OTL Extras logfile created on: 17/02/2014 00:11:13 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Pierre\Desktop 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16798) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 7,89 Gb Total Physical Memory | 5,42 Gb Available Physical Memory | 68,68% Memory free 15,89 Gb Paging File | 13,31 Gb Available in Paging File | 83,75% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 185,55 Gb Total Space | 17,91 Gb Free Space | 9,65% Space Free | Partition Type: NTFS Drive D: | 398,18 Gb Total Space | 237,09 Gb Free Space | 59,54% Space Free | Partition Type: NTFS Drive E: | 7,36 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Drive F: | 15,01 Gb Total Space | 12,41 Gb Free Space | 82,68% Space Free | Partition Type: FAT32 Computer Name: DOUDOU | User Name: Pierre | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2666817930-2948367399-2140584844-1002\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [Create slideshow with PhotoStage Slideshow Producer] -- "C:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe" "%L" Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [Create slideshow with PhotoStage Slideshow Producer] -- "C:\Program Files (x86)\NCH Software\PhotoStage\photostage.exe" "%L" Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0364C571-0D4A-4412-97D5-71A2EF8B5887}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{137B7142-2971-4197-988C-6B0EEA832931}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\outlook.exe | "{2038DD65-1F62-4748-9646-13DEB2D265B8}" = rport=138 | protocol=17 | dir=out | app=system | "{28920FE7-734E-4212-9BE1-04FBDA417B34}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{32B091F6-7D0E-4DCC-8CED-30F270F42061}" = rport=445 | protocol=6 | dir=out | app=system | "{439EC150-2D66-4F86-A6C6-C1B165EFB568}" = lport=139 | protocol=6 | dir=in | app=system | "{4BBEC1A0-6B38-46CA-AF9C-47FC238BB8CB}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5CF60E70-636D-420E-B5AB-CB2E3FACE87E}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.exe | "{639B9B1D-4D7E-457B-B019-13AB6E12E7F5}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{71A7ECFE-C48B-4266-B087-8FF3D0B08915}" = lport=10243 | protocol=6 | dir=in | app=system | "{76D9C3A9-0A93-4D0C-B0B7-5A96001CCAC0}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\remotecrashsender.exe | "{913AB1DB-4CA3-4B14-8031-162BE72E7AC1}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{99CB6C4A-794C-48E6-8E39-5E0CC1E90610}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A3C70662-E038-47BA-818A-537A3C008ED9}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\launcher.exe | "{A6A54011-23BA-41EE-88CD-59BF67580CA6}" = lport=2869 | protocol=6 | dir=in | app=system | "{A7A8FCB3-B3BF-4EB1-A914-C6353F6BB8EC}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{B5D20A3E-ABE3-497E-A45E-59F61F672E99}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{BECC6BBD-F29C-412C-970F-41590B9C1CBF}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{BEF3A0D5-AE95-42B2-86B0-3A4048811079}" = lport=137 | protocol=17 | dir=in | app=system | "{BF0428B4-EE09-42A9-A32F-D4C77EBB796F}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C883E169-FD0E-4C69-9641-3088A17E0931}" = rport=10243 | protocol=6 | dir=out | app=system | "{DA0D0406-56B9-4129-8F43-AF12230EA10D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{DC62F2CD-EEE1-4E04-9945-F6E264F82D8D}" = rport=80 | protocol=6 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe | "{E94E6ED9-A6B9-474B-A342-EB4F8224792A}" = lport=445 | protocol=6 | dir=in | app=system | "{F2107FF7-B42A-45FA-B228-0FFD4458D827}" = rport=139 | protocol=6 | dir=out | app=system | "{FB204D11-E670-4E34-A2B8-E7B6A1FEE8AA}" = lport=138 | protocol=17 | dir=in | app=system | "{FBBFF9D8-7F63-4EDA-9E27-6AFE868A0D45}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{FC4B08EB-185B-4403-8D13-3CB7B3F49700}" = rport=137 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{019B23A1-594A-466E-BABE-F01ECA8D6694}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpoews01.exe | "{02F64D64-C686-4714-A658-6DCD890BB3F2}" = dir=out | name=fresh paint | "{067C5B1F-46CC-4E07-B881-FD475101E936}" = dir=out | name=@{microsoft.bingtravel_1.2.0.145_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{09CC2306-9DFB-4A92-9F62-02D5B7DDCF3B}" = protocol=6 | dir=in | app=d:\studio 16\programs\rm.exe | "{0B763B3E-701F-443F-B71F-A5C244D899E4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{0B9EAFA1-03C0-4020-A5F9-977EB56B4A52}" = protocol=17 | dir=in | app=d:\studio 16\programs\rm.exe | "{0DFDF505-55F3-486D-B6B1-B67BACBCCBB0}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{0F1482DB-A4E9-4A74-9CBB-F8EFB7F443A5}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{1087B67F-4394-4C11-B474-AE2648C5A44A}" = protocol=17 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.exe | "{10E9A06F-DE62-4A0B-AA64-FC58E26DFCE6}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{10F85C54-595A-4F28-B97D-1B55F6B8E463}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\rm.exe | "{1298B287-60D4-4734-A6DC-209412EB52AB}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\videospin.exe | "{14A796F0-3246-45A4-958A-49D433E2B8F2}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgplgtupl.exe | "{1592AD8E-62D0-4E69-8840-E5EF7E14026A}" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{15E7C222-C5ED-4A65-BC3A-2ACDDB0B7CE7}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgm.exe | "{18731963-FC21-41C1-9D2E-403075960FFE}" = dir=in | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{191D272F-9603-4C0F-B2EF-C28E08D2393E}" = protocol=17 | dir=in | app=c:\users\pierre\appdata\roaming\utorrent\utorrent.exe | "{1AC112AC-12D7-4690-8935-41ECAEFFDA96}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.exe | "{1D5E455D-E23C-43AA-A149-27567CF7C9B2}" = dir=out | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{1E956B73-7FA5-4495-8624-1AF3B028B4BD}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{1F816121-9FBA-49E0-9D7A-3B022FD5E58F}" = dir=out | name=@{microsoft.bingfinance_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{213F1613-7B2E-46E2-8D7A-C1DC043C59E8}" = protocol=6 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{21679018-5519-44E3-AD5D-B43F4678A6B7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{223EB65F-D84F-4F8B-B522-720E7718E2D6}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{22B99A42-66EF-447B-A2B9-1E28EAFF3FA5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{243BE524-A446-4CCF-B5A5-B4F540C9D8BE}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{244A38D5-2463-4865-B1DD-1A0AA3D760A5}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{25C21E62-0B22-4D09-94B7-26F69BECD855}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{287694D2-2B75-43F6-A82E-D457E0A1446C}" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{2880E817-5438-4940-A855-31771F5AC104}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{2939F721-0976-48EF-AB47-1DACFD2B2DEB}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{2FE6B448-2D28-4840-93D9-6A27C0D20C75}" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{3145762A-0ED1-46B2-8476-0488E0B596F5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\launcher.exe | "{3320296B-E81F-4AB4-A88D-47C2AC11E07E}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{342DF81B-1D8A-435D-BDEC-6BD1228A2723}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{3599C1E5-B4A4-4663-85C0-4402D29B606E}" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{38C8AD9C-3661-4B8E-AED6-39B29838099F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{3A7C3944-7709-49E9-ABAB-FB90C419BBED}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{3B9068F3-0916-44A6-9D1B-B0B684719F4C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe | "{3C36591D-60CF-45CC-A8A6-66B646C3D247}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{3C5344A4-3555-4D23-9867-563F267A6ECB}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{3D44DED1-6715-44A4-8A59-90F91C352113}" = protocol=6 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{413566B9-E462-417D-9796-AEB2255FCD09}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{415C78D7-A86A-4106-AD02-63BBC1CF160C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | "{42780B9A-608F-4611-B06D-E2442F631CA7}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | "{476B62EF-3DD6-49D9-986F-3F92B2867554}" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\nmservice.exe | "{4BB21A31-42ED-4797-BBC7-ACC1BD4D39F6}" = protocol=17 | dir=in | app=c:\program files (x86)\battle.net\battle.net.exe | "{4DC70E58-C265-4A18-B3D9-816F44236598}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\groove.exe | "{501A88F7-233D-401B-B909-10E2C62767D2}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{505AEB77-AA7F-4A09-AC1B-A670DEB8B26C}" = dir=in | name=@{microsoft.bing_1.2.0.137_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{51E4DD3D-A95E-4364-9F95-89055599BFA8}" = protocol=6 | dir=out | app=system | "{51E96802-15D2-405C-9BF3-37956401D320}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{52368E29-CC09-48C6-9479-397CFA78AE46}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{558B69B3-EB64-423D-976A-56F10E3E451A}" = dir=in | name=skype | "{562271D8-9644-44BC-BC64-2B5F221BE3F4}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{563CD544-3A71-4DB9-8384-B5675D5BE5A2}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{595B946C-18E2-4C81-87D8-A5B183DDFBCD}" = protocol=17 | dir=in | app=d:\studio 16\programs\umi.exe | "{5C8635A7-8C93-4A63-A8D2-06DEB85FB270}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxs08.exe | "{5DD64576-1453-46E1-873F-0CDAF81806D4}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{5E82F2D4-A3F4-4C4A-8A0A-6C6641877B5E}" = protocol=6 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\umi.exe | "{5EC97580-5566-4FC0-94E7-F7D1D9456BB6}" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{617FB5DA-FEC3-4BC9-9DBA-816A23C48C09}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{67F960FF-ED50-418B-A53A-055731BD6827}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{6A0FCEEB-3842-4611-86B7-97EAC75A8764}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6DAF5723-18F2-49F3-8DB0-43A4EE02DCED}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{6E055359-C57B-4097-B015-9C551BD5E87B}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{6E9F4A42-3217-4731-8C5A-232AEC59CB38}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{6F636FB1-F666-4A0B-9EF1-22828A86E4B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | "{6FA24E28-5863-4ADF-9230-EC117BDBB7CC}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpofxm08.exe | "{74DCBAAE-4FC7-4CD6-8B5D-51D74A384574}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpfccopy.exe | "{797CB292-2AD9-49EC-8C72-0E4AA7D581EA}" = dir=out | name=@{microsoft.bingsports_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{7B892E13-EAFE-4D06-8EBD-49ED3CC532AE}" = dir=out | name=@{microsoft.bingmaps_1.2.0.136_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{7C82CD30-6D26-44C3-A80F-DBF8B7DE1735}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\rm.exe | "{7D923118-1134-4469-9E5E-D8526636A635}" = dir=out | name=@{microsoft.zunemusic_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{7EA434AF-4245-4374-B682-7B165D3E3D3E}" = dir=out | name=@{microsoft.bingweather_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{7F942488-B86A-4166-993E-3166F1EC9D0A}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqgpc01.exe | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{83227EDB-D939-4723-A8EC-8B98A80C5122}" = dir=out | name=@{microsoft.reader_6.2.8516.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{839D6282-6F98-4FD4-95F5-905948E62980}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{83E287D5-2BE2-4719-B0E3-23F1AE3AE8DB}" = dir=out | name=@{microsoft.zunevideo_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{85C5350B-6CD4-4763-B474-45750C8B8FE5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{884303C8-1EFB-4FC8-A72A-ED6646989810}" = protocol=17 | dir=in | app=c:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe | "{891AD798-4171-45A8-80CD-6E538E533466}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe | "{892AEE0D-11E7-4C7F-9010-50D9A51D538F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqnrs08.exe | "{8A43329D-64AB-44B4-B76E-01AF5CBEF26C}" = protocol=6 | dir=in | app=c:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe | "{8BCC8DC2-EC54-4868-8C80-15C780146346}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposfx08.exe | "{8C423F29-0406-4323-9E32-28FD23F4A488}" = protocol=17 | dir=in | app=c:\programdata\nexoneu\ngm\ngm.exe | "{8E7A0E96-B2FF-4479-A717-77727064FDD7}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{8EC4C6E7-3073-4DB3-8324-E679211C1851}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpzwiz01.exe | "{92AC8757-6BA7-46EE-81A6-11265FDF30BA}" = dir=out | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{9604F3C1-2884-4F8C-8223-06A9F2B68490}" = dir=in | app=c:\program files (x86)\hp\hp software update\hpwucli.exe | "{96B00E37-D5C1-4C03-B159-61C9A71EC04C}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\left 4 dead 2\left4dead2.exe | "{982C74D3-CE74-4742-975B-78FF73BDC320}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\umi.exe | "{9DD1B992-D2BF-4012-B976-49CE5168A124}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{A0BEB4B6-6138-4E07-BE57-BFE0E95B8169}" = dir=out | name=windows_ie_ac_001 | "{A0EEC1EE-12A1-4786-BC32-209698B64915}" = protocol=6 | dir=in | app=c:\users\pierre\appdata\roaming\utorrent\utorrent.exe | "{A0F4FADB-E735-4131-9EF6-BBD21F352EE2}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{A60C517B-B392-4EBC-ABF4-3BCFAB10AACD}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{A67A8DC2-C272-4CDA-BFC1-B14A34A6D5D4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A83849FE-C2AE-439E-B899-DE04CA290643}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{A9CAB326-83B5-4301-B96D-6B364677BC8E}" = dir=out | name=adera | "{ACEB8834-FC99-46AC-857D-CFD50DB168D0}" = dir=out | name=@{microsoft.xboxlivegames_1.0.927.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{AEC3689C-4B19-4B9E-A08D-B8956E87DA67}" = dir=in | app=c:\program files\intel corporation\intel widi\widiapp.exe | "{B2DA4DDB-D2D3-4FBD-BD47-FF4EF6EEC480}" = dir=in | name=@{microsoft.windowsphotos_16.4.4204.712_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{B31DA305-BCB2-4EC5-8B81-B76E34A12AA0}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{B3C06BB8-0CF6-475D-8FF1-90242E4F97C1}" = protocol=17 | dir=in | app=d:\studio 16\programs\ngstudio.exe | "{B43490C0-CD7A-4558-9886-46BC9DF11838}" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\office14\onenote.exe | "{B6A3AC25-5AF2-4556-8CA2-DF05A9268038}" = dir=out | name=taptiles | "{B76DD27D-5D95-4FCC-9E8D-CC1E3A1C7C41}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | "{BB7BC607-8AAC-436E-983C-9EA5054FFB97}" = protocol=6 | dir=in | app=d:\studio 16\programs\umi.exe | "{C13F78EA-E091-424A-B9FB-0D49A8835FA2}" = dir=out | name=@{microsoft.bingnews_1.2.0.135_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{C703D8E1-BC1A-45D4-96A1-B04CECB17A6B}" = protocol=17 | dir=in | app=c:\program files (x86)\pinnacle\videospin\programs\videospin.exe | "{C725A3A4-E579-49F6-B926-F76D3F0FAB80}" = protocol=17 | dir=out | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe | "{C7F51B7A-D6F6-4783-A2C2-72EE0F0962C2}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | "{CBD69AAC-6B6E-4D1E-8F85-84AE83547E27}" = protocol=17 | dir=in | app=c:\program files (x86)\epsonnet\epsonnet setup\tool10\eneasyapp.exe | "{CD4F7676-891B-44F3-91F7-8053B6EF59FF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{CDB8831C-97B3-4602-9B06-6E478FDF37E8}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqkygrp.exe | "{CDDB1509-1A81-4DF5-B6E1-ABDC9E60B338}" = protocol=6 | dir=in | app=d:\studio 16\programs\ngstudio.exe | "{CE3831E7-FF6B-4061-B4AB-C160BB6FA5CD}" = dir=out | name=wordament | "{CFE7C50F-955E-4657-908B-C22A89E6F410}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D0874BB4-6EFD-4A31-BCBD-D6FDC6D152FE}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2638\agent.exe | "{D0B769C6-985F-415B-BA87-F4452E529279}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqusgh.exe | "{D0F9CCB1-6415-4007-A01E-1A3F6CA315C9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\tools\launcher.exe | "{D2D4CE5C-7201-4E54-B9EE-B1C70FCA3A50}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | "{D4B657B3-FB45-413E-B17A-A45002F0034B}" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "{D7E89D3A-4AAD-4931-B64D-66A149FE6386}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{D9589461-D54E-4BFC-B803-40DC33E539CD}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{D9DDED46-2783-4F0D-BBCA-1C32E077DA1E}" = dir=out | name=skype | "{DE02B2D7-56A4-4668-8E9F-849CEFCF6CFC}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2680\agent.exe | "{DEBC8DC4-389E-45FA-8596-F14FADD2D03F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hposid01.exe | "{DFB28DF0-B2E6-454E-91DC-E25E21E6CCA6}" = dir=out | name=microsoft solitaire collection | "{E1B05C92-EF83-42E6-8D19-F1241555C74F}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqcopy2.exe | "{E2EEAD43-0748-42F6-AB6F-8BAA525FD7FC}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{E690CAEC-A705-4310-BCF2-F8EC727CBC42}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqfxt08.