Résultats de l'Analyse supplémentaire de Farbar Recovery Scan Tool (x64) Version: 06-03-2025 Exécuté par MCFIVE (07-03-2025 19:21:30) Exécuté depuis C:\Users\MCFIVE\Downloads Microsoft Windows 10 Famille Version 22H2 19045.5487 (X64) (2021-02-16 18:30:49) Mode d'amorçage: Normal ========================================================== ==================== Comptes: ============================= (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) Administrateur (S-1-5-21-916869094-3403233507-1452638425-500 - Administrator - Disabled) DefaultAccount (S-1-5-21-916869094-3403233507-1452638425-503 - Limited - Disabled) Invité (S-1-5-21-916869094-3403233507-1452638425-501 - Limited - Disabled) MCFIVE (S-1-5-21-916869094-3403233507-1452638425-1010 - Limited - Enabled) => C:\Users\MCFIVE MICHEL MVK (S-1-5-21-916869094-3403233507-1452638425-1011 - Administrator - Enabled) => C:\Users\MICHEL MVK WDAGUtilityAccount (S-1-5-21-916869094-3403233507-1452638425-504 - Limited - Disabled) ==================== Centre de sécurité ======================== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé.) AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75} AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Norton Security (Enabled - Up to date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A} FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E} FW: Norton Security (Enabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1} ==================== Programmes installés ====================== (Seuls les logiciels publicitaires ('adware') avec la marque 'caché' ('Hidden') sont susceptibles d'être ajoutés au fichier fixlist.txt pour qu'ils ne soient plus masqués. Les programmes publicitaires devront être désinstallés manuellement.) 7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov) Admiral Markets MT5 (HKLM\...\Admiral Markets MT5) (Version: 5.00 - MetaQuotes Ltd.) Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1036-1033-7760-BC15014EA700}) (Version: 25.001.20428 - Adobe) Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601108}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden Audacity 3.0.4 (HKLM\...\Audacity_is1) (Version: 3.0.4 - Audacity Team) Brave (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\BraveSoftware Brave-Browser) (Version: 134.1.76.73 - Auteurs de Brave) BrightPDF (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\BrightPDF) (Version: 1.0 - BrightPDF) Capture NX-D (HKLM\...\{2D088846-B670-47AF-91C3-76E0B3E887C3}) (Version: 1.6.5 - Nikon Corporation) Contrôle d’intégrité du PC Windows (HKLM\...\{90C6971F-ABF1-4FBF-BD98-24F14C5F5AB4}) (Version: 3.6.2204.08001 - Microsoft Corporation) Contrôle d’intégrité du PC Windows (HKLM\...\{C2812DB5-E3F5-44FF-8EA0-8E03F1B61103}) (Version: 3.3.2110.22002 - Microsoft Corporation) Contrôle d’intégrité du PC Windows (HKLM\...\{DB3AADA3-0996-4427-87CC-8BA140012410}) (Version: 3.7.2204.15001 - Microsoft Corporation) CrowdBunker (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\5d58ea62638d4dd24645985b9e8447b0) (Version: 1.0 - BraveSoftware\Brave-Browser) Disk Drill 4.3.586.0 (HKLM-x32\...\{bfc9449d-f283-402b-bbea-d1ab1601941a}) (Version: 4.3.586.0 - CleverFiles) Disk Drill 4.3.586.0 (x64) (HKLM\...\{F8BF1CAE-3A62-4ED3-BF09-10B84120F57C}) (Version: 4.3.586.0 - CleverFiles) Hidden Documentation Manager (HKLM\...\{87CA98A2-FF74-4CBE-81D8-0E9145F4A97C}) (Version: 22.30.0.11 - Intel Corporation) Hidden Dokan Library 1.4.1.1000 (x64) (HKLM\...\{65A3A964-3DC3-0104-0001-210114105723}) (Version: 1.4.1.1000 - Dokany Project) Hidden Dokan Library 1.4.1.1000 Bundle (HKLM-x32\...\{9af3b5e1-ed1b-48df-a34f-22fa6bcc4b04}) (Version: 1.4.1.1000 - Dokany Project) DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP) DriversCloud.com (64 bits) (HKLM\...\{8345D0DF-6F2B-42B5-BEA4-9D7B0F532294}) (Version: 10.1.1.1 - Cybelsoft) Dynamic Application Loader Host Interface Service (HKLM\...\{A28339C8-E641-4CCE-A316-56F405D1C245}) (Version: 1.0.0.0 - Intel Corporation) Hidden Easy Connection to Screen (HKLM\...\{12128269-E2C9-4D5B-8B34-0EDFDA6208C7}) (Version: 2.21.2 - Samsung) EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.21.0114.1 - GIGABYTE) Hidden EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.21.0114.1 - GIGABYTE) ENE_AIC_Marvell_HAL (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden ENE_AIC_Marvell_HAL (HKLM-x32\...\{887e18fb-6bc3-4cd4-b34e-32d9ff71bbae}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.0.9 - Ene Tech.) Hidden ENE_DRAM_RGB_AIO (HKLM-x32\...\{8bcd6161-a822-4c5a-9711-472cb32c7adf}) (Version: 1.0.0.9 - Ene Tech.) Hidden ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_M2_HAL (HKLM-x32\...\{d8516682-de60-4332-ad6f-49373754b677}) (Version: 1.0.6.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_SSS_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden ENE_EHD_SSS_HAL (HKLM-x32\...\{9eeadf99-713b-4ab5-9ccd-bf9c1c4d9daf}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden Exodus (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\exodus) (Version: 25.5.3 - Exodus Movement Inc) fastsrch (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\fastsrch) (Version: 1.0 - fastsrch) Fortuneo LIVE TRADER (64-bit) (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\Fortuneo LIVE TRADER (x64)) (Version: 1.1.0.0 - Ariane Software) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 133.0.6943.142 - Google LLC) Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.101.0 - Google LLC) Hidden Google+ Auto Backup (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\Google+ Auto Backup) (Version: 1.0.26.150 - Google, Inc.) Intel(R) Chipset Device Software (HKLM\...\{44C34709-F068-4CBC-8A71-515EDBC3B2A6}) (Version: 10.1.18383.8213 - Intel Corporation) Hidden Intel(R) Chipset Device Software (HKLM-x32\...\{afad3740-3061-4b48-a9ab-6f1435cb3dd6}) (Version: 10.1.18383.8213 - Intel(R) Corporation) Intel(R) Icls (HKLM\...\{0F81F40A-C278-47DA-8DD7-1961834FA78C}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) LMS (HKLM\...\{A0983640-26D2-4CD8-A512-747BF3CF3F82}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2101.15.0.2080 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{21468D61-6A78-4358-B346-F4D37C6D55CC}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Components (HKLM\...\{788371EA-0B02-40AD-85D0-21BE107E3628}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Management Engine Driver (HKLM\...\{2F171580-9C56-4A25-A5D5-CBBAA025BFA6}) (Version: 1.0.0.0 - Intel Corporation) Hidden Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000030-0220-1036-84C8-B8D95FA3C8C3}) (Version: 22.30.0.4 - Intel Corporation) Intel® PROSet/Wireless WiFi Software (HKLM\...\{074B9893-BA7C-46C3-A5AD-D15971AA8666}) (Version: 21.30.3.3297 - Intel Corporation) Hidden Intel® Software Installer (HKLM-x32\...\{469cd1ee-2994-481c-ad19-874d4d32525b}) (Version: 22.30.0.11 - Intel Corporation) Hidden Ledger Live 2.47.0 (HKLM\...\c62032b2-0bca-5abc-b458-fd67cfc9e49b) (Version: 2.47.0 - Ledger Live Team) LibreOffice 7.1.1.2 (HKLM\...\{14E9DACB-8945-4B62-A19B-2C6245D48490}) (Version: 7.1.1.2 - The Document Foundation) Lifesize (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\lifesize_app) (Version: 3.0.17 - Lifesize) Livaxxen 2.0.3 (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\d2b71b04-41ab-580c-8444-59bca5e98490) (Version: 2.0.3 - Livaxxen - hxxp://invest.livaxxen.org) Logiciel Intel® PROSet/Wireless (HKLM-x32\...\{0fdc2e5c-7a15-4db3-b33c-f303fe56f68d}) (Version: 21.30.3 - Intel Corporation) Logitech Capture (HKLM\...\Capture) (Version: 2.06.12 - Logitech) Microsoft .NET Host - 8.0.8 (x64) (HKLM\...