Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 17.03.2019 Exécuté par EFM_UEFM_Barrow_U (13-04-2019 17:39:18) Exécuté depuis C:\Users\EFM_UEFM_Barrow_U\Desktop Windows 10 Home Version 1903 18343.1 (X64) (2019-04-10 23:08:21) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= Administrateur (S-1-5-21-3534096643-12334864-2903717510-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3534096643-12334864-2903717510-503 - Limited - Disabled) EFM_UEFM_Barrow_U (S-1-5-21-3534096643-12334864-2903717510-1001 - Administrator - Enabled) => C:\Users\EFM_UEFM_Barrow_U Invité (S-1-5-21-3534096643-12334864-2903717510-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-3534096643-12334864-2903717510-504 - Limited - Disabled) _ashbackup_ (S-1-5-21-3534096643-12334864-2903717510-1002 - Administrator - Enabled) => C:\Users\_ashbackup_ ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: adaware antivirus (Enabled - Up to date) {3AF56CA3-CA5A-215C-108D-CECA729D293A} AV: COMODO Antivirus (Enabled - Up to date) {9E3E06E3-F8E0-3C44-2336-BBD8AF8F84B8} AV: Avast Antivirus (Disabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Webroot SecureAnywhere (Disabled - Up to date) {4646A877-74EB-CD3B-8FDB-210DB94FA61A} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Webroot SecureAnywhere (Enabled - Up to date) {FD274993-52D1-C2B5-B56B-1A7FC2C8ECA7} AS: adaware antivirus (Enabled - Up to date) {81948D47-EC60-2ED2-2A3D-F5B8091A6387} AS: COMODO Advanced Protection (Enabled - Up to date) {255FE707-DEDA-33CA-1986-80AAD408CE05} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Disabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: COMODO Firewall (Enabled) {A60587C6-B28F-3D1C-0869-12ED515CC3C3} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 19.00 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1900-000001000000}) (Version: 19.00.00.0 - Igor Pavlov) abylon KEYSAFE 17.60.1 (Privatversion) (HKLM\...\abylonprotectionmanagersafe_is1) (Version: 17.60.1 - abylonsoft) AC3Filter (remove only) (HKLM-x32\...\AC3Filter) (Version: - ) adaware antivirus (HKLM\...\{5FFF7119-74E8-442E-970E-50BAD81D5371}_AdAwareUpdater) (Version: 12.6.1005.11662 - adaware) ad-aware&comodo_bundle2019_setup (HKLM-x32\...\ad-aware&comodo_bundle2019_setup) (Version: 2019.0 - Avanquest Software - Comodo - Lavasoft) AdAwareInstaller (HKLM\...\{44DE19DF-AA86-497A-9CCA-4F52D0BFF9A8}) (Version: 12.6.1005.11662 - adaware) Hidden AdAwareUpdater (HKLM\...\{5FFF7119-74E8-442E-970E-50BAD81D5371}) (Version: 12.6.1005.11662 - adaware) Hidden Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.171 - Adobe) AIDA64 Extreme v5.99 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 5.99 - FinalWire Ltd.) Aimersoft Helper Compact 2.5.2 (HKLM-x32\...\{405147F7-FCC5-499B-A27E-EA6BD4A80435}_is1) (Version: 2.5.2 - Aimersoft) Air Command (HKLM-x32\...\{5493FC89-21E8-4D88-BCA1-4D33F1410968}) (Version: 1.0.38 - Samsung Electronics Co., Ltd.) Amazing Folder Password Lock version 7.8.8.8 (HKLM-x32\...\{AmazingFreeFolderPasswordLock}_is1) (Version: 7.8.8.8 - www.Amazing-Share.com) Amazing GIF to Video Converter (1.4.0.0) (HKLM-x32\...\Amazing GIF to Video Converter_is1) (Version: 1.4.0.0 - Amazing Studio) AntimalwareEngine (HKLM\...\{5C7A5F94-02E9-4C5D-A594-B1F10865965A}) (Version: 3.0.160.0 - adaware) Hidden Ashampoo Backup 2018 (HKLM\...\{DF972766-B496-3EA3-F7E5-919810CE21A5}_is1) (Version: 11.10 - Ashampoo GmbH & Co. KG) Ashampoo Cinemagraph (HKLM\...\{0A11EA01-0A0C-D344-AF7B-A2BE9E4DA5DB}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG) Ashampoo Snap 10 (HKLM-x32\...\{0A11EA01-7909-E272-BFA6-BC39E55F240A}_is1) (Version: 10.0.8 - Ashampoo GmbH & Co. KG) Auslogics Browser Care (HKLM-x32\...\{C8B1B0C7-D33B-431B-B1AD-F11256E6E3B3}_is1) (Version: 5.0.24.0 - Auslogics Labs Pty Ltd) Avast Antivirus Gratuit (HKLM-x32\...\Avast Antivirus) (Version: 19.3.2369 - AVAST Software) Avira (HKLM-x32\...\{9c4627af-2a2f-4e06-aa50-e0d70979e4b6}) (Version: 1.2.132.16752 - Avira Operations GmbH & Co. KG) Avira (HKLM-x32\...\{BE930E27-DF4B-44AF-8037-EB0A1D419787}) (Version: 1.2.132.16752 - Avira Operations GmbH & Co. KG) Hidden Avira Software Updater (HKLM-x32\...\{4BFBF6CA-2D9E-4A54-8B79-5CEC1545C0FE}) (Version: 2.0.6.13175 - Avira Operations GmbH & Co. KG) Bing Bureau (HKLM-x32\...\{7D095455-D971-4D4C-9EFD-9AF6A6584F3A}) (Version: 1.4.167.0 - Microsoft Corporation) Box Sync (HKLM-x32\...\{ee10352e-1caf-4132-add1-3809a8ea6d43}) (Version: 4.0.7929.0 - Box Inc.) Hidden Camtasia 2018 (HKLM\...\{B709B962-53AA-446A-A733-95D1A6C5DE50}) (Version: 18.0.7.4045 - TechSmith Corporation) Hidden Camtasia 2018 (HKLM-x32\...\{5fd4f6d8-26d6-43b6-9b95-116b69ee0a69}) (Version: 18.0.7.4045 - TechSmith Corporation) cCloud (HKLM\...\{CF6C1B06-4F86-4C41-BD21-9E40500006B5}) (Version: 3.0.8.84 - COMODO) CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7042 - CDBurnerXP) Clipdiary 5.2 (HKLM-x32\...\Clipdiary) (Version: 5.2 - Tiushkov Nikolay) CloneBD (HKLM-x32\...\CloneBD) (Version: 1.2.4.0 - Elaborate Bytes) COMODO BackUp (HKLM\...\{B79E9FF2-D932-4FD5-BCAF-4DE6F2FBE521}) (Version: 4.4.1.23 - COMODO) Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 73.0.3683.75 - Comodo) Comodo IceDragon (HKLM-x32\...\Comodo IceDragon) (Version: 64.0.4.15 - COMODO) COMODO Internet Security Complete (HKLM\...\{693F782C-8D75-4029-B003-BBA5AF2C0726}) (Version: 12.0.0.6810 - COMODO Security Solutions Inc.) Hidden COMODO Internet Security Complete (HKLM\...\COMODO Internet Security) (Version: 12.0.0.6810 - COMODO Security Solutions Inc.) COMODO Secure Shopping (HKLM-x32\...\{D15DF9B0-3A98-4BEF-B7D5-FC3AEA473628}) (Version: 1.3.151.0 - COMODO) Hidden Compel Adaptec WinASPI (HKLM-x32\...\Compel install Adaptec WinASPI-4.6.0(1021)_is1) (Version: 4.6.0(1021) - ) CPCTuneUp (HKLM\...\{FC4D0316-D3D8-4c07-9E45-7A2A4D75E069}) (Version: - COMODO) CyberLink PerfectCam 2 (HKLM-x32\...\{C311A2C9-A8F9-408A-8386-B3118338754C}) (Version: 2.1.1526.0 - CyberLink Corp.) Digital Video Duplicator (HKLM-x32\...\{7CCFADC3-60C4-4DD2-A843-171FAFB9467A}) (Version: 3.02 - BVRP Software) EaseUS Partition Master 13.0 (HKLM-x32\...\EaseUS Partition Master_is1) (Version: - EaseUS) EaseUS Todo Backup Free 11.5 (HKLM-x32\...\EaseUS Todo Backup_is1) (Version: 11.5 - CHENGDU YIWO Tech Development Co., Ltd) EaseUS Todo PCTrans 10.0 (HKLM-x32\...\EaseUS Todo PCTrans_is1) (Version: - EaseUS) Executor v0.99.32b (HKLM\...\Executor_is1) (Version: - Martin Bresson) Express Uninstaller v3.5 (HKLM-x32\...\Express Uninstaller_is1) (Version: 3.5 - Avanquest Software) FastFontPreview v3.0.2 FREEWARE (HKLM-x32\...\FastFontPreview_is1) (Version: - Lanmisoft) Folder Lock (HKLM-x32\...\Folder Lock) (Version: - New Softwares.net) Fonts version 1.0 (HKLM-x32\...\{95E6D335-B7B1-445B-9B58-64818030390E}_is1) (Version: 1.0 - MSTech (Modern Software Technology)) GeekBuddy (HKLM\...