Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 17-11-2020
Exécuté par robin (20-11-2020 13:36:37)
Exécuté depuis C:\Users\Admin\Desktop
Windows 10 Home Version 2004 19041.630 (X64) (2020-10-19 09:59:04)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-608857956-3466181659-1450483108-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-608857956-3466181659-1450483108-503 - Limited - Disabled)
Invité (S-1-5-21-608857956-3466181659-1450483108-501 - Limited - Disabled)
robin (S-1-5-21-608857956-3466181659-1450483108-1001 - Administrator - Enabled) => C:\Users\Admin
WDAGUtilityAccount (S-1-5-21-608857956-3466181659-1450483108-504 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

Adobe Photoshop 2020 (HKLM-x32\...\PHSP_21_0) (Version: 21.0 - Adobe Systems Incorporated)
Adobe Premiere Pro 2020 (HKLM-x32\...\PPRO_14_0) (Version: 14.0 - Adobe Systems Incorporated)
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.4.8 - Electronic Arts, Inc.)
Assassin's Creed III (HKLM-x32\...\Uplay Install 54) (Version: - Ubisoft)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.63 - Piriform)
cFosSpeed 11.05 (HKLM\...\cFosSpeed) (Version: 11.05 - cFos Software GmbH, Bonn)
CPUID CPU-Z MSI 1.89 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.89 - CPUID, Inc.)
CWClient version 1.0 (HKLM-x32\...\{4D64BA0F-CF7B-4A53-AA81-6E5F33510B04}_is1) (Version: 1.0 - AbsolutSoft)
Discord (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Discord) (Version: 0.0.308 - Discord Inc.)
Dynamic Application Loader Host Interface Service (HKLM\...\{D492644D-815B-48F6-B079-6E1FE92FCFDE}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.0.4 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{e06b69bc-1a99-4b34-906d-fb45d030cfa6}) (Version: 1.0.0.4 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{d8516682-de60-4332-ad6f-49373754b677}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_SSS_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.1.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_SSS_HAL (HKLM-x32\...\{20610ecc-e094-423e-af0c-7d0bcfe117e9}) (Version: 1.0.1.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Azeroth_HAL (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Azeroth_HAL (HKLM-x32\...\{b598bfc8-2eb9-4a18-94ae-abe59777bfc8}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{60BEDB5A-2186-461B-A562-E40088BCB0C6}) (Version: 1.1.220.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FiveM (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\CitizenFX_FiveM) (Version: - Cfx.re)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.198 - Google LLC)
Intel(R) Extreme Tuning Utility (HKLM-x32\...\{7368d41d-24b9-4b1a-aef4-862e2571fa92}) (Version: 6.5.1.371 - Intel Corporation)
Intel(R) Extreme Tuning Utility (HKLM-x32\...\{F9C5DC70-944D-48A7-B312-4F4D9A04B8AF}) (Version: 6.5.1.371 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1946.12.0.1328 - Intel Corporation)
Intel(R) Network Connections 23.2.0.1006 (HKLM\...\PROSetDX) (Version: 23.2.0.1006 - Intel)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.369.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{aa81bdf2-96a6-4400-a596-c7d1916ce9f7}) (Version: 1.50.369.0 - Intel Corporation) Hidden
Java 8 Update 251 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180251F0}) (Version: 8.0.2510.8 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
League of Legends (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Logiciel pour périphérique à chipset Intel® (HKLM-x32\...\{c4a581e8-a702-448c-80c7-4b6192985db2}) (Version: 10.1.18228.8176 - Intel(R) Corporation)
Logitech - Assistant pour jeux vidéo 9.00 (HKLM\...\Logitech Gaming Software) (Version: 9.00.42 - Logitech Inc.)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: - Logitech)
Malwarebytes version 4.1.0.56 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.0.56 - Malwarebytes)
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 86.0.622.69 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{8e24fb65-31aa-446d-9c3e-35c5e11cb367}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{F6678473-0198-46D0-A88F-2A247E6FA03C}) (Version: 1.0.0.0 - Mojang)
Mises à jour NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation)
Molotov (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Molotov) (Version: 4.3.0 - Molotov)
MSI SDK (HKLM-x32\...\{EE7D557C-3AE7-4348-8DCA-3A89790D0002}}_is1) (Version: 2.2020.1015.00 - MSI)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA Pilote audio HD : 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA Pilote graphique 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA USBC Driver 1.45.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.45.831.832 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 24.0.3 - OBS Project)
Origin (HKLM-x32\...\Origin) (Version: 10.5.87.45080 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.158.0.11 - Overwolf Ltd.)
Pactify Launcher - Minecraft (HKLM\...\{1085BB5E-B5E1-4146-9DA7-EA0A2D9D778E}_is1) (Version: 2.7.0-win64 - Pactify)
Paladium Launcher 1.0.0-beta.3 (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\{47e8ef43-675f-53e8-b279-dc37a3f5eb19}) (Version: 1.0.0-beta.3 - Paladium)
Paladium Launcher 1.0.0-beta.4 (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\47e8ef43-675f-53e8-b279-dc37a3f5eb19) (Version: 1.0.0-beta.4 - Paladium)
Panneau de configuration NVIDIA 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 456.71 - NVIDIA Corporation) Hidden
Porofessor.gg (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Overwolf_pibhbkkgefgheeglaeemkkfjlhidhcedalapdggh) (Version: 2.5.51 - Overwolf app)
R6 Tracker (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Overwolf_ekhcackbfanheaceicpfmhmmeojplojfgkmfnpjo) (Version: 2.2.8 - Overwolf app)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8945.1 - Realtek Semiconductor Corp.)
Revolution software v1.63 (HKLM-x32\...\{60DD0941-3BD2-48BA-B9B2-277489968165}) (Version: 1.63 - Nacon)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Roblox Player for robin (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\roblox-player) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.31.304 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.7.4 - Rockstar Games)
SIMDashboardServer (HKLM-x32\...\{76F91869-656D-49E2-A9AF-0583700AFEF5}) (Version: 3.3.0.0 - stryder-it)
Spotify (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Spotify) (Version: 1.1.46.916.g416cacf1 - Spotify AB)
StarCraft II (HKLM-x32\...\StarCraft II) (Version: - Blizzard Entertainment)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.3 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.11.6 - TeamViewer)
The Crew (Worldwide) (HKLM-x32\...\Uplay Install 413) (Version: - Ubisoft)
Tom Clancy's Rainbow Six Siege (HKLM-x32\...\Uplay Install 635) (Version: - Ubisoft Montreal)
Tom Clancy's The Division (HKLM-x32\...\Uplay Install 568) (Version: - Ubisoft)
Trackmania (HKLM-x32\...\Uplay Install 5595) (Version: - Ubisoft)
Twitch (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 92.0 - Ubisoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
VALORANT (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WarCraft III version 1.26a (HKLM-x32\...\WarCraft III_is1) (Version: 1.26a - Blizzard Entertainment)
Warface My.Com (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\Warface My.Com) (Version: 1.0 - MY.GAMES)
WinRAR 5.70 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
ZombsRoyale.io (HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\519338998791929866) (Version: - )

