cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Additional scan result of Farbar Recovery Scan Tool (x64) Version:07-06-2015
Ran by Martin at 2015-06-07 17:25:20
Running from D:\Downloads
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Admin (S-1-5-21-1368335765-2629617713-3704800479-1005 - Administrator - Enabled) => C:\Users\Admin
Administrateur (S-1-5-21-1368335765-2629617713-3704800479-500 - Administrator - Disabled)
HomeGroupUser$ (S-1-5-21-1368335765-2629617713-3704800479-1002 - Limited - Enabled)
Invité (S-1-5-21-1368335765-2629617713-3704800479-501 - Limited - Disabled)
Martin (S-1-5-21-1368335765-2629617713-3704800479-1000 - Administrator - Enabled) => C:\Users\Martin

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {B7ECF8CD-0188-6703-DBA4-AA65C6ACFB0A}
AS: Microsoft Security Essentials (Enabled - Up to date) {0C8D1929-27B2-688D-E114-9117BD2BB1B7}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated)
Adobe Digital Editions (HKLM-x32\...\Digital Editions) (Version: - )
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.11) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated)
Ahead NeroMediaPlayer (HKLM-x32\...\NMPUninstallKey) (Version: - )
Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: - )
Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation)
Dropbox (HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\...\Dropbox) (Version: 3.4.6 - Dropbox, Inc.)
DustApps version 1.7 (HKLM-x32\...\{CE9793E8-C305-45AA-AE10-52EE0ADDED4F}_is1) (Version: 1.7 - Microsoft)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
GamesDesktop 001.618 (HKLM-x32\...\gmsd_fr_618_is1) (Version: - GAMESDESKTOP) <==== ATTENTION
globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION
Google Chrome (HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\...\Google Chrome) (Version: 43.0.2357.81 - Google Inc.)
Google Chrome Packages (HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\...\Google Chrome Packages) (Version: - ) <==== ATTENTION
iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.)
iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.)
Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation)
Microsoft .NET Framework 4.5.2 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0401-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-040C-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-041F-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0816-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.8.204.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft)
Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft)
Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft)
Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft)
Mozilla Firefox 37.0.1 (x86 fr) (HKLM-x32\...\Mozilla Firefox 37.0.1 (x86 fr)) (Version: 37.0.1 - Mozilla)
Outil de notification de cadeaux MSN (HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\...\{CAD9C0EB-457D-49BB-A6AD-389304C38B2A}) (Version: 2.0.0.1 - Microsoft Corporation)
QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.)
SFR Cloud (HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\...\SFR Cloud) (Version: 2.4.4381 - F-Secure Corporation)
shopperz 2.0.0.461 (HKLM\...\{d0174004-bb12-464b-b666-9ba9bdbd750a}_is1) (Version: 2.0.0.461 - shopperz)
Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (HKLM-x32\...\{241E7104-937A-4366-AD57-8FDDDB003939}) (Version: 15.4.5722.2 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
WIKO CINK PEAX Drivers (HKLM-x32\...\{1F7579EC-B217-4ABB-8E0C-17A3BC6CB5CF}) (Version: 1.00 - WIKO)
Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation)
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{00000001-0E3A-4123-8B32-4B68A91E104A}\InprocServer32 -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIBasePlace.dll (Toshiba Corporation)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{00000002-0E3A-4123-8B32-4B68A91E104A}\InprocServer32 -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIBasePlace.dll (Toshiba Corporation)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{00000003-0E3A-4123-8B32-4B68A91E104A}\InprocServer32 -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIBasePlace.dll (Toshiba Corporation)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\Martin\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\Martin\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Martin\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-1368335765-2629617713-3704800479-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Martin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.)

