16b-9afef2bc8e2d}) (Version: latest - ppy Pty Ltd) Package de pilotes Windows - Graphics Tablet (WinUsb) USBDevice (04/10/2014 8.33.30.0) (HKLM\...\142118DF51345EA02D2B1583E102C8FB95FD6D52) (Version: 04/10/2014 8.33.30.0 - Graphics Tablet) Redragon K636WGC-RGB (HKLM-x32\...\{E6A57D09-5661-4E64-8EE7-EE579E622D0F}_is1) (Version: 1.6.7 - Redragon) Spitfire Audio version 3.4.10 (HKLM-x32\...\{ABC5F486-25BD-4BAA-9FA1-A84152CBB563}_is1) (Version: 3.4.10 - Spitfire Audio Holdings Ltd) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) The Crew 2 (HKLM-x32\...\Uplay Install 2855) (Version: - Ubisoft) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 148.2.10984 - Ubisoft) UE Prerequisites (x64) (HKLM-x32\...\{aad8a4b2-74da-409d-abb6-79a299008692}) (Version: 1.0.16.0 - Epic Games, Inc.) Hidden UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.) Windows-PC-Integritätsprüfung (HKLM\...\{AD47C6B2-6C72-4F0E-B66F-7685C28ACDFD}) (Version: 3.3.2110.22002 - Microsoft Corporation) WinRAR 6.24 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH) Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare) Wondershare NativePush(Build 1.0.0.8) (HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\Wondershare NativePush_is1) (Version: - Wondershare Software) Packages: ========= Dev Home -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.1100.416.0_x64__8wekyb3d8bbwe [2024-02-29] (Microsoft Corporation) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-10-08] (Microsoft Corp.) Microsoft.MPEG2VideoExtension -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.61931.0_x64__8wekyb3d8bbwe [2023-10-12] (Microsoft Corporation) Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2024-01-14] (Microsoft Corporation) Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_1.7.2.0_x64__8wekyb3d8bbwe [2023-12-21] (Microsoft Studios) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2024-03-11] (NVIDIA Corp.) Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0 [2024-03-05] (Spotify AB) [Startup Task] TikTok -> C:\Program Files\WindowsApps\BytedancePte.Ltd.TikTok_1.0.5.0_neutral__6yccndn6064se [2024-03-10] (Bytedance Pte. Ltd.) Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2024-02-17] (Microsoft Corporation) WinRAR -> E:\Winrar [2023-11-22] (win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-606187956-4195221519-3182391363-1002_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\benni\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2024-02-13] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2024-02-13] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2024-02-13] (Adobe Inc. -> ) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2024-02-13] (Adobe Inc. -> ) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvrfi.inf_amd64_8232c68ae3bed12d\nvshext.dll [2024-03-02] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2024-02-13] (Adobe Inc. -> ) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\benni\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Tombstones\Snapchat.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=abdndmcckigaeepaljhpcngbfdkbiggb --app-url=hxxps://web.snapchat.com/ --app-launch-source=4 ==================== Modules chargés (Avec liste blanche) ============= 2023-11-02 02:20 - 2016-07-21 10:54 - 000137728 _____ () [Fichier non signé] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll 2023-11-02 02:20 - 2017-09-12 10:34 - 001506304 _____ () [Fichier non signé] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll 2024-02-05 15:01 - 2024-02-05 15:01 - 001744384 _____ () [Fichier non signé] C:\Program Files\Image-Line\FL Studio 212\Plugins\Fruity\Generators\Morphine\Morphine_x64.dll 2023-10-24 15:44 - 2023-10-24 15:44 - 000531456 _____ () [Fichier non signé] c:\program files\image-line\fl studio asio\ilwasapi2asio_x64.dll 2022-11-16 08:55 - 2022-11-16 08:55 - 000607032 _____ (Image Line -> ) [Fichier non signé] C:\Program Files\Image-Line\FL Studio 212\Shared\freetype_x64.dll 2022-11-16 08:55 - 2022-11-16 08:55 - 000271672 _____ (Image Line -> Conifer Software) [Fichier non signé] C:\Program Files\Image-Line\FL Studio 