Format du document : text/plain
Prévisualisation
Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 06-03-2025
Exécuté par Utilisateur (08-03-2025 10:36:49)
Exécuté depuis C:\Users\Utilisateur\Downloads
Microsoft Windows 10 Famille Version 22H2 19045.5487 (X64) (2020-08-29 21:56:19)
Mode d'amorçage: Normal
==========================================================
==================== Comptes: =============================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
Administrateur (S-1-5-21-2699182137-3270908012-3895445023-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2699182137-3270908012-3895445023-503 - Limited - Disabled)
Invité (S-1-5-21-2699182137-3270908012-3895445023-501 - Limited - Disabled)
Utilisateur (S-1-5-21-2699182137-3270908012-3895445023-1001 - Administrator - Enabled) => C:\Users\Utilisateur
WDAGUtilityAccount (S-1-5-21-2699182137-3270908012-3895445023-504 - Limited - Disabled)
==================== Centre de sécurité ========================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Programmes installés ======================
(Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.)
4Free Video Converter 3 (HKLM-x32\...\{7061301A-0D44-432F-859D-AF705DA2C81F}_is1) (Version: - 4Free Studio)
Betclic Poker.fr (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\BetclicPoker.fr) (Version: 1.1.1.37 - Betclic Poker.fr)
BlueStacks App Player (HKLM\...\BlueStacks_nxt) (Version: 5.21.218.1001 - now.gg, Inc.)
BlueStacks Services (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\BlueStacksServices) (Version: 3.0.9 - now.gg, Inc.)
BlueStacks X (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\BlueStacks X) (Version: 10.41.218.1001 - now.gg, Inc.)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP)
Contrôle d’intégrité du PC Windows (HKLM\...\{90C6971F-ABF1-4FBF-BD98-24F14C5F5AB4}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Cybertek User Config (HKLM\...\{28C8017C-A90C-40A6-BE4F-AD33CDBAA5F8}) (Version: 1.02.0000 - Cybertek Pau)
Disk Drill 5.6.913.0 (HKLM-x32\...\{53a36147-29c7-4f10-9b17-e09fe96f1c52}) (Version: 5.6.913.0 - CleverFiles)
Disk Drill 5.6.913.0 (x64) (HKLM\...\{1BAB359A-4C5D-432F-98B3-338965497750}) (Version: 5.6.913.0 - CleverFiles) Hidden
Dokan Library 1.5.1.1000 (x64) (HKLM\...\{65A3A964-3DC3-0105-0001-211126123627}) (Version: 1.5.1.1000 - Dokany Project) Hidden
Dokan Library 1.5.1.1000 Bundle (HKLM-x32\...\{05c046de-f751-48c8-b8d3-77259ea88eb7}) (Version: 1.5.1.1000 - Dokany Project)
EaseUS Data Recovery Wizard (HKLM\...\EaseUS Data Recovery Wizard_is1) (Version: - EaseUS Data Recovery Wizard)
Epic Games Launcher (HKLM-x32\...\{A17FC61C-F723-4856-9116-3087712BCB11}) (Version: 1.1.167.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{A1EB595F-651D-4A04-99B0-A7065538B33C}) (Version: 2.0.38.0 - Epic Games, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 133.0.6943.142 - Google LLC)
HellHades Artifact Extractor (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\{0BEB233C-BDC6-41D3-BF47-2911DEB2E866}) (Version: 1.1.62.0 - HellHades.com)
illiPro (HKLM-x32\...\{23F9B204-12B9-408F-83EE-5C0D021ED43B}) (Version: 24.00 - Legrand)
Kingston SSD Manager version 1.1.2.6 (HKLM-x32\...\{9A5DD901-0B98-4F2B-9421-B5975014184F}_is1) (Version: 1.1.2.6 - Kingston Digital, Inc)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Le Seigneur des Anneaux Online v1903.0058.2732.4095 (HKLM-x32\...\12bbe590-c890-11d9-9669-0800200c9a66_is1) (Version: 1903.0058.2732.4095 - Standing Stone Games, LLC)
LegrandPDFWriter (HKLM\...\LegrandPDFWriter) (Version: - )
Malwarebytes version 5.2.6.163 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.6.163 - Malwarebytes)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.13 (x64) (HKLM\...\{6CD2C0A9-55E7-4133-BC19-205CCF2B64C9}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.13 (x64) (HKLM\...\{BB5AC4BC-A263-43DA-A530-9CB56342D6B8}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.13 (x64) (HKLM\...\{C7FB4EEE-D481-4AC1-B113-120A9124FE50}) (Version: 64.52.27977 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 133.0.3065.92 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 133.0.3065.92 - Microsoft Corporation) Hidden
Microsoft Office « Démarrer en un clic » 2010 (HKLM\...\{90140000-006D-040C-1000-0000000FF1CE}) (Version: 14.0.6122.5000 - Microsoft Corporation) Hidden
Microsoft Office « Démarrer en un clic » 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.6122.5000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Français (HKLM-x32\...\{90140011-0066-040C-0000-0000000FF1CE}) (Version: 14.0.7261.5000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\OneDriveSetup.exe) (Version: 25.025.0209.0001 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.13 (x64) (HKLM\...\{852F821B-340A-4473-BA94-8FAFD5AFFE85}) (Version: 64.52.27986 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.13 (x64) (HKLM-x32\...\{e882eb81-b18c-4676-88f0-9a6ea9db6090}) (Version: 8.0.13.34517 - Microsoft Corporation)
Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 136.0 (x64 fr)) (Version: 136.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 102.2.2 - Mozilla)
Mozilla Thunderbird (x64 fr) (HKLM\...\Mozilla Thunderbird 128.7.1 (x64 fr)) (Version: 128.7.1 - Mozilla)
MyRecover (HKLM-x32\...\{2219F43E-84A9-44A6-8179-B0D4C2D077FB}_is1) (Version: 3.6.1 - AOMEI International Network Limited.)
NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.4.6.950 - Nord Security)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.35.1.0 - Nord Security)
NoxPlayer (HKLM-x32\...\Nox) (Version: 7.0.2.0 - Duodian Technology Co. Ltd.)
NVIDIA Pilote graphique 560.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 560.94 - NVIDIA Corporation)
Plarium Play (HKLM-x32\...\{4dca8885-3d6f-471b-bf69-5da3c058b39d}) (Version: 10.1.0 - Plarium)
PlariumPlay (HKLM-x32\...\{B2953D0F-C10A-48E7-A5D3-932D3728E4D1}) (Version: 10.1.0 - Plarium) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7811 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.5.7 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.5.7 - VS Revo Group, Ltd.)
RSL_Helper version 4.5 (HKLM-x32\...\RSL_Helper_is1) (Version: 4.5 - )
Spotify (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\Spotify) (Version: 1.2.58.498.g6afe77b7 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tenorshare 4DDiG 10.1.14.6 (HKLM\...\{UltData - Windows}_is1) (Version: 10.1.14.6 - Tenorshare, Inc.)
TP-Link TL-WN823N (HKLM-x32\...\{CE194A8D-C8DF-47EB-AB04-5A54CDC1C5BD}) (Version: 2.1.0 - TP-Link)
TP-Link Wireless Adapter WPS Tool (HKLM-x32\...\{685EFF87-B126-49E4-8213-70C56625C5B5}) (Version: 1.0.0.1 - TP-Link)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 84.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.20 - VideoLAN)
VSO ConvertXToDVD 7 (HKLM-x32\...\{A021D003-6933-4EA4-B582-F1D0C3E52409}_is1) (Version: 7.0.0.69 - VSO Software)
Wargaming.net Game Center (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\Wargaming.net Game Center) (Version: 20.7.1.2675 - Wargaming.net)
Wargaming.net Game Center for Steam (HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\Wargaming.net Game Center for Steam) (Version: 24.5.1.7037 - Wargaming.net)
XLPRO3 Light (HKLM-x32\...\{ECAB9BE4-8C28-4D58-B435-BEA355661A26}) (Version: 3.9.23 - Legrand)
Packages:
=========
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.2970.1.0_x64__kgqvnymyfvs32 [2025-02-27] (king.com)
Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-12-26] (Microsoft Corporation)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.26.2580.0_x64__rz1tebttyb220 [2025-02-26] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2022-05-23] (Fitbit)
Forza Motorsport 6: Apex -> C:\Program Files\WindowsApps\Microsoft.ApexPG_2.8.18.1000_x64__8wekyb3d8bbwe [2019-02-13] (Microsoft Studios)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_158.1.1131.0_x64__v10z8vjag6ke6 [2025-03-04] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.6201.0_x64__8wekyb3d8bbwe [2025-02-26] (Microsoft Studios)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2024-07-29] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-24] (NVIDIA Corp.)