\{2310DD22-D2F0-4066-9FE4-6B1A4CDF1107}) (Version: 4.32.247 - Comodo Security Solutions Inc) Hidden Gestionnaire de Connexion SFR 3.1 (HKLM-x32\...\{FC48747D-095F-4CF6-B54E-37D4F4738A15}_is1) (Version: - SFR) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 73.0.3683.103 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.7 - Google LLC) Hidden Hasleo BitLocker Data Recovery version 4.8 (HKLM\...\Hasleo BitLocker Data Recovery_is1) (Version: 4.8 - Hasleo Software) ImDisk Virtual Disk Driver (HKLM\...\ImDisk) (Version: * - LTR Data) IM-Magic Partition Resizer Free 2018 (HKLM-x32\...\IM_Magic_PR) (Version: 2018 - IM-Magic Inc.) Intel(R) Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.7.0.1052 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6518 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.3.1031 - Intel Corporation) Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden Intel(R) Virtual Buttons (HKLM-x32\...\1992736F-C90A-481C-B21B-EE34CAD07387) (Version: 1.1.1.22 - Intel Corporation) IObit Software Updater (HKLM-x32\...\IObit Software Updater_is1) (Version: 1.1.0.1782 - IObit) IRISCompressor Pro (HKLM\...\{8F9B92B7-4542-4B54-8957-B2CFCFA3A28F}) (Version: 1.04.0000 - I.R.I.S.) KeepVid Music Tag Editor(Build 2.0.0.17) (HKLM-x32\...\KeepVid Music Tag Editor_is1) (Version: 2.0.0.17 - KeepVid Software) Linux File Systems for Windows by Paragon Software (HKLM-x32\...\{F0CF025B-D6F3-4F7C-939B-23291F52875C}) (Version: 5.1.1015 - Paragon Software GmbH) LiveUpdate BVRP Software (HKLM-x32\...\{76E41F43-59D2-4F30-BA42-9A762EE1E8DE}) (Version: 1.00.008 - BVRP Software) LockHunter 3.2, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (HKLM\...\{2DFD8316-9EF1-3210-908C-4CB61961C1AC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{527BBE2F-1FED-3D8B-91CB-4DB0F838E69E}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation) MiniTool Partition Wizard Free 11 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Software Limited) Morgan Stream Switcher (HKLM-x32\...\mmswitch) (Version: - ) MP3jam 1.1.5.1 (HKLM-x32\...\MP3jam_is1) (Version: 1.1.5.1 - MP3jam) mst MD5 (HKLM-x32\...\{BD2E2F69-DAB4-4D1B-910F-087DF77D2AED}) (Version: 2.0.6.94 - mst software GmbH) MSTech Folder Icon Pro (HKLM-x32\...\{C8483ED0-185F-45D7-9AC4-DD751942B9ED}) (Version: 2.9.3.750 - MSTech (Modern Software Technology)) NetSetMan 4.7.1 (HKLM-x32\...\NetSetMan_is1) (Version: 4.7.1 - NetSetMan GmbH) Network Stumbler 0.4.0 (remove only) (HKLM-x32\...\Network Stumbler) (Version: - ) Notepad++ (32-bit x86) (HKLM-x32\...\Notepad++) (Version: 7.6.6 - Notepad++ Team) Opera Stable 58.0.3135.127 (HKU\S-1-5-21-3534096643-12334864-2903717510-1001\...\Opera 58.0.3135.127) (Version: 58.0.3135.127 - Opera Software) PC Cleaner v6.9.6.3 (HKLM-x32\...\PC Cleaner_is1) (Version: 6.9.6.3 - PC Helpsoft) PDF Conversa (HKLM-x32\...\PDF Conversa_is1) (Version: 2.0.0.0 - ASCOMP Software GmbH) proDAD Adorage 3.0 (64bit) (HKLM\...\proDAD-Adorage-3.0) (Version: 3.0.115.3 - proDAD GmbH) ProtectStar(TM) iShredder 7 (HKLM-x32\...\{79087BA9-C5B5-4081-A374-310AC02E2896}) (Version: 7.0.1809 - ProtectStar Inc.) Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10454 - Qualcomm) Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.448 - Qualcomm Atheros) S Agent (HKLM\...\{0052BF58-5307-4F7D-A379-8F4EC9212FA8}) (Version: 1.1.58 - Samsung Electronics Co., Ltd.) Hidden Samsung Recovery (HKLM\...\{D21EED26-59C0-4315-BDCC-D682496465E9}) (Version: 7.3.0 - Samsung Electronics Co., Ltd.) Samsung System Agent (HKLM-x32\...\{CDB4F12C-2E9E-48CC-8591-663964C1BAE3}) (Version: 1.0.48 - Samsung Electronics Co., Ltd.) Hidden save2pc Light 4.35 (HKLM-x32\...\save2pc Light_is1) (Version: - FDRLab) Show Window (HKLM-x32\...\{87A08690-781E-4A8E-8300-775A2EA02932}) (Version: 1.0.0.30 - Samsung Electronics Co., Ltd.) Silent Install Builder 5 (HKLM-x32\...\{2452C59D-5140-4A9A-A97F-B925390619E1}) (Version: 5.1.4.0 - Aprel Tech, LLC) Simply Good Pictures 5 Free (HKLM\...\{8D64B0CF-B925-4AC6-A7A7-9CDDC6733122}) (Version: 5.0.6813.21839 - Engelmann Software) Hidden Simply Good Pictures 5 Free (HKLM-x32\...\{a76c2589-f9f1-40da-b8b2-56fac15efbe5}) (Version: 5.0.6813.22517 - Engelmann Software) Skype version 8.42 (HKLM-x32\...\Skype_is1) (Version: 8.42 - Skype Technologies S.A.) SPlayer (HKLM-x32\...\SPlayer) (Version: - ) Spybot Identity Monitor (HKLM-x32\...\{DEE2C8BC-083E-48D8-A934-7B547D87E85C}_is1) (Version: 3.0 - Safer-Networking Ltd.) Stellar Data Recovery for iPhone (HKLM-x32\...\Stellar Data Recovery for iPhone_is1) (Version: 5.0.0.0 - Stellar Information Technology Pvt Ltd.) Stellar Data Recovery Professional (HKLM-x32\...\Stellar Data Recovery Professional_is1) (Version: 8.0.0.0 - Stellar Information Technology Pvt Ltd.) Stellar Photo Recovery Standard (HKLM-x32\...\Stellar Photo Recovery Standard_is1) (Version: 9.0.0.0 - Stellar Information Technology Pvt Ltd.) Stellar Repair for Video (HKLM-x32\...\Stellar Repair for Video_is1) (Version: 4.0.0.0 - Stellar Information Technology Pvt Ltd.) Symlink helper version 1.0.1.0 (HKLM-x32\...\{09170A3C-022B-42DF-BD63-D5FDD326133F}_is1) (Version: 1.0.1.0 - Marcin Szeniak) SysTools AD Browser v1.0 (HKLM-x32\...\{040FAA1B-3FB0-4610-A12D-4D165645E6D4}_is1) (Version: - SysTools Software Pvt. Ltd.) SysTools E01 Viewer v2.0 (HKLM-x32\...\{A8DF9623-2275-42d5-B47F-5BC6B2625246}_is1) (Version: - SysTools Software Pvt. Ltd.) SysTools Mail Converter v1.0 (HKLM-x32\...\{33A9041E-C619-4387-84C2-04DA1A5231E1}_is1) (Version: - SysTools Software Pvt. Ltd.) SysTools NTFS Log Analyzer 1.0 (HKLM-x32\...\{B00E4D16-FCAD-4F83-8CC4-FE6A14096770}_is1) (Version: - SysTools Software) SysTools PDF Bates Numberer v3.5 (HKLM-x32\...\{8B438F56-F6B0-4A48-8753-EA84E536E5D5}_is1) (Version: - SysTools Software Pvt. Ltd.) SysTools Thunderbird Store Locator version SysTools Thunderbird Store Locator v1.0 (HKLM-x32\...\{83D05EA5-7606-4EC4-B1D8-E3B1135E541F}_is1) (Version: SysTools Thunderbird Store Locator v1.0 - CoreDataTree Technology Pvt. Ltd.) TeraCopy version 3.26 (HKLM\...\TeraCopy_is1) (Version: 3.26 - Code Sector) Throttle (HKLM-x32\...\Throttle_is1) (Version: 8.2.11.2019 - PGWARE LLC) UnBlocker (HKLM-x32\...\UnBlocker - FREEWARE_is1) (Version: - ) Unknown Device Identifier 9.01 (HKLM\...\Unknown Device Identifier_is1) (Version: 9.01 - Huntersoft) Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{B2E25355-C24E-4E7D-8AD3-455D59810838}) (Version: 2.57.0.0 - Microsoft Corporation) Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{344F3227-F502-4219-9DC4-1967E586FAFA}) (Version: 2.51.0.0 - Microsoft Corporation) UsbFix Anti-Malware Premium (HKLM-x32\...\Usbfix) (Version: 11.0.1.4 - SOSVirus (SOSVirus.Net)) VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.6 - VideoLAN) VobSub v2.23 (Remove Only) (HKLM-x32\...