cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01
Ran by Edouard at 2015-06-29 08:58:31
Running from C:\Users\Edouard\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrateur (S-1-5-21-3827405463-2967377929-2715541128-500 - Administrator - Disabled)
Edouard (S-1-5-21-3827405463-2967377929-2715541128-1001 - Administrator - Enabled) => C:\Users\Edouard
HomeGroupUser$ (S-1-5-21-3827405463-2967377929-2715541128-1005 - Limited - Enabled)
Invité (S-1-5-21-3827405463-2967377929-2715541128-501 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Protection antivirus et antispyware McAfee (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Protection antivirus et antispyware McAfee (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: Pare-feu McAfee (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3012 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated)
Acer Remote (HKLM-x32\...\Acer Remote1.0) (Version: 1.0 - Acer Inc.)
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2021 - Acer Incorporated)
Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.194 - Adobe Systems Incorporated)
Adobe Illustrator CS (HKLM-x32\...\{91A4AD99-69CE-4745-97B7-0E0DFBECFDE5}) (Version: 11 - Adobe Systems, Inc.)
Adobe SVG Viewer 3.0 (HKLM-x32\...\Adobe SVG Viewer) (Version: 3.0 - Adobe Systems, Inc.)
Apple Application Support (HKLM-x32\...\{0C34B801-6AEC-4667-B053-03A67E2D0415}) (Version: 1.0 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}) (Version: 2.1.1.116 - Apple Inc.)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
ConvertHelper 3.1.1 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper)
CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3318_45364 - CyberLink Corp.)
Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden
doPDF (Version: 8.1.923 - Softland) Hidden
doPDF 8 (HKLM-x32\...\{c61b55b1-0524-4fc7-a4d2-6896ae2a2edb}) (Version: 8.1.923 - Softland)
Dropbox (HKU\S-1-5-21-3827405463-2967377929-2715541128-1001\...\Dropbox) (Version: 3.2.9 - Dropbox, Inc.)
Free RAR Extract Frog (HKLM-x32\...\Free RAR Extract Frog) (Version: 6.50 - Philipp Winterberg)
Google Earth Plug-in (HKLM-x32\...\{57BB4801-61C8-4E74-9672-2160728A461E}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
Hotkey Utility (HKLM-x32\...\{A6DC88AD-501A-44BC-884D-57435F972E2C}) (Version: 3.00.3004 - Acer Incorporated)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated)
illiPro (HKLM-x32\...\{23F9B204-12B9-408F-83EE-5C0D021ED43B}) (Version: 16.00 - Legrand)
illiPro (x32 Version: 16.00 - Legrand) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Network Connections 17.2.153.0 (HKLM\...\PROSetDX) (Version: 17.2.153.0 - Intel)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.0.1207 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
LegrandPDFWriter (HKLM\...\LegrandPDFWriter) (Version: - )
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3007 - Acer Incorporated)
Logiciel de base du périphérique HP Officejet Pro 8600 (HKLM\...\{E588CA1D-AD74-4E04-8C53-AD9735C4CA54}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
McAfee Internet Security Suite (HKLM-x32\...\MSC) (Version: 14.0.1076 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.316 - McAfee, Inc.)
Micro Application - 3D Architecte Pro CAD (HKLM-x32\...\{5F648271-D6F7-4967-9771-7C552452A881}) (Version: 14.0 - Micro Application)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{9011040C-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 fr) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 fr)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0.3 - Mozilla)
Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}) (Version: 12.5.00500 - Nero AG)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.2.3.51r2 - Symantec Corporation)
Norton Online Backup ARA (x32 Version: 4.1.0.14 - Symantec Corporation) Hidden
novaPDF 8 add-in for Microsoft Office (x64) (HKLM\...\{9F3FFB12-258E-4BB1-8576-FB5F1F1E039E}) (Version: 8.1.923 - Softland)
novaPDF 8 add-in for Microsoft Office (x86) (HKLM-x32\...\{7C972E62-BC1F-4D1C-BB95-FDB648EF6213}) (Version: 8.1.923 - Softland)
novaPDF 8 Printer Driver (HKLM\...\{69EF6EE5-3506-4E51-B51D-AFEBBC2EDC33}) (Version: 8.1.923 - Softland)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6680 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden
Visual Studio 2005 Tools pour Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version: - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden
Xerox PrintBack (HKLM-x32\...\{1FCCF1F0-1A66-40F3-BEA3-63D8E42FF631}) (Version: 1.2.5.860 - Xerox)
XLPro3 Light (HKU\S-1-5-21-3827405463-2967377929-2715541128-1001\...\{ECAB9BE4-8C28-4D58-B435-BEA355661A26}) (Version: 3.3.07 - Legrand)
ZHPDiag 2015 (HKLM-x32\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3827405463-2967377929-2715541128-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Edouard\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Restore Points =========================

