Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 11-09-2021
Exécuté par hugol (11-09-2021 19:19:09)
Exécuté depuis C:\Users\hugol\Downloads
Windows 10 Home Version 21H1 19043.1165 (X64) (2020-10-31 13:50:26)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================


(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

Administrateur (S-1-5-21-2912759976-1089304697-1590859981-500 - Administrator - Disabled) => C:\Users\Administrateur
DefaultAccount (S-1-5-21-2912759976-1089304697-1590859981-503 - Limited - Disabled)
hugol (S-1-5-21-2912759976-1089304697-1590859981-1001 - Administrator - Enabled) => C:\Users\hugol
Invité (S-1-5-21-2912759976-1089304697-1590859981-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2912759976-1089304697-1590859981-504 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 21.005.20060 - Adobe Systems Incorporated)
Age of Empires II Definitive Edition Lords of the West (HKLM-x32\...\Age of Empires II Definitive Edition Lords of the West_is1) (Version: - )
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
Belgium e-ID middleware 5.0.17 (build 5498) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A75498}) (Version: 5.0.5498 - Belgian Government)
Binance 1.23.0 (HKLM\...\Binance) (Version: 1.23.0 - BinanceTech)
Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.00.1.51 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.4.0.16 - Canon Inc.)
Canon Inkjet Printer/Scanner/Télécopieur Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.3.0 - Canon Inc.)
Canon TS3100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_TS3100_series) (Version: 1.01 - Canon Inc.)
Coinomi Wallet (HKLM\...\{EE5A628F-810E-44CF-B45E-CA24076FF104}_is1) (Version: 1.3.0 - Coinomi Holdings Ltd)
Connective Signing Plugins (HKLM-x32\...\{E77C1125-398A-4FF0-9F51-CBB5F7144E16}) (Version: 2.0.9 - Connective)
Discord (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.)
Documentation Manager (HKLM\...\{54DD759A-9483-403E-9411-460E109FFBAA}) (Version: 22.70.0.6 - Intel Corporation) Hidden
Dynamic Application Loader Host Interface Service (HKLM\...\{BB78A7A1-B716-49D2-81C4-5A3ABE32C7E2}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Enlisted Launcher 1.0.3.46 (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\{5fcad5a5-d0d8-4edf-a5ba-040b397eac31}}_is1) (Version: - Gaijin Network)
Enregistrement de l'imprimante (HKLM-x32\...\Canon EISRegistration) (Version: 1.7.0 - Canon Inc.)
FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 93.0.4577.63 - Google LLC)
gpedt.msc 1.0 (HKLM-x32\...\{10B9C608-BF7C-4CCF-A658-C01D969DCA21}_is1) (Version: - Richard)
Intel Driver && Support Assistant (HKLM-x32\...\{BC82D1AD-802A-4733-BB90-A8E59AB8434A}) (Version: 21.5.33.3 - Intel) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{66879245-162d-47f5-bac4-840156a7c01e}) (Version: 10.1.18263.8193 - Intel(R) Corporation)
Intel(R) Computing Improvement Program (HKLM\...\{88B98508-2D8F-46F1-90AD-557BE40C7067}) (Version: 2.4.07642 - Intel Corporation)
Intel(R) Dynamic Tuning (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.7.10200.12510 - Intel Corporation)
Intel(R) Graphics Driver Software (HKLM-x32\...\{899f8bb6-99cd-4f33-a004-c70d9ec22260}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Graphics Driver Software (HKLM-x32\...\{8b5a8e04-659a-4407-b2e1-04ad55a2e72e}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Graphics Driver Software (HKLM-x32\...\{9454a0e6-0762-48ec-b153-2a75b252d1fb}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2004.14.0.1447 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2020.7 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00002070-0220-1036-84C8-B8D95FA3C8C3}) (Version: 22.70.2.1 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{b09ce953-882c-4131-a693-2e1d73b1e50d}) (Version: 21.5.33.3 - Intel)
