OTL Extras logfile created on: 24/04/2013 18:35:43 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Knails\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16540) Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy 2,75 Gb Total Physical Memory | 0,81 Gb Available Physical Memory | 29,32% Memory free 5,49 Gb Paging File | 3,03 Gb Available in Paging File | 55,20% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 285,99 Gb Total Space | 100,31 Gb Free Space | 35,07% Space Free | Partition Type: NTFS Computer Name: KNAILS-PC | User Name: Knails | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0C48CA64-1E48-482A-BB10-F855550F6C9C}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{0D64B24C-86C2-422D-A128-8E566B978E84}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{1678B619-C727-473E-90D8-4F01722F0472}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{20F3CFF1-6AF0-42A5-82C6-0C7356A3AD69}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{21575C3B-184B-4749-AE7D-4062786A9E4B}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{2CEAD5F1-DFC6-4723-B769-D5E93DDB4147}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{4B39A16E-4953-4EA6-B169-5E0AE5EA740A}" = lport=2869 | protocol=6 | dir=in | app=system | "{4FF2D4AF-1FA7-48C5-8544-9D764F82C49A}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=svchost.exe | "{5B21BC56-D58C-4AFA-A61F-ACAF5DDA455A}" = lport=2869 | protocol=6 | dir=in | app=system | "{6E9D20DD-5781-46DB-AC56-B4794376F660}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{74084096-B142-4F66-BDBB-3A2EDCC3FABE}" = rport=10243 | protocol=6 | dir=out | app=system | "{75E2A27D-64DE-4A12-8091-4CBFDD9C912F}" = rport=445 | protocol=6 | dir=out | app=system | "{77016988-E57B-4618-926F-F88A7D892F55}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8352584D-2B46-4135-A89D-C6CC07F5F077}" = lport=137 | protocol=17 | dir=in | app=system | "{88773EB4-3ED3-45A8-B0D9-07D8A56FD978}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{8C8630EE-B3BF-4FCD-9A8C-1EC2682B87D0}" = rport=138 | protocol=17 | dir=out | app=system | "{8C9F52FE-0873-48E0-9452-7A6C4C145B15}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{90ACD3B7-DE9B-430C-BA82-98539ABF42DA}" = lport=445 | protocol=6 | dir=in | app=system | "{967BDAC3-22BC-4B2F-AC68-0AB7B2C0859A}" = lport=138 | protocol=17 | dir=in | app=system | "{9748B953-76F7-4D8A-9162-DC521D09ACB2}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{AB702587-C439-4336-B520-B4CF08886514}" = rport=139 | protocol=6 | dir=out | app=system | "{C6D4F299-1C39-4CC0-9F95-910112D70C95}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{D2E20CC8-675C-463E-9B17-B9932C39F67C}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D42B7E4C-752F-4597-80B8-64CF620D2A31}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D54B65D3-7330-4AB9-BBE3-B037DFFF34E5}" = lport=139 | protocol=6 | dir=in | app=system | "{DB896ED6-8D98-4225-A90F-BD5AB1AB969D}" = lport=10243 | protocol=6 | dir=in | app=system | "{E7F7F32F-7604-404E-9C93-C63B8B12B262}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{00696254-D9D7-488C-8320-5FF3D9EC8C7D}" = protocol=17 | dir=in | app=c:\program files (x86)\sports interactive\football manager 2011\fm.exe | "{0BB08C16-4650-4DEE-A15D-D8C504A5FBB9}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe | "{0C50ABE5-E4A2-4605-8F67-67D1E2CA6A95}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{0DB78033-9BB5-4A04-A555-C928151D889B}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{0EC7564A-CEEB-437F-91FD-12FE366D4D9A}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{0FC6DF9B-5C7F-43A6-93AE-1FC28356AA25}" = protocol=6 | dir=in | app=c:\program files (x86)\sports interactive\football manager 2011\fm.exe | "{2A76E33B-B4B9-438A-B5F1-CB3957826334}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\schedulersvc.exe | "{2F46C915-2B87-479A-93A2-83A69281BD0A}" = protocol=6 | dir=in | app=c:\program files (x86)\veetle\player\veetlenet.exe | "{3706BA4E-393F-4CF5-8B99-B76B097A7228}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{37DEB0DE-7C01-4935-9642-91BA1730E0CC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3AC23BA3-6EE4-4601-A219-D0504CD77235}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{3BDD1A89-BD51-40A6-A548-8CDFFB3D8374}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{3C82E14B-0CF1-4E0C-AECE-B4D4D92873AE}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{41C71AB4-F03F-4A8E-B652-EA330C82A091}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{440497F3-4B39-4957-9FDC-8E729518D45E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{46835C66-7A42-4F2A-A88A-B65D6BCD7116}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{4EAC31B0-123B-4E16-BFD0-7894464DC84E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{544ED5E4-D2FA-4E1B-8FB4-6B0A9EA90A7E}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{59D6A50C-8972-4BB5-9645-BE294031A113}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{5ED79CF9-BF48-4BB5-8946-B5DE78B3AB5E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6590E016-C87B-43C5-A640-590F6B46C6CB}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{665F8743-CB5B-4F67-ABD6-C16E7A20BEFD}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{67CE7BBD-3193-4A6A-AADE-19AE8B84F445}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{6C25B07D-E557-4331-B22F-8795BD4EF8FD}" = protocol=6 | dir=in | app=c:\program files (x86)\searchqu toolbar\datamngr\toolbar\dtuser.exe | "{70DC3E37-A874-4EED-AF4C-6D1B1E28FB65}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{73AC7A63-5065-4034-BE12-31DB02610EED}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{79DD3F8C-A32F-4473-B205-11755DC1B536}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{7B5EBFFE-11F1-4F29-847E-4A1A01BA67A4}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{7C84CBD6-98D5-47F6-ACFE-D027FBDA5175}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{7F7ED81A-5920-426F-936A-260F620AF0DA}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office12\onenote.exe | "{80337809-AFFB-458C-B278-C4D63C4BA4E1}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "{880BABA7-E440-4C34-BCDF-601E9201910C}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{8F81A340-B94C-488D-8215-2E08D5704663}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{993C9829-02C8-473F-A218-29FEEE25BCCA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A097C352-D1B6-4C55-AD19-7F98D173992E}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A26890E2-A8C7-45E4-BE4B-90F6A8033378}" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{A61C5F31-9A57-4A72-9DDF-38A36EA72B10}" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminator.exe | "{AA6A8637-D5E1-4785-9495-6DC81A76F29F}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{C6422163-F0B1-47BB-8EA2-5076876E580C}" = protocol=6 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe | "{C648C662-77F4-423F-A0E0-B5926E7C1F67}" = dir=in | app=c:\program files (x86)\windows live\sync\windowslivesync.exe | "{D3086AD8-0300-407E-8ED6-9B1DD6B59CA4}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{D45103A4-FA77-4D9A-8AB7-13E3963C1717}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer_service.exe | "{D484810D-38B4-4F2C-A3C0-BE9194C3B017}" = protocol=6 | dir=out | app=system | "{DB9E0CBB-3B01-414F-BCBC-80AB7B3FD200}" = dir=in | app=c:\program files (x86)\iminent\iminent.messengers.exe | "{DD8625E5-BE42-4B2C-A244-D8A06E764E89}" = protocol=17 | dir=in | app=c:\program files (x86)\searchqu toolbar\datamngr\toolbar\dtuser.exe | "{E6BB1B24-0DDE-4169-9E00-CA5A02A765CC}" = dir=in | app=c:\program files (x86)\iminent\iminent.exe | "{E78C5987-F61B-4AB0-A963-D0CDA7E25AA1}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{EC22C26D-06B0-4082-9B8B-2F69387E6C2B}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version7\teamviewer.exe | "{ECF42770-6828-4B40-A9D0-C228E037A846}" = protocol=17 | dir=in | app=c:\program files (x86)\newtech infosystems\nti backup now 5\backupsvc.exe | "{F1415BAA-8EF5-4595-9F47-93E9EB538A81}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{FFAAFD39-6E1A-4EE2-9A27-0F65FC7A97CB}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "TCP Query User{18016D61-18CA-42A9-AA4C-EF0EF4D9C560}C:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe" = protocol=6 | dir=in | app=c:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe | "TCP Query User{226991A8-8A0B-41DD-8963-2E18EDD633DC}C:\users\knails\desktop\sas\sas 9.1\spawner.exe" = protocol=6 | dir=in | app=c:\users\knails\desktop\sas\sas 9.1\spawner.exe | "TCP Query User{3BA434F2-6325-4046-8333-3112778976B8}C:\users\knails\desktop\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\users\knails\desktop\tmnationsforever\tmforever.exe | "TCP Query User{4C88403E-59BC-40E6-B794-FF361EF15FBC}C:\program files (x86)\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "TCP Query User{560829B5-E33B-41AB-B8A6-E4802D6F7BEE}E:\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=e:\tmnationsforever\tmforever.exe | "TCP Query User{892A28CF-7EF7-437B-868B-987E5C8B7552}C:\program files (x86)\limewire\limewire.exe" = protocol=6 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | "TCP Query User{93F0413D-7AB9-497A-948A-6C5997BF1BAB}C:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe" = protocol=6 | dir=in | app=c:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe | "TCP Query User{ADB09216-FD91-4304-9D52-12B5DBAEF78F}C:\users\knails\desktop\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\users\knails\desktop\tmnationsforever\tmforever.exe | "TCP Query User{B6255515-D5EF-4AF3-A9B0-4AB6268FD2F1}C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe" = protocol=6 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "TCP Query User{CD99C791-903F-4A43-8B0E-6C6E6C088364}C:\program files (x86)\mirc\mirc.