cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Angélique at 2015-06-30 11:48:19
Running from C:\Users\Angélique\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrateur (S-1-5-21-2949683197-2601910962-1459871758-500 - Administrator - Disabled)
Angélique (S-1-5-21-2949683197-2601910962-1459871758-1000 - Administrator - Enabled) => C:\Users\Angélique
HomeGroupUser$ (S-1-5-21-2949683197-2601910962-1459871758-1002 - Limited - Enabled)
Invité (S-1-5-21-2949683197-2601910962-1459871758-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Ad-Aware Antivirus (Disabled - Out of date) {D87B6541-12A1-DAEA-0033-9B8057AAB996}
AV: COMODO Antivirus (Enabled - Up to date) {F25D0092-CDBE-B303-ADB7-88DE8CDECCF5}
AS: Ad-Aware Antivirus (Disabled - Out of date) {631A84A5-349B-D564-3A83-A0F22C2DF32B}
AS: Comodo Defense+ (Enabled - Up to date) {493CE176-EB84-BC8D-9707-B3ACF7598648}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: COMODO Firewall (Enabled) {CA6681B7-87D1-B25B-86E8-21EB720D8B8E}
FW: Ad-Aware Firewall (Disabled) {E040E464-58CE-DBB2-2B6C-32B5A979FEED}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Ad-Aware Antivirus (HKLM\...\{A041066D-37EF-46FC-9DF7-465A07F1C5CF}_AdAwareUpdater) (Version: 11.7.485.8398 - Lavasoft)
Ad-Aware Web Companion (x32 Version: 2.0.1025.2130 - Lavasoft) Hidden
AdAwareInstaller (Version: 11.7.485.8398 - Lavasoft) Hidden
AdAwareUpdater (Version: 11.7.485.8398 - Lavasoft) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 13.0.0.111 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.1.1.110 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.190 - Adobe Systems Incorporated)
Adobe Reader X (10.1.14) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.14 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.3.633 - Adobe Systems, Inc.)
Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated)
AntimalwareEngine (Version: 3.0.98.0 - Lavasoft) Hidden
Apple Application Support (32 bits) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.)
Apple Application Support (64 bits) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
COMODO Internet Security Premium (HKLM\...\{2736B6BD-31EC-4FC8-A48C-F0A5C914C0B6}) (Version: 7.0.55655.4142 - COMODO Security Solutions Inc.)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation)
Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Crossword Compiler Français 9 Démo (HKLM-x32\...\Crossword Compiler Français 9 Démo) (Version: - WordWeb Software)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.2.4725 - CyberLink Corp.)
Dropbox (HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\Dropbox) (Version: 3.6.7 - Dropbox, Inc.)
ESU for Microsoft Windows 7 SP1 (HKLM-x32\...\{768A6276-5822-489C-8A2B-67190F745655}) (Version: 4.1.2 - Hewlett-Packard)
Evernote v. 4.5.2 (HKLM-x32\...\{8CE152BA-1D16-11E1-867D-984BE15F174E}) (Version: 4.5.2.5904 - Evernote Corp.)
Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Farmscapes (x32 Version: 2.2.0.98 - WildTangent) Hidden
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
FileZilla Client 3.10.2 (HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\FileZilla Client) (Version: 3.10.2 - Tim Kosse)
Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden
Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\Google Chrome) (Version: 43.0.2357.130 - Google Inc.)
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM\...\{F9E399CB-046F-45FD-A67F-CF399E2128E4}) (Version: 4.2.9.1 - Hewlett-Packard Company)
HP CoolSense (HKLM-x32\...\{E2C8D0C2-1C97-4C05-939A-5B13A0FE655C}) (Version: 2.20.31 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{EDA2B6DE-C67C-4FD7-AF6A-9D79E002707C}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent)
HP Launch Box (HKLM\...\{5A847522-375C-4D05-BD3D-88C450CC047F}) (Version: 1.1.5 - Hewlett-Packard Company)
HP On Screen Display (HKLM-x32\...\{ED1BD69A-07E3-418C-91F1-D856582581BF}) (Version: 1.3.5 - Hewlett-Packard Company)
HP Power Manager (HKLM-x32\...\{D8BCE5B9-67CF-4F3F-93AE-3ACC754C72EB}) (Version: 1.4.7 - Hewlett-Packard Company)
HP Quick Launch (HKLM-x32\...\{E5823036-6F09-4D0A-B05C-E2BAA129288A}) (Version: 3.0.6 - Hewlett-Packard Company)
HP Security Assistant (HKLM\...\{ED6CD3AC-616B-4B20-BCF3-6E637B92A5AD}) (Version: 3.0.4 - Hewlett-Packard Company)
HP Setup (HKLM-x32\...\{F5E7D9AF-60F6-4A30-87E3-4EA94D322CE1}) (Version: 9.0.15109.3899 - Hewlett-Packard Company)
HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.2.14901.3869 - Hewlett-Packard Company)
HP Software Framework (HKLM-x32\...\{98D5A5FA-1AA3-4CBE-B26C-A737E20F8A6D}) (Version: 4.6.10.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6381.0 - IDT)
Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.0.1351 - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2618 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{6199B534-A1B6-46ED-873B-97B0ECF8F81E}) (Version: 1.23.216.0 - Intel Corporation)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Jewel Quest II (x32 Version: 2.2.0.97 - WildTangent) Hidden
Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden
LavasoftTcpService (x32 Version: 2.3.4.7 - Lavasoft) Hidden
Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.2 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden
opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden
Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
PDF Settings CC (x32 Version: 12.0 - Adobe Systems Incorporated) Hidden
Pinnacle VideoSpin (HKLM-x32\...\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}) (Version: 2.0.0.669 - Pinnacle Systems)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
PrivDog (HKLM\...\{C01D249F-23DA-45B1-A5FF-12ECD647D5C6}) (Version: 3.0.108.0 - PrivDog.com)
PrivDog 2 Legacy Browser Plug-ins (HKLM-x32\...\PrivDog) (Version: 2.2.0.14 - privdog.com)
Ralink RT5390R 802.11b/g/n 1x1 Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 3.2.13.0 - Ralink)
Ranch Rush 2 - Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.48.823.2011 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.29004 - Realtek Semiconductor Corp.)
Serena Prototype Composer 3.3 Community Edition (HKLM-x32\...\{F614D4D3-F125-4AF1-9055-116AE2B2974F}) (Version: 3.3 - Serena Software, Inc.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated)
TomTom HOME (HKLM-x32\...\{0E09BE17-EDEA-42CA-8974-42A587F51510}) (Version: 2.9.8 - Nom de votre société)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden
Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{DD51BA84-F589-4939-B5FE-5538B3DCC12E}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft)
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
VideoPad - Logiciel de montage vidéo (HKLM-x32\...\VideoPad) (Version: 3.35 - NCH Software)
Virtual Families (x32 Version: 2.2.0.98 - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Web Companion (HKLM-x32\...\{88B10E3E-8911-4FAC-8663-CCF6E33C58B3}_WebCompanion) (Version: 2.0.1025.2130 - Lavasoft)
Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden
WildTangent Games App (HP Games) (x32 Version: 4.0.5.32 - WildTangent) Hidden
Windows Movie Maker 2.6 (HKLM-x32\...\{B3DAF54F-DB25-4586-9EF1-96D24BB14088}) (Version: 2.6.4037.0 - Microsoft Corporation)
WinRAR 5.01 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
Wuala (HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\Wuala) (Version: 1.0.444.0 - LaCie)
Wuala CBFS (HKLM-x32\...\Wuala CBFS) (Version: 3.2.107.0 - LaCie)
Wuala OverlayIcons (HKLM-x32\...\Wuala OverlayIcons) (Version: 1.0.0.2 - LaCie)
ZHPDiag 2013 (HKLM-x32\...\ZHPDiag_is1) (Version: 2013 - Nicolas Coolman)
Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Angélique\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Angélique\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.)