08-06-2015 17:28:15 Windows Update
17-06-2015 07:00:40 Point de contrôle planifié
20-06-2015 21:51:18 DirectX est installé
24-06-2015 08:42:29 Windows Update
27-06-2015 17:32:09 ZHPFix Restore System Point

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 09:25 - 2013-08-22 09:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {066B809B-07D9-4D66-9592-30EB6A09DFAF} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {09860FCA-2874-4434-94CC-687E24680179} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {23726ED5-FCEB-49CC-BC6A-D0787300E3F4} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-01-22] ()
Task: {242D242F-B9E5-4CD8-94F6-209ADC670A2F} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-01-18] (Acer Incorporated)
Task: {393AF0A8-FD4B-44CB-A7B4-0FDE4FCED942} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-06-08] (Microsoft Corporation)
Task: {453E8ECC-969F-46EF-8FF8-42AE5155D3BD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.)
Task: {A7BA212F-5312-41DB-A8C7-465FF3C6F673} - System32\Tasks\doPDF Update => C:\Program Files\Softland\novaPDF 8\Driver\UpdateApplication.exe [2015-01-23] ()
Task: {AAFE67CE-C5F8-4635-AA54-0F3562781170} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2013-01-23] (Acer Incorporated)
Task: {AFD39E08-FA3A-41C6-8ED3-35958E4DA28D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2008-07-30] (Apple Inc.)
Task: {B4FDAF2E-ACB2-47A0-83B1-5C8E8AD0EE56} - System32\Tasks\FaxApplications.exe_{5C469716-9AFD-49AE-A51C-9B79F8BEE48E} => C:\Program Files\HP\HP Officejet Pro 8600\Bin\FaxApplications.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {C12E4806-153B-4DAA-A0F8-01587C24ED54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-15] (Google Inc.)
Task: {C2A80B66-AAD7-4B09-A594-F8285782D5E8} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {DA9208F4-DA62-4013-9C74-BC7C4CE3CAF2} - System32\Tasks\Hotkey Utility => C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [2012-09-20] (Acer Incorporated)
Task: {F23254FC-8A5E-4DC8-8E8D-FDB88BC8A387} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-24] (Adobe Systems Incorporated)
Task: {F83B44E8-B335-4003-A13E-E3C5DDA63879} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2012-09-19] (CyberLink)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (Whitelisted) ==============

