Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 14-04-2021
Exécuté par Thierry (14-04-2021 21:49:19)
Exécuté depuis C:\Users\Thierry\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2020-04-30 14:55:17)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================

Administrateur (S-1-5-21-338919052-3024432019-469343477-500 - Administrator - Disabled)
HomeGroupUser$ (S-1-5-21-338919052-3024432019-469343477-1002 - Limited - Enabled)
Invité (S-1-5-21-338919052-3024432019-469343477-501 - Limited - Disabled)
Thierry (S-1-5-21-338919052-3024432019-469343477-1000 - Administrator - Enabled) => C:\Users\Thierry

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: VOO Internet Security by F-Secure (Enabled - Up to date) {01EEC97C-28E5-34E7-6F5F-47CED8192856}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: VOO Internet Security by F-Secure (Enabled - Up to date) {BA8F2898-0EDF-3B69-55EF-7CBCA39E62EB}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

µTorrent (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\uTorrent) (Version: 3.5.5.45966 - BitTorrent Inc.)
360Eyes (HKLM-x32\...\InstallShield_{007084B1-3576-48F5-836C-7C95E7A475F8}) (Version: 1.0.0.1 - 360Eyes)
Acer Crystal Eye Webcam (HKLM-x32\...\{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.2108.00 - CyberLink Corp.) Hidden
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}) (Version: 1.5.2108.00 - CyberLink Corp.)
Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 21.001.20145 - Adobe Systems Incorporated)
AOMEI Partition Assistant Standard Edition 8.8 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI Technology Co., Ltd.)
Audacity 2.4.2 (HKLM-x32\...\Audacity_is1) (Version: 2.4.2 - Audacity Team)
Belgium e-ID middleware 5.0.7 (build 5109) (HKLM\...\{DB942AEA-93D6-4FE4-8862-180D35A75109}) (Version: 5.0.5109 - Belgian Government)
Belgium e-ID viewer 5.0.8 (build 5114) (HKLM-x32\...\{F3DC7F06-92FF-4C98-87F5-72C0B7865114}) (Version: 5.0.5114 - Belgian Government)
Betternet for Windows 6.9.4.727 (HKLM-x32\...\{2E77104D-96E1-4A9C-86F2-C7CFAC007B71}) (Version: 6.9.4.727 - Aura)
BetterNet TAP-Windows 9.24.4 (HKLM\...\BetterNet TAP-Windows) (Version: 9.24.4 - BetterNet LLC)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 15.0.7.1 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.78 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP)
CHIRP (HKLM-x32\...\CHIRP) (Version: - )
CMSClient 1.0.0.53 (HKLM-x32\...\CMSClient) (Version: 1.0.0.53 - )
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
Deezloader Remix 4.4.1 (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\5eed4b40-1ed5-51be-ab52-56cdb94a998f) (Version: 4.4.1 - RemixDevs)
DIGIPASS Native Bridge 2.7.1 (HKLM-x32\...\{6F6DC028-4A65-4D5E-9349-5387E2D5B239}) (Version: 2.7.1 - OneSpan Inc.) Hidden
DIGIPASS Native Bridge 2.7.1 (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\{88d0973e-3ce7-4e29-899b-20050be36973}) (Version: 2.7.1 - OneSpan Inc.)
ESynchredible (HKLM-x32\...\ESynchredible_is1) (Version: 2.7.1200.18357 - OMP Software GmbH)
Étude pour l'amélioration du produit HP ENVY 5640 series (HKLM\...\{1E0EABDF-040F-4471-BF8E-004ABAC22C5D}) (Version: 40.13.1176.1978 - HP Inc.)
ExpressVPN (HKLM-x32\...\{b8ff9d27-eab9-4320-ad9b-dba303194cc0}) (Version: 10.2.1.54 - ExpressVPN)
ExpressVPN (HKLM-x32\...\{E5B9C3E5-889C-4F22-A959-F4B876ED8867}) (Version: 10.2.1.54 - ExpressVPN) Hidden
FileZilla Client 3.52.2 (HKLM-x32\...\FileZilla Client) (Version: 3.52.2 - Tim Kosse)
Galerie de photos (HKLM-x32\...\{439B34FF-F74E-4807-B5E2-4B758551DA6B}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Glary Utilities 5.143 (HKLM-x32\...\Glary Utilities 5) (Version: 5.143.0.169 - Glarysoft Ltd)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 89.0.4389.114 - Google LLC)
Hard Drive Recovery version 1.3.3.14 (HKLM-x32\...\{A845E9D8-38EE-4BF5-B5E8-2302E0D2ADDA}_is1) (Version: 1.3.3.14 - HarpNight Co,Ltd)
Herramientas de corrección de Microsoft Office 2016: español (HKLM\...\{90160000-001F-0C0A-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.)
HP Dropbox Plugin (HKLM-x32\...\{45E639F6-2949-4047-82DD-1FAF69DD6B62}) (Version: 40.13.54.81239 - HP)
HP ENVY 5640 series Aide (HKLM-x32\...\{50BB2714-5C7C-4040-965F-A23532545903}) (Version: 34.0.0 - Hewlett Packard)
HP Google Drive Plugin (HKLM-x32\...\{A70D2B56-7CF3-4392-B7B8-49A3DD9B9F34}) (Version: 40.13.54.81239 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.1.0.1006 - Intel Corporation)
IP-Tools (HKLM-x32\...\IP-Tools) (Version: - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.13 - Acer Inc.)
Logiciel de base du périphérique HP ENVY 5640 series (HKLM\...\{993C7972-B3D4-4F15-B5E9-E6F146F983FA}) (Version: 40.13.1176.1978 - HP Inc.)