Intel® Software Installer (HKLM-x32\...\{e1d82936-c734-4d7f-a993-42f3e8bf0608}) (Version: 21.60.0.5 - Intel Corporation) Hidden
Intel® Software Installer (HKLM-x32\...\{f4e29277-b55f-4541-8e0e-ca8bd8b76666}) (Version: 22.70.0.6 - Intel Corporation) Hidden
Java 8 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418045F0}) (Version: 8.0.450 - Oracle Corporation)
Messenger 95.7.118 (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c) (Version: 95.7.118 - Facebook, Inc.)
Microsoft 365 Apps for enterprise - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.14326.20238 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 93.0.961.38 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 93.0.961.38 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 18.151.0729.0013 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\OneDriveSetup.exe) (Version: 21.160.0808.0002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2912759976-1089304697-1590859981-500\...\OneDriveSetup.exe) (Version: 21.160.0808.0002 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\Teams) (Version: 1.4.00.22472 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B981965-2FBC-433C-B4B3-E183EE97CD29}) (Version: 2.83.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29914 (HKLM-x32\...\{1b5476d9-ab8e-4b0d-b004-059a1bd5568b}) (Version: 14.28.29914.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{733C3ACB-432D-4880-B0E1-660000D7974D}) (Version: 1.0.0.0 - Mojang)
Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 92.0 (x64 fr)) (Version: 92.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 82.0.2 - Mozilla)
Notion 2.0.16 (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\fcdf0d7f-424b-5f10-a1c7-a8f643f21adf) (Version: 2.0.16 - Notion Labs, Incorporated)
NVIDIA GeForce Experience 3.20.3.63 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.3.63 - NVIDIA Corporation)
NVIDIA Graphics Driver 451.55 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 451.55 - NVIDIA Corporation)
NVIDIA HD Audio Driver 1.3.38.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.34 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.20.0221 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.20.0221 - NVIDIA Corporation)
NVIDIA USBC Driver 1.42.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.42.831.832 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14326.20238 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14326.20238 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Opera GX Stable 78.0.4093.186 (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\Opera GX 78.0.4093.186) (Version: 78.0.4093.186 - Opera Software)
Paradox Launcher v2 (HKLM\...\{66DA3501-823A-4F07-A20D-C64495A59DC8}) (Version: 2.1.0 - Paradox Interactive)
ProtonVPN (HKLM-x32\...\{657E5009-3D96-41DA-BDD9-36113EE99AE3}) (Version: 1.22.2 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.22.2) (Version: 1.22.2 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{5DA710E2-1B81-4675-BFC5-76BAF63AE1F6}) (Version: 1.1.3 - Proton Technologies AG)
ProtonVPNTun (HKLM-x32\...\{10242617-4DA6-4E16-98D8-92B16E54BAEB}) (Version: 0.10.0 - Proton Technologies AG)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.6.0831.082317 - Razer Inc.)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8942.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.38.1118.2019 - Realtek)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.4461 - Microsoft Corporation)
VdhCoApp 1.6.3 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
War Thunder Launcher 1.0.3.251 (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Entertainment)
WinRAR 5.91 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\ZoomUMX) (Version: 5.4.1 (58698.1027) - Zoom Video Communications, Inc.)