Packages:
=========
Centre de configuration des graphiques Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2765.0_x64__8j3eq9eme6ctt [2020-08-29] (INTEL CORP) [Startup Task]
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-02] (Microsoft Corporation)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.5.201.0_x64__rz1tebttyb220 [2020-09-27] (Dolby Laboratories)
DragonCenter -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.DragonCenter_2.0.82.0_x64__kzh8wxbdkxb8p [2020-10-17] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
Hill Climb Racing -> C:\Program Files\WindowsApps\FINGERSOFT.HILLCLIMBRACING_1.41.1.0_x86__r6rtpscs7gwyg [2020-08-02] (Fingersoft) [MS Ad]
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.2.0_neutral__8xx8rvfyw5nnt [2020-05-05] (Instagram)
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_730.2.121.0_x64__8xx8rvfyw5nnt [2020-10-16] (Facebook Inc) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-23] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-23] (Microsoft Corporation) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-30] (Netflix, Inc.)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.21.1.0_x64__nfy108tqq3p12 [2020-08-29] (Thumbmunkeys Ltd)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.14.225.0_x64__dt26b99r8h8gj [2020-11-05] (Realtek Semiconductor Corp)

==================== Personnalisé CLSID (Avec liste blanche): ==============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-12-09] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Admin\AppData\Local\MEGAsync\ShellExtX64.dll [2020-09-28] (Mega Limited -> )
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2019-12-09] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Avec liste blanche) ====================

==================== Raccourcis & WMI ========================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

ShortcutWithArgument: C:\Users\Admin\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Modules chargés (Avec liste blanche) =============

2020-03-24 18:43 - 2017-08-03 04:48 - 000237568 _____ () [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LEDControl.dll
2020-03-24 18:43 - 2019-09-27 13:08 - 000037376 _____ () [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Phison.dll
2019-10-25 16:49 - 2020-02-12 07:42 - 000015360 _____ () [Fichier non signé] C:\Program Files (x86)\Origin\libEGL.DLL
2019-10-25 16:49 - 2020-02-12 07:42 - 003090944 _____ () [Fichier non signé] C:\Program Files (x86)\Origin\libGLESv2.dll
2019-07-27 16:08 - 2019-07-27 16:09 - 098275328 _____ () [Fichier non signé] D:\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
2019-07-27 16:09 - 2019-07-27 16:09 - 000092672 _____ () [Fichier non signé] D:\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
2019-07-27 16:09 - 2019-07-27 16:09 - 003922432 _____ () [Fichier non signé] D:\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
2020-02-24 16:38 - 2020-02-24 16:38 - 000176128 _____ (ENE Technology inc.) [Fichier non signé] C:\Program Files\ENE\Aac_ENE_EHD_SSS_HAL\AacHal_x86.dll
2018-05-03 11:30 - 2018-05-03 11:30 - 000349696 _____ (Intel(R) Corporation) [Fichier non signé] C:\Windows\system32\NCS2Setp.dll
2020-08-29 10:47 - 2020-08-29 10:49 - 040592896 ____X (Intel) [Fichier non signé] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2765.0_x64__8j3eq9eme6ctt\IGCC.dll
2020-03-24 18:43 - 2018-04-04 05:22 - 000053248 _____ (MS) [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\MsIo32.dll
2020-03-24 18:43 - 2018-08-31 06:26 - 000053760 _____ (MS) [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\MsIo32_Galax.dll
2019-07-27 16:08 - 2019-07-27 16:08 - 000547840 _____ (The Chromium Authors) [Fichier non signé] D:\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll
2019-10-25 16:49 - 2020-03-16 14:05 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-10-25 16:49 - 2020-03-16 14:06 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\Origin\ssleay32.dll
2018-04-06 19:29 - 2018-04-06 19:29 - 002286747 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files\Logitech Gaming Software\LIBEAY32.dll
2018-04-06 19:29 - 2018-04-06 19:29 - 000416627 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files\Logitech Gaming Software\ssleay32.dll
2019-10-25 16:49 - 2020-02-12 07:42 - 001611264 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 005487104 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Core.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 005841920 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Gui.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 001179136 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Network.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000207360 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Positioning.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000310272 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5PrintSupport.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 003513344 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Qml.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 003390976 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Quick.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000068096 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5QuickWidgets.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000116224 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5WebChannel.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 054071296 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5WebEngineCore.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000211456 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5WebEngineWidgets.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000146432 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 005089792 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2020-10-30 12:08 - 2020-02-12 07:42 - 000184832 _____ (The Qt Company Ltd) [Fichier non signé] C:\Program Files (x86)\Origin\Qt5Xml.dll
2020-10-18 11:25 - 2016-10-04 03:43 - 000399872 _____ (TODO: <公司名稱>) [Fichier non signé] C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Lib\SDKDLL.dll

==================== Alternate Data Streams (Avec liste blanche) ========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [482]

==================== Mode sans échec (Avec liste blanche) ==================

==================== Association (Avec liste blanche) =================

==================== Internet Explorer (Avec liste blanche) ==========

HKU\S-1-5-21-608857956-3466181659-1450483108-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
SearchScopes: HKU\S-1-5-21-608857956-3466181659-1450483108-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
SearchScopes: HKU\S-1-5-21-608857956-3466181659-1450483108-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxps://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02&pc=UE04
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_251\bin\ssv.dll [2020-04-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_251\bin\jp2ssv.dll [2020-04-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts contenu: =========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2018-09-15 08:31 - 2020-11-20 10:07 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2019-07-05 11:49 - 2020-02-07 18:37 - 000000503 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
68.137.59 Robin.mshome.net # 2020 2 5 14 10 5 50 168

==================== Autres zones ===========================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\iCLS\;C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Admin\Desktop\Photos papa2\1970-speedkore-dodge-charger-evolution_100676790_h.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Le Pare-feu est activé.