\{3BA242F8-BDB5-4096-9FBC-333CD663BBAD}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 133.0.3065.92 - Microsoft Corporation) Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 133.0.3065.92 - Microsoft Corporation) Hidden Microsoft OneDrive (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\OneDriveSetup.exe) (Version: 25.025.0209.0001 - Microsoft Corporation) Microsoft Teams classic (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\Teams) (Version: 1.8.00.1362 - Microsoft Corporation) Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation) Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 (HKLM-x32\...\{5af95fd8-a22e-458f-acee-c61bd787178e}) (Version: 14.40.33810.0 - Microsoft Corporation) Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 (HKLM\...\{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}) (Version: 14.40.33810 - Microsoft Corporation) Hidden Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 (HKLM\...\{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}) (Version: 14.40.33810 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation) Mozilla Firefox (x64 fr) (HKLM\...\Mozilla Firefox 136.0 (x64 fr)) (Version: 136.0 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 109.0 - Mozilla) Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.4.1 - Nikon Corporation) Nikon Transfer 2 (HKLM-x32\...\{757DBE04-3DC8-4741-B10B-4628745E96FE}) (Version: 2.13.7 - Nikon Corporation) NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.4.6.950 - Nord Security) NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.35.1.0 - Nord Security) NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN) NVIDIA Pilote audio HD : 1.3.38.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.40 - NVIDIA Corporation) NVIDIA Pilote graphique 461.72 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 461.72 - NVIDIA Corporation) NVIDIA RTX Desktop Manager 201.18 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 201.18 - NVIDIA Corporation) NVIDIA WMI 2.36.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI) (Version: 2.36.0 - NVIDIA Corporation) oDownloader (HKLM-x32\...\{6F331B47-2434-42BD-9195-1861EA35F89B}) (Version: 3.0.6 - Infatica Ltd) Opera Stable 117.0.5408.53 (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\Opera 117.0.5408.53) (Version: 117.0.5408.53 - Opera Software) Patriot Viper M2 SSD RGB (HKLM\...\{0886A906-0625-4A43-930D-AA92F6665AF4}) (Version: 1.00.04 - Patriot Memory) Hidden Patriot Viper M2 SSD RGB (HKLM-x32\...\{ebb7013c-0b03-497c-bed1-1e48e806a593}) (Version: 1.00.04 - Patriot Memory) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Picture Control Utility 2 (HKLM\...\{C03DA72C-DE1F-4628-9CA0-53AFAE96C05F}) (Version: 2.4.7 - Nikon Corporation) Que sont les Grandes orientations des politiques économiques (GOPÉ) ? - Union Populaire Républicaine | UPR (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\270fbcfaeaf179dbe6839b146dd70ba9) (Version: 1.0 - Vivaldi) Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9075.1 - Realtek Semiconductor Corp.) Revo Uninstaller 2.2.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.2.2 - VS Revo Group, Ltd.) Signal 5.34.0 (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 5.34.0 - Open Whisper Systems) Telegram Desktop (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 5.11.1 - Telegram FZ-LLC) Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation) VdhCoApp 1.6.3 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper) Vivaldi (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\Vivaldi) (Version: 7.1.3570.58 - Vivaldi Technologies AS.) VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN) WhatsApp (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\WhatsApp) (Version: 2.2222.12 - WhatsApp) WinRAR 6.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH) X (HKU\S-1-5-21-916869094-3403233507-1452638425-1010\...\d7734fb8014f577f14d84d739d218320) (Version: 1.0 - Vivaldi) Packages: ========= Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-12-13] () Composant additionnel Photos Media Engine -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-09-06] (Microsoft Corporation) Extension Photos -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-12-02] (Microsoft Corporation) Fluent Translator X -> C:\Program Files\WindowsApps\1901TwentyOneTeam.LinguaTranslateX_2.0.7.0_x64__qfdnnpxetjjmm [2024-08-23] (Twenty One Team) HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_158.1.1131.0_x64__v10z8vjag6ke6 [2025-03-04] (HP Inc.) March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_8.8.0.0_x86__h6adky7gbf63m [2025-02-28] (Gameloft SE) Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2025-03-03] (Microsoft Corporation) Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.20.238.0_x64__dt26b99r8h8gj [2021-03-20] (Realtek Semiconductor Corp) Roblox -> C:\Program Files\WindowsApps\ROBLOXCORPORATION.ROBLOX_2.662.536.0_x64__55nm5eh3cm0pr [2025-03-03] (Roblox Corporation) Twitter -> C:\Program Files\WindowsApps\twitter.com-135FFC0D_7.0.1.1_neutral__9wdrbcd1pw7ja [2023-10-15] (twitter.com) WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2509.4.0_x64__cv1g1gvanyjgm [2025-03-06] (WhatsApp Inc.) [Startup Task] WhatsApp Beta -> C:\Program Files\WindowsApps\5319275A.51895FA4EA97F_2.2510.0.0_x64__cv1g1gvanyjgm [2025-03-07] (WhatsApp Inc.) [Startup Task] ==================== Personnalisé CLSID (Avec liste blanche): ============== (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{04271989-C4D2-853D-C5C8-9ED21FC6E81C} -> [OneDrive - etu.u-cergy.fr] => C:\Users\MCFIVE\OneDrive - etu.u-cergy.fr [2022-12-06 13:22] CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{06B74C04-E813-4DD4-A972-172836EFA8D6}\InprocServer32 -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Update\1.3.361.151\psuser_64.dll (Brave Software, Inc. -> BraveSoftware Inc.) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{06C9646D-2807-44C0-97D2-6DA0DB623DB4}\localserver32 -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\Application\134.1.76.73\notification_helper.exe (Brave Software, Inc. -> Brave Software, Inc.) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\MCFIVE\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.24313.1\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> NordVPN) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{9C2CAD0E-C084-478E-B922-37EAB1DF062B}\localserver32 -> C:\Users\MCFIVE\AppData\Local\Vivaldi\Application\7.1.3570.58\notification_helper.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{ECC20441-2AE9-44E2-86C6-3AA267D2C7F9}\InprocServer32 -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Update\1.3.361.151\psuser_64.dll (Brave Software, Inc. -> BraveSoftware Inc.) CustomCLSID: HKU\S-1-5-21-916869094-3403233507-1452638425-1010_Classes\CLSID\{F6E536F5-F795-49CE-A85D-2DA66503C6F1}\InprocServer32 -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Update\1.3.361.151\psuser_64.dll (Brave Software, Inc. -> BraveSoftware Inc.) ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => -> Pas de fichier ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => -> Pas de fichier ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => -> Pas de fichier ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => -> Pas de fichier ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => -> Pas de fichier ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\windows\system32\nvshext.dll [2021-02-23] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers5: [NvQuadroView] -> {1E9B04FB-F9E5-4718-997B-B8DA88302A48} => C:\Program Files\NVIDIA Corporation\nview\nvshell.dll [2021-02-24] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Fichier non signé] ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => -> Pas de fichier ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal) ==================== Codecs (Avec liste blanche) ==================== ==================== Raccourcis & WMI ======================== (Les éléments sont susceptibles d'être inscrits dans le fichier fixlist.txt afin d'être supprimés ou restaurés.) ShortcutWithArgument: C:\Users\MCFIVE\Desktop\Atlas - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default" ShortcutWithArgument: C:\Users\MCFIVE\Desktop\CrowdBunker.lnk -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=leoocihfaiakeienlblhamnjeienljmj ShortcutWithArgument: C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Web Applications\_crx_leoocihfaiakeienlblhamnjeienljmj\CrowdBunker.lnk -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=leoocihfaiakeienlblhamnjeienljmj ShortcutWithArgument: C:\Users\MCFIVE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Brave\CrowdBunker.lnk -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=leoocihfaiakeienlblhamnjeienljmj ShortcutWithArgument: C:\Users\MCFIVE\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\CrowdBunker.lnk -> C:\Users\MCFIVE\AppData\Local\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=leoocihfaiakeienlblhamnjeienljmj ShortcutWithArgument: C:\Users\MCFIVE\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\9501e18d7c2ab92e\Carmagnat - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 2" ==================== Modules chargés (Avec liste blanche) ============= 2020-07-26 15:29 - 2020-07-26 15:29 - 000140288 _____ (Artyom Gorchakov and Contributors) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Citrus.Avalonia.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000048640 _____ (Avalonia.Animation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Animation.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000219136 _____ (Avalonia.Base) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Base.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000716800 _____ (Avalonia.Controls) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Controls.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000005632 _____ (Avalonia.Desktop) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Desktop.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000025600 _____ (Avalonia.DesktopRuntime) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.DesktopRuntime.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000081920 _____ (Avalonia.Input) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Input.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000020480 _____ (Avalonia.Interactivity) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Interactivity.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000072192 _____ (Avalonia.Layout) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Layout.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000048640 _____ (Avalonia.Markup) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Markup.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000054272 _____ (Avalonia.Markup.Xaml) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Markup.Xaml.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000013824 _____ (Avalonia.MicroCom) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.MicroCom.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000304128 _____ (Avalonia.OpenGL) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.OpenGL.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000021504 _____ (Avalonia.ReactiveUI) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.ReactiveUI.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000096768 _____ (Avalonia.Skia) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Skia.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000069120 _____ (Avalonia.Styling) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Styling.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000413184 _____ (Avalonia.Themes.Default) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Themes.Default.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000341504 _____ (Avalonia.Visuals) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Visuals.dll 2020-12-10 20:45 - 2020-12-10 20:45 - 000295936 _____ (Avalonia.Win32) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\Avalonia.Win32.dll 2020-09-11 08:53 - 2020-09-11 08:53 - 008656240 _____ (Code Sign Test (DO NOT TRUST) -> ) [Fichier non signé] C:\Program Files (x86)\oDownloader\libSkiaSharp.DLL 2020-09-11 08:53 - 2020-09-11 08:53 - 000405872 _____ (Code Sign Test (DO NOT TRUST) -> Microsoft Corporation) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\SkiaSharp.dll 2021-06-18 00:05 - 2021-06-18 00:05 - 000008192 _____ (GoogleUA) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\GoogleUA.dll 2021-01-14 15:21 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [Fichier non signé] C:\Program Files\7-Zip\7-zip.dll 2020-12-16 21:04 - 2020-12-16 21:04 - 004267008 _____ (Lary) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\MessageBox.Avalonia.dll 2020-10-25 01:52 - 2020-10-25 01:52 - 000024576 _____ (Matthew King) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\DeviceId.dll 2021-06-18 00:05 - 2021-06-18 00:05 - 002203648 _____ (oDownloader) [Fichier non signé] [Fichier en cours d'utilisation] C:\Program Files (x86)\oDownloader\oDownloader.dll ==================== Alternate Data Streams (Avec liste blanche) ======== (Si un élément est inclus dans le fichier fixlist.txt, seul le flux de données additionnel (ADS - Alternate Data Stream) sera supprimé.) AlternateDataStreams: C:\Users\MCFIVE\Desktop\FRAUDE CB FNEO 21 02 2023.jpg:shield [101] AlternateDataStreams: C:\Users\MCFIVE\Desktop\FRAUDE DEBIT CB FNEO 21 02 2023.jpg:shield [107] AlternateDataStreams: C:\Users\MCFIVE\Desktop\LIVRE GIGANTESQUE SECRET ANCIENS.MP4:shield [110] AlternateDataStreams: C:\Users\MCFIVE\Desktop\pedo Je rajouterai qu’il soit aussi brûlé.mp4:shield [91] AlternateDataStreams: C:\Users\MCFIVE\Desktop\rib-revolut_e36c08.pdf:shield [93] AlternateDataStreams: C:\Users\MCFIVE\Desktop\SIMONE WEIL UKRAINE NAZIS.mp4:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Desktop\WhatsApp Image 2025-02-07 à 18.24.22_18f97eb6.jpg:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Desktop\WhatsApp Vidéo 2025-02-07 à 18.19.36_7b8168a0.mp4:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Downloads\07account-terms-cards-mastercard-fr (1).pdf:shield [180] AlternateDataStreams: C:\Users\MCFIVE\Downloads\07account-terms-cards-mastercard-fr.pdf:shield [176] AlternateDataStreams: C:\Users\MCFIVE\Downloads\2zLY4aPi35fRz5RF6lbF4zO23Xhl9M7C-1733477589.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\2_36c6bc06-2887-4f68-baf9-4ff557f6f2c7 (1).pdf:shield [596] AlternateDataStreams: C:\Users\MCFIVE\Downloads\2_36c6bc06-2887-4f68-baf9-4ff557f6f2c7 (2).pdf:shield [596] AlternateDataStreams: C:\Users\MCFIVE\Downloads\2_36c6bc06-2887-4f68-baf9-4ff557f6f2c7.pdf:shield [115] AlternateDataStreams: C:\Users\MCFIVE\Downloads\2_986a1b33-9a10-4401-b9e5-9ed378058a94.pdf:shield [592] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3045953109475676_payment (1).pdf:shield [203] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3045953109475676_payment.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3046397849425676_payment (1).pdf:shield [203] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3046397849425676_payment.