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "TCP Query User{E31CAC26-E087-4395-BE97-E765D4A9EA71}C:\program files (x86)\iminent\imbooster\imbooster.exe" = protocol=6 | dir=in | app=c:\program files (x86)\iminent\imbooster\imbooster.exe | "UDP Query User{049EB229-89FC-4789-B709-2B1FE60CF3D2}C:\users\knails\desktop\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\users\knails\desktop\tmnationsforever\tmforever.exe | "UDP Query User{1577F22A-68F0-400F-8F14-F7CC59F17C94}C:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe" = protocol=17 | dir=in | app=c:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe | "UDP Query User{4E0D3233-D5D0-4461-A230-5F2EBB3B30D0}E:\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=e:\tmnationsforever\tmforever.exe | "UDP Query User{768BAADE-4C15-417C-A8AD-E1E76B19424C}C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe" = protocol=17 | dir=in | app=c:\program files (x86)\spyware terminator\spywareterminatorupdate.exe | "UDP Query User{8FD2FCFB-B97E-4CA5-8468-EF7600E3FBC3}C:\program files (x86)\iminent\imbooster\imbooster.exe" = protocol=17 | dir=in | app=c:\program files (x86)\iminent\imbooster\imbooster.exe | "UDP Query User{A0030227-850D-4B11-9DA3-04E87A306616}C:\program files (x86)\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "UDP Query User{ACB4D562-5F9C-4B0A-847C-B6CFFB192737}C:\program files (x86)\limewire\limewire.exe" = protocol=17 | dir=in | app=c:\program files (x86)\limewire\limewire.exe | "UDP Query User{CA08C63E-1723-4491-BDEF-33C59C0BE671}C:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe" = protocol=17 | dir=in | app=c:\users\knails\desktop\spyware terminator\spywareterminatorupdate.exe | "UDP Query User{EF70D31E-BE98-4BDB-A90E-5DE35D31E566}C:\users\knails\desktop\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\users\knails\desktop\tmnationsforever\tmforever.exe | "UDP Query User{F0EAA09B-AEB6-450F-BD92-59289D909D54}C:\program files (x86)\mirc\mirc.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mirc\mirc.exe | "UDP Query User{FE615899-4EB7-43F8-B1CD-7B84D24CCCFA}C:\users\knails\desktop\sas\sas 9.1\spawner.exe" = protocol=17 | dir=in | app=c:\users\knails\desktop\sas\sas 9.1\spawner.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{027E5FAB-1476-4C59-AAB4-32EF28520399}" = Windows Live Language Selector "{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64) "{0D3F8B55-8FA8-449B-7346-56C3ADC3142A}" = ccc-utility64 "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG3100_series" = Canon MG3100 series MP Drivers "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{350AA351-21FA-3270-8B7A-835434E766AD}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 "{44FEBA86-D067-06F1-F757-B25388B75193}" = ATI Catalyst Install Manager "{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}" = Microsoft .NET Framework 4 Client Profile FRA Language Pack "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8338783A-0968-3B85-AFC7-BAAE0A63DC50}" = Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{90120000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2007 "{90120000-002A-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (English) 2007 "{90120000-002A-040C-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (French) 2007 "{90120000-0116-0409-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9EA4DD88-7F1B-4085-955D-C469A7099DB3}" = Node.js "{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1" = PDF-Viewer "{A39AE3AE-9808-39D2-AB7B-FF5F0335095E}" = Microsoft .NET Framework 4 Extended FRA Language Pack "{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}" = Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 "{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64) "{B6E3757B-5E77-3915-866A-CCFC4B8D194C}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{E18EAB08-852A-4C00-AFA6-39F35E716BB9}" = Nitro PDF Reader 2 "{EE936C7A-EA40-31D5-9B65-8E3E089C3828}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x64 