Network Binding:
=============
Ethernet 2: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
Wi-Fi 2: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
Ethernet 3: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

HKLM\...\StartupApproved\Run: => "Wondershare Helper Compact.exe"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "SDTray"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\StartupFolder: => "MEGAsync.lnk"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\StartupFolder: => "RUNDLL32.EXE.lnk"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "Chromium"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "SIMDashboardServer"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "Spybot-S&D Cleaning"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "Voicemod"
HKU\S-1-5-21-608857956-3466181659-1450483108-1001\...\StartupApproved\Run: => "7A8A0BF1C97243271ECFE5D422E97B6912735D56._service_run"

==================== RèglesPare-feu (Avec liste blanche) ================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [UDP Query User{1B202388-E2FB-4A18-9E96-0BD25DCFE4D0}C:\program files\windowsapps\facebook.317180b0bb486_730.2.121.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_730.2.121.0_x64__8xx8rvfyw5nnt\app\messenger.exe (Facebook, Inc. -> Facebook, Inc.)
FirewallRules: [TCP Query User{373BDB2D-E4E4-455A-8021-169B8F0EDA5F}C:\program files\windowsapps\facebook.317180b0bb486_730.2.121.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_730.2.121.0_x64__8xx8rvfyw5nnt\app\messenger.exe (Facebook, Inc. -> Facebook, Inc.)
FirewallRules: [UDP Query User{646CA087-1483-4E59-9CF8-8FEB8BE56C3D}C:\program files\windowsapps\facebook.317180b0bb486_720.6.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_720.6.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [TCP Query User{2E87C95E-CB67-4F12-8247-D1F2AB9308C2}C:\program files\windowsapps\facebook.317180b0bb486_720.6.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_720.6.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [UDP Query User{18A5188F-C96E-46CF-ADDF-EBAFD4D7AE21}C:\program files\windowsapps\facebook.317180b0bb486_710.5.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_710.5.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [TCP Query User{0F082942-96C0-4B8F-AFBB-A5A105027F5A}C:\program files\windowsapps\facebook.317180b0bb486_710.5.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_710.5.119.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [UDP Query User{8E7D09EB-4EC8-4F3E-B305-C8FFF760E7D8}C:\users\admin\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\admin\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{1BAD3B2C-FC7A-480F-AD40-F40BA984DF0E}C:\users\admin\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe] => (Allow) C:\users\admin\twitch\minecraft\install\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{9B88916F-F198-4AB3-9087-4AB7C9E936F4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [Fichier non signé]
FirewallRules: [{B870528D-461D-43CF-BF7E-B7D3156F571B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [Fichier non signé]
FirewallRules: [UDP Query User{9AE8150B-1D62-453E-8FE1-B46B277C6487}C:\program files\windowsapps\facebook.317180b0bb486_700.7.117.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_700.7.117.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [TCP Query User{04BF61DC-EDA5-45B7-A3DB-B0DE4DF13129}C:\program files\windowsapps\facebook.317180b0bb486_700.7.117.0_x64__8xx8rvfyw5nnt\app\messenger.exe] => (Allow) C:\program files\windowsapps\facebook.317180b0bb486_700.7.117.0_x64__8xx8rvfyw5nnt\app\messenger.exe => Pas de fichier
FirewallRules: [UDP Query User{42FB72E7-DA38-4F69-9397-91E776E4E88F}C:\users\admin\desktop\among.us.v2020.9.1s\among us\among us.exe] => (Allow) C:\users\admin\desktop\among.us.v2020.9.1s\among us\among us.exe => Pas de fichier
FirewallRules: [TCP Query User{65101456-AE6C-4828-80FF-BDC039CE4A21}C:\users\admin\desktop\among.us.v2020.9.1s\among us\among us.exe] => (Allow) C:\users\admin\desktop\among.us.v2020.9.1s\among us\among us.exe => Pas de fichier
FirewallRules: [{66161412-4329-47EB-9E06-B099D7AFE372}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => Pas de fichier
FirewallRules: [UDP Query User{74692F10-4836-4D0D-85CF-652FF7E3FB68}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{B8458605-A846-404C-9DA6-1FF178370975}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{3E00745D-BC82-4DC6-BDAB-B95DE3E1D324}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's The Division\TheDivision.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{968C146B-8C62-4770-8C4B-2A070447549C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe (Team Psykskallar) [Fichier non signé]
FirewallRules: [{F424CDA5-E60F-43E3-BE03-B968B91B2EA1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Cry of Fear\CoFLaunchApp.exe (Team Psykskallar) [Fichier non signé]
FirewallRules: [UDP Query User{F78CB56E-800B-40A1-9008-793FEEE2409C}C:\users\admin\appdata\local\programs\opera gx\68.0.3618.206\opera.exe] => (Block) C:\users\admin\appdata\local\programs\opera gx\68.0.3618.206\opera.exe => Pas de fichier
FirewallRules: [TCP Query User{1DF6B633-9C89-4B36-A612-66C4272BA93F}C:\users\admin\appdata\local\programs\opera gx\68.0.3618.206\opera.exe] => (Block) C:\users\admin\appdata\local\programs\opera gx\68.0.3618.206\opera.exe => Pas de fichier
FirewallRules: [{BC180064-0C1F-4283-817D-4FBCFA313978}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\StickFightTheGame\StickFight.exe () [Fichier non signé]
FirewallRules: [{FF0A72B9-2C6A-4E5D-BEE8-15784A7952AB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\StickFightTheGame\StickFight.exe () [Fichier non signé]
FirewallRules: [UDP Query User{A831FA18-32A9-4485-960B-31A5810DE7F9}D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix_vulkan.exe] => (Allow) D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix_vulkan.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{1EA428B3-F663-4781-8919-3947986D2086}D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix_vulkan.exe] => (Allow) D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix_vulkan.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{A10CA21D-2311-4EA7-A51D-85A9270B56B9}C:\users\admin\appdata\local\programs\opera gx\68.0.3618.197\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\68.0.3618.197\opera.exe => Pas de fichier
FirewallRules: [TCP Query User{C488F9AE-AB39-4F39-A032-7E2FDF7D0CE9}C:\users\admin\appdata\local\programs\opera gx\68.0.3618.197\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\68.0.3618.197\opera.exe => Pas de fichier
FirewallRules: [UDP Query User{F1A6E005-D26E-4A20-BB26-6094EC76FCBA}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_chromebrowser] => (Allow) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_chromebrowser (Intricus Software Limited -> Cfx.re)
FirewallRules: [TCP Query User{BEFDFAD4-1295-420A-AD27-DBB661D119E0}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_chromebrowser] => (Allow) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_chromebrowser (Intricus Software Limited -> Cfx.re)