==================== Restore Points =========================

07-06-2015 15:12:59 Uniblue SpeedUpMyPC installation

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {12A8D6A8-377E-4BFF-8C27-3C2946B2CF44} - System32\Tasks\{67D29837-60A8-4D3D-B1D1-6ED09E1C43DA} => pcalua.exe -a C:\Windows\system32\pcwrun.exe -c "C:\Program Files (x86)\POINTSOFT\PDCROIXB\pdcroix.exe"
Task: {19311316-9899-4F51-A664-2142934B61A0} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {25F94960-0A44-4C8C-A277-23F70797D760} - System32\Tasks\avabvbavad => C:\Users\Martin\AppData\Local\avabvbavad\avabvbavad.exe [2015-06-03] () <==== ATTENTION
Task: {282FC9EE-5798-4F55-8411-A2CB4444F7F2} - System32\Tasks\avastBCLRestartS-1-5-21-1368335765-2629617713-3704800479-1000 => Firefox.exe
Task: {30C2C8FE-F127-4EFE-ACE5-07A3D64F62A5} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-16] (Microsoft Corporation)
Task: {38447E15-248F-43D6-B094-480219175AB6} - System32\Tasks\{C925A94E-B416-45D8-8F9C-807D990F9542} => C:\Program Files (x86)\POINTSOFT\PDCROIXB\pdcroix.exe [2003-04-24] ()
Task: {3AE4CBE6-5548-4455-B2AB-9332836EB16E} - System32\Tasks\IWRguGfN => C:\Users\Martin\AppData\Roaming\IWRguGfN.exe [2015-04-20] () <==== ATTENTION
Task: {3B6B31A9-D940-45EF-A3E0-4C7FD0BC6824} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-12-03] (TOSHIBA CORPORATION)
Task: {3B95DC43-0B78-4700-99F8-B6A5AC005AB3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000Core => C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-02-25] (Google Inc.)
Task: {44603EE1-1705-480F-83A5-06168F74AACB} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation)
Task: {4C606A6D-4370-43A9-A6F0-77A07A6264DC} - System32\Tasks\ProPCCleaner_Start => C:\Program Files (x86)\Pro PC Cleaner\ProPCCleaner.exe <==== ATTENTION
Task: {571C13FD-F0D3-4522-AE77-25B4F81A28EF} - System32\Tasks\Irofsieji => C:\ProgramData\Irofsieji\1.0.1.0\saarisol.exe [2015-05-30] ()
Task: {5BE9C7F6-0DC2-4724-BBB5-249BEF64A0C1} - System32\Tasks\Bidaily Synchronize Task[973b] => c:\programdata\{3763f94a-bb7a-7092-3763-3f94abb7e52a}\pricelessinstaller.exe <==== ATTENTION
Task: {63311C02-D754-4F4D-B8FF-CF73E7EB131F} - System32\Tasks\{2EFEF40D-FD5C-4469-88C8-432B82985CDD} => pcalua.exe -a C:\Users\Martin\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=cmi
Task: {6B0BE72F-BE5D-4083-BD07-1CEB9C814882} - System32\Tasks\Bidaily Synchronize Task[3c32] => c:\programdata\{25de45d1-1413-50b4-25de-e45d11411744}\hqghumeaylnlf.exe <==== ATTENTION
Task: {7457EE65-8081-4D9C-A3E8-DFDAA489F597} - System32\Tasks\{BD09700D-F60E-4609-8F6C-26693F1B837F} => pcalua.exe -a "I:\WIKO CINK PEAX Driver.exe" -d I:\
Task: {77042B70-DC4B-41A2-838F-7ECCD3D87BD7} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2011-09-01] (Microsoft Corporation)
Task: {79E57554-6307-4414-A676-F257F1F0C596} - System32\Tasks\{08E118D0-C00B-4690-A072-72C590F9E649} => pcalua.exe -a E:\Setup.exe -d E:\
Task: {863E1C6D-751D-4329-9CE7-C49915AAC0C9} - System32\Tasks\Bidaily Synchronize Task[74c7] => c:\programdata\{7bdf1ed6-fc6b-ce24-7bdf-f1ed6fc67b5b}\hqghumeaylnlf.exe <==== ATTENTION
