Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 24-03-2025 Exécuté par fanti (27-03-2025 10:18:34) Exécuté depuis C:\Users\fanti\Downloads Microsoft Windows 11 Famille Version 24H2 26100.3476 (X64) (2024-12-25 23:16:47) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-148919295-3635598345-763458970-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-148919295-3635598345-763458970-503 - Limited - Disabled) fanti (S-1-5-21-148919295-3635598345-763458970-1001 - Administrator - Enabled) => C:\Users\fanti Invité (S-1-5-21-148919295-3635598345-763458970-501 - Limited - Disabled) WDAGUtilityAccount (S-1-5-21-148919295-3635598345-763458970-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee (Disabled - Up to date) {0BE13B34-492A-21C0-AE43-C1742279CCB6} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Ableton Live 12 Lite (HKLM\...\{113AF193-1263-469F-B80C-EB7B12CEC506}) (Version: 12.0.0.0 - Ableton) Ableton Live 12 Lite (HKLM\...\{2B5572AF-BB8E-4810-9EC4-F6A8F7A0D776}) (Version: 12.0.0.0 - Ableton) Hidden Ableton USB Audio Driver v5.68.0 (HKLM\...\{A823612A-AA91-4911-886A-7C589452C65C}) (Version: 5.68.0 - Ableton) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 6.5.0.348 - Adobe Inc.) Adobe Lightroom (HKLM-x32\...\LRCC_8_2) (Version: 8.2 - Adobe Inc.) Adobe Photoshop 2025 (HKLM-x32\...\PHSP_26_4_1) (Version: 26.4.1.194 - Adobe Inc.) Antares Auto-Tune bundle (HKLM\...\Antares Auto-Tune bundle_is1) (Version: 9.1.0 - Antares & Team V.R) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach) CPUID CPU-Z 2.12 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.12 - CPUID, Inc.) CurseForge (HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.270.6.2890 - Overwolf app) EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.396.0.5909 - Electronic Arts) Hidden EA app (HKLM-x32\...\{5106b932-0116-4839-b279-773a1ceec919}) (Version: 13.396.0.5909 - Electronic Arts) Epic Games Launcher (HKLM-x32\...\{5CC5F080-5711-430D-89BB-C56433F68361}) (Version: 1.3.93.0 - Epic Games, Inc.) Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.) FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line) FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line) Futuremark SystemInfo (HKLM-x32\...\{307E4986-8A26-412E-A59D-66AFEE5A6110}) (Version: 5.77.1320.0 - Futuremark) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 134.0.6998.167 - Google LLC) Intel(R) Extreme Tuning Utility SDK (HKLM\...\{3D3AC3C2-BD85-450E-BD2B-EF0E878B1E5F}_is1) (Version: 7.12.0.29 - Lenovo) Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden Legion Arena (HKLM-x32\...\Legion Arena_is1) (Version: 1.10.0.10 - Lenovo Group Ltd.) Lenovo AvatarMaster 1.1.125.1 (HKLM\...\{94D5DBE4-4AC0-404D-B897-16E0A5533B95}_is1) (Version: 1.1.125.1 - Lenovo) Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.2.1.1 - Lenovo) Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.3.21.0 - Lenovo Group Ltd.) Les Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.111.102.1030 - Electronic Arts Inc.) Malwarebytes version 5.2.9.176 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.9.176 - Malwarebytes) Microsoft .NET Host - 7.0.13 (x64) (HKLM\...\{B1D03F3A-4024-4038-9321-5A0FB1EEE438}) (Version: 56.52.4000 - Microsoft Corporation) Hidden Microsoft .NET Host - 8.0.8 (x64) (HKLM\...\{3BA242F8-BDB5-4096-9FBC-333CD663BBAD}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 7.0.13 (x64) (HKLM\...\{C0B5B3B6-2590-414F-A8BE-E14CEE0FA592}) (Version: 56.52.4000 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 7.0.13 (x64) (HKLM\...\{AC2EB45F-5D39-4A5C-9450-AC69A7E0772E}) (Version: 56.52.4000 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.18526.20168 - Microsoft Corporation) Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 134.0.3124.85 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 134.0.3124.85 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\OneDriveSetup.exe) (Version: 25.035.0223.0003 - Microsoft Corporation) Microsoft OneNote - fr-fr (HKLM\...\OneNoteFreeRetail - fr-fr) (Version: 16.0.18526.20168 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34433 (HKLM-x32\...\{804e7d66-ccc2-4c12-84ba-476da31d103d}) (Version: 14.42.34433.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 (HKLM-x32\...\{47109d57-d746-4f8b-9618-ed6a17cc922b}) (Version: 14.40.33810.0 - Microsoft Corporation) Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34433 (HKLM\...\{E1902FC6-C423-4719-AB8A-AC7B2694B367}) (Version: 14.42.34433 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34433 (HKLM\...\{382F1166-A409-4C5B-9B1E-85ED538B8291}) (Version: 14.42.34433 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 (HKLM-x32\...\{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}) (Version: 14.40.33810 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 (HKLM-x32\...\{0C3457A0-3DCE-4A33-BEF0-9B528C557771}) (Version: 14.40.33810 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 7.0.13 (x64) (HKLM\...