FirewallRules: [UDP Query User{F606FB0F-6D23-4D73-8D42-FEC051A48AD5}D:\theescapists2\theescapists2.exe] => (Allow) D:\theescapists2\theescapists2.exe () [Fichier non signé]
FirewallRules: [TCP Query User{1DAD9F13-38F0-42FA-8A4A-013D368F3118}D:\theescapists2\theescapists2.exe] => (Allow) D:\theescapists2\theescapists2.exe () [Fichier non signé]
FirewallRules: [UDP Query User{A2EDF69E-5509-4F8C-A6DF-2C2E903C4F7A}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe
FirewallRules: [TCP Query User{37E176D8-6129-4A4E-BE75-1EC3CB5DD7D0}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe
FirewallRules: [UDP Query User{6547C54C-2B99-4C57-A12C-B42F7E0D0E4D}D:\theescapists2\theescapists2.exe] => (Allow) D:\theescapists2\theescapists2.exe () [Fichier non signé]
FirewallRules: [TCP Query User{3DD749E9-0B6B-42AF-840B-130903609952}D:\theescapists2\theescapists2.exe] => (Allow) D:\theescapists2\theescapists2.exe () [Fichier non signé]
FirewallRules: [{1E0B9451-51AB-4B06-ADD4-A4B4A31E47B9}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6sp.exe (Valve Corp. -> Activision Publishing Inc.) [Fichier non signé]
FirewallRules: [{28931527-5812-4CB0-AAA8-5B0EDE2AFEDA}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6sp.exe (Valve Corp. -> Activision Publishing Inc.) [Fichier non signé]
FirewallRules: [UDP Query User{6A598356-E408-489E-A1DC-1DB1DE7DBAE8}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe
FirewallRules: [TCP Query User{A4C2DEC2-8690-451B-8DAC-BBE1837DD794}C:\program files\java\jre1.8.0_251\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_251\bin\javaw.exe
FirewallRules: [UDP Query User{B6C2C62D-BC39-4DC7-B801-763D6F14B4C6}D:\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\runtime\jre-x64\bin\javaw.exe
FirewallRules: [TCP Query User{B85BDEF5-5462-42AA-86BD-A18396CBB3EC}D:\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\runtime\jre-x64\bin\javaw.exe
FirewallRules: [UDP Query User{384B51F4-2137-4ACC-80CF-02E66F95F6D3}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Block) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (Intricus Software Limited -> Cfx.re) [Fichier non signé]
FirewallRules: [TCP Query User{EAC54FAE-64AC-41DE-9B2F-C8EF59D595DF}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Block) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (Intricus Software Limited -> Cfx.re) [Fichier non signé]
FirewallRules: [UDP Query User{6919EC30-F382-4BD8-B7FD-99BEF659FCD2}D:\arksurvivalevolved\shootergame\binaries\win64\shootergame.exe] => (Allow) D:\arksurvivalevolved\shootergame\binaries\win64\shootergame.exe => Pas de fichier
FirewallRules: [TCP Query User{1C36E187-8467-4420-AB4C-EA97D7FFEC57}D:\arksurvivalevolved\shootergame\binaries\win64\shootergame.exe] => (Allow) D:\arksurvivalevolved\shootergame\binaries\win64\shootergame.exe => Pas de fichier
FirewallRules: [{55DFB28F-278D-477A-832E-5F44CF878B9A}] => (Allow) D:\Ubisoft Game Launcher\games\Trackmania\trackmania.exe (NADEO SASU -> Nadeo)
FirewallRules: [{821F1120-97D9-4C74-9014-07EB4DB4A2C0}] => (Allow) D:\Ubisoft Game Launcher\games\Trackmania\trackmania.exe (NADEO SASU -> Nadeo)
FirewallRules: [UDP Query User{C9159A71-F09E-4E9C-9DA3-0D54E6338853}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{2EDC1CF0-3FE6-48AE-8582-EA7F047C295B}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{82213265-9BBF-44B6-B2F0-D403DD8197CE}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [TCP Query User{75BCD16B-8E50-4B40-AD67-9F6E31DFCA44}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{3978361B-9739-4F34-BC16-A54A1AF53094}D:\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{7CBD828A-7509-4D4C-AC83-ED7D631CD1E8}D:\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{6FDED753-3FA5-4B88-BA0F-2AEDA5DB68E0}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (Intricus Software Limited -> Cfx.re) [Fichier non signé]
FirewallRules: [TCP Query User{734FA720-36EC-4D37-956F-E47D018B08D7}C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe] => (Allow) C:\users\admin\appdata\local\fivem\fivem.app\cache\subprocess\fivem_gtaprocess.exe (Intricus Software Limited -> Cfx.re) [Fichier non signé]
FirewallRules: [{5E7B396C-4E76-4326-98A2-362867F689C4}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6zm.exe (Valve Corp. -> Activision Publishing Inc.) [Fichier non signé]
FirewallRules: [{7936531D-EFBC-40EA-B346-D120E0F4C7C3}] => (Allow) D:\SteamLibrary\steamapps\common\Call of Duty Black Ops II\t6zm.exe (Valve Corp. -> Activision Publishing Inc.) [Fichier non signé]
FirewallRules: [UDP Query User{B85C1742-37E6-4DA1-A48A-3FF72FBB898C}D:\teamspeak\ts3client_win64.exe] => (Allow) D:\teamspeak\ts3client_win64.exe (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH)
FirewallRules: [TCP Query User{259C6704-36E8-4311-B142-EF6CBFB07025}D:\teamspeak\ts3client_win64.exe] => (Allow) D:\teamspeak\ts3client_win64.exe (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH)
FirewallRules: [{6F6181E0-D2C4-4051-BAC1-CCD42F7140FF}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{7264A568-8977-4D87-A6D5-E1B92029703A}] => (Allow) D:\SteamLibrary\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{80990904-D3FC-4474-8B8C-9AE27854FD38}] => (Allow) D:\SteamLibrary\steamapps\common\Just Cause 3\JustCause3.exe () [Fichier non signé]
FirewallRules: [{9835F358-9CDA-4229-AF92-29FB039E285A}] => (Allow) D:\SteamLibrary\steamapps\common\Just Cause 3\JustCause3.exe () [Fichier non signé]
FirewallRules: [{BF133378-9365-49EE-97CD-B28AF76E8091}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{E10DD667-ED0D-4D69-99BC-5756C6712820}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{8A5728C1-42F5-41AA-85F3-4C3779ED4C7D}] => (Allow) D:\SteamLibrary\steamapps\common\Unturned\Unturned.exe (Smartly Dressed Games Ltd. -> ) [Fichier non signé]
FirewallRules: [{2FC0E47A-A855-4C83-B7F6-BFA341A4B68B}] => (Allow) D:\SteamLibrary\steamapps\common\Unturned\Unturned.exe (Smartly Dressed Games Ltd. -> ) [Fichier non signé]
FirewallRules: [{EB894C66-479A-4EA4-AF52-2F98B687F8F9}] => (Allow) D:\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{91F73422-18BE-4737-B714-39FE940B637E}] => (Allow) D:\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{5CCA9C41-00E6-467E-8470-7C88F9F2C9DE}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{1C714F35-39D1-4B87-B82D-C020855E706E}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{89BFEE0E-393D-45FD-BB1B-E50224BCF8E2}] => (Allow) C:\WINDOWS\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{B8E56EA0-BE2F-4C5F-B6A2-DE0E5D157BE2}] => (Allow) C:\Program Files (x86)\SIMDashboardServer\SIMDashboardServer.exe (Christian Hausmann -> stryder-it)
FirewallRules: [{14666B8B-6F0D-4590-8EAE-547E467DB945}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [{451AD3C5-DB5F-4CA0-9C8A-9FBECB81CF83}] => (Allow) D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe (Valve -> )
FirewallRules: [UDP Query User{B5644007-B1EB-4DC6-957D-5B1750A015A0}C:\program files\pactify launcher\pactify.exe] => (Allow) C:\program files\pactify launcher\pactify.exe => Pas de fichier
