cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþOTL Extras logfile created on: 13/08/2014 22:00:43 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17207)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

9,96 Gb Total Physical Memory | 6,48 Gb Available Physical Memory | 65,04% Memory free
11,52 Gb Paging File | 6,87 Gb Available in Paging File | 59,65% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 931,17 Gb Total Space | 697,82 Gb Free Space | 74,94% Space Free | Partition Type: NTFS
Drive D: | 1863,01 Gb Total Space | 612,44 Gb Free Space | 32,87% Space Free | Partition Type: NTFS
Drive E: | 350,00 Mb Total Space | 86,86 Mb Free Space | 24,82% Space Free | Partition Type: NTFS

Computer Name: KETARASTA | User Name: Sam Exit | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (All) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cpl[@ = cplfile] -- C:\Windows\SysNative\control.exe (Microsoft Corporation)
.hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
.js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.reg[@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation)
.txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation)
.vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)
.wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.bat [@ = batfile] -- "%1" %*
.chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation)
.cmd [@ = cmdfile] -- "%1" %*
.com [@ = comfile] -- "%1" %*
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.exe [@ = exefile] -- "%1" %*
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
.hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.url [@ = InternetShortcut] -- C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation)
.js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.jse [@ = JSEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.pif [@ = piffile] -- "%1" %*
.reg [@ = regfile] -- C:\Windows\SysWow64\regedit.exe (Microsoft Corporation)
.scr [@ = scrfile] -- "%1" /S
.txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation)
.vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)
.wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-1480904948-3858216569-2518722657-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
batfile [open] -- "%1" %*
batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation)
cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation)
cmdfile [open] -- "%1" %*
cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" {1E460BD7-F1C3-4B2E-88BF-4E770A288AF5}%U{1E460BD7-F1C3-4B2E-88BF-4E770A288AF5} %* (Microsoft Corporation)
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office15\msohtmed.exe" /p %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation)
jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation)
jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation)
regfile [open] -- regedit.exe "%1" (Microsoft Corporation)
regfile [merge] -- Reg Error: Key error.
regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation)
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation)
txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation)
txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation)
vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation)
wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation)
wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation)
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0338ECB6-BE7C-4E44-95FB-9A6D64DC4AF0}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{074E83D7-D3EF-46E8-8CAD-9AEBB0D1C42E}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe |
"{16C8E81D-9724-4C44-B03C-AF8FC7441815}" = lport=48114 | protocol=6 | dir=in | name=maconfig_tcptls |
"{19F66CD0-1652-4611-9E09-0F91241EA34E}" = lport=80 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{1D1A58F8-E64F-4138-ADD2-46D82A911088}" = rport=10243 | protocol=6 | dir=out | app=system |
"{1F1831CC-C1C5-4C0D-942A-4ACA8F8B59B7}" = rport=139 | protocol=6 | dir=out | app=system |
"{32764686-C917-42DB-ACF7-BEDCD29B197D}" = lport=138 | protocol=17 | dir=in | app=system |
"{3578BA60-30D8-4279-912E-F84659552963}" = lport=48000 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{3F62FDCD-8423-4471-9184-C7538C5D9B29}" = rport=445 | protocol=6 | dir=out | app=system |
"{43F50BF7-CFB6-48E0-AABF-494161B3EEC9}" = rport=137 | protocol=17 | dir=out | app=system |
"{49262E6D-92A4-4B55-AB1B-6D643894E68E}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{4DA09025-8507-4AC1-93B3-F539AAD162A7}" = lport=51001 | protocol=6 | dir=in | name=dragon smart phone server |
"{4EB22D24-321C-42E7-8CB8-8F0BCBE79894}" = lport=137 | protocol=17 | dir=in | app=system |
"{5AE8EBC2-DAA5-47D0-BDE5-8876649D2D23}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{63598C5D-D3F8-404B-882F-CD598F06B452}" = lport=47991 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe |
"{6641186A-D42A-40B9-AABC-F615A00766F7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7712A11A-ED1D-44F8-BE5B-6A48D5FC75DA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{7A881E02-AEA1-4AF3-A342-198DA05F9810}" = lport=2869 | protocol=6 | dir=in | app=system |
"{7C420C1C-AAD0-4117-AAE3-6E795159453C}" = lport=10243 | protocol=6 | dir=in | app=system |
"{7EB1489A-B7AB-4F24-BEC8-678D8EFDD707}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{8A91B94F-E15A-4599-AF74-6617A2AA3BE1}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{A5036C34-32F5-4250-80FE-F2557DE67ED5}" = lport=48113 | protocol=6 | dir=in | name=maconfig_tcp |
"{A7B5BFCA-F59B-4716-AD01-B88297ADACB8}" = lport=443 | protocol=6 | dir=in | app=c:\program files (x86)\nvidia corporation\netservice\nvnetworkservice.exe |
"{A7BD31C9-5519-42DD-8847-CEE38C8F62B3}" = lport=445 | protocol=6 | dir=in | app=system |
"{C37B80FB-E61D-4BC9-8AA5-31B35C56DE3C}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamsvc.exe |
"{C3D9414E-94D2-4D3D-BCA8-B21FD0593717}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{D2BE7A2F-FDD2-47D4-9D3E-25C891E178A1}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DF710356-D750-4A90-A8FD-11742A2F0CDE}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{E04761F4-8343-4B7D-B667-CD299580FCC3}" = lport=139 | protocol=6 | dir=in | app=system |