\{48C3558E-F79D-4F4F-A174-1D55C64A1C9A}) (Version: 56.52.4000 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 7.0.13 (x64) (HKLM-x32\...\{c908c003-d159-4779-b629-effcd07597e5}) (Version: 7.0.13.33018 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation) MOTU M Series (HKLM\...\com_motu_installer_core_uac_is1) (Version: 4.0.9.6648 - MOTU, Inc.) NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.4.6.950 - Nord Security) NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.36.1.0 - Nord Security) NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation) NVIDIA Pilote audio HD 1.4.2.6 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.2.6 - NVIDIA Corporation) NVIDIA Pilote graphique 566.26 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 566.26 - NVIDIA Corporation) Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18526.20168 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18526.20168 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.18526.20168 - Microsoft Corporation) Hidden Opera GX Stable 117.0.5408.140 (HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\Opera GX 117.0.5408.140) (Version: 117.0.5408.140 - Opera Software) OTT by Xfer Records (HKLM-x32\...\OTT) (Version: - ) Overwolf (HKLM-x32\...\Overwolf) (Version: 0.270.0.12 - Overwolf Ltd.) RomStation (HKLM\...\{458550e8-599b-4ff8-b969-b261d95d86ee}_is1) (Version: 2.9.2 - RomStation) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 158.0.11194 - Ubisoft) UXP WebView Support (HKLM-x32\...\UXPW_1_2_0) (Version: 1.2.0 - Adobe Inc.) WATCH_DOGS2 (HKLM-x32\...\Uplay Install 2688) (Version: - Ubisoft) WebAdvisor par McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1013 - McAfee, LLC) WinRAR 7.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.10.0 - win.rar GmbH) Packages: ========= Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_6.0.0.1_x86__enpm4xejd91yc [2024-12-24] (Adobe Systems Incorporated) AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-11-22] (INTEL CORP) [Startup Task] Dropbox - offre promotionnelle -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.30.0_x64__xbfy0k16fey96 [2025-02-11] (Dropbox Inc.) Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.23306.1292.0_x64__8wekyb3d8bbwe [2024-11-25] (Microsoft Corporation) Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2501.20.0_x64__k1h2ywk1493x8 [2025-02-17] (LENOVO INC.) Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.6.12.0_x64__5grkq8ppsgwt4 [2024-11-25] (LENOVO INC) [Startup Task] Microsoft Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_4.1.10320.0_x64__yxz26nhyzhsrt [2025-03-25] (Microsoft Corp.) Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2410.16002.0_x64__8wekyb3d8bbwe [2025-01-11] (Microsoft Corporation) [Startup Task] Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-11-27] (Microsoft Corp.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2024-11-26] (Microsoft Corporation) Microsoft.StartExperiencesApp -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.282.0_x64__8wekyb3d8bbwe [2025-03-19] (Microsoft Corporation) Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.2.2.0_x64__8wekyb3d8bbwe [2025-02-23] (Microsoft Studios) Nahimic -> C:\Program Files\WindowsApps\A-Volute.Nahimic_1.10.4.0_x64__w2gh52qy24etm [2024-12-24] (A-Volute) Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2024-11-30] (Netflix, Inc.) NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-25] (NVIDIA Corp.) Sea of Thieves -> C:\Program Files\WindowsApps\Microsoft.SeaofThieves_2.138.1387.0_x64__8wekyb3d8bbwe [2025-03-24] (Microsoft Studios) WinRAR -> C:\Program Files\WinRAR [2025-03-19] (win.rar GmbH) ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-148919295-3635598345-763458970-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.) CustomCLSID: HKU\S-1-5-21-148919295-3635598345-763458970-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> NordVPN) CustomCLSID: HKU\S-1-5-21-148919295-3635598345-763458970-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\fanti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (SteelSeries France SASU -> A-Volute) CustomCLSID: HKU\S-1-5-21-148919295-3635598345-763458970-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-01-14] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-01-14] (Adobe Inc. -> ) ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-01-14] (Adobe Inc. -> ) ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-01-14] (Adobe Inc. -> ) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-03-26] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_49d0373b6410e907\nvshext.dll [2024-12-18] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2025-01-14] (Adobe Inc. -> ) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-03-26] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Avec liste blanche) ==================== (Si un élément est inclus dans le fichier fixlist.txt, l'élément de Registre sera restauré à la valeur par défaut ou supprimé. Le fichier ne sera pas déplacé.) HKLM\...