Task: {895A6305-2BD9-481B-8242-A0638E9A8717} - System32\Tasks\NrKnFX2LWaNtMUQ1R => C:\Users\Martin\AppData\Roaming\NrKnFX2LWaNtMUQ1R.exe [2015-04-20] () <==== ATTENTION
Task: {8D958BDC-9546-4417-8B42-5F645359FB00} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-04-15] (Adobe Systems Incorporated)
Task: {90A550C7-A4F2-437A-AFD8-6442A254DA06} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {91A78045-D665-41AA-B56D-410711198B9E} - System32\Tasks\dr5IDtjoEplwtqvaSEyamOg => C:\Users\Martin\AppData\Roaming\dr5IDtjoEplwtqvaSEyamOg.exe [2015-04-20] () <==== ATTENTION
Task: {9384C1C1-4221-4324-BA7D-3B7B5BA29FC9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe
Task: {95CA7D5B-2C3A-41C3-A3E9-23A599C96A85} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation)
Task: {9CFABA5C-8C3B-40E3-84B1-8C7C8CE4E941} - System32\Tasks\{88C35386-BC94-44CF-896B-1D9FBB68F0DD} => pcalua.exe -a C:\Users\Martin\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=slb2
Task: {9D3B98FC-DE9D-4718-9E33-A1F61A147A42} - System32\Tasks\3FGKuww0 => C:\Users\Martin\AppData\Roaming\3FGKuww0.exe [2015-04-20] () <==== ATTENTION
Task: {A2DA62B7-0D70-484C-8CC2-05AF047FB31E} - System32\Tasks\{621AD00B-D95F-40DF-BD23-BC37B3B682BF} => pcalua.exe -a C:\Users\Martin\Music\Downloads\Vuze_4702_windows.exe -d "C:\Program Files (x86)\Mozilla Firefox"
Task: {A641362E-5DB5-4D94-806A-AFC568E3B218} - System32\Tasks\Vwwbr5x2h => C:\Users\Martin\AppData\Roaming\Vwwbr5x2h.exe [2015-04-20] () <==== ATTENTION
Task: {B666CFFF-CD64-491C-9013-8CEF3208F324} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks
Task: {BE48E7D0-38D0-43F2-9BEA-241578AE2852} - System32\Tasks\mHfWmK8A => C:\Users\Martin\AppData\Roaming\mHfWmK8A.exe [2015-04-20] () <==== ATTENTION
Task: {C5409BD0-0BC7-47FA-B5E3-B335B27C9CBF} - System32\Tasks\{3FC946FE-CCCA-4A3B-BFA7-81B75228CF29} => C:\Program Files (x86)\VideoLAN\VLC\vlc.exe [2015-04-13] (VideoLAN)
Task: {C58BE618-23A8-4490-B215-33920EF1CC85} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {C6973C6C-4DB6-4116-AA84-A7FDB9AAFE91} - System32\Tasks\3xj8Gj2e => C:\Users\Martin\AppData\Roaming\3xj8Gj2e.exe [2015-04-20] () <==== ATTENTION
Task: {CB665424-F5C0-48AE-8CF1-71A9D406F32A} - System32\Tasks\PenWes => C:\Program Files (x86)\PenWes\dnshelper.exe <==== ATTENTION
Task: {D15F2FCF-6F7C-49BC-B0DC-4A0212A8CF65} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation)
Task: {D57CFBF4-7B6C-47C6-887E-DD29BB28CFBE} - System32\Tasks\gz3vO2iZse39FCzq9B => C:\Users\Martin\AppData\Roaming\gz3vO2iZse39FCzq9B.exe [2015-04-20] () <==== ATTENTION
Task: {DCF83F0A-5D76-401C-B6D1-00DD4F412331} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000Core => C:\Users\Martin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: {E18E8E14-4C1F-4051-9586-08EB374D3A5E} - System32\Tasks\PYdo5J1d2YFgaGwWqclhKh => C:\Users\Martin\AppData\Roaming\PYdo5J1d2YFgaGwWqclhKh.exe [2015-04-20] () <==== ATTENTION
Task: {E70C198A-5C75-4A7D-907C-D71B9934C18D} - System32\Tasks\TakAm52o => C:\Users\Martin\AppData\Roaming\TakAm52o.exe [2015-04-20] () <==== ATTENTION