9.0.30729.4148 "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Client Profile FRA "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Extended FRA "SAMSUNG USB Mobile Device" = SAMSUNG USB Mobile Device Software "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{0214A441-A4AB-43A8-8DEF-2F73C5364673}" = Microsoft Works "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack "{078979DD-66FF-959F-A5B6-B1D7F6320745}" = CCC Help Portuguese "{078A8C00-412A-45C2-8A44-49DD736D3318}_is1" = Objectif Tarot 4 "{083C4FD4-067E-4ABF-2A73-A3B8F00BBF7B}" = CCC Help Korean "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0BC37DE4-25DA-423A-11D4-847BB417CA52}" = CCC Help Chinese Traditional "{0BCC9771-828D-431D-E231-1E4DA226FB40}" = CCC Help Polish "{118D6CE9-5F18-42F9-958A-14676A629FDE}" = Iminent "{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now Standard "{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}" = BrowserProtect "{18455581-E099-4BA8-BC6B-F34B2F06600C}" = Google Toolbar for Internet Explorer "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{2318C2B1-4965-11d4-9B18-009027A5CD4F}" = Google Toolbar for Internet Explorer "{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "{26A24AE4-039D-4CA4-87B4-2F83216018FF}" = Java(TM) 6 Update 18 "{27C72889-599F-0A6E-53BF-C4753F12FDDE}" = CCC Help Turkish "{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com "{28E82311-8616-11E1-BEB0-B8AC6F97B88E}" = Google Earth "{2ADE2157-7A5E-122C-B51D-EB8A01B15943}" = DeepBurner v1.9.0.228 "{30B41B7A-3C9D-44DE-A7A1-949011F33CC3}" = PDF Architect "{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver "{31298826-074C-E85A-7193-17FE295B1CB4}" = Catalyst Control Center InstallProxy "{31D611A1-03B5-4018-BC6F-DDB5B5616478}_is1" = eMachines GameZone Console "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live "{34A0FF07-F11A-4157-84A3-92F8AD688CBF}" = Vodafone Mobile Broadband via the phone "{39BFD171-B593-94EE-A24F-E76C00068828}" = CCC Help Dutch "{3B9A92DA-6374-4872-B646-253F18624D5F}" = Windows Live Writer "{3DB0448D-AD82-4923-B305-D001E521A964}" = eMachines Power Management "{3E0D0742-45BF-4438-8CE2-1AAADE878DBD}" = Vodafone Mobile Broadband via the phone "{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4A38C722-30A9-6319-B84D-EC121CE4E99B}" = CCC Help Chinese Standard "{56736259-613E-4A3B-B428-6235F2E76F44}_is1" = Spyware Terminator 2012 "{5BF68530-76F5-429A-B8FB-CDD2B8D13289}" = IMBooster4Web "{5E21B617-F52E-BB10-92F9-C8AB2C799A8A}" = Adobe Download Assistant "{5E705C6F-7163-9FAC-E599-79769775BED0}" = CCC Help Greek "{62687B11-58B5-4A18-9BC3-9DF4CE03F194}" = Windows Live Writer Resources "{64804F29-8AA2-2FF6-1A54-DAAA0FDC0DC9}" = CCC Help Finnish "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6C5F8503-55D2-4398-858C-362B7A7AF51C}" = Firebird SQL Server - MAGIX Edition "{6CE0A58B-DA52-8FB2-C255-794813218282}" = Catalyst Control Center Graphics Full Existing "{6CFCC49A-EBED-749B-C99A-D87D7B2DFFA9}" = CCC Help Danish "{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{76810709-A7D3-468D-9167-A1780C1E766C}" = Windows Live FolderShare "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7BE15435-2D3E-4B58-867F-9C75BED0208C}" = QuickTime "{7BF68B83-5057-4D4B-0093-28285EEB9EE3}" = Harry Potter II "{7F811A54-5A09-4579-90E1-C93498E230D9}" = eMachines Recovery Management "{822055A6-3C63-4954-9C7F-E401BEBD52D7}" = MAGIX Vidéo deluxe MX Plus Version à télécharger "{82809116-D1EE-443C-AE31-F19E709DDF7A}" = AMD USB Filter Driver "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110209593}" = Chicken Invaders 2 "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-110551697}" = Granny In Paradise "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112662477}" = Merriam Websters Spell Jam "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11273477}" = Amazonia "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-112920767}" = Alice Greenfingers "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113786380}" = Heroes of Hellas "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115053100}" = Dairy Dash "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-115208410}" = First Class Flurry "{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-11531173}" = Farm Frenzy 2 "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{8B999A44-8314-493B-877E-A1DA5B54D9B8}" = Catalyst Control Center - Branding "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E10F391-997D-1AA1-E256-EA1721AA1FA9}" = CCC Help Italian "{90120000-0015-040C-0000-0000000FF1CE}" = Microsoft