==================== Personnalisé CLSID (Avec liste blanche): ==============
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{1668633d-bb0e-a3d4-3b7b-acfc671dc77e}\localserver32 -> "C:\Users\Utilisateur\AppData\Local\PlariumPlay\9.8.0-0.0.0\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{220f6c23-bf82-cf74-6dc5-bd2664edfacd}\localserver32 -> "E:\Disk Drill\DD.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{3e5dba08-7ec3-cc88-1f18-0cf79ce7ade4}\localserver32 -> "C:\Program Files\AtlasVPN\Bin\AtlasVPN.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> NordVPN)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{5eb7b660-b128-364b-cfbd-0f497d447eda}\localserver32 -> C:\Users\Utilisateur\AppData\Local\PlariumPlay\10.1.0-0.0.0\dotnet\PlariumPlay.NetHost.exe (Plarium Global LTD -> PlariumPlay.NetHost)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{7500b390-5d3b-4432-8b80-b49cdb18c2b4}\InprocServer32 -> G:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{986078D1-E564-4C4A-85A9-3BA1E9969923}\InprocServer32 -> G:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{a1387b99-1834-3fc7-4e13-e30645633ec4}\localserver32 -> "C:\Users\Utilisateur\AppData\Local\PlariumPlay\9.6.0-0.0.3\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{b6a0f955-7068-7f36-7a7a-b7d71a394920}\localserver32 -> "C:\Users\Utilisateur\AppData\Local\PlariumPlay\9.7.0-0.0.0\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{c51cd249-13d4-a313-de06-103f5463085c}\localserver32 -> "C:\Users\Utilisateur\AppData\Local\PlariumPlay\9.5.0-0.0.0\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => Pas de fichier
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{e0bb8d08-9188-f3b0-9f46-ce62f9bc29f6}\localserver32 -> C:\Users\Utilisateur\AppData\Local\PlariumPlay\10.0.0-0.0.0\dotnet\info\PlariumPlayInfo.exe (Plarium Global LTD -> PlariumPlayInfo)
CustomCLSID: HKU\S-1-5-21-2699182137-3270908012-3895445023-1001_Classes\CLSID\{fe478704-568a-1f53-cb8e-7820c7c319d0}\localserver32 -> "C:\Users\Utilisateur\AppData\Local\PlariumPlay\9.9.0-0.0.0\dotnet\info\PlariumPlayInfo.exe" -ToastActivated => Pas de fichier
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-12-14] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_aa54f7a758543a0a\nvshext.dll [2024-11-19] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2024-12-14] (Malwarebytes Inc. -> Malwarebytes)
==================== Codecs (Avec liste blanche) ====================
==================== Raccourcis & WMI ========================
==================== Modules chargés (Avec liste blanche) =============
2025-03-08 10:24 - 2025-03-08 10:24 - 000110080 _____ () [Fichier non signé] \\?\C:\Users\Utilisateur\AppData\Local\Temp\6d2b2190-ba4a-4bed-a587-4302150f9659.tmp.node
2022-08-24 15:55 - 2018-01-30 08:59 - 000195072 _____ () [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\DC_WFF.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 001680384 _____ () [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\WJRtl.dll
2024-05-03 10:22 - 2010-12-10 10:24 - 000087040 _____ () [Fichier non signé] C:\WINDOWS\System32\custmon64.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 000528384 _____ (Realtek Semiconductor Corp.) [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RtlLib.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 000200704 _____ (Realtek) [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\IpLib.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 000272384 _____ (Realtek) [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RtlIhvOid.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 001122304 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\LIBEAY32.dll
2022-08-24 15:55 - 2018-01-30 08:59 - 002129920 _____ (TP-Link Technologies Co., Ltd) [Fichier non signé] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\language\French(France)\nicLan.dll
==================== Alternate Data Streams (Avec liste blanche) ========
==================== Mode sans échec (Avec liste blanche) ==================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Avec liste blanche) =================
==================== Internet Explorer (Avec liste blanche) =============
==================== Hosts contenu: =========================
(Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.)
2018-04-12 00:38 - 2025-03-08 10:15 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Autres zones ===========================
(Actuellement, il n'y a pas de correction automatique pour cette section.)
HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Utilisateur\OneDrive\Bureau\LAURENT\ilovepdf_split-range\New Model Army.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Le Pare-feu est activé.
Network Binding:
=============
NordLynx: NordLynx Tunnel -> wireguard.sys
Wi-Fi: TP-Link Wireless USB Adapter -> rtwlanu.sys
Connexion au réseau local: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys
OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys
==================== MSCONFIG/TASK MANAGER éléments désactivés ==
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.)
HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\StartupApproved\Run: => "electron.app.BlueStacks Services"
HKU\S-1-5-21-2699182137-3270908012-3895445023-1001\...\StartupApproved\Run: => "PlariumPlay"
==================== RèglesPare-feu (Avec liste blanche) ================
(Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.)
