Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 05-07-2022 Exécuté par raymo (05-07-2022 17:00:38) Exécuté depuis C:\Users\raymo\Downloads Microsoft Windows 10 Famille Langue unique Version 21H2 19044.1645 (X64) (2021-04-26 00:16:25) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-3393285071-3887023923-2863664479-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-3393285071-3887023923-2863664479-503 - Limited - Disabled) Invité (S-1-5-21-3393285071-3887023923-2863664479-501 - Limited - Disabled) raymo (S-1-5-21-3393285071-3887023923-2863664479-1001 - Administrator - Enabled) => C:\Users\raymo WDAGUtilityAccount (S-1-5-21-3393285071-3887023923-2863664479-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Bitdefender Antivirus (Enabled - Out of date) {D5E94967-2F1B-E136-4D3B-25723F3E3632} FW: Bitdefender Pare-feu (Disabled) {EDD2C842-6574-E06E-6664-8C47C1ED7149} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Adobe Acrobat Reader DC - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}) (Version: 22.001.20117 - Adobe Systems Incorporated) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-001824458876}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.15.09.154 - Advanced Micro Devices, Inc.) AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 20.50.02.08 - Advanced Micro Devices, Inc.) AMD_Chipset_Drivers (HKLM-x32\...\{40062f77-30e1-461f-af8a-7fae25ca2137}) (Version: 2.15.09.154 - Advanced Micro Devices, Inc.) Hidden Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 26.0.1.220 - Bitdefender) Bitdefender Internet Security (HKLM\...\Bitdefender) (Version: 25.0.10.52 - Bitdefender) Branding64 (HKLM\...\{7659552A-136F-4615-A9FA-3E3EF2CCA77C}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Branding64 (HKLM\...\{E0C79F99-1928-447B-935B-A86E7FFFD81F}) (Version: 1.00.0003 - Advanced Micro Devices, Inc.) Hidden EOBD-Facile version 3.0.1.718 (HKLM-x32\...\{02041959-1C0D-4116-8A4A-7DEDE06F433E}_is1) (Version: 3.0.1.718 - Outils OBD Facile SAS) Explor@ Park (HKLM-x32\...\VTechDownloadManager) (Version: - VTech) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 102.0.5005.115 - Google LLC) HP Audio Switch (HKLM-x32\...\{20A40E7C-E470-4E9F-9B5C-DDB2C205E856}) (Version: 1.0.154.0 - HP Inc.) HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.17.0 - HP Inc.) HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.0 - HP Inc.) McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.2336.1 - McAfee, LLC) MetaTrader (HKLM\...\MetaTrader) (Version: 5.00 - MetaQuotes Software Corp.) Microsoft 365 - ar-sa (HKLM\...\O365HomePremRetail - ar-sa) (Version: 16.0.15128.20224 - Microsoft Corporation) Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.15128.20224 - Microsoft Corporation) Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.15128.20224 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.44 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 101.0.1210.53 - Microsoft Corporation) Microsoft Office Home and Student 2019 - fr-fr (HKLM\...\HomeStudent2019Retail - fr-fr) (Version: 16.0.15128.20224 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-3393285071-3887023923-2863664479-1001\...\OneDriveSetup.exe) (Version: 22.111.0522.0002 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26429 (HKLM-x32\...\{2019b6a0-8533-4a04-ac0e-b2c10bdb9841}) (Version: 14.14.26429.4 - Microsoft Corporation) Microsoft Visual C++ 2017 x86 Additional Runtime - 14.14.26429 (HKLM-x32\...\{6F0267F3-7467-350D-A8C8-33B72E3658D8}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.14.26429 (HKLM-x32\...\{7753EC39-3039-3629-98BE-447C5D869C09}) (Version: 14.14.26429 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 (HKLM\...\{7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE}) (Version: 14.25.28508 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 (HKLM\...\{EEA66967-97E2-4561-A999-5C22E3CDE428}) (Version: 14.25.28508 - Microsoft Corporation) Hidden OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15128.20146 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15128.20224 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0401-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden Package de pilotes Windows - Microchip Technology, Inc. (usbser) Ports (10/06/2014 5.1.2600.9) (HKLM\...\C28A33A2CE8B20912E72B546DD27448959F399B0) (Version: 10/06/2014 5.1.2600.9 - Microchip Technology, Inc.) Package de pilotes Windows - Silicon Laboratories Inc. (silabser) Ports (03/28/2016 6.7.3.350) (HKLM\...\9437A0D535B29915072FCF153C7CA9B5FD547A24) (Version: 03/28/2016 6.7.3.350 - Silicon Laboratories Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9239.1 - Realtek Semiconductor Corp.) Thetan Arena version 191 (HKLM-x32\...\{B1C5070E-92A8-4738-BE0A-4FBE53B86B9B}_is1) (Version: 191 - Wolffun Game) Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation) Windows PC Health Check (HKLM\...\{6798C408-2636-448C-8AC6-F4E341102D27}) (Version: 3.6.2204.08001 - Microsoft Corporation) Zoom (HKU\S-1-5-21-3393285071-3887023923-2863664479-1001\...