==================== Restore Points =========================

29-06-2015 22:15:46 Fin de désinfection

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-04-03 00:11 - 2015-04-03 00:11 - 00000000 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {05DCC3E5-8953-40D3-942A-17AEDF90EF64} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000Core => C:\Users\Angélique\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {075315BF-0701-4448-8D89-02E3A62DD77F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {1780B69D-36C7-48D9-89DD-EE0F4CE13023} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {1C27FC6A-22E6-420F-990F-B35055C61714} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000UA => C:\Users\Angélique\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.)
Task: {3341ABBB-92C6-4AC2-BA0B-8EDAE5BDD412} - System32\Tasks\SeatSmart => c:\programdata\{b6bbe24c-7ea5-2228-b6bb-be24c7ea8931}\6754531722073326326b.exe <==== ATTENTION
Task: {369BA9B3-A943-4D4F-8684-A577EAA4AE6C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {38BFD0B0-02DE-4717-8F2C-93EDA482DB4D} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {3CA2C5B5-C1CF-41C5-8A45-7C2B8380FEB3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000Core => C:\Users\Angélique\AppData\Local\Google\Update\GoogleUpdate.exe [2014-08-14] (Google Inc.)
Task: {4BBAD0D6-491C-4306-A634-42BCB4AE465A} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-06-11] (COMODO)
Task: {4CD8F720-87C8-4447-9ADA-23EE889D189C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-24] (Adobe Systems Incorporated)
Task: {4DF53F66-3852-4027-B038-C0762F25EB78} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-24] (Adobe Systems Incorporated)
Task: {4F1D6F41-CEF0-4528-861C-49CEBF5A8D25} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-06-11] (COMODO)
Task: {50FB7873-108B-4D86-B3C2-D5D6EBA29A01} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2011-11-28] (CyberLink)
Task: {5B160426-98BE-4D32-B6EC-55ADEF55B722} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {6B8C0C08-2FC0-4D7B-AB44-6AEDCCB23C1C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-06-29] (Hewlett-Packard)
Task: {8657A973-4BF0-4FF7-8E8C-2C0CF1E44DB8} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-06-11] (COMODO)
Task: {94A17F81-F722-4AA5-8A04-555426D99408} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {94E5F092-2194-4339-85BE-28B2A6F18352} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\Dependencies\RemEngine.exe [2011-10-06] ()
Task: {9DED30D9-69EA-4E45-B726-7CB6B72BA0ED} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2013-11-01] (Hewlett-Packard Development Company, L.P.)
Task: {9F58CF5D-B712-46FA-8064-3102779549B3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation)
Task: {A8785B67-AD29-45EE-A5D3-46EBD76C827E} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2014-05-13] (Microsoft Corporation)
Task: {A8E158FA-EBFA-48E6-B872-EDF988024520} - System32\Tasks\EasyStartUp => c:\programdata\{c538cdab-a780-a230-c538-8cdaba7836ae}\5747598752685685205b.exe [2014-06-19] () <==== ATTENTION
Task: {B19F3DBE-6998-419B-8BD3-F8E2B0E34D7D} - System32\Tasks\DataApps => c:\programdata\{9bfb4675-2ad3-b164-9bfb-b46752ad19d4}\6808363708374308594b.exe <==== ATTENTION
Task: {B715A3CB-1396-44F0-B724-2F46345634C9} - System32\Tasks\HPCeeScheduleForAngélique => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {C53E95D4-BC40-4E43-851B-B6E5CA55F8DF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000UA => C:\Users\Angélique\AppData\Local\Google\Update\GoogleUpdate.exe [2014-08-14] (Google Inc.)
Task: {D2D07691-7F90-4542-B815-55214B291F55} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation)
Task: {D44734A5-9CFE-4E3E-B3BC-A3932DF3375D} - System32\Tasks\MagicKeeper => c:\programdata\{80c85644-52c4-abce-80c8-8564452c5911}\9e68.exe <==== ATTENTION
Task: {F109D2F1-1A27-4403-BD3F-F34819C3E787} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-06-11] (COMODO)
Task: {F5BB5EF7-BA6C-4A55-8542-102E1D7DC482} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-06-11] (COMODO)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DataApps.job => c:\programdata\{9bfb4675-2ad3-b164-9bfb-b46752ad19d4}\6808363708374308594b.exe <==== ATTENTION
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000Core.job => C:\Users\Angélique\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000UA.job => C:\Users\Angélique\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\EasyStartUp.job => c:\programdata\{c538cdab-a780-a230-c538-8cdaba7836ae}\5747598752685685205b.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000Core.job => C:\Users\Angélique\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2949683197-2601910962-1459871758-1000UA.job => C:\Users\Angélique\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HPCeeScheduleForAngélique.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\Windows\Tasks\MagicKeeper.job => c:\programdata\{80c85644-52c4-abce-80c8-8564452c5911}\9e68.exe <==== ATTENTION
Task: C:\Windows\Tasks\SeatSmart.job => c:\programdata\{b6bbe24c-7ea5-2228-b6bb-be24c7ea8931}\6754531722073326326b.exe <==== ATTENTION