FirewallRules: [TCP Query User{5C7777BA-EC29-4164-9A34-01A174DF4D46}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{9983FB2E-07CD-42DE-9FDE-6B8AEF789F7D}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7D80A167-A2CA-4A8F-9325-C864AD5B5A35}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{28A6C3D0-54F5-40A9-A17B-A020E071063B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{B4375106-E465-425E-B15E-C41E10391E3F}C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe] => (Allow) C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe (Standing Stone Games, LLC.) [Fichier non signé]
FirewallRules: [UDP Query User{6E038E3A-729D-4513-9CF0-8FC2119C7A28}C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe] => (Allow) C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe (Standing Stone Games, LLC.) [Fichier non signé]
FirewallRules: [TCP Query User{A31F132F-F2A7-4657-8609-B85F7B200AC5}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{3BFD8174-41B7-4A32-9D7E-B79B9172DB84}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{CBEA2F10-5E28-4CAF-9DB4-604E66A898C4}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{3E96FA13-3D98-4AAB-8BAA-FA074CB29482}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{E68D6B31-8661-43C0-B321-6BC945041E67}C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe] => (Allow) C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe (Standing Stone Games, LLC.) [Fichier non signé]
FirewallRules: [UDP Query User{C9F2521B-178E-4D56-82D2-77302210ADE9}C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe] => (Allow) C:\program files (x86)\standingstonegames\le seigneur des anneaux online\x64\lotroclient64.exe (Standing Stone Games, LLC.) [Fichier non signé]
FirewallRules: [TCP Query User{930D5CBD-B770-41E1-ADB4-F826F58F0440}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{758184A1-CA50-42AD-9CCD-2AE10763EF94}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{EEB91C6C-0B44-4CEF-AB3E-69247A2A5E54}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{F2BBEE00-8FD6-4B01-966E-4F7F097155AD}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{2C480F87-DD52-4D62-8E18-4E4F2594D1E2}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe => Pas de fichier
FirewallRules: [UDP Query User{1BC39DDE-BFFC-451E-A170-9BE7E631E77C}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe => Pas de fichier
FirewallRules: [{5CE8D00E-23A8-4559-B8BB-9E7E5B04F8B2}] => (Allow) C:\Program Files (x86)\Nox\bin\Nox.exe (Nox Limited -> Duodian Technology Co. Ltd.)
FirewallRules: [{64730D12-6C6F-4461-AA59-3D5DB365228B}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (Nox Limited -> Nox Limited Corporation)
FirewallRules: [{6908D355-E0FA-43D3-9EE6-435BCBE4BC40}] => (Allow) G:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8A0F1376-0D90-4170-92A5-08C622159644}] => (Allow) G:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{290FDCC8-21D2-4A1A-A519-AD98723AD896}] => (Allow) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E69B3F23-8074-41D4-BC46-7413D72483FC}] => (Allow) G:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{6C7F7418-C11D-4504-827A-0BA31105AE23}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\NBA 2K21\NBA2K21.exe () [Fichier non signé]
FirewallRules: [{B91325F8-F269-4B37-9270-1D0FC7B42361}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\NBA 2K21\NBA2K21.exe () [Fichier non signé]
FirewallRules: [{398447F9-ADFB-4935-87D7-BE7C06318B6F}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe () [Fichier non signé]
FirewallRules: [{802EBAF7-0B49-40A5-A7DB-CF8E4DA0DCC5}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\60 Seconds!\60Seconds.exe () [Fichier non signé]
FirewallRules: [{C87309CB-DB2A-45D2-AE34-0A8D024EF51B}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [{285B567A-595D-4242-9D79-BC8ACD8A24C4}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [{BB2E3517-BC6E-4D32-8477-49900AB8D001}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [{B279E532-A6F8-4139-B961-A6AC4099AA1D}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [{DA81593C-141B-4E75-B9D2-656FF8BA44B4}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [{C0006730-7448-4043-BECF-45B6CE8C2631}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [Fichier non signé]
FirewallRules: [TCP Query User{BED551A6-1CB0-4741-9BC4-9F83260C54AF}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{B3416DF6-76C4-4156-B498-59FBA0506D32}C:\users\utilisateur\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\utilisateur\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{2E770DDC-311E-47A9-BEA4-8A0BF695A883}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{6CB49E43-2EA2-4C5B-9512-4C0AC767E4F6}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{1C1FC224-0A9E-4124-A9EC-2CAD824EB3E1}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [{BD546122-1108-419A-8B8A-54E110F58F0F}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\Sid Meier's Civilization VI\2KLauncher\LauncherPatcher.exe (Take-Two Interactive Software, Inc. -> Take-Two Interactive Software, Inc.)