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3046510529615676_payment (1).pdf:shield [203] AlternateDataStreams: C:\Users\MCFIVE\Downloads\3046510529615676_payment.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(2).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(3).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(4).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(5).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(6).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\49410334917 - Rapport sur l'historique des trades(7).xls:shield [131] AlternateDataStreams: C:\Users\MCFIVE\Downloads\4Idw4M2WdFl6G9j0Fh9cGZ7c6vNzO72g-1733476007.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\7GvV2vF1coU5Ib9u5UYl78xTK2jbM3t1-1733475608.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ACCORD DE PRÊT_encrypted_.pdf:shield [249] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ACCORD DE SERVICES DE DONNÉES STATISTIQUES_encrypted_.pdf:shield [277] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ACCORD POUR ÉVÉNEMENT GAP_encrypted_-1.pdf:shield [262] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ACCORD POUR ÉVÉNEMENT GAP_encrypted_.pdf:shield [260] AlternateDataStreams: C:\Users\MCFIVE\Downloads\aE58Pru8Xw3MdT8Vg6oW5A8qk7S3lNyF-1733480298.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ALERTE, SORTEZ VOS ENFANTS EDSENS.mp4:shield [112] AlternateDataStreams: C:\Users\MCFIVE\Downloads\archive(1).zip:shield [585] AlternateDataStreams: C:\Users\MCFIVE\Downloads\archive(2).zip:shield [796] AlternateDataStreams: C:\Users\MCFIVE\Downloads\archive(3).zip:shield [796] AlternateDataStreams: C:\Users\MCFIVE\Downloads\archive(4).zip:shield [582] AlternateDataStreams: C:\Users\MCFIVE\Downloads\archive(5).zip:shield [582] AlternateDataStreams: C:\Users\MCFIVE\Downloads\ATTESTATION LIBRE - Acte 100212015_20305693.pdf:shield [603] AlternateDataStreams: C:\Users\MCFIVE\Downloads\avast_antivirus_gratuit_installateur_en-ligne(1).exe:mshield [284] AlternateDataStreams: C:\Users\MCFIVE\Downloads\avast_antivirus_gratuit_installateur_en-ligne(2).exe:mshield [284] AlternateDataStreams: C:\Users\MCFIVE\Downloads\avast_antivirus_gratuit_installateur_en-ligne.exe:mshield [281] AlternateDataStreams: C:\Users\MCFIVE\Downloads\avis-d-opere-30-janvier-2025.pdf:shield [264] AlternateDataStreams: C:\Users\MCFIVE\Downloads\B1y6EiIv0r7Qd7PfJ11Ys2Up2BnM6qD6-1733822163.jpeg:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\b9335d55-dc62-4db1-9f41-d2955d36a80c:shield [173] AlternateDataStreams: C:\Users\MCFIVE\Downloads\B9zzU44ySH7yWd36Mxj4GM7zL1znE9P9-1733476803.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\brightpdf.exe:shield [141] AlternateDataStreams: C:\Users\MCFIVE\Downloads\BRONCHITTE TOUX RHUMEvideo_2023-09-25_10-09-44.mp4:shield [124] AlternateDataStreams: C:\Users\MCFIVE\Downloads\COMPTEDEDEPOTS_00826049465_20241002.pdf:shield [114] AlternateDataStreams: C:\Users\MCFIVE\Downloads\COMPTEDEDEPOTS_00826049465_20241031-1.pdf:shield [116] AlternateDataStreams: C:\Users\MCFIVE\Downloads\COMPTEDEDEPOTS_00826049465_20241031-2.pdf:shield [116] AlternateDataStreams: C:\Users\MCFIVE\Downloads\COMPTEDEDEPOTS_00826049465_20241031.pdf:shield [114] AlternateDataStreams: C:\Users\MCFIVE\Downloads\comptes (1).xlsx:shield [231] AlternateDataStreams: C:\Users\MCFIVE\Downloads\comptes(8).xlsx:shield [300] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Confirmation de virement_1730740121173.pdf:shield [267] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Confirmation de virement_1738346398307.pdf:shield [267] AlternateDataStreams: C:\Users\MCFIVE\Downloads\coordonnees-bancaires-fortuneo (3).pdf:shield [201] AlternateDataStreams: C:\Users\MCFIVE\Downloads\coordonnees-bancaires-fortuneo-2.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\coordonnees-bancaires-fortuneo-3.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\coordonnees-bancaires-fortuneo-4.pdf:shield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\coordonnees-bancaires-fortuneo-6.pdf:mshield [199] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Copie AAE PARTAGE GOENEUTTE Christiane veuve BONNIN_20305014 (1).pdf:shield [618] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Copie AAE PARTAGE GOENEUTTE Christiane veuve BONNIN_20305014.pdf:shield [614] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Demande de pièces manquantes ou non conformes.pdf:shield [599] AlternateDataStreams: C:\Users\MCFIVE\Downloads\exodus-windows-x64-25.5.2.exe:shield [157] AlternateDataStreams: C:\Users\MCFIVE\Downloads\exodus-windows-x64-25.5.3 (1).exe:shield [161] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Extrait de comptes Compte 10150 000203886.. C_C CONTRAT PERSONNEL GLOBAL M OU MME MICHEL CARMAGNAT au 2025-01-31.pdf:shield [367] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Formulaire-1.pdf:shield [566] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Formulaire.pdf:shield [564] AlternateDataStreams: C:\Users\MCFIVE\Downloads\fortuneo-livetrader-x64(29).exe:shield [156] AlternateDataStreams: C:\Users\MCFIVE\Downloads\fortuneo-livetrader-x64(30).exe:shield [156] AlternateDataStreams: C:\Users\MCFIVE\Downloads\FRST64(1).exe:mshield [263] AlternateDataStreams: C:\Users\MCFIVE\Downloads\FRST64.exe:mshield [260] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Fwd_ Vos ebillets.zip:shield [96] AlternateDataStreams: C:\Users\MCFIVE\Downloads\hG0N0oPb24tJ6aZP3zMd8e5E9TrBs6v4-1733480580.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\HistoriqueOperations_013193528040 (2).zip:shield [178] AlternateDataStreams: C:\Users\MCFIVE\Downloads\HistoriqueOperations_013193528040(1).zip:shield [177] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D24355N01673D.pdf:shield [293] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D24359N00358D.pdf:shield [293] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D25022N01056D-1.pdf:shield [295] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D25022N01056D-2.pdf:shield [295] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D25022N01056D.pdf:shield [293] AlternateDataStreams: C:\Users\MCFIVE\Downloads\I05D25023N00975D.pdf:shield [293] AlternateDataStreams: C:\Users\MCFIVE\Downloads\iban_M_OU_MME_MICHEL_CARMAGNAT_00020388601 (1).pdf:shield [223] AlternateDataStreams: C:\Users\MCFIVE\Downloads\iban_M_OU_MME_MICHEL_CARMAGNAT_00020388601-2.pdf:shield [221] AlternateDataStreams: C:\Users\MCFIVE\Downloads\J. Bardella parlement européen.mp4 .mp4:shield [595] AlternateDataStreams: C:\Users\MCFIVE\Downloads\l5F3Tnp4JmS26lE5Fr1Zh4cU4mCc4Gp2-1733416232 (1).jpg:shield [607] AlternateDataStreams: C:\Users\MCFIVE\Downloads\l5F3Tnp4JmS26lE5Fr1Zh4cU4mCc4Gp2-1733416232.jpg:shield [525] AlternateDataStreams: C:\Users\MCFIVE\Downloads\LINKS.pdf:mshield [559] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Livaxxen-windowsInstallerV2(3).exe:shield [154] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Livaxxen-windowsInstallerV2(4).exe:shield [154] AlternateDataStreams: C:\Users\MCFIVE\Downloads\MACIF 02 2024 _ALEXIS Assurance_MERCEDES_E_FW-587-HX.pdf:shield [262] AlternateDataStreams: C:\Users\MCFIVE\Downloads\MAIL.pdf:mshield [558] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Memo_piratage-de-compte.pdf:mshield [168] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Mémo Véhicule Assuré.pdf:shield [574] AlternateDataStreams: C:\Users\MCFIVE\Downloads\N26 CL 04-11-2024.pdf:shield [153] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Notice _ scan.pdf:shield [567] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Numérisation_20250125 (4).png:shield [582] AlternateDataStreams: C:\Users\MCFIVE\Downloads\octobre novembre 2024.txt:mshield [111] AlternateDataStreams: C:\Users\MCFIVE\Downloads\octobre novembre 2024.txt:shield [111] AlternateDataStreams: C:\Users\MCFIVE\Downloads\p2p-transaction-confirmation-report_fr-fr_ee1acf.pdf:shield [127] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Projet de partage.pdf:shield [574] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Recap.