\VobSub) (Version: - ) Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Web Companion (HKLM-x32\...\{d3b00b9e-5ecb-441a-a7a4-d012bef8d27a}) (Version: 4.5.1957.3838 - Lavasoft) WebDiscover Browser 4.28.2 (HKLM\...\{fd13f4a2-b0d8-4cad-9ccf-d4128eaf25ff}_is1) (Version: 4.28.2 - WebDiscover Media) <==== ATTENTION Webroot SecureAnywhere (HKLM-x32\...\WRUNINST) (Version: 9.0.24.49 - Webroot) Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA) WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH) WinThruster (HKLM-x32\...\WinThruster_is1) (Version: 1.5.7.181 - Solvusoft) <==== ATTENTION WlSarService (HKLM\...\{C0C78593-1CF0-4CD8-A80C-191FE561F5A5}) (Version: 1.0.0.7 - Samsung Electronics Co., Ltd.) Hidden Wondershare TidyMyMusic(Build 1.6.0.3) (HKLM-x32\...\Wondershare TidyMyMusic_is1) (Version: 1.6.0.3 - Wondershare Software) XnView 2.48 (HKLM-x32\...\XnView_is1) (Version: 2.48 - Gougelet Pierre-e) XviD MPEG-4 Video Codec (HKLM-x32\...\XviD_is1) (Version: XviD-1.0.1-05062004 - XviD Team (Koepi)) Zemana AntiLogger (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.74.0.664 - Zemana Ltd.) ==================== Personnalisé CLSID (Avec liste blanche): ========================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ShellIconOverlayIdentifiers: [ BoxSyncFileLocked] -> {06395f73-8d75-3c47-ac2f-93524a83ce03} => C:\Program Files\Box\Box Sync\IconOverlayClient.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ BoxSyncFileLockedByOther] -> {072d2f45-ddf0-35bd-a911-38b853695def} => C:\Program Files\Box\Box Sync\IconOverlayClient.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ BoxSyncNotSynced] -> {88092007-0d01-3d32-a4b4-56f7e19a1c49} => C:\Program Files\Box\Box Sync\IconOverlayClient.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ BoxSyncProblem] -> {507a0531-fd10-3efc-8eb8-64e35606e542} => C:\Program Files\Box\Box Sync\IconOverlayClient.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ BoxSyncSynced] -> {b9b9e487-7684-373f-a7a2-6b04c8d772a8} => C:\Program Files\Box\Box Sync\IconOverlayClient.DLL -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Pas de fichier ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-09] (AVAST Software s.r.o. -> AVAST Software) ShellIconOverlayIdentifiers: [COSDriveIconOverlay] -> {5FDACB62-6B7B-4116-9403-C5E0D3852A57} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ShellIconOverlayIdentifiers: [COSSyncItemInSyncIconOverlay] -> {68F287EF-DA6D-4595-AF52-90FF6CE52AFE} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ShellIconOverlayIdentifiers: [COSSyncItemModifiedIconOverlay] -> {AE67D273-7253-4236-B55E-D40055B305D6} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ShellIconOverlayIdentifiers: [COSSyncItemNewIconOverlay] -> {022F23E9-DA0F-4A86-A728-CAF6150C0B63} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ShellIconOverlayIdentifiers: [COSSyncItemUnsynchronizedIconOverlay] -> {4D7EE7CF-E7A1-45FE-8F80-3A37574918D7} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ShellIconOverlayIdentifiers: [IconOverlayHardLink] -> {0A479751-02BC-11d3-A855-0004AC2568DD} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ShellIconOverlayIdentifiers: [IconOverlayJunction] -> {0A479751-02BC-11d3-A855-0004AC2568FF} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ShellIconOverlayIdentifiers: [IconOverlaySymbolicLink] -> {0A479751-02BC-11d3-A855-0004AC2568EE} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [IconOverlayHardLink] -> {0A479751-02BC-11d3-A855-0004AC2568DD} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ShellIconOverlayIdentifiers-x32: [IconOverlayJunction] -> {0A479751-02BC-11d3-A855-0004AC2568FF} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ShellIconOverlayIdentifiers-x32: [IconOverlaySymbolicLink] -> {0A479751-02BC-11d3-A855-0004AC2568EE} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana AntiLogger\ZAMShellExt64.dll [2019-03-15] (Zemana D.O.O. Sarajevo -> ) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files (x86)\Notepad++\NppShell_06.dll [2019-01-27] (Notepad++ -> ) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-09] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers1: [BoxContextMenuClient] -> {53792c99-3144-3699-8968-fa4278ad3c1e} => C:\Program Files\Box\Box Sync\ContextMenuClient.DLL -> Pas de fichier ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-03-22] (Comodo Security Solutions, Inc. -> COMODO) ContextMenuHandlers1: [COMODOBackupUtility] -> {FA66022E-2FE4-4A29-916C-84A0D8173FBB} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ContextMenuHandlers1: [eXpertPDF12_ManagerExt] -> {B64D0E17-366D-458B-BE6F-26DD9DE31087} => -> Pas de fichier ContextMenuHandlers1: [Golem] -> {A4F1E2E4-9708-452B-9804-FD87EF236CF4} => C:\Program Files (x86)\I.R.I.S\IRISCompressor Pro\Golem.dll [2016-06-01] (IMAGE RECOGNITION INTEGRATED SYSTEMS SA -> I.R.I.S. Group) ContextMenuHandlers1: [HardLinkMenu] -> {0A479751-02BC-11d3-A855-0004AC2568AA} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers1: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2018-12-25] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers1: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1: [WRShellExt] -> {69D72956-317C-44bd-B369-8E44D4EF9802} => C:\Windows\system32\WRusr.dll [2019-04-13] (Webroot Inc. -> Webroot) ContextMenuHandlers1: [~ShellExtBridge119] -> {12123168-bfef-4b5a-9e1e-731ea7724907} => C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll [2018-01-29] (Moo0) [Fichier non signé] ContextMenuHandlers2: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.6.1005.11662\AdAwareShellExtension.dll [2019-02-13] (Adaware Software -> ) ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-03-22] (Comodo Security Solutions, Inc. -> COMODO) ContextMenuHandlers2: [COMODOBackupUtility] -> {FA66022E-2FE4-4A29-916C-84A0D8173FBB} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ContextMenuHandlers2: [DataShredderShellExt] -> {A39AC900-3ABE-4C69-B42D-FA8EEF89CB03} => C:\Program Files (x86)\ProtectStar\DataShredder\DataShredderShellExt64.dll [2018-06-14] (ProtectStar, Inc. -> ProtectStar(TM), Inc.) ContextMenuHandlers2: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> Pas de fichier ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers2: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2018-12-25] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers2: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-09] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers3: [AdAwareContextMenu] -> {5B64240D-5B36-4B9F-A75F-4925B6A53D5B} => C:\Program Files\adaware\adaware antivirus\adaware antivirus\12.6.1005.11662\AdAwareShellExtension.dll [2019-02-13] (Adaware Software -> ) ContextMenuHandlers3: [DataShredderShellExt] -> {A39AC900-3ABE-4C69-B42D-FA8EEF89CB03} => C:\Program Files (x86)\ProtectStar\DataShredder\DataShredderShellExt64.dll [2018-06-14] (ProtectStar, Inc. -> ProtectStar(TM), Inc.) ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => -> Pas de fichier ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers4: [BoxContextMenuClient] -> {53792c99-3144-3699-8968-fa4278ad3c1e} => C:\Program Files\Box\Box Sync\ContextMenuClient.DLL -> Pas de fichier ContextMenuHandlers4: [COMODOBackupUtility] -> {FA66022E-2FE4-4A29-916C-84A0D8173FBB} => C:\Program Files\COMODO\COMMON\ShellExtension.dll [2014-10-07] (Comodo Security Solutions -> C-O-M-O-D-O) ContextMenuHandlers4: [FolderIconProMnu] -> {ee6b78fb-091b-3896-8982-9987a45d50bb} => C:\Program Files (x86)\MSTech (Modern Software Technology)\MSTech Folder Icon Pro\FolderIconProMnu.DLL [2019-03-02] (MSTech (Modern Software Technology)) [Fichier non signé] ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => -> Pas de fichier ContextMenuHandlers4: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> Pas de fichier ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Program Files\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd) ContextMenuHandlers4: [SimpleShlExt] -> {45203D3B-3D73-4497-8AFE-D29950AC6C55} => C:\Program Files (x86)\EaseUS\Todo Backup\bin\x64\ImageSh.dll [2018-12-25] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co.,Ltd) ContextMenuHandlers4: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers4: [~ShellExtBridge119] -> {12123168-bfef-4b5a-9e1e-731ea7724907} => C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll [2018-01-29] (Moo0) [Fichier non signé] ContextMenuHandlers5: [HardLinkMenu] -> {0A479751-02BC-11d3-A855-0004AC2568AA} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ContextMenuHandlers5: [~ShellExtBridge119] -> {12123168-bfef-4b5a-9e1e-731ea7724907} => C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll [2018-01-29] (Moo0) [Fichier non signé] ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana AntiLogger\ZAMShellExt64.dll [2019-03-15] (Zemana D.O.O. Sarajevo -> ) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-04-09] (AVAST Software s.r.o. -> AVAST Software) ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2019-03-22] (Comodo Security Solutions, Inc. -> COMODO) ContextMenuHandlers6: [HardLinkMenu] -> {0A479751-02BC-11d3-A855-0004AC2568AA} => C:\Program Files\LinkShellExtension\HardlinkShellExt.dll [2019-04-03] (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => -> Pas de fichier ContextMenuHandlers6: [Loaris Trojan Remover] -> {4B884539-D34B-4F5B-B008-3A6F3B213E5C} => -> Pas de fichier ContextMenuHandlers6: [TeraCopy] -> {A8005AF0-D6E8-48AF-8DFA-023B1CF660A7} => C:\Program Files\TeraCopy\TeraCopyExt.dll [2016-12-07] (Code Sector -> ) ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => -> Pas de fichier ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6: [WRShellExt] -> {69D72956-317C-44bd-B369-8E44D4EF9802} => C:\Windows\system32\WRusr.dll [2019-04-13] (Webroot Inc. -> Webroot) ContextMenuHandlers6: [~ShellExtBridge119] -> {12123168-bfef-4b5a-9e1e-731ea7724907} => C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll [2018-01-29] (Moo0) [Fichier non signé] ==================== Tâches planifiées (Avec liste blanche) ============= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) Task: {05EF3DF0-8072-4906-B7E2-127536373DF6} - System32\Tasks\Software Updater SkipUAC(EFM_UEFM_Barrow_U) => C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe (IObit Information Technology -> IObit) <==== ATTENTION Task: {0BA5807D-E227-4D97-BCC0-545D4C65DAF9} - System32\Tasks\Universal\Driver Updater\Start Driver Updater оn logon => C:\Program Files (x86)\Universal Driver Updater\UniversalDriverUpdater.exe Task: {0D821ACF-6F49-4DEA-BFBD-94B9E6855124} - System32\Tasks\Microsoft\OneCore\DirectX\DirectXDatabaseUpdater => C:\WINDOWS\system32\directxdatabaseupdater.exe (Microsoft Windows -> Microsoft Corporation) Task: {19222679-5D86-406D-A8E8-149C49895F79} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.) Task: {1BD9C94B-EA94-478D-BDAB-7D3B6676AD5F} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe (AVAST Software s.r.o. -> AVAST Software) Task: {1C823239-273D-4BE9-8D1B-B6D834ABCE49} - pas de chemin du fichier Task: {29C74000-DA2A-49C4-B38C-0453C9F6C62D} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {2D5CC9D8-2E76-4BB0-890B-6C16015D8655} - System32\Tasks\WebDiscover Browser Launch Task => C:\Program Files\WebDiscoverBrowser\4.28.2\browser.exe (web discover -> WebDiscover Media) [Fichier non signé] <==== ATTENTION Task: {2E88BFD3-C378-46B1-A969-0604C4F503E4} - pas de chemin du fichier Task: {326E93AC-B2A8-43D3-BD18-A4353DB92903} - System32\Tasks\SecTimeSync\TimeSyncInit => C:\Windows\SecTimeSync.exe (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {4842DCC1-7E21-428C-9BDB-A0A29825F989} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => C:\Program Files\CUAssistant\culauncher.exe (Microsoft Windows -> Microsoft Corporation) Task: {5690DE54-A38F-4E31-9639-7AC08C96BC3F} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe (Intel(R) Trust Services -> Intel(R) Corporation) Task: {57751B22-2CBA-4823-93AA-536F2FC64158} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {59559F21-248C-4DF4-BA0D-52279015A6CF} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner => C:\WINDOWS\system32\mitigationscanner.exe (Microsoft Windows -> Microsoft Corporation) Task: {5E9A66DB-8353-48D6-B079-1478AD1CA2C9} - System32\Tasks\Samsung\SRS\SRS Logon => C:\Program Files\Samsung\Recovery\SRSMessages.exe (Samsung Electronics CO., LTD. -> Samsung Electronics) Task: {5FD41FD8-AE7E-4E53-913A-F68C32F030E4} - pas de chemin du fichier Task: {6296F0BF-E65C-46A6-ACF0-C4B903DB4BA1} - System32\Tasks\ShowWindow => C:\Program Files (x86)\Show Window\Show Window.exe (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.) Task: {652D8C83-8FC7-4936-AE58-F9832EC6E44F} - System32\Tasks\Microsoft\Windows\Workplace Join\Device-Sync Task: {69D45B02-2DF2-4E39-AD5F-265813DD3AA9} - System32\Tasks\Software Updater Scheduler => C:\Program Files (x86)\IObit\Software Updater\SUInit.exe (IObit Information Technology -> IObit Software updater) <==== ATTENTION Task: {7B82BC1F-D38B-4010-9912-73E9E8A9B9D0} - pas de chemin du fichier Task: {84C3BAF5-3153-4630-9ECC-8E71C1A63754} - System32\Tasks\Opera scheduled Autoupdate 1552623920 => C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Programs\Opera\launcher.exe (Opera Software AS -> Opera Software) Task: {85C354AF-D1A6-4D2A-B185-BC8CD2F3A74E} - \AdvancedSystemRepairPro-Maintenance-Autorun -> Pas de fichier <==== ATTENTION Task: {85D049EB-937F-4733-86D8-2E97AABE0788} - \PC Cleaner automatic scan and notifications -> Pas de fichier <==== ATTENTION Task: {88CC761F-E191-4FCC-8CC5-CC2BD941F7B9} - pas de chemin du fichier Task: {8A2A5E17-168C-4590-8844-BB3C74DC4495} - System32\Tasks\Outbyte\PC Repair\Start PC Repair оn logon => C:\Program Files (x86)\Outbyte\PC Repair\PCRepair.exe Task: {8B1DE096-7509-4456-889B-CF3DDF4CF38B} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_171_pepper.exe (Adobe Inc. -> Adobe) Task: {8B7801DB-1261-462E-86B2-57E33A0C3328} - System32\Tasks\COMODO\COMODO Maintenance {947247B5-026A-4437-9371-770782BE839D} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {9220B2C6-AFA3-4662-90A0-349F61DB0F3D} - System32\Tasks\Universal\Driver Updater\Start Driver Updater automatic scanning => C:\Program Files (x86)\Universal Driver Updater\UniversalDriverUpdater.exe Task: {97B761B9-B62A-4AE2-98A2-D46DA845A556} - System32\Tasks\Auslogics\WindowsSlimmer\Start Windows Slimmer оn EFM_UEFM_Barrow_U logon => C:\Program Files (x86)\Auslogics\WindowsSlimmer\WindowsSlimmer.exe Task: {993D0B7A-3F16-425D-BB5E-30A9174A1B27} - pas de chemin du fichier Task: {A1271596-A1A8-41A3-BFF6-61F4D90492B8} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Inc. -> Adobe) Task: {A16C06DC-3B16-470D-9982-7E4F37D3562E} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe Task: {A26F6B8A-277E-4B0E-8478-CBF4431ECC99} - System32\Tasks\OneDrive Standalone Update Task v2 => C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {A74AA1B0-33DB-4E4C-A77D-1F5A090CA98F} - System32\Tasks\Auslogics\Browser Care\Start Browser Care оn EFM_UEFM_Barrow_U logon => C:\Program Files (x86)\Auslogics\Browser Care\BrowserCare.exe (Auslogics Labs Pty Ltd -> Aus˜logics) Task: {AC76F60F-8948-4966-A8D1-44463640225C} - System32\Tasks\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {AE2040A3-6C89-4CBA-AC91-22FA6DF06E01} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures Task: {B3A3601A-8EE8-435C-97E6-528FB03536BF} - System32\Tasks\SU_AutoUpdate => C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe (IObit Information Technology -> IObit) Task: {B5186645-4127-463E-BA44-1BC50E6DF1E8} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {D6A0C6CA-7F21-4CFF-BC90-30D806B5DDC9} - pas de chemin du fichier Task: {D7C4A7D8-415E-48D0-B8D1-E2BFFCE10A3E} - pas de chemin du fichier Task: {D8F4F117-5BE3-4C84-9422-2E6FB2E82A2D} - System32\Tasks\COMODO\COMODO Telemetry {18AD3DFA-30C0-4B5F-84F7-F1870B1A4921} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe (Comodo Security Solutions, Inc. -> COMODO) Task: {DB2C4D3A-70A2-4346-8694-A377736475B0} - pas de chemin du fichier Task: {E3274CFF-4E43-4B0E-BB25-2EA972CBC80D} - System32\Tasks\WinThruster scheduled scan => J:\Photo Family\WinThruster\WinThruster.exe (Solvusoft Corporation -> Solvusoft) <==== ATTENTION Task: {E6659C28-2715-4F3C-BD3A-65F93D211249} - \WinThruster Performance Monitor -> Pas de fichier <==== ATTENTION Task: {E7951E38-B071-4399-923E-D100CA91CCEC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.) Task: {E8C97561-9117-49C5-A2FC-B3E0CA5EFD40} - System32\Tasks\CosUacRestartUnpriveleged => C:\Program Files\COMODO\cCloud\cCloud.exe (Comodo Security Solutions -> COMODO Security Solutions) Task: {EC12D87A-61F8-40E7-8D98-831A9759CA9D} - System32\Tasks\WebDiscover Browser Update Task => C:\Program Files\WebDiscoverBrowser\4.28.2\browser.exe (web discover -> WebDiscover Media) [Fichier non signé] <==== ATTENTION Task: {EF4FB9F7-5CA3-4170-B7BB-19D2274A0753} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe /NOUACCHECK Task: {F0736FFB-A28A-48C7-AE6D-DA5D91DAC68B} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => %windir%\system32\rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks Task: {F49B592A-DFFD-4210-BF2F-1545E4968E08} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe (AVAST Software s.r.o. -> AVAST Software) (Si un élément est inclus dans le fichier fixlist.txt, le fichier tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.) Task: C:\WINDOWS\Tasks\WinThruster Performance Monitor .job => J:\Photo Family\WinThruster\PerformanceMonitor.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster scheduled scan.job => J:\Photo Family\WinThruster\WinThruster.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_pp1.job => L:\WinThruster\RPCEx.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_pp2_1.job => L:\WinThruster\RPCEx.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_pp2_2.job => L:\WinThruster\RPCEx.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_pp2_3.job => L:\WinThruster\RPCEx.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_pp3_1.job => L:\WinThruster\RPCEx.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_strtp.job => L:\WinThruster\WinThruster.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\WinThruster_time.job => L:\WinThruster\WinThruster.exe <==== ATTENTION ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) WMI:subscription\__FilterToConsumerBinding->LogFileEventConsumer.Name=\"ProgramChangeConsumer\"",Filter="__EventFilter.Name=\"ProgramChangeFilter\":: WMI:subscription\__FilterToConsumerBinding->LogFileEventConsumer.Name=\"DeviceChangeConsumer\"",Filter="__EventFilter.Name=\"DeviceChangeFilter\":: WMI:subscription\__EventFilter->ProgramChangeFilter::[Query => select * from RegistryTreeChangeEvent within 10 where Hive = 'HKEY_LOCAL_MACHINE' and (RootPath='SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Uninstall' or RootPath='SOFTWARE\\Wow6432Node\\Microsoft\\Windows\\CurrentVersion\\Uninstall')] WMI:subscription\__EventFilter->DeviceChangeFilter::[Query => select * from __instanceOperationEvent within 10 where targetInstance isa 'win32_PnPEntity'] WMI:subscription\LogFileEventConsumer->ProgramChangeConsumer:: WMI:subscription\LogFileEventConsumer->DeviceChangeConsumer:: ShortcutWithArgument: C:\Users\EFM_UEFM_Barrow_U\OneDrive\Bureau\Pre_Scan_Donate.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxps://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=S3AQ8V3XRWWYN ShortcutWithArgument: C:\Users\EFM_UEFM_Barrow_U\Desktop\Pre_Scan_Donate.lnk -> C:\Program Files (x86)\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxps://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=S3AQ8V3XRWWYN ==================== Modules chargés (Avec liste blanche) ============== 2019-03-21 12:01 - 2019-01-28 13:49 - 000310632 ____C (abylonsoft_CodeSign -> ) [Fichier non signé] C:\Program Files\abylonsoft\SAKeySafe\SATCtrlSerX64.exe 2019-03-21 12:01 - 2019-01-28 13:49 - 002858344 _____ (abylonsoft_CodeSign -> ) [Fichier non signé] C:\Program Files\abylonsoft\SAKeySafe\SATCmn32x64.dll 2019-03-21 12:01 - 2019-01-28 13:49 - 000325992 _____ (abylonsoft_CodeSign -> ) [Fichier non signé] C:\Program Files\abylonsoft\SAKeySafe\SATLangx64.dll 2019-03-21 12:01 - 2019-01-28 13:50 - 002683240 _____ (abylonsoft_CodeSign -> ) [Fichier non signé] C:\Program Files\abylonsoft\SAKeySafe\SATToolsx64.dll 2019-03-21 12:01 - 2019-01-28 13:49 - 025598312 _____ (abylonsoft_CodeSign -> ) [Fichier non signé] C:\Program Files\abylonsoft\SAKeySafe\SATGUIX64.DLL 2019-04-01 11:33 - 2017-05-03 13:33 - 002276352 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxbase310u_vc_ox.