Packages:
=========
Centre de configuration des graphiques Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt [2021-09-11] (INTEL CORP) [Startup Task]
Centre de contrôle Thunderbolt™ -> C:\Program Files\WindowsApps\AppUp.ThunderboltControlCenter_1.0.34.0_x64__8j3eq9eme6ctt [2021-09-11] (INTEL CORP)
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-03-15] (Microsoft Corporation)
Dolby Atmos -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAtmos_3.20602.609.0_x64__rz1tebttyb220 [2021-09-11] (Dolby Laboratories)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.0.1.0_neutral__w1wdnht996qgy [2021-09-11] (LinkedIn)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.10.7290.0_x64__8wekyb3d8bbwe [2021-09-11] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.52.42393.0_x64__8wekyb3d8bbwe [2021-09-09] (Microsoft Corporation) [Startup Task]
Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.17.1101.0_x64__8wekyb3d8bbwe [2021-08-12] (Microsoft Studios)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2021-02-14] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-09-11] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.11.217.0_x64__dt26b99r8h8gj [2021-09-11] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0 [2021-09-06] (Spotify AB) [Startup Task]

==================== Personnalisé CLSID (Avec liste blanche): ==============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-2912759976-1089304697-1590859981-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\hugol\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21140.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2912759976-1089304697-1590859981-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\hugol\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2912759976-1089304697-1590859981-1001_Classes\CLSID\{d936918b-9c4b-555e-074a-c79314be04e1}\localserver32 -> C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.exe (Proton Technologies AG -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> Pas de fichier
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> Pas de fichier
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> Pas de fichier
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvrz.inf_amd64_652d84130ba919c1\nvshext.dll [2020-06-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> Pas de fichier
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> Pas de fichier
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-06-25] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Avec liste blanche) ====================

==================== Raccourcis & WMI ========================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

Shortcut: C:\Users\hugol\Desktop\Factorio.lnk -> C:\Users\hugol\Desktop\͏͏\Jeux\Factorio.v1.1.6\Factorio.v1.1.6\LaunchGame.bat ()

==================== Modules chargés (Avec liste blanche) =============

2021-04-13 12:36 - 2021-04-13 12:36 - 005745664 _____ () [Fichier non signé] C:\Program Files (x86)\Intel\Driver and Support Assistant\irmfuu_module.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 001230336 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoFoundation.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 000207872 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoJSON.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 000810496 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoNet.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 000238592 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoNetSSLWin.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 000335360 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoUtil.dll
2021-05-04 05:55 - 2021-05-04 05:55 - 000455168 _____ (Applied Informatics Software Engineering GmbH) [Fichier non signé] C:\Program Files (x86)\Razer Chroma SDK\bin\PocoXML.dll
2021-07-27 22:47 - 2021-07-27 22:47 - 042803200 _____ (Intel Corporation) [Fichier non signé] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3370.0_x64__8j3eq9eme6ctt\IGCC.dll
2021-05-21 14:04 - 2021-05-21 14:04 - 000130048 _____ (Sam Grogan) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Driver and Support Assistant\NotifyIconWin32.dll
2021-07-23 11:36 - 2021-07-23 11:36 - 002122240 _____ (SQLite Development Team) [Fichier non signé] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll

==================== Alternate Data Streams (Avec liste blanche) ========

(Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.)

AlternateDataStreams: C:\Users\hugol:Heroes & Generals [38]

==================== Mode sans échec (Avec liste blanche) ==================

==================== Association (Avec liste blanche) =================

==================== Internet Explorer (Avec liste blanche) ==========

HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-2912759976-1089304697-1590859981-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://oem17win10.msn.com/?pc=NMTE
HKU\S-1-5-21-2912759976-1089304697-1590859981-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://oem17win10.msn.com/?pc=NMTE
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2020-11-15] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2020-11-15] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-05-29] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-08-28] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)

IE trusted site: HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\sharepoint.com -> hxxps://uclouvain-files.sharepoint.com

==================== Hosts contenu: =========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2019-12-07 11:14 - 2021-08-02 22:34 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

2020-11-01 18:22 - 2021-09-11 19:03 - 000000657 _____ C:\Windows\system32\drivers\etc\hosts.ics
168.137.233 OnePlus-Nord2-5G.mshome.net # 2021 9 6 4 11 41 38 231
37.233 OnePlus-Nord2-5G.mshome.net # 2021 8 5 20 18 1 16 621
621

