Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-10-2020
Ran by user (08-10-2020 16:08:54)
Running from C:\Users\user\Desktop
Windows 10 Pro Version 1903 18362.1082 (X64) (2020-09-22 12:32:04)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1379710060-3090748001-2567902576-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1379710060-3090748001-2567902576-503 - Limited - Disabled)
Guest (S-1-5-21-1379710060-3090748001-2567902576-501 - Limited - Disabled)
user (S-1-5-21-1379710060-3090748001-2567902576-1001 - Administrator - Enabled) => C:\Users\user
WDAGUtilityAccount (S-1-5-21-1379710060-3090748001-2567902576-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat 5.0 (HKLM-x32\...\Adobe Acrobat 5.0) (Version: 5.0 - Adobe Systems, Inc.)
Adobe Photoshop 7.0 (HKLM-x32\...\Adobe Photoshop 7.0) (Version: 7.0 - Adobe Systems, Inc.)
Assistant Mise à jour de Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22899 - Microsoft Corporation)
balenaEtcher 1.5.109 (HKU\S-1-5-21-1379710060-3090748001-2567902576-1001\...\d2f3b6c7-6f49-59e2-b8a5-f72e33900c2b) (Version: 1.5.109 - Balena Inc.)
Blender (HKLM\...\{E29A1273-2E7A-40E7-AA63-428A11D59429}) (Version: 2.79.2 - Blender Foundation)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 397.31 - NVIDIA Corporation) Hidden
Dolphin (HKLM-x32\...\Dolphin) (Version: 5.0 - Dolphin Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 85.0.4183.121 - Google LLC)
Google Drive (HKLM-x32\...\{A8DC81F2-D365-4248-892A-FA3B5951F731}) (Version: 2.34.9392.7803 - Google, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
LibreOffice 6.1.5.2 (HKLM\...\{F936275B-96A7-4823-B4F8-0C0D3DC70C70}) (Version: 6.1.5.2 - The Document Foundation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1379710060-3090748001-2567902576-1001\...\OneDriveSetup.exe) (Version: 20.143.0716.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mises à jour NVIDIA 34.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 34.0.0.0 - NVIDIA Corporation) Hidden
Mozilla Firefox 81.0 (x64 fr) (HKLM\...\Mozilla Firefox 81.0 (x64 fr)) (Version: 81.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 66.0 - Mozilla)
MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD)
MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.69 - MSI)
MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.19 - MSI)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.12 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.16.0.140 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.16.0.140 - NVIDIA Corporation)
NVIDIA Logiciel système PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
NVIDIA Pilote du contrôleur 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
OLYMPUS Digital Camera Updater (HKLM-x32\...\{20802138-EAA6-424D-B7E9-A01AC4881F3D}) (Version: 2.1.2 - Olympus Corporation)
OLYMPUS Viewer 3 (HKLM-x32\...\{55F9C4FF-0D5F-4D09-9B2D-239A8687A98B}) (Version: 2.4.1 - Olympus Corporation)
Package de pilotes Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
panoramic studio 3D (HKLM-x32\...\{AAF1946D-033A-4E7C-8E8A-42476F1084C9}) (Version: 2.023.7 - Duo / APP6 - Johann Roy)
RawTherapee version 5.4 (HKLM\...\RawTherapee5.4_is1) (Version: 5.4 - rawtherapee.com)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6662 - Realtek Semiconductor Corp.)
spacedesk Windows DRIVER (HKLM\...\{D5DDB7FE-6338-4A02-8590-8F4905FFBC38}) (Version: 0.9.1000.0 - datronicsoft Inc.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.2.26558 - TeamViewer)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{0BAA0A93-3AD3-4B19-9105-4C8C3FA92A83}) (Version: 2.67.0.0 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - )
WinRAR 5.30 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.30.0 - win.rar GmbH)
wtfast 4.6 (HKLM-x32\...\{12B4121D-5221-4AFC-9EDC-63B0CA139856}_is1) (Version: 4.6.6.1250 - Initex & AAA Internet Publishing)
XnView 2.44 (HKLM-x32\...\XnView_is1) (Version: 2.44 - Gougelet Pierre-e)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-27] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.8101.0_x64__8wekyb3d8bbwe [2020-09-15] (Microsoft Studios) [MS Ad]
MSN Sport -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.36.20714.0_x64__8wekyb3d8bbwe [2020-09-22] (Microsoft Corporation) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm [2018-09-29] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google Inc -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google Inc -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2018-04-23] (Google Inc -> Google)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google Inc -> Google)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files (x86)\Google\Drive\contextmenu64.dll [2018-04-23] (Google Inc -> Google)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-03] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2015-11-18] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-09-11 09:40 - 2005-07-18 13:43 - 000160256 _____ () [File not signed] C:\Program Files (x86)\MSI\Live Update\unrar.dll
2019-03-30 16:25 - 2016-05-31 11:41 - 000122880 _____ () [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyPalm.dll
2019-03-30 16:25 - 2011-08-09 16:22 - 000450560 _____ () [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OSLite.dll
2019-03-30 16:25 - 2016-08-26 17:41 - 000014848 _____ () [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\Tracer.dll
2019-03-30 16:25 - 2016-03-03 14:45 - 000602112 _____ (ArcSoft Inc.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\vedFramework.dll
2020-09-22 23:49 - 2020-09-22 23:49 - 001093120 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.762_none_0c178a139ee2a7ed\MFC80U.DLL
2020-09-22 23:48 - 2020-09-22 23:48 - 000061440 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\WinSxS\x86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.762_none_43efccf17831d131\MFC80FRA.DLL
2019-03-30 16:25 - 2018-06-18 17:52 - 000551424 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FileMgr2.dll