\ZoomUMX) (Version: 5.9.6 (3799) - Zoom Video Communications, Inc.) Packages: ========= Amazon -> C:\Program Files\WindowsApps\Amazon.com.Amazon_2018.519.2815.0_x64__343d40qqvtj1t [2020-07-29] (Amazon.com) Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.18.66.0_x64__kgqvnymyfvs32 [2022-05-17] (king.com) Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.80.6.0_x64__kgqvnymyfvs32 [2022-05-17] (king.com) Dropbox - offre promotionnelle -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_20.4.8.0_x64__xbfy0k16fey96 [2022-04-14] (Dropbox Inc.) Energy Star -> C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0.0_x64__v10z8vjag6ke6 [2020-04-03] (HP Inc.) HP JumpStarts -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6 [2021-05-22] (HP Inc.) HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.8.1.0_x64__v10z8vjag6ke6 [2022-03-23] (HP Inc.) HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.42.0_x64__v10z8vjag6ke6 [2021-04-15] (HP Inc.) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_136.1.269.0_x64__v10z8vjag6ke6 [2022-04-29] (HP Inc.) HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.15.66.0_x64__v10z8vjag6ke6 [2022-04-14] (HP Inc.) HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.2.15.0_x64__v10z8vjag6ke6 [2022-01-20] (HP Inc.) LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.0.1.0_neutral__w1wdnht996qgy [2019-05-17] (LinkedIn) McAfee® Personal Security -> C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy [2021-11-28] (McAfee LLC.) Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-04-25] (Microsoft Corporation) [MS Ad] Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-04-25] (Microsoft Corporation) [MS Ad] Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.5120.0_x64__8wekyb3d8bbwe [2022-05-17] (Microsoft Studios) [MS Ad] Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64__mcm4njqhnhss8 [2022-02-17] (Netflix, Inc.) sMedio True DVD for HP -> C:\Program Files\WindowsApps\0E3921EB.sMedioTrueDVDforHP_1.1.154.0_x64__agwrg61xdd7p4 [2022-04-14] (sMedio Inc.) Synaptics TouchPad -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPConsumerDApp_19005.35054.0.0_x64__807d65c4rvak2 [2020-07-07] (Synaptics Incorporated) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\WINDOWS\System32\atiacm64.dll [2021-05-30] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\raymo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome\TradingView.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=mljoeliopagkglldaaacpkojmkjmmlkp ==================== Modules chargés (Avec liste blanche) ============= 2019-11-13 21:59 - 2014-05-06 01:38 - 000036352 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\bearer\qgenericbearer.dll 2019-11-13 21:59 - 2014-05-06 01:38 - 000038912 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\bearer\qnativewifibearer.dll 2019-11-13 21:59 - 2014-05-06 01:38 - 000021504 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qgif.dll 2019-11-13 21:59 - 2014-05-06 01:38 - 000020992 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qico.dll 2019-11-13 21:59 - 2014-05-06 01:38 - 000204800 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qjpeg.dll 2019-11-13 21:59 - 2014-05-06 06:44 - 000218112 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qmng.dll 2019-11-13 21:59 - 2014-05-06 01:58 - 000015872 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qsvg.dll 2019-11-13 21:59 - 2014-05-06 06:44 - 000015360 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qtga.dll 2019-11-13 21:59 - 2014-05-06 06:44 - 000307712 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qtiff.dll 2019-11-13 21:59 - 2014-05-06 06:44 - 000014848 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\imageformats\qwbmp.dll 2019-11-13 21:59 - 2014-05-06 01:39 - 000861184 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\platforms\qwindows.dll 2019-11-13 21:59 - 2014-05-06 02:31 - 000015872 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\plugins\sensors\qtsensors_dummy.dll 2019-11-13 21:59 - 2014-04-21 22:14 - 000065536 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\QHttpServer.dll 2019-11-13 21:59 - 2015-12-14 02:05 - 000120832 _____ () [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\QtSolutions_SOAP-2.7.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000017920 _____ () [Fichier non signé] C:\Program Files\AMD\CNext\CNext\libEGL.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 003567616 _____ () [Fichier non signé] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2020-12-07 21:57 - 2020-12-07 21:57 - 001165824 _____ () [Fichier non signé] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\e_sqlite3.dll 2022-02-20 14:24 - 2022-02-20 14:24 - 000138240 _____ () [Fichier non signé] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\34d0d0133f908d8bfc8bc09ca255a634\Interop.IWshRuntimeLibrary.ni.dll 2020-09-08 18:40 - 2020-09-08 18:40 - 004048896 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\Applications\AppAccessory\6021\Qt5Core.dll 2020-09-08 18:40 - 2020-09-08 18:40 - 000985088 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\Applications\AppAccessory\6021\Qt5Network.dll 2019-11-13 21:59 - 2014-05-05 23:59 - 004048896 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Core.dll 2019-11-13 21:59 - 2014-05-06 00:02 - 004113408 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Gui.dll 2019-11-13 21:59 - 2014-05-06 