"{E21E392C-CF76-42E5-A547-6A773EF3AD75}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E3EB614B-B8C8-48B7-AB9B-D71F9057FF46}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E7EE0D35-7493-403F-96C4-F10801EDDC81}" = rport=138 | protocol=17 | dir=out | app=system |
"{E7F81722-8FFC-4A27-91CA-F50432162160}" = lport=1689 | protocol=6 | dir=in | name=kms emulator port |
"{FCC49FBA-ACA7-406B-AC41-30B86037ED52}" = lport=1689 | protocol=6 | dir=in | name=kms emulator port |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{015AE1D5-30B9-4468-B3A0-F61DCB3CAEDB}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\launcher\launcher.exe |
"{0C236697-CA6A-4B17-90E4-02C35F68DBDD}" = dir=out | name=viber - free phone calls & text |
"{0E279BD4-AB3A-40DF-8283-0F970FFA86ED}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{0E7B3B3D-CFCA-485C-BD6A-5713D7C7021A}" = protocol=6 | dir=out | app=system |
"{10E5D51D-F52F-46F7-A18A-AF5BB5141D47}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{1425F5B8-66E1-458A-9F3C-6BF9C0B2563D}" = protocol=6 | dir=in | app=c:\software\kmspico\autopico.exe |
"{14728406-6315-4CC0-8858-69F646BBF368}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{166A654E-58D1-418B-8F89-C987DBFDC304}" = dir=out | name=@{microsoft.bingmaps_2.1.2922.2139_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{17B6DEFA-68C0-41EA-9B6D-259ACBC832E9}" = protocol=17 | dir=in | app=c:\program files\ma-config.com\maconfigagent.exe |
"{1A2EAC2B-97ED-46FD-AE6F-E7B355F67E17}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\toribash\toribash.exe |
"{227F0373-6139-4C59-B313-65E35B280373}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{22B35585-0679-460A-81B3-6AD4EAB2DD2C}" = dir=out | name=windows_ie_ac_001 |
"{2356EC6B-5281-4CDE-A499-4BDA87E95035}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\need for speed world\gamelauncher.exe |
"{23D4E8DB-7BB2-491E-BECA-250C01E18E84}" = dir=out | name=railtime |
"{2605EBEA-5E72-45B8-9AEA-04D9401D88A4}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{2744FACC-F9FD-483C-85D2-99435F51C01E}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{27CA748F-DC56-4022-8696-7E3046089992}" = dir=out | name=@{microsoft.bingnews_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{2878735E-DA6D-48E4-B9A3-86912789F19B}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\robocraft\robocraft.exe |
"{2A9C1D7D-40E1-4EF0-9326-EED72B4D0CDB}" = protocol=17 | dir=in | app=c:\software\kmspico\kmseldi.exe |
"{2D22F846-2BAA-462F-8AC5-907C0B5F816E}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{2D573D38-CC15-44E5-B7DB-4147047F4114}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\wog\disasm.exe |
"{34621516-DA4D-40C0-8D4B-7D08DE1BAEE7}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\need for speed world\gamelauncher.exe |
"{346E92A0-A0A3-42B2-9495-817E7DB690F1}" = protocol=6 | dir=in | app=c:\jeux\spore\sporebin\sporeapp.exe |
"{358181B0-7F18-4779-88DA-46F5982A07C7}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{373F2E2B-C6C0-458F-B8A4-BD9938C9F7E8}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{40898829-7904-4FB4-9D8B-4E2695555012}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\ragnarok online 2\wplauncher.exe |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{442C53BA-D328-4A95-B70C-9BA793FAAA56}" = dir=out | name=onenote |
"{442D30ED-CB6B-44A5-8274-A1171FC43061}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{450E5FA7-EBAE-43CB-B53B-9740CE5D1154}" = dir=in | name=@{aufeminin.com.marmiton_1.1.0.49_neutral__mkpeb3b5nmday?ms-resource://aufeminin.com.marmiton/resources/displayname} |
"{45EA75A5-A676-4195-B76A-C2F5C08A16AA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{461FA5A4-6155-4E6E-B87D-9DCABB8F6BD5}" = protocol=6 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe |
"{462EC98D-FC7C-436E-9497-9F330669184B}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\wog\disasm.exe |
"{4BE9E238-9EEF-4EF2-9613-7BE6D32C3C5B}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{4D822CE0-9E4E-4157-9988-87F9D67E074A}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{4FBC69D8-E94D-4FDF-9285-C8E271DDDD93}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\ragnarok online 2\wplauncher.exe |
"{5205B601-0B74-42FE-9B8F-AB44B0FFE3C9}" = dir=out | name=facebook |
"{537B2C52-C71E-44E5-93B9-D2802C9AA94E}" = protocol=17 | dir=in | app=c:\software\kmspico\autopico.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{54B59519-FB88-4A16-AEA1-D357BC15AB3A}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{5712FD2D-E123-4CAC-802E-B63DE6E9B4A0}" = protocol=17 | dir=in | app=c:\jeux\spore\sporebinep1\sporeapp.exe |
"{5B7F107A-2EC1-47F2-A0A3-BB176126F44C}" = protocol=17 | dir=in | app=c:\software\kmspico\autopico.exe |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{5F57B2DD-9217-499A-A712-9975B0531F07}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\drakerz-confrontation\drakerz.exe |
"{5F6B02D9-856F-440B-9FEB-1E678F890B81}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\launcher\launcher.exe |
"{630BD359-A9E6-477A-97AB-39D080F6B5FD}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\launcher\launcher.exe |
"{64871131-CD6D-4C38-ADF0-F8C0DB8E99C7}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{652345F9-21AF-4A3B-B5BA-FF90CD660783}" = protocol=6 | dir=in | app=c:\software\kmspico\kmseldi.exe |
"{6579AFD9-DB9A-4CD6-BD63-F7B6BB4E6E42}" = protocol=17 | dir=in | app=c:\jeux\riot games\league of legends\lol.launcher.exe |
"{667EF5CB-F6BB-4D33-94A3-B9A531AFBAF7}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{6A6D2D5A-F73B-4526-8556-3D116D8EBD7D}" = protocol=17 | dir=in | app=c:\jeux\steam\steam.exe |
"{6B375965-1E6C-4FB2-BBEE-CC6E65155DC1}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe |
"{6E5B7951-FD81-47C1-B48F-B997D9B41C63}" = protocol=17 | dir=in | app=c:\jeux\spore\sporebin\sporeapp.exe |
"{706ED931-38F8-4C6A-A5A4-FD78141EF32E}" = protocol=6 | dir=in | app=c:\software\kmspico\service_kms.exe |
"{718D4CB8-2208-41D0-8132-6CBB2853E3E5}" = dir=out | name=viber - free phone calls & text |
"{71C4789D-C18B-4545-8E09-12393F624B77}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{72EB0E8D-6483-4F57-A537-7011305432E3}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\the forest\theforest.exe |
