Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 27-02-2025 Exécuté par steph (02-03-2025 10:15:23) Exécuté depuis C:\Users\steph\Desktop Microsoft Windows 11 Famille Version 24H2 26100.3194 (X64) (2025-02-15 13:32:54) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-2823037155-2305118366-2270497046-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-2823037155-2305118366-2270497046-503 - Limited - Disabled) Invité (S-1-5-21-2823037155-2305118366-2270497046-501 - Limited - Disabled) steph (S-1-5-21-2823037155-2305118366-2270497046-1001 - Administrator - Enabled) => C:\Users\steph WDAGUtilityAccount (S-1-5-21-2823037155-2305118366-2270497046-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: McAfee (Enabled - Up to date) {0BE13B34-492A-21C0-AE43-C1742279CCB6} FW: McAfee (Enabled) {33DABA11-0345-2098-851C-6841DCAA8BCD} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Brother PCFax Driver (HKLM-x32\...\{79262B43-9E15-4732-A034-BFD29D9BD077}) (Version: 1.4.1.0 - Brother Industries Ltd.) Hidden Brother Port Driver (HKLM-x32\...\{EEC7FD59-A12A-492D-9E70-3A53ED131D6A}) (Version: 1.5.16.16 - Brother Industries Ltd.) Hidden Brother Printer Driver (HKLM-x32\...\{B0526B11-2029-4DA4-8724-BB96BD874FF0}) (Version: 3.3.0.0 - Brother Industries Ltd.) Hidden Brother Scanner Driver (HKLM-x32\...\{77B57C72-AC29-42C6-BD2E-DA551A9ACC9B}) (Version: 1.0.38.1 - Brother Industries Ltd.) Hidden Canva (HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\3d0ba22d-e02b-5c6d-93a1-4e2a9af9c1f2) (Version: 1.104.0 - Canva Pty Ltd) CCleaner (HKLM\...\CCleaner) (Version: 6.33 - Piriform) Citroen Update 1.6.1 (HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\34f18d20-cd77-5abe-b8da-25524d95050a) (Version: 1.6.1 - PSA Automobiles SA) Heredis 2023 (HKLM\...\Heredis 2023_is1) (Version: 23 - BSD Concept) HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc) Malwarebytes version 5.2.7.167 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.2.7.167 - Malwarebytes) Microsoft .NET 8.0.12 - Windows Server Hosting (HKLM-x32\...\{218673b6-7337-4d49-bc41-b4ccb7e34802}) (Version: 8.0.12.24603 - Microsoft Corporation) Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft .NET Host - 8.0.12 (x86) (HKLM-x32\...\{874D52B8-B1F4-4D04-8249-8AC6E698CCF5}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 8.0.12 (x86) (HKLM-x32\...\{9EC250F3-BC02-4B35-8395-E03A02CD9255}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 8.0.12 (x86) (HKLM-x32\...\{272C9AEF-D02F-4955-8C11-D9F9198A58EC}) (Version: 64.48.26165 - Microsoft Corporation) Hidden Microsoft ASP.NET Core 8.0.12 Hosting Bundle Options (HKLM-x32\...\{8C069910-4E69-349B-8840-56F774C92B87}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden Microsoft ASP.NET Core 8.0.12 Shared Framework (x64) (HKLM\...\{2B76FF3A-309D-3050-9C41-C98FB593258D}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden Microsoft ASP.NET Core 8.0.12 Shared Framework (x86) (HKLM-x32\...\{0770B9E3-CA2C-37B8-AD77-7336654A2466}) (Version: 8.0.12.24603 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 133.0.3065.92 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 133.0.3065.92 - Microsoft Corporation) Hidden Microsoft Office LTSC Professionnel Plus 2024 - fr-fr (HKLM\...\ProPlus2024Volume - fr-fr) (Version: 16.0.17932.20252 - Microsoft Corporation) Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 25.015.0126.0002 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4048 (HKLM\...\{91415F19-4C22-3609-A105-92ED3522D83C}) (Version: 9.0.30729.4048 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation) Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026 (HKLM-x32\...\{BE960C1C-7BAD-3DE6-8B1A-2616FE532845}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026 (HKLM-x32\...\{A2563E55-3BEC-3828-8D67-E5E8B9E8B675}) (Version: 14.0.23026 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.12 (x86) (HKLM-x32\...\{71e8d0d2-fc5e-4344-b556-0110ef50b6b9}) (Version: 8.0.12.34404 - Microsoft Corporation) Microsoft Windows Desktop Runtime - 8.0.12 (x86) (HKLM-x32\...