02:21 - 000545792 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Multimedia.dll 2019-11-13 21:59 - 2014-05-06 02:22 - 000081920 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5MultimediaWidgets.dll 2019-11-13 21:59 - 2019-03-12 03:53 - 000985088 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Network.dll 2019-11-13 21:59 - 2014-05-06 01:37 - 000285696 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5OpenGL.dll 2019-11-13 21:59 - 2014-05-06 02:30 - 000144896 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Positioning.dll 2019-11-13 21:59 - 2014-05-06 01:38 - 000231936 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5PrintSupport.dll 2019-11-13 21:59 - 2014-05-06 02:08 - 002441216 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Qml.dll 2019-11-13 21:59 - 2014-05-06 02:12 - 002121216 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Quick.dll 2019-11-13 21:59 - 2014-05-06 02:31 - 000143872 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Sensors.dll 2019-11-13 21:59 - 2014-05-06 00:00 - 000151040 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Sql.dll 2019-11-13 21:59 - 2014-05-06 01:58 - 000199680 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Svg.dll 2019-11-13 21:59 - 2014-05-06 06:30 - 016913408 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5WebKit.dll 2019-11-13 21:59 - 2014-05-06 06:31 - 000192000 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5WebKitWidgets.dll 2019-11-13 21:59 - 2014-05-06 01:37 - 004359680 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Widgets.dll 2019-11-13 21:59 - 2014-05-06 00:00 - 000159232 _____ (Digia Plc and/or its subsidiary(-ies)) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\Qt5Xml.dll 2021-11-26 00:33 - 2021-11-26 00:34 - 016742912 _____ (McAfee LLC) [Fichier non signé] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.dll 2020-09-08 18:40 - 2020-09-08 18:40 - 022324736 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\Applications\AppAccessory\6021\icudt51.dll 2020-09-08 18:40 - 2020-09-08 18:40 - 001392640 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\Applications\AppAccessory\6021\icuin51.dll 2020-09-08 18:40 - 2020-09-08 18:40 - 001056256 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\Applications\AppAccessory\6021\icuuc51.dll 2019-11-13 21:59 - 2013-05-23 16:32 - 022324736 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\icudt51.dll 2019-11-13 21:59 - 2013-05-23 16:26 - 001392640 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\icuin51.dll 2019-11-13 21:59 - 2013-05-23 16:23 - 001056256 _____ (The ICU Project) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\icuuc51.dll 2019-11-13 21:59 - 2019-11-12 23:53 - 001164288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\LIBEAY32.dll 2019-11-13 21:59 - 2019-11-12 23:53 - 000254976 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [Fichier non signé] C:\Program Files (x86)\VTech\DownloadManager\System\ssleay32.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000031744 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000039424 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000031744 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000414720 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000025088 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000024576 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000023552 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000532992 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 001441792 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 001189888 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000134656 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 006184448 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 006867456 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 001104896 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000325120 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 003668480 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000517120 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QmlModels.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000051712 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QmlWorkerScript.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 004228608 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000171008 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 001085440 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000205824 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000329728 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000127488 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000390656 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 095598080 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 005587968 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000462848 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000188928 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 002878464 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000055808 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000059392 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000017920 