"{783EFCCE-E2F3-47BB-AB60-F8EB43A8CD49}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\goatsimulator\binaries\win32\goatgame-win32-shipping.exe |
"{7AB11483-352D-405E-82AF-A48F9A7D707A}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{869D20E0-F484-4FFC-B31A-08DFAFCDDC08}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{88E8D708-AA20-447F-A2C0-8D517A8B4616}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{89D7F96D-08AD-4131-ADAB-397F63EA35A7}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{8A6D5F7B-670F-4FEC-BEBB-6B5C3E52504F}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe |
"{8C02C96A-A7DA-4EAA-8D4A-DDF40345A164}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{8CAE2DC1-6C4D-4C08-97CD-C0FB04667443}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{90E1A39A-FA14-4695-BCAF-1FC8CA903B91}" = protocol=6 | dir=in | app=c:\jeux\ubisoft\watch dogs\bin\watch_dogs.exe |
"{927B27CC-8BC4-46E7-BFF4-3ED243B01EFF}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{92B31B91-C276-4E8E-BC31-BD9DCB55D578}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.2.313_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{92B55AA8-AF8F-419D-A0C0-5EF031581165}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{949EC7C8-0C39-4C9B-A56C-97FB5A6E4994}" = protocol=6 | dir=in | app=c:\jeux\riot games\league of legends\lol.launcher.exe |
"{9538AD69-4536-464E-A7FD-E58D68726C84}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{97198AFF-E237-47F4-80AA-ACAE76EFF27A}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{9748F18D-3A01-47C9-9205-81B7D0F6D910}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{9F6501BD-D4A8-4E30-8F49-49B561DC9FA3}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{A0C5B08F-3D99-44AF-8B93-93E1349D76D3}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{A11C89C1-2F24-41BD-89E5-9D4D2BC197A8}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{A1E43CDC-D83F-40F2-BDF8-696A17975714}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{A1E58963-B732-44C0-981C-24731869F5B3}" = dir=in | name=viber - free phone calls & text |
"{A27B0760-5086-4616-888E-F3FD6B8E5341}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\fifa world\fifaworld.exe |
"{A303E516-A295-4214-AA6E-0AAAB3B7E81D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{A334C1D3-D431-4682-B9B7-A50C77E0C632}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A3DFAAE9-CD90-461B-81FE-4B87EC02D77D}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\robocraft\robocraft.exe |
"{A5257FE6-1EA2-461F-A02E-7E2E9414C191}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe |
"{A5C0D189-9346-412F-923E-AF205FEAB437}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\toribash\toribash.exe |
"{A7B45D8D-9884-4334-9BD5-85879EE6DF9A}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{A803DD1F-0261-4645-867C-90131D5703B6}" = protocol=6 | dir=in | app=c:\jeux\steam\steam.exe |
"{AB6A7D1D-E4C7-4355-A237-5BA9CDC9FC24}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\goatsimulator\binaries\win32\goatgame-win32-shipping.exe |
"{AC002D87-B870-429D-A9BD-B9C4B3982279}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\plants vs. zombies\plantsvszombies.exe |
"{B0BF1AF8-249D-4173-A9C7-192E9F68198B}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B1ABE5A3-7D8C-4F79-A6F6-978C36F72805}" = protocol=17 | dir=in | app=c:\jeux\ubisoft\watch dogs\bin\watch_dogs.exe |
"{B2B9FA9E-A240-4126-8468-BEE4F21DDCAF}" = protocol=6 | dir=in | app=c:\software\kmspico\autopico.exe |
"{B393ABF3-EE80-4AB9-A733-96C8B973393F}" = protocol=6 | dir=in | app=c:\jeux\fifa 14 ultimate edition\game\fifa14.exe |
"{B431D4D8-BD5D-4A62-B17B-0FE797C4C8B1}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe |
"{B5B02B36-FED5-4213-93D0-6A542E28A468}" = dir=out | name=cocktail flow |
"{B663CE51-FA4D-4274-866F-9C4E6A53F6AE}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{B7242677-2AD2-475C-9A6B-096006039C12}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{BBF68402-D5F3-4D75-8DAB-66C4284567CD}" = dir=out | name=@{microsoft.zunevideo_2.6.183.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{BDD29FF3-278B-4F64-A20C-95A85A10B96A}" = protocol=6 | dir=in | app=c:\program files\ma-config.com\maconfigagent.exe |
"{C51A44A7-01FF-4DA0-8A06-E7204E48D939}" = dir=out | name=@{microsoft.zunemusic_2.2.931.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{C876AC64-B87D-40CD-B7E5-EE549A924DB6}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe |
"{C991FEC5-998C-45A4-A0E2-50A38258BD86}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{CA23A613-760F-443A-92C8-C6B4815F7B0A}" = dir=out | name=@{aufeminin.com.marmiton_1.1.0.49_neutral__mkpeb3b5nmday?ms-resource://aufeminin.com.marmiton/resources/displayname} |
"{CAFDEB07-654A-4763-847C-91CA86816FD7}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{CDE237A8-2C27-41D0-A04C-48ABBC9430D7}" = dir=out | name=gmail calendar |
"{CE30D730-1781-4EA0-AF52-CB9778A5715E}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D7B73636-4D7F-4334-A670-0C94BB453F86}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{D7F65BAE-6FFF-4713-BC12-26787A190DD8}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe |
"{D81A965B-9195-4A05-8090-A70E846917B2}" = dir=in | name=onenote |
"{D9B17041-69C9-4C58-A32D-47C9A757660C}" = dir=out | name=@{microsoft.bingtravel_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{DAE4A2D1-033C-4917-853A-921D19B7E359}" = dir=in | name=viber - free phone calls & text |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DC2850FA-CD17-480E-BAED-7D0D2F80F785}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{DC4B84B4-A92F-4FAE-9AE6-1EF6ECDA95E4}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\sid meier's civilization v\launcher.exe |
"{E02706B3-7802-4520-AED5-8FD9015C730B}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{E2AA74E9-8A92-4074-98EE-4EEB94F2826C}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\drakerz-confrontation\drakerz.exe |
"{E3A23927-79AE-43EE-BC64-8FA0DCF8E39C}" = protocol=17 | dir=in | app=c:\software\kmspico\service_kms.exe |
"{E44C8242-87C5-4B96-B4C8-B132878B8B65}" = protocol=6 | dir=in | app=c:\software\kmspico\service_kms.exe |
