OTL Extras logfile created on: 09/06/2014 13:06:22 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\MFplafonnage\Downloads Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 9.0.8112.16421) Locale: 0000040c | Country: Belgique | Language: FRB | Date Format: d/MM/yyyy 1,99 Gb Total Physical Memory | 0,75 Gb Available Physical Memory | 37,55% Memory free 3,98 Gb Paging File | 2,40 Gb Available in Paging File | 60,30% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 139,68 Gb Total Space | 61,36 Gb Free Space | 43,93% Space Free | Partition Type: NTFS Drive F: | 931,51 Gb Total Space | 688,03 Gb Free Space | 73,86% Space Free | Partition Type: NTFS Computer Name: MFPLAFONNAGE-PC | User Name: MFplafonnage | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (All) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .bat [@ = batfile] -- "%1" %* .chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation) .cmd [@ = cmdfile] -- "%1" %* .com [@ = comfile] -- "%1" %* .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .exe [@ = exefile] -- "%1" %* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .url [@ = InternetShortcut] -- C:\Windows\System32\rundll32.exe (Microsoft Corporation) .js [@ = JSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .pif [@ = piffile] -- "%1" %* .reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation) .scr [@ = scrfile] -- "%1" /S .txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-3623932688-1044423065-945562296-1001\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\Windows\System32\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\Office14\msohtmed.exe" /p %1 (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation) regfile [open] -- regedit.exe "%1" (Microsoft Corporation) regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) Unknown [openas] -- C:\Windows\system32\rundll32.exe C:\Windows\system32\shell32.dll,OpenAs_RunDLL %1 (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [openNew] -- explorer %1 (Microsoft Corporation) Directory [runas] -- cmd.exe /c takeown /f "%1" /r /d y && icacls "%1" /grant administrators:F /t (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{028C639F-76B8-40C4-B469-2A84DE8177FC}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{0F25915F-B001-46A2-9D3A-6C874DB1BCDB}" = rport=445 | protocol=6 | dir=out | app=system | "{0F9F234B-6B71-474D-B5AA-22725AFD85AC}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{1873C153-9CBC-45AE-AD49-41B564E017B8}" = rport=137 | protocol=17 | dir=out | app=system | "{1FD8454F-49AE-4AA7-B8C2-DC022417EB15}" = rport=10243 | protocol=6 | dir=out | app=system | "{25EDD167-17A0-4F1B-ACC1-C896BD890D0D}" = rport=139 | protocol=6 | dir=out | app=system | "{27C29DAE-5151-4AEC-B476-D027A31731CE}" = lport=139 | protocol=6 | dir=in | app=system | "{453C4439-DC92-4AD9-A51E-AD071F4A93C8}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{52DFD19F-E837-4363-9299-DF7B10B8F85A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{5E54E81A-537D-4450-AD8C-1739463C7636}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{60A991CF-7182-4DAC-9962-3FDF1D8F2538}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{630A2935-9DAA-4393-ACC2-973513F0AA49}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{670767FE-E5D1-478D-863F-E1C2A66DB134}" = lport=54925 | protocol=17 | dir=in | name=brothernetwork scanner | "{6BFC315E-119F-4F20-A7F1-92FCC6671B7B}" = lport=808 | protocol=6 | dir=in | svc=nettcpactivator | app=c:\windows\microsoft.net\framework\v4.0.30319\smsvchost.exe | "{6DAE8711-469D-441B-978F-8FE9F364A971}" = lport=445 | protocol=6 | dir=in | app=system | "{88A63E4B-18A8-4D97-8209-431E681CCA0E}" = rport=138 | protocol=17 | dir=out | app=system | "{9712F31C-33E3-411B-B9C8-5CB95006F081}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BCC3C430-9A73-4B32-A141-235F7743020E}" = lport=137 | protocol=17 | dir=in | app=system | "{C9A0F1CB-3675-4529-902E-EE03450CE9DF}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D210776B-3AAF-4319-A021-90302B7C81E9}" = lport=2869 | protocol=6 | dir=in | app=system | "{D8EEF769-1ACF-4475-B4D5-30E8C91BE708}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{D9965C54-8811-4537-93A8-033C2DECEDED}" = lport=10243 | protocol=6 | dir=in | app=system | "{F2E49DC4-960B-477C-9C95-0BB3B32332D5}" = lport=138 | protocol=17 | dir=in | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01352429-976E-4445-A9FF-AB912FA2CA35}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{08C564AA-C417-4E96-AA75-8D8E5C152B33}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{0AAEA6E4-CD30-4BE6-84C5-3B17356BA014}" = protocol=6 | dir=in | app=c:\program files\pcdapp\dgen.exe | "{156211B5-BE03-4963-ADC5-EB62397A3716}" = protocol=17 | dir=in | app=c:\program files\pcdapp\dgen.exe | "{424108DE-7FF2-45A3-A886-25517B33C2A9}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{4375CCBB-3CC7-45AF-AA66-2E0442B80676}" = protocol=6 | dir=in | app=c:\program files\real\realplayer\rpds\bin\rpdsvc.exe | "{5AA815F1-44CA-4C03-9319-2FE980559C90}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{6951B4C0-B27D-4B40-9C66-059F177CD2B8}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{6A94A210-497A-45BA-9DBC-CA99B62E20B7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{79420681-1BB2-4933-8540-5E8C15570AFF}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{8C9426F0-1B34-4823-A52C-C73C96350F8A}" = protocol=6 | dir=out | app=system | "{927BDF6E-269B-4434-A157-D9E5E7589457}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{98C6FB3A-3671-442F-9BAF-236AAC5B36AC}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{A0DAAAE0-7852-46AC-9232-91638F486995}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{A11E6BFC-0373-4767-A964-B8C35DB80B32}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{A1C7C277-A304-4063-8727-5C55073E4582}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{AA803F51-99DD-48E4-A102-DE4ACA5A2A57}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{B1EE3416-A80D-4071-8A62-C593974847AB}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{B5CD86E2-4785-4FCD-B5DA-1219C80E52C9}" = dir=in | app=c:\users\mfplafonnage\appdata\local\microsoft\skydrive\skydrive.exe | "{BC32B507-CCC1-4376-B884-A68F99DED2C2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{CA0350B0-94CC-45CE-B40D-11488420C809}" = dir=in | app=c:\program files\itunes\itunes.exe | "{D93853CC-D603-4DA7-A7CB-E0E972A019AD}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{E9C438B9-C309-419D-9150-0D3503B512F4}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "TCP Query User{306720EF-2EBF-46B3-AEDE-6AB94C560400}C:\program files\free download manager\fdm.exe" = protocol=6 | dir=in | app=c:\program files\free download manager\fdm.exe | "TCP Query User{7EE0C35C-5398-41F3-B994-7CE6749E4E43}C:\users\mfplafonnage\appdata\local\temp\resources\kmskg\keygen.exe" = protocol=6 | dir=in | app=c:\users\mfplafonnage\appdata\local\temp\resources\kmskg\keygen.exe | "TCP Query User{8A6855A5-5874-4159-8532-BF671BDF174E}C:\program files\ps3 media server\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files\ps3 media server\jre\bin\javaw.exe | "TCP Query User{B143FF41-7A58-4F5C-B7D3-D37ED36EE746}C:\program files\free download manager\fdm.exe" = protocol=6 | dir=in | app=c:\program files\free download manager\fdm.exe | "UDP Query User{057173CA-FDE5-4D57-9C4F-9B03376E6B84}C:\users\mfplafonnage\appdata\local\temp\resources\kmskg\keygen.exe" = protocol=17 | dir=in | app=c:\users\mfplafonnage\appdata\local\temp\resources\kmskg\keygen.exe | "UDP Query User{5F19844F-EA32-44D8-8694-A75CBC1FE4EA}C:\program files\ps3 media server\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files\ps3 media server\jre\bin\javaw.exe | "UDP Query User{ACEA47DF-2D7A-4316-A982-2D5179C9D249}C:\program files\free download manager\fdm.exe" = protocol=17 | dir=in | app=c:\program files\free download manager\fdm.exe | "UDP Query User{F7B41FC5-D764-478B-8E3C-ABD9E7AC22BE}C:\program files\free download manager\fdm.exe" = protocol=17 | dir=in | app=c:\program files\free download manager\fdm.