\Drivers32: [vidc.VP60] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2024-12-08] (Electronic Arts -> On2.com) HKLM\...\Drivers32: [vidc.VP61] => C:\Windows\SysWOW64\vp6vfw.dll [447752 2024-12-08] (Electronic Arts -> On2.com) ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2025-03-26 16:58 - 2025-03-26 16:58 - 000011264 _____ () [Fichier non signé] C:\Users\fanti\AppData\Local\Temp\nslCC98.tmp\System.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 005378048 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libavcodec-61.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 000875008 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libavfilter-10.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 001674240 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libavformat-61.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 001640960 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libavutil-59.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 000630272 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libswresample-5.dll 2024-11-28 16:16 - 2024-12-03 21:40 - 001092608 _____ (FFmpeg Project) [Fichier non signé] C:\Program Files (x86)\Steam\libswscale-8.dll 2024-08-27 12:12 - 2024-08-27 12:12 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Client\AppVIsvSubsystems64.dll 2024-08-27 12:12 - 2024-08-27 12:12 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll 2024-08-27 12:12 - 2024-08-27 12:12 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Client\C2R64.dll 2024-08-27 12:12 - 2024-08-27 12:12 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\fanti\Downloads\(FREE) Dalí Type Beat ~ ascenseur emotionnel.mp3:shield [203] AlternateDataStreams: C:\Users\fanti\Downloads\(FREE) ThaHomey Type Beat ~ Mauve.mp3:mshield [192] AlternateDataStreams: C:\Users\fanti\Downloads\Abel 31 x amne house type beat real me @bi2lprod.mp3:mshield [207] AlternateDataStreams: C:\Users\fanti\Downloads\adwcleaner.exe:MBAM.Zone.Identifier [141] AlternateDataStreams: C:\Users\fanti\Downloads\adwcleaner.exe:mshield [136] AlternateDataStreams: C:\Users\fanti\Downloads\Album-Art-Archive-Social-Media-Templates-o36ici.zip:shield [292] AlternateDataStreams: C:\Users\fanti\Downloads\attestation_070168658hf_2059341.pdf:mshield [162] AlternateDataStreams: C:\Users\fanti\Downloads\bpm.exe:mshield [144] AlternateDataStreams: C:\Users\fanti\Downloads\bruit de briquet.mp3:mshield [175] AlternateDataStreams: C:\Users\fanti\Downloads\Bulletins 1er et 2ème semestre 1ère Mode_20250326_0001.pdf:mshield [1383] AlternateDataStreams: C:\Users\fanti\Downloads\dmge-latest.exe:shield [265] AlternateDataStreams: C:\Users\fanti\Downloads\FEU #10 Briquet (bruitage gratuit).mp3:mshield [193] AlternateDataStreams: C:\Users\fanti\Downloads\FREE-STUDIOAAA-CRTFXKIT-dswbss.zip:shield [276] AlternateDataStreams: C:\Users\fanti\Downloads\Freya Nordic Vocals Royalty Free Music.mp3:mshield [199] AlternateDataStreams: C:\Users\fanti\Downloads\FRST64.exe:MBAM.Zone.Identifier [225] AlternateDataStreams: C:\Users\fanti\Downloads\FRST64.exe:mshield [259] AlternateDataStreams: C:\Users\fanti\Downloads\How-to-install-actions-qgnuzf.txt:shield [274] AlternateDataStreams: C:\Users\fanti\Downloads\MultiComp-Editor_StudioAAA.zip:shield [272] AlternateDataStreams: C:\Users\fanti\Downloads\NahimicRestoreTool_1.0.7.exe:shield [213] AlternateDataStreams: C:\Users\fanti\Downloads\QUICK-GUIDES-STUDIOAAA-j5qd2t.zip:shield [275] AlternateDataStreams: C:\Users\fanti\Downloads\Releve_de_Notes_Bac_2023.pdf:shield [469] AlternateDataStreams: C:\Users\fanti\Downloads\Réaction à Ptite Soeur & Gemroz - KAYFABE (il y aura des suites soyez en sûr).mp3:mshield [236] AlternateDataStreams: C:\Users\fanti\Downloads\Sound of West Papua.mp3:mshield [178] AlternateDataStreams: C:\Users\fanti\Downloads\STUDIO-AAA-FREE-PRINTER-TRASH.zip:shield [275] AlternateDataStreams: C:\Users\fanti\Downloads\STUDIOAAA-FREE-CRTFX-UPDATE3-omzntg.zip:shield [281] AlternateDataStreams: C:\Users\fanti\Downloads\Text-Trasher-feb2024-StudioAAA-kdwa5h.zip:shield [282] AlternateDataStreams: C:\Users\fanti\Downloads\[FREE] Frank Ocean x Mac Miller Type Beat Wanderlust.mp3:shield [212] ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ============= HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-12-18] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-03-11] (Microsoft Corporation -> Microsoft Corporation) (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre.) IE trusted site: HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\sharepoint.com -> hxxps://oxymis-files.sharepoint.com ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2022-05-07 06:24 - 2025-01-20 17:44 - 000000822 _____ C:\WINDOWS\system32\drivers\etc\hosts ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-148919295-3635598345-763458970-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\fanti\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 103.86.96.100 - 103.86.99.100 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. Network Binding: ============= NordLynx: NordLynx Tunnel -> wireguard.sys Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys Connexion au réseau local: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys Wi-Fi: Realtek RTL8852BE WiFi 6 802.11ax PCIe Adapter -> rtwlane601.sys Connexion réseau Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\Run: => "SecurityHealth" HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-148919295-3635598345-763458970-1001\...