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E858854E-E85E-46A4-937B-69193A3A21E8}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4206.722_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{EE125F1B-DB2E-4FAB-BEAD-C8B9D5601991}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqste08.exe | "{EFF2FEDD-5A0D-4FD8-B22E-7CDA7FCAC8A9}" = protocol=6 | dir=in | app=c:\program files (x86)\epsonnet\epsonnet setup\tool10\eneasyapp.exe | "{F0F5E41F-4384-4921-8959-D35A6B76BD8C}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe | "{F30FC695-DD64-45C5-A1AA-8E9B6C75F9CB}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{FC5CB64C-9FEB-416E-8064-21610FC329B7}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2581\agent.exe | "{FDA3DDB1-DB9D-4E60-99FE-E258AEEC5EAD}" = dir=in | app=c:\program files (x86)\hp\digital imaging\bin\hpiscnapp.exe | "TCP Query User{0082228B-78AE-48D0-8F48-72C26478AD3C}C:\users\pierre\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\pierre\appdata\roaming\spotify\spotify.exe | "TCP Query User{0925F4CC-5233-4393-B45B-100E0B094BD1}C:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe | "TCP Query User{0FCF5784-81F1-46A0-B678-3F94C2B4E91B}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "TCP Query User{1F0B4435-B77E-4EF2-8F6D-DF624AFD32CE}C:\users\pierre\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\pierre\appdata\roaming\spotify\spotify.exe | "TCP Query User{1FBDAC4C-0DCF-4280-B7E3-6CEE79C32AAC}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe | "TCP Query User{2354EF7A-6E54-4E38-92F7-0FAE1953397E}C:\program files\comicrack\comicrack.exe" = protocol=6 | dir=in | app=c:\program files\comicrack\comicrack.exe | "TCP Query User{533F2F55-E36A-4AC1-A3AE-7C3A23C68FC9}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "TCP Query User{59B51AA3-04A1-48A9-ADB8-0AC55056FEC1}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "TCP Query User{64F5D251-ADC4-4502-8273-C6D7C2383AE5}C:\nexon\combat arms eu\engine.exe" = protocol=6 | dir=in | app=c:\nexon\combat arms eu\engine.exe | "TCP Query User{6D8E5308-DAE1-4A19-9D56-BE1CB34C95EB}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "TCP Query User{72E9C8B7-7762-44C2-A2C6-1311866B0034}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "TCP Query User{93DB46BB-839D-4A79-9959-BCDA8083BADA}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe | "TCP Query User{946650C4-BB77-4B35-A417-59E79038FDB3}C:\program files (x86)\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "TCP Query User{988655DB-0ECF-49DD-82FD-F36138D1AF7B}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=6 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "TCP Query User{A60AF11F-F346-4750-8186-77CFB0D834C3}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=6 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "TCP Query User{BEC4BB71-B67B-4AF9-8D2C-A7C3231A3BA3}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=6 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "TCP Query User{DAC9472C-D143-4291-AA2D-A0414276303E}C:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{DB1EDAA9-E49E-4EA7-AA3E-FF61E770A764}C:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=6 | dir=in | app=c:\program files (x86)\tmnationsforever\tmforever.exe | "TCP Query User{E32F8545-4D0D-4599-B817-645EAB962E68}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" = protocol=6 | dir=in | app=c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe | "UDP Query User{01652C12-26D5-4551-80D2-60DAA2DE1926}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe | "UDP Query User{08F6B794-B7C9-4035-A103-9E0CAA168879}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "UDP Query User{1235E292-C7E3-48FA-A82E-2A661970D0FA}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "UDP Query User{13CBDA6F-A957-4099-9221-F24F17DD6573}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "UDP Query User{1DEEDED9-44B7-401C-80A7-8A193A911A56}C:\program files (x86)\epson software\event manager\eeventmanager.