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000080896 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\ziputil.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000026112 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\zlibutil.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000256512 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\jsoncpp.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000250880 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\party.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000865792 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxmsw310u_xrc_vc_ox.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 005491200 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxmsw310u_core_vc_ox.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000173056 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxbase310u_xml_vc_ox.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000083456 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\zdll.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000353792 _____ (The curl library, hxxps://curl.haxx.se/) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\libcurl.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 001538560 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxmsw310u_adv_vc_ox.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000172544 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxbase310u_net_vc_ox.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000581632 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\sqlite.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000052224 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\lzma.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000111616 _____ () [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\minizip.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 001966080 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\LIBEAY32.dll 2019-04-01 11:33 - 2017-05-03 13:33 - 000707584 _____ (wxWidgets development team) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\wxmsw310u_html_vc_ox.dll 2019-04-01 11:32 - 2017-05-03 13:33 - 000354816 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\SSLEAY32.dll 2019-04-01 11:32 - 2018-06-27 10:58 - 002135040 _____ (The curl library, hxxps://curl.haxx.se/) [Fichier non signé] c:\Program Files\Ashampoo\Ashampoo Backup 2018\bin\ash_libcurl.dll 2017-12-07 08:05 - 2017-01-13 12:10 - 000021504 ____C (Samsung Electronics) [Fichier non signé] C:\windows\system32\GripResetService.exe 2019-04-03 19:56 - 2019-04-03 19:56 - 000481200 ____C (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] C:\Program Files\LinkShellExtension\HardlinkShellExt.dll 2019-03-15 11:48 - 2018-01-29 15:59 - 007572480 _____ (Moo0) [Fichier non signé] C:\Windows\System32\ShellExtBridge\ShellExtBridge119.dll 2019-02-21 21:00 - 2019-02-21 21:00 - 000078336 ____C (Igor Pavlov) [Fichier non signé] C:\Program Files\7-Zip\7-zip.dll 2017-05-19 09:38 - 2017-05-19 09:38 - 000055808 ____C (Samsung Electronics Co., Ltd.) [Fichier non signé] C:\windows\system32\WlSarService.exe 2019-04-09 10:37 - 2017-03-14 16:51 - 001714688 ____C () [Fichier non signé] C:\Program Files\TeraCopy\TeraCopy64.dll 2018-11-09 13:10 - 2018-11-09 13:10 - 000954880 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\DecoderLib.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000588800 ____C (Red Hat Software) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\pangocairo-1.0.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000288768 ____C (Red Hat Software) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\pango-1.0.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 001328128 ____C (The GLib developer community) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\glib-2.0.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000276480 ____C (The GLib developer community) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\gobject-2.0.dll 2018-08-14 13:49 - 2018-08-14 13:49 - 000790528 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\fontconfig.dll 2018-08-14 13:49 - 2018-08-14 13:49 - 001874432 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\cairo.dll 2018-08-03 10:31 - 2018-08-03 10:31 - 000832000 ____C (MP4v2) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\libmp4v2.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000066048 ____C (Red Hat Software) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\pangowin32-1.0.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000615424 ____C (Red Hat Software) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\pangoft2-1.0.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000092672 ____C (Free Software Foundation) [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\intl.dll 2017-01-25 12:44 - 2017-01-25 12:44 - 003539968 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\libGLESv2.dll 2017-01-25 12:44 - 2017-01-25 12:44 - 000019456 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\libEGL.dll 2018-08-14 13:49 - 2018-08-14 13:49 - 001294336 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\libxml2.dll 2018-08-14 13:49 - 2018-08-14 13:49 - 000060928 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\iconv.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000252928 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\libpng16.dll 2017-11-02 15:36 - 2017-11-02 15:36 - 000086016 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\zlib1.dll 2018-08-14 13:49 - 2018-08-14 13:49 - 001041920 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\harfbuzz-vs14.dll 2018-08-17 14:20 - 2018-08-17 14:20 - 000216064 ____C () [Fichier non signé] C:\Program Files\TechSmith\Camtasia 2018\portaudio_x64.dll 2018-12-14 17:23 - 2018-12-14 17:23 - 000257085 _____ (FoxxApp/PortableAppZ.ru) [Fichier non signé] C:\PortableApps\AshampooSnap10 Portable\AshampooSnapPortable.exe 2019-02-20 09:09 - 2019-02-20 09:09 - 000150528 _____ (Microsoft Corporation) c:\windows\system32\dssvc.dll - - 000000000 _____ K:\PC Cleaner\PCCNotifications.exe 2019-04-10 06:13 - 2008-11-25 17:18 - 000892928 ____C (Free Software Foundation) [Fichier non signé] C:\Program Files (x86)\EaseUS\Todo Backup\bin\iconv.dll 2019-04-10 06:13 - 2016-03-07 18:08 - 001291264 ____C () [Fichier non signé] C:\Program Files (x86)\EaseUS\Todo Backup\bin\libxml2.dll 2019-04-10 06:14 - 2004-10-05 03:08 - 000055808 ____C () [Fichier non signé] C:\Program Files (x86)\EaseUS\Todo Backup\bin\zlib1.dll 2019-04-13 06:50 - 2019-04-13 06:50 - 000011264 _____ () [Fichier non signé] C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Temp\nsbEB55.tmp\System.dll 2019-04-13 06:50 - 2019-04-13 06:50 - 000008704 _____ () [Fichier non signé] C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Temp\nsbEB55.tmp\newadvsplash.dll 2019-04-13 06:50 - 2019-04-13 06:50 - 000029696 _____ () [Fichier non signé] C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Temp\nsbEB55.tmp\registry.dll 2019-01-10 05:18 - 2019-01-10 05:18 - 005583768 _____ (Ashampoo GmbH & Co. KG -> Ashampoo) [Fichier non signé] C:\PortableApps\AshampooSnap10 Portable\App\AshampooSnap\ash_inet2.dll 2019-04-03 19:56 - 2019-04-03 19:56 - 000454064 ____C (Hermann Schinagl -> Hermann Schinagl) [Fichier non signé] C:\Program Files\LinkShellExtension\32\HardlinkShellExt.dll 2019-03-21 09:10 - 2016-07-21 11:54 - 000137728 ____C () [Fichier non signé] C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\CBSCreateVC.dll 2019-03-21 09:10 - 2016-10-08 18:03 - 001506304 ____C () [Fichier non signé] C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\DAQExp.dll 2019-03-21 09:10 - 2016-10-08 18:04 - 000708608 ____C (Wondershare) [Fichier non signé] C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\CBSProducstInfo.dll ==================== Alternate Data Streams (Avec liste blanche) ========= (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\EFM_UEFM_Barrow_U\Documents\OTH.exe:BDU [1] ==================== Mode sans échec (Avec liste blanche) =================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CBDHSvc => ""="Service" ==================== Association (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé.) ==================== Internet Explorer sites de confiance/sensibles =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\.DEFAULT\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-3534096643-12334864-2903717510-1001\...\localhost -> localhost ==================== Hosts contenu: =============================== (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-02-23 13:35 - 2019-04-08 09:36 - 000000852 ____C C:\WINDOWS\system32\drivers\etc\hosts ==================== Autres zones ============================ (Actuellement, il n'y a pas de correction automatique pour cette section.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path: C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Paragon Software\LinuxFS for Windows\;%SYSTEMROOT%\System32\OpenSSH\ HKU\S-1-5-21-3534096643-12334864-2903717510-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Microsoft\BingDesktop\themes\2019-04-09.jpg HKU\S-1-5-21-3534096643-12334864-2903717510-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé. ==================== RèglesPare-feu (Avec liste blanche) =============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [Microsoft-Windows-DeviceManagement-deviceenroller-TCP-Out] => (Allow) %SystemRoot%\system32\deviceenroller.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{8977996E-508B-4717-AAB2-56650B40D5F8}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{5F612282-179B-4014-978B-AB46AD690BD6}] => (Allow) C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (CHENGDU YIWO Tech Development Co., Ltd. -> ) FirewallRules: [{BCF19F10-316B-4DA5-95B6-2B0BEE500A09}] => (Allow) C:\Program Files (x86)\Samsung\Samsung System Agent\SamsungSystemAgent.exe (SAMSUNG ELECTRONICS CO,.LTD. -> Samsung Electronics Co., Ltd.) FirewallRules: [{D0DF9380-2924-472B-AF24-26654428BF0C}] => (Allow) C:\Program Files\Vuze\Azureus.exe Pas de fichier FirewallRules: [{AD8B8E95-E402-41A0-B0AA-CF0556567D23}] => (Allow) C:\Program Files\Vuze\Azureus.exe Pas de fichier FirewallRules: [{43809C81-C6A0-4B26-A528-D6D39C826295}] => (Block) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) FirewallRules: [{F215B898-DBAB-4013-9CE5-2052038B8016}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) FirewallRules: [{DBCF4B5E-76C5-4BC1-AE82-BE55BCB3EE13}] => (Allow) C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) ==================== Points de restauration ========================= ATTENTION: La Restauration système est désactivée ==================== Éléments en erreur du Gestionnaire de périphériques ============= Name: Pilote OED de la technologie Intel(R) Smart Sound Description: Pilote OED de la technologie Intel(R) Smart Sound Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318} Manufacturer: Intel(R) Corporation Service: IntcOED Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erreurs du Journal des événements: ========================= Erreurs Application: ================== Error: (04/13/2019 05:42:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante opera.exe, version : 58.0.3135.127, horodatage : 0x5c9b0350 Nom du module défaillant : KERNELBASE.dll, version : 10.0.18343.1, horodatage : 0x8e076461 Code d’exception : 0xe0000008 Décalage d’erreur : 0x000000000003a2d9 ID du processus défaillant : 0x3a7c Heure de début de l’application défaillante : 0x01d4f07b5b16a3b0 Chemin d’accès de l’application défaillante : C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 71ebfb87-afa1-4060-ad09-a1b4c9ab0a69 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (04/13/2019 05:42:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante opera.exe, version : 58.0.3135.127, horodatage : 0x5c9b0350 Nom du module défaillant : KERNELBASE.dll, version : 10.0.18343.1, horodatage : 0x8e076461 Code d’exception : 0xe0000008 Décalage d’erreur : 0x000000000003a2d9 ID du processus défaillant : 0x17b0 Heure de début de l’application défaillante : 0x01d4f07b59b68b45 Chemin d’accès de l’application défaillante : C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 0c9f55d0-80db-494e-be7a-b33d213123cc Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (04/13/2019 05:42:03 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante opera.exe, version : 58.0.3135.127, horodatage : 0x5c9b0350 Nom du module défaillant : KERNELBASE.dll, version : 10.0.18343.1, horodatage : 0x8e076461 Code d’exception : 0xe0000008 Décalage d’erreur : 0x000000000003a2d9 ID du processus défaillant : 0x5d4c Heure de début de l’application défaillante : 0x01d4f20f6dbfb731 Chemin d’accès de l’application défaillante : C:\Users\EFM_UEFM_Barrow_U\AppData\Local\Programs\Opera\58.0.3135.127\opera.exe Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 1895088d-9451-4f3d-b4b5-8a8dc53201eb Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (04/13/2019 05:39:19 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (12564,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Error: (04/13/2019 05:34:29 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante YourPhone.exe, version : 1.19032.706.0, horodatage : 0x5ca7a048 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.18343.1, horodatage : 0xbe658291 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000a71f1 ID du processus défaillant : 0x3cc4 Heure de début de l’application défaillante : 0x01d4f20e6169544f Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19032.706.0_x64__8wekyb3d8bbwe\YourPhone.