\StartupApproved\Run: => "OneDrive" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [UDP Query User{34A90581-3889-4470-AD4D-76DDECA17297}C:\program files\common files\adobe\adobe desktop common\hex\creative cloud ui helper.exe] => (Block) C:\program files\common files\adobe\adobe desktop common\hex\creative cloud ui helper.exe (Adobe Inc. -> Adobe Inc.) FirewallRules: [TCP Query User{0C1213AF-DA3B-4524-AAE4-F68C6938AFE7}C:\program files\common files\adobe\adobe desktop common\hex\creative cloud ui helper.exe] => (Block) C:\program files\common files\adobe\adobe desktop common\hex\creative cloud ui helper.exe (Adobe Inc. -> Adobe Inc.) FirewallRules: [{D1B39507-D66E-43B4-831C-DB8B28766CEA}] => (Allow) D:\games\The Sims 4\Game\Bin\TS4_Launcher_x64.exe (Electronic Arts Inc.) [Fichier non signé] FirewallRules: [{A7ED4DFC-66A2-4791-9A6E-95B5AA9D9A99}] => (Allow) D:\games\The Sims 4\Game\Bin\TS4_Launcher_x64.exe (Electronic Arts Inc.) [Fichier non signé] FirewallRules: [{A5C4271E-781D-453B-9F92-C1FA2FA60D13}] => (Allow) D:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Fichier non signé] FirewallRules: [{69014255-6695-41AB-A807-CEB967D5B825}] => (Allow) D:\SteamLibrary\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe (Bethesda Softworks) [Fichier non signé] FirewallRules: [UDP Query User{E4E8C82A-B8A6-4523-89B1-B60BE36FCB3F}C:\users\fanti\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\fanti\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe FirewallRules: [TCP Query User{9C9439F5-7DD6-47E8-B5DF-3C5E341C4C91}C:\users\fanti\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Allow) C:\users\fanti\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe FirewallRules: [{3D38E647-B347-4C64-91C4-B396043E1B98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark Demo\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [{D5EB6AD3-2857-444B-9D78-6B51301A9882}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark Demo\bin\x64\3DMark.exe (Underwriters Laboratories Inc. -> ) FirewallRules: [{B29E7C97-124A-4B35-9C71-97528261D86F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{EDF619FD-98F6-4882-8AD3-94EEC8827041}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{AF17E641-3E75-4546-9A57-99ED06DB2698}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{34D51DC9-3156-41F3-8E0D-DA4DF87DD8AE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation) FirewallRules: [{128D55B0-2D20-460D-8BAD-F067E93ABF53}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\EAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{6DA4B9E3-6F23-4235-B9A6-57A5A97FA998}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\EAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd) FirewallRules: [{D3CC2416-0D61-49A7-A447-6CE97DC20668}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\bin_plus\WatchDogs2.exe (Blue Byte GmbH -> Ubisoft Entertainment) FirewallRules: [{BCDA4F23-F69C-4239-98F7-7879E5307B0F}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\bin_plus\WatchDogs2.exe (Blue Byte GmbH -> Ubisoft Entertainment) FirewallRules: [{0C6F8706-16CC-4F05-9890-81B945385D07}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\bin\WatchDogs2.exe (Blue Byte GmbH -> Ubisoft Entertainment) FirewallRules: [{12492501-F7DA-4FB5-8E64-F1422BA720AE}] => (Allow) C:\Users\fanti\OneDrive\Bureau\games\WATCH_DOGS2\bin\WatchDogs2.exe (Blue Byte GmbH -> Ubisoft Entertainment) FirewallRules: [UDP Query User{B90247C5-A2FF-4917-8489-1CC24973B3BE}C:\users\fanti\appdata\local\programs\bandlab-assistant\bandlab assistant.exe] => (Allow) C:\users\fanti\appdata\local\programs\bandlab-assistant\bandlab assistant.exe => Pas de fichier FirewallRules: [TCP Query User{CD35CD5A-0724-4D76-A3C1-D64BA1570165}C:\users\fanti\appdata\local\programs\bandlab-assistant\bandlab assistant.exe] => (Allow) C:\users\fanti\appdata\local\programs\bandlab-assistant\bandlab assistant.exe => Pas de fichier FirewallRules: [{5489D6E4-43A1-4C28-9FD5-88471D8FF9DD}] => (Allow) C:\Users\fanti\AppData\Roaming\uTorrent\uTorrent.exe => Pas de fichier FirewallRules: [{A47E029A-B4C1-4B5D-BC13-54A4D8C26479}] => (Allow) C:\Users\fanti\AppData\Roaming\uTorrent\uTorrent.exe => Pas de fichier FirewallRules: [UDP Query User{1E596A6F-47D0-4B89-96C4-8914E037AA69}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [TCP Query User{859906C1-5B7A-4A77-9CFF-752E9E74B08F}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.) FirewallRules: [UDP Query