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epson software\event manager\eeventmanager.exe | "UDP Query User{244E655A-CC80-4506-8F0F-C7E89C57CACB}C:\users\pierre\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\pierre\appdata\roaming\spotify\spotify.exe | "UDP Query User{2D1EEC5A-8C52-4542-8B1A-63F20219150F}C:\wamp\bin\apache\apache2.4.4\bin\httpd.exe" = protocol=17 | dir=in | app=c:\wamp\bin\apache\apache2.4.4\bin\httpd.exe | "UDP Query User{39CB20C0-8D1A-4607-BFA3-896C0C03F062}C:\program files (x86)\tmnationsforever\tmforever.exe" = protocol=17 | dir=in | app=c:\program files (x86)\tmnationsforever\tmforever.exe | "UDP Query User{3B02346C-D05F-4C4B-94F9-A4C435BD78B9}C:\program files (x86)\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "UDP Query User{3D7D41EA-E44B-41B1-B0AC-10D242B3E50C}C:\program files\comicrack\comicrack.exe" = protocol=17 | dir=in | app=c:\program files\comicrack\comicrack.exe | "UDP Query User{47C5715C-6E45-4F38-8B60-C5687D12BEF0}C:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\pierre\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{7FDECED5-1046-40FC-89AD-C5AF8A3B7437}C:\users\pierre\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\pierre\appdata\roaming\spotify\spotify.exe | "UDP Query User{87F21397-6CC2-46CD-BC48-CFA410A3B781}C:\program files (x86)\hearthstone\hearthstone.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hearthstone\hearthstone.exe | "UDP Query User{89A730DE-A113-4017-8152-C8862578EA4C}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "UDP Query User{8F289FA9-98B7-4C12-BEDF-F4743C310CEE}C:\program files (x86)\electronic arts\eadm\core.exe" = protocol=17 | dir=in | app=c:\program files (x86)\electronic arts\eadm\core.exe | "UDP Query User{8F7FDB91-AF64-42F1-99F1-13B31A324656}C:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe" = protocol=17 | dir=in | app=c:\nexon\nexon_eu_downloader\nexon_eu_downloader_engine.exe | "UDP Query User{D5E7BF34-4329-4760-AB0F-49A9582D9E2C}C:\program files (x86)\lolreplay\lolreplay.exe" = protocol=17 | dir=in | app=c:\program files (x86)\lolreplay\lolreplay.exe | "UDP Query User{F4123D2D-5534-40C2-9306-96F68F19945C}C:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\warframe\warframe.x64.exe | "UDP Query User{F7B81167-11D6-4628-B142-C3521676CB90}C:\nexon\combat arms eu\engine.exe" = protocol=17 | dir=in | app=c:\nexon\combat arms eu\engine.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1334eac7-d6ef-4177-8780-05c963853cd3}" = Intel(R) PRO/Wireless Driver "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support "{4F6C1178-3FC0-44BB-8F9A-28D8516DFEE2}" = HP Photosmart All-In-One Driver Software "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}" = Network64 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{7854AA22-A2F0-4F29-A2E9-D0C5A2B685E7}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology "{89478C31-5CE8-461A-9084-9A0AF059F84F}" = Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed "{90140000-002A-0000-1000-0000000FF1CE}" = Microsoft Office Office 64-bit Components 2010 "{90140000-002A-040C-1000-0000000FF1CE}" = Microsoft Office Shared 64-bit MUI (French) 2010 "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{B0664A11-EF49-45BF-B805-66FC7E1E7B5D}" = Intel(R) WiDi "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panneau de configuration NVIDIA 306.97 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Pilote graphique 306.97 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX System Software 9.12.0613 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.10.8 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{C2B8CBDE-5232-11E3-B494-F04DA23A5C58}" = MSVCRT Redists "{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}" = iTunes "{D61F48DA-627B-404E-9315-32A651B18B64}" = Intel® PROSet/Wireless WiFi Software "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "{FF21C3E6-97FD-474F-9518-8DCBE94C2854}" = 64 Bit HP CIO Components Installer "C01F56FBD9B141017E63E2A1A141E59934D4DC67" = Package de pilotes Windows - ASUS (ATP) Mouse (10/29/2012 1.0.0.148) "ComicRack" = ComicRack v0.9.162 "EPSON SX525WD Series" = EPSON SX525WD Series Printer Uninstall "GIMP-2_is1" = GIMP 2.8.2 "HP Imaging Device Functions" = HP Imaging Device Functions 14.0 "HP Solution Center & Imaging Support Tools" = HP Solution Center 14.0 "HPOCR" = OCR Software by I.R.I.S. 14.0 "McAfee Security Scan" = McAfee Security Scan Plus "OpenVPN" = OpenVPN 2.3.2-I003 "TAP-Windows" = TAP-Windows 9.9.2 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator "{03B8AA32-F23C-4178-B8E6-09ECD07EAA47}" = Epson Event