FirewallRules: [TCP Query User{9F5AAA48-2C16-4195-9B31-8D74543C1F11}C:\program files\pactify launcher\pactify.exe] => (Allow) C:\program files\pactify launcher\pactify.exe => Pas de fichier
FirewallRules: [UDP Query User{06557B7D-A664-4540-9C1D-BDC1A3CE6D28}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{5DE8DAC0-B4CD-4CFB-914A-EA0A5F978160}D:\origin\apex\r5apex.exe] => (Allow) D:\origin\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [{C1F43C43-78DC-4212-9747-7E0E260C3A11}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{DE2AE481-6CAE-4941-8EFA-3A592D2BDD70}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{BE21801A-B4DF-4D6A-AED4-0539F0A011E7}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{1BFFA68E-115B-472F-997C-C5EA8E166551}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{B3E5B3A4-3018-40E8-B0D1-5A90060515EE}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FC0A7E9F-D48D-4CBD-93EB-7A26144753C8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{B0F49A1B-BAF9-40E6-B5FC-57C6BFD92093}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{B31F162E-085B-4B29-A7FC-878A46A8D70A}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{E6DF6032-EC1F-4EE0-941F-7765E3CFC6F9}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{21C96DE7-A71F-432C-B209-9BC5AEBFB9AE}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{F8E04DED-DEC4-444A-82A1-C0E1129DF1E2}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FA10F7DD-FBA9-473E-9CEA-3840988C37BB}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B1B12ADA-0E1D-4181-8444-8183413E5BB3}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{88A8B9EC-9F5A-4FAD-A243-6486BD6BA7F3}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{620A5A03-D05E-4D4B-A039-1F7D8BB2CECD}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [UDP Query User{DD029FCB-D882-4A3D-BDC4-A7426CD2F37F}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe (Logitech Inc -> Logitech Inc.)
FirewallRules: [{88215BBC-CFE3-4911-B912-86E8E19F7F28}] => (Allow) D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe () [Fichier non signé]
FirewallRules: [{F90A427F-7E54-4334-913C-35458B29C765}] => (Allow) D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe () [Fichier non signé]
FirewallRules: [TCP Query User{AA572032-DE79-402E-8134-EC9BF0862223}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{932CD692-BB70-4244-BB1B-99B9BD71F2ED}C:\users\admin\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\admin\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{49AA874A-0BA5-4BBA-9447-806D64437261}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe => Pas de fichier
FirewallRules: [UDP Query User{1874DA7A-09AE-4822-A3C4-B929DF0A92A7}D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win64\paladins.exe => Pas de fichier
FirewallRules: [{A6E89895-483B-460C-A052-7B205F0FE74A}] => (Allow) D:\Ubisoft Game Launcher\games\The Crew (Worldwide)\TheCrew.exe (Shanghai Ubi Computer Software Co Ltd -> UBISoft)
FirewallRules: [{7D3F6660-B776-4622-9494-E1F7C2B1241E}] => (Allow) D:\Ubisoft Game Launcher\games\The Crew (Worldwide)\TheCrew.exe (Shanghai Ubi Computer Software Co Ltd -> UBISoft)
FirewallRules: [{5FCB68A9-DD05-43AC-846C-D550AF09F6F1}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{D2AE62DD-3251-48E0-8627-8F599A459B96}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{733F01CD-B217-4C5A-A172-2A650C51DF4E}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{5B8C0BD5-FF99-4FE0-9E3F-DED9C61703BB}] => (Allow) D:\Ubisoft Game Launcher\games\Tom Clancy's Rainbow Six Siege\RainbowSix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [TCP Query User{1E3A8F62-1592-41A6-925F-D016342C0E66}D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix.exe] => (Allow) D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [UDP Query User{35272459-E80F-4C60-A04B-95347F5C7369}D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix.exe] => (Allow) D:\ubisoft game launcher\games\tom clancy's rainbow six siege\rainbowsix.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{C702D621-7E36-4DBF-A748-7393DC774660}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{EB98C34B-2E28-4536-AD5C-38F61B63B795}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x64\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{70ED04B2-BF18-4E56-A894-79090C3B1EAF}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{EDB1F53E-F036-4CE5-972B-43B08FA9DCC5}] => (Allow) D:\SteamLibrary\steamapps\common\Farming Simulator 15\x86\FarmingSimulator2015Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{94C75816-9400-40E9-A831-F2F7D154AEB8}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe => Pas de fichier
FirewallRules: [{F4157132-DA24-44B5-925A-9D941447637D}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe => Pas de fichier
FirewallRules: [TCP Query User{599F2FF8-C037-4910-AAC2-340F0B781CF3}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{6145F538-539D-4925-96B3-AE4E70F1B63D}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{41804999-6EF0-4835-A434-19FFC4AC61FD}] => (Allow) D:\Origin\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{09B0A4D9-C9DC-4566-9E49-1BDD479D7BAA}] => (Allow) D:\Origin\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{1CF5578C-7F9E-4B8F-A00A-4CCFED145FC7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [Fichier non signé]
FirewallRules: [{7697901C-3635-4D4C-B71C-2024FD0C7F53}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [Fichier non signé]
FirewallRules: [TCP Query User{AFDDD32C-6571-4F6B-8C57-0FF942A3655F}D:\snowrunner\en_us\sources\bin\snowrunner.exe] => (Block) D:\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [UDP Query User{BB81AF64-9173-4E55-B152-81DE1CD8447A}D:\snowrunner\en_us\sources\bin\snowrunner.exe] => (Block) D:\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [{0302BF5F-F94A-407D-846B-11DB419A1399}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{968FD740-CEE4-4106-9BD1-BFB98E7E1DB5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{13E9E01B-04E9-49F2-91F1-B4A5FB1DB8F5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{ABC48CF6-688D-4F33-BCCF-1C81AA9913EF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{FD367353-4774-4A35-8F7D-7ECBCF2D8D6A}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.302\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.302\opera.exe => Pas de fichier
FirewallRules: [UDP Query User{919AFD44-7010-4906-A7C0-F287FBE120FB}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.302\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.302\opera.exe => Pas de fichier
FirewallRules: [TCP Query User{769A52A4-8461-4894-ABE2-8F502BD02834}D:\starcraft ii\versions\base81433\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base81433\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [UDP Query User{C86C37B0-347D-4DA2-99D5-3566E64F73E2}D:\starcraft ii\versions\base81433\sc2_x64.exe] => (Allow) D:\starcraft ii\versions\base81433\sc2_x64.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment, Inc.)