User{1C08835D-EFD7-4911-B8AA-BEC427BD219B}C:\users\fanti\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\fanti\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{4B40A70B-36A4-46C1-A875-13226D1E5876}C:\users\fanti\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\fanti\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{5189691F-42F7-4C9E-95B6-1EEDA27A9A10}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{7C52132B-E660-484E-98C7-E7052577401D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24295.401.3195.9406_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4EB95262-1E9D-4E4C-BBE0-CF365CF16C74}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24295.401.3195.9406_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{3B756A6B-5308-4DB3-BD96-AFB961BDC957}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{186B5FF7-304F-42D1-B312-ACA8FBD5B12D}] => (Allow) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{722E2315-110E-4EE2-89E1-142E138AD14F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{517FA219-418E-4D1E-89F8-35566673C78B}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{61F73A62-BF08-40F5-81C8-1206FDF0D992}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{06500880-7F6B-4AD3-9A31-F6F701F3259D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{312CCC5E-CB3A-4D8E-BF6B-CB0FCF581F03}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{20C2AD6C-BB8C-4C49-B404-9AEB4C36060C}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{CD716019-9DC0-465D-83DC-701DB49B877F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{FC309ED4-65E1-4254-B272-7946B4D085BB}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{E336138D-5EC2-4BDC-B4EE-AA5EFC2BD432}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{390D9BC8-D3D2-487E-9343-F25BBF04BF5D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{A2BB142C-D05B-4B2F-BB67-DC36234859EA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts) FirewallRules: [{CD8DCBA8-6A83-4B68-9B26-793E72A675E9}] => (Allow) D:\SteamLibrary\steamapps\common\The Long Drive\TheLongDrive.exe () [Fichier non signé] FirewallRules: [{2A1F3220-8822-499F-9591-416E335EDA14}] => (Allow) D:\SteamLibrary\steamapps\common\The Long Drive\TheLongDrive.exe () [Fichier non signé] FirewallRules: [TCP Query User{1E5A15EA-D652-4249-9038-F19A85CC807C}C:\programdata\ableton\live 12 lite\program\ableton live 12 lite.exe] => (Allow) C:\programdata\ableton\live 12 lite\program\ableton live 12 lite.exe (Ableton AG -> Ableton) FirewallRules: [UDP Query User{254E9A4D-90F7-4316-A1B8-22E06C2C8E01}C:\programdata\ableton\live 12 lite\program\ableton live 12 lite.exe] => (Allow) C:\programdata\ableton\live 12 lite\program\ableton live 12 lite.exe (Ableton AG -> Ableton) FirewallRules: [{A551B6B5-C9EE-4B2B-B46D-6C39CFA6C4CA}] => (Allow) C:\Users\fanti\AppData\Local\Temp\nsv34E4.tmp\bqcykso.exe () [Fichier non signé] FirewallRules: [{C51559D3-6FD7-4FCC-B460-FF88618557C4}] => (Allow) C:\Users\fanti\AppData\Local\Temp\nsv34E4.tmp\bqcykso.exe () [Fichier non signé] FirewallRules: [{8FE7EFE2-3C3F-4C2E-92E3-9DD454EAE3E8}] => (Allow) C:\Users\fanti\AppData\Local\Temp\nsv34E4.tmp\bqcykso.exe () [Fichier non signé] FirewallRules: [{E003973B-5E10-4404-A1AD-FDEF80BC8F91}] => (Allow) C:\Program Files (x86)\Deploy\Idi.exe () [Fichier non signé] FirewallRules: [{1934630F-9943-4181-8E07-B2119BE3C3CA}] => (Allow) C:\Program Files (x86)\Caicos\Idi.exe () [Fichier non signé] FirewallRules: [{36C740E9-8CB5-4122-AF67-5E19FC06FF10}] => (Allow) C:\Program Files (x86)\batavia\Cine.exe () [Fichier non signé] FirewallRules: [{99448DA8-7AC2-4673-9BB3-77B2E1AF5075}] => (Allow) C:\Program Files (x86)\Caicos\Cine.exe () [Fichier non signé] FirewallRules: [{6A5B74D5-65B9-44A6-B563-2558FE3096E6}] => (Allow) C:\Program Files (x86)\Deploy\Idi.exe () [Fichier non signé] FirewallRules: [{1B5154F0-4383-439E-94D6-6ED765D867FD}] => (Allow) C:\Program Files (x86)\Caicos\Idi.exe () [Fichier non signé] FirewallRules: [{DB59638C-DB0F-4A76-AF47-1E6C758D9D70}] => (Allow) C:\Program Files (x86)\batavia\Cine.exe () [Fichier non signé] FirewallRules: [{C3D9C32B-06EF-460D-8524-C24A9C3EC4F3}] => (Allow) C:\Program Files (x86)\Caicos\Cine.exe () [Fichier non signé] FirewallRules: [{FDB59409-BE4B-4610-A5A0-299424A777E2}] => (Allow) C:\Users\fanti\AppData\Local\Idi.exe => Pas de fichier FirewallRules: [{975F6D31-68DE-4429-BF82-B1A7811674FA}] => (Allow) C:\Users\fanti\AppData\Local\Cine.exe => Pas de fichier FirewallRules: [{449241D3-F998-4D5A-B431-CC0A3EC83225}] => (Allow) C:\Program Files (x86)\Deploy\Idi.exe () [Fichier non signé] FirewallRules: [{DA17F9AD-86ED-4F42-B586-7C901495AAB9}] => (Allow) C:\Program Files (x86)\Deploy\Idi.exe () [Fichier non signé] FirewallRules: [{CA44FE07-C61C-4FFB-A1B2-3E1609B0B944}] => (Allow) C:\Program Files (x86)\Caicos\Cine.exe () [Fichier non signé] FirewallRules: [{B022F44D-83F1-4C2F-8FE2-EF515468EC6F}] => (Allow) C:\Program Files (x86)\Caicos\Cine.exe () [Fichier non signé] FirewallRules: [{59AE1532-01DB-46C2-A1A0-8F3CFFDC5983}] => (Allow) C:\Users\fanti\AppData\Local\Idi.exe => Pas de fichier