Main service (HKLM-x32\...\{758C04B9-3585-4A05-AC66-1149FEF4D184}) (Version: - )
Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes)
MaskVPN (HKLM-x32\...\{4A4ACF2E-4A98-4D18-80E3-5A5E5706F81E}_is1) (Version: 1.1.0.31 - Global Media (Thailand) Co., Ltd)
MB RECASTER FREE (HKLM-x32\...\{01FB13AC-5D6D-F9D6-D44E-52071832CDB7}) (Version: 4.6.5.6 - MB SOFT)
Microsoft .NET Framework 4.8 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 89.0.774.76 - Microsoft Corporation)
Microsoft Office Professionnel Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\OneDriveSetup.exe) (Version: 17.0.4035.0328 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913 (HKLM-x32\...\{855e31d2-9031-46e1-b06d-c9d7777deefb}) (Version: 14.28.29913.0 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{21764A96-6748-4B83-89E7-7A5063BF156C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 86.0.1 (x64 fr) (HKLM\...\Mozilla Firefox 86.0.1 (x64 fr)) (Version: 86.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 84.0.2 - Mozilla)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 6.35.9.0 - TEFINCOM S.A.)
NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN)
NordVPN network TUN (HKLM\...\{FD40B53E-299B-45AE-AFB3-B94FD7CC96FE}) (Version: 1.0.1 - NordVPN)
NVIDIA Pilote graphique 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
Outils de vérification linguistique 2016 de Microsoft Office - Français (HKLM\...\{90160000-001F-040C-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
PhotoFiltre Studio X (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\PhotoFiltre Studio X) (Version: - )
Playlist Creator 3.6.2 (HKLM-x32\...\Playlist Creator 3.6.2) (Version: 3.6.2.0 - oddgravity)
Qualcomm Atheros WiFi Driver Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 3.1 - Qualcomm Atheros)
RadioBOSS 5.9.0.9 (HKLM-x32\...\{344E0957-C717-46A4-8658-333CE65D5D11}_is1) (Version: 5.9.0.9 - DJSoft.net)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.61.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8454 - Realtek Semiconductor Corp.)
Realtek PCI Fast Ethernet Controller Driver For Vista and Win7 (HKLM-x32\...\{AE46ABD3-D625-467F-B5A7-8D3FFF077F0D}) (Version: 1.00.0005 - Realtek)
RememBear (HKLM\...\{FB71D925-246B-47D1-A08A-96255AD061D9}) (Version: 1.4.4.0 - TunnelBear) Hidden
RememBear (HKLM-x32\...\{bd8d6543-0158-4aa4-bd31-68a7b433b070}) (Version: 1.4.4.0 - TunnelBear)
SAM Cast 2014.7 (HKLM-x32\...\SAMCast) (Version: 2014.7 - Spacial Audio Solutions, LLC)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.61.0 - Samsung Electronics Co., Ltd.)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.20113.5 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.2.20113.5 - Samsung Electronics Co., Ltd.)
Snagit 2020 (HKLM\...\{E62A8E5E-D414-4220-BEC0-57B6ACF14FD4}) (Version: 20.1.5 - TechSmith Corporation) Hidden
Snagit 2020 (HKLM-x32\...\{e20653a4-3735-4133-82cf-03f491e3f891}) (Version: 20.1.5.7133 - TechSmith Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.41.5 - Synaptics Incorporated)
Taalprogramma's voor Microsoft Office 2016 - Nederlands (HKLM\...\{90160000-001F-0413-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TunnelBear (HKLM-x32\...\{1e767f58-1a56-4c70-8dd7-74744fd475f3}) (Version: 4.4.0.0 - TunnelBear)
TunnelBear (HKLM-x32\...\{8CF1DEF1-3947-4D70-892A-02E049422B0C}) (Version: 4.4.0.0 - TunnelBear) Hidden
Update for Skype for Business 2016 (KB4486745) 64-Bit Edition (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}_Office16.PROPLUS_{4568DCFB-EF6A-4285-9276-6E97164E8719}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB4486745) 64-Bit Edition (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}_Office16.PROPLUS_{4568DCFB-EF6A-4285-9276-6E97164E8719}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB4486745) 64-Bit Edition (HKLM\...\{90160000-012B-040C-1000-0000000FF1CE}_Office16.PROPLUS_{4568DCFB-EF6A-4285-9276-6E97164E8719}) (Version: - Microsoft)
UV-B5 1.09 (HKLM-x32\...\UV-B5) (Version: - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN)
VOO INTERNET SECURITY (HKLM-x32\...\{46B8A013-32EE-4158-A401-E25B63FE5D28}) (Version: 17.9 - F-Secure Corporation)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WhatsApp (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\WhatsApp) (Version: 2.2039.9 - WhatsApp)
Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
WinRAR 5.91 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
WinRAR 6.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-338919052-3024432019-469343477-1000\...\ZoomUMX) (Version: 5.4.7 (59784.1220) - Zoom Video Communications, Inc.)