==================== Loaded Modules (Whitelisted) ==============

2008-09-08 10:19 - 2008-09-08 10:19 - 00022016 _____ () C:\Windows\System32\cl31cl6.dll
2015-06-16 18:56 - 2015-06-13 14:17 - 00803488 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2015-03-02 16:43 - 2015-03-02 16:43 - 00099288 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 23:35 - 2015-01-20 23:35 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2012-01-06 03:24 - 2012-01-06 03:24 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-05-28 11:59 - 2011-12-16 22:37 - 00128280 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
2015-06-24 19:18 - 2015-06-28 22:22 - 09549808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTray.exe
2015-06-24 19:18 - 2015-06-24 19:18 - 03480032 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\RCF.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00122904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_filesystem-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00025616 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_system-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00056856 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_date_time-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00107536 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_thread-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00034832 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_chrono-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00492048 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_locale-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 02266104 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\HtmlFramework.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00868360 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTrayDefaultSkin.dll
2015-06-24 19:14 - 2015-06-28 22:22 - 00716664 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareService.exe
2015-06-24 19:18 - 2015-06-24 19:18 - 12893184 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareServiceKernel.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00911376 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_regex-vc120-mt-1_58.dll
2015-06-24 19:17 - 2015-06-24 19:17 - 00709120 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareActivation.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00474128 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareApplicationUpdater.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00847360 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareGamingMode.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00100848 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareReset.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00122864 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareTime.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01010704 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareDefinitionsUpdater.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00905248 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareDefinitionsUpdaterScheduler.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01146368 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareIgnoreList.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00243200 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareQuarantine.dll
2015-06-24 19:17 - 2015-06-24 19:17 - 01050120 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiMalwareEngine.dll
2015-06-24 19:17 - 2015-06-24 19:17 - 00205832 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiRootkitEngine.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01210376 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScannerHistory.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01337336 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScanner.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00035856 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_timer-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01018888 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareScannerScheduler.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01174544 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareRealTimeProtection.dll
2015-06-24 19:18 - 2015-06-28 22:22 - 00244224 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareIncompatibles.dll
2015-06-24 19:17 - 2015-06-24 19:17 - 00933368 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiSpam.dll
2015-06-24 19:17 - 2015-06-24 19:17 - 00883200 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAntiPhishing.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 03263496 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareParentalControl.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 02984960 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareWebProtection.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01324040 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareEmailProtection.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00059416 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\boost_iostreams-vc120-mt-1_58.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01312264 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareNetworkProtection.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01013744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwarePromo.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00365560 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareFeedback.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 02958352 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareThreatWorkAlliance.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01261560 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwarePinCode.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01014264 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareNotice.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01002488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareAvcEngine.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 01222168 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareRealTimeProtectionHistory.dll
2015-06-24 19:18 - 2015-06-24 19:18 - 00468992 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.7.485.8398\AdAwareStatistics.dll
2015-06-08 14:12 - 2015-06-28 22:23 - 00019816 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WinService.exe
2015-06-08 14:12 - 2015-06-08 14:12 - 00012144 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.Service.Logger.dll
2015-06-08 14:12 - 2015-06-08 14:12 - 00034664 _____ () C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.SearchProtect.WcfService.dll
2015-06-16 18:56 - 2015-06-13 14:16 - 31404192 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2015-06-16 18:56 - 2015-06-10 00:08 - 00155824 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\CCLibrary.exe
2013-04-15 18:39 - 2015-01-09 00:02 - 00067808 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav
2015-06-30 09:51 - 2015-06-30 09:51 - 00043008 _____ () c:\Users\Angélique\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxxnnqe.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00750080 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00047616 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00865280 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00200704 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00726016 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2015-03-04 23:45 - 2015-03-19 09:15 - 00010240 _____ () C:\Users\Angélique\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll
2015-03-02 22:30 - 2015-03-02 22:30 - 00039384 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll
2015-06-16 18:57 - 2015-05-28 21:26 - 00124416 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\fs-ext\build\Release\fs-ext.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00121856 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ref\build\Release\binding.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00122880 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-imslib\node_modules\ffi\build\Release\ffi_bindings.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00188416 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00085504 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\bufferutil.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00086016 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\ws\build\Release\validation.node
2015-06-16 18:57 - 2015-05-28 21:26 - 00081408 ____N () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCLibrary\js\node_modules\idle-gc\build\Release\idle-gc.node
2013-05-28 11:59 - 2011-12-16 20:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Windows\system32\acmigration.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\adtschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\advapi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aeinv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aepdu.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aepic.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\aitstatic.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\apisetschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidcertstorecheck.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidpolicyconverter.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appidsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\appraiser.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\atmfd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\atmlib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\audiodg.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AudioEng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AUDIOKSE.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\AudioSes.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\audiosrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\auditpol.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\blackbox.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\clfs.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\clfsw32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\comctl32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\conhost.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\credssp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\crypt32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptnet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\cryptui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\csrsrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dciman32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\devinv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\diagtrack.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\diskperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\drmmgrtn.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\drmv2clt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxmasf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxtmsft.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\dxtrans.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\EncDump.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\evr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\fontsub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\fsquirt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\gdi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\GEARAspi64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\generaltel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Hibiki.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ie4uinit.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieapfltr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\iedkcs32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieetwcollector.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieetwcollectorres.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieetwproxystub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieframe.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\iernonce.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\iertutil.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\iesetup.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ieUnatt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\inetcpl.cpl:$CmdTcID
AlternateDataStreams: C:\Windows\system32\invagent.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\JavaScriptCollectionAgent.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jscript9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jscript9diag.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\jsproxy.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\kerberos.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\kernel32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\KernelBase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\logman.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lpk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lsasrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\lsass.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mferror.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfplat.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfpmp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mfps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msaudite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msctf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msdxm.ocx:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msfeeds.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshtml.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\MshtmlDac.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshtmled.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mshtmlmedia.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msmmsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msnetobj.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msobjs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msrating.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\MsRdpWebAccess.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msscp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\MsSpellCheckingFacility.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mstsc.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\mstscax.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msv1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\msxml3r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ncrypt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\nlasvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntdll.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntoskrnl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ntvdm64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\oleaut32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcadm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcaevts.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcalua.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcasvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\pcawrk.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\perftrack.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\powertracker.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\profsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\qdvd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\quartz.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdpcorets.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdpendp_winip.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\RdpGroupPolicyExtension.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdpudd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rdvidcrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\relog.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rrinstaller.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\rstrui.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\scesrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\schannel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sechost.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\secur32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\setbcdlocale.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\shell32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\smss.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\spwmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\srclient.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\srcore.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sspicli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\sspisrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\SynCOM.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\SynCtrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\SynTPAPI.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\SynTPCo9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tdh.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tracerpt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\tsgqec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TSpkg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TsUsbGDCoInstaller.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\TSWbPrxy.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\typeperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\ubpm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\urlmon.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\UtcResources.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\vbscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wdi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wdigest.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\win32k.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WindowsCodecs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wininet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winload.efi:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winload.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winresume.efi:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WinSetupUI.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\winsrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wintrust.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wksprt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wksprtPS.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmdrmsdk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\WMPhoto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wmploc.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64cpu.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wow64win.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wu.upgrade.ps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuapp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuauclt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuaueng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wucltux.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wudriver.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wups.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wups2.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\wuwebv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\adtschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\advapi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\apisetschema.