FirewallRules: [TCP Query User{0DF45FB3-F372-40CE-830D-D7025A3233A6}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe => Pas de fichier
FirewallRules: [UDP Query User{0C7DA8BE-85C4-454A-81CA-1F9EE242A3C8}C:\program files\kodi\kodi.exe] => (Allow) C:\program files\kodi\kodi.exe => Pas de fichier
FirewallRules: [{972A791F-9559-49E4-9DC7-748FB60BF4D4}] => (Block) C:\program files\kodi\kodi.exe => Pas de fichier
FirewallRules: [{32A71F49-6B7B-437A-A519-2FF6F78F4017}] => (Block) C:\program files\kodi\kodi.exe => Pas de fichier
FirewallRules: [{BCF04824-89DD-4DF3-8C56-A6FB6B7635DA}] => (Allow) G:\WGCheck\WGCheck_EU\WGCheck.exe (Wargaming Group Limited -> )
FirewallRules: [{21F63E79-4D5B-472A-81F4-FFF5BA760C4B}] => (Allow) G:\WGCheck\WGCheck_EU\WGCheck.exe (Wargaming Group Limited -> )
FirewallRules: [{4DEF3CF9-D6C2-4E67-82AB-31AD4E221527}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\World of Tanks\wgcs_api.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{8854B552-DE54-4544-AAB9-83490FCBF6CC}] => (Allow) G:\Program Files (x86)\Steam\steamapps\common\World of Tanks\wgcs_api.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{F0D9803B-F04C-4789-8783-28230F5DD532}G:\program files (x86)\steam\steamapps\common\world of tanks\eu\win64\worldoftanks.exe] => (Allow) G:\program files (x86)\steam\steamapps\common\world of tanks\eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{17359FD0-E4C9-4611-8F3E-2EDE2A811520}G:\program files (x86)\steam\steamapps\common\world of tanks\eu\win64\worldoftanks.exe] => (Allow) G:\program files (x86)\steam\steamapps\common\world of tanks\eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{5431B2B2-FDC0-4FCC-82D2-E0EE92761218}C:\programdata\wargaming.net\gamecenter for steam\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter for steam\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{39B1DF76-06AD-4F51-89A6-9568C2AD5075}C:\programdata\wargaming.net\gamecenter for steam\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter for steam\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{E2860915-76E9-4D52-9A08-02CF00E106C4}] => (Allow) C:\Program Files (x86)\BlueStacks X\BlueStacksWeb.exe (Now.gg, INC -> Bluestack Systems, Inc.)
FirewallRules: [{9B749974-5496-40C8-AB92-A276BCDFB48A}] => (Allow) C:\Program Files (x86)\BlueStacks X\Cloud Game.exe => Pas de fichier
FirewallRules: [{BCACE9BD-8052-4D32-97ED-3E9EAA8E83BD}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe (Now.gg, INC -> BlueStack Systems)
FirewallRules: [{043E0CAB-344B-4F34-8A6A-C0A05C89CB92}] => (Allow) C:\Program Files\BlueStacks_nxt\BlueStacksAppplayerWeb.exe (Now.gg, INC -> The Qt Company Ltd.)
FirewallRules: [{B1039444-1E94-482F-B7B1-966F9BF6715B}] => (Allow) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRWUI.exe (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
FirewallRules: [{58968C1D-A77A-4872-B111-143D6CEA408B}] => (Allow) C:\Users\Utilisateur\Downloads\4ddig-for-windows_11727678618314242001.exe => Pas de fichier
FirewallRules: [{6360E39D-8D37-4851-931A-69D6BBC3AA95}] => (Allow) C:\Users\Utilisateur\Downloads\4ddig-for-windows_11727678618314242001.exe => Pas de fichier
FirewallRules: [{7BD2871D-97F2-4F08-89BD-084105B122FF}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\Tenorshare 4DDiG.exe (Tenorshare (Hongkong) Limited -> Tenorshare)
FirewallRules: [{58CF6F19-6B9A-4796-AC9E-86F0C354F2A4}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\Tenorshare 4DDiG.exe (Tenorshare (Hongkong) Limited -> Tenorshare)
FirewallRules: [{55D51A7F-CD0C-4A86-AAD6-F12D8C6545F1}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NetFrameCheck.exe => Pas de fichier
FirewallRules: [{611EC0B9-C91D-444F-BC08-208FB33781AE}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\NetFrameCheck.exe => Pas de fichier
FirewallRules: [{A6A880A4-A89C-4A80-BA95-7F8CB72EBC7E}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\ParseRecord.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{CFBED4A1-5F9D-40E7-A5FF-43C915069C63}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\ParseRecord.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{DF6F656D-D14B-469C-8D6F-736FBCCF6ADC}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\UpdateService.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{DC45F2DF-A56C-47BA-B445-7EF28D656682}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\UpdateService.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{1FEBD4F9-E04A-4458-9F6E-92B006389E8F}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\preuninstall.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{32DAE9BC-C104-43E6-B21C-173FF1BAA9D5}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\preuninstall.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{FED62B78-982A-41F5-8E98-1901E8F3E87A}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DeviceViewerService.exe (Tenorshare (Hongkong) Limited -> Tenorshare)
FirewallRules: [{1610371B-183D-4846-9B90-7837F2C2B0C8}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DeviceViewerService.exe (Tenorshare (Hongkong) Limited -> Tenorshare)
FirewallRules: [{873F4952-F5AB-484C-8C94-4225C1AAF999}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataScanService.exe (Tenorshare (Hongkong) Limited -> Tenorshare Co.,Ltd.)