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : 8d393b48-41b5-4249-bb48-67ad2485bafe Nom complet du package défaillant : Microsoft.YourPhone_1.19032.706.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : App Error: (04/13/2019 05:28:17 PM) (Source: SecurityCenter) (EventID: 17) (User: ) Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Error: (04/13/2019 05:26:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante backgroundTaskHost.exe, version : 10.0.18343.1, horodatage : 0x533f8404 Nom du module défaillant : twinapi.appcore.dll, version : 10.0.18343.1, horodatage : 0xbe658291 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00000000000a71f1 ID du processus défaillant : 0x71c0 Heure de début de l’application défaillante : 0x01d4f20d4332d4b0 Chemin d’accès de l’application défaillante : C:\WINDOWS\system32\backgroundTaskHost.exe Chemin d’accès du module défaillant: C:\Windows\System32\twinapi.appcore.dll ID de rapport : eb521a61-4d85-437a-a528-c87a2ee19909 Nom complet du package défaillant : Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe ID de l’application relative au package défaillant : App Error: (04/13/2019 05:19:53 PM) (Source: ESENT) (EventID: 455) (User: ) Description: svchost (27964,R,98) TILEREPOSITORYS-1-5-18: L’erreur -1023 (0xfffffc01) s’est produite lors de l’ouverture d’un fichier journal C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log. Erreurs système: ============= Error: (04/13/2019 05:42:35 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe!App.AppXe8pdgw5syxe8pgccbk3mcn5hanwamr0e.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:34:32 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.YourPhone_1.19032.706.0_x64__8wekyb3d8bbwe!App.AppXvctmff39365zg14pgmystcwtys462fpa.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:26:33 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.OneConnect_5.1902.361.0_x64__8wekyb3d8bbwe!App.AppXe8pdgw5syxe8pgccbk3mcn5hanwamr0e.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:25:58 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: AUTORITE NT) Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070002 : Windows 10 Insider Preview 10.0.18362.30 (19h1_release) amd64 2019-04. Error: (04/13/2019 05:19:22 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.Windows.Cortana_1.12.3.18343_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:15:14 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.Windows.Cortana_1.12.3.18343_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:14:45 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.Windows.Cortana_1.12.3.18343_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (04/13/2019 05:13:56 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-810DT5O) Description: Le serveur Microsoft.Windows.Cortana_1.12.3.18343_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti. CodeIntegrity: =================================== Date: 2019-04-13 17:42:28.965 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements. Date: 2019-04-13 17:42:28.903 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-04-13 17:34:14.433 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\cssguard64.dll that did not meet the Windows signing level requirements. Date: 2019-04-13 17:34:14.412 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-04-13 17:28:18.883 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\adaware\adaware antivirus\adaware antivirus\12.6.1005.11662\AdAwareSecurityCenter.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-04-13 17:28:18.839 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\adaware\adaware antivirus\adaware antivirus\12.6.1005.11662\AdAwareSecurityCenter.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2019-04-13 17:28:18.247 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. Date: 2019-04-13 17:28:18.232 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== Processeur: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz Pourcentage de mémoire utilisée: 96% Mémoire physique - RAM - totale: 3997.93 MB Mémoire physique - RAM - disponible: 157.22 MB Mémoire virtuelle totale: 16285.93 MB Mémoire virtuelle disponible: 323.1 MB ==================== Lecteurs ================================ Drive c: () (Fixed) (Total:107.22 GB) (Free:5.39 GB) NTFS Drive e: (WD Elements) (Fixed) (Total:929.42 GB) (Free:810.94 GB) NTFS Drive g: (SFR) (CDROM) (Total:0.07 GB) (Free:0 GB) CDFS Drive h: (MULTIBOOT) (Removable) (Total:1.9 GB) (Free:0 GB) FAT32 Drive i: (COMPANION wintobootic) (Removable) (Total:30.03 GB) (Free:2.08 GB) NTFS Drive j: (SANDISK CON) (Removable) (Total:183.32 GB) (Free:176.21 GB) exFAT Drive k: (ZALMAN) (Fixed) (Total:931.47 GB) (Free:914.53 GB) NTFS \\?\Volume{9774f3c4-3c40-4d7f-8f85-9ec561793cd5}\ (Windows RE tools) (Fixed) (Total:0.49 GB) (Free:0.06 GB) NTFS \\?\Volume{ce29ef87-8ee2-4624-a514-2a4806d3b314}\ (SAMSUNG_REC2) (Fixed) (Total:10.31 GB) (Free:1.69 GB) NTFS \\?\Volume{d48a4231-6c35-4220-4173-636c65706975}\ (SAMSUNG_REC) (Fixed) (Total:1 GB) (Free:0.21 GB) FAT32 \\?\Volume{68138d28-d0bf-4e42-999d-cd62adb00eb3}\ () (Fixed) (Total:0.84 GB) (Free:0.34 GB) NTFS \\?\Volume{ed3f42c7-2cd1-4a0a-b00d-04d576fa90cf}\ () (Fixed) (Total:0 GB) (Free:0 GB) \\?\Volume{f5d73651-ee2e-4c3e-b6a3-c85b850bf9f4}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32 \\?\Volume{36ac666d-01e9-4a91-ae73-9a9df83e6502}\ (SYSTEM) (Fixed) (Total:0.35 GB) (Free:0.31 GB) FAT32 ==================== MBR & Table des partitions ================== ======================================================== Disk: 0 (Size: 119.2 GB) (Disk ID: 26EA9241) Partition: GPT. Attempted reading MBR returned 0 bytes. Could not read MBR for disk 1. ======================================================== Disk: 2 (Size: 931.5 GB) (Disk ID: 1ED6B084) Partition: GPT. ======================================================== Disk: 3 (MBR Code: Windows 7/8/10) (Size: 30 GB) (Disk ID: 25C8BCC2) Partition 1: (Active) - (Size=30 GB) - (Type=07 NTFS) ======================================================== Disk: 4 (Size: 1.9 GB) (Disk ID: 0004EEB2) Partition 1: (Active) - (Size=1.9 GB) - (Type=0C) ======================================================== Disk: 5 (MBR Code: Windows 7/8/10) (Size: 183.3 GB) (Disk ID: 0291A702) Partition 1: (Not Active) - (Size=183.3 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt ============================