Task: {E817CBEA-C1B8-483C-AFE4-877FFC5D8347} - System32\Tasks\{63C95C8D-0CB2-4726-85D8-4C4E12E409F3} => pcalua.exe -a C:\Users\Martin\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=face
Task: {E919DA35-675D-4006-B1B8-C353B5F31338} - System32\Tasks\ProPCCleaner_Popup => C:\Program Files (x86)\Pro PC Cleaner\Splash.exe <==== ATTENTION
Task: {F35BA9DB-ACC2-462C-8AB2-35A76ECC32DA} - System32\Tasks\Microsoft_Hardware_Launch_rundll32_exe => Rundll32.exe url.dll,OpenURL http://go.microsoft.com/fwlink/?LinkId=116866
Task: {F4EC0DA9-7D4A-4A2D-A1B7-43058432097C} - System32\Tasks\Papuir => C:\Program Files\shopperz\Asyofakaz.bat
Task: {F9D015B2-42CC-48C0-8413-E43ACC85BD20} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000UA => C:\Users\Martin\AppData\Local\Facebook\Update\FacebookUpdate.exe [2012-07-11] (Facebook Inc.)
Task: {FD8BF73F-6EBE-4397-860C-FCD80CA8B3B9} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000UA => C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe [2015-02-25] (Google Inc.)
Task: {FE523DCD-6FA4-4485-A78C-7A19B6EDF5A3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: C:\Windows\Tasks\3FGKuww0.job => C:\Users\Martin\AppData\Roaming\3FGKuww0.exe <==== ATTENTION
Task: C:\Windows\Tasks\3xj8Gj2e.job => C:\Users\Martin\AppData\Roaming\3xj8Gj2e.exe <==== ATTENTION
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Bidaily Synchronize Task[3c32].job => c:\programdata\{25de45d1-1413-50b4-25de-e45d11411744}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[74c7].job => c:\programdata\{7bdf1ed6-fc6b-ce24-7bdf-f1ed6fc67b5b}\hqghumeaylnlf.exe <==== ATTENTION
Task: C:\Windows\Tasks\Bidaily Synchronize Task[973b].job => c:\programdata\{3763f94a-bb7a-7092-3763-3f94abb7e52a}\pricelessinstaller.exe <==== ATTENTION
Task: C:\Windows\Tasks\dr5IDtjoEplwtqvaSEyamOg.job => C:\Users\Martin\AppData\Roaming\dr5IDtjoEplwtqvaSEyamOg.exe <==== ATTENTION
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000Core.job => C:\Users\Martin\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000UA.job => C:\Users\Martin\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000Core.job => C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1368335765-2629617713-3704800479-1000UA.job => C:\Users\Martin\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\gz3vO2iZse39FCzq9B.job => C:\Users\Martin\AppData\Roaming\gz3vO2iZse39FCzq9B.exe <==== ATTENTION
Task: C:\Windows\Tasks\IWRguGfN.job => C:\Users\Martin\AppData\Roaming\IWRguGfN.exe <==== ATTENTION
Task: C:\Windows\Tasks\mHfWmK8A.job => C:\Users\Martin\AppData\Roaming\mHfWmK8A.exe <==== ATTENTION
Task: C:\Windows\Tasks\NrKnFX2LWaNtMUQ1R.job => C:\Users\Martin\AppData\Roaming\NrKnFX2LWaNtMUQ1R.exe <==== ATTENTION
Task: C:\Windows\Tasks\PYdo5J1d2YFgaGwWqclhKh.job => C:\Users\Martin\AppData\Roaming\PYdo5J1d2YFgaGwWqclhKh.exe <==== ATTENTION
Task: C:\Windows\Tasks\TakAm52o.job => C:\Users\Martin\AppData\Roaming\TakAm52o.exe <==== ATTENTION
Task: C:\Windows\Tasks\Vwwbr5x2h.job => C:\Users\Martin\AppData\Roaming\Vwwbr5x2h.exe <==== ATTENTION