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{043F86B7-EE12-3399-B2CA-D0B603D87963}" = Microsoft .NET Framework 4 Extended FRA Language Pack "{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}" = Scansoft PDF Professional "{08C8666B-C502-4AB3-B4CB-D74AC42D14FE}" = Nero BackItUp 10 Help (CHM) "{0A0CADCF-78DA-33C4-A350-CD51849B9702}" = Microsoft .NET Framework 4 Extended "{0B31C808-8274-460D-8846-C711D40544A0}_is1" = Wondershare TunesGo ( Version 4.2.2 ) "{0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}" = Microsoft .NET Framework 4 Client Profile FRA Language Pack "{16987E99-C95C-4513-9239-7B44A0A71DB5}" = Nero SoundTrax 10 Help (CHM) "{18D47FA1-0440-48D3-A7E0-DA09537FF471}" = Apple Mobile Device Support "{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}" = Nero MediaHub 10 "{2259DBC1-EFFB-42B5-BA35-DFC0AAB2B3FB}" = RealDownloader "{237CCB62-8454-43E3-B158-3ACD0134852E}" = High-Definition Video Playback "{2436F2A8-4B7E-4B6C-AE4E-604C84AA6A4F}" = Nero Core Components 10 "{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29 "{277C1559-4CF7-44FF-8D07-98AA9C13AABD}" = Nero Multimedia Suite 10 "{28656860-4728-433C-8AD4-D1A930437BC8}" = Nuance PDF Viewer Plus "{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1 "{2F21564D-DE05-4C6D-B21E-08B9D313FAB3}" = iTunes "{329411A0-19F3-4740-874F-17400B126F27}" = Nero Vision 10 Help (CHM) "{33643918-7957-4839-92C7-EA96CB621A98}" = Nero Express 10 Help (CHM) "{34490F4E-48D0-492E-8249-B48BECF0537C}" = Nero DiscSpeed 10 "{34D2AB40-150D-475D-AE32-BD23FB5EE355}" = HP Quick Launch Buttons "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{523B2B1B-D8DB-4B41-90FF-C4D799E2758A}" = Nero ControlCenter 10 Help (CHM) "{555868C6-49FB-484F-BB43-8980651A1B00}" = Nero BurnRights 10 Help (CHM) "{5F548A02-80BC-404D-BAE6-F05F9BF6B449}" = Nero DiscCopyGadget 10 Help (CHM) "{63AA3EAB-23BB-48B2-9AD0-44F878075604}" = Nero 10 Menu TemplatePack Basic "{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}" = Nero Update "{66049135-9659-4AAD-9169-9CCA269EBB3E}" = Nero InfoTool 10 Help (CHM) "{68AB6930-5BFF-4FF6-923B-516A91984FE6}" = Nero BackItUp 10 "{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}" = Nuance PaperPort 12 "{6DFB899F-17A2-48F0-A533-ED8D6866CF38}" = Nero Control Center 10 "{6EF2FDAB-7FBF-4AB9-92CD-594BDDB6A56B}" = PaperPort Image Printer "{70550193-1C22-445C-8FA4-564E155DB1A7}" = Nero Express 10 "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour "{7A295D8F-484B-4FFB-89AB-C1FD497591FE}" = Nero WaveEditor 10 Help (CHM) "{7A5D731D-B4B3-490E-B339-75685712BAAB}" = Nero Burning ROM 10 "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}" = Nero Recode 10 "{90140000-0011-0000-0000-0000000FF1CE}" = Microsoft Office Professional Plus 2010 "{90140000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2010 "{90140000-0015-040C-0000-0000000FF1CE}" = Microsoft Office Access MUI (French) 2010 "{90140000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2010 "{90140000-0016-040C-0000-0000000FF1CE}" = Microsoft Office Excel MUI (French) 2010 "{90140000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2010 "{90140000-0018-040C-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (French) 2010 "{90140000-0019-040C-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (French) 2010 "{90140000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2010 "{90140000-001A-040C-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (French) 2010 "{90140000-001B-040C-0000-0000000FF1CE}" = Microsoft Office Word MUI (French) 2010 "{90140000-001F-0401-0000-0000000FF1CE}" = Microsoft Office Proof (Arabic) 2010 "{90140000-001F-0407-0000-0000000FF1CE}" = Microsoft Office Proof (German) 2010 "{90140000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2010 "{90140000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2010 "{90140000-001F-0413-0000-0000000FF1CE}" = Microsoft