(1).png:shield [569] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Recap.(2).png:shield [569] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Recap..png:shield [566] AlternateDataStreams: C:\Users\MCFIVE\Downloads\rib-revolut_e36c08.pdf:shield [228] AlternateDataStreams: C:\Users\MCFIVE\Downloads\Sayanims Richard Boutry nous parle des.mp4:shield [116] AlternateDataStreams: C:\Users\MCFIVE\Downloads\sH96HlJb0Sy70ZiaS13LxB8z3dG1pZy9-1733477510.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\TotalAV.exe:mshield [134] AlternateDataStreams: C:\Users\MCFIVE\Downloads\U7b1rXvP56TmBp00uXm2C4TdhC86LjwX-1733476573.jpg:shield [198] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VID-20250117-WA0002(1).mp4:shield [582] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VID-20250117-WA0002.mp4:shield [579] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VIREMENT_INSTANTANE_04-11-2024 (1).pdf:shield [124] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VIREMENT_INSTANTANE_04-11-2024.pdf:shield [107] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VIREMENT_INSTANTANE_21-10-2024.pdf:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Downloads\VIREMENT_INSTANTANE_21-11-2024.pdf:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Downloads\WISE 35.pdf:shield [135] AlternateDataStreams: C:\Users\MCFIVE\Downloads\wise 797.jpeg:shield [164] AlternateDataStreams: C:\Users\MCFIVE\Downloads\wise797.jpeg:shield [163] AlternateDataStreams: C:\Users\MCFIVE\Downloads\В_МО_РФ_сообщили_об_уничтожении_сил_ВСУ_экипажами_Ка_52_и_Ми_28.mp4:shield [71] AlternateDataStreams: C:\Users\MCFIVE\Downloads\видос на 5.mp4:shield [71] AlternateDataStreams: C:\Users\MCFIVE\Documents\CB PIRATE MAROC.jpg:shield [92] AlternateDataStreams: C:\Users\MCFIVE\Documents\CICDocument_2024-11-25_162759.pdf:shield [103] AlternateDataStreams: C:\Users\MCFIVE\Documents\COLORANT E150 DANS LE COCA.mp4:shield [130] AlternateDataStreams: C:\Users\MCFIVE\Documents\cours de masturbation pour les enfants video2023-05-23_17-11-44.mp4:shield [142] AlternateDataStreams: C:\Users\MCFIVE\Documents\cours de masturbation pour les enfants vvideo_2023-05-24_19-45-48.mp4:shield [102] AlternateDataStreams: C:\Users\MCFIVE\Documents\eoyrtFCUyE.htm:shield [87] AlternateDataStreams: C:\Users\MCFIVE\Documents\Géant La grande Tartarie avec ses mystères cachés par la dernière grande réinitialisation 2024.mp4:shield [172] AlternateDataStreams: C:\Users\MCFIVE\Documents\httpst.meVeriteDiffusee20719 ssstik.io_1708404063893.mp4:shield [100] AlternateDataStreams: C:\Users\MCFIVE\Documents\Le Livre de la Honte.pdf:shield [174] AlternateDataStreams: C:\Users\MCFIVE\Documents\Loi «Pompidou-Giscard-Rothschild»–Rocard.mp4:shield [104] AlternateDataStreams: C:\Users\MCFIVE\Documents\LUNE WhatsApp Vidéo 2023-02-13 à 18.55.43.mp4:shield [120] AlternateDataStreams: C:\Users\MCFIVE\Documents\OperaSetup.exe:shield [325] AlternateDataStreams: C:\Users\MCFIVE\Documents\PASSEPOERT ALEX.pdf:shield [92] AlternateDataStreams: C:\Users\MCFIVE\Documents\Photo id alexis.jpg:shield [92] AlternateDataStreams: C:\Users\MCFIVE\Documents\P_Diddy TORTURES Hearing_VOSTFR.mp4:shield [99] AlternateDataStreams: C:\Users\MCFIVE\Documents\ROCK'n goal.jpg:shield [88] AlternateDataStreams: C:\Users\MCFIVE\Documents\VEOLIA facture.pdf:shield [91] AlternateDataStreams: C:\Users\MCFIVE\Documents\VEOLIA_2024-09-18_140911.pdf:shield [103] AlternateDataStreams: C:\Users\MCFIVE\Documents\video covid_micro reste ouvert 2024-10-01_08-14-21.mp4:shield [129] AlternateDataStreams: C:\Users\MCFIVE\Documents\video_2023-05-15_13-37-39.mp4:shield [102] AlternateDataStreams: C:\Users\MCFIVE\Documents\video_2024-06-05_00-59-44.mp4:shield [102] ==================== Mode sans échec (Avec liste blanche) ================== ==================== Association (Avec liste blanche) ================= ==================== Internet Explorer (Avec liste blanche) ============= URLSearchHook: [S-1-5-21-916869094-3403233507-1452638425-1011] ATTENTION => URLSearchHook par défaut est absent ==================== Hosts contenu: ========================= (Si nécessaire, la commande Hosts: peut être incluse dans le fichier fixlist.txt afin de réinitialiser le fichier hosts.) 2019-12-07 10:14 - 2025-03-07 19:18 - 000000863 _____ C:\windows\system32\drivers\etc\hosts 100.103.1.237 mcarmagnat-everest.nord 2021-03-17 19:48 - 2024-12-13 16:39 - 000000446 _____ C:\windows\system32\drivers\etc\hosts.ics ==================== Autres zones =========================== (Actuellement, il n'y a pas de correction automatique pour cette section.) HKU\S-1-5-21-916869094-3403233507-1452638425-1010\Control Panel\Desktop\\Wallpaper -> DNS Servers: 192.168.0.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Le Pare-feu est activé. Network Binding: ============= NordLynx: NordLynx Tunnel -> wireguard.sys Connexion au réseau local: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys Wi-Fi: Intel(R) Wireless-AC 9260 160MHz -> Netwtw08.sys Connexion réseau Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys Ethernet: Intel(R) Ethernet Controller (2) I225-V -> e2f68.sys NordLwf: NordVPN LightWeight Firewall ==================== MSCONFIG/TASK MANAGER éléments désactivés == ==================== RèglesPare-feu (Avec liste blanche) ================ (Si un élément est inclus dans le fichier fixlist.txt, il sera supprimé du Registre. Le fichier ne sera pas déplacé, sauf s'il est inscrit séparément.) FirewallRules: [TCP Query User{75C4AE4D-E4C7-42BC-9D85-9F7304A2F2A0}C:\users\mcfive\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\mcfive\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [UDP Query User{0A92B010-EC63-4C64-BD58-0DF6971C33B2}C:\users\mcfive\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\mcfive\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{9D0210A5-317A-4404-9CBC-C2A483FA1420}] => (Block) C:\users\mcfive\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [{045ABCF8-2104-44AF-8019-4D6E85025A17}] => (Block) C:\users\mcfive\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software) FirewallRules: [TCP Query User{30323A0F-556F-416D-B195-A5B45CF0FC57}C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe] => (Allow) C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS) FirewallRules: [UDP Query User{1ED879EE-C459-4B1D-BC3B-D5DEFC917C91}C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe] => (Allow) C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS) FirewallRules: [{B30D2C9A-A82F-4BB0-8AA1-B742E2E8A21D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{8FD20A49-76AE-413B-AC0D-C391A525CEB6}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [TCP Query User{8CBB1BD4-D9E1-4F44-91C5-A1593BC82EC5}C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe] => (Allow) C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS) FirewallRules: [UDP Query User{82F95E66-E235-4A34-B567-6DF46ABBA1C0}C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe] => (Allow) C:\users\mcfive\appdata\local\vivaldi\application\vivaldi.