==================== Loaded Modules (Whitelisted) ==============

2011-06-27 00:55 - 2010-09-09 17:26 - 00162824 _____ () C:\Windows\System32\GFNEXSrv.exe
2015-05-30 20:16 - 2015-05-30 20:16 - 00157696 _____ () C:\ProgramData\Irofsieji\1.0.1.0\saarisol.exe
2015-05-30 15:00 - 2015-05-30 15:00 - 00349696 _____ () C:\Users\Martin\AppData\Local\E87D4BA2-1432997975-3D61-5CFA-E06995EF894B\cnsm175E.tmp
2015-06-07 15:29 - 2015-06-07 15:29 - 00760320 _____ () C:\Users\Martin\AppData\Roaming\E87D4BA2-1433683753-3D61-5CFA-E06995EF894B\nszC692.tmpfs
2015-06-07 15:36 - 2015-06-07 15:36 - 00147456 _____ () C:\Users\Martin\AppData\Local\E87D4BA2-1433691302-3D61-5CFA-E06995EF894B\snsbDE9D.tmp
2013-04-05 19:44 - 2011-11-03 22:40 - 01230336 _____ () C:\Program Files\LaCie\Desktop Manager\lacie_dm_service.exe
2015-05-30 15:01 - 2015-05-30 15:02 - 00308224 _____ () C:\Users\Martin\AppData\Local\E87D4BA2-1432998005-3D61-5CFA-E06995EF894B\snsr372B.tmp
2015-06-07 15:30 - 2015-06-07 15:30 - 00219136 _____ () C:\Users\Martin\AppData\Roaming\E87D4BA2-1433683753-3D61-5CFA-E06995EF894B\jnspA9A.tmp
2015-06-07 15:30 - 2015-06-07 15:30 - 00166912 _____ () C:\Users\Martin\AppData\Roaming\E87D4BA2-1433683753-3D61-5CFA-E06995EF894B\hnsj2C00.tmp
2015-06-07 16:10 - 2015-06-07 16:10 - 00043008 _____ () c:\users\martin\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmphwuu9g.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00750080 _____ () C:\Users\Martin\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00047616 _____ () C:\Users\Martin\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00865280 _____ () C:\Users\Martin\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-03-04 23:45 - 2015-03-04 23:45 - 00200704 _____ () C:\Users\Martin\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 02326568 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtCore.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00124472 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\libgcc_s_dw2-1.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00977976 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\libstdc++-6.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 03354640 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\icuin52.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 01999488 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\icuuc52.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 23552000 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\icudt52.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00081960 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\sip.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00092712 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_ctypes.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00765992 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\unicodedata.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00103976 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32api.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00112168 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\pywintypes34.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00125480 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32file.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00024616 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32event.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00060968 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_bz2.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00789032 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_hashlib.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00054312 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_socket.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 01211944 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_ssl.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00016936 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\select.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00410664 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\pythoncom34.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00174120 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32gui.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00836648 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32ui.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00112168 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32com.axcontrol.axcontrol.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00022056 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\win32trace.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 02297896 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtGui.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 05687848 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtWidgets.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00279592 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtWebKitWidgets.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00662056 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtNetwork.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00159784 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtWebKit.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00287784 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\PyQt5.QtPrintSupport.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00054312 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_sqlite3.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00144424 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_lzma.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 00019496 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\_multiprocessing.pyd
2014-10-20 10:58 - 2014-10-20 10:58 - 01283624 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\platforms\qwindows.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00058408 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qdds.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00038440 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qgif.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00049704 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qicns.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00038952 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qico.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00516648 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qjp2.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00249384 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qjpeg.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00370216 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qmng.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00034344 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qtga.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00431144 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qtiff.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00033320 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qwbmp.dll
2014-10-20 10:58 - 2014-10-20 10:58 - 00348712 _____ () C:\Users\Martin\AppData\Local\F-Secure\SFR Cloud\Application\2.4.4381\imageformats\qwebp.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00143296 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 02631616 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00554944 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00041920 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00039872 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00086464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll
2015-04-13 15:56 - 2015-04-13 15:56 - 00070675 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 02158528 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00114112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00245184 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00089536 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libvdr_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00055744 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00072128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00593344 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00771520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00131520 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00052672 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\librar_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00145856 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 01566656 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00332736 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 01264064 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_msg_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00069568 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00048576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libwin_hotkeys_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 12001728 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00046528 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 01303488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmkv_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00242112 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00108992 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libavi_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00096704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libasf_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00261056 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libjpeg_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00304576 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libpng_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 01291200 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00754624 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00344512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdts_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaraw_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00052160 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsubstx3g_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00456128 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libflac_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00035776 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libg711_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00157632 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 01549248 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00356288 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liba52_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00028096 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00091584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00031680 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00363456 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libopus_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 00121792 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdvbsub_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 13522368 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libavcodec_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libes_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00032192 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libnuv_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libtta_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00084928 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmpc_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libwav_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00034752 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libcaf_plugin.dll
2015-04-13 15:57 - 2015-04-13 15:57 - 00961472 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libsid_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00137152 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\services_discovery\libsap_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 01532864 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvpx_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00038336 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libscte27_plugin.dll
2015-04-13 16:00 - 2015-04-13 16:00 - 01573824 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libzvbi_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00067008 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsubsdec_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00772544 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\text_renderer\libfreetype_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00038848 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_sse2_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00030144 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_mmx_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00702400 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libswscale_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00022464 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00027072 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 01504704 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00036800 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_sse2_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00125376 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_sse2_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00064448 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_mmx_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00028608 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_mmx_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00027584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i422_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00024512 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libgrey_yuv_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00030656 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i420_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00027584 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00029120 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00037312 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_plugin.dll
2015-04-13 15:58 - 2015-04-13 15:58 - 00024000 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_i420_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00023488 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libscale_plugin.dll
2015-04-13 15:59 - 2015-04-13 15:59 - 00022976 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libyuvp_plugin.dll
2015-05-26 06:42 - 2015-05-22 22:22 - 01281864 _____ () C:\Users\Martin\AppData\Local\Google\Chrome\Application\43.0.2357.81\libglesv2.dll
2015-05-26 06:42 - 2015-05-22 22:22 - 00080712 _____ () C:\Users\Martin\AppData\Local\Google\Chrome\Application\43.0.2357.81\libegl.dll
2015-05-26 06:42 - 2015-05-22 22:22 - 14982472 _____ () C:\Users\Martin\AppData\Local\Google\Chrome\Application\43.0.2357.81\PepperFlash\pepflashplayer.dll
2015-06-07 17:04 - 2015-06-07 17:04 - 01240560 _____ () C:\ProgramData\oBNxidNy\dat\ahPQXVx.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:F0D7EE30