Office Access MUI (French) 2007 "{90120000-0015-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007 "{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2007 "{90120000-0016-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0017-040C-0000-0000000FF1CE}" = Microsoft Office SharePoint Designer MUI (French) 2007 "{90120000-0017-040C-0000-0000000FF1CE}_OMUI.fr-fr_{879D8136-C3A7-4A13-A8F4-309467087372}" = Microsoft Office SharePoint Designer 2007 Service Pack 3 (SP3) "{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007 "{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2007 "{90120000-0018-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0019-040C-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (French) 2007 "{90120000-0019-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001A-040C-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (French) 2007 "{90120000-001A-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007 "{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2007 "{90120000-001B-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2007 "{90120000-001F-0401-0000-0000000FF1CE}_OMUI.fr-fr_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2007 "{90120000-001F-0407-0000-0000000FF1CE}_OMUI.fr-fr_{928D7B99-2BEA-49F9-83B8-20FA57860643}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007 "{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0409-0000-0000000FF1CE}_OMUI.fr-fr_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007 "{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-040C-0000-0000000FF1CE}_OMUI.fr-fr_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2007 "{90120000-001F-0413-0000-0000000FF1CE}_OMUI.fr-fr_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007 "{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-001F-0C0A-0000-0000000FF1CE}_OMUI.fr-fr_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) "{90120000-0020-040C-0000-0000000FF1CE}" = Module de compatibilité pour Microsoft Office System 2007 "{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002A-040C-1000-0000000FF1CE}_OMUI.fr-fr_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007 "{90120000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2007 "{90120000-0044-040C-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (French) 2007 "{90120000-0044-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007 "{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2007 "{90120000-006E-040C-0000-0000000FF1CE}_OMUI.fr-fr_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007 "{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00A1-040C-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (French) 2007 "{90120000-00A1-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-00BA-040C-0000-0000000FF1CE}" = Microsoft Office Groove MUI (French) 2007 "{90120000-00BA-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0100-040C-0000-0000000FF1CE}" = Microsoft Office O MUI (French) 2007 "{90120000-0100-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0101-040C-0000-0000000FF1CE}" = Microsoft Office X MUI (French) 2007 "{90120000-0101-040C-0000-0000000FF1CE}_OMUI.fr-fr_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007 "{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{90120000-0116-0409-1000-0000000FF1CE}_HOMESTUDENTR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3) "{9028040C-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Professional avec FrontPage "{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007 "{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3) "{91A26B0A-9185-4F3B-3361-E1F0CC3234B2}" = Catalyst Control Center Localization All "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95120000-00AF-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (French) "{96282E21-99B9-8009-2508-9BC91BA92E17}" = CCC Help English "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{97B3824E-B2D2-4C49-A860-BCA56F10B040}" = OpenOffice.org 3.2 "{9937E55B-6331-4804-93EF-77E992F204BD}" = Webplayer "{99799EBC-1A17-18CA-85B8-9ED05996FB77}" = CCC Help Japanese "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9BDCAB7E-6350-EF0B-E631-617FF1F03617}" = CCC Help French "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}" = Windows Live Mail "{A0087DDE-69D0-11E2-AD57-43CA6188709B}" = Adobe AIR "{A137D52E-FA96-4815-85F5-E7B8F66837DB}" = Race Driver 3 "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A77255C4-AFCB-44A3-BF0F-2091A71FFD9E}" = Video Web Camera "{A7FC0026-B0D5-F858-A751-47147FAF3EA0}" = CCC Help Thai "{A83279FD-CA4B-4206-9535-90974DE76654}" = Apple