"{E51FC4CD-C246-48AA-95BD-6A426BEA038A}" = dir=out | name=@{microsoft.bingfinance_3.0.2.258_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{E6988211-7079-4ED1-BD70-9EFEEA0BD39C}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\plants vs. zombies\plantsvszombies.exe |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{ED40F1CD-5295-4F50-B3C3-59FF6E8E7AEB}" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\launcher\launcher.exe |
"{F098E463-8243-4ED4-8E24-0CDA074C6B25}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F5979895-5D99-4CE8-B8C0-2532AF05EE20}" = protocol=6 | dir=in | app=c:\jeux\spore\sporebinep1\sporeapp.exe |
"{F5EBCA89-E3E1-40CF-88BF-4537CF159A06}" = protocol=17 | dir=in | app=c:\software\kmspico\service_kms.exe |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F64A1029-7AD8-45E7-8054-F688A60BEEF4}" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\the forest\theforest.exe |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{FD51D3A6-0CF2-4A1E-86A7-88E58E683F8E}" = protocol=17 | dir=in | app=c:\jeux\fifa 14 ultimate edition\game\fifa14.exe |
"{FDED9B5C-03F0-4B4E-A0D4-7F495B7E49BC}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe |
"{FE077DB9-1B93-487B-AFD9-B0154417DA02}" = protocol=17 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe |
"{FFAFC072-89A1-4966-A7DD-9B5C57ECF023}" = dir=out | name=@{microsoft.bingweather_3.0.2.309_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"TCP Query User{03D9B3D5-2CAF-4F12-BD2E-A79F8ABD8746}C:\jeux\data\nfsw.exe" = protocol=6 | dir=in | app=c:\jeux\data\nfsw.exe |
"TCP Query User{4323474F-EB30-439B-9B90-FE5641F32B61}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" = protocol=6 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe |
"TCP Query User{48A9908F-A59E-4F14-A7E9-89B7C215DA0F}C:\jeux\wolfenstein the new order\wolfneworder_x64.exe" = protocol=6 | dir=in | app=c:\jeux\wolfenstein the new order\wolfneworder_x64.exe |
"TCP Query User{58730077-2F63-4AA8-BC22-5ED441D8740E}C:\jeux\steam\steamapps\common\drakerz-confrontation\drakerzgame.exe" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\drakerz-confrontation\drakerzgame.exe |
"TCP Query User{59F00A48-F97A-4E5A-83D2-918B8D0596EF}C:\jeux\fifa 14 ultimate edition\game\fifa14.exe" = protocol=6 | dir=in | app=c:\jeux\fifa 14 ultimate edition\game\fifa14.exe |
"TCP Query User{C9474F7B-D49F-43F2-821F-6904E21D0BFA}C:\jeux\steam\steamapps\common\thehunter\game\thehunter.exe" = protocol=6 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\game\thehunter.exe |
"TCP Query User{FCBC8E8E-3E26-42E0-AFF6-52C143FBA669}C:\miners\bfgminer\bfgminer.exe" = protocol=6 | dir=in | app=c:\miners\bfgminer\bfgminer.exe |
"UDP Query User{0CD8EA87-CA12-4CB8-B98C-54DF01C7C0CD}C:\miners\bfgminer\bfgminer.exe" = protocol=17 | dir=in | app=c:\miners\bfgminer\bfgminer.exe |
"UDP Query User{9618BDEB-5B52-4953-865B-C9D0159C4D8F}C:\jeux\steam\steamapps\common\drakerz-confrontation\drakerzgame.exe" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\drakerz-confrontation\drakerzgame.exe |
"UDP Query User{9D6CAFBB-9C11-4251-828F-941408F3C471}C:\jeux\wolfenstein the new order\wolfneworder_x64.exe" = protocol=17 | dir=in | app=c:\jeux\wolfenstein the new order\wolfneworder_x64.exe |
"UDP Query User{B78B9349-8704-4F53-AE30-32CF2C4FE280}C:\jeux\data\nfsw.exe" = protocol=17 | dir=in | app=c:\jeux\data\nfsw.exe |
"UDP Query User{F52D5D69-A91C-4D74-A5CC-A44EF63714B9}C:\jeux\steam\steamapps\common\thehunter\game\thehunter.exe" = protocol=17 | dir=in | app=c:\jeux\steam\steamapps\common\thehunter\game\thehunter.exe |
"UDP Query User{F57BB6A8-273C-450C-AA5C-229689164B7A}C:\jeux\fifa 14 ultimate edition\game\fifa14.exe" = protocol=17 | dir=in | app=c:\jeux\fifa 14 ultimate edition\game\fifa14.exe |
"UDP Query User{FC0B307C-56C9-4442-B29E-F1DA73B5D9E8}C:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe" = protocol=17 | dir=in | app=c:\program files (x86)\hi-rez studios\hirezgames\smite\binaries\win32\smite.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{19D411B5-350C-4DEA-BCA3-9E7B632A642D}" = Ma-Config.com (64 bits)
"{1CF5754A-545B-4360-BFDE-2847BC728DFC}" = iTunes
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{23D2AFC7-C01E-4413-9D9A-0BABF52569BF}" = Centre Souris et Claviers Microsoft
"{2EDC2FA3-1F34-34E5-9085-588C9EFD1CC6}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.60610
"{45CD67FD-3218-4207-A0A2-BC41245189E3}" = Microsoft Xbox 360 Accessories 1.2
"{4A5A427F-BA39-4BF0-7777-9A47FBE60C9F}" = Visual C++ 9.0 Runtime for Dragon NaturallySpeaking 64bit (x64)
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{5552453B-BB76-45E3-973D-F95E458ED780}" = Native Instruments Kontakt 5
"{5AF3560C-09BA-426F-BFA0-FEF0A94A9D8B}" = Microsoft Corporation
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{764384C5-BCA9-307C-9AAC-FD443662686A}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.60610
"{787136D2-F0F8-4625-AA3F-72D7795AC842}" = Apple Mobile Device Support
"{7C2F1B90-E6E6-4ECF-B626-4545CF6EEB2D}" = Smart Technology Volume Tracker 7.0.23.0
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{87062E99-EBC9-48CA-8D68-EA1D5BD9DA9F}" = Smart Technology Programming Software 7.0.27.13
"{8EC9E7BB-2443-49B1-8476-490EBF932C2E}" = Microsoft LifeCam
"{90150000-0015-040C-1000-0000000FF1CE}" = Microsoft Access MUI (French) 2013
"{90150000-0016-040C-1000-0000000FF1CE}" = Microsoft Excel MUI (French) 2013
"{90150000-0018-040C-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (French) 2013
"{90150000-0019-040C-1000-0000000FF1CE}" = Microsoft Publisher MUI (French) 2013
"{90150000-001A-040C-1000-0000000FF1CE}" = Microsoft Outlook MUI (French) 2013
"{90150000-001B-040C-1000-0000000FF1CE}" = Microsoft Word MUI (French) 2013
"{90150000-001F-0401-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - 'DD:) 'D91(J)
"{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch
"{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English
"{90150000-001F-040C-1000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français
"{90150000-001F-0413-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Nederlands
"{90150000-001F-0C0A-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español
"{90150000-002C-040C-1000-0000000FF1CE}" = Microsoft Office Proofing (French) 2013