2015-05-10 18:45 - 2010-12-10 11:24 - 00087040 _____ () C:\WINDOWS\System32\custmon64.dll
2014-11-08 08:50 - 2014-06-24 12:04 - 00182784 _____ () C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe
2015-01-23 16:45 - 2015-01-23 16:45 - 00137368 _____ () C:\Program Files\Softland\novaPDF 8\Server\AgileDotNetRT64.dll
2015-01-23 16:45 - 2015-01-23 16:45 - 00032032 _____ () C:\Program Files\Softland\novaPDF 8\Server\CryptUtil.dll
2015-01-23 16:45 - 2015-01-23 16:45 - 00026912 _____ () C:\Program Files\Softland\novaPDF 8\Server\WAFServicePlugin.dll
2013-08-16 15:49 - 2012-06-24 22:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3827405463-2967377929-2715541128-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\acer01.jpg
DNS Servers: 192.168.0.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\StartupFolder: => "Adobe Gamma Loader.lnk"
HKLM\...\StartupApproved\StartupFolder: => "Acer Remote.lnk"
HKLM\...\StartupApproved\Run: => "HotKeysCmds"
HKLM\...\StartupApproved\Run: => "Persistence"
HKLM\...\StartupApproved\Run: => "IgfxTray"
HKLM\...\StartupApproved\Run32: => "Norton Online Backup"
HKU\S-1-5-21-3827405463-2967377929-2715541128-1001\...\StartupApproved\StartupFolder: => "Dropbox.lnk"
HKU\S-1-5-21-3827405463-2967377929-2715541128-1001\...\StartupApproved\Run: => "Xerox PrintBack Agent"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{F8CD5E64-2B75-4D84-9EFA-CF51F4E3A511}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{E8567DCC-F6DD-4D73-893E-8668479F2F62}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{56570D6A-7795-44C9-A460-C9DFB47D9465}] => (Allow) C:\Program Files (x86)\Acer Remote\ArcServer.exe
FirewallRules: [{C57D89A2-BB6F-4D28-B530-084FADC56A40}] => (Allow) C:\Program Files (x86)\Acer Remote\ArcServer.exe
FirewallRules: [{E32F83C2-77C5-438A-B9A9-38E7DB895F5E}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{0B45A18F-2214-403F-8839-0AFAA83202FD}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{D0F5ACC5-A4C0-4CC9-80AB-E12E066376A6}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{DAA1B86B-E59D-4FD1-85C4-78B6DAE038BA}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{9276BBAC-BF58-4196-A2EB-A422209E283E}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{B05E777A-5F85-48DC-982D-57AA70E81AFF}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{EA2328C3-5897-4A4B-874E-3BDF97FF1E91}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{4C72E3B6-D972-4F4E-AB70-42C639274A5F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{31445463-B99C-4875-B951-CC5AAFB7B2A8}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{6E4E1397-9DBC-4D4E-B2A1-58351A792AC8}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{1F546477-452B-455B-942C-30DC786A837D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{55A89663-D2D7-4852-A5AC-A5A2D6627BAA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{CE06EA9E-1D70-4B4B-9BE7-5F782F7F5011}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{7B7AF8A5-E182-4628-9C85-9EF65163729C}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{B030D744-4D32-4E77-A1E1-9E318C11E2E9}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{6EE3D439-D223-43D3-9C44-F2453EB9164D}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{D487A3E0-6138-4212-8BB7-201355E5E888}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{C2244498-FC2A-44E3-B5EB-0DED12A091DC}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{F9A517FB-A011-4276-8E47-8085A9531CE9}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{A04D9678-AA86-466B-9E6F-B969C467652A}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{D788FE3B-1CFC-4C1C-B95C-7F502AA5C218}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{D5348174-7650-43ED-9C84-D035021B6A55}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{53474932-B7C8-456F-94E6-F88D1D8E1FCE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{DC0F2765-7121-426A-8CE0-F2C8D1159B1C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{6EB25D0A-E99A-456A-8D8D-273FC5C9FD62}] => (Allow) C:\Users\Edouard\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{E7D5888A-CB0D-46D3-B1B8-29FF1ADC2D6C}] => (Allow) C:\Users\Edouard\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{1A86F4C2-015B-412F-A62A-FEF394FD90C8}] => (Allow) LPort=8501
FirewallRules: [{C0F2E84D-B16B-4309-895D-7603ACFB52E1}] => (Allow) LPort=8501
FirewallRules: [TCP Query User{14EB182E-2A00-461B-8228-090A5EE16B10}C:\program files (x86)\acer remote\arcserver.exe] => (Allow) C:\program files (x86)\acer remote\arcserver.exe
FirewallRules: [UDP Query User{296237EE-3B0E-4471-B52F-8F659398AA0B}C:\program files (x86)\acer remote\arcserver.exe] => (Allow) C:\program files (x86)\acer remote\arcserver.exe
FirewallRules: [TCP Query User{709720DB-D668-4B6F-AAF1-7EA9BEE542D8}C:\users\edouard\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\edouard\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{0D4B882D-B6A5-43C8-92AE-07DE027F0860}C:\users\edouard\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\edouard\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{09FE0E6D-91B2-469B-BFE1-98CCA7528755}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\FaxApplications.exe
FirewallRules: [{86A8AE12-0D46-4378-A8B2-A642B682ABDB}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\DigitalWizards.exe
FirewallRules: [{6B056715-0450-4554-85DA-22D63F80AAD9}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\bin\SendAFax.exe
FirewallRules: [{738D8BBD-DFCA-4A28-BE66-168F153BDA35}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\DeviceSetup.exe
FirewallRules: [{BAFA8C1A-F123-4E23-A860-14FE49E13975}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe
FirewallRules: [{29167041-A790-4D3D-987C-06B407A631E8}] => (Allow) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicatorCom.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/27/2015 06:26:42 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/24/2015 11:45:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante McSvHost.exe, version : 5.0.309.0, horodatage : 0x554ad438
Nom du module défaillant : HOMENE~2.DLL, version : 8.0.446.0, horodatage : 0x5548b7dd
Code d’exception : 0xc0000005
Décalage d’erreur : 0x00000000001096d0
ID du processus défaillant : 0x1298
Heure de début de l’application défaillante : 0xMcSvHost.exe0
Chemin d’accès de l’application défaillante : McSvHost.exe1
Chemin d’accès du module défaillant: McSvHost.exe2
ID de rapport : McSvHost.exe3
Nom complet du package défaillant : McSvHost.exe4
ID de l’application relative au package défaillant : McSvHost.exe5