FirewallRules: [{6C639818-6CBF-471C-97EC-EADC3B0B2F43}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataScanService.exe (Tenorshare (Hongkong) Limited -> Tenorshare Co.,Ltd.)
FirewallRules: [{1CBDBE84-3246-4590-8E5E-9E14D113A168}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataRecoveryService.exe (Tenorshare (Hongkong) Limited -> Tenorshare Co.,Ltd.)
FirewallRules: [{7822953D-37D5-4ADF-8116-11A203624AE4}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\DataRecoveryService.exe (Tenorshare (Hongkong) Limited -> Tenorshare Co.,Ltd.)
FirewallRules: [{274355F9-F6BD-40DF-8D1C-B303DA1A7D25}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\MsgSupport\MsgSupportService.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{C29FE422-480B-42D3-91D8-EB18B47AC2BA}] => (Allow) C:\Program Files (x86)\Tenorshare\Tenorshare 4DDiG\MsgSupport\MsgSupportService.exe (Tenorshare (Hongkong) Limited -> )
FirewallRules: [{9E39C8ED-B032-422F-9F93-DBCFA774C683}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2F09B00F-F5C3-457E-88BF-8AC37D09ADE1}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.92\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F4CDF298-D052-4B1B-8B8C-5972B8E76057}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B2631F80-895E-4F48-AB87-5B65D9D84504}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{46B2D882-C0D8-4954-920D-4E4273FFE898}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{589D1161-983E-4819-A47B-67E2AEE07914}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
==================== Points de restauration =========================
25-02-2025 23:10:21 Revo Uninstaller's restore point - AtlasVPN
06-03-2025 10:31:33 Point de contrôle planifié
==================== Éléments en erreur du Gestionnaire de périphériques ============
Name: Clavier standard PS/2
Description: Clavier standard PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Claviers standard)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
Name: Souris Microsoft PS/2
Description: Souris Microsoft PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.
==================== Erreurs du Journal des événements: ========================
Erreurs Application:
==================
Error: (03/08/2025 10:33:19 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante Vuplex WebView.vuplex, version : 0.0.0.0, horodatage : 0x63ce0e95
Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7
Code d’exception : 0xe0000008
Décalage d’erreur : 0x000000000003b699
ID du processus défaillant : 0x2a40
Heure de début de l’application défaillante : 0x01db900d0982614b
Chemin d’accès de l’application défaillante : C:\Users\Utilisateur\AppData\Local\PlariumPlay\StandAloneApps\raid-shadow-legends\130083\Raid_Data\Plugins\x86_64\VuplexWebViewChromium\Vuplex WebView.vuplex
Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll
ID de rapport : ed635174-84f2-4146-a656-0c9fcbfb8106
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/08/2025 01:03:53 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante RSLHelper.exe, version : 6.1.0.46, horodatage : 0x67aba9ed
Nom du module défaillant : RSLHelper.exe, version : 6.1.0.46, horodatage : 0x67aba9ed
Code d’exception : 0xc0000005
Décalage d’erreur : 0x000000000000f359
ID du processus défaillant : 0x13c8
Heure de début de l’application défaillante : 0x01db8fbd429dce70
Chemin d’accès de l’application défaillante : G:\Program Files (x86)\RSL_Helper_V4\RSLHelper.exe
Chemin d’accès du module défaillant: G:\Program Files (x86)\RSL_Helper_V4\RSLHelper.exe
ID de rapport : e3e7532e-af84-4c48-8f5b-06140b35d82a
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/08/2025 01:03:50 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante Raid.exe, version : 2022.3.38.54695, horodatage : 0x668dac61
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00007ff8d876dbc0
ID du processus défaillant : 0xe34
Heure de début de l’application défaillante : 0x01db8fbd7b0c159d
Chemin d’accès de l’application défaillante : C:\Users\Utilisateur\AppData\Local\PlariumPlay\StandAloneApps\raid-shadow-legends\130083\Raid.exe
Chemin d’accès du module défaillant: unknown
ID de rapport : 3333ba2a-8a22-4f54-9f45-d9fe4ad0646d
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/06/2025 12:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante chrome.exe, version : 133.0.6943.142, horodatage : 0x67bcea7d
Nom du module défaillant : ntdll.dll, version : 10.0.19041.5438, horodatage : 0xab0dece3
Code d’exception : 0xc00000fd
Décalage d’erreur : 0x000000000002d196
ID du processus défaillant : 0x397c
Heure de début de l’application défaillante : 0x01db8e8d8dd6f311
Chemin d’accès de l’application défaillante : C:\Program Files\Google\Chrome\Application\chrome.exe
Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll
ID de rapport : 7097f36e-65c6-434c-89e6-eb088c16b010
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/06/2025 12:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante chrome.exe, version : 133.0.6943.142, horodatage : 0x67bcea7d
Nom du module défaillant : ntdll.dll, version : 10.0.19041.5438, horodatage : 0xab0dece3
Code d’exception : 0xc00000fd
Décalage d’erreur : 0x000000000002d196
ID du processus défaillant : 0x39c4
Heure de début de l’application défaillante : 0x01db8e8d8dd8a142
Chemin d’accès de l’application défaillante : C:\Program Files\Google\Chrome\Application\chrome.exe
Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll
ID de rapport : 081c27bd-c113-4db3-ba95-f9afc225c311
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/06/2025 12:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante chrome.exe, version : 133.0.6943.142, horodatage : 0x67bcea7d
Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7
Code d’exception : 0xe0000008
Décalage d’erreur : 0x000000000003b699
ID du processus défaillant : 0x1a1c
Heure de début de l’application défaillante : 0x01db8e8d7f4c1c46
Chemin d’accès de l’application défaillante : C:\Program Files\Google\Chrome\Application\chrome.exe
Chemin d’accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll
ID de rapport : a00a1571-697a-407e-bd55-6cd33387231f
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/06/2025 12:47:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante chrome.exe, version : 133.0.6943.142, horodatage : 0x67bcea7d
Nom du module défaillant : ntdll.dll, version : 10.0.19041.5438, horodatage : 0xab0dece3
Code d’exception : 0xc00000fd
Décalage d’erreur : 0x000000000000a467
ID du processus défaillant : 0x3984
Heure de début de l’application défaillante : 0x01db8e8d8dd7081f
Chemin d’accès de l’application défaillante : C:\Program Files\Google\Chrome\Application\chrome.exe
Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll
ID de rapport : 458fb2c8-e7f6-4dba-a48e-8fc780d86450
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Error: (03/06/2025 10:59:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante Raid.exe, version : 2022.3.38.54695, horodatage : 0x668dac61
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00007ff8bbfcdbc0
ID du processus défaillant : 0x2784
Heure de début de l’application défaillante : 0x01db8e7e4cb0728c
Chemin d’accès de l’application défaillante : C:\Users\Utilisateur\AppData\Local\PlariumPlay\StandAloneApps\raid-shadow-legends\130083\Raid.exe
Chemin d’accès du module défaillant: unknown
ID de rapport : 52fe792d-14c9-47ba-8629-327e0c8ea398
Nom complet du package défaillant :
ID de l’application relative au package défaillant :
Erreurs système:
=============
Error: (03/08/2025 10:16:28 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT)
Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931
Error: (03/08/2025 03:25:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-01PIEIP)
Description: Le serveur microsoft.windowscommunicationsapps_16005.14326.22301.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca ne s’est pas enregistré sur DCOM avant la fin du temps imparti.
Error: (03/08/2025 12:04:41 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT)
Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931
Error: (03/08/2025 12:03:15 AM) (Source: NetBT) (EventID: 4307) (User: )
Description: L’initialisation a échoué car le transport a refusé d’ouvrir les adresses initiales.
Error: (03/08/2025 12:03:12 AM) (Source: NetBT) (EventID: 4307) (User: )
Description: L’initialisation a échoué car le transport a refusé d’ouvrir les adresses initiales.
Error: (03/07/2025 09:54:05 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT)
Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931
Error: (03/07/2025 09:51:15 AM) (Source: NetBT) (EventID: 4307) (User: )
Description: L’initialisation a échoué car le transport a refusé d’ouvrir les adresses initiales.
Error: (03/07/2025 09:51:12 AM) (Source: NetBT) (EventID: 4307) (User: )
Description: L’initialisation a échoué car le transport a refusé d’ouvrir les adresses initiales.
Windows Defender:
================
Date: 2025-03-07 12:47:46
Description:
Antivirus Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2025-03-06 10:41:47
Description:
Antivirus Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2025-03-05 14:09:18
Description:
Antivirus Microsoft Defender scan has been stopped before completion.
Scan Type: Logiciel anti-programme malveillant
Scan Parameters: Analyse rapide
Date: 2025-03-05 13:55:42
Description:
Antivirus Microsoft Defender scan has been stopped before completion.