2019-03-30 16:25 - 2018-06-18 17:50 - 000022528 _____ (OLYMPUS CORPORATION) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\glossary.dll
2019-03-30 16:25 - 2017-11-16 20:24 - 000446464 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\olive.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000044560 _____ (OLYMPUS CORPORATION) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyApollo.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000089088 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyAsLib.dll
2019-03-30 16:25 - 2018-06-18 17:50 - 000048128 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\olycms.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000166912 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyDB2.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000428032 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyDB4.dll
2019-03-30 16:25 - 2018-06-18 17:52 - 000317440 _____ (OLYMPUS CORPORATION) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyDonna.dll
2019-03-30 16:25 - 2018-06-18 17:52 - 006234624 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyImgProc2.dll
2019-03-30 16:25 - 2018-06-18 17:53 - 000454656 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyImgView.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000055296 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlylwApi2.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000025088 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyShlOp.dll
2019-03-30 16:25 - 2018-06-18 17:50 - 000024576 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlySkinMgr.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000707072 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyUICtl2.dll
2019-03-30 16:25 - 2018-06-18 17:53 - 002950656 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyUIFrw2.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000054784 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\olyuiskindrw.dll
2019-03-30 16:25 - 2018-06-18 17:52 - 000123392 _____ (OLYMPUS CORPORATION) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyWMPLib.dll
2019-03-30 16:25 - 2018-06-18 17:50 - 000039936 _____ (Olympus Corporation) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\PluginMgr.dll
2019-03-30 16:25 - 2017-06-29 17:50 - 000450560 _____ (OLYMPUS IMAGING CORP.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyCamellia.dll
2019-03-30 16:25 - 2018-06-18 17:51 - 000019968 _____ (OLYMPUS IMAGING CORP.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyIBDB.dll
2019-03-30 16:25 - 2011-07-21 19:16 - 010186752 _____ (OLYMPUS IMAGING CORP.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyLaurel.dll
2019-03-30 16:25 - 2017-12-19 10:55 - 009314304 _____ (OLYMPUS IMAGING CORP.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyMuse.dll
2019-03-30 16:25 - 2016-06-15 12:29 - 000081920 _____ (OLYMPUS IMAGING CORP.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OlyRum2.dll
2019-03-30 16:25 - 2003-11-07 12:03 - 000204800 _____ (Pixology Ltd.) [File not signed] C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\PixologyIRISS011.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files (x86)\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx [2001-04-16] (Adobe Systems, Incorporated -> )
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 09:24 - 2015-10-30 09:21 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1379710060-3090748001-2567902576-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\user\Downloads\28456339018_e5a3da6d83_k.jpg
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "GrooveMonitor"
HKU\S-1-5-21-1379710060-3090748001-2567902576-1001\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{21CA3492-1378-4C9E-A392-FEC06969A835}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{62908984-55C9-4255-B3A1-0F68638CEE62}] => (Allow) C:\WINDOWS\system32\spacedeskService.exe (Datronicsoft, Inc. -> )
FirewallRules: [{0128EBB2-6FEE-4E39-9B13-D1A776718798}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{1D3447DA-BC3D-4E70-81A6-73B81D2978D9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{1AD5DD05-99EF-4B9D-844A-66C6D2C2AFC0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{DE3BE8BD-8C0A-4D99-9E32-21F474E48882}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{6787AB05-F5BB-4090-BAA5-C8F455B377B1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{06F4D248-B17E-4749-A053-F21E9261CE0A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{324CD747-831D-49FF-90A7-4054790B9E0B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{48D750C4-2C26-4ACB-88A8-B515ABE0ABCA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F9A5A719-F577-4383-8C0E-413DCB225B90}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{124817A3-358B-4DC6-A6E3-5F437096B99A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{FB2B7F89-1DC8-4C32-8C32-3FA5AD6A4C18}C:\program files (x86)\teamviewer\teamviewer.exe] => (Allow) C:\program files (x86)\teamviewer\teamviewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [TCP Query User{37B0FE18-9676-4F41-8ACA-C48F3C8A5467}C:\program files (x86)\teamviewer\teamviewer.exe] => (Allow) C:\program files (x86)\teamviewer\teamviewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{2CED9C24-F6E7-41FB-8AF5-3E39DDF5EAF5}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{36FEA456-924A-464D-8CD3-AA1316030413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41266141-5EB8-4760-94AA-982123F73A53}] => (Allow) C:\Windows\KMS-R@1n.exe => No File
FirewallRules: [{832C3E12-54C0-47E2-A64F-835A7F8D443B}] => (Allow) C:\Windows\KMS-R@1n.exe => No File
FirewallRules: [{DCC8F04C-654D-4752-ACE7-52F36B1C3A96}] => (Allow) C:\Program Files (x86)\WTFast\WTFast.exe (AAA Internet Publishing, Inc. -> AAA Internet Publishing Inc.)
FirewallRules: [{6A9F395C-6E97-4B0B-B525-8360137AC77F}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{B7C1F06A-F0AB-4747-AE56-F4D2EBC469B1}] => (Allow) C:\Program Files (x86)\WTFast\wtfast.exe (AAA Internet Publishing, Inc. -> AAA Internet Publishing Inc.)