==================== Autres zones ===========================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\hugol\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\teyeuyy83yn51.jpg
HKU\S-1-5-21-2912759976-1089304697-1590859981-500\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\1.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller"
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\StartupApproved\Run: => "Gaijin.Net Updater"
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\StartupApproved\Run: => "Facebook.MessengerDesktop"
HKU\S-1-5-21-2912759976-1089304697-1590859981-1001\...\StartupApproved\Run: => "Opera GX Browser Assistant"

==================== RèglesPare-feu (Avec liste blanche) ================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [{61051113-41A7-46AA-A926-EC5074F5E2B8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D4F1F915-059D-409C-9294-14218DB1B089}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FDA96309-D5C7-4FB9-A7FE-A2DDA4078D2B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{562F602D-6A5D-4FC0-94A7-64F2ACE4358E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{198A6C2A-B283-40F0-BA90-CEFB32C06CB2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C4CFF121-5157-479C-9C76-6386255C0277}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6F815DB2-F466-40B4-8677-43D5FB01FB06}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C58A192C-5C6D-40F1-AF9D-0C4603AAEC6D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6B453267-54D8-4307-82AF-1C2858EE2BEB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{0339A273-571C-442B-8BF1-1CAEDE8917EF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{AF482F04-D759-43BC-8097-2D98100AB4DD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D76EFB51-B31B-4D33-9D78-804BB50FA185}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{80C233E3-5944-4450-B51B-D45B242BDB27}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (Reto-Moto ApS -> Reto-Moto ApS)
FirewallRules: [{0789237D-3EDE-4617-96ED-7991BEEF6877}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (Reto-Moto ApS -> Reto-Moto ApS)
FirewallRules: [{039A2ABC-0196-4835-B0CB-50F05793F78C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{4F78CC35-25FB-4BE8-882D-5174A634B418}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{418A2A82-C3CA-4E3C-9857-62CD91896C84}C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{B4CC8A53-EF2D-44A6-A0E0-75595F9BEA39}C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{85E5FA6E-A8C6-4231-9A1A-EB634B46710A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EA35B1FF-0D9A-414F-BA67-2E0CCA73B269}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{84CB8494-B697-4C70-BF9E-79F83E830B0A}] => (Allow) C:\Users\hugol\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{F8B606DA-A1D0-4FD0-A1F7-6365AF661EA8}] => (Allow) C:\Users\hugol\AppData\Roaming\Zoom\bin\airhost.exe => Pas de fichier
FirewallRules: [{CBAF9D23-F04A-49DF-9D66-D3BFB6F198F3}] => (Allow) C:\Users\hugol\AppData\Roaming\Zoom\bin\airhost.exe => Pas de fichier
FirewallRules: [TCP Query User{3E5A2E84-9245-484F-AE41-588745B41283}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [UDP Query User{7C6B60F8-718F-41B1-80A6-5B37DAD05CC3}C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\war thunder\win64\aces.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [TCP Query User{B371E16C-57D3-4932-8B69-D87396181E44}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{33E4AD94-9E88-4CF5-8618-4A6525E97553}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{583D5807-D94F-46DA-895C-7FEBD0E98A35}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [Fichier non signé]
FirewallRules: [{34F3C3B3-461A-4DE3-BC50-B57648308637}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [Fichier non signé]
FirewallRules: [{10337F46-0CD3-44DD-8317-439AF2D48AB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WRC 6\WRC6.exe () [Fichier non signé]
FirewallRules: [{99A4D1A0-D1E3-41F2-B7B8-DC94E41D5112}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\WRC 6\WRC6.exe () [Fichier non signé]
FirewallRules: [TCP Query User{98D99584-7E07-4E57-AD26-50B9E9BD9B59}C:\users\hugol\desktop\hearts.of.iron.iv.battle.for.the.bosporus\hearts of iron iv\hoi4.exe] => (Allow) C:\users\hugol\desktop\hearts.of.iron.iv.battle.for.the.bosporus\hearts of iron iv\hoi4.exe => Pas de fichier