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\appidapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\atmfd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\atmlib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AudioEng.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AUDIOKSE.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\AudioSes.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\auditpol.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\blackbox.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\clfsw32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\comctl32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\credssp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\crypt32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptnet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptsp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptsvc.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\cryptui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dciman32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\diskperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\drmmgrtn.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\drmv2clt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxmasf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxtmsft.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\dxtrans.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\evr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerApp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\fontsub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\gdi32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\GEARAspi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieapfltr.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\iedkcs32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieetwproxystub.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieframe.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\iernonce.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\iertutil.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\iesetup.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieui.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ieUnatt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\inetcpl.cpl:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\instnm.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jscript9.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jscript9diag.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\jsproxy.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\kerberos.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\kernel32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\KernelBase.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\logman.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\lpk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mferror.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfplat.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfpmp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mfps.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msaudite.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msctf.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msdxm.ocx:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msfeeds.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshtml.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\MshtmlDac.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshtmled.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mshtmlmedia.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msnetobj.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msobjs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msrating.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\MsRdpWebAccess.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msscp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mstsc.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\mstscax.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msv1_0.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml3.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\msxml3r.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ncrypt.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ncsi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\nlaapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntdll.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntkrnlpa.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntoskrnl.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntvdm64.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ntwdblib.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\oleaut32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\qdvd.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\quartz.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rdpendp_winip.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rdvidcrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\relog.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\rrinstaller.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\scesrv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\schannel.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\sechost.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\secur32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\setup16.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\shell32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\spwmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\srclient.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\sspicli.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\SynCOM.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\SynCtrl.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\SynTPCOM.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\SynTPEnhPS.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tdh.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tracerpt.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\tsgqec.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\TSpkg.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\typeperf.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\ubpm.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\urlmon.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\user.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\vbscript.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wdi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wdigest.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WindowsCodecs.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wininet.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wintrust.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wksprtPS.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmdrmsdk.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmp.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\WMPhoto.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wmploc.DLL:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wow32.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuapi.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuapp.exe:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wudriver.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wups.dll:$CmdTcID
AlternateDataStreams: C:\Windows\SysWOW64\wuwebv.dll:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\appid.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\browserMon.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\bthenum.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\bthpan.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\bthport.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\BTHUSB.SYS:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\cng.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\GEARAspiWDM.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\HECIx64.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\http.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\ksecdd.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\ksecpkg.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mountmgr.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\mrxdav.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\PEAuth.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\rdpvideominiport.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\rfcomm.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\SynTP.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\TsUsbFlt.sys:$CmdTcID
AlternateDataStreams: C:\Windows\system32\Drivers\TsUsbGD.sys:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Desktop\Café.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Desktop\FRST64.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Desktop\FRST64.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Desktop\Menu-à-imprimer-Régime-Thonon-PDF.png:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\10258158_1391719167801011_3417290487215668611_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11007709_10152631480025896_5926002_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11064591_743777639068918_1440965422221003219_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11205997_957513147613373_7667236549245638564_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11210402_10152707623952827_8905599009238773043_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11227620_666712470125534_2532634350445805722_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\11329770_10206196252682939_1156610587371213064_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\18896_1445319902436303_446238714002339278_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\1957648_10152784922517146_6039766657475133484_o.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\20150401_formulaire_emploi_saisonnier_federal_mdr.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\20150401_formulaire_emploi_saisonnier_idef.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\20985_10206669693039729_6739433743446267568_n.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\294_fichier.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\ad-aware-546-jetelecharge.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\ad-aware-546-jetelecharge.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\aku_kamu.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Annonce_Emploi_Administratrice_de_production.odt:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\AVA_02_101398418_604000130459 (1).pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\AVA_02_101398418_604000130459 (2).pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\AVA_02_101398418_604000130459.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\bilan_2014_du_marche_de_la_musique_enregistree.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\billetimprimable1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\BoardingPass.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CGV-RADIO-IDF-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Chiffres_Clés_du_Rhône_2014-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Coldplay-- Clocks.mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Colombia.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\COMCOM (1).doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\COMCOM.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Contrat de professionalisation.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CP 126 000 Radio_Janvier-Mars 2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CPEDN.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CreativeCloudSet-Up (1).exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\CreativeCloudSet-Up (1).exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Cumbia Colombiana- La Zenaida- Armando Hernandez.mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CV Mylène DELBOURG.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CVneutreajourmai15.rtf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\CV_cinefabrique1.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Denis Acte 2.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Dieu_dans_sa_vie.pps:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Dossier final.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\DOSSIER-AUTO-ECOLE (1).pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\dossierpreselectionsurfacepro3.ppt:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\ebook-plus-prospects.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\EFAP TASSIN LA DEMI-LUNE.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\ENTRAINEMENT ETUDE DE CAS _ PETIT NAVIRE.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\entretien E4-- - copie.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Famille Bastian 2015 (1).JPG:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Famille Bastian 2015.JPG:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\FICHE DE POSTE CHARGE DE COMMUNICATION.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\fiche_castingv2_41167-30738.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\FileZilla_3.10.2_win32-setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\FileZilla_3.10.2_win32-setup.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\guide_organisateur_evenement.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\hippodrome 001.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\hwmonitor-portable_1-27_fr_192642.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Idees vrac.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\image1.JPG:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\img-602135034-0001.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\IMG_0744.MOV:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\IMG_1160.JPG:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\itunes6464setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\itunes6464setup.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\justificatif_d_abonnement.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\J_suis_pas_dupe.mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Kit_contrat_pro_MMI.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\LA-CHAINE-GRAPHIQUE-_-CLAIRE-REGNIER.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Let try again_22-03-2015.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\lettre-attestation-honneur-hebergement-gratuit.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\lettre-attestation-honneur-hebergement-gratuit.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Let_try_again_03-22-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Liste+SMAC+au+15-09-2014.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\localhost-boutique-argos.sql.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\l_achat_d_espace.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Madame Audilia SANCHESArbent.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\mbam-setup-2.1.6.1022.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\mbam-setup-2.1.6.1022.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\MicrosoftFixit50267.msi:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\MM26_FR.msi:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Monde-des-affaires.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\NXSetup_Vista(x86).zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\One T Cool T The magic key (Official Music Video).mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\OrbitDownloaderSetup2-8-11.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\OrbitDownloaderSetup2-8-11.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\ordre passage jury anglais E4.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Paul Baloche - Louez Adonaï lyrics.flv:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\pieces jointes_22_05_2015.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\pieces jointes_23_04_2015.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\pieces jointes_24_03_2015.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\pjjoint_uploader.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Planning Alternance SP5 octobre 2015-2016.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Planning grand oral.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Polaroid_Frame.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Popcorn-Time-0.3.7.2-Setup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\Popcorn-Time-0.3.7.2-Setup.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Poste stagiaire comm BEB 2015.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Projet de mémoire - Plateforme de financement participatif spécialisée dans la musique_28-03-2015.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Projet de mémoire - Plateforme de financement participatif spécialisée dans la musique_29-03-2015.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\PrototypeComposer332.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Rapport-Culture-et-numerique-AP-Avril-2011.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\rapport__22_03_15_03-22-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Rear-View-demo.mp3.mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\reconcertmoutier.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Rendu-MarketingPersonneldocx (1).jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Rendu-MarketingPersonneldocx (2).jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Rendu-MarketingPersonneldocx.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\RIB.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Récépissé.jpg:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Split-Mind-demo.mp3.mp3:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Subvention_affectée_à_un_projet_d'investissement_2015.doc:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Tarifs+-+Europe+1+-+2015+4+mai.xls:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Tarifs-internet-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Tarifs-NRJ-Global-Mai-2015.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\TaxeHabitationMelody2014_1.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\TomTomHOME2winlatest.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\TomTomHOME2winlatest.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\TON NOM EST GRAND..flv:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\TrakAx_Installer_3_01_1.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\TrakAx_Installer_3_01_1.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Utiliser adword quand on est pauvre, paresseux et malin.zip:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\videospin_2_0_setup.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\Volontariat_Service_Civique_Cinéma.docx:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\wahoosetup.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\wahoosetup.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Downloads\ZHPCleaner.exe:$CmdTcID
AlternateDataStreams: C:\Users\Angélique\Downloads\ZHPCleaner.exe:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Documents\assurance.pdf:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Documents\BNCkTquCMAE5Urs.jpg-large:$CmdZnID
AlternateDataStreams: C:\Users\Angélique\Documents\Partenaires.indd:com.dropbox.attributes