Application Support "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger "{AC76BA86-1033-FFFF-7760-000000000006}" = Adobe Acrobat XI Pro "{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.1 MUI "{AD5E481C-B8DA-8E0D-09EC-788C8CB43934}" = Catalyst Control Center Graphics Full New "{AE03B427-F9F5-7222-061D-F637DFC762DE}" = CCC Help Hungarian "{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call "{B73AE5A2-3996-18BE-8A26-3351D3A82A52}" = CCC Help German "{B922CE77-D167-F6DB-D1A3-27320809CCEA}" = Winamax Poker "{BBD80A22-43DA-E54F-E119-26EA6C6028F7}" = CCC Help Norwegian "{C0BCA6DF-438D-6EE0-E7E8-1BC30D372E45}" = ccc-core-static "{C32EE986-EBF6-7CC1-2B62-9D643AB85A64}" = CCC Help Spanish "{C433CD2B-B9C6-B4F4-4169-52DF40B8F1D3}" = Catalyst Control Center Graphics Light "{C5B73CC3-5F22-4FDC-A22E-3DADCC456671}" = MAGIX Speed burnR (MSI) "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{CF9E6971-FCAB-E64D-F76D-EED1DF868631}" = CCC Help Swedish "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D1444425-2292-43D0-99E0-1DFD29AB7E88}" = MAGIX Screenshare "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{D7D50E0C-27DD-4999-BC05-E026B580F93A}" = Electronic Arts Product Registration "{D894938C-8EE1-4854-9254-8F9AEF2BFE46}" = SpeedMaxPc "{DBD53C08-3BFD-2680-100A-6664F21015E6}" = CCC Help Czech "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E0B19DF7-B1C7-4937-82C4-0E4B1E346965}" = eBay Worldwide "{E2A6B1A0-C1E3-4311-BF86-EAF18841FD67}" = CANAL+ pour Windows Media Center "{E4BEC5A4-7851-B0A2-F5E2-88924950F481}" = Catalyst Control Center Core Implementation "{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}" = Microsoft Office Suite Activation Assistant "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger "{EA69DAE1-1BC2-48ED-AB9A-24A5C8AC8071}" = Boxore Client "{ec4b6105-e039-42fb-8e18-c8aa393f0018}_is1" = VshareComplete "{EE171732-BEB4-4576-887D-CB62727F01CA}" = eMachines Updater "{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.10 "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FD11E520-80B5-31C4-3CAF-704ECEEA0141}" = CCC Help Russian "{FE4A88C8-A551-4657-8756-E113E3FAEE1D}" = Four Winds Mah Jong 2.01 "Adobe AIR" = Adobe AIR "AdobeESD" = Adobe Download Manager 1.2 (Supprimer uniquement) "Audacity 1.3 Beta (Unicode)_is1" = Audacity 1.3.14 (Unicode) "Avira AntiVir Desktop" = Avira Free Antivirus "Canon MG3100 series On-screen Manual" = Canon MG3100 series On-screen Manual "Canon_IJ_Network_Scanner_Selector_EX" = Canon IJ Network Scanner Selector EX "Canon_IJ_Network_UTILITY" = Canon IJ Network Tool "CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program "CanonMyPrinter" = Canon My Printer "CanonSolutionMenuEX" = Canon Solution Menu EX "com.adobe.downloadassistant.AdobeDownloadAssistant" = Adobe Download Assistant "DAEMON Tools Lite" = DAEMON Tools Lite "Dailymotion Video Downloader_is1" = Dailymotion Video Downloader 3.31 "delta" = Delta toolbar "Delta Chrome Toolbar" = Delta Chrome Toolbar "Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX "Easy-WebPrint EX" = Canon Easy-WebPrint EX "eMachines Registration" = eMachines Registration "eMachines Screensaver" = eMachines ScreenSaver "eMachines Welcome Center" = Welcome Center "eMahjongClient" = eMahjong (uninstall only) "Enregistrement utilisateur de Canon MG3100 series" = Enregistrement utilisateur de Canon MG3100 series "Free Mp3 Wma Converter_is1" = Free Mp3 Wma Converter V 2.2 "Free PDF to Word Converter_is1" = Free PDF to Word Converter 2.0 "HOMESTUDENTR" = Microsoft Office Home and Student 2007 "Identity Card" = Identity Card "IMBoosterARP" = Iminent "Inkscape" = Inkscape 0.48.2 "InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}" = NTI Backup Now 5 "InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}" = NTI Media Maker 8 "InstallShield_{D7D50E0C-27DD-4999-BC05-E026B580F93A}" = Electronic Arts Product Registration "KaraFun_is1" = KaraFun 1.18 "LimeWire" = LimeWire 5.5.16 "LManager" = Launch Manager "MAGIX_MSI_Videodeluxe18_plus" = MAGIX Vidéo deluxe MX Plus Version à télécharger "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300 "McAfee Security Scan" = McAfee Security Scan Plus "mIRC" = mIRC "Mozilla Firefox 13.0.1 (x86 fr)" = Mozilla Firefox 13.0.1 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "MP Navigator EX 5.0" = Canon MP Navigator EX 5.0 "Notepad++" = Notepad++ "OMUI.fr-fr" = Microsoft Office Language Pack 2007 - French/Français "Philcarto" = Philcarto5.01 "PokerStars" = PokerStars "Searchqu Toolbar" = Searchqu Toolbar "Services x86" = Services x86 "TeamViewer 