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS) FirewallRules: [{1C87E26F-3E85-444B-9139-4FB94B9BE611}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{6A4E4096-5BDF-4308-9A76-A3B51E787DBE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{C3F5346B-41C3-4C84-B7CF-1F1DEE467AAC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{7ED419C4-CBBB-445D-B3CB-05DA29CB6BE1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.102.3211.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{89EE0F23-7EF1-40CD-9842-1D8D18E05A0D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{62A9DC82-FF6F-46C6-91BF-3379B88012B8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{E6BCEF6C-E605-4598-AF48-8506D4B8BE81}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{4213CF82-AA06-4AE5-93C8-A2E3FDB8D03D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.103.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{88AB344B-2AD7-4DEC-8A94-1AAF9C0C753B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{27938D97-C6A2-4F53-BE3A-264F39D002E9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{BD275384-2E41-4F5D-B9FF-BA8F358F3E0E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{2E96BA74-052B-4238-87A7-FC97D834487C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.114.3214.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{F578C394-F5D1-4F37-95E4-E64F388D7F6F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{892114CF-E75E-4340-B3F3-93E56496A891}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{EBAA0694-8819-45F7-8108-A4B662E435F1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{611A3676-4141-41F7-83B2-64C60F237E47}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.119.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{972A7A81-8A42-4791-9B0F-BA60516741B8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{70FCE3A4-9BFF-4A75-9CF4-D05325E1AFD3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{C9224B73-4F70-4732-9580-936E2434E1DC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{5398D2F5-2A28-41F4-AE7E-D112B07384FD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.120.3207.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [TCP Query User{AC7DCB2E-AE53-48B2-ABDA-AA0AA6B3362E}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [UDP Query User{E3242F76-8888-470E-979A-821A547FF3DA}C:\program files\videolan\vlc\vlc.exe] => (Block) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN) FirewallRules: [{988D6562-3AAE-439E-85F2-0A9D8388B710}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.126.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{509AE728-B75D-4653-A98D-DC942B230DF1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.126.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{C2EE9902-3B27-4FB1-89BE-096BB8B61E25}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.126.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{C5F9C325-114A-4C93-9A7D-41C1888C61AC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.126.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{9CACE32D-8518-4C47-99EB-31FFD1616796}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.127.3200.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{3D361E2A-8E41-4E84-8492-B5B5B3F4A62E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.127.3200.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{9747C88B-3805-4ADC-9816-C047ABE1F358}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.127.3200.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [{5DFCCF07-4E71-43EF-BD42-21BA9FEBB423}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.127.3200.0_x64__kzf8qxf38zg5c\Skype\Skype.exe => Pas de fichier FirewallRules: [TCP Query User{626AA1E5-F776-4E3C-8D0C-EE3187EBF410}C:\users\mcfive\downloads\anydesk(1).exe] => (Block) C:\users\mcfive\downloads\anydesk(1).exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [UDP Query User{A2D8FFF7-5978-4129-B364-322D9522E71F}C:\users\mcfive\downloads\anydesk(1).exe] => (Block) C:\users\mcfive\downloads\anydesk(1).exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) FirewallRules: [TCP Query User{5AF073E8-5C5D-4E93-BAD7-3BD79F26B4D5}C:\users\mcfive\appdata\local\bravesoftware\brave-browser\application\brave.exe] => (Block) C:\users\mcfive\appdata\local\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.) FirewallRules: [UDP Query User{A14C8B48-8978-4DBF-A058-9E63C88B977C}C:\users\mcfive\appdata\local\bravesoftware\brave-browser\application\brave.exe] => (Block) C:\users\mcfive\appdata\local\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.) FirewallRules: [{3E79AF60-E80A-4C2B-9582-5C51AD37B0B8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.82\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{4461C1AE-0205-4A5E-B38E-1F2A70226C98}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) FirewallRules: [{0ADEA2C7-C087-46D6-93EB-065266B91A44}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\133.0.3065.92\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation) FirewallRules: [{11882F3B-4D7F-413F-99C2-DA7A4E74FBEA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F4C355EF-F002-466F-9A46-B47558969172}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CDAF3123-514F-41CF-9A6E-F02EA256D7FB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{8A3BD279-27CA-412D-9182-852B8E522EEA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{56B34EBB-1259-4741-B0A3-8AD89EFFA204}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5292DA1C-38AA-4BDF-AD69-94568F48041D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{831E513E-A490-4395-BCE5-D6EC0EBDFA00}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{0EB9D76E-EC6E-4211-91B4-6A70B476F4BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{CA94E817-8038-462C-97FC-87B935DD7C57}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{F288A106-DF88-4E23-931D-8A17E6577AB0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.258.498.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd) FirewallRules: [{5492AB15-1AD5-4146-B71D-5D9F81D93123}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{F06A36E2-DF22-4238-8E0A-03B4BE292842}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{C54C4CBF-4D26-4203-8BB2-AA4204988BA9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{EC8F943E-5075-4E38-A659-5C1D286A4DE2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{63F3C155-8B4F-4D8C-9432-BC26BD7C95EA}] => (Allow) C:\Program Files\NordVPN\nordvpn-service.exe (nordvpn s.a. -> NordVPN) FirewallRules: [{1D591B55-6A62-40F4-A913-0A407E237022}] => (Allow) C:\Program Files\NordVPN\nordvpn-service.exe (nordvpn s.a. -> NordVPN) FirewallRules: [{15773D3B-8AD4-4C8E-9AA2-8EB8C4B81A2F}] => (Allow) C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> NordVPN) FirewallRules: [{3616EB9D-4EC3-4079-8ADC-72C826AEDD5C}] => (Allow) C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> NordVPN) ==================== Points de restauration ========================= ATTENTION: La Restauration système est désactivée (Total:464.49 GB) (Free:208.74 GB) (45%) Vérifiez le service "VSS" ==================== Éléments en erreur du Gestionnaire de périphériques ============ ==================== Erreurs du Journal des événements: ======================== Erreurs Application: ================== Error: (03/07/2025 06:17:56 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GigabyteDownloadAssistant.exe, version : 1.0.0.46, horodatage : 0x5e79d1c4 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000000000003b699 ID du processus défaillant : 0x2684 Heure de début de l’application défaillante : 0x01db8f20484990e9 Chemin d’accès de l’application défaillante : C:\windows\system32\GigabyteDownloadAssistant.exe Chemin d’accès du module défaillant: C:\windows\System32\KERNELBASE.dll ID de rapport : 1743e4f2-ca0c-45b3-8678-8c138513197e Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (03/07/2025 06:17:56 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : GigabyteDownloadAssistant.