Manager "{03D562B5-C4E2-4846-A920-33178788BE00}" = Windows Live Communications Platform "{06A1D88C-E102-4527-AF70-29FFD7AF215A}" = Scan "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{0F929651-F516-4956-90F2-FFBD2CD5D30E}" = Photo Gallery "{0FD2B9C6-DB91-48EA-9518-AB5B68CA1E28}" = Movie Maker "{0FF9CC94-EF23-401E-BDBD-37403D1A2B38}" = Windows Live SOXE Definitions "{104066F4-5897-4067-85D3-4C88B67CCF75}" = AIO_Scan "{119A44B5-6237-4D56-8424-5DAE70ED3F4E}" = Windows Live UX Platform Language Pack "{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}" = DeviceDiscovery "{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}" = HPProductAssistant "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{289AC7E0-0AEE-4a7b-913C-709D9803D23E}" = Nexon Game Manager "{292F0F52-B62D-4E71-921B-89A682402201}" = Toolbox "{39F58DDB-B2B8-4B86-AF20-4706A80EB30D}" = Epson Easy Photo Print 2 "{3C3D696B-0DB7-3C6D-A356-3DB8CE541918}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 "{3E31400D-274E-4647-916C-2CACC3741799}" = EpsonNet Print "{45898170-E68C-4F02-AA35-C2186BF347A3}" = Movie Maker "{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support "{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}" = Google Earth "{4D3286A6-F6AB-498A-82A4-E4F040529F3D}" = ASUS Smart Gesture "{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.11 "{56D4499E-AC3E-4B8D-91C9-C700C148C44B}" = Google Drive "{58172D66-2F69-4215-9AEC-ED8196023736}" = ASUS Tutor "{5A0EE0F0-E909-4F3B-B437-AAD9252427CB}" = Windows Live Installer "{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}" = Status "{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader "{5F189DF5-2D05-472B-9091-84D9848AE48B}{e9f32388}" = GS Supporter 1.80 "{64467D47-FFE4-4FBC-ABBA-A0DB829A17EB}" = NVIDIA PhysX "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6B6923B9-8719-425B-916C-CD2908F31AAF}" = Windows Live SOXE "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{749F674B-2674-47E8-879C-5626A06B2A91}" = ASUS InstantOn "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}" = OpenOffice.org 3.4.1 "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8EE94FD8-5F52-4463-A340-185D16328158}" = WebReg "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{90140000-0015-040C-0000-0000000FF1CE}" = Microsoft Office Access MUI (French) 2010 "{90140000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2010 "{90140000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2010 "{90140000-0019-040C-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (French) 2010 "{90140000-001A-040C-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (French) 2010 "{90140000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2010 "{90140000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2010 "{90140000-0044-040C-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (French) 2010 "{90140000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2010 "{90140000-00A1-040C-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (French) 2010 "{90140000-00BA-040C-0000-0000000FF1CE}" = Microsoft Office Groove MUI (French) 2010 "{91140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends "{9294F169-72EE-4D74-AE92-CA25F64B4FF8}" = Fax "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9B362566-EC1B-4700-BB9C-EC661BDE2175}" = DocProc "{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}" = Copy "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A0087DDE-69D0-11E2-AD57-43CA6188709B}" = Adobe AIR "{A52DB080-D445-49EB-90D2-03B9CD794511}" = Photo Common "{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-7AD7-1036-7B44-AB0000000001}" = Adobe Reader XI (11.0.06) - Français "{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}" = HP Update "{B2D55EB8-32C5-4B43-9006-9E97DECBA178}" = Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) "{BB285C9F-C821-4770-8970-56C4AB52C87E}" = Skype Click to Call "{BB3447F6-9553-4AA9-960E-0DB5310C5779}" = GPBaseService2 "{BC5DD87B-0143-4D14-AAE6-97109614DC6B}" = SolutionCenter "{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}" = Destinations "{C6B0EE9E-2128-4448-B7AE-5E2B46E0F0E7}" = Windows Live Photo Common "{c9967fbd-e3c3-4ed0-992a-5b33260f2944}" = Logiciel Intel® PROSet/Wireless "{C9D8A041-2963-4B31-8FFC-1500F3DB9293}" = EpsonNet Setup 3.3 "{CAE4213F-F797-439D-BD9E-79B71D115BE3}" = HPPhotoGadget "{CBB55719-C875-4C5A-A0B6-2473F77DD164}" = AIO_CDA_Software "{CD31E63D-47FD-491C-8117-CF201D0AFAB5}" = TrayApp "{DE7D8CF9-9C52-4BE0-B3E0-D4F116C524A8}" = Windows Live "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E3445598-4424-4EE2-B71C-C23325F7FB71}" = Windows Live PIMT Platform "{E3E71D07-CD27-46CB-8448-16D4FB29AA13}" = Microsoft WSE 3.0 Runtime "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F0E58739-2B4C-498F-9B0D-FF0F2FD52B61}" = Windows Live UX Platform "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F4D99A13-F63A-4FC1-8799-CFFDB78DDFB3}" = Galerie de photos "{FA0FF682-CC70-4C57-93CD-E276F3E7537E}" = BufferChm "{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "Asus Vibe2.0" = AsusVibe2.0 "ASUS WebStorage" = ASUS WebStorage Sync Agent "Audacity_is1" = Audacity 2.0.3 "Battle.net" = Battle.net "Combat Arms EU" = Combat Arms EU "EPSON Scanner" = EPSON Scan "EPSON SX525WD Series Manual" = EPSON SX525WD Series Manuel "EPSON SX525WD Series Network Guide" = Guide réseau pour EPSON SX525WD Series "FileZilla Client" = FileZilla Client 3.7.3 "Freemake Video Downloader_is1" = Freemake Video Downloader "Google Chrome" = Google Chrome "Hearthstone" = Hearthstone "La boite a couleurs_is1" = La boite a couleurs version 1.6.15 "Mozilla Firefox 25.0 (x86 fr)" = Mozilla Firefox 25.0 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "Notepad++" = Notepad++ "Office14.PROPLUSR" = Microsoft Office Professionnel Plus 2010 "OpenVPN" = OpenVPN 2.3.2-I003 "S-129586235" = WS.Enabler "Steam" = Steam "Steam App 230410" = Warframe "Steam App 550" = Left 4 Dead 2 "TmNationsForever_is1" = TmNationsForever "TuxGuitar_0" = TuxGuitar 1.2 "VLC media player" = VLC media player 2.0.5 "WinLiveSuite" = Windows Live "WinRAR archiver" = WinRAR 4.20 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2666817930-2948367399-2140584844-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "PhotoFiltre" = PhotoFiltre "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 27/07/2013 12:19:33 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 15766 Error - 27/07/2013 12:19:35 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 27/07/2013 12:19:35 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 16938 Error - 27/07/2013 12:19:35 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 16938 Error - 27/07/2013 12:19:36 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 27/07/2013 12:19:36 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 18188 Error - 27/07/2013 12:19:36 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 18188 Error - 27/07/2013 12:20:32 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 27/07/2013 12:20:32 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 58469 Error - 27/07/2013 12:20:32 | Computer Name = Doudou | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 58469 [ System Events ] Error - 16/10/2013 22:17:54 | Computer Name = Doudou | Source = Microsoft-Windows-Kernel-General | ID = 6 Description = Error - 16/10/2013 22:22:02 | Computer Name = Doudou | Source = Microsoft-Windows-Kernel-General | ID = 6 Description = Error - 16/10/2013 22:27:59 | Computer Name = Doudou | Source = Service Control Manager | ID = 7022 Description = Le service NVIDIA Update Service Daemon est en attente de démarrage. Error - 18/10/2013 07:40:23 | Computer Name = Doudou | Source = volsnap | ID = 393252 Description = Les clichés instantanés du volume C: ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. Error - 18/10/2013 11:49:35 | Computer Name = Doudou | Source = bowser | ID = 8003 Description = Error - 20/10/2013 03:17:09 | Computer Name = Doudou | Source = Service Control Manager | ID = 7031 Description = Le service avast! Antivirus s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 5000 millisecondes : Redémarrer le service. Error - 20/10/2013 15:32:09 | Computer Name = Doudou | Source = Service Control Manager | ID = 7031 Description = Le service avast! Antivirus s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 5000 millisecondes : Redémarrer le service. Error - 23/10/2013 09:40:54 | Computer Name = Doudou | Source = bowser | ID = 8003 Description = Error - 25/10/2013 02:08:37 | Computer Name = Doudou | Source = bowser | ID = 8003 Description = Error - 25/10/2013 12:06:08 | Computer Name = Doudou | Source = bowser | ID = 8003 Description = < End of report >