FirewallRules: [UDP Query User{A1480916-382A-421C-B781-CDB8BC214C0C}C:\users\hugol\desktop\hearts.of.iron.iv.battle.for.the.bosporus\hearts of iron iv\hoi4.exe] => (Allow) C:\users\hugol\desktop\hearts.of.iron.iv.battle.for.the.bosporus\hearts of iron iv\hoi4.exe => Pas de fichier
FirewallRules: [TCP Query User{D2373573-846B-4C6C-A11D-752FAD2DAB23}C:\users\hugol\desktop\hearts of iron iv\hoi4.exe] => (Allow) C:\users\hugol\desktop\hearts of iron iv\hoi4.exe => Pas de fichier
FirewallRules: [UDP Query User{054BE700-1D7C-44A1-BC96-306078CFC49A}C:\users\hugol\desktop\hearts of iron iv\hoi4.exe] => (Allow) C:\users\hugol\desktop\hearts of iron iv\hoi4.exe => Pas de fichier
FirewallRules: [TCP Query User{9E9080ED-27A5-479E-BBC0-F7C070E17B6D}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [UDP Query User{A927FAAF-E05A-4DAE-A807-39B58AE949DA}C:\program files\java\jre1.8.0_45\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_45\bin\javaw.exe
FirewallRules: [TCP Query User{7D31FA58-802B-41E1-85E7-A5E0F8E7437B}C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{E2CC787A-0F01-485D-BBBC-5D868033EE4B}C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\hugol\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{7C827373-A906-4E0A-AFCA-41443498FC49}C:\users\hugol\appdata\local\programs\messenger\messenger.exe] => (Allow) C:\users\hugol\appdata\local\programs\messenger\messenger.exe (Facebook, Inc. -> Facebook, Inc.)
FirewallRules: [UDP Query User{2492FA17-E159-462A-81AF-D9867A716B0E}C:\users\hugol\appdata\local\programs\messenger\messenger.exe] => (Allow) C:\users\hugol\appdata\local\programs\messenger\messenger.exe (Facebook, Inc. -> Facebook, Inc.)
FirewallRules: [TCP Query User{5F31F836-84FB-4F31-BA43-D6BC16E572D5}C:\users\hugol\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [UDP Query User{64ABF5EC-7BA2-42F8-8940-A9DC32B6E5F8}C:\users\hugol\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [TCP Query User{736F5A15-03CA-4116-9D9F-C60DBB9571A1}C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{FEA3FDE2-665B-478B-9479-0DBEB4377055}C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{325D1BE9-1813-46AB-BABE-E2786DC30649}C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{3ED26791-3772-4132-86AB-4FF32D6F51AB}C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\aoe2de_s.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{92799515-57A8-47D5-9737-E7B1F4BDB4B3}C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe () [Fichier non signé]
FirewallRules: [UDP Query User{1E242A95-9797-4024-B290-B7BAA48B86BE}C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe] => (Allow) C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe () [Fichier non signé]
FirewallRules: [TCP Query User{C5747235-2887-446B-BB6D-0D5E78505B5A}C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe] => (Block) C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe () [Fichier non signé]
FirewallRules: [UDP Query User{0998AA7A-FB7D-42FC-A205-938ACA78350A}C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe] => (Block) C:\program files (x86)\age of empires ii definitive edition lords of the west\battleserver\battleserver.exe () [Fichier non signé]
FirewallRules: [TCP Query User{6F1F1549-6DD1-40FF-98A5-B8B15A309035}C:\users\hugol\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [UDP Query User{47A1E8B0-813C-4B20-81CA-94A75C5CE3A7}C:\users\hugol\appdata\local\enlisted\launcher.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\launcher.exe (Gaijin Network LTD -> Gaijin)
FirewallRules: [{89A1299F-892C-4E23-A7D7-91E7C26CC36C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F9AF5971-6BF8-4655-9048-7F0D8E4E925F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{366258CA-607E-4349-80EE-0869E26DBA57}C:\users\hugol\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\win64\enlisted.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [UDP Query User{DA592FD5-AB4C-4FE7-85C2-C2888CFDA2A4}C:\users\hugol\appdata\local\enlisted\win64\enlisted.exe] => (Allow) C:\users\hugol\appdata\local\enlisted\win64\enlisted.exe (Gaijin Network LTD -> Gaijin Entertainment)