212\Shared\WavpackDLL_x64.dll 2024-02-09 14:50 - 2024-02-09 14:50 - 066332984 _____ (Image Line -> Image-Line) [Fichier non signé] C:\Program Files\Image-Line\FL Studio 212\FLEngine_x64.dll 2024-02-26 11:23 - 2023-10-12 20:32 - 004005888 _____ (Maizesoft) [Fichier non signé] c:\program files\image-line\fl studio 212\Plugins\VST\Sonatina Orchestra.dll 2023-11-25 23:59 - 2023-02-07 18:52 - 005761536 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AEJuice Pack Manager\Qt6CoreAEJuice.dll 2023-11-25 23:59 - 2023-02-07 18:52 - 001426944 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AEJuice Pack Manager\Qt6NetworkAEJuice.dll 2023-11-25 23:59 - 2023-02-07 18:54 - 000088064 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AEJuice Pack Manager\tls\qcertonlybackendAEJuice.dll 2023-11-25 23:59 - 2023-02-07 18:53 - 002605568 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AEJuice Pack Manager\tls\qopensslbackendAEJuice.dll 2023-11-25 23:59 - 2023-02-07 18:54 - 000210432 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AEJuice Pack Manager\tls\qschannelbackendAEJuice.dll 2023-11-02 02:20 - 2017-09-12 10:36 - 000708608 _____ (Wondershare) [Fichier non signé] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`,qtjhjkiihj [0] AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`bfjhjkiihj [0] AlternateDataStreams: C:\ProgramData\Reprise:jhqduwvxlctbqqijsf`usjbm`vovtfe.qpsu.obnfjhjkiihj [0] ==================== Mode sans échec (Avec liste blanche) ================== ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre-1.8\bin\ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-1.8\bin\jp2ssv.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2022-05-07 06:24 - 2022-05-07 06:22 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR HKU\S-1-5-21-606187956-4195221519-3182391363-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img19.jpg DNS Servers: 192.168.128.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\StartupFolder: => "AEJuice Pack Manager.lnk" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C817A2B76D5BA130A13FF650D25A9E9E" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "OneDrive" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "Opera GX Stable" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "Opera GX Browser Assistant" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "EADM" HKU\S-1-5-21-606187956-4195221519-3182391363-1002\...\StartupApproved\Run: => "EpicGamesLauncher" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{41775C5F-DC2E-492A-8A46-8A57EB734E1E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{2C89FDD8-B84C-494F-A159-6F4403959A18}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{35106698-FE71-4A53-9ABE-ECBDC77A55CA}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{50C07139-A81E-4656-996A-E5F2D99BE725}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{EC94DB23-4FEB-4B54-8A70-9F5677D9F9F1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Satisfactory\FactoryGame.exe => Pas de fichier FirewallRules: [{50B39BE8-E593-4156-B6DA-3376E2B81B48}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Satisfactory\FactoryGame.exe => Pas de fichier FirewallRules: [{1A8519FF-8543-425C-92E1-BD90737BF640}] => (Allow) D:\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe (Skutta Software GmbH -> ) FirewallRules: [{D23545E2-11F3-4D3E-B658-5395F0E20BE4}] => (Allow) D:\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe (Skutta Software GmbH -> ) FirewallRules: [{91793688-7C6B-4942-9985-A9F9901B9810}] => (Allow) D:\SteamLibrary\steamapps\common\Subnautica\Subnautica.exe () [Fichier non signé] FirewallRules: [{7B44CBB9-7289-4D04-AEDE-E6577F339DFE}] => (Allow) D:\SteamLibrary\steamapps\common\Subnautica\Subnautica.exe () [Fichier non signé] FirewallRules: [TCP Query User{25B19FB6-B0BD-48BF-84B6-C17EFFADD23A}C:\program files\java\jdk-21\bin\javaw.exe] => (Allow) C:\program files\java\jdk-21\bin\javaw.exe FirewallRules: [UDP Query User{78291D9B-3F43-486F-8919-9BD583B5D4B6}C:\program files\java\jdk-21\bin\javaw.exe] => (Allow) C:\program files\java\jdk-21\bin\javaw.exe FirewallRules: [TCP Query