==================== Personnalisé CLSID (Avec liste blanche): ==============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Thierry\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Thierry\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Thierry\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Thierry\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\SkyDriveShell64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-338919052-3024432019-469343477-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Thierry\AppData\Local\Microsoft\SkyDrive\17.0.4035.0328\amd64\FileSyncApi64.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Pas de fichier
ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => C:\Program Files (x86)\VOO Internet Security\FsShellExtension64.dll [2020-11-03] (F-Secure Corporation -> F-Secure Corporation)
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Users\Thierry\Desktop\7-Zip\7-zip.dll -> Pas de fichier
ContextMenuHandlers1: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2020-04-27] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers1: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => -> Pas de fichier
ContextMenuHandlers1: [SnagItMainShellExt] -> {CF74B903-3389-469c-B3B6-0204D204FCBD} => C:\Program Files\TechSmith\Snagit 2020\DLLx64\SnagitShellExt64.dll [2020-09-29] (TechSmith Corporation -> TechSmith Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2020-04-27] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Users\Thierry\Desktop\7-Zip\7-zip.dll -> Pas de fichier
ContextMenuHandlers4: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => -> Pas de fichier
ContextMenuHandlers4: [SnagItMainShellExt] -> {CF74B903-3389-469c-B3B6-0204D204FCBD} => C:\Program Files\TechSmith\Snagit 2020\DLLx64\SnagitShellExt64.dll [2020-09-29] (TechSmith Corporation -> TechSmith Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2015-08-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Users\Thierry\Desktop\7-Zip\7-zip.dll -> Pas de fichier
ContextMenuHandlers6: [Glary Utilities] -> {B3C418F8-922B-4faf-915E-59BC14448CF7} => C:\Program Files (x86)\Glary Utilities 5\x64\ContextHandler.dll [2020-04-27] (Glarysoft LTD -> Glarysoft Ltd)
ContextMenuHandlers6: [IObitUnstaler] -> {836AB26C-2DE4-41D3-AC24-4C6C2699B960} => -> Pas de fichier
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Avec liste blanche) ====================

