cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Exécuté par AZUL6 (26-01-2022 14:32:28)
Exécuté depuis C:\Users\AZUL6\Downloads
Microsoft Windows 10 Famille Version 20H2 19042.1466 (X64) (2021-04-14 03:58:50)
Mode d'amorçage: Normal
==========================================================


==================== Comptes: =============================


(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

Administrador (S-1-5-21-3555577323-2430992883-3566638213-500 - Administrator - Disabled)
AZUL6 (S-1-5-21-3555577323-2430992883-3566638213-1001 - Administrator - Enabled) => C:\Users\AZUL6
Convidado (S-1-5-21-3555577323-2430992883-3566638213-501 - Limited - Disabled)
DefaultAccount (S-1-5-21-3555577323-2430992883-3566638213-503 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3555577323-2430992883-3566638213-504 - Limited - Disabled)

==================== Centre de sécurité ========================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Programmes installés ======================

(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)

µTorrent (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\uTorrent) (Version: 3.5.5.45146 - BitTorrent Inc.)
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1036-1033-7760-BC15014EA700}) (Version: 21.011.20039 - Adobe)
CCleaner (HKLM\...\CCleaner) (Version: 5.88 - Piriform)
CCSDK (HKLM-x32\...\{964ACF65-2550-4B28-8E45-606A618C64EE}) (Version: 3.0.0.16 - Lenovo)
Contrôle d’intégrité du PC Windows (HKLM\...\{0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM\...\{D0D32569-4680-490A-905C-5117CEAAB3EF}) (Version: 0.8.8.76 - Dolby Laboratories, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Étude pour l'amélioration du produit HP DeskJet 3700 series (HKLM\...\{0F09AAC6-21B7-4D9E-87BB-BAAB76765A0F}) (Version: 40.12.1161.1896 - HP Inc.)
FarLabUninstaller v1.53.43 (HKLM-x32\...\FarLabUninstaller.exe_is1) (Version: 1.53.0.22 - )
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\_{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation)
Ghostscript GPL 8.64 (Msi Setup) (HKLM-x32\...\{06CD45E6-FF5E-4D8E-BC01-B276A90DADF2}) (Version: 8.64 - Corel Corporation) Hidden
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.590 - Huawei Technologies Co., Ltd.)
HP DeskJet 3700 series Aide (HKLM-x32\...\{CDCD1F51-D1D8-4B3B-B1EF-9E5C370D0C7B}) (Version: 40.0.0 - HP)
HP Dropbox Plugin (HKLM-x32\...\{6401399A-F5DA-4C04-87AA-E8107DF00751}) (Version: 36.0.41.58587 - HP)
HP ePrint SW (HKLM-x32\...\{cdb5f70f-5107-4613-bf69-15de903b5b5d}) (Version: 5.5.22560 - HP Inc.)
HP Google Drive Plugin (HKLM-x32\...\{63BCC696-0FB4-4E9C-8144-2DA4F248FC17}) (Version: 36.0.41.58587 - HP)
HP Support Assistant (HKLM-x32\...\{54ECA61C-83AE-4EE3-A9F7-848155A33386}) (Version: 8.8.34.31 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{8EB6580E-9833-451A-ADAA-12C9B4FFD1E1}) (Version: 12.19.53.13 - HP Inc.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticCoreDll (HKLM-x32\...\{9262B08F-E183-4FED-A2BD-23FF1A84EB79}) (Version: 1.0.15.0 - Hewlett Packard)
IGdm 3.0.1 (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\1ead4f81-c61a-5fa6-9e81-7a8c0c868952) (Version: 3.0.1 - ifedapo olarewaju)
Intel(R) Chipset Device Software (HKLM-x32\...\{5f5c7829-a6ba-4fc6-9f47-d068f51ed99b}) (Version: 10.1.1.35 - Intel(R) Corporation) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.2.11001.3279 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7757 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.1631.3 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 3.0.11.1131 - Intel Corporation)
Kodi (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\Kodi) (Version: - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo Calliope USB Keyboard (HKLM\...\{520AA862-0064-4B41-B777-1FAFC1AD1293}) (Version: 1.10 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.10.26.0 - Lenovo Group Ltd.)
Logiciel de base du périphérique HP DeskJet 3700 series (HKLM\...\{8BA437AD-5DB4-4298-9A1A-AF0BFC9C1439}) (Version: 40.12.1161.1896 - HP Inc.)
Manual (HKLM-x32\...\{693F92E5-37D1-46B7-A0D6-19A74A2FD0EC}) (Version: 1.00.0701 - Lenovo)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office Professional 2016 - pt-pt (HKLM\...\ProfessionalRetail - pt-pt) (Version: 16.0.14729.20260 - Microsoft Corporation)
Microsoft Office Professionnel 2016 - fr-fr (HKLM\...\ProfessionalRetail - fr-fr) (Version: 16.0.14729.20260 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\Teams) (Version: 1.4.00.4167 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.21.27702 (HKLM-x32\...\{f4220b74-9edd-4ded-bc8b-0342c1e164d8}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2019 (HKLM-x32\...\{1edcd8d2-905a-4e93-bfdf-92ed5601528a}) (Version: 16.0.28801 - Microsoft Corporation)
Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 96.0.2 (x64 fr)) (Version: 96.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0.1 - Mozilla)
MuMu App Player (HKLM-x32\...\Nemu) (Version: 2.0.23.1 - Netease)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.14729.20260 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.14729.20260 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.14729.20260 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-040C-0000-0000000FF1CE}) (Version: 16.0.14729.20260 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0816-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
OneKeyRecovery (HKLM-x32\...\{B1C01152-7A95-4F37-AEDC-5B09DE983271}) (Version: 9.0.1.1607 - Lenovo)
plugin Autenticação.Gov (HKLM-x32\...\{9D960C26-67AC-4EA7-9773-A09CB0CD2947}) (Version: 2.0.50 - Agência para a Modernização Administrativa)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10427 - Qualcomm)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.278 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Roblox Player for AZUL6 (HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\roblox-player) (Version: - Roblox Corporation)
Skype version 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Unity Web Player (x64) (All users) (HKLM\...\UnityWebPlayer) (Version: 4.6.6f2 - Unity Technologies ApS)
WarThunder (HKLM-x32\...\WarThunder) (Version: - ) <==== ATTENTION
WinRAR 6.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-03-15] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_133.1.340.0_x64__v10z8vjag6ke6 [2021-12-15] (HP Inc.)
Keeper - Password Manager & Secure File Storage -> C:\Program Files\WindowsApps\KeeperSecurityInc.Keeper_14.0.33.0_x64__kejf07qmg0jnm [2019-07-31] (Keeper Security Inc)
Lenovo Settings -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoSettings_3.177.0.0_x86__4642shxvsv8s2 [2017-12-19] (LENOVO INCORPORATED.)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2112.10.0_x64__k1h2ywk1493x8 [2021-12-22] (LENOVO INC.)
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x64__8wekyb3d8bbwe [2021-04-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x86__8wekyb3d8bbwe [2021-04-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-04-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-04-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-11] (Microsoft Studios) [MS Ad]
Plex -> C:\Program Files\WindowsApps\CAF9E577.Plex_3.2.20.0_x64__aam28m9va5cke [2017-12-05] (Plex)
Portail du compte Lenovo -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoID_2.0.37.0_x86__4642shxvsv8s2 [2022-01-04] (LENOVO INCORPORATED.)
Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2022-01-10] (Adobe Systems Incorporated)