User{BDBD2758-9DBE-434F-9E8B-BE60E4699E4A}C:\users\benni\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\benni\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [UDP Query User{8163EB02-8A55-462A-9851-0EC1CB35FE15}C:\users\benni\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\benni\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [TCP Query User{C895DE7F-2542-43A1-86C3-DF124B48F992}C:\users\benni\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\benni\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{21826C42-6184-4DD7-BF57-21481A9FD0C5}C:\users\benni\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\benni\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{47FF1563-07E2-4D1F-80C5-B7F06084750E}] => (Allow) D:\SteamLibrary\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [Fichier non signé] FirewallRules: [{24A0C1DA-F926-48E8-BE59-558ABCA5A218}] => (Allow) D:\SteamLibrary\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [Fichier non signé] FirewallRules: [TCP Query User{C4A3C673-57EA-4EA5-93A5-64D8C11C22E8}D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe => Pas de fichier FirewallRules: [UDP Query User{B20115FD-9E6A-417E-8D74-577720B525B8}D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 2042\bf2042.exe => Pas de fichier FirewallRules: [TCP Query User{493DAB36-0495-4C9A-9722-C7605648F598}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\resolve.exe => Pas de fichier FirewallRules: [UDP Query User{03B76B71-4C68-4541-B13B-F00AA31E2DFB}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Allow) C:\program files\blackmagic design\davinci resolve\resolve.exe => Pas de fichier FirewallRules: [{4E813D55-8C86-412A-9153-7EA04EEDD219}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe => Pas de fichier FirewallRules: [{5B4706DF-77A4-4601-8C11-C6E47060B836}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe => Pas de fichier FirewallRules: [{4FC392D6-19CC-439F-808B-44F30EED3999}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe => Pas de fichier FirewallRules: [{96DF08D8-80AA-4723-9CAE-C1B13A87E064}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe => Pas de fichier FirewallRules: [{27178CEE-CF7B-477C-BD61-5C691C140934}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe => Pas de fichier FirewallRules: [{84507C57-CBDC-4A80-A5DC-FFA6F69ECA2E}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe => Pas de fichier FirewallRules: [{93E68652-062D-4971-8EBC-757CFCA0CD06}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => Pas de fichier FirewallRules: [{7B80281E-7B5E-43B6-8185-C3623D1FA0A5}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe => Pas de fichier FirewallRules: [{72CD5B2B-525E-424E-B249-5D9884FC7C60}] => (Allow) C:\Users\benni\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare) FirewallRules: [{63D066BA-88B7-48EB-B779-04D7264C1A63}] => (Allow) C:\Program Files\BorisFX\Boris FX Hub\Boris FX Hub.exe => Pas de fichier FirewallRules: [{834001FD-328D-44E7-9123-B5817AE97D8D}] => (Allow) C:\Program Files\BorisFX\Boris FX Hub\Boris FX Hub.exe => Pas de fichier FirewallRules: [{839EFD3E-3AD6-4831-BCF6-23CCC98BF499}] => (Allow) C:\Program Files\BorisFX\Boris FX Hub\Boris FX Hub.exe => Pas de fichier FirewallRules: [{428F4BDA-4517-465E-BD11-02D9C1188707}] => (Allow) C:\Program Files\BorisFX\Boris FX Hub\Boris FX Hub.exe => Pas de fichier FirewallRules: [TCP Query User{D45E7508-F2E3-4356-8FC3-1AAEC906A80C}D:\steamlibrary\steamapps\common\we went back\wewentback\binaries\win64\wewentback-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\we went back\wewentback\binaries\win64\wewentback-win64-shipping.exe => Pas de fichier FirewallRules: [UDP Query User{6FC73BAD-7E27-4014-849B-6FE9385AD737}D:\steamlibrary\steamapps\common\we went back\wewentback\binaries\win64\wewentback-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\we went back\wewentback\binaries\win64\wewentback-win64-shipping.exe => Pas de fichier FirewallRules: [{A754EE0A-4D8E-4804-A940-65CBAA2AE17D}] => (Allow) D:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> ) FirewallRules: [{0CB9EAE6-08FB-4E14-991D-61FCABE94A44}] => (Allow) D:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> ) FirewallRules: [TCP Query User{5C4BD7A1-E009-42AE-989D-38CAD71CA844}D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe (Embark Studios AB -> Embark Studios AB) FirewallRules: [UDP Query User{27B0B10D-121A-41AC-A628-384280A38053}D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe] => (Allow) D:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery.exe (Embark Studios AB -> Embark Studios AB) FirewallRules: [{FEBF2D23-B909-4D1F-8E90-418D892596A7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{C585DC9B-D0CC-46E7-9B63-02E915EB5058}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{CEB31C33-B91D-4FB1-B4A2-C2D6D51B53F5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{B5FBC033-775E-4AA5-939C-F21BA3D9607E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3CB65D68-D197-4AB9-9995-A2803F21BF9E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{83D8F9DC-DBCA-49A3-805D-B58D743A35A6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [TCP Query User{ADE1E7A8-0347-4665-8E70-E111DE858629}C:\users\benni\appdata\local\citra\nightly\citra-qt.exe] => (Allow) C:\users\benni\appdata\local\citra\nightly\citra-qt.exe () [Fichier non signé] FirewallRules: [UDP Query User{EDD911DD-09F5-4838-8FBD-0FB5B672AFB7}C:\users\benni\appdata\local\citra\nightly\citra-qt.exe] => (Allow) C:\users\benni\appdata\local\citra\nightly\citra-qt.exe () [Fichier non signé] FirewallRules: [{CEFC0650-5825-496F-8128-C9C2EA325709}] => (Allow) D:\SteamLibrary\steamapps\common\shapez.io\shapezio.exe (tobspr Games) [Fichier non signé] FirewallRules: [{3B2B7AB5-9C41-45C4-8AB3-F9D5F8B2D75C}] => (Allow) D:\SteamLibrary\steamapps\common\shapez.io\shapezio.exe (tobspr Games) [Fichier non signé] FirewallRules: [{6CE98501-BF5E-4236-934F-DF6C797EBC39}] => (Allow) D:\SteamLibrary\steamapps\common\Horizon Zero Dawn\HorizonZeroDawn.exe () [Fichier non signé] FirewallRules: [{2772EAAF-718A-4329-AFF2-7B0BF7AAC8CB}] => (Allow) D:\SteamLibrary\steamapps\common\Horizon Zero Dawn\HorizonZeroDawn.exe () [Fichier non signé] FirewallRules: [{B3868698-322D-4D21-9F6D-B8285695661A}] => (Allow) D:\SteamLibrary\steamapps\common\Lethal Company\Lethal Company.exe () [Fichier non signé] FirewallRules: [{0D963BEC-0BD1-4AD1-9128-3D1865BA564A}] => (Allow) D:\SteamLibrary\steamapps\common\Lethal Company\Lethal Company.exe () [Fichier non signé] FirewallRules: [TCP Query User{818B27FA-9B20-4C74-B4BE-3E00E90CDF12}C:\users\benni\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\benni\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [UDP Query User{5AB8D548-3FE0-4CAB-9BEF-BB13766F115C}C:\users\benni\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Allow) C:\users\benni\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe FirewallRules: [TCP Query User{4262AE94-F9DC-45C0-B2D6-6D4B44C3970B}D:\steamlibrary\steamapps\common\battlefield 1\bf1.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 1\bf1.exe => Pas de fichier FirewallRules: [UDP Query User{39E79ED5-856F-4679-A68B-B4A3AEADFF39}D:\steamlibrary\steamapps\common\battlefield 1\bf1.exe] => (Allow) D:\steamlibrary\steamapps\common\battlefield 1\bf1.exe => Pas de fichier FirewallRules: [{BFFA9187-6244-4200-B873-59EC04C4EF18}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{32B839B3-385A-4D40-B673-9F648FC62FA3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{9470C73F-1D5D-4B8F-8070-09B04D9730F6}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{519426AC-F434-489C-B9FD-B0839F443F94}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{26EF70EC-77A4-4D65-9B44-623016CB4D3B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{1F6CC05C-41EE-4A57-9728-E2979795566F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{B48A0974-7192-470E-A690-1B490F2E2EFC}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{B1B81901-4789-4AF8-876C-D10C8B631530}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{BC8E31F2-14B8-4B0E-88C3-B21748DADF16}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{BCF43446-6669-4AC3-93B4-3D1AB760B149}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{F64485A4-293C-4F91-A5AF-E9499ACAAFD3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [TCP