"{90150000-0044-040C-1000-0000000FF1CE}" = Microsoft InfoPath MUI (French) 2013
"{90150000-006E-040C-1000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2013
"{90150000-0090-040C-1000-0000000FF1CE}" = Microsoft DCF MUI (French) 2013
"{90150000-00A1-040C-1000-0000000FF1CE}" = Microsoft OneNote MUI (French) 2013
"{90150000-00BA-040C-1000-0000000FF1CE}" = Microsoft Groove MUI (French) 2013
"{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013
"{90150000-00C1-040C-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (French) 2013
"{90150000-00E1-040C-1000-0000000FF1CE}" = Microsoft Office OSM MUI (French) 2013
"{90150000-00E2-040C-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (French) 2013
"{90150000-012B-040C-1000-0000000FF1CE}" = Microsoft Lync MUI (French) 2013
"{91150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA Pilote 3D Vision 337.81
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panneau de configuration NVIDIA 337.81
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Pilote graphique 337.81
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 2.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA Pilote du contrôleur 3D Vision 337.81
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Mises à jour NVIDIA 14.6.22
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.LEDVisualizer" = NVIDIA LED Visualizer 1.0
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = SHIELD Streaming
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA Pilote audio HD : 1.3.30.1
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Network.Service" = NVIDIA Network Service
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 14.6.22
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 1.2.23
"{B5E06417-A4AC-4225-B36E-7E34C91616E7}" = Intel® Trusted Connect Service Client
"CCleaner" = CCleaner
"EPSON XP-205 207 Series" = EPSON XP-205 207 Series Printer Uninstall
"KMSpico_is1" = KMSpico v9.2.3
"Microsoft Mouse and Keyboard Center" = Centre Souris et Claviers Microsoft
"Office15.PROPLUSR" = Microsoft Office Professionnel Plus 2013
"TAP-Windows" = TAP-Windows 9.9.2
"WinRAR archiver" = WinRAR 5.01 (64-bit)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0186BA6C-FF42-4013-BA2F-0837835471D1}_is1" = Uplauncher Arkalys version 2.0.0
"{0BED0B96-70B8-4893-884B-DC485DC8C1B7}" = BlueStacks Notification Center
"{14A487F2-1259-4E6C-AE3C-3C888DDBCB60}_is1" = Guitar Pro 6
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1F5BD089-B4DC-4F88-ACAE-342055DF5A0C}" = Avira
"{26A24AE4-039D-4CA4-87B4-2F83217055FF}" = Java 7 Update 60
"{32A7C3B0-E5C3-4913-B1F2-49FE860FAA5E}" = 8GadgetPack
"{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030
"{35AB7F3E-F588-4DE6-AFA2-80A1FF1D4016}" = Wolfenstein The New Order
"{3AF1B16A-7DC9-4C80-BAEC-70B088A7C5B8}" = Need For Speed"! World
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF017}" = Smite
"{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}" = Hi-Rez Studios Authenticate and Update Service
"{3E75652D-99B1-417E-B163-BEF33CAD3F16}" = League of Legends
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{5E6536C2-E79A-49CF-83EA-817AD81F9FC8}" = Plantes contre Zombies"!
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{6D35DF2D-7523-4CB6-9E8F-A1660D9F8637}_is1" = "Spore"
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{716E0306-8318-4364-8B8F-0CC4E9376BAC}" = MSXML 4.0 SP2 Parser and SDK
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3"!
"{766255CE-D156-11E3-8DBC-A136EB52ACCF}" = Adobe Dreamweaver CC 2014
"{77D28FF5-242F-488A-8215-937D6A4D69E0}" = Adobe AIR
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}" = Skype"! 6.18
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}" = NVIDIA PhysX
"{8F9AC744-EEF6-43DB-A4B6-FA1A18F1C640}" = EA Sports FIFA World
"{9590977b-7b6f-467e-a11a-efa1fae804da}" = Avira
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{a1909659-0a08-4554-8af1-2175904903a1}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610
"{A1CF7B76-682D-4547-AA96-11B659A2CEAC}" = Microsoft Corporation
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{B175520C-86A2-35A7-8619-86DC379688B9}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030
"{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030
"{D9DAD0FF-495A-472B-9F10-BAE430A26682}" = Apple Application Support
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F36ED29E-33E1-48AB-95DA-2498AD41A9A0}" = Curse
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"Adobe AIR" = Adobe AIR
"Adobe Flash Player Plugin" = Adobe Flash Player 14 Plugin
"ASIO4ALL" = ASIO4ALL
"Audacity_is1" = Audacity 1.2.6
"Avira AntiVir Desktop" = Avira Free Antivirus
"B076073A-5527-4f4f-B46B-B10692277DA2_is1" = DisplayFusion 5.1.1
"Balabolka" = Balabolka
"Battlelog Web Plugins" = Battlelog Web Plugins
"BlueStacks App Player" = BlueStacks App Player
"DAEMON Tools Lite" = DAEMON Tools Lite
"Dynasty Warriors 8 Xtreme Legends_is1" = Dynasty Warriors 8 Xtreme Legends
"FIFA 14 Ultimate Edition_is1" = FIFA 14 Ultimate Edition version 1.4
"FL Studio 11" = FL Studio 11
"FlowStone" = FlowStone FL 3.0
"Google Chrome" = Google Chrome
"IL Download Manager" = IL Download Manager
"IL Shared Libraries" = IL Shared Libraries
"League of Legends 3.0.1" = League of Legends
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.0.2.1012
"Mozilla Firefox 31.0 (x86 fr)" = Mozilla Firefox 31.0 (x86 fr)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Native Instruments Kontakt 5" = Native Instruments Kontakt 5
"NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver
"Origin" = Origin
"PunkBusterSvc" = PunkBuster Services
"Rainmeter" = Rainmeter
"sfArkXTc" = sfArkXTc
"Stardock Fences 2" = Stardock Fences 2
"Steam" = Steam
"Steam App 231060" = Ragnarok Online 2
"Steam App 242760" = The Forest
"Steam App 248570" = Toribash
"Steam App 253710" = theHunter
"Steam App 262410" = World of Guns: Gun Disassembly
"Steam App 265930" = Goat Simulator
"Steam App 266030" = DRAKERZ-Confrontation
"Steam App 301520" = Robocraft
"Steam App 8930" = Sid Meier's Civilization V
"Teamspeak 2 RC2_is1" = TeamSpeak 2 RC2
"Trials Fusion - Riders of the Rustlands_is1" = Trials Fusion - Riders of the Rustlands
"uTorrent" = µTorrent
"VLC media player" = VLC media player 2.1.3
"ZHPDiag_is1" = ZHPDiag 2014