==================== Restore Points =========================

22-09-2020 17:35:09 Windows Update
08-10-2020 15:24:17 Point de contrôle planifié

==================== Faulty Device Manager Devices ============

Name: Souris compatible PS/2
Description: Souris compatible PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Clavier standard PS/2
Description: Clavier standard PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Claviers standard)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: ========================

Application errors:
==================
Error: (10/08/2020 03:25:17 PM) (Source: Firefox Default Browser Agent) (EventID: 12007) (User: )
Description: Event-ID 12007

Error: (10/08/2020 03:25:17 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/08/2020 03:24:53 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary WinQuic.

System Error:
The resource loader failed to find MUI file.
.

Error: (10/08/2020 03:07:56 PM) (Source: Firefox Default Browser Agent) (EventID: 12007) (User: )
Description: Event-ID 12007

Error: (10/08/2020 03:07:56 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0

Error: (09/28/2020 01:34:24 PM) (Source: Firefox Default Browser Agent) (EventID: 12007) (User: )
Description: Event-ID 12007

Error: (09/28/2020 01:34:24 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0

Error: (09/25/2020 10:29:54 AM) (Source: Firefox Default Browser Agent) (EventID: 12007) (User: )
Description: Event-ID 12007


System errors:
=============
Error: (10/08/2020 03:04:51 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Le miniport Wi-Fi Wireless LAN USB Adapter #3, {8199a404-00a5-4583-a783-c45e78b8a829}, a eu l’événement 74

Error: (09/28/2020 04:14:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service wtfast.Service n’a pas pu démarrer en raison de l’erreur :
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.

Error: (09/28/2020 04:14:59 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service wtfast.Service.

Error: (09/25/2020 10:39:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service WtfEngineDrv n’a pas pu démarrer en raison de l’erreur :
Le mappeur de point final n’a plus de point final disponible.