7" = TeamViewer 7 "Tom's_Guide_France Toolbar" = Tom's Guide France Toolbar "TVAnts 1.0" = TVAnts 1.0 "uTorrent" = µTorrent "Veetle TV" = Veetle TV "vShare.tv plugin" = vShare.tv plugin 1.3 "wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1" = Winamax Poker "WinGimp-2.0_is1" = GIMP 2.6.8 "WinLiveSuite" = Windows Live "WinRAR archiver" = WinRAR 4.01 (32-bit) "Xvid_is1" = Xvid 1.2.1 final uninstall [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome "PhotoFiltre" = PhotoFiltre [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 14/04/2013 07:49:06 | Computer Name = Knails-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante taskeng.exe, version : 6.1.7601.17514, horodatage : 0x4ce79d2c Nom du module défaillant : ntdll.dll, version : 6.1.7601.17725, horodatage : 0x4ec4aa8e Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000009970a ID du processus défaillant : 0x18bc Heure de début de l’application défaillante : 0x01ce39060d9b0bb1 Chemin d’accès de l’application défaillante : C:\Windows\system32\taskeng.exe Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : 4efa5bd6-a4f9-11e2-b37b-705ab6010635 Error - 14/04/2013 08:28:55 | Computer Name = Knails-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante LogonUI.exe, version : 6.1.7601.17514, horodatage : 0x4ce79f70 Nom du module défaillant : ntdll.dll, version : 6.1.7601.17725, horodatage : 0x4ec4aa8e Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000009970a ID du processus défaillant : 0x1a1c Heure de début de l’application défaillante : 0x01ce390b9fe8b14c Chemin d’accès de l’application défaillante : C:\Windows\system32\LogonUI.exe Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : df23e0eb-a4fe-11e2-b37b-705ab6010635 Error - 15/04/2013 14:30:08 | Computer Name = Knails-PC | Source = SideBySide | ID = 16842832 Description = La création du contexte d’activation a échoué pour « C:\Users\Knails\Downloads\SoftonicDownloader_pour_pdf-xchange-viewer.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Composant 2 : C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error - 15/04/2013 14:30:11 | Computer Name = Knails-PC | Source = SideBySide | ID = 16842832 Description = La création du contexte d’activation a échoué pour « C:\Users\Knails\Downloads\SoftonicDownloader_pour_pdf-xchange-viewer.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Composant 2 : C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error - 15/04/2013 14:30:15 | Computer Name = Knails-PC | Source = SideBySide | ID = 16842832 Description = La création du contexte d’activation a échoué pour « C:\Users\Knails\Downloads\SoftonicDownloader_pour_pdf-xchange-viewer.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Composant 2 : C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error - 15/04/2013 14:32:52 | Computer Name = Knails-PC | Source = SideBySide | ID = 16842832 Description = La création du contexte d’activation a échoué pour « C:\Users\Knails\Downloads\SoftonicDownloader_pour_pdf-xchange-viewer.exe ». Erreur dans le fichier de manifeste ou de stratégie «  » à la ligne . Une version de composant nécessaire à l’application est en conflit avec une autre version de composant déjà active. Les composants en conflit sont : Composant 1 : C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Composant 2 : C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Error - 16/04/2013 15:29:24 | Computer Name = Knails-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante jaucheck.exe, version : 2.0.1.2, horodatage : 0x4b4b883c Nom du module défaillant : jaucheck.exe, version : 2.0.1.2, horodatage : 0x4b4b883c Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000c8d0 ID du processus défaillant : 0x1f8c Heure de début de l’application défaillante : 0x01ce3ad8af0306a0 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Common Files\Java\Java Update\jaucheck.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Common Files\Java\Java Update\jaucheck.exe ID de rapport : f184e207-a6cb-11e2-87ef-705ab6010635 Error - 18/04/2013 14:48:14 | Computer Name = Knails-PC | Source = MsiInstaller | ID = 11730 Description = Error - 20/04/2013 09:48:03 | Computer Name = Knails-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante CNSEUPDT.EXE, version : 1.3.5.0, horodatage : 0x4e3a32f0 Nom du module défaillant : CNMDWLD.DLL, version : 1.0.0.0, horodatage : 0x4cad61a4 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000024c0 ID du processus défaillant : 0x10d4 Heure de début de l’application défaillante : 0x01ce3dcd9b1910a5 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Canon\Solution Menu EX\CNSEUPDT.EXE Chemin d’accès du module défaillant: C:\Program Files (x86)\Canon\Solution Menu EX\CNMDWLD.DLL ID de rapport : eb78ee07-a9c0-11e2-8cb6-705ab6010635 Error - 23/04/2013 15:29:39 | Computer Name = Knails-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante jaucheck.exe, version : 2.0.1.2, horodatage : 0x4b4b883c Nom du module défaillant : jaucheck.exe, version : 2.0.1.2, horodatage : 0x4b4b883c Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000c8d0 ID du processus défaillant : 0x1394 Heure de début de l’application défaillante : 0x01ce4058d8aca0b0 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Common Files\Java\Java Update\jaucheck.