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 13/08/2014 09:54:02 | Computer Name = KetaRasta | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Échec de l activation de l application BRICKMAKERS.gmailcalendar_wps5hyj3streg!App
avec l erreur : -2144927150 Pour plus d informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error - 13/08/2014 09:55:24 | Computer Name = KetaRasta | Source = BstHdAndroidSvc | ID = 0
Description = Le service ne peut pas être démarré. System.ApplicationException:
Cannot start service. Service did not stop gracefully the last time it was run.

à BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) à System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object
state)

Error - 13/08/2014 09:56:31 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 262144 (0x0000000000040000) de 32768 (0x00008000) octets a
échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 09:57:49 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 11337728 (0x0000000000ad0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 10:02:38 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 11337728 (0x0000000000ad0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 10:12:47 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 22806528 (0x00000000015c0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 10:37:46 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 22806528 (0x00000000015c0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 12:04:50 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 11337728 (0x0000000000ad0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 14:26:50 | Computer Name = KetaRasta | Source = Application Error | ID = 1000
Description = Nom de l application défaillante werfault.exe, version : 6.3.9600.17031,
horodatage : 0x5308645f Nom du module défaillant : ntdll.dll, version : 6.3.9600.17031,
horodatage : 0x530895af Code d exception : 0xc0000006 Décalage d erreur : 0x0000000000022236
ID
du processus défaillant : 0x1980 Heure de début de l application défaillante : 0x01cfb723fddebc78
Chemin
d accès de l application défaillante : C:\Windows\system32\werfault.exe Chemin d accès
du module défaillant: C:\Windows\SYSTEM32\ntdll.dll ID de rapport : 6422ee4e-2317-11e4-82c1-c86000ce36a5
Nom
complet du package défaillant : ID de l application relative au package défaillant :