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQml\qmlplugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000017920 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000284160 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000333824 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000136704 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000090112 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000313856 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll 2021-01-05 16:45 - 2021-01-05 16:45 - 000017920 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2021-03-31 23:20 - 2021-03-31 23:20 - 000091648 _____ (The Qt Company Ltd.) [Fichier non signé] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ========== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-3393285071-3887023923-2863664479-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE HKU\S-1-5-21-3393285071-3887023923-2863664479-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE SearchScopes: HKLM -> {2984B311-1ADB-4206-BAA7-2AAD1A1B4D96} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {2984B311-1ADB-4206-BAA7-2AAD1A1B4D96} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-3393285071-3887023923-2863664479-1001 -> {2984B311-1ADB-4206-BAA7-2AAD1A1B4D96} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\bdtbie.dll [2022-04-10] (Bitdefender SRL -> Bitdefender) BHO: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2022-04-19] (Bitdefender SRL -> Bitdefender) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2022-03-28] (HP Inc. -> HP Inc.) BHO-x32: Bitdefender Trackers Blocking -> {159ff5d5-55f1-4d2f-b706-767a55f77abb} -> C:\Program Files\Bitdefender\Bitdefender Security\antispam32\bdtbie.dll [2022-04-10] (Bitdefender SRL -> Bitdefender) BHO-x32: Bitdefender Wallet -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2022-04-19] (Bitdefender SRL -> Bitdefender) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-03-04] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2022-03-28] (HP Inc. -> HP Inc.) Toolbar: HKLM - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\pmbxie.dll [2022-04-19] (Bitdefender SRL -> Bitdefender) Toolbar: HKLM-x32 - Bitdefender Wallet - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender Security\Antispam32\pmbxie.dll [2022-04-19] (Bitdefender SRL -> Bitdefender) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-05-17] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-03-19 00:49 - 2022-07-05 16:25 - 000000852 _____ C:\WINDOWS\system32\drivers\etc\hosts 0.0.0.1 mssplus.mcafee.com ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-3393285071-3887023923-2863664479-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\HP Backgrounds\backgroundDefault.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: ) Le Pare-feu est activé. ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{E1F80DE4-9F11-46B2-8D0F-F9D8575F7C67}] => (Allow) C:\Users\raymo\AppData\Roaming\Zoom\bin\airhost.exe => Pas de fichier FirewallRules: [{A2491A6F-C47E-4A14-84A0-7B30AEC57B63}] => (Allow) C:\Users\raymo\AppData\Roaming\Zoom\bin\Zoom.exe => Pas de fichier FirewallRules: [{19C9BAB6-1382-410F-80AD-D62A3E1FD6D0}] => (Allow) C:\Program Files\MetaTrader\metatester64.exe (MetaQuotes Ltd. -> MetaQuotes Ltd.) FirewallRules: [{F0A4620A-85AD-4EC0-BCFD-130272510250}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F6351EFC-547A-40B6-8A08-6D394836569F}] => (Allow) C:\Users\raymo\AppData\Roaming\Zoom\bin_00\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FirewallRules: [{8E92C646-9F20-4691-83AF-C9AF6BAF7329}] => (Allow) C:\Users\raymo\AppData\Roaming\Zoom\bin_00\airhost.exe => Pas de fichier FirewallRules: [{720EE86A-A05D-472C-878A-7C651161C126}] => (Allow) C:\Users\raymo\AppData\Roaming\Zoom\bin_00\airhost.exe => Pas de fichier FirewallRules: [{6F2863EF-4509-456A-9FF1-D68AE4AC90BF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{29D250CF-1251-4B7E-A641-57E26F195598}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{B698ABC3-F2A5-4B36-88E4-3A3B913CF5B4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{D4AEE252-8F77-4443-9EA4-BD6043A507CE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.83.408.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{9196C9F0-2793-4814-A958-D6455EB2BE76}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\101.0.1210.53\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{F31560C6-F65C-41D7-A62F-D04A43BFEA14}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) ==================== Points de restauration ========================= 17-05-2022 08:20:31 Point de contrôle planifié ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (06/08/2022 05:44:13 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme LockApp.exe version 10.0.19041.1503 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de processus : 2bac Heure de début : 01d869ef0a08a729 Heure d'arrêt : 4294967295 Chemin d'accès à l'application : C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe ID de rapport : 7b59296d-6457-4838-9ae1-79cee7ca09b5 Nom complet du package défectueux : Microsoft.LockApp_10.0.19041.1023_neutral__cw5n1h2txyewy ID de l'application relative à un package défectueux : WindowsDefaultLockScreen Type de blocage : Quiesce