Scan Type: Logiciel anti-programme malveillant
Scan Parameters: Analyse rapide
Date: 2025-03-05 13:46:05
Description:
Antivirus Microsoft Defender scan has been stopped before completion.
Scan Type: Logiciel anti-programme malveillant
Scan Parameters: Analyse rapide
Event[0]:
Date: 2025-02-28 21:46:01
Description:
Antivirus Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version: 1.423.167.0
Previous security intelligence Version: 1.423.160.0
Update Source: Utilisateur
Security intelligence Type: Logiciel anti-espion
Update Type: Delta
Current Engine Version: 1.1.25010.7
Previous Engine Version: 1.1.25010.7
Error code: 0x80508007
Error description: La mémoire de votre appareil est insuffisante. Fermez certains programmes et réessayez, ou consultez l’Aide et support pour en savoir plus sur les problèmes de mémoire insuffisante.
Date: 2025-02-28 21:46:01
Description:
Antivirus Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version: 1.423.167.0
Previous security intelligence Version: 1.423.160.0
Update Source: Utilisateur
Security intelligence Type: Anti-virus
Update Type: Delta
Current Engine Version: 1.1.25010.7
Previous Engine Version: 1.1.25010.7
Error code: 0x80508007
Error description: La mémoire de votre appareil est insuffisante. Fermez certains programmes et réessayez, ou consultez l’Aide et support pour en savoir plus sur les problèmes de mémoire insuffisante.
Date: 2025-02-18 14:09:20
Description:
Antivirus Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.421.1948.0
Update Source: Serveur Microsoft Update
Security intelligence Type: Anti-virus
Update Type: Complet
Current Engine Version:
Previous Engine Version: 1.1.24090.11
Error code: 0x80070643
Error description: Erreur irrécupérable lors de l’installation.
Date: 2025-02-18 14:09:18
Description:
Antivirus Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version: 1.421.1965.0
Previous security intelligence Version: 1.421.1948.0
Update Source: Utilisateur
Security intelligence Type: Logiciel anti-espion
Update Type: Delta
Current Engine Version: 1.1.24090.11
Previous Engine Version: 1.1.24090.11
Error code: 0x80508007
Error description: La mémoire de votre appareil est insuffisante. Fermez certains programmes et réessayez, ou consultez l’Aide et support pour en savoir plus sur les problèmes de mémoire insuffisante.
Date: 2025-02-18 14:09:18
Description:
Antivirus Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version: 1.421.1965.0
Previous security intelligence Version: 1.421.1948.0
Update Source: Utilisateur
Security intelligence Type: Anti-virus
Update Type: Delta
Current Engine Version: 1.1.24090.11
Previous Engine Version: 1.1.24090.11
Error code: 0x80508007
Error description: La mémoire de votre appareil est insuffisante. Fermez certains programmes et réessayez, ou consultez l’Aide et support pour en savoir plus sur les problèmes de mémoire insuffisante.
CodeIntegrity:
===============
Date: 2025-03-08 10:19:05
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.
Date: 2025-03-08 10:17:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.
Date: 2025-03-06 10:08:27
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\dokannp1.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Infos Mémoire ===========================
BIOS: American Megatrends Inc. A.A0 07/27/2016
Carte mère: MSI Z170A PC MATE (MS-7971)
Processeur: Intel(R) Core(TM) i5-6500 CPU @ 3.20GHz
Pourcentage de mémoire utilisée: 82%
Mémoire physique - RAM - totale: 8152.11 MB
Mémoire physique - RAM - disponible: 1448.33 MB
Mémoire virtuelle totale: 10185.68 MB
Mémoire virtuelle disponible: 1144.37 MB
==================== Lecteurs ================================
Drive c: () (Fixed) (Total:222.97 GB) (Free:36.14 GB) (Model: KINGSTON SA400S37240G) NTFS
Drive e: (20180918_154309) (CDROM) (Total:0 GB) (Free:0 GB) CDFS
Drive g: (Ancien HDD) (Fixed) (Total:930.56 GB) (Free:514.67 GB) (Model: ST1000DX001-1NS162) NTFS
Drive q: () (Fixed) (Total:0 GB) (Free:0 GB) (Model: KINGSTON SA400S37240G)
\\?\Volume{d0cd6cdc-6446-4c95-971f-5dbb6e73c3f9}\ () (Fixed) (Total:0.49 GB) (Free:0.05 GB) NTFS
\\?\Volume{94051a73-0000-0000-0000-10c3e8000000}\ () (Fixed) (Total:0.46 GB) (Free:0.07 GB) NTFS
\\?\Volume{3c06a9c6-53de-450b-8a7d-8bf609011885}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Table des partitions ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 223.6 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 94051A73)
Partition 1: (Not Active) - (Size=930.6 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=474 MB) - (Type=27)
==================== Fin de Addition.txt =======================