FirewallRules: [{9628D4CE-0119-497D-8271-2480F84584E3}] => (Allow) C:\Users\fanti\AppData\Local\Idi.exe => Pas de fichier FirewallRules: [{AFCE8C01-3C5D-4FBF-AFC0-5EE0C4F06908}] => (Allow) C:\Program Files (x86)\Overwolf\0.270.0.11\OverwolfBrowser.exe => Pas de fichier FirewallRules: [{17CDB445-A1A6-46C5-9349-C9AAAD546BCD}] => (Allow) C:\Program Files (x86)\Overwolf\0.270.0.11\OverwolfBrowser.exe => Pas de fichier FirewallRules: [{C91E2F87-4954-4085-9476-2DA140D95878}] => (Block) C:\Program Files (x86)\Overwolf\0.270.0.11\OverwolfBrowser.exe => Pas de fichier FirewallRules: [{DFAB12DA-96B4-434A-852A-E8EFFBD5FE00}] => (Block) C:\Program Files (x86)\Overwolf\0.270.0.11\OverwolfBrowser.exe => Pas de fichier FirewallRules: [{C56A887C-B936-44B5-9596-D178A98ED7B3}] => (Allow) C:\Program Files (x86)\Overwolf\0.266.131.43\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{FC6CAA1D-154A-4500-B76E-B45D173136E0}] => (Allow) C:\Program Files (x86)\Overwolf\0.266.131.43\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{D9653F4F-E6A2-4629-B65A-CDA75AEA056F}] => (Block) C:\Program Files (x86)\Overwolf\0.266.131.43\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{4AFFEF62-CBD0-454D-9CF3-7520ECA18EE6}] => (Block) C:\Program Files (x86)\Overwolf\0.266.131.43\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{76901DFB-EACD-4D64-82FB-10F70128B329}] => (Allow) C:\Program Files (x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [{AC60B1B3-C2AD-4CC8-B1A6-6637E61D2647}] => (Allow) C:\Program Files (x86)\Overwolf\0.270.0.12\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD) FirewallRules: [TCP Query User{640D551E-189A-477A-8525-B096D8187C70}C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe (Accès refusé) [Fichier non signé?] FirewallRules: [UDP Query User{950D3920-3391-457D-8474-3763DD775556}C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) C:\xboxgames\sea of thieves\content\athena\binaries\wingdk\sotgame.exe (Accès refusé) [Fichier non signé?] FirewallRules: [{905C8511-E932-4F13-8681-F73206D38AAC}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{3013593C-76C9-43B2-B394-A59F2F27931F}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\134.0.3124.85\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{0B7B4AE4-E267-4985-96BC-5969B97F3CE8}] => (Allow) C:\Program Files\NordVPN\nordvpn-service.exe (nordvpn s.a. -> NordVPN) FirewallRules: [{94CD4934-BA2C-4296-BDDC-5EFB53623670}] => (Allow) C:\Program Files\NordVPN\nordvpn-service.exe (nordvpn s.a. -> NordVPN) FirewallRules: [{0FAF65DF-5CA8-47FF-B57A-77A3E5B7FBB4}] => (Allow) C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe (nordvpn s.a. -> nordvpn S.A.) FirewallRules: [{38D49627-E8AB-4398-B20B-E702C0D53638}] => (Allow) C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe (nordvpn s.a. -> nordvpn S.A.) ==================== Points de restauration ========================= 09-03-2025 23:50:11 Windows Update 16-03-2025 21:42:01 Windows Update 16-03-2025 21:42:16 Windows Update 20-03-2025 18:45:18 Windows Update 25-03-2025 14:54:37 Windows Update 25-03-2025 14:54:51 Windows Update 25-03-2025 14:54:57 Windows Update ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (03/27/2025 09:04:25 AM) (Source: Microsoft Office 16) (EventID: 2000) (User: ) Description: Microsoft Word: Accepted Safe Mode action : Word n'a pas pu démarrer la dernière fois. Le mode sans échec permet de résoudre le problème, mais certaines fonctionnalités risquent de ne pas être disponibles sous ce mode. Voulez-vous démarrer en mode sans échec ?. Error: (03/20/2025 01:46:25 PM) (Source: Application Error) (EventID: 1000) (User: MARLEY) Description: Nom de l'application défaillante : LockApp.exe, version : 10.0.26100.3323, horodatage : 0xf7d046b1 Nom du module défaillant : Windows.UI.Xaml.dll, version : 10.0.26100.3323, horodatage : 0x486e0ba2 Exception code: 0xc000027b Fault offset: 0x00000000009025b3 Identifiant du processus défaillant : 0x3524 Heure de début de l'application défaillante : 0x1db997a9cb8c3ef Chemin de l'application défaillante : C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Chemin du module défaillant : C:\Windows\System32\Windows.UI.Xaml.dll ID du rapport : 98853b63-4e72-4a8b-85b3-128fac2e5810 Nom complet du package défaillant : Microsoft.LockApp_10.0.26100.3323_neutral__cw5n1h2txyewy Package défaillant – ID d'application relatif : WindowsDefaultLockScreen Error: (03/19/2025 03:49:08 PM) (Source: CertEnroll) (EventID: 86) (User: AUTORITE NT) Description: Échec de l’initialisation de l’inscription du certificat SCEP pour WORKGROUP\MARLEY$ via https://INTC-KeyId-34219b21f477f6c7f78a0f26b23d0430deea4363.microsoftaik.azure.net/templates/Aik/scep : GetCACaps Méthode : GET(31ms) Étape : GetCACaps L’adresse ou le nom de serveur n’a pas pu être résolu 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED) Error: (03/19/2025 03:43:06 PM) (Source: Application Hang) (EventID: 1002) (User: AUTORITE NT) Description: Le programme Ableton Live 12 Lite.exe version 1.0.0.1 