Error: (06/24/2015 09:27:24 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/23/2015 09:30:10 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/18/2015 01:48:29 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/16/2015 08:06:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante plugin-container.exe, version : 38.0.5.5623, horodatage : 0x5563c49a
Nom du module défaillant : mozalloc.dll, version : 38.0.5.5623, horodatage : 0x5563b229
Code d’exception : 0x80000003
Décalage d’erreur : 0x00001aa1
ID du processus défaillant : 0x1bb8
Heure de début de l’application défaillante : 0xplugin-container.exe0
Chemin d’accès de l’application défaillante : plugin-container.exe1
Chemin d’accès du module défaillant: plugin-container.exe2
ID de rapport : plugin-container.exe3
Nom complet du package défaillant : plugin-container.exe4
ID de l’application relative au package défaillant : plugin-container.exe5

Error: (06/15/2015 11:26:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante vlc.exe, version : 2.2.1.0, horodatage : 0x00000004
Nom du module défaillant : libqt4_plugin.dll, version : 2.2.1.0, horodatage : 0x00020002
Code d’exception : 0x40000015
Décalage d’erreur : 0x007ca10a
ID du processus défaillant : 0xfc0
Heure de début de l’application défaillante : 0xvlc.exe0
Chemin d’accès de l’application défaillante : vlc.exe1
Chemin d’accès du module défaillant: vlc.exe2
ID de rapport : vlc.exe3
Nom complet du package défaillant : vlc.exe4
ID de l’application relative au package défaillant : vlc.exe5

Error: (06/07/2015 11:20:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante vlc.exe, version : 2.2.1.0, horodatage : 0x00000004
Nom du module défaillant : ntdll.dll, version : 6.3.9600.17736, horodatage : 0x550f42c2
Code d’exception : 0xc0000374
Décalage d’erreur : 0x000e5624
ID du processus défaillant : 0xbc4
Heure de début de l’application défaillante : 0xvlc.exe0
Chemin d’accès de l’application défaillante : vlc.exe1
Chemin d’accès du module défaillant: vlc.exe2
ID de rapport : vlc.exe3
Nom complet du package défaillant : vlc.exe4
ID de l’application relative au package défaillant : vlc.exe5

Error: (06/05/2015 04:12:33 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/05/2015 00:13:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante plugin-container.exe, version : 38.0.5.5623, horodatage : 0x5563c49a
Nom du module défaillant : mozalloc.dll, version : 38.0.5.5623, horodatage : 0x5563b229
Code d’exception : 0x80000003
Décalage d’erreur : 0x00001aa1
ID du processus défaillant : 0x684
Heure de début de l’application défaillante : 0xplugin-container.exe0
Chemin d’accès de l’application défaillante : plugin-container.exe1
Chemin d’accès du module défaillant: plugin-container.exe2
ID de rapport : plugin-container.exe3
Nom complet du package défaillant : plugin-container.exe4
ID de l’application relative au package défaillant : plugin-container.exe5