Error - 13/08/2014 14:26:50 | Computer Name = KetaRasta | Source = Application Error | ID = 1005
Description = Windows ne peut pas accéder au fichier C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll
pour une des raisons suivantes : un problème s est produit avec la connexion réseau,
le disque sur lequel le fichier est enregistré, ou les pilotes de stockage installés
sur cet ordinateur, ou le disque est manquant. Windows a fermé le programme Rapports
de problèmes Windows en raison de cette erreur. Programme : Rapports de problèmes
Windows Fichier : C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscordacwks.dll

La
valeur de l erreur est affichée dans la section Données supplémentaires. Action
utilisateur 1. Ouvrez à nouveau le fichier. Cette situation peut résulter d un problème
temporaire qui se corrigera de lui-même à la prochaine exécution du programme. 2.
Si
le fichier est toujours inaccessible et - Il se trouve sur le réseau : votre administrateur
réseau devrait vérifier qu il n y a aucun problème avec le réseau et que le serveur
peut être contacté. - Il se trouve sur un disque amovible, par exemple une disquette
ou un CD-ROM : vérifiez que le disque est inséré correctement dans l ordinateur.
3.
Vérifiez et réparez le système de fichiers en exécutant CHKDSK. Pour exécuter CHKDSK,
cliquez sur Démarrer, Exécuter, entrez CMD puis cliquez sur OK. À l invite de commandes,
entrez CHKDSK /F et appuyez sur Entrée. 4. Si le problème persiste, restaurez le
fichier à partir d une copie de sauvegarde. 5. Déterminez si d autres fichiers du
même disque peuvent être ouverts. Si ce n est pas le cas, le disque est peut-être
endommagé. S il s agit d un disque dur, contactez votre administrateur ou le distributeur
de votre ordinateur pour obtenir une assistance supplémentaire. Données supplémentaires
Valeur
de l erreur : C000009C Type du disque : 3