FirewallRules: [{E1D4774E-0408-46B2-BE11-0033987D48BE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F69620F3-154D-4336-B106-2A1405639AC1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{38F80DA8-7EDC-4E82-87C9-54CD2FB90AAC}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{CF6C9D44-4596-45A3-A26A-5CB8FC82F9FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4BFF69CA-FB9B-47A5-862A-3F64D67E4020}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{D5E10A89-E34F-4286-99D6-1A9B992F48B2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Robocraft\Robocraft.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{58F84A55-88CE-4239-90F7-0F91E55248E5}] => (Allow) C:\Program Files (x86)\SIMDashboardServer\SIMDashboardServer.exe (Christian Hausmann -> stryder-it)
FirewallRules: [{02989474-AB55-4A58-9970-E524590631DE}] => (Allow) C:\Program Files (x86)\SIMDashboardServer\SIMDashboardServer.exe (Christian Hausmann -> stryder-it)
FirewallRules: [TCP Query User{4A57D4AF-01F9-4A33-B2AE-2944F36AFAE6}C:\users\admin\desktop\among us\among us\among us.exe] => (Block) C:\users\admin\desktop\among us\among us\among us.exe () [Fichier non signé]
FirewallRules: [UDP Query User{2CE4ED7F-3918-46B1-8B1F-E11F80BDE5C8}C:\users\admin\desktop\among us\among us\among us.exe] => (Block) C:\users\admin\desktop\among us\among us\among us.exe () [Fichier non signé]
FirewallRules: [{22A5296A-FBD7-4174-BB98-728BFEB33408}] => (Allow) D:\SteamLibrary\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9B771A42-5DAE-4165-AECE-AEBD8B1BD3A0}] => (Allow) D:\SteamLibrary\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{16F0B612-371F-4BD6-A0C1-8938C917C15E}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{89DF2CE5-9D07-4736-9AE2-33FF625F6C35}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{FEE09969-29F6-45EF-A7AE-7297F3F1BB65}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{A5ABFA2D-460A-4BBC-85F1-AB3542C738A2}] => (Allow) D:\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [TCP Query User{BA212324-16DD-4E93-8306-F5A3D6EB57C3}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.310\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.310\opera.exe => Pas de fichier
FirewallRules: [UDP Query User{0B2178CF-2716-4286-ADE8-A433C7113A78}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.310\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.310\opera.exe => Pas de fichier
FirewallRules: [TCP Query User{7A0E9D1F-D77C-493C-934A-DCF380045F40}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{300A02BB-F5B9-4839-A81B-1AE1BED177BA}D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steamlibrary\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{FB719E45-8FA4-4175-9D2E-FCCCB6D7C0AD}C:\users\admin\desktop\phasmophobia.update.#1\phasmophobia\phasmophobia.exe] => (Allow) C:\users\admin\desktop\phasmophobia.update.#1\phasmophobia\phasmophobia.exe => Pas de fichier
FirewallRules: [UDP Query User{1D0D03AA-B298-43AC-B6EE-1B03ED1350D2}C:\users\admin\desktop\phasmophobia.update.#1\phasmophobia\phasmophobia.exe] => (Allow) C:\users\admin\desktop\phasmophobia.update.#1\phasmophobia\phasmophobia.exe => Pas de fichier
FirewallRules: [TCP Query User{196D3EE2-A219-4616-8D53-FC230327BE58}D:\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [UDP Query User{A669E1F9-B7F7-4F53-B4DC-41B65644AC43}D:\snowrunner\en_us\sources\bin\snowrunner.exe] => (Allow) D:\snowrunner\en_us\sources\bin\snowrunner.exe (Focus Home Interactive S.A -> Focus Home Interactive)
FirewallRules: [{A7F689A6-CA0A-4110-9DA5-799AEAC1E5DF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2DE5B2A4-F774-410B-9405-C0E64D4D4BA8}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{828C7024-0704-4874-9EB7-FC033654C0D8}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5B87B9A5-08C2-486F-A366-968F4224441C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AA09CB9B-01A4-4F56-98DD-7AA437D5EA05}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8EDB1130-EDBB-42DE-8EB3-E15D6DD3EFD6}] => (Allow) D:\SteamLibrary\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{1CD6F3DC-2954-46D2-9F1F-AD67CBE87478}] => (Allow) D:\SteamLibrary\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{00146F38-1AB5-47F1-8161-F49341EF1F7A}] => (Allow) C:\Program Files (x86)\Overwolf\0.158.0.11\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{4592A9CE-3BBD-4D62-A882-D34F70D43BB0}] => (Allow) C:\Program Files (x86)\Overwolf\0.158.0.11\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{CFAF64F4-80EC-47BA-BADF-ACC55DBD8254}] => (Block) C:\Program Files (x86)\Overwolf\0.158.0.11\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{E8445269-9BCF-475D-A0A9-C3DECDFECDE1}] => (Block) C:\Program Files (x86)\Overwolf\0.158.0.11\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [TCP Query User{2026BD32-903E-4594-9769-BB3FE69CF666}C:\users\admin\appdata\local\fivem\fivem.exe] => (Allow) C:\users\admin\appdata\local\fivem\fivem.exe (Intricus Software Limited -> Cfx.re)
FirewallRules: [UDP Query User{AC3F0E36-9445-4063-8DD4-36BD8738EDD2}C:\users\admin\appdata\local\fivem\fivem.exe] => (Allow) C:\users\admin\appdata\local\fivem\fivem.exe (Intricus Software Limited -> Cfx.re)
FirewallRules: [TCP Query User{238FA368-4237-4C37-8669-A85CE357608C}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.323\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.323\opera.exe => Pas de fichier
FirewallRules: [UDP Query User{0AF865C4-627C-4F1C-A090-A271718E6643}C:\users\admin\appdata\local\programs\opera gx\71.0.3770.323\opera.exe] => (Allow) C:\users\admin\appdata\local\programs\opera gx\71.0.3770.323\opera.exe => Pas de fichier
FirewallRules: [TCP Query User{0F102099-FCD5-4B94-B629-8014BBE5397F}D:\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\runtime\jre-x64\bin\javaw.exe
FirewallRules: [UDP Query User{99942AA9-4226-4597-BFC4-B89389C3F134}D:\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\runtime\jre-x64\bin\javaw.exe
FirewallRules: [{726D63E4-D11B-4BE9-BFF7-FB61B5B24BFC}] => (Allow) C:\Program Files (x86)\MaskVPN\mask_svc.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{238E48A4-1DAE-4165-BD5D-F14DA72CD598}] => (Allow) C:\Program Files (x86)\MaskVPN\MaskVPN.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{FF132E4C-E250-40A1-885E-A6947968D9C8}] => (Allow) C:\Program Files (x86)\MaskVPN\MaskVPNUpdate.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{BFDADE49-49E0-45F9-B763-E9A8116EAC2F}] => (Allow) C:\Program Files (x86)\MaskVPN\tunnle.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{CEDC23A0-EA57-45DF-9E24-70688BB2EDC6}] => (Allow) C:\WINDOWS\system32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{F5A1FA61-CB82-4749-A15C-9FB2D30AEC0F}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{A976EAD8-BC1C-4E0C-A4A7-643951FB9F44}] => (Allow) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{01DAA022-A761-4563-8A44-121C171C4F6A}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{46A97D32-4B0F-4FF5-BD6D-731139319754}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{EDBB4820-1C0C-493F-990C-4DBEFFB57A98}] => (Allow) LPort=32682