==================== Personnalisé CLSID (Avec liste blanche): ==============

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

CustomCLSID: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\AZUL6\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20289.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\AZUL6\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => Pas de fichier
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Pas de fichier
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_0729a791f23743a3\igfxDTCM.dll [2020-05-29] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)

==================== Codecs (Avec liste blanche) ====================

==================== Raccourcis & WMI ========================

==================== Modules chargés (Avec liste blanche) =============

==================== Alternate Data Streams (Avec liste blanche) ========

==================== Mode sans échec (Avec liste blanche) ==================

==================== Association (Avec liste blanche) =================

==================== Internet Explorer (Avec liste blanche) ==========

HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
SearchScopes: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001 -> DefaultScope {999B2842-2FA0-4A5C-8CE5-356C95E1C8F1} URL =
SearchScopes: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001 -> {999B2842-2FA0-4A5C-8CE5-356C95E1C8F1} URL =
SearchScopes: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10420__171205__yaie&p={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-01-16] (Microsoft Corporation -> Microsoft Corporation)

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.)

IE trusted site: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\sharepoint.com -> hxxps://aecampomaior-files.sharepoint.com

==================== Hosts contenu: =========================

(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)

2017-03-18 21:03 - 2019-05-13 20:38 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2020-05-29 19:19 - 2020-05-29 19:19 - 000000375 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Autres zones ===========================

(Actuellement, il n'y a pas de correction automatique pour cette section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\iCLS\;C:\Program Files\Intel\TXE Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\AZUL6\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\fond d’écran.bmp
DNS Servers: 192.168.1.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Le Pare-feu est activé.