Query User{1E946806-73F0-40E2-8244-53334446BFC9}C:\program files\java\jre-1.8\bin\java.exe] => (Allow) C:\program files\java\jre-1.8\bin\java.exe FirewallRules: [UDP Query User{A82AD3C1-A474-47A0-8380-00C2FDE698EC}C:\program files\java\jre-1.8\bin\java.exe] => (Allow) C:\program files\java\jre-1.8\bin\java.exe FirewallRules: [{48965C30-0015-4FC8-B074-A431112EB9F5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{724204C6-B99A-407F-BC6A-B23095F22032}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{75F66369-C3C9-42EB-B501-2E199520B1E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{4B2C3090-08F0-473A-91E7-0D6BD1587079}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{658D90A2-C680-4F45-9DBB-1F8FFD4C54FF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{2AA610AA-2D91-4F5C-8CD9-D6A020A9F4A8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{427B04FB-A29E-4A9F-A463-FFB45CD3661E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{8C587DD2-509B-4A0F-B8FC-B0D8E5683929}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{B49E717D-2311-45C5-99B5-CC85EBA460DC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{07A6E4CF-5DD2-4480-B6B1-E8697FC1E77E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.232.997.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [TCP Query User{1C1FDCCE-587E-4F61-9EDE-EFF041FE0143}C:\users\benni\appdata\local\programs\curseforge windows\curseforge.exe] => (Allow) C:\users\benni\appdata\local\programs\curseforge windows\curseforge.exe (Overwolf Ltd -> Overwolf) FirewallRules: [UDP Query User{40D5DCED-0B36-4622-9270-42823B813086}C:\users\benni\appdata\local\programs\curseforge windows\curseforge.exe] => (Allow) C:\users\benni\appdata\local\programs\curseforge windows\curseforge.exe (Overwolf Ltd -> Overwolf) FirewallRules: [TCP Query User{CC2C41D6-25A5-47FA-AF09-93128252D745}D:\steamlibrary\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [UDP Query User{C8016AB3-D272-42B3-8CCE-5B64A53A308A}D:\steamlibrary\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\steamlibrary\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe (Epic Games, Inc.) [Fichier non signé] FirewallRules: [{AD33D7FA-0E72-4959-AFC9-5DCFDDB62A7F}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24033.1006.2736.8026_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6EA7FC22-4565-4BEA-90B1-C6A341F85026}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24033.1006.2736.8026_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{D50899A1-A0B8-434E-95E5-BEFEDF197228}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\122.0.2365.80\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{F3040578-B634-42B3-83FF-D9F68448A52D}C:\users\benni\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\benni\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [UDP Query User{F77132DA-1BAD-450E-AD3C-6F7B2B4AC906}C:\users\benni\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Allow) C:\users\benni\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe FirewallRules: [{E0A29209-A161-4C48-91BE-AA9FF0097AE3}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> ) FirewallRules: [{9FA7A734-A65A-405B-A537-A2CB090F4288}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> ) FirewallRules: [{C513DD5E-AE7F-41F6-AFB1-12A6F4162BED}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [{197EF93F-2FCF-473F-8586-4D2E7480849C}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision) FirewallRules: [{7CCF68AA-5FA6-4F31-B9B2-1AC9599BE952}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\BSLauncher.exe (VALOFE Co.,Ltd. -> NS Studio) FirewallRules: [{00A992D6-D9C5-4A6C-8776-F7CA7E27A595}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\BSLauncher.exe (VALOFE Co.,Ltd. -> NS Studio) FirewallRules: [{CC62D593-5FF3-44CA-AB70-F655D6CC8449}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe (VALOFE Co.,Ltd. -> NS Studio, Inc.) FirewallRules: [{AABADC7F-66C2-4D4F-B076-6BE095AF30F4}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe (VALOFE Co.,Ltd. -> NS Studio, Inc.) ==================== Points de restauration ========================= 