==================== Raccourcis & WMI ========================

(Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
Shortcut: C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SAM Cast\Help\Help Center.lnk -> hxxp://spacial.com/help-center?filter=sam-cas

==================== Modules chargés (Avec liste blanche) =============

2020-04-30 18:29 - 2012-02-01 16:25 - 000059904 _____ () [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2021-03-02 23:24 - 2021-03-02 23:24 - 000030720 _____ () [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\TunnelBear\TunnelBear.Maintenance.Wrapper.dll
2020-05-15 18:18 - 2020-05-15 18:18 - 000172032 _____ () [Fichier non signé] C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\023b2e749844720d94fa9a591cebbd78\IsdiInterop.ni.dll
2020-05-15 18:18 - 2020-05-15 18:18 - 000014336 _____ (Intel Corp.) [Fichier non signé] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\6dfb43a93bf06432c5ba0b7a8973197c\IAStorCommon.ni.dll
2020-04-30 18:29 - 2012-02-01 16:27 - 000007680 _____ (Intel Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\fr-FR\IAStorDataMgr.resources.dll
2020-04-30 18:29 - 2012-02-01 16:27 - 000032768 _____ (Intel Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\fr-FR\IAStorIcon.resources.dll
2020-04-30 18:29 - 2012-02-01 16:26 - 000004608 _____ (Intel Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\fr-FR\IntelVisualDesign.resources.dll
2020-04-30 18:29 - 2012-02-01 16:25 - 000176128 _____ (Intel Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUIHelper.dll
2020-04-30 18:29 - 2012-02-01 16:25 - 001319424 _____ (Intel Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IntelVisualDesign.dll
2020-04-30 18:29 - 2012-02-01 16:17 - 000278016 _____ (Intel Corporation) [Fichier non signé] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI.dll
2020-05-15 18:18 - 2020-05-15 18:18 - 000228864 _____ (Intel Corporation) [Fichier non signé] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\b2b11b728d752a8c5c21c2300838d086\IAStorDataMgr.ni.dll
2020-05-15 18:18 - 2020-05-15 18:18 - 000488960 _____ (Intel Corporation) [Fichier non signé] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\8b3f3f639e88a124e40d747c8f4b31b7\IAStorUtil.ni.dll
2020-05-15 00:29 - 2020-05-15 00:29 - 000225280 _____ (Microsoft Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Windows\WinSxS\x86_microsoft.vc90.crt_1fc8b3b9a1e18e3b_9.0.30729.6161_none_50934f2ebcb7eb57\msvcm90.dll

==================== Alternate Data Streams (Avec liste blanche) ========

==================== Mode sans échec (Avec liste blanche) ==================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Avec liste blanche) =================

==================== Internet Explorer (Version 11) (Avec liste blanche) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2020-10-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\VOO Internet Security\Ultralight\http\1617091255\browser\fs_ie_https\fs_ie_https64.dll [2021-03-30] (F-Secure Corporation -> F-Secure Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-20] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2020-11-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Browsing Protection by F-Secure -> {45BBE08D-81C5-4A67-AF20-B2A077C67747} -> C:\Program Files (x86)\VOO Internet Security\Ultralight\http\1617091255\browser\fs_ie_https\fs_ie_https.dll [2021-03-30] (F-Secure Corporation -> F-Secure Corporation)
BHO-x32: Programme d’aide de l’Assistant de connexion au compte Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts contenu: =========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2021-04-14 18:48 - 2021-04-14 18:48 - 000000355 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Autres zones ===========================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Common Files\Microsoft Shared\Windows Live;C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-338919052-3024432019-469343477-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Thierry\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 172.30.11.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