Error: (09/22/2020 06:43:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service wtfast.Service n’a pas pu démarrer en raison de l’erreur :
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.

Error: (09/22/2020 06:43:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service wtfast.Service.

Error: (09/22/2020 06:28:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service wtfast.Service n’a pas pu démarrer en raison de l’erreur :
Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle.

Error: (09/22/2020 06:28:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (45000 millisecondes) a été atteint lors de l’attente de la connexion du service wtfast.Service.


Windows Defender:
===================================
Date: 2020-09-28 16:06:06.327
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {D53E2C7B-6C8B-4C61-B81E-7FB1F12C5E52}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

Date: 2020-09-28 15:55:21.122
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {BCA67F26-17BF-4A65-8E15-45AC92D23DF1}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

Date: 2020-09-28 15:36:42.496
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {D8392B00-5EA8-4D50-A220-6B413709A20C}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

Date: 2020-09-25 12:09:22.354
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {D8122B25-F205-4F5D-B6CC-06F1E581A954}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

Date: 2020-09-25 10:53:16.339
Description:
L’analyse Antivirus Windows Defender a été arrêtée avant la fin.
ID de l’analyse : {15232E45-0C4C-4652-8E74-8F67B58949BD}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

Date: 2020-10-08 15:32:15.231
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.325.384.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.17500.4
Code d’erreur : 0x8050a003
Description de l’erreur : Ce package ne contient pas de fichiers de définitions à jour pour ce programme. Pour plus d’informations, voir Aide et support.

Date: 2020-10-08 15:32:15.231
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.325.384.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de veille de sécurité : Logiciel anti-espion
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.17500.4
Code d’erreur : 0x8050a003
Description de l’erreur : Ce package ne contient pas de fichiers de définitions à jour pour ce programme. Pour plus d’informations, voir Aide et support.

Date: 2020-10-08 15:32:15.231
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.325.384.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.17500.4
Code d’erreur : 0x8050a003
Description de l’erreur : Ce package ne contient pas de fichiers de définitions à jour pour ce programme. Pour plus d’informations, voir Aide et support.

Date: 2020-10-08 15:31:06.799
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.323.2091.0
Source de mise à jour : Serveur Microsoft Update
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\Système
Version actuelle du moteur :
Version précédente du moteur : 1.1.17500.4
Code d’erreur : 0x80240016
Description de l’erreur : Un problème inattendu s’est produit lors de la vérification des mises à jour. Pour plus d’informations sur l’installation ou la résolution des problèmes de mise à jour, voir Aide et support.

Date: 2020-10-08 15:23:06.229
Description:
Antivirus Windows Defender a rencontré une erreur lors de la mise à jour de la veille de sécurité.
Nouvelle version de la veille de sécurité :
Version précédente de la veille de sécurité : 1.323.2091.0
Source de mise à jour : Centre de protection Microsoft contre les logiciels malveillants
Type de veille de sécurité : Anti-virus
Type de mise à jour : Complet
Utilisateur : AUTORITE NT\SERVICE RÉSEAU
Version actuelle du moteur :
Version précédente du moteur : 1.1.17400.5
Code d’erreur : 0x80072ee7
Description de l’erreur : L’adresse ou le nom de serveur n’a pas pu être résolu

==================== Memory info ===========================

BIOS: Hewlett-Packard 786H1 v01.13 07/14/2011
Motherboard: Hewlett-Packard 304Ah
Processor: Intel(R) Core(TM) i5 CPU 650 @ 3.20GHz
Percentage of memory in use: 35%
Total physical RAM: 8055.29 MB
Available physical RAM: 5156.31 MB
Total Virtual: 9335.29 MB
Available Virtual: 5761.41 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.8 GB) (Free:396.28 GB) NTFS
Drive d: (System Reserved) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive f: (System) (Fixed) (Total:0.2 GB) (Free:0.16 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive g: (Windows) (Fixed) (Total:148.81 GB) (Free:148.72 GB) NTFS

\\?\Volume{2b7e7ae6-0000-0000-0000-905274000000}\ () (Fixed) (Total:0.47 GB) (Free:0.04 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 2B7E7AE6)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=464.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=481 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 149 GB) (Disk ID: 206DCCF4)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================