03-03-2024 21:10:32 Windows Update 10-03-2024 00:35:25 Windows Update 10-03-2024 00:35:29 Windows Update 10-03-2024 00:35:30 Windows Update 11-03-2024 17:56:38 Removed DaVinci Resolve Control Panels ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (03/11/2024 11:39:59 PM) (Source: NVIDIA OpenGL Driver) (EventID: 1) (User: ) Description: The GPU has been disconnected and this application may become unresponsive. Error code: 10 (pid=18900 tid=20836 javaw.exe 64bit) Visit http://www.nvidia.com/page/support.html for more information. Error: (03/11/2024 10:20:52 PM) (Source: Application Error) (EventID: 1000) (User: NATHMAN2) Description: Nom de l’application défaillante BlackSquadGame.exe, version : 0.0.0.0, horodatage : 0x65e87f7b Nom du module défaillant : BlackSquadGame.exe, version : 0.0.0.0, horodatage : 0x65e87f7b Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000e6476 ID du processus défaillant : 0x0x274c Heure de début de l’application défaillante : 0x0x1da73f578ba57ea Chemin d’accès de l’application défaillante : D:\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe Chemin d’accès du module défaillant: D:\SteamLibrary\steamapps\common\Black Squad\binaries\win64\BlackSquadGame.exe ID de rapport : c45b8912-b5ae-4d9e-befd-5bec89009a64 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddWin32ServiceFiles: Unable to back up image of service Avast Tools since QueryServiceConfig API failed System Error: Le fichier spécifié est introuvable.. Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddWin32ServiceFiles: Unable to back up image of service Avast Antivirus since QueryServiceConfig API failed System Error: Le fichier spécifié est introuvable.. Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddWin32ServiceFiles: Unable to back up image of service aswbIDSAgent since QueryServiceConfig API failed System Error: Le fichier spécifié est introuvable.. Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary aswVmm. System Error: Le fichier spécifié est introuvable.. Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary aswbuniv. System Error: Le fichier spécifié est introuvable.. Error: (03/11/2024 05:56:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: ) Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer. Details: AddLegacyDriverFiles: Unable to back up image of binary aswbidsh. System Error: Le fichier spécifié est introuvable.. Erreurs système: ============= Error: (03/11/2024 11:45:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service GameInput Service s’est terminé de façon inattendue pour la 6ème fois. Error: (03/11/2024 11:45:01 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service GameInput Service s’est arrêté avec l’erreur : Le fichier composé GameInput Service a été produit avec une version plus récente de la mémoire. Error: (03/11/2024 11:45:00 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service GameInput Service s’est terminé de manière inattendue. Ceci s’est produit 5 fois. L’action corrective suivante va être effectuée dans 1000 millisecondes : Redémarrer le service. Error: (03/11/2024 11:45:00 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service GameInput Service s’est arrêté avec l’erreur : Le fichier composé GameInput Service a été produit avec une version plus récente de la mémoire. Error: (03/11/2024 11:44:59 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service GameInput Service s’est terminé de manière inattendue. Ceci s’est produit 4 fois. L’action corrective suivante va être effectuée dans 1000 millisecondes : Redémarrer le service. Error: (03/11/2024 11:44:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service GameInput Service s’est arrêté avec l’erreur : Le fichier composé GameInput Service a été produit avec une version plus récente de la mémoire. Error: (03/11/2024 11:44:58 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service GameInput Service s’est terminé de manière inattendue. Ceci s’est produit 3 fois. L’action corrective suivante va être effectuée dans 1000 millisecondes : Redémarrer le service. Error: (03/11/2024 11:44:58 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service