MSCONFIG\startupreg: uTorrent => "C:\Users\Thierry\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED

==================== RèglesPare-feu (Avec liste blanche) ================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [{8CF4EB3C-2582-48F9-86E1-EDBBC7CC64BA}] => (Block) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Corporation -> Malwarebytes)
FirewallRules: [TCP Query User{E5E3BF25-1139-47D7-8582-D37DDECA322E}C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe (HP Inc -> HP Inc.)
FirewallRules: [UDP Query User{FFD9D126-1939-48AD-B607-03E4D24949E4}C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe (HP Inc -> HP Inc.)
FirewallRules: [TCP Query User{A883F181-F235-4D2F-AF2E-E7157035A28D}C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe (HP Inc -> HP Inc.)
FirewallRules: [UDP Query User{9523D1E9-D08D-47FC-9D14-90C6E05032D5}C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe] => (Allow) C:\program files\hp\hp envy 5640 series\bin\hpnetworkcommunicatorcom.exe (HP Inc -> HP Inc.)
FirewallRules: [TCP Query User{C2F621EC-1ABB-4025-B6BD-3FE1B677C0F2}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{5715A00B-31C6-4039-889B-9B8DE4782AFF}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{082701FB-BCDE-4F70-A1DD-7F26A7EE8955}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{20068AED-939F-4448-AB22-B1330E82C5BA}C:\program files (x86)\google\chrome\application\chrome.exe] => (Block) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{AA804402-0CF4-4CB6-BDE1-9CBFF292DB33}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6AF73D45-5470-435E-9C2E-BAC7A76DA50F}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E212DC97-61F6-44FD-B344-E64A4F2AC5F1}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2F60AA1C-C0C6-420D-B752-DB6192252880}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{44449ACE-A046-40E2-9BB1-1BD43332C1DA}] => (Allow) LPort=8299
FirewallRules: [{EB00B53D-DF29-4643-BCB0-47F454A16637}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5002B2A8-E93D-4F2B-A479-393FC2DC9175}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E48AC0A3-F370-459B-B82E-A1E4F85C2889}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7AA05968-F05E-4F73-9154-66410786A10D}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5F0DEC88-AC69-46D2-895B-A060695502D0}C:\program files (x86)\cmsclient\cmsclient.exe] => (Allow) C:\program files (x86)\cmsclient\cmsclient.exe () [Fichier non signé]
FirewallRules: [UDP Query User{0FD64B54-92A3-4BCB-A1C5-AC62517B00CA}C:\program files (x86)\cmsclient\cmsclient.exe] => (Allow) C:\program files (x86)\cmsclient\cmsclient.exe () [Fichier non signé]
FirewallRules: [{A86C2266-B841-4212-8D23-5BA9911B0F24}] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{0C98D0BF-B95B-4E06-B53C-99C1EC601E0F}C:\program files (x86)\360eyes\360eyes\360eyes.exe] => (Allow) C:\program files (x86)\360eyes\360eyes\360eyes.exe () [Fichier non signé]
FirewallRules: [UDP Query User{ED9D2DA5-B07A-4817-A08F-7FFE7DFC3195}C:\program files (x86)\360eyes\360eyes\360eyes.exe] => (Allow) C:\program files (x86)\360eyes\360eyes\360eyes.exe () [Fichier non signé]
FirewallRules: [{DFCF62B1-2D8F-4A48-A38B-348103B03BB2}] => (Allow) C:\Program Files\RememBear\RememBear.App.exe (TunnelBear -> )
FirewallRules: [{950A7D4B-B8E8-491A-B7B8-1745C8ABDB56}] => (Allow) C:\Users\Thierry\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [TCP Query User{8BC7B5D4-5769-4936-BA5F-8B7F21C589B1}C:\users\thierry\appdata\local\programs\deezloader remix\deezloader remix.exe] => (Allow) C:\users\thierry\appdata\local\programs\deezloader remix\deezloader remix.exe (RemixDevs) [Fichier non signé]
FirewallRules: [UDP Query User{B42174FB-887F-42D4-8941-79AF2294F496}C:\users\thierry\appdata\local\programs\deezloader remix\deezloader remix.exe] => (Allow) C:\users\thierry\appdata\local\programs\deezloader remix\deezloader remix.exe (RemixDevs) [Fichier non signé]
FirewallRules: [{44D78C1C-96E0-45DF-B215-D6A6BDA854DC}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3D10F2FB-A32B-42D5-9815-F35825BC3B5C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{80A55453-519E-4E48-B9FD-020D00E9E458}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{04C04A31-2876-4286-A82E-38E96C099C76}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{88D57742-C48F-4FBB-98CB-255247688408}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{3DD5C5D4-8157-40BD-A5AC-75820A95A6B7}C:\users\thierry\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\thierry\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{98809818-3432-44BA-A616-6A376F129333}C:\users\thierry\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\thierry\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{486DACA2-C4BC-42FA-B507-4BE85DE3FC51}C:\users\thierry\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\thierry\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{47E5C536-D7B8-489A-9BA3-7FCB4D8969CB}C:\users\thierry\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\thierry\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{2DF583F2-3799-40B5-AF05-09F542AC7AB4}] => (Allow) C:\Program Files (x86)\MaskVPN\mask_svc.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{F0721652-382D-43E0-BA09-E3E234EA4748}] => (Allow) C:\Program Files (x86)\MaskVPN\MaskVPN.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{7F8DF8E8-44FF-48D0-B9AC-72438022A6A0}] => (Allow) C:\Program Files (x86)\MaskVPN\MaskVPNUpdate.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [{38D961EA-647C-4F90-B193-0DB105B966AD}] => (Allow) C:\Program Files (x86)\MaskVPN\tunnle.exe (Global Media (Thailand) Co., Ltd -> Global Media (Thailand) Co., Ltd)
FirewallRules: [TCP Query User{71CE3417-9304-45F0-83BF-095807CE9EE7}C:\program files (x86)\ip-tools\ip_tools.exe] => (Allow) C:\program files (x86)\ip-tools\ip_tools.exe (KS-Soft) [Fichier non signé]
FirewallRules: [UDP Query User{EE7AAB83-9E42-4C92-9700-FD9D5F5DE1A2}C:\program files (x86)\ip-tools\ip_tools.exe] => (Allow) C:\program files (x86)\ip-tools\ip_tools.exe (KS-Soft) [Fichier non signé]

