Farbar Recovery Scan Tool (x64) Version: 10-10-2021
Exécuté par adrie (10-10-2021 15:28:46)
Exécuté depuis C:\Users\adrie\Desktop
Mode d'amorçage: Normal

================== Chercher Registre: "KMS" ===========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB74F625-7D25-4455-B840-7B870B5B9322}\ProgID]
""="WMSDKMSBSourcePlugin.MSBDSource.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{FB74F625-7D25-4455-B840-7B870B5B9322}\VersionIndependentProgID]
""="WMSDKMSBSourcePlugin.MSBDSource"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Components\1388E932434EA1242A73205BAD92D9CE]
"SOAP\1036"="xb'BVQ@WA$!!!!!MKKSkMSSOAP3Intl_1036<setlang"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{79EAC9D5-BAF9-11CE-8C82-00AA004BA90B}]
""="IBindStatusCallbackMsg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMSDKMSBSourcePlugin.MSBDSource]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMSDKMSBSourcePlugin.MSBDSource\CurVer]
""="WMSDKMSBSourcePlugin.MSBDSource.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WMSDKMSBSourcePlugin.MSBDSource.2]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{FB74F625-7D25-4455-B840-7B870B5B9322}\ProgID]
""="WMSDKMSBSourcePlugin.MSBDSource.2"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\CLSID\{FB74F625-7D25-4455-B840-7B870B5B9322}\VersionIndependentProgID]
""="WMSDKMSBSourcePlugin.MSBDSource"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\WOW6432Node\Interface\{79EAC9D5-BAF9-11CE-8C82-00AA004BA90B}]
""="IBindStatusCallbackMsg"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\OfficeSoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/licenserenewal/1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PolicyManager\default\Licensing\DisallowKMSClientOnlineAVSValidation]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\Activation\Data\12f]
"ActivationKey"="v9x1pvvv0jb3yhcr13t6yndqffye47m19kkmssqqbedsmr5w74b0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\Activation\Data\12f]
"_IndexKeys"="ActivationKey\v9x1pvvv0jb3yhcr13t6yndqffye47m19kkmssqqbedsmr5w74b0"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\Activation\Index\ActivationKey\v9x1pvvv0jb3yhcr13t6yndqffye47m19kkmssqqbedsmr5w74b0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Data\a50]
"ProgID"="AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Data\a50]
"_IndexKeys"="Extension\16a4\a50
FileType\.img\a50
FileTypeAndExtension\.img^16a4
ProgID\AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a\a50"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Data\a57]
"ProgID"="AppXg66zk70wd0jfpz0af805kms0ecy475ss"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Data\a57]
"_IndexKeys"="Extension\16ab\a57
FileType\.mef\a57
FileTypeAndExtension\.mef^16ab
ProgID\AppXg66zk70wd0jfpz0af805kms0ecy475ss\a57"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Index\ProgID\AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\AppModel\StateRepository\Cache\FileTypeAssociation\Index\ProgID\AppXg66zk70wd0jfpz0af805kms0ecy475ss]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ClipSVC\EFI]
"EFILocations"="{ec64c840-320c-458c-b24a-1e4d4dd687ee};Keyholders;{ec64c840-320c-458c-b24a-1e4d4dd687ee};KMSVNextLicense"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/collector/kms/1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/1.0]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SoftwareProtectionPlatform\Plugins\Objects\msft:spp/volume/services/kms/activationinfo/1.0]
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\b6d87cc5_0]
""="{2}.\\?\hdaudio#func_01&ven_10ec&dev_0255&subsys_10251259&rev_1000#{6994ad04-93ef-11d0-a3cc-00a0c9223196}\singlelineouttopo/00010001|\Device\HarddiskVolume4\Users\adrie\Desktop\KMSAuto.Net.Portable.v1.4.2\KMSAuto Net.exe%b{00000000-0000-0000-0000-000000000000}"
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Store]
"C:\Users\adrie\Desktop\KMSAuto.Net.Portable.v1.4.2\KMSAuto Net.exe"="0x534143500100000000000000070000002800000080AA89003E388A0001000000000000000000000A75220000BFA2139DEDD1D30100000000000000000200000028000000000000000000004000000000000000000000000000000000E71F0100000000000200000002000000"
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\.img\OpenWithProgids]
"AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a"=""
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\.mef\OpenWithProgids]
"AppXg66zk70wd0jfpz0af805kms0ecy475ss"=""
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a]
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\AppXg66zk70wd0jfpz0af805kms0ecy475ss]
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.5229.0_x64__ypz87dpxkv292\PhotoDirector\Capabilities\FileAssociations]
".img"="AppX7xjewgkmsjyt7bfn3ges6ptbhe1s5a4a"
[HKEY_USERS\S-1-5-21-324553761-3106424349-3813218798-1001\SOFTWARE\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppModel\Repository\Packages\CyberLinkCorp.ac.PhotoDirectorforacerDesktop_8.0.5229.0_x64__ypz87dpxkv292\PhotoDirector\Capabilities\FileAssociations]
".mef"="AppXg66zk70wd0jfpz0af805kms0ecy475ss"

====== Fin de Chercher ======