\{CF203BF4-13DE-4A81-8BC8-31B3F4A2CB32}) (Version: 64.48.26178 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.17928.20216 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.17932.20252 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.17928.20216 - Microsoft Corporation) Hidden OpenShot Video Editor 3.3.0 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 3.3.0 - OpenShot Studios, LLC) Opticon USB Drivers Installer (HKLM-x32\...\Opticon USB Installer) (Version: - ) PaperPort Image Printer 64-bit (HKLM\...\{D158E731-114A-4F82-988C-67D43E5C3668}) (Version: 14.7.1000 - Kofax Inc.) Quick Share (HKLM\...\{E8E4AB67-FD4E-4B36-A317-81EE323832E3}) (Version: 1.0.2113.1 - Google LLC) ReadMyClicker (HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\f99ae47977cdb87f) (Version: 1.0.0.27 - Kantar) Revo Uninstaller 2.5.7 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.5.7 - VS Revo Group, Ltd.) Zoom Workplace (HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\ZoomUMX) (Version: 6.3.6 (56144) - Zoom Communications, Inc.) Packages: ========= AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-02-15] (INTEL CORP) [Startup Task] Copilot -> C:\Program Files\WindowsApps\Microsoft.Copilot_1.25014.121.0_x64__8wekyb3d8bbwe [2025-02-23] (Microsoft Corporation) [Startup Task] Deezer Music -> C:\Program Files\WindowsApps\Deezer.62021768415AF_7.0.31.0_x86__q7m17pa7q8kj0 [2025-02-27] (Deezer SA) Dropbox - offre promotionnelle -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_23.4.30.0_x64__xbfy0k16fey96 [2025-02-16] (Dropbox Inc.) HP Audio Center -> C:\Program Files\WindowsApps\AD2F1837.HPAudioCenter_1.47.308.0_x64__v10z8vjag6ke6 [2025-02-15] (HP Inc.) HP Enhanced Lighting -> C:\Program Files\WindowsApps\AD2F1837.HPEnhance_1.4.4.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_2.7.1.0_x64__v10z8vjag6ke6 [2025-02-23] (HP Inc.) HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.3.10.0_x64__v10z8vjag6ke6 [2024-10-29] (HP Inc.) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_157.1.1186.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.41.29.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_3.1.4.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) Intel® Rapid Storage Technology Application -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_20.0.1019.0_x64__8j3eq9eme6ctt [2025-02-15] (INTEL CORP) Microsoft Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_4.0.10720.0_x64__yxz26nhyzhsrt [2025-02-27] (Microsoft Corp.) Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2025-02-16] (Microsoft Corp.) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_53.20111.128.0_x64__8wekyb3d8bbwe [2024-10-29] (Microsoft Corporation) Microsoft.StartExperiencesApp -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.235.0_x64__8wekyb3d8bbwe [2025-02-16] (Microsoft Corporation) myHP -> C:\Program Files\WindowsApps\AD2F1837.myHP_42.52507.561.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) [Startup Task] Mystery Manor: Hidden Objects -> C:\Program Files\WindowsApps\0EB8BD08.MysteryManorhiddenobjects_6.430.0.0_x86__erk4rrwmt7jyt [2025-02-25] (GAME INSIGHT UAB) OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16 [2025-02-17] () OMEN Gaming Hub -> C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6 [2025-02-16] (HP Inc.) [Startup Task] Quick Share -> C:\Program Files\Google\NearbyShare [2025-02-27] (Google LLC) Quick Share -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_1.7.101.0_x64__wyx1vj98g3asy [2025-02-27] (Samsung Electronics Co, Ltd.) [Startup Task] WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2508.5.0_x64__cv1g1gvanyjgm [2025-03-01] (WhatsApp Inc.) [Startup Task] ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-2823037155-2305118366-2270497046-1001_Classes\CLSID\{7d043d4e-4259-f459-3630-7b434fd7752c}\localserver32 -> C:\Program Files\HP\HP Media Network\HPMediaNetwork.exe (HP Inc. -> HP Inc.) CustomCLSID: HKU\S-1-5-21-2823037155-2305118366-2270497046-1001_Classes\CLSID\{CD3D01ED-95A7-4B43-988C-2C2B13B11F0F} -> [Z Flip5 de fany] => C:\Users\steph\CrossDevice\Z Flip5 de fany [2025-02-16 09:41] ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-02-27] (Malwarebytes Inc. -> Malwarebytes) ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.015.0126.0002\FileSyncShell64.dll [2025-02-24] (Microsoft Corporation -> Microsoft Corporation) ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-02-27] (Malwarebytes Inc. -> Malwarebytes) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== ==================== Modules chargés (Avec liste blanche) ============= 2025-02-16 16:44 - 2018-05-02 15:25 - 000091648 _____ () [Fichier non signé] C:\windows\system32\BrNetSti.dll 2025-02-16 16:44 - 2005-04-22 13:36 - 000143360 _____ () [Fichier non signé] C:\windows\system32\BrSNMP64.dll 2025-02-16 16:45 - 2025-02-16 16:45 - 000869376 _____ (.NET Foundation) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\Microsoft.T417b639d#\1f0ee4c3501401dba1ee9db39dca79c4\Microsoft.Toolkit.Uwp.Notifications.ni.dll 2025-02-16 16:15 - 2025-02-16 16:15 - 000432128 _____ (HP Inc.) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\LauncherSDK\5dfa3daa8a6749a11f0f5a487763bae6\LauncherSDK.ni.dll 2025-02-16 16:15 - 2025-02-16 16:15 - 000037888 _____ (HP Inc.) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\Logging\f83258b406f7e0011032448137b9e628\Logging.ni.dll 2025-02-16 16:45 - 2025-02-16 16:45 - 000153088 _____ (HP Inc.) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\RpcClient\3a50d9a5b6fd4a2005a7f2b82703d9f3\RpcClient.ni.dll 2025-02-16 16:45 - 2025-02-16 16:45 - 000118272 _____ (HP Inc.) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\WMISDK\22bb97f0ba0549719d5f3e04efb6a2ff\WMISDK.ni.dll 2025-02-16 16:45 - 2025-02-16 16:45 - 003884544 _____ (Newtonsoft) [Fichier non signé] C:\windows\assembly\NativeImages_v4.0.30319_64\Newtonsoft.Json\dc471371b4b6df152439a9403c5deee3\Newtonsoft.Json.ni.dll ==================== Alternate Data Streams (Avec liste blanche) ======== ==================== Mode sans échec (Avec liste blanche) ================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le "AlternateShell" sera restauré.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ============= BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2024-12-17] (HP Inc. -> HP Inc.) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Kofax\PDF Viewer 7\Bin\PlusIEContextMenu.dll => Pas de fichier BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2024-12-17] (HP Inc. -> HP Inc.) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-02-17] (Microsoft Corporation -> Microsoft Corporation) ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2024-04-01 08:26 - 2025-02-17 10:48 - 000000822 _____ C:\windows\system32\drivers\etc\hosts ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\steph\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. Network Binding: ============= Connexion réseau Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys Wi-Fi: Realtek RTL8822CE 802.11ac PCIe Adapter -> rtwlane.sys vms_vsf: Filtre d’extension de commutateur virtuel Hyper-V ms_l1vhlwf: Nested Network Virtualization vms_vsp: Protocole d’extension de commutateur virtuel Hyper-V ==================== MSCONFIG/TASK MANAGER éléments désactivés == (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) HKLM\...\StartupApproved\Run: => "Nearby Share" HKLM\...\StartupApproved\Run32: => "ControlCenter4" HKLM\...\StartupApproved\Run32: => "BrHelp" HKLM\...\StartupApproved\Run32: => "BrStsMon00" HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\StartupApproved\Run: => "HPSEU_Host_Launcher" HKU\S-1-5-21-2823037155-2305118366-2270497046-1001\...\StartupApproved\Run: => "OneDrive" ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [{9A41262F-C012-438A-898E-9CEC80A87D03}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25007.607.3371.8436_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{B57566AA-84B3-4264-BA76-258BCFA9F8F2}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25007.607.3371.8436_x64__8wekyb3d8bbwe\ms-teams.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{789A42EF-A61E-4F04-B59F-4F77CC2DF1AB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{F1793293-4AEA-4866-8B0C-4771E09A6547}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{86F2AE3F-C881-4104-A836-D606B3B52736}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [{DD417EE4-B8FE-49C6-8CA5-487FC54EEC7C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.) FirewallRules: [TCP Query User{6805AC04-AEC8-4CE8-9033-9C2B09D3C1E9}C:\program files (x86)\bsd concept\heredis 2023\heredis23.