==================== MSCONFIG/TASK MANAGER éléments désactivés ==

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)

HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "Chromium"
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-3555577323-2430992883-3566638213-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== RèglesPare-feu (Avec liste blanche) ================

(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)

FirewallRules: [{9B7A9019-9510-44EC-B66E-3E6800F0ABC2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6B51028F-6A0C-43D7-87CE-56375AD95B43}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{77725091-327F-4347-BF99-079BC47EB309}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS4CDB\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{53FAC672-B12D-435D-8D1F-59091708B2DC}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS4CDB\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{DFD62425-0B24-43E4-B551-D470E0C0FA98}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS4AF7\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{B72DAD41-B134-44EC-9C62-18169C9C4644}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS4AF7\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{BF43680C-5732-4A2F-90DA-C0B7F7FE8482}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS68BB\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{335B8C36-F4AA-4837-8373-8389637BB091}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS68BB\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{D6EA8B15-B972-482E-886C-595136789A72}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{33C40A84-6F4D-42C4-BDE7-734FBD3B8C6C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{9275EE14-90B1-4513-9852-F181E7AD35F3}C:\program files\counter-strike global offensive\csgo.exe] => (Allow) C:\program files\counter-strike global offensive\csgo.exe => Pas de fichier
FirewallRules: [TCP Query User{C0AE91DB-9F4E-4276-AA46-332947532868}C:\program files\counter-strike global offensive\csgo.exe] => (Allow) C:\program files\counter-strike global offensive\csgo.exe => Pas de fichier
FirewallRules: [{79EE20C8-A4D1-4BF4-ADF6-1A60F5FE5931}] => (Allow) C:\Users\AZUL6\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{452402C5-76C7-4781-8A30-8456A87D67F5}] => (Allow) C:\Users\AZUL6\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C761585D-A2F4-4700-8895-06B5F869E0AC}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{54E3AC52-7EC8-4884-9D5C-9E7F81F92671}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{9755431D-F944-4469-88EC-2471CAD435C3}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45225.exe] => (Block) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45225.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{14059EAD-9524-425B-9331-C53B5F470122}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45225.exe] => (Block) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45225.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{477F63EE-E034-42F2-B1DA-030D23F62C9D}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe] => (Allow) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{C6B856AC-6983-4419-86D2-977B4AEE74D7}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe] => (Allow) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{DDF3366C-A324-40C2-8C72-C74A500582D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{E2E851AD-B2E8-44F1-8408-B34AC73A82F3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{ACE0482E-3C71-41EB-B8C1-A2C2CFA83FA6}C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe] => (Allow) C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易游戏)
FirewallRules: [UDP Query User{8D78A8DC-2A3C-48FA-BB32-2B5D6D1712E6}C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe] => (Allow) C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe (NetEase(Hangzhou) Network Co. Ltd. -> 网易游戏)
FirewallRules: [TCP Query User{D152A08B-D8AB-4E6D-B809-48AE21EEC868}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{E7F6AC37-9D12-4F11-86B8-D2A01F2073DA}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{16015E36-2E2C-49B9-8B41-4DD323A110DC}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F4A581DE-6EF4-4B52-A5E5-CB83C5C5DF5B}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B4BD6B89-FCE4-4187-87B9-9B5F31A1F000}] => (Allow) C:\Program Files\HP\HP DeskJet 3700 series\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{1D26A642-A5C2-445F-A142-2F05497B9136}] => (Allow) LPort=5357
FirewallRules: [{52802DEB-AA3F-473A-A464-6DA4C3054025}] => (Allow) C:\Program Files\HP\HP DeskJet 3700 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [TCP Query User{F8C11DBE-B853-4E43-AE00-8587E3093AB0}C:\users\azul6\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\azul6\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{9AF38E01-7A0D-4448-A23C-83D009081DFA}C:\users\azul6\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\azul6\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E4408301-4C6D-430E-8174-16D8E2F7D898}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS3D7C\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{840D2B8C-6879-4F23-A822-135BC2A60481}] => (Allow) C:\Users\AZUL6\AppData\Local\Temp\7zS3D7C\HPDiagnosticCoreUI.exe => Pas de fichier
FirewallRules: [{5D836229-4B1C-4DA3-9737-B991BB34A012}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => Pas de fichier
FirewallRules: [{F68EC5B5-911D-4B6C-BF83-D10F72F30CC0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{624B2EB6-4C9A-45FC-9BF0-F3004691148C}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\97.0.1072.69\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{4E295FA9-E54E-4EA5-89A0-1DCFA6EED738}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe] => (Allow) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{6A24793D-C379-4455-95F9-FFEEF464FAA9}C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe] => (Allow) C:\users\azul6\appdata\roaming\utorrent\updates\3.5.5_45231.exe (BitTorrent Inc -> BitTorrent Inc.)