==================== Points de restauration =========================

20-11-2020 12:53:46 ZHPcleaner

==================== Éléments en erreur du Gestionnaire de périphériques ============


==================== Erreurs du Journal des événements: ========================

Erreurs Application:
==================
Error: (11/20/2020 12:55:06 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (11/20/2020 11:55:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante mbamtray.exe, version : 4.0.0.699, horodatage : 0x5ee404ec
Nom du module défaillant : Qt5Core.dll, version : 5.14.1.0, horodatage : 0x5e8272e4
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0000000000219d05
ID du processus défaillant : 0x191c
Heure de début de l’application défaillante : 0x01d6bf2b92559c15
Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
Chemin d’accès du module défaillant: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
ID de rapport : 0f2e87c4-9c24-4bed-be1e-4dc7d0bb05eb
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (11/20/2020 11:52:35 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (11/20/2020 10:30:10 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (11/20/2020 10:23:44 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (11/20/2020 10:18:42 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme installer.exe version 71.0.3770.323 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance.

ID de processus : 4adc

Heure de début : 01d6bf1db7289091

Heure d'arrêt : 4294967295

Chemin d'accès à l'application : C:\Users\Admin\AppData\Local\Programs\Opera GX\71.0.3770.323\installer.exe

ID de rapport : 97415093-2742-48a0-8f34-4addc015facf

Nom complet du package défectueux :

ID de l'application relative à un package défectueux :

Type de blocage : Top level window is idle

Error: (11/20/2020 10:09:20 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (11/20/2020 09:55:47 AM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\MSI\One Dragon Center\CC_Engine_x64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).