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\...\webcompanion.com -> hxxp://webcompanion.com


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2949683197-2601910962-1459871758-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Angélique\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{839F4011-2120-433D-9FD8-AB55EEE6E0F8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{90477691-59CE-441F-9A9E-4B1D62A342CD}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe
FirewallRules: [{459679AD-C286-47E8-B918-BE153B5460EF}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe
FirewallRules: [TCP Query User{EB2F9F90-9B9E-4E1B-ADFE-B8AD23BA4365}C:\users\angélique\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaoweb.exe
FirewallRules: [UDP Query User{D2EF7C90-8BDE-46C2-BC2D-C3BABF86D064}C:\users\angélique\appdata\roaming\cacaoweb\cacaoweb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaoweb.exe
FirewallRules: [TCP Query User{F5A60A8E-E4E0-46C4-BC6B-9BAABA9A366F}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe32c3d.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe32c3d.exe
FirewallRules: [UDP Query User{12C1D024-40CD-42AC-8934-B31A26358CC4}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe32c3d.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe32c3d.exe
FirewallRules: [TCP Query User{E537C72C-8AC1-4E96-833B-F0AD119BE7BE}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewb88dee.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewb88dee.exe
FirewallRules: [UDP Query User{FB4F62A6-4E25-480D-B566-17F540D67BFF}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewb88dee.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewb88dee.exe
FirewallRules: [{0DA3CA79-6D4C-45B8-A13A-61111494F5CB}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{929F7AA1-9847-47B2-98E6-A8522660DE44}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{D5F26BBD-1A20-42EC-9726-7FC8872C147C}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{EA32ABA2-5487-458B-8257-C14CCBF64381}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{DE4F7F33-4EC8-4B52-990E-E10668DBA549}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{08FA2F7C-590F-46A7-A93F-34E005594C15}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{EEF3F952-AC25-4AE2-81C7-97566CADA12E}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{F5CC1F46-3768-46FC-995C-C5FEE074751D}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{529F0095-B759-49C4-9FE0-ED217A6F27DC}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{63C0E090-D01C-42C2-8C23-1A146484D682}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe
FirewallRules: [{4A3335F5-D166-4D3E-A2A3-795DB7EB1695}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{ECC0DD09-B8B2-47E0-A711-BF842958EF9C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{B53E277B-3FA3-4E90-A301-E47616AE1C86}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew239472.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew239472.exe
FirewallRules: [UDP Query User{A3F24B96-D567-4F6F-9D23-60A3EFB66339}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew239472.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew239472.exe
FirewallRules: [TCP Query User{CDE27922-A2F5-4901-8037-9CB51D6AD952}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew55666a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew55666a.exe
FirewallRules: [UDP Query User{902ABEE7-2F3B-4F44-AD04-66A1B26EDEE1}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew55666a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew55666a.exe
FirewallRules: [TCP Query User{98E0D095-2205-4974-9D76-0D78056BB1C9}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1e8db0.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1e8db0.exe
FirewallRules: [UDP Query User{ED23C94C-9189-4251-A405-30ADA8B952CD}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1e8db0.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1e8db0.exe
FirewallRules: [TCP Query User{CFB05318-CF2F-4D16-B09F-80771E972BE1}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew6dbf02.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew6dbf02.exe
FirewallRules: [UDP Query User{B0AAB630-292D-446C-A461-BEA0630FB5F0}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew6dbf02.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew6dbf02.exe
FirewallRules: [TCP Query User{07825D11-96A3-4A73-B536-1590D123695A}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3ea421.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3ea421.exe
FirewallRules: [UDP Query User{A1D8A285-B38E-465C-AC80-3FA936212E4C}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3ea421.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3ea421.exe
FirewallRules: [TCP Query User{24657BB0-7FFE-4835-AD0F-ABD4FD42E4B7}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewfa0edb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewfa0edb.exe
FirewallRules: [UDP Query User{CD316023-1D3E-4D53-8997-6D149D90714A}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewfa0edb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewfa0edb.exe
FirewallRules: [TCP Query User{F1940428-C78E-4684-B66A-44E65B482D34}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1a28df.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1a28df.exe
FirewallRules: [UDP Query User{8E7AE11D-F18C-4DAE-952D-E2FE42112930}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1a28df.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1a28df.exe
FirewallRules: [TCP Query User{116B046A-6651-4810-9AE3-8B6A9F8D2DD2}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew4fab46.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew4fab46.exe
FirewallRules: [UDP Query User{6DB1F3FB-F060-41CC-A305-C55FA21BDDC9}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew4fab46.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew4fab46.exe
FirewallRules: [TCP Query User{5824736F-B4F1-4B93-91E7-B748E368DACD}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1d81cd.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1d81cd.exe
FirewallRules: [UDP Query User{CB638EDA-EC1F-4EA2-B8A3-DDD4164767A2}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1d81cd.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1d81cd.exe
FirewallRules: [TCP Query User{121B73A8-394A-4CAD-817F-8E782D635238}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew599a12.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew599a12.exe
FirewallRules: [UDP Query User{9AA3EF50-473E-41B2-A76E-5552DBBDC210}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew599a12.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew599a12.exe
FirewallRules: [TCP Query User{BC39641B-7EAF-447B-9452-78C7CD14F4CA}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewabb69d.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewabb69d.exe
FirewallRules: [UDP Query User{7FC376FD-02CC-4C09-975D-EE6C043F45B5}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewabb69d.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewabb69d.exe
FirewallRules: [TCP Query User{CE2BB9A4-B031-4A3F-ABC3-26140502C6DB}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew22bc79.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew22bc79.exe
FirewallRules: [UDP Query User{16FCB4EB-253F-4FC6-873E-DFC537F9F0EA}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew22bc79.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew22bc79.exe