Office Proof (Dutch) 2010 "{90140000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2010 "{90140000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2010 "{90140000-002C-040C-0000-0000000FF1CE}" = Microsoft Office Proofing (French) 2010 "{90140000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2010 "{90140000-0044-040C-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (French) 2010 "{90140000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2010 "{90140000-006E-040C-0000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2010 "{90140000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2010 "{90140000-00A1-040C-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (French) 2010 "{90140000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2010 "{90140000-00BA-040C-0000-0000000FF1CE}" = Microsoft Office Groove MUI (French) 2010 "{90140000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2010 "{92E25238-61A3-4ACD-A407-3C480EEF47A7}" = Nero RescueAgent 10 Help (CHM) "{92EC1A84-7FFC-42DF-A8F6-79C21C4765A5}" = Nero DiscCopy Gadget 10 "{943CFD7D-5336-47AF-9418-E02473A5A517}" = Nero BurnRights 10 "{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting "{95140000-007D-0409-0000-0000000FF1CE}" = Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit "{95140000-0081-040C-0000-0000000FF1CE}" = Microsoft Office Outlook Connector "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}" = Nero Vision 10 "{9B6B24BE-80E7-46C4-9FA5-B167D5E0F345}" = Nero BurningROM 10 Help (CHM) "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A1B36B88-AF90-43A3-8906-6DBEE89B4FBD}" = Brother MFL-Pro Suite MFC-J430W "{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}" = Apple Application Support "{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime "{AC76BA86-7AD7-1036-7B44-AB0000000001}" = Adobe Reader XI (11.0.07) - Français "{C18A0418-442A-4186-AF98-D08F5054A2FC}" = Nero DiscSpeed 10 Help (CHM) "{C3273C55-E1E4-41FF-8D69-0158090DB8D8}" = Nero CoverDesigner 10 Help (CHM) "{C3580AC4-C827-4332-B935-9A282ED5BB97}" = Nero Dolby Files 10 "{C818A1F1-0B4F-4237-8D94-BA303EBA7638}" = Ciel Invoice 8.0 "{DB7C1D4A-08BA-4C7E-A8AA-B7F9BB372DCF}" = Nero Recode 10 Help (CHM) "{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}" = Nero SoundTrax 10 "{E337E787-CF61-4B7B-B84F-509202A54023}" = Nero RescueAgent 10 "{E3AE96D6-E196-45B4-AF62-2B41998B9E37}" = UpdateService "{EDCDFAD5-DF80-4600-A493-E9DAD6810230}" = Nero WaveEditor 10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F1D7AC58-554A-4A58-B784-B61558B1449A}" = QLBCASL "{F412B4AF-388C-4FF5-9B2F-33DB1C536953}" = Nero InfoTool 10 "{F467862A-D9CA-47ED-8D81-B4B3C9399272}" = Nero MediaHub 10 Help (CHM) "{F5CB822F-B365-43D1-BCC0-4FDA1A2017A7}" = Nero 10 Movie ThemePack Basic "{F6117F9C-ADB5-4590-9BE4-12C7BEC28702}" = Nero StartSmart 10 Help (CHM) "{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}" = Nero StartSmart 10 "{FCF00A6E-FB58-477A-ABE9-232907105521}" = Nero CoverDesigner 10 "03EF1518-5A5D-6983-DF30-7F31616E308D" = ViewPassword "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 13 Plugin "Advanced Scan to PDF Free_is1" = Advanced Scan to PDF Free 3.6.1 "Avira AntiVir Desktop" = Avira Free Antivirus "AviSynth" = AviSynth 2.5 "CCleaner" = CCleaner "Ciel! E-Backup" = Ciel! E-Backup "Free Download Manager_is1" = Free Download Manager 3.9.4 "Glary Utilities 4" = Glary Utilities 4.8 "HDMI" = Intel(R) Graphics Media Accelerator Driver "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Client Profile FRA "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "Microsoft .NET Framework 4 Extended FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Extended FRA "Mozilla Firefox 29.0.1 (x86 fr)" = Mozilla Firefox 29.0.1 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "Office14.PROPLUS" = Microsoft Office Professionnel Plus 2010 "PCData App" = PC Data App "PS3 Media Server" = PS3 Media Server "SearchProtect" = Search Protect "System