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Sécurité et maintenance. Error: (03/18/2025 02:10:17 AM) (Source: Application Error) (EventID: 1000) (User: MARLEY) Description: Nom de l'application défaillante : LockApp.exe, version : 10.0.26100.3323, horodatage : 0xf7d046b1 Nom du module défaillant : Windows.UI.Xaml.dll, version : 10.0.26100.3323, horodatage : 0x486e0ba2 Exception code: 0xc000027b Fault offset: 0x00000000009025b3 Identifiant du processus défaillant : 0x10d4 Heure de début de l'application défaillante : 0x1db9787d481440c Chemin de l'application défaillante : C:\WINDOWS\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Chemin du module défaillant : C:\Windows\System32\Windows.UI.Xaml.dll ID du rapport : f48120c9-ea6e-4452-a1ca-4ebc9ef1adf1 Nom complet du package défaillant : Microsoft.LockApp_10.0.26100.3323_neutral__cw5n1h2txyewy Package défaillant – ID d'application relatif : WindowsDefaultLockScreen Error: (03/17/2025 06:51:43 PM) (Source: Application Error) (EventID: 1000) (User: AUTORITE NT) Description: Nom de l'application défaillante : AUDIODG.EXE, version : 10.0.26100.3037, horodatage : 0x3de22b08 Nom du module défaillant : audioeng.dll, version : 10.0.26100.3323, horodatage : 0x77fdfbbb Exception code: 0xc0000005 Fault offset: 0x000000000001d1a4 Identifiant du processus défaillant : 0x45a4 Heure de début de l'application défaillante : 0x1db975ee5ad08ea Chemin de l'application défaillante : C:\WINDOWS\system32\AUDIODG.EXE Chemin du module défaillant : C:\WINDOWS\System32\audioeng.dll ID du rapport : de59f674-3f74-4b11-a02b-2f05f361370c Nom complet du package défaillant : Package défaillant – ID d'application relatif : Error: (03/17/2025 04:32:14 PM) (Source: Application Hang) (EventID: 1002) (User: AUTORITE NT) Description: Le programme Ableton Live 12 Lite.exe version 1.0.0.1 a cessé d'interagir avec Windows et a été fermé. Pour savoir si vous disposez de plus d'informations sur le problème, consultez l'historique des problèmes dans le panneau de configuration Sécurité et maintenance. Error: (03/17/2025 12:30:41 PM) (Source: Application Error) (EventID: 1000) (User: MARLEY) Description: Nom de l'application défaillante : explorer.exe, version : 10.0.26100.3323, horodatage : 0x63ae5e20 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Exception code: 0xc0000005 Fault offset: 0x51bf1d10 Identifiant du processus défaillant : 0x6b64 Heure de début de l'application défaillante : 0x1db973000000ec7 Chemin de l'application défaillante : C:\WINDOWS\SysWOW64\explorer.exe Chemin du module défaillant : unknown ID du rapport : 459b0da3-0e61-4ea0-a875-9018d6aab234 Nom complet du package défaillant : Package défaillant – ID d'application relatif : Erreurs système: ============= Error: (03/27/2025 09:36:43 AM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Le pilote Bluetooth attendait un événement HCI d'une certaine taille mais ne l'a pas reçu. Error: (03/27/2025 09:32:10 AM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Le pilote Bluetooth attendait un événement HCI d'une certaine taille mais ne l'a pas reçu. Error: (03/26/2025 05:47:14 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Le pilote Bluetooth attendait un événement HCI d'une certaine taille mais ne l'a pas reçu. Error: (03/26/2025 05:46:18 PM) (Source: BTHUSB) (EventID: 5) (User: ) Description: Le pilote Bluetooth attendait un événement HCI d'une certaine taille mais ne l'a pas reçu. Error: (03/26/2025 05:01:43 PM) (Source: DCOM) (EventID: 10010) (User: MARLEY) Description: Le serveur {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} ne s’est pas enregistré sur DCOM avant la fin du temps imparti. Error: (03/26/2025 04:57:43 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Error: (03/26/2025 04:57:43 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Error: (03/26/2025 04:57:43 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Windows Defender: ================ Date: 2025-03-25 00:17:44 Description: Microsoft Defender Antivirus scan has been stopped before completion. Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2025-03-24 00:40:32 Description: Microsoft Defender Antivirus scan has been stopped before completion. Scan Type: Antimalware Scan Parameters: Quick Scan Date: 2025-03-23 23:02:04 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Program:Win32/Wacapew.C!ml&threatid=265744&enterprise=0 Name: Program:Win32/Wacapew.C!ml Severity: High Category: Settings Modifier Path: file:_C:\Users\fanti\AppData\Local\Cine.exe; file:_C:\Users\fanti\AppData\Local\Idi.exe; file:_C:\WINDOWS\System32\Tasks\mp3l0y\akio5d\bc4cpz\xp58jj\joi7zs\9jzbwy\s0h4hw\qlqxsf\xqtrdd\3ijgy2\11g3io\605do6\r575da\tdo4a5\sbrybe\ocwzo8\rnm4lw->(UTF-16LE); file:_C:\WINDOWS\System32\Tasks\v1vlho\0k5gyk\uiacye\wcl32b\8061vv\ch9obp\gv6xcb\yc3dex\l2xjrq\9q8q30\t6wfja\jvcfmh\uadojg\hf6cch\b2g06o\t2hnfr\cgaqfe->(UTF-16LE); process:_pid:22020,ProcessStart:133872407397132425; regkey:_HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6460A699-D22D-42F7-96B9-536F7193A89C}; regkey:_HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6D9CA174-6C7D-4FBE-82F2-8FED929E724D}; regkey:_HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\mp3l0y\akio5d\bc4cpz\xp58jj\joi7zs\9jzbwy\s0h4hw\qlqxsf\xqtrdd\3ijgy2\11g3io\605do6\r575da\tdo4a5\sbrybe\ocwzo8\rnm4lw; regkey:_HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\v1vlho\0k5gyk\uiacye\wcl