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Common Files\Java\Java Update\jaucheck.exe ID de rapport : 2348bb07-ac4c-11e2-a233-705ab6010635 [ Media Center Events ] Error - 27/03/2011 10:33:39 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 16:33:39 - Erreur de connexion à Internet. 16:33:39 - Impossible de contacter le service.. Error - 27/03/2011 10:33:53 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 16:33:45 - Erreur de connexion à Internet. 16:33:45 - Impossible de contacter le service.. Error - 27/03/2011 11:33:58 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 17:33:58 - Erreur de connexion à Internet. 17:33:58 - Impossible de contacter le service.. Error - 27/03/2011 11:34:06 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 17:34:03 - Erreur de connexion à Internet. 17:34:03 - Impossible de contacter le service.. Error - 29/03/2011 08:22:15 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 14:22:14 - Erreur de connexion à Internet. 14:22:14 - Impossible de contacter le service.. Error - 29/03/2011 08:22:26 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 14:22:20 - Erreur de connexion à Internet. 14:22:20 - Impossible de contacter le service.. Error - 29/03/2011 13:52:47 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 19:52:47 - Erreur de connexion à Internet. 19:52:47 - Impossible de contacter le service.. Error - 29/03/2011 13:53:44 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 19:53:33 - Erreur de connexion à Internet. 19:53:33 - Impossible de contacter le service.. Error - 07/04/2011 03:05:18 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 09:05:17 - Erreur de connexion à Internet. 09:05:18 - Impossible de contacter le service.. Error - 07/04/2011 03:07:02 | Computer Name = Knails-PC | Source = MCUpdate | ID = 0 Description = 09:05:26 - Erreur de connexion à Internet. 09:05:26 - Impossible de contacter le service.. [ OSession Events ] Error - 28/04/2010 16:39:58 | Computer Name = Knails-PC | Source = Microsoft Office 12 Sessions | ID = 7001 Description = ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6524.5003, Microsoft Office Version: 12.0.6425.1000. This session lasted 74 seconds with 0 seconds of active time. This session ended with a crash. [ System Events ] Error - 22/04/2013 12:46:24 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7000 Description = Le service Software Update Service (supdate) n’a pas pu démarrer en raison de l’erreur : %%2 Error - 23/04/2013 12:39:56 | Computer Name = Knails-PC | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 23/04/2013 12:40:39 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7000 Description = Le service Software Update Service (supdate) n’a pas pu démarrer en raison de l’erreur : %%2 Error - 23/04/2013 12:44:16 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7009 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Microsoft .NET Framework NGEN v4.0.30319_X86. Error - 23/04/2013 18:16:37 | Computer Name = Knails-PC | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 23/04/2013 18:17:48 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7000 Description = Le service Software Update Service (supdate) n’a pas pu démarrer en raison de l’erreur : %%2 Error - 24/04/2013 12:25:33 | Computer Name = Knails-PC | Source = atikmdag | ID = 52236 Description = CPLIB :: General - Invalid Parameter Error - 24/04/2013 12:26:16 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7000 Description = Le service Software Update Service (supdate) n’a pas pu démarrer en raison de l’erreur : %%2 Error - 24/04/2013 12:29:43 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7009 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Microsoft .NET Framework NGEN v4.0.30319_X86. Error - 24/04/2013 17:41:36 | Computer Name = Knails-PC | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service TeamViewer7. < End of report >