Speedup_is1" = System Speedup "webssearches uninstaller" = webssearches uninstaller "WinRAR archiver" = Archiveur WinRAR [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3623932688-1044423065-945562296-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "OneDriveSetup.exe" = Microsoft OneDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 09/06/2014 04:47:16 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 9002 Description = Error - 09/06/2014 04:47:16 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 3029 Description = Error - 09/06/2014 04:47:17 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 3029 Description = Error - 09/06/2014 04:47:17 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 3028 Description = Error - 09/06/2014 04:47:17 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 3058 Description = Error - 09/06/2014 04:47:17 | Computer Name = MFplafonnage-PC | Source = Windows Search Service | ID = 7010 Description = Error - 09/06/2014 04:55:25 | Computer Name = MFplafonnage-PC | Source = Avira Antivirus | ID = 4122 Description = Chargement du fichier LogOpen impossible. Code d'erreur renvoyé : 0x5 Error - 09/06/2014 05:00:58 | Computer Name = MFplafonnage-PC | Source = MsiInstaller | ID = 1043 Description = Error - 09/06/2014 05:09:50 | Computer Name = MFplafonnage-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante VOPackage.exe, version : 0.0.0.0, horodatage : 0x4b1ae3d2 Nom du module défaillant : ntdll.dll, version : 6.1.7600.16915, horodatage : 0x4ec49caf Code d’exception : 0xc0000005 Décalage d’erreur : 0x0002d307 ID du processus défaillant : 0xd5c Heure de début de l’application défaillante : 0x01cf83c27b2e070d Chemin d’accès de l’application défaillante : C:\Users\MFplafonnage\AppData\Local\Temp\n9811\VOPackage.exe Chemin d’accès du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : cef5ad42-efb5-11e3-9901-001eec71885c Error - 09/06/2014 07:05:20 | Computer Name = MFplafonnage-PC | Source = Brother BrLog | ID = 1001 Description = STI BrtSTI: [2014/06/09 13:05:20.633]: [00002496]: SendSKeySettingToDevice:: Snmp Load Error[0] To[192.168.1.8] [ System Events ] Error - 09/06/2014 05:41:38 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7000 Description = Le service Avira Protection temps réel n’a pas pu démarrer en raison de l’erreur : %%32 Error - 09/06/2014 05:41:42 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7000 Description = Le service Avira Protection temps réel n’a pas pu démarrer en raison de l’erreur : %%32 Error - 09/06/2014 06:14:35 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7024 Description = Le service Avira Planificateur s’est arrêté avec l’erreur service particulière %%305. Error - 09/06/2014 06:14:48 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7009 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Avira Protection temps réel. Error - 09/06/2014 06:14:48 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7000 Description = Le service Avira Protection temps réel n’a pas pu démarrer en raison de l’erreur : %%1053 Error - 09/06/2014 06:14:53 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7009 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Protect Monitor. Error - 09/06/2014 06:14:53 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7000 Description = Le service Protect Monitor n’a pas pu démarrer en raison de l’erreur : %%1053 Error - 09/06/2014 06:48:16 | Computer Name = MFplafonnage-PC | Source = DCOM | ID = 10000 Description = Error - 09/06/2014 07:07:51 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7031 Description = Le service Util Zebar s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 5000 millisecondes : Redémarrer le service. Error - 09/06/2014 07:08:00 | Computer Name = MFplafonnage-PC | Source = Service Control Manager | ID = 7031 Description = Le service Update Zebar s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 5000 millisecondes : Redémarrer le service. < End of report >