GameInput Service s’est arrêté avec l’erreur : Le fichier composé GameInput Service a été produit avec une version plus récente de la mémoire. Windows Defender: ================ Date: 2024-03-11 18:05:12 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {665DF957-9A6A-4511-93D4-37BD6ADB7B8A} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2024-02-29 18:24:59 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {87DB25B7-0AE4-4C22-9F34-62893CD27403} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2024-02-28 14:05:58 Description: Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Sabsik.FL.A!ml&threatid=2147780195&enterprise=0 Nom : Trojan:Win32/Sabsik.FL.A!ml ID : 2147780195 Gravité : Grave Catégorie : Cheval de Troie Chemin : file:_C:\Users\benni\OneDrive\Bureau\file_release3\setup.exe Origine de la détection : Ordinateur local Type de détection : Chemin rapide Source de détection : Protection en temps réel Utilisateur : Nom du processus : C:\Windows\explorer.exe Version de la veille de sécurité : AV: 1.405.678.0, AS: 1.405.678.0, NIS: 1.405.678.0 Version du moteur : AM: 1.1.24010.10, NIS: 1.1.24010.10 Date: 2024-02-27 14:04:40 Description: Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Sabsik.FL.A!ml&threatid=2147780195&enterprise=0 Nom : Trojan:Win32/Sabsik.FL.A!ml ID : 2147780195 Gravité : Grave Catégorie : Cheval de Troie Chemin : file:_C:\Users\benni\OneDrive\Bureau\file_release3\setup.exe Origine de la détection : Ordinateur local Type de détection : Chemin rapide Source de détection : Protection en temps réel Utilisateur : Nom du processus : C:\Windows\explorer.exe Version de la veille de sécurité : AV: 1.405.678.0, AS: 1.405.678.0, NIS: 1.405.678.0 Version du moteur : AM: 1.1.24010.10, NIS: 1.1.24010.10 Date: 2024-02-26 18:50:07 Description: Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable. Pour plus d’informations, reportez-vous aux éléments suivants : https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Sabsik.FL.A!ml&threatid=2147780195&enterprise=0 Nom : Trojan:Win32/Sabsik.FL.A!ml ID : 2147780195 Gravité : Grave Catégorie : Cheval de Troie Chemin : file:_C:\Users\benni\OneDrive\Bureau\file_release3\setup.exe Origine de la détection : Ordinateur local Type de détection : Chemin rapide Source de détection : Protection en temps réel Utilisateur : Nom du processus : C:\Windows\explorer.exe Version de la veille de sécurité : AV: 1.405.636.0, AS: 1.405.636.0, NIS: 1.405.636.0 Version du moteur : AM: 1.1.24010.10, NIS: 1.1.24010.10 Event[0] Date: 2024-01-25 14:19:47 Description: La fonctionnalité de protection en temps réel Antivirus Microsoft Defender a rencontré une erreur et échoué. Fonctionnalité : Système d’inspection réseau Code d’erreur : 0x8007041d Description de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Raison : Il manque des mises à jour nécessaires à l’exécution du système NIS (Network Inspection System) sur le système. Installez les mises à jour requises et redémarrez l’appareil. CodeIntegrity: =============== Date: 2024-03-11 17:49:40 Description: Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. 3205 08/14/2023 Carte mère: ASUSTeK COMPUTER INC. PRIME A520M-A II Processeur: AMD Ryzen 5 5500 Pourcentage de mémoire utilisée: 27% Mémoire physique - RAM - totale: 32563.01 MB Mémoire physique - RAM - disponible: 23621.18 MB Mémoire virtuelle totale: 34611.01 MB Mémoire virtuelle disponible: 22836.58 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:464.92 GB) (Free:234.32 GB) (Model: KINGSTON SNV2S500G) NTFS Drive d: () (Fixed) (Total:393.67 GB) (Free:143.04 GB) (Model: ST1000DM010-2EP102) NTFS Drive e: (Disque local) (Fixed) (Total:537.21 GB) (Free:333.7 GB) (Model: ST1000DM010-2EP102) NTFS \\?\Volume{37e1836b-3e38-443f-af26-ac11469365ad}\ () (Fixed) (Total:0.72 GB) (Free:0.08 GB) NTFS \\?\Volume{a1dc9810-2ae0-474c-89fb-cf660380ab9c}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT. ========================================================== Disk: 1 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000) Partition: GPT. ==================== Fin de Addition.txt =======================