==================== Points de restauration =========================

24-01-2022 15:28:21 Point de contrôle planifié
25-01-2022 16:15:18 ZHPcleaner

==================== Éléments en erreur du Gestionnaire de périphériques ============


==================== Erreurs du Journal des événements: ========================

Erreurs Application:
==================
Error: (01/25/2022 04:18:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante ZHPCleaner.exe, version : 2022.1.21.8, horodatage : 0x61eac863
Nom du module défaillant : ZHPCleaner.exe, version : 2022.1.21.8, horodatage : 0x61eac863
Code d’exception : 0xc0000005
Décalage d’erreur : 0x000210aa
ID du processus défaillant : 0x2828
Heure de début de l’application défaillante : 0x01d81200cecbf9b9
Chemin d’accès de l’application défaillante : C:\Users\AZUL6\AppData\Roaming\ZHP\ZHPCleaner.exe
Chemin d’accès du module défaillant: C:\Users\AZUL6\AppData\Roaming\ZHP\ZHPCleaner.exe
ID de rapport : c4f9f6fc-bc6b-4e45-9741-7301d470583a
Nom complet du package défaillant :
ID de l’application relative au package défaillant :

Error: (01/25/2022 04:15:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary MsQuic.

System Error:
O carregador de recursos não conseguiu localizar o ficheiro MUI.
.

Error: (01/25/2022 03:00:42 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1000) (User: AUTORITE NT)
Description: L'accès aux données des performances a été refusé à l'utilisateur « Système » (valeur de GetUserName () pour le thread en cours d'exécution), car il a été tenté à partir du module « C:\Program Files (x86)\Lenovo\VantageService\3.10.26.0\Lenovo.Vantage.AddinHost.Amd64.exe » (valeur de GetModuleFileName () pour le binaire qui a émis la requête).

Error: (01/25/2022 02:58:12 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center n'a pas pu valider l'appelant. Erreur %1.

Error: (01/25/2022 02:27:40 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary MsQuic.

System Error:
O carregador de recursos não conseguiu localizar o ficheiro MUI.
.

Error: (01/25/2022 02:25:10 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary MsQuic.

System Error:
O carregador de recursos não conseguiu localizar o ficheiro MUI.
.

Error: (01/25/2022 02:12:36 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary MsQuic.

System Error:
O carregador de recursos não conseguiu localizar o ficheiro MUI.
.

Error: (01/24/2022 03:28:49 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.

Details:
AddLegacyDriverFiles: Unable to back up image of binary MsQuic.

System Error:
O carregador de recursos não conseguiu localizar o ficheiro MUI.
.


Erreurs système:
=============
Error: (01/26/2022 02:10:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:09:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:09:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:08:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:07:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:07:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:07:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.

Error: (01/26/2022 02:07:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service HP Support Solutions Framework Service n’a pas pu démarrer en raison de l’erreur :
Le fichier spécifié est introuvable.


Windows Defender:
================
Date: 2021-11-23 00:16:13
Description:
L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin.
ID de l’analyse : {E3008EF2-DF9F-41B4-A9BD-A084E9F49514}
Type de l’analyse : Logiciel anti-programme malveillant
Paramètres de l’analyse : Analyse rapide
Utilisateur : AUTORITE NT\Système

CodeIntegrity:
===============
Date: 2022-01-25 14:17:44
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-01-25 14:02:16
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Infos Mémoire ===========================

BIOS: LENOVO O39KT34A 07/07/2017
Carte mère: LENOVO 0x36C4
Processeur: Intel(R) Celeron(R) CPU J3355 @ 2.00GHz
Pourcentage de mémoire utilisée: 80%
Mémoire physique - RAM - totale: 8021.61 MB
Mémoire physique - RAM - disponible: 1566.89 MB
Mémoire virtuelle totale: 10211.47 MB
Mémoire virtuelle disponible: 1345.48 MB

==================== Lecteurs ================================

Drive c: () (Fixed) (Total:909.18 GB) (Free:811.75 GB) NTFS

\\?\Volume{233f402b-c900-4129-aed9-992f38f22b62}\ () (Fixed) (Total:0.98 GB) (Free:0.5 GB) NTFS
\\?\Volume{2a156d9b-f7fd-4630-a2a2-da3663b60d2e}\ (LENOVO_PART) (Fixed) (Total:20 GB) (Free:9.51 GB) NTFS
\\?\Volume{b6eb9f39-2d1d-4b2e-8e49-83b428650e06}\ () (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Table des partitions ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 567C6B5C)

Partition: GPT.

==================== Fin de Addition.txt =======================

Publicité


Signaler le contenu de ce document

Publicité