==================== Safe Mode (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1368335765-2629617713-3704800479-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Martin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 109.0.66.10 - 109.0.66.20

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\Services: McComponentHostService => 3
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Toshiba Places Icon Utility.lnk => C:\Windows\pss\Toshiba Places Icon Utility.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Martin^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup
MSCONFIG\startupfolder: C:^Users^Martin^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Outil de notification de cadeaux MSN.lnk => C:\Windows\pss\Outil de notification de cadeaux MSN.lnk.Startup
MSCONFIG\startupreg: ABBYY Screenshot Reader Bonus => "C:\Program Files (x86)\ABBYY FineReader 9.0 Sprint\Bonus.ScreenshotReader.exe" -autorun
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: ApnUpdater => "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
MSCONFIG\startupreg: AppleSyncNotifier => C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: EEventManager => "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
MSCONFIG\startupreg: eMuleAutoStart => C:\Program Files (x86)\eMule\emule.exe -AutoStart
MSCONFIG\startupreg: EPSON SX130 Series => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIHJE.EXE /FU "C:\Windows\TEMP\E_SB5AC.tmp" /EF "HKCU"
MSCONFIG\startupreg: Facebook Update => "C:\Users\Martin\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
MSCONFIG\startupreg: IntelliPoint => "C:\Program Files\Microsoft IntelliPoint\ipoint.exe"
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LaCie Desktop Manager Launcher => "C:\Program Files\LaCie\Desktop Manager\lacie_launcherd.exe"
MSCONFIG\startupreg: LaCie Desktop Manager Startup => C:\Program Files\LaCie\Desktop Manager\LaCieDesktopManagerStatusItem.exe
MSCONFIG\startupreg: MobileDocuments => C:\Program Files (x86)\Common Files\Apple\Internet Services\ubd.exe
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
MSCONFIG\startupreg: NeroCheck => C:\Windows\system32\NeroCheck.exe
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: Raptr => C:\PROGRA~2\Raptr\raptrstub.exe --startup
MSCONFIG\startupreg: RegistryBooster => "C:\Program Files (x86)\Uniblue\RegistryBooster\launcher.exe" delay 20000
MSCONFIG\startupreg: ROC_roc_ssl_v12 => "C:\Program Files (x86)\AVG Secure Search\ROC_roc_ssl_v12.exe" / /PROMPT /CMPID=roc_ssl_v12
MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE3
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: SearchSettings => "C:\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe"
MSCONFIG\startupreg: SpeedUpMyPC => "C:\Program Files (x86)\Uniblue\SpeedUpMyPC\launcher.exe" -d 20000
MSCONFIG\startupreg: StartCCC => "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
MSCONFIG\startupreg: TCrdMain => %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
MSCONFIG\startupreg: TOPI.EXE => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR
MSCONFIG\startupreg: Toshiba Registration => C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
MSCONFIG\startupreg: Toshiba TEMPRO => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
MSCONFIG\startupreg: ToshibaServiceStation => "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
MSCONFIG\startupreg: TosNC => %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe
MSCONFIG\startupreg: TosReelTimeMonitor => %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
MSCONFIG\startupreg: TosSENotify => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
MSCONFIG\startupreg: TosVolRegulator => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe
MSCONFIG\startupreg: TPwrMain => %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EFBEC4B5-075B-41CB-9D80-A363142F0D86}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{63C370EC-759D-4780-9656-9B38BD7ECCF9}] => (Allow) LPort=2869
FirewallRules: [{D53BEFEB-D1CA-4B75-8759-BA9E2F4D3964}] => (Allow) LPort=1900