==================== Points de restauration =========================

11-04-2021 15:32:56 Installed Betternet for Windows 5.0.5
11-04-2021 15:56:15 Installed Betternet for Windows 5.0.5
11-04-2021 16:02:23 Removed Betternet for Windows 5.0.5
11-04-2021 16:08:38 Installed Betternet for Windows 5.0.5
11-04-2021 16:18:24 Installed Betternet for Windows 5.0.5
11-04-2021 16:39:51 Removed Betternet for Windows 5.0.5
11-04-2021 16:50:04 Installed Betternet for Windows 6.9.4.727
11-04-2021 17:05:01 Removed Betternet for Windows 6.9.4.727
11-04-2021 17:07:08 Installed Betternet for Windows 6.9.4.727
11-04-2021 17:14:44 Removed Betternet for Windows 6.9.4.727
11-04-2021 17:17:59 Installed Betternet for Windows 6.9.4.727
12-04-2021 06:46:35 ExpressVPN
12-04-2021 06:47:48 Installation du package de pilotes : ExpressVPN Cartes réseau
12-04-2021 12:30:43 Installation du package de pilotes : WireGuard LLC Cartes réseau
12-04-2021 12:31:33 Installation du package de pilotes : TAP-NordVPN Windows Provider V9 Cartes réseau
12-04-2021 12:31:55 Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913
12-04-2021 12:32:32 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212
12-04-2021 12:33:03 Installation du package de pilotes : NordVPN Service réseau
14-04-2021 16:54:27 Removed VirtualDJ 2018
14-04-2021 18:52:58 Windows Update