FirewallRules: [TCP Query User{7EAD2EA9-71E3-438C-BEA8-0D45B7E70948}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew865b58.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew865b58.exe
FirewallRules: [UDP Query User{C86C0DAF-47CF-425C-A022-DDADE00E2E20}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew865b58.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew865b58.exe
FirewallRules: [TCP Query User{D822BEBA-AD4F-4DFB-8648-1ABFD255113A}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1b7229.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1b7229.exe
FirewallRules: [UDP Query User{9C7B54B9-C938-4CAE-91DF-C9BA295874B3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1b7229.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew1b7229.exe
FirewallRules: [TCP Query User{B4A16D86-D4CD-47D0-8B74-11E83ACB41E0}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew73b32f.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew73b32f.exe
FirewallRules: [UDP Query User{A5908E9A-DCE1-4FCE-A195-0B7FA48445E2}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew73b32f.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew73b32f.exe
FirewallRules: [TCP Query User{4FC9DBB5-E7C4-4DB2-8E91-105021336192}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844408.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844408.exe
FirewallRules: [UDP Query User{36955619-87F4-4383-BDF9-46A8E29B72AC}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844408.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844408.exe
FirewallRules: [TCP Query User{06EF5BBC-8557-4EFB-8AD1-46AEA9043026}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew7d28e7.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew7d28e7.exe
FirewallRules: [UDP Query User{84E9F74B-982A-4509-B904-0D9569969BA3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew7d28e7.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew7d28e7.exe
FirewallRules: [TCP Query User{8D47CBEA-7609-4B09-9A6C-8D0EC200C4D3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2f8fa8.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2f8fa8.exe
FirewallRules: [UDP Query User{D457B7BD-0AED-45D1-A5F5-AF2ED4F2EC6E}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2f8fa8.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2f8fa8.exe
FirewallRules: [TCP Query User{8D56C2A9-6694-4D54-AC6E-CE678AD40B0A}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewf348d1.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewf348d1.exe
FirewallRules: [UDP Query User{226A7EA6-4A11-4920-A69B-7655ADBBA2B0}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewf348d1.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewf348d1.exe
FirewallRules: [TCP Query User{9939876F-AEE3-4E32-80AD-0EA9318DB8B7}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew947a77.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew947a77.exe
FirewallRules: [UDP Query User{3711E7E4-52A9-4982-A52B-A374FA9AFA75}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew947a77.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew947a77.exe
FirewallRules: [TCP Query User{909396BC-4124-41D3-9C58-A3612BCE02B2}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewdfabfa.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewdfabfa.exe
FirewallRules: [UDP Query User{B9A2FC44-CDE5-4690-990A-53C7073B138D}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewdfabfa.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewdfabfa.exe
FirewallRules: [TCP Query User{9F085AEF-B164-469A-A0EB-159018DE5A3E}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe28c03.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe28c03.exe
FirewallRules: [UDP Query User{272F4760-C356-4CC4-924B-888726E84518}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe28c03.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewe28c03.exe
FirewallRules: [TCP Query User{7308DB61-C06C-4E70-B8BD-71DAEDA06D81}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew19ee28.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew19ee28.exe
FirewallRules: [UDP Query User{B322F92B-0DFD-4F96-B8D7-2BC86DF23A04}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew19ee28.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew19ee28.exe
FirewallRules: [TCP Query User{9E8BB095-AC1B-49DF-B740-7082993E815B}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew02fadd.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew02fadd.exe
FirewallRules: [UDP Query User{01D8EDF4-1192-4B90-A582-4037B04113A3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew02fadd.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew02fadd.exe
FirewallRules: [TCP Query User{62C53B09-CE1A-4494-99FA-1D1B4AE36740}C:\users\angélique\downloads\cacaoweb (1).exe] => (Allow) C:\users\angélique\downloads\cacaoweb (1).exe
FirewallRules: [UDP Query User{7E34E79A-7B2B-4E2A-85CD-B0B31F7B56E9}C:\users\angélique\downloads\cacaoweb (1).exe] => (Allow) C:\users\angélique\downloads\cacaoweb (1).exe
FirewallRules: [TCP Query User{B5E02436-8F6F-4B36-A03E-734EC5FB06ED}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewa6f026.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewa6f026.exe
FirewallRules: [UDP Query User{04001DE1-CE6D-46D0-9B88-3BB49411203A}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewa6f026.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewa6f026.exe
FirewallRules: [TCP Query User{F259C2A3-B4AF-4177-ACB8-F303B4AE44C8}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3b834a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3b834a.exe
FirewallRules: [UDP Query User{4526B99A-2ACA-4C6A-AE21-A03AB4D996AC}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3b834a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3b834a.exe
FirewallRules: [TCP Query User{07338812-5823-4628-AE59-46D873107890}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewcef2cc.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewcef2cc.exe
FirewallRules: [UDP Query User{78677DF4-D665-4B50-A878-0BCE9E235B25}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewcef2cc.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewcef2cc.exe
FirewallRules: [TCP Query User{52E5E66E-26B6-4D2D-8E5B-B5935C54FF40}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew5dd919.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew5dd919.exe
FirewallRules: [UDP Query User{4199FCFA-C380-4EC6-A49F-DCC12A828105}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew5dd919.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew5dd919.exe
FirewallRules: [TCP Query User{00EBB7C7-0F78-4CA3-9CFF-83AF07F2CA5C}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew754875.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew754875.exe
FirewallRules: [UDP Query User{8F095819-1983-440F-8893-1A4C56A39895}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew754875.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew754875.exe
FirewallRules: [TCP Query User{B4ABB489-A54B-4386-87D2-434B9A0FD66D}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew747a78.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew747a78.exe
FirewallRules: [UDP Query User{89B701BA-55E3-4B15-9229-77B1799AEFA1}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew747a78.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew747a78.exe