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2023\heredis23.exe (HEREDIS S.C.O.P -> Heredis) FirewallRules: [UDP Query User{959A53C2-D346-4820-AFA6-B52B4BABE5D3}C:\program files (x86)\bsd concept\heredis 2023\heredis23.exe] => (Allow) C:\program files (x86)\bsd concept\heredis 2023\heredis23.exe (HEREDIS S.C.O.P -> Heredis) FirewallRules: [{8375C599-7BD5-4881-99B4-35E64A027723}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{540E4115-FC3E-4771-985A-005AD047944D}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{86EAA710-838B-4961-A72B-BDA4DCC45AE9}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{9BEE810A-EEB2-4435-A434-2354323627AA}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{0491CF2D-4C9D-40C8-874C-5F1C9804511B}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{0C706118-0CD2-4A3B-805B-56E171C8DD41}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{BF66FB21-334F-4E5F-B8B6-F3A1E077E2C7}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{DAEAB6F4-F741-410A-A301-51C067E308E2}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{47A44683-01BD-4F3C-9EBB-C28C0D010AD7}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{017B53BA-D160-445C-BE0C-91C4FB5C8A05}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{7F635235-5B68-4193-ADA8-94D652F88225}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{3DF3DB03-4B31-4807-BEF5-58D28D2ADB08}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{5D98FFA3-369A-4FCA-A1B7-C46BC5C14056}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{099A4645-6D78-4E15-8C64-A4C22FB312ED}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\HP.Omen.OmenCommandCenter.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{7CB67A02-A277-4ECB-BC58-C6F0C9B4272C}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\OmenCommandCenterBackground.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{B66C2589-8482-440F-A9BC-328BCF1EA3E8}] => (Allow) C:\Program Files\WindowsApps\AD2F1837.OMENCommandCenter_1101.2412.10.0_x64__v10z8vjag6ke6\OmenCommandCenterApp\OmenCommandCenterBackground.exe (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) FirewallRules: [{4867DBC0-9B04-48DA-84F8-8827331D89BE}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe => Pas de fichier FirewallRules: [{64A2FC23-5177-4978-9F34-FA08F93E9AFD}] => (Allow) c:\program files (x86)\pc-faxreceive\brengineprocess.exe => Pas de fichier FirewallRules: [{A56A030A-235F-4CBE-BEA3-D2F41D9C9945}] => (Allow) LPort=54925 FirewallRules: [{BCA07CC4-475B-4E09-8FBD-4A51554FBD66}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe => Pas de fichier FirewallRules: [{DD6D38D7-03A3-43A8-AA5E-D8CBAA3B75CF}] => (Allow) C:\Program Files (x86)\Browny02\Brother\BrPrintFinishNotice\BrPrintFinishNotice.exe => Pas de fichier FirewallRules: [{608FC17A-A793-485F-966A-1570CC17B8CE}] => (Allow) C:\Program Files\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [Fichier non signé] FirewallRules: [{33A98380-BBED-4FA8-8AFE-A3225AB14E97}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{6ECD2399-DBC8-4826-B29C-4653D288E304}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{2BA1C2D7-B364-4A64-835D-C17C63BBABFF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{9EFB37EC-E64A-45DA-AB67-E53488941258}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{5B557D1D-4ECC-488A-90B8-5B50BFCC1A8A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [TCP Query User{391AD634-0D69-48D2-9C70-CB61CBBEF116}C:\users\steph\appdata\roaming\zoom\bin\zoom.exe] => (Allow) C:\users\steph\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.) FirewallRules: [UDP Query User{BD75E541-4570-4863-9BB3-93B9D0336F36}C:\users\steph\appdata\roaming\zoom\bin\zoom.exe] => (Allow) C:\users\steph\appdata\roaming\zoom\bin\zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.) FirewallRules: [{13B38F73-9F5B-4797-97E4-DE65740E3335}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_1.7.101.0_x64__wyx1vj98g3asy\Win32\QSSystray.exe (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> Samsung Electronics Co., Ltd.) FirewallRules: [{4FD21E57-85B2-4BB3-8B16-45E14CAEC920}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_1.7.101.0_x64__wyx1vj98g3asy\Win32\QSSystray.exe (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> Samsung Electronics Co., Ltd.) FirewallRules: [{FC366CDA-CA16-4916-A17D-7F8BE725AE33}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_1.7.101.0_x64__wyx1vj98g3asy\Win32\QSSystray.exe (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> Samsung Electronics Co., Ltd.) FirewallRules: [{024EE505-1EAE-4F4D-B4F4-8D00BF07B869}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungQuickShare_1.7.101.0_x64__wyx1vj98g3asy\Win32\QSSystray.exe (14C847C8-791E-46EB-9C0D-7CADAF31C930 -> Samsung Electronics Co., Ltd.) FirewallRules: [{C21EBDCC-A401-43A6-9541-31AFA7633F4B}] => (Allow) C:\Program Files\Google\NearbyShare\nearby_share.exe (Google LLC -> Google) FirewallRules: [{ABB5883C-FE56-4892-B4D2-748B29F771F3}] => (Allow) C:\Program Files\Google\NearbyShare\nearby_share.exe (Google LLC -> Google) FirewallRules: [{D8D4B033-4D86-4BAD-8133-797AEE1840EA}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.92\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Points de restauration ========================= 23-02-2025 09:43:18 Windows Update 23-02-2025 09:43:22 Windows Update 26-02-2025 17:34:45 Removed Kofax PaperPort 14. 26-02-2025 17:35:17 Removed Kofax PDF Viewer SE. 26-02-2025 17:35:48 Removed PaperPort Image Printer 64-bit. 27-02-2025 19:47:58 Installed Kofax PaperPort 14. 27-02-2025 19:48:33 Installed Kofax PDF Viewer SE. 27-02-2025 19:48:51 Installed PaperPort Image Printer 64-bit. 02-03-2025 09:41:28 Removed Kofax PDF Viewer SE. ==================== Éléments en erreur du Gestionnaire de périphériques ============ Name: Brother MFC-J2330DW Description: Brother MFC-J2330DW Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: Brother Service: usbscan Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (03/02/2025 09:42:40 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide. Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (03/02/2025 09:41:39 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Kofax\PDF Viewer 7\bin\iepdfplus.ocx ». Assembly dépendant Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (03/02/2025 09:41:39 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Kofax\PDF Viewer 7\Bin\IEPDFPlus.ocx ». Assembly dépendant Microsoft.VC90.MFC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (03/02/2025 09:41:38 AM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « C:\Program Files (x86)\Kofax\PDF Viewer 7\Bin\PlusIEContextMenu.dll ». Assembly dépendant Microsoft.VC90.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (03/02/2025 09:41:32 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide. Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Error: (03/02/2025 09:40:45 AM) (Source: Application Error) (EventID: 1000) (User: RNDAUPS) Description: Nom de l'application défaillante : MsiExec.exe, version : 5.0.26100.712, horodatage : 0x858dc2bb Nom du module défaillant : MSI76E1.tmp, version : 14.7.22568.2000, horodatage : 0x63776086 Exception code: 0xc0000409 Fault offset: 0x0000b683 Identifiant du processus défaillant : 0x1e64 Heure de début de l'application défaillante : 0x1db8b4ec527bd2b Chemin de l'application défaillante : C:\Windows\syswow64\MsiExec.exe Chemin du module défaillant : C:\windows\Installer\MSI76E1.tmp ID du rapport : bc9c6f31-3f29-4649-91e6-b863c36240e7 Nom complet du package défaillant : Package défaillant – ID d'application relatif : Error: (03/02/2025 09:40:41 AM) (Source: Application Error) (EventID: 1000) (User: RNDAUPS) Description: Nom de l'application défaillante : MsiExec.exe, version : 5.0.26100.712, horodatage : 0x858dc2bb Nom du module défaillant : KERNELBASE.dll, version : 10.0.26100.3037, horodatage : 0x3ff9f933 Exception code: 0xe06d7363 Fault offset: 0x0015c424 Identifiant du processus défaillant : 0x1e64 Heure de début de l'application défaillante : 0x1db8b4ec527bd2b Chemin de l'application défaillante : C:\Windows\syswow64\MsiExec.exe Chemin du module défaillant : C:\windows\System32\KERNELBASE.dll ID du rapport : d22694cf-7532-445e-bc6d-634c324ddd5b Nom complet du package défaillant : Package défaillant – ID d'application relatif : Error: (03/02/2025 09:40:33 AM) (Source: VSS) (EventID: 8193) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine QueryFullProcessImageNameW. hr = 0x80070006, Descripteur non valide. Opération : Opération asynchrone en cours d’exécution Contexte : État actuel: DoSnapshotSet Erreurs système: ============= Error: (03/02/2025 10:13:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service PDFProFiltSrvPP n’a pas pu démarrer en raison de l’erreur : Le fichier spécifié est introuvable. Error: (03/02/2025 10:13:26 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service l1vhlwf n’a pas pu démarrer en raison de l’erreur : Aucune fonctionnalité d’hyperviseur n’est disponible pour l’utilisateur. Error: (03/02/2025 10:13:05 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Error: (03/02/2025 10:13:05 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Error: (03/02/2025 10:13:05 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3503) (User: AUTORITE NT) Description: Device Association Service a détecté un échec de découverte de point de terminaison. Error: (03/02/2025 10:06:11 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3508) (User: AUTORITE NT) Description: Échec de l’association de périphériques – Initialisation de l’association. Error: (03/02/2025 10:06:08 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3508) (User: AUTORITE NT) Description: Échec de l’association de périphériques – Initialisation de l’association. Error: (03/02/2025 10:06:08 AM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3502) (User: AUTORITE NT) Description: Échec de la dissociation de l’appareil (découplage). Windows Defender: ================ Date: 2025-02-26 11:16:14 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {1FC348F2-3D98-46FF-9823-7419B712586F} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2025-02-25 11:16:14 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {A7EAC640-DA05-4974-B11B-8B0EA878B329} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2025-02-24 11:40:34 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {AE697F7F-0677-4BD2-8519-58166BB56FB9} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2025-02-23 11:12:59 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {1276E76F-0E41-4C28-9CA1-E2F4BD92ADFB} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système Date: 2025-02-21 11:56:02 Description: L’analyse Antivirus Microsoft Defender a été arrêtée avant la fin. ID de l’analyse : {F281D7E0-A456-467E-9251-94394602D1CE} Type de l’analyse : Logiciel anti-programme malveillant Paramètres de l’analyse : Analyse rapide Utilisateur : AUTORITE NT\Système  CodeIntegrity: =============== Date: 2025-03-02 10:15:37 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2025-03-02 10:14:47 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements. Date: 2025-03-02 10:14:38 Description: Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Microsoft signing level requirements. ==================== Infos Mémoire =========================== BIOS: AMI F.31 10/14/2024 Carte mère: HP 89B4 Processeur: 12th Gen Intel(R) Core(TM) i5-12400 Pourcentage de mémoire utilisée: 37% Mémoire physique - RAM - totale: 16069.27 MB Mémoire physique - RAM - disponible: 9968.64 MB Mémoire virtuelle totale: 17093.27 MB Mémoire virtuelle disponible: 11089.57 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:476.08 GB) (Free:384.04 GB) (Model: NVMe SAMSUNG MZVL8512HELU-00BH1) (Protected) NTFS \\?\Volume{bfc0b588-6e13-400f-a067-1c4d57d16476}\ (Windows RE tools) (Fixed) (Total:0.58 GB) (Free:0.06 GB) NTFS \\?\Volume{4f802052-f8a1-4dfa-a55b-ede7493c6463}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32 ==================== MBR & Table des partitions ==================== ========================================================== Disk: 0 (Size: 476.9 GB) (Disk ID: 97FC48D6) Partition: GPT. ==================== Fin de Addition.txt =======================