Error - 13/08/2014 14:27:44 | Computer Name = KetaRasta | Source = ESENT | ID = 481
Description = taskhostex (2636) WebCacheLocal: Une tentative de lecture à partir
du fichier "C:\Users\Sam Exit\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat"
à l'adresse relative 11337728 (0x0000000000ad0000) de 32768 (0x00008000) octets
a échoué après 0.020 secondes avec l'erreur système 23 (0x00000017) : "Erreur de
données (contrôle de redondance cyclique). ". L'opération de lecture échouera en
indiquant l'erreur -1021 (0xfffffc03). Si le problème persiste, ceci signifie que
le fichier est sans doute endommagé et qu'il faut le restaurer à partir d'une version
de sauvegarde antérieure.

Error - 13/08/2014 16:02:02 | Computer Name = KetaRasta | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Les services de chiffrement ont échoué lors du traitement de l appel
OnIdentity() dans l objet System Writer. Details: AddCoreCsiFiles : GetNextFileMapContent()
failed. System Error: Paramètre incorrect. .

[ System Events ]
Error - 13/08/2014 16:05:36 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:17 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:20 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:23 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:26 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:29 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:32 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:35 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:38 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.

Error - 13/08/2014 16:07:41 | Computer Name = KetaRasta | Source = disk | ID = 262151
Description = Le périphérique \Device\Harddisk0\DR0 comporte un bloc défectueux.


< End of report >

Publicité


Signaler le contenu de ce document

Publicité