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.UnauthorizedAccessException à System.IO.__Error.WinIOError(Int32, System.String) à System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean) à System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean, Boolean, Boolean) à System.IO.StreamWriter.CreateFile(System.String, Boolean, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding, Int32, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding) à System.IO.File.InternalAppendAllText(System.String, System.String, System.Text.Encoding) à GigabyteDownloadAssistant.Utilities.Log.AppLogFile.Write(System.String, System.Diagnostics.EventLogEntryType) à GigabyteDownloadAssistant.MainWindow..ctor() Informations sur l'exception : System.Windows.Markup.XamlParseException à System.Windows.Markup.XamlReader.RewrapException(System.Exception, System.Xaml.IXamlLineInfo, System.Uri) à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) à System.Windows.Application.DoStartup() à System.Windows.Application.<.ctor>b__1_0(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.DispatcherOperation.InvokeImpl() à MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) à MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object) à System.Windows.Threading.DispatcherOperation.Invoke() à System.Windows.Threading.Dispatcher.ProcessQueue() à System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) à MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) à MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) à System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) à System.Windows.Application.RunDispatcher(System.Object) à System.Windows.Application.RunInternal(System.Windows.Window) à GigabyteDownloadAssistant.App.Main() Error: (03/06/2025 01:53:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GigabyteDownloadAssistant.exe, version : 1.0.0.46, horodatage : 0x5e79d1c4 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000000000003b699 ID du processus défaillant : 0x6e54 Heure de début de l’application défaillante : 0x01db8e96c8f65ca0 Chemin d’accès de l’application défaillante : C:\windows\system32\GigabyteDownloadAssistant.exe Chemin d’accès du module défaillant: C:\windows\System32\KERNELBASE.dll ID de rapport : e9b895c9-1669-4bcd-a3f3-f24366615328 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (03/06/2025 01:53:41 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : GigabyteDownloadAssistant.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.UnauthorizedAccessException à System.IO.__Error.WinIOError(Int32, System.String) à System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean) à System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean, Boolean, Boolean) à System.IO.StreamWriter.CreateFile(System.String, Boolean, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding, Int32, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding) à System.IO.File.InternalAppendAllText(System.String, System.String, System.Text.Encoding) à GigabyteDownloadAssistant.Utilities.Log.AppLogFile.Write(System.String, System.Diagnostics.EventLogEntryType) à GigabyteDownloadAssistant.MainWindow..ctor() Informations sur l'exception : System.Windows.Markup.XamlParseException à System.Windows.Markup.XamlReader.RewrapException(System.Exception, System.Xaml.IXamlLineInfo, System.Uri) à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) à System.Windows.Application.DoStartup() à System.Windows.Application.<.ctor>b__1_0(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.DispatcherOperation.InvokeImpl() à MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) à MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object) à System.Windows.Threading.DispatcherOperation.Invoke() à System.Windows.Threading.Dispatcher.ProcessQueue() à System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) à MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) à MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) à System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) à System.Windows.Application.RunDispatcher(System.Object) à System.Windows.Application.RunInternal(System.Windows.Window) à GigabyteDownloadAssistant.App.Main() Error: (03/06/2025 07:40:54 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GigabyteDownloadAssistant.exe, version : 1.0.0.46, horodatage : 0x5e79d1c4 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000000000003b699 ID du processus défaillant : 0x74c4 Heure de début de l’application défaillante : 0x01db8e62b4ce1087 Chemin d’accès de l’application défaillante : C:\windows\system32\GigabyteDownloadAssistant.exe Chemin d’accès du module défaillant: C:\windows\System32\KERNELBASE.dll ID de rapport : 755a16d7-51b4-4470-93f3-160ff96ddb99 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (03/06/2025 07:40:54 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : GigabyteDownloadAssistant.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.UnauthorizedAccessException à System.IO.__Error.WinIOError(Int32, System.String) à System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean) à System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean, Boolean, Boolean) à System.IO.StreamWriter.CreateFile(System.String, Boolean, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding, Int32, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding) à System.IO.File.InternalAppendAllText(System.String, System.String, System.Text.Encoding) à GigabyteDownloadAssistant.Utilities.Log.AppLogFile.Write(System.String, System.Diagnostics.EventLogEntryType) à GigabyteDownloadAssistant.MainWindow..ctor() Informations sur l'exception : System.Windows.Markup.XamlParseException à System.Windows.Markup.XamlReader.RewrapException(System.Exception, System.Xaml.IXamlLineInfo, System.Uri) à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) à System.Windows.Application.DoStartup() à System.Windows.Application.<.ctor>b__1_0(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.DispatcherOperation.InvokeImpl() à MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) à MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object) à System.Windows.Threading.DispatcherOperation.Invoke() à System.Windows.Threading.Dispatcher.ProcessQueue() à System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) à MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) à MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) à System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) à System.Windows.Application.RunDispatcher(System.Object) à System.Windows.Application.RunInternal(System.Windows.Window) à GigabyteDownloadAssistant.App.Main() Error: (03/05/2025 11:31:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante GigabyteDownloadAssistant.exe, version : 1.0.0.46, horodatage : 0x5e79d1c4 Nom du module défaillant : KERNELBASE.dll, version : 10.0.19041.5486, horodatage : 0x09ce69c7 Code d’exception : 0xe0434352 Décalage d’erreur : 0x000000000003b699 ID du processus défaillant : 0x7f40 Heure de début de l’application défaillante : 0x01db8e1e6670210b Chemin d’accès de l’application défaillante : C:\windows\system32\GigabyteDownloadAssistant.exe Chemin d’accès du module défaillant: C:\windows\System32\KERNELBASE.dll ID de rapport : 926f84d9-414a-4c06-bb6e-1437f86aafb0 Nom complet du package défaillant : ID de l’application relative au package défaillant : Error: (03/05/2025 11:31:55 PM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application : GigabyteDownloadAssistant.exe Version du Framework : v4.0.30319 Description : le processus a été arrêté en raison d'une exception non gérée. Informations sur l'exception : System.UnauthorizedAccessException à System.IO.