Detection Origin: Local machine Detection Type: FastPath Detection Source: Real-Time Protection Process Name: C:\Users\fanti\AppData\Local\Cine.exe Security intelligence Version: AV: 1.425.187.0, AS: 1.425.187.0, NIS: 1.425.187.0 Engine Version: AM: 1.1.25020.1007, NIS: 1.1.25020.1007 Date: 2025-03-23 23:01:44 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Program:Win32/Wacapew.C!ml&threatid=265744&enterprise=0 Name: Program:Win32/Wacapew.C!ml Severity: High Category: Settings Modifier Path: file:_C:\Users\fanti\AppData\Local\Cine.exe; file:_C:\Users\fanti\AppData\Local\Idi.exe Detection Origin: Local machine Detection Type: FastPath Detection Source: Real-Time Protection Process Name: C:\Windows\System32\svchost.exe Security intelligence Version: AV: 1.425.187.0, AS: 1.425.187.0, NIS: 1.425.187.0 Engine Version: AM: 1.1.25020.1007, NIS: 1.1.25020.1007 Date: 2025-03-23 23:01:44 Description: Microsoft Defender Antivirus has detected malware or other potentially unwanted software. For more information please see the following: https://go.microsoft.com/fwlink/?linkid=37020&name=Program:Win32/Wacapew.C!ml&threatid=265744&enterprise=0 Name: Program:Win32/Wacapew.C!ml Severity: High Category: Settings Modifier Path: file:_C:\Users\fanti\AppData\Local\Cine.exe Detection Origin: Local machine Detection Type: FastPath Detection Source: Real-Time Protection Process Name: C:\Windows\System32\svchost.exe Security intelligence Version: AV: 1.425.187.0, AS: 1.425.187.0, NIS: 1.425.187.0 Engine Version: AM: 1.1.25020.1007, NIS: 1.1.25020.1007 Event[0] Date: 2025-03-19 15:59:03 Description: Microsoft Defender Antivirus has encountered an error trying to update security intelligence. New security intelligence Version: Previous security intelligence Version: 1.425.79.0 Update Source: Microsoft Update Server Security intelligence Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.25020.1007 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support. Date: 2025-03-19 15:34:06 Description: Microsoft Defender Antivirus has encountered an error trying to update security intelligence. New security intelligence Version: Previous security intelligence Version: 1.425.79.0 Update Source: Microsoft Update Server Security intelligence Type: AntiVirus Update Type: Full Current Engine Version: Previous Engine Version: 1.1.25020.1007 Error code: 0x8024402c Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support. Date: 2025-02-23 23:20:01 Description: Antivirus Microsoft Defender has encountered an error trying to update security intelligence. New security intelligence Version: Previous security intelligence Version: 1.421.1948.0 Update Source: Serveur Microsoft Update Security intelligence Type: Anti-virus Update Type: Complet Current Engine Version: Previous Engine Version: 1.1.24090.11 Error code: 0x80070102 Error description: Dépassement du délai d’attente. Date: 2025-02-23 23:20:01 Description: Antivirus Microsoft Defender has encountered an error trying to update security intelligence. New security intelligence Version: Previous security intelligence Version: 1.421.1948.0 Update Source: Serveur Microsoft Update Security intelligence Type: Anti-virus Update Type: Complet Current Engine Version: Previous Engine Version: 1.1.24090.11 Error code: 0x80070102 Error description: Dépassement du délai d’attente. CodeIntegrity: =============== Date: 2025-03-27 09:21:08 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements. ==================== Infos Mémoire =========================== BIOS: LENOVO NECN39WW 09/06/2024 Carte mère: LENOVO LNVNB161216 Processeur: 12th Gen Intel(R) Core(TM) i5-12450HX Pourcentage de mémoire utilisée: 45% Mémoire physique - RAM - totale: 24351.87 MB Mémoire physique - RAM - disponible: 13276.31 MB Mémoire virtuelle totale: 28191.87 MB Mémoire virtuelle disponible: 14133.21 MB ==================== Lecteurs ================================ Drive c: (Windows-SSD) (Fixed) (Total:474.72 GB) (Free:88.89 GB) (Model: Micron MTFDKCD512QFM-1BD1AABLA) NTFS Drive d: (HIKSEMI) (Fixed) (Total:1907.71 GB) (Free:1577.64 GB) (Model: HIKSEMI SCSI Disk Device) exFAT \\?\Volume{07ac4f2d-bc70-4e60-9dbb-9c4dde357b52}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.25 GB) NTFS \\?\Volume{581c00b8-35f2-40bf-bb64-8cdb80cd5ee0}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: CBC5B39E) Partition: GPT. ========================================================== Disk: 1 (Size: 1907.7 GB) (Disk ID: 65E81E19) Partition 1: (Not Active) - (Size=1907.7 GB) - (Type=07 NTFS) ==================== Fin de Addition.txt =======================