FirewallRules: [{945B2C44-9A77-48B7-8FD5-7A3865E906FA}] => (Allow) C:\Users\Angélique\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{9FB44E0C-37C7-4780-8E93-00AC0B9EF445}] => (Allow) C:\Users\Angélique\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{21E279B9-66D4-45BE-A8AB-01AED1F484B1}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3aa247.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3aa247.exe
FirewallRules: [UDP Query User{38D30B95-5A6D-4525-A2FF-426FE6519665}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3aa247.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew3aa247.exe
FirewallRules: [TCP Query User{F8B6861D-E0BB-454F-BC0C-62E405887626}C:\users\angélique\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\angélique\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{8D574C14-4EC6-4CE4-8B99-2E637031B288}C:\users\angélique\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\angélique\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [TCP Query User{9EE39E39-E4B0-42BC-80CF-259CFD2DC973}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbd712a.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbd712a.exe
FirewallRules: [UDP Query User{5E3C273C-79D2-434D-8FCB-4358D6E3B2E3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbd712a.exe] => (Block) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbd712a.exe
FirewallRules: [TCP Query User{BF3A8D40-5A72-4465-81BE-4BE2A22907B9}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew8508d1.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew8508d1.exe
FirewallRules: [UDP Query User{00854056-8156-4062-AE1E-8D7DC6301217}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew8508d1.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew8508d1.exe
FirewallRules: [TCP Query User{DF7CC3E2-E298-4FA3-8CE3-DC5B8630D84D}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew46852e.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew46852e.exe
FirewallRules: [UDP Query User{D88F17CD-DC51-4BD4-8822-347DFC9F0AC1}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew46852e.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew46852e.exe
FirewallRules: [TCP Query User{FD704C90-E79E-4F73-AE64-49D1947639D3}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew09bba4.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew09bba4.exe
FirewallRules: [UDP Query User{D40BEE17-EF77-438B-A84A-E05EC3D52B0C}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew09bba4.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew09bba4.exe
FirewallRules: [TCP Query User{2234E957-619A-4AAB-B068-AB01516B7A72}C:\users\angélique\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\angélique\appdata\roaming\wuala\wuala.exe
FirewallRules: [UDP Query User{27EDCDE2-8A23-4375-AE2B-7633CB5BA774}C:\users\angélique\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\angélique\appdata\roaming\wuala\wuala.exe
FirewallRules: [TCP Query User{C9F6E77E-875F-4653-BD84-5E5E41924CBD}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew88017a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew88017a.exe
FirewallRules: [UDP Query User{E9E7F6F2-439D-4120-A4C8-619A70E5A1FD}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew88017a.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew88017a.exe
FirewallRules: [TCP Query User{10E6B968-ADD9-4436-8FE1-8DFD76F33113}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew625aa0.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew625aa0.exe
FirewallRules: [UDP Query User{5E958875-F5EF-40FB-976A-9F82FCCD27A0}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew625aa0.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew625aa0.exe
FirewallRules: [TCP Query User{15720CAB-9199-4E18-9127-2F66CFE6A077}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844abb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844abb.exe
FirewallRules: [UDP Query User{5E05D455-9160-4CDB-99F1-B480BF3064E6}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844abb.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew844abb.exe
FirewallRules: [TCP Query User{7CBD74AD-76F4-493B-B3EA-ED0BB7988110}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2c6841.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2c6841.exe
FirewallRules: [UDP Query User{D6351FF9-0EF5-4D2A-B33E-AA8B73F99099}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2c6841.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew2c6841.exe
FirewallRules: [TCP Query User{3D8E8115-C5E3-4908-BE80-A7DC458A4B59}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew74da84.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew74da84.exe
FirewallRules: [UDP Query User{811F106A-BB88-43A5-905E-2E7EAD25C387}C:\users\angélique\appdata\roaming\cacaoweb\cacaonew74da84.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonew74da84.exe
FirewallRules: [TCP Query User{6FC997BC-E733-4D47-BA44-742FC9252ECD}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbdc527.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbdc527.exe
FirewallRules: [UDP Query User{E521312C-7A17-41EB-AA44-6ACF445BE0FB}C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbdc527.exe] => (Allow) C:\users\angélique\appdata\roaming\cacaoweb\cacaonewbdc527.exe
FirewallRules: [{A9E1AE02-A27E-4EC2-90E0-AF511D674BD6}] => (Allow) C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [{0D270E0E-275A-4CA7-A18D-B8FD24ED528D}] => (Allow) C:\Program Files (x86)\Xi\NetXfer\NetTransport.exe
FirewallRules: [{7FAD9CFC-F305-4836-8FC6-A0CFF5737656}] => (Allow) C:\Program Files (x86)\Xi\NetXfer\FTPTransport.exe
FirewallRules: [{9DE2B0F0-4A1A-40EA-851E-03D5C8D9BDF9}] => (Allow) C:\Program Files (x86)\Xi\NetXfer\FTPTransport.exe
FirewallRules: [TCP Query User{84CDC0F0-2FDF-4800-A1ED-F71B0A37A5BB}C:\program files (x86)\orbitdownloader\orbitnet.exe] => (Allow) C:\program files (x86)\orbitdownloader\orbitnet.exe
FirewallRules: [UDP Query User{A9AA8C6F-C162-4835-820C-4528824BF720}C:\program files (x86)\orbitdownloader\orbitnet.exe] => (Allow) C:\program files (x86)\orbitdownloader\orbitnet.exe
FirewallRules: [TCP Query User{29B6E1A5-EA9E-4E99-B890-5F571F30275E}C:\users\angélique\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\angélique\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [UDP Query User{76DF81C6-CF48-47B2-AF10-AED2AD285389}C:\users\angélique\appdata\local\popcorn time\node-webkit\popcorn time.exe] => (Allow) C:\users\angélique\appdata\local\popcorn time\node-webkit\popcorn time.exe
FirewallRules: [{618AEC32-63B0-458C-9EE6-AB40E7A3C1F7}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{89272CE3-9A9B-4550-B585-BC901AA048FC}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [{7B509C9F-53C1-40D0-807D-F420520A77AC}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\RM.exe
FirewallRules: [{D5218FF6-6E17-4955-80FC-CB490FAB78CB}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{906CDC38-0272-4A10-9AC0-B8AA5532F643}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\umi.exe
FirewallRules: [{B99B07D4-80A0-42C6-BC30-2EA15B662905}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{FE956FAF-E736-4861-9AB9-6C4E484C7F31}] => (Allow) C:\Program Files (x86)\Pinnacle\VideoSpin\Programs\VideoSpin.exe
FirewallRules: [{17F3190E-4976-4C14-BBC0-D7F496766A0A}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe

==================== Faulty Device Manager Devices =============

Name: wsfd_1_10_0_17
Description: wsfd_1_10_0_17
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: wsfd_1_10_0_17
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft Teredo Tunneling Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4053530

Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4053530

Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4052532

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4052532

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4051533

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4051533

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 10:33:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2168


System errors:
=============
Error: (06/30/2015 10:02:08 AM) (Source: Microsoft-Windows-CorruptedFileRecovery-Server) (EventID: 10) (User: AUTORITE NT)
Description: Le système de fichiers C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll est peut-être endommagé, mais Windows n’a pas pu déterminer si le fichier était réellement endommagé (code d’erreur 2147943517). Aucune action de réparation n’a été entreprise. Exécutez la commande « sfc /scannow » à une invite de commandes d’administration pour vérifier s’il y a des erreurs et pour réparer le fichier si nécessaire.

Error: (06/30/2015 09:59:52 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Le service Windows Update est en attente de démarrage.

Error: (06/30/2015 09:56:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Intel(R) Rapid Storage Technology n’a pas pu démarrer en raison de l’erreur :
%%1053

Error: (06/30/2015 09:56:25 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Intel(R) Rapid Storage Technology.

Error: (06/30/2015 09:53:53 AM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger :
wsfd_1_10_0_17

Error: (06/30/2015 09:51:17 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Privacy Content Firewall n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/30/2015 02:25:29 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {078AEF33-C48A-49F7-AFF3-A0EE810BFE7C}

Error: (06/29/2015 10:12:35 PM) (Source: Microsoft-Windows-CorruptedFileRecovery-Server) (EventID: 10) (User: AUTORITE NT)
Description: Le système de fichiers C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll est peut-être endommagé, mais Windows n’a pas pu déterminer si le fichier était réellement endommagé (code d’erreur 2147943517). Aucune action de réparation n’a été entreprise. Exécutez la commande « sfc /scannow » à une invite de commandes d’administration pour vérifier s’il y a des erreurs et pour réparer le fichier si nécessaire.

Error: (06/29/2015 08:49:30 PM) (Source: Microsoft-Windows-CorruptedFileRecovery-Server) (EventID: 10) (User: AUTORITE NT)
Description: Le système de fichiers C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll est peut-être endommagé, mais Windows n’a pas pu déterminer si le fichier était réellement endommagé (code d’erreur 2147943517). Aucune action de réparation n’a été entreprise. Exécutez la commande « sfc /scannow » à une invite de commandes d’administration pour vérifier s’il y a des erreurs et pour réparer le fichier si nécessaire.

Error: (06/29/2015 08:47:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Intel(R) Management and Security Application User Notification Service n’a pas pu démarrer en raison de l’erreur :
%%1053


Microsoft Office:
=========================
Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4053530

Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4053530

Error: (06/30/2015 11:40:58 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4052532

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4052532

Error: (06/30/2015 11:40:57 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4051533

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4051533

Error: (06/30/2015 11:40:56 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (06/30/2015 10:33:27 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2168


==================== Memory info ===========================

Processor: Intel(R) Pentium(R) CPU B950 @ 2.10GHz
Percentage of memory in use: 49%
Total physical RAM: 3992.36 MB
Available physical RAM: 2004.39 MB
Total Pagefile: 7982.93 MB
Available Pagefile: 5706.97 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:575.91 GB) (Free:286.09 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery) (Fixed) (Total:19.96 GB) (Free:2.1 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive f: (HP_TOOLS) (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: E40CE1E2)
Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=575.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=20 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=103 MB) - (Type=0C)

==================== End of log ============================

Publicité


Signaler le contenu de ce document

Publicité