FirewallRules: [TCP Query User{2685A783-39F8-42AB-9DC2-09B21AF10938}C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{874C4C0E-CAD8-4002-98F7-2458F0892014}C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{43207125-7957-431E-99DD-FB6535E17390}C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [UDP Query User{9BEBDB3F-8C5C-4161-8D97-6271841B9110}C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [TCP Query User{BB852B45-45C7-401A-AFF0-AAE50763C5FF}C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{280064E1-8BCB-4519-A576-51802D2799EE}C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{4B865AE5-5E66-4814-BB5C-8991C8892736}C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [UDP Query User{9F14CB88-CE49-4C27-A6A6-BF6795D9A039}C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\java-runtime-alpha\windows\java-runtime-alpha\bin\javaw.exe
FirewallRules: [TCP Query User{6C5CFC8F-0847-4B05-B3C7-7DEE722890FC}C:\program files\badlion client\badlion client.exe] => (Allow) C:\program files\badlion client\badlion client.exe => Pas de fichier
FirewallRules: [UDP Query User{255E252B-F038-49D2-BCFA-6201E68BB656}C:\program files\badlion client\badlion client.exe] => (Allow) C:\program files\badlion client\badlion client.exe => Pas de fichier
FirewallRules: [TCP Query User{B4CD58B9-AC86-407B-816B-4ED22D87555D}C:\programdata\badlionclient\jre1.8.0_202\bin\javaw.exe] => (Allow) C:\programdata\badlionclient\jre1.8.0_202\bin\javaw.exe
FirewallRules: [UDP Query User{11F08BA6-9BA5-4C3E-AC45-13A709115BDF}C:\programdata\badlionclient\jre1.8.0_202\bin\javaw.exe] => (Allow) C:\programdata\badlionclient\jre1.8.0_202\bin\javaw.exe
FirewallRules: [TCP Query User{8D1BA7BB-A402-4E0A-AF74-02120DD4EDE0}C:\users\hugol\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{94AF4F6E-8014-41FC-97C9-C60820A5791B}C:\users\hugol\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Allow) C:\users\hugol\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{45D3DD98-8C87-400C-925A-E573DE1FA157}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe (Binance Holdings Limited -> BinanceTech)
FirewallRules: [UDP Query User{47E24C62-D5CA-4505-A93E-00F67A8C8A3D}C:\program files\binance\binance.exe] => (Block) C:\program files\binance\binance.exe (Binance Holdings Limited -> BinanceTech)
FirewallRules: [{F3229305-BBF7-48C8-8C0F-8DA243746B12}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{1C9A0769-BA52-4DF4-9F98-2A1FFBE77603}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{F48C7832-A618-449A-AD13-5C71F01A6025}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{B052E2BA-04B5-47C9-A212-6D5521C6FEA7}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{A93AB24B-7C62-4DD0-BDFA-A34A23F59C02}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3209221E-46CF-4EC5-B5AB-A6A762A2ED0E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A393630D-CCAC-4989-863B-EB1936F33C80}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{983D050F-66BE-4D79-A2D9-65A13480F2DE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.75.140.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{718CB2A5-EEE0-4AD9-BD5B-4652EB6AF3E3}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1B2F8544-4A76-4F64-8BB7-B1B2F1DA704B}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\93.0.961.38\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8F3B0606-CE90-4622-AA6F-AF6A30397D22}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C478B4FA-532F-4A74-9C98-CC21DC047CD9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2897A664-619E-44F7-A44F-504848333A4E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4ED82CAC-EFB8-4A36-B5CB-753A7066E39B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{004E7E97-8A39-4577-869E-D8B051387412}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{70AD0482-A811-420C-991B-044C9AFFCD94}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1335B2D3-954C-43BA-A670-B8C72F5E8408}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BD8450AA-A001-4809-82F3-A999CE325757}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7F826FDA-E764-457E-B1A5-235B9ADDAB24}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.167.586.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Points de restauration =========================