==================== Éléments en erreur du Gestionnaire de périphériques ============

Name: Périphérique système de base
Description: Périphérique système de base
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Périphérique système de base
Description: Périphérique système de base
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: ExpressVPN TAP Adapter
Description: ExpressVPN TAP Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: ExpressVPN
Service: tapexpressvpn
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Contrôleur de bus USB
Description: Contrôleur de bus USB
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Erreurs du Journal des événements: ========================

Erreurs Application:
==================
Error: (04/14/2021 07:07:13 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (04/14/2021 05:32:34 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (04/14/2021 11:11:29 AM) (Source: TechSmith Updater) (EventID: 0) (User: )
Description: Internet Access Not Present

Error: (04/14/2021 11:11:29 AM) (Source: TechSmith Updater) (EventID: 0) (User: )
Description: Internet Access Not Present

Error: (04/14/2021 11:07:58 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Le filtre d’événement avec la requête « SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99 » n’a pas pu être réactivé dans l’espace de noms « //./root/CIMV2 » à cause de l’erreur 0x80041003. Les événements ne peuvent pas être délivrés à travers ce filtre tant que le problème ne sera pas corrigé.

Error: (04/14/2021 09:17:47 AM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={5F54E575-7975-4E5F-8EC8-6918D545A582} : L’utilisateur SYSTEM a composé le numéro de la connexion TunnelBear. La connexion a échoué. Code d’erreur retourné : 809.

Error: (04/14/2021 09:17:37 AM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={7050A296-919B-442A-9DBC-75CC941A808D} : L’utilisateur SYSTEM a composé le numéro de la connexion TunnelBear. La connexion a échoué. Code d’erreur retourné : 809.

Error: (04/14/2021 09:17:28 AM) (Source: RasClient) (EventID: 20227) (User: )
Description: CoID={F81B6DBA-8F51-4CB1-9811-95B184B36C3D} : L’utilisateur SYSTEM a composé le numéro de la connexion TunnelBear. La connexion a échoué. Code d’erreur retourné : 809.


Erreurs système:
=============
Error: (04/14/2021 07:49:49 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Service Partage réseau du Lecteur Windows Media s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service F-Secure Ultralight Hoster s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service F-Secure Ultralight Network Hoster s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service F-Secure Hoster s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Le service nordvpn-service s’est terminé de façon inattendue pour la 1ème fois.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service MaskVPN Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service F-Secure Ultralight ORSP Client s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service.

Error: (04/14/2021 07:49:48 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Le service Cache de police de Windows Presentation Foundation 3.0.0.0 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service.


==================== Infos Mémoire ===========================

BIOS: Insyde Corp. V2.21 12/16/2013
Carte mère: Acer VA50_HC_CR
Processeur: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Pourcentage de mémoire utilisée: 47%
Mémoire physique - RAM - totale: 8084.36 MB
Mémoire physique - RAM - disponible: 4273.18 MB
Mémoire virtuelle totale: 16166.86 MB
Mémoire virtuelle disponible: 12258.65 MB

==================== Lecteurs ================================

Drive c: () (Fixed) (Total:698.54 GB) (Free:559.71 GB) NTFS

\\?\Volume{7b9d3092-8af1-11ea-b25e-806e6f6e6963}\ (Réservé au système) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Table des partitions ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 698.6 GB) (Disk ID: 175EF34C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=698.5 GB) - (Type=07 NTFS)

==================== Fin de Addition.txt =======================