Erreurs système:
=============
Error: (11/20/2020 12:56:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service MSIO n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 12:56:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service MSIO n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 12:55:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SecurityServiceMonitor n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 12:54:47 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-MFNL05G)
Description: Le serveur {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} ne s’est pas enregistré sur DCOM avant la fin du temps imparti.

Error: (11/20/2020 11:53:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service MSIO n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 11:53:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service MSIO n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 11:53:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service SecurityServiceMonitor n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (11/20/2020 11:32:45 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service MSIO n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.


Windows Defender:
===================================
Date: 2020-11-20 13:19:00.3020000Z
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Wacatac.D4!ml&threatid=2147757783&enterprise=0
Nom : Trojan:Win32/Wacatac.D4!ml
ID : 2147757783
Gravité : Grave
Catégorie : Cheval de Troie
Chemin : file:_C:\Users\Admin\AppData\Roaming\AQUIRIS\J8WNETB9CX.dll
Origine de la détection : Ordinateur local
Type de détection : Chemin rapide
Source de détection : Système
Utilisateur : AUTORITE NT\Système
Nom du processus : Unknown
Version de la veille de sécurité : AV: 1.327.1238.0, AS: 1.327.1238.0, NIS: 1.327.1238.0
Version du moteur : AM: 1.1.17600.5, NIS: 1.1.17600.5

Date: 2020-11-20 11:33:32.9960000Z
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0
Nom : VirTool:Win32/DefenderTamperingRestore
ID : 2147741622
Gravité : Grave
Catégorie : Outil
Chemin : regkeyvalue:_hklm\software\policies\microsoft\windows defender\real-time protection\\DisableScanOnRealtimeEnable
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Système
Utilisateur : DESKTOP-MFNL05G\robin
Nom du processus : Unknown
Version de la veille de sécurité : AV: 1.327.1233.0, AS: 1.327.1233.0, NIS: 0.0.0.0
Version du moteur : AM: 1.1.17600.5, NIS: 0.0.0.0

Date: 2020-11-20 10:42:20.0960000Z
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=Program:Win32/Uwasson.A!ml&threatid=251745&enterprise=0
Nom : Program:Win32/Uwasson.A!ml
ID : 251745
Gravité : Faible
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\Admin\Desktop\cle usb\rigolo.bat
Origine de la détection : Ordinateur local
Type de détection : Chemin rapide
Source de détection : Protection en temps réel
Utilisateur : AUTORITE NT\Système
Nom du processus : C:\Program Files (x86)\TotalAV\SecurityService.exe
Version de la veille de sécurité : AV: 1.327.1197.0, AS: 1.327.1197.0, NIS: 0.0.0.0
Version du moteur : AM: 1.1.17600.5, NIS: 0.0.0.0

Date: 2020-11-20 10:23:33.3880000Z
Description:
L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin.
ID de l’analyse : {BCD71F63-306E-48EB-BFFC-8E8A986DE3DE}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse complète
Utilisateur : DESKTOP-MFNL05G\robin

Date: 2020-11-20 10:23:33.3870000Z
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=VirTool:Win32/DefenderTamperingRestore&threatid=2147741622&enterprise=0
Nom : VirTool:Win32/DefenderTamperingRestore
ID : 2147741622
Gravité : Grave
Catégorie : Outil
Chemin : regkeyvalue:_hklm\software\policies\microsoft\windows defender\\DisableAntiSpyware
Origine de la détection : Inconnu
Type de détection : Concret
Source de détection : Utilisateur
Utilisateur : DESKTOP-MFNL05G\robin
Nom du processus : Unknown
Version de la veille de sécurité : AV: 1.327.1197.0, AS: 1.327.1197.0, NIS: 1.327.1197.0
Version du moteur : AM: 1.1.17600.5, NIS: 1.1.17600.5

Date: 2020-11-20 10:06:39.7960000Z
Description:
Antivirus Microsoft Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.327.1197.0
Source de mise à jour : Serveur Microsoft Update
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\Système
Version actuelle du moteur :
Version précédente du moteur : 1.1.17600.5
Code d’erreur : 0x8024001e
Description de l’erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support.

CodeIntegrity:
===================================

Date: 2020-11-13 21:22:13.2010000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\WindowManagementAPI.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:22:11.6900000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\Ansel\NvCameraAllowlisting64.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:22:11.6830000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:22:11.6310000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:12:44.2800000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\WindowManagementAPI.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:12:42.8170000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files\NVIDIA Corporation\Ansel\NvCameraAllowlisting64.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:12:42.8100000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.

Date: 2020-11-13 21:12:42.7370000Z
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\cryptnet.dll because the set of per-page image hashes could not be found on the system.

==================== Infos Mémoire ===========================

BIOS: American Megatrends Inc. 1.60 03/27/2019
Carte mère: Micro-Star International Co., Ltd. MPG Z390 GAMING PLUS (MS-7B51)
Processeur: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz
Pourcentage de mémoire utilisée: 31%
Mémoire physique - RAM - totale: 16246.54 MB
Mémoire physique - RAM - disponible: 11202.43 MB
Mémoire virtuelle totale: 23670.54 MB
Mémoire virtuelle disponible: 15750.85 MB

==================== Lecteurs ================================

Drive c: () (Fixed) (Total:222.82 GB) (Free:73.95 GB) NTFS
Drive d: (Nouveau nom) (Fixed) (Total:931.5 GB) (Free:60.26 GB) NTFS

\\?\Volume{cb9aa739-3013-457a-90a7-5956ac805d1c}\ (Récupération) (Fixed) (Total:0.13 GB) (Free:0.11 GB) NTFS
\\?\Volume{094d9a85-6bb0-4cae-9efe-75711cc24754}\ () (Fixed) (Total:0.51 GB) (Free:0.07 GB) NTFS
\\?\Volume{22a21d10-697a-414b-906f-d6b891c04896}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Table des partitions ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 223.6 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== Fin de Addition.txt =======================