__Error.WinIOError(Int32, System.String) à System.IO.FileStream.Init(System.String, System.IO.FileMode, System.IO.FileAccess, Int32, Boolean, System.IO.FileShare, Int32, System.IO.FileOptions, SECURITY_ATTRIBUTES, System.String, Boolean, Boolean, Boolean) à System.IO.FileStream..ctor(System.String, System.IO.FileMode, System.IO.FileAccess, System.IO.FileShare, Int32, System.IO.FileOptions, System.String, Boolean, Boolean, Boolean) à System.IO.StreamWriter.CreateFile(System.String, Boolean, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding, Int32, Boolean) à System.IO.StreamWriter..ctor(System.String, Boolean, System.Text.Encoding) à System.IO.File.InternalAppendAllText(System.String, System.String, System.Text.Encoding) à GigabyteDownloadAssistant.Utilities.Log.AppLogFile.Write(System.String, System.Diagnostics.EventLogEntryType) à GigabyteDownloadAssistant.MainWindow..ctor() Informations sur l'exception : System.Windows.Markup.XamlParseException à System.Windows.Markup.XamlReader.RewrapException(System.Exception, System.Xaml.IXamlLineInfo, System.Uri) à System.Windows.Markup.WpfXamlLoader.Load(System.Xaml.XamlReader, System.Xaml.IXamlObjectWriterFactory, Boolean, System.Object, System.Xaml.XamlObjectWriterSettings, System.Uri) à System.Windows.Markup.WpfXamlLoader.LoadBaml(System.Xaml.XamlReader, Boolean, System.Object, System.Xaml.Permissions.XamlAccessLevel, System.Uri) à System.Windows.Markup.XamlReader.LoadBaml(System.IO.Stream, System.Windows.Markup.ParserContext, System.Object, Boolean) à System.Windows.Application.LoadBamlStreamWithSyncInfo(System.IO.Stream, System.Windows.Markup.ParserContext) à System.Windows.Application.DoStartup() à System.Windows.Application.<.ctor>b__1_0(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.DispatcherOperation.InvokeImpl() à MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object) à System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean) à System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object) à MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object) à System.Windows.Threading.DispatcherOperation.Invoke() à System.Windows.Threading.Dispatcher.ProcessQueue() à System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef) à MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object) à System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32) à System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate) à System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32) à MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr) à MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef) à System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame) à System.Windows.Application.RunDispatcher(System.Object) à System.Windows.Application.RunInternal(System.Windows.Window) à GigabyteDownloadAssistant.App.Main() Erreurs système: ============= Error: (03/07/2025 06:00:01 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT) Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931 Error: (03/07/2025 06:20:51 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT) Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931 Error: (03/07/2025 06:19:53 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Le service Service Broker du moniteur d'exécution System Guard s’est arrêté avec l’erreur : %%3489660935 Error: (03/07/2025 06:19:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service Service Google Update (gupdate) n’a pas pu démarrer en raison de l’erreur : Le service n’a pas répondu assez vite à la demande de lancement ou de contrôle. Error: (03/07/2025 06:19:53 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (120000 millisecondes) a été atteint lors de l’attente de la connexion du service Service Google Update (gupdate). Error: (03/07/2025 06:19:52 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: AUTORITE NT) Description: La mise à jour du démarrage sécurisé n’a pas pu mettre à jour une variable de démarrage sécurisé avec l'erreur (-2147020471 = Le démarrage sécurisé n’est pas activé sur cet ordinateur.). Pour plus d'informations, veuillez consulter https://go.microsoft.com/fwlink/?linkid=2169931 Error: (03/07/2025 06:18:25 AM) (Source: Tcpip) (EventID: 4207) (User: ) Description: L'interface TCP/IP IPv6 avec l'index 19 a échoué dans la liaison à son fournisseur. Error: (03/07/2025 06:18:25 AM) (Source: Tcpip) (EventID: 4207) (User: ) Description: L'interface TCP/IP IPv4 avec l'index 19 a échoué dans la liaison à son fournisseur. Windows Defender: ================ Date: 2025-03-05 15:11:03 Description: Antivirus Microsoft Defender scan has been stopped before completion. Scan Type: Logiciel anti-programme malveillant Scan Parameters: Analyse rapide Date: 2025-03-04 18:18:29 Description: Antivirus Microsoft Defender scan has been stopped before completion. Scan Type: Logiciel anti-programme malveillant Scan Parameters: Analyse rapide Date: 2025-03-03 19:54:18 Description: Antivirus Microsoft Defender scan has been stopped before completion. Scan Type: Logiciel anti-programme malveillant Scan Parameters: Analyse rapide Date: 2025-03-02 16:31:16 Description: Antivirus Microsoft Defender scan has been stopped before completion. Scan Type: Logiciel anti-programme malveillant Scan Parameters: Analyse rapide Date: 2025-02-28 21:17:32 Description: C:\Program Files\Mozilla Firefox\firefox.exe has been blocked from modifying %userprofile%\Documents by Controlled Folder Access. Detection time: 2025-02-28T20:17:32.815Z Path: %userprofile%\Documents Process Name: C:\Program Files\Mozilla Firefox\firefox.exe Security intelligence Version: 1.423.167.0 Engine Version: 1.1.25010.7 Product Version: 4.18.24090.11  CodeIntegrity: =============== Date: 2024-09-20 11:01:48 Description: Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume5\Windows\System32\drivers\ene.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}). Date: 2024-09-20 11:01:48 Description: The driver \Device\HarddiskVolume5\Windows\System32\drivers\ene.sys is blocked from loading as the driver has been revoked by Microsoft. ==================== Infos Mémoire =========================== BIOS: American Megatrends Inc. F3 05/27/2020 Carte mère: Gigabyte Technology Co., Ltd. B460 AORUS PRO AC Processeur: Intel(R) Core(TM) i7-10700F CPU @ 2.90GHz Pourcentage de mémoire utilisée: 19% Mémoire physique - RAM - totale: 32700.32 MB Mémoire physique - RAM - disponible: 26166.87 MB Mémoire virtuelle totale: 57276.32 MB Mémoire virtuelle disponible: 49236.1 MB ==================== Lecteurs ================================ Drive c: (Windows) (Fixed) (Total:464.49 GB) (Free:208.74 GB) (Model: KINGSTON SA2000M8500G) NTFS Drive e: () (Fixed) (Total:1863 GB) (Free:1850.37 GB) (Model: ST2000DM008-2FR102) NTFS \\?\Volume{954e7e79-f3de-41fc-a894-3ee1e4128ccf}\ (Recovery image) (Fixed) (Total:1 GB) (Free:0.41 GB) NTFS \\?\Volume{4016e326-30e5-40d5-9c06-1d274817aafc}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32 ==================== MBR & Table des partitions ==================== ==================== Fin de Addition.txt =======================