06-09-2021 17:13:51 Point de contrôle planifié
09-09-2021 19:28:09 Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29914
11-09-2021 18:59:10 Programme d’installation pour les modules Windows

==================== Éléments en erreur du Gestionnaire de périphériques ============


==================== Erreurs du Journal des événements: ========================

Erreurs Application:
==================
Error: (09/11/2021 07:11:37 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-122KFJ00)
Description: Impossible d’ouvrir l’objet de performance pour le service Serveur. Les quatre premiers octets (DWORD) de la section Data contiennent le code de statut.

Error: (09/10/2021 01:51:14 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante svchost.exe_CDPSvc, version : 10.0.19041.546, horodatage : 0x058e175a
Nom du module défaillant : ntdll.dll, version : 10.0.19041.1110, horodatage : 0xe7a22463
Code d’exception : 0xc0000409
Décalage d’erreur : 0x000000000008c57f
ID du processus défaillant : 0x1660
Heure de début de l’application défaillante : 0x01d79a4a6a5d5748
Chemin d’accès de l’application défaillante : C:\Windows\system32\svchost.exe
Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll
ID de rapport : c156751f-1d00-4b35-96d6-a81918b460aa
Nom complet du package défaillant :
ID de l’application relative au package défaillant :


Erreurs système:
=============
Error: (09/11/2021 07:03:09 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-122KFJ00)
Description: Le serveur {A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D} ne s’est pas enregistré sur DCOM avant la fin du temps imparti.

Error: (09/11/2021 06:16:59 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Le service User Energy Server Service queencreek s’est arrêté avec l’erreur :
Le pilote %2 a renvoyé un ID non valide pour un périphérique enfant (%3).

Error: (09/10/2021 01:10:55 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-122KFJ00)
Description: Le serveur Windows.Media.Capture.Internal.AppCaptureShell ne s’est pas enregistré sur DCOM avant la fin du temps imparti.

Error: (09/10/2021 10:46:32 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Steam Client Service n’a pas pu démarrer en raison de l’erreur :
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.

Error: (09/10/2021 10:46:32 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Steam Client Service.

Error: (09/10/2021 01:51:15 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Service de plateforme des appareils connectés s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 3000 millisecondes : Redémarrer le service.

Error: (09/08/2021 12:49:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service Energy Server Service queencreek s’est terminé de façon inattendue pour la 1ème fois.

Error: (09/06/2021 06:00:11 PM) (Source: Netwtw10) (EventID: 5005) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : a rencontré une erreur interne et a échoué.
5005 - Driver internal error


Windows Defender:
================
Date: 2021-09-11 17:59:19
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win64/NiceHashMiner&threatid=258400&enterprise=1
Nom : PUA:Win64/NiceHashMiner
ID : 258400
Gravité : Grave
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\hugol\Downloads\NiceHashQuickMinerInstaller.exe
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : LAPTOP-122KFJ00\hugol
Nom du processus : C:\Program Files\Mozilla Firefox\firefox.exe
Version de la veille de sécurité : AV: 1.349.545.0, AS: 1.349.545.0, NIS: 1.349.545.0
Version du moteur : AM: 1.1.18500.10, NIS: 1.1.18500.10