System errors:
=============
Error: (06/29/2015 05:45:21 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (06/29/2015 05:44:51 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (06/29/2015 05:44:27 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORITE NT)
Description: 0x8000002a42\SystemRoot\System32\Config\RegBack\SYSTEM

Error: (06/29/2015 05:36:43 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (06/29/2015 05:36:12 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (06/29/2015 05:36:04 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: AUTORITE NT)
Description: 0x8000002a42\SystemRoot\System32\Config\RegBack\SYSTEM

Error: (06/29/2015 05:13:42 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (06/28/2015 04:54:57 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (06/28/2015 04:54:27 AM) (Source: DCOM) (EventID: 10010) (User: PC_Ed)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (06/27/2015 05:50:34 PM) (Source: Microsoft-Windows-Time-Service) (EventID: 34) (User: AUTORITE NT)
Description: Le service de temps a détecté que l’heure système doit être modifiée de 86773 secondes. Le service de temps ne va pas modifier l’heure système de plus de 54000 secondes. Vérifiez que votre heure et votre fuseau horaire sont corrects et que la source de temps time.windows.com,0x9 (ntp.m|0x9|0.0.0.0:123->104.209.134.106:123) fonctionne correctement.


Microsoft Office:
=========================
Error: (06/27/2015 06:26:42 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/24/2015 11:45:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: McSvHost.exe5.0.309.0554ad438HOMENE~2.DLL8.0.446.05548b7ddc000000500000000001096d0129801d0aef3e558f50eC:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exec:\PROGRA~1\COMMON~1\mcafee\mhn\HOMENE~2.DLLa6f7a9a1-1aec-11e5-be9b-7427eab7590a

Error: (06/24/2015 09:27:24 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/23/2015 09:30:10 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/18/2015 01:48:29 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/16/2015 08:06:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe38.0.5.56235563c49amozalloc.dll38.0.5.56235563b2298000000300001aa11bb801d0a891012b20a1C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dllb8f66da7-1484-11e5-be95-7427eab7590a

Error: (06/15/2015 11:26:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: vlc.exe2.2.1.000000004libqt4_plugin.dll2.2.1.00002000240000015007ca10afc001d0a7e437e23827C:\Program Files (x86)\VideoLAN\VLC\vlc.exeC:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll7aee7590-13d7-11e5-be95-7427eab7590a

Error: (06/07/2015 11:20:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: vlc.exe2.2.1.000000004ntdll.dll6.3.9600.17736550f42c2c0000374000e5624bc401d0a19a1443e5f5C:\Program Files (x86)\VideoLAN\VLC\vlc.exeC:\WINDOWS\SYSTEM32\ntdll.dll5e1bdd8a-0d8d-11e5-be94-7427eab7590a

Error: (06/05/2015 04:12:33 AM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005

Error: (06/05/2015 00:13:52 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: plugin-container.exe38.0.5.56235563c49amozalloc.dll38.0.5.56235563b2298000000300001aa168401d09f4572954977C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll45c17c38-0b39-11e5-be94-7427eab7590a


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i3-3240 CPU @ 3.40GHz
Percentage of memory in use: 39%
Total physical RAM: 3982.8 MB
Available physical RAM: 2411.36 MB
Total Pagefile: 5390.8 MB
Available Pagefile: 2677.38 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:457.33 GB) (Free:414.42 GB) NTFS
Drive d: (DATA) (Fixed) (Total:457.77 GB) (Free:369.88 GB) NTFS
Drive f: (Josee) (Fixed) (Total:465.76 GB) (Free:107.46 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 5055CFFA)

Partition: GPT Partition Type.

========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 3A857DAA)
Partition 1: (Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of log ============================

Publicité


Signaler le contenu de ce document

Publicité