FirewallRules: [{F1C62D0F-B18B-4880-92B2-BFE78350BA53}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [TCP Query User{ABE4CEA0-781E-4E34-9B06-59B43262EFA4}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [UDP Query User{BE0CD302-5F1C-4FE4-BAEE-F65E72C6CF4A}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [{191B8D01-32AD-4F8A-A5E0-A37578EB2379}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{AEDD1F25-206B-42E1-9145-A83A9F7F5006}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{EF09EFB7-2D11-4620-9E3A-E7A569F5217E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{A1DBDA37-105B-44EA-9EE3-E632E812965F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [TCP Query User{14E4ABBA-B462-435E-B485-2CCCB9E777D1}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{B1C156E9-A34F-46A4-9BDB-95AF9ED8888B}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{1FA809E0-9E93-447E-95E2-97A0A60314FD}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [UDP Query User{AC8B3D86-CB2B-4112-9CE2-80E153BF2304}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe
FirewallRules: [TCP Query User{4AA35107-A9FA-46C2-88CF-BA0FD0E68992}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [UDP Query User{AAAF0127-9CE8-4522-952F-C23312574D58}C:\program files (x86)\epson software\event manager\eeventmanager.exe] => (Allow) C:\program files (x86)\epson software\event manager\eeventmanager.exe
FirewallRules: [TCP Query User{94C0C224-8220-470A-B376-4156A412398E}C:\program files (x86)\vuze\azureus.exe] => (Block) C:\program files (x86)\vuze\azureus.exe
FirewallRules: [UDP Query User{C9249BFD-BB5B-40F7-A6C2-B6C411D64C95}C:\program files (x86)\vuze\azureus.exe] => (Block) C:\program files (x86)\vuze\azureus.exe
FirewallRules: [{B6D93BBD-873C-4BA0-B731-2E7C28401C6C}] => (Allow) C:\Users\Martin\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe
FirewallRules: [{A58D3DEE-C8A9-4892-9038-E28ECC02CDEE}] => (Allow) C:\Program Files (x86)\Movies App\Datamngr\SRTOOL~1\IE\dtuser.exe
FirewallRules: [{689A7123-663F-4311-A6DC-12B6AC1A4355}] => (Allow) C:\Program Files (x86)\Movies App\Datamngr\SRTOOL~1\IE\dtuser.exe
FirewallRules: [{DCE246A2-EAD5-4606-A627-2E2439684A21}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{D5D6CAD6-252B-44E4-A554-5F838B257EA6}] => (Allow) C:\Program Files (x86)\7-Zip\7zFM.exe
FirewallRules: [{E3BE2E81-A4BA-4387-BBA7-884552227B47}] => (Allow) C:\Program Files (x86)\7-Zip\7zFM.exe
FirewallRules: [{D20A404A-3A60-4AAA-A10C-C1F3882685A0}] => (Allow) C:\Program Files (x86)\7-Zip\7zFM.exe
FirewallRules: [{1D876E4C-2159-4BCA-9640-4D387C66B210}] => (Allow) C:\Program Files (x86)\7-Zip\7zFM.exe
FirewallRules: [TCP Query User{9F5237D9-9254-40F0-9FE5-598D6A82399B}C:\program files\wondershare\mobilego pour android\mobilegoservice.exe] => (Allow) C:\program files\wondershare\mobilego pour android\mobilegoservice.exe
FirewallRules: [UDP Query User{65234195-7665-4EA6-B45A-001A54B8EE54}C:\program files\wondershare\mobilego pour android\mobilegoservice.exe] => (Allow) C:\program files\wondershare\mobilego pour android\mobilegoservice.exe
FirewallRules: [{0B024056-C4A6-40FD-9C74-D55DA64DCBD1}] => (Allow) C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{BC0FB952-BBC1-4600-A0BC-003E132F4056}] => (Allow) C:\Users\Martin\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{F2E195C9-DF9A-499A-BF12-35F160F3DA7C}C:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{69970397-3CAF-4C46-9437-7109E9C74A64}C:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\martin\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{E4925A0F-CA9D-4439-AF7C-D9335D0D21E4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{0FF80F67-7A76-4D2B-8B22-187448C4B774}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{CA9E143A-62DF-4DE1-82C4-E32E0591CDEE}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{ABA500BC-086A-452B-A79E-C8770DAE1744}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{0734552F-6015-4B5B-88DB-CF0E5C18CFE7}] => (Allow) C:\Program Files (x86)\Vuze\Azureus.exe
FirewallRules: [{92A88D97-1E70-48B2-88D0-52A6F12AD5CE}] => (Allow) C:\Program Files (x86)\PenWes\dnshelper.exe
FirewallRules: [{169CF114-4D76-4A60-A1FE-05CEB3BAD01B}] => (Allow) C:\Program Files (x86)\PenWes\dnshelper.exe
FirewallRules: [{97F4BC6E-A006-4B25-977D-801981A43C81}] => (Allow) C:\Program Files (x86)\PenWes\dnsservice.exe
FirewallRules: [{948C2129-920B-4154-9684-B0F6FF768A90}] => (Allow) C:\Program Files (x86)\PenWes\dnsservice.exe