Date: 2021-09-11 17:59:06
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win64/NiceHashMiner&threatid=258400&enterprise=1
Nom : PUA:Win64/NiceHashMiner
ID : 258400
Gravité : Grave
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\hugol\Downloads\NiceHashQuickMinerInstaller.exe
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : LAPTOP-122KFJ00\hugol
Nom du processus : C:\Windows\explorer.exe
Version de la veille de sécurité : AV: 1.349.545.0, AS: 1.349.545.0, NIS: 1.349.545.0
Version du moteur : AM: 1.1.18500.10, NIS: 1.1.18500.10

Date: 2021-09-11 17:58:57
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win64/NiceHashMiner&threatid=258400&enterprise=1
Nom : PUA:Win64/NiceHashMiner
ID : 258400
Gravité : Grave
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\hugol\Downloads\NiceHashQuickMinerInstaller.exe
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : LAPTOP-122KFJ00\hugol
Nom du processus : C:\Windows\explorer.exe
Version de la veille de sécurité : AV: 1.349.545.0, AS: 1.349.545.0, NIS: 1.349.545.0
Version du moteur : AM: 1.1.18500.10, NIS: 1.1.18500.10

Date: 2021-09-11 17:58:50
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win64/NiceHashMiner&threatid=258400&enterprise=1
Nom : PUA:Win64/NiceHashMiner
ID : 258400
Gravité : Grave
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\hugol\Downloads\NiceHashQuickMinerInstaller.exe
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : LAPTOP-122KFJ00\hugol
Nom du processus : C:\Windows\explorer.exe
Version de la veille de sécurité : AV: 1.349.545.0, AS: 1.349.545.0, NIS: 1.349.545.0
Version du moteur : AM: 1.1.18500.10, NIS: 1.1.18500.10

Date: 2021-09-11 17:57:06
Description:
Antivirus Microsoft Defender a détecté un logiciel malveillant ou potentiellement indésirable.
Pour plus d’informations, reportez-vous aux éléments suivants :
https://go.microsoft.com/fwlink/?linkid=37020&name=PUA:Win64/NiceHashMiner&threatid=258400&enterprise=1
Nom : PUA:Win64/NiceHashMiner
ID : 258400
Gravité : Grave
Catégorie : Logiciel potentiellement non désiré
Chemin : file:_C:\Users\hugol\Downloads\NiceHashQuickMinerInstaller.exe
Origine de la détection : Ordinateur local
Type de détection : Concret
Source de détection : Protection en temps réel
Utilisateur : LAPTOP-122KFJ00\hugol
Nom du processus : C:\Program Files\Mozilla Firefox\firefox.exe
Version de la veille de sécurité : AV: 1.349.545.0, AS: 1.349.545.0, NIS: 1.349.545.0
Version du moteur : AM: 1.1.18500.10, NIS: 1.1.18500.10

==================== Infos Mémoire ===========================

BIOS: Razer 01.04 06/04/2020
Carte mère: Razer DA550
Processeur: Intel(R) Core(TM) i7-10750H CPU @ 2.60GHz
Pourcentage de mémoire utilisée: 50%
Mémoire physique - RAM - totale: 16245.65 MB
Mémoire physique - RAM - disponible: 8029.39 MB
Mémoire virtuelle totale: 21365.65 MB
Mémoire virtuelle disponible: 11147.87 MB

==================== Lecteurs ================================

Drive c: (Blade 15 SSD) (Fixed) (Total:459.74 GB) (Free:150.24 GB) NTFS

\\?\Volume{c9738df9-36f9-46fe-8043-ba9c5f7bb85b}\ (Recovery) (Fixed) (Total:16.11 GB) (Free:0.8 GB) NTFS
\\?\Volume{fa36fca2-26c4-45d3-86b0-15b0d1f6a53d}\ (Winre) (Fixed) (Total:0.98 GB) (Free:0.48 GB) NTFS
\\?\Volume{e9f56db3-fa7e-4998-a6e3-b2fc6387825e}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.05 GB) FAT32

==================== MBR & Table des partitions ====================

==================== Fin de Addition.txt =======================