==================== Faulty Device Manager Devices =============

Name: scfd_1_10_0_16
Description: scfd_1_10_0_16
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: scfd_1_10_0_16
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: innfd_1_10_0_14
Description: innfd_1_10_0_14
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: innfd_1_10_0_14
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: webTinstMKTN84
Description: webTinstMKTN84
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer:
Service: webTinstMKTN84
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (06/07/2015 04:09:19 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/07/2015 03:54:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante NDSTray.exe, version : 8.0.0.48, horodatage : 0x4cf8869a
Nom du module défaillant : ntdll.dll, version : 6.1.7601.18839, horodatage : 0x553e8808
Code d’exception : 0xc0000005
Décalage d’erreur : 0x0002e0a6
ID du processus défaillant : 0xcf0
Heure de début de l’application défaillante : 0xNDSTray.exe0
Chemin d’accès de l’application défaillante : NDSTray.exe1
Chemin d’accès du module défaillant: NDSTray.exe2
ID de rapport : NDSTray.exe3

Error: (06/07/2015 03:52:56 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/07/2015 03:42:52 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Nom de l’application défaillante IEXPLORE.EXE, version : 11.0.9600.17801, horodatage : 0x5536642c
Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000
Code d’exception : 0xc0000005
Décalage d’erreur : 0x4501fd62
ID du processus défaillant : 0xd2c
Heure de début de l’application défaillante : 0xIEXPLORE.EXE0
Chemin d’accès de l’application défaillante : IEXPLORE.EXE1
Chemin d’accès du module défaillant: IEXPLORE.EXE2
ID de rapport : IEXPLORE.EXE3

Error: (06/07/2015 03:19:05 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/07/2015 03:15:28 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Le programme vlc.exe version 2.2.1.0 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance.

ID de processus : b20

Heure de début : 01d0a123bae7231a

Heure de fin : 30

Chemin d’accès de l’application : C:\Program Files (x86)\VideoLAN\VLC\vlc.exe

ID de rapport : 32a220a2-0d17-11e5-aadb-e06995ef894b

Error: (06/07/2015 03:12:20 PM) (Source: MsiInstaller) (EventID: 10005) (User: Martin-TOSH)
Description: Product: Windows Defender -- You do not need to install this software because Windows Defender is included in Windows Vista. You can access Windows Defender from the Security section of the Windows Control Panel.

Error: (06/07/2015 00:48:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/07/2015 03:33:42 AM) (Source: VSS) (EventID: 8194) (User: )
Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé.
.
Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur.


Opération :
Données du rédacteur en cours de collecte

Contexte :
ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220}
Nom du rédacteur: System Writer
ID d’instance du rédacteur: {156ba1e6-747d-49c9-9604-873e0417ad99}

Error: (06/06/2015 03:50:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (06/07/2015 04:09:18 PM) (Source: Service Control Manager) (EventID: 7026) (User: )
Description: Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger :
innfd_1_10_0_14
scfd_1_10_0_16

Error: (06/07/2015 04:09:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service webTinstMKTN84 n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/07/2015 04:09:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Four Colour Keyword n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/07/2015 04:09:08 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Body Text Paper Tray n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/07/2015 04:09:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Server OCR n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/07/2015 04:09:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service d54b8bbd-6b74-4d90-b801-8120aa8b2438 n’a pas pu démarrer en raison de l’erreur :
%%2

Error: (06/07/2015 04:09:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Le service Apple Mobile Device Service n’a pas pu démarrer en raison de l’erreur :
%%1053

Error: (06/07/2015 04:09:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Apple Mobile Device Service.

Error: (06/07/2015 04:08:56 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service RelaySoft.

Error: (06/07/2015 04:08:23 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: AUTORITE NT)
Description: Le module d’extensibilité WLAN n’a pas pu démarrer.

Chemin d’accès du module : C:\Windows\system32\Rtlihvs.dll
Code d’erreur : 126


Microsoft Office:
=========================

==================== Memory info ===========================

Processor: AMD E-350 Processor
Percentage of memory in use: 66%
Total physical RAM: 3693.48 MB
Available physical RAM: 1237.79 MB
Total Pagefile: 7385.16 MB
Available Pagefile: 4599.38 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (WINDOWS) (Fixed) (Total:297.8 GB) (Free:238.67 GB) NTFS
Drive d: (Data) (Fixed) (Total:297.98 GB) (Free:228.68 GB) NTFS
Drive f: (CLE DOLORES) (Removable) (Total:1.88 GB) (Free:0.93 GB) FAT32
Drive g: (FILMS) (Fixed) (Total:931.28 GB) (Free:905.8 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596.2 GB) (Disk ID: 924FF0D3)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=297.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=298 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 1.9 GB) (Disk ID: 00000000)

Partition: GPT Partition Type.

========================================================
Disk: 2 (Size: 931.5 GB) (Disk ID: 80162601)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=0C)

==================== End of log ============================

Publicité


Signaler le contenu de ce document

Publicité