cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþOTL Extras logfile created on: 04/07/2015 01:45:56 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Gerome\Desktop
64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17842)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

3,87 Gb Total Physical Memory | 1,86 Gb Available Physical Memory | 47,99% Memory free
5,03 Gb Paging File | 2,39 Gb Available in Paging File | 47,54% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 195,31 Gb Total Space | 161,22 Gb Free Space | 82,55% Space Free | Partition Type: NTFS
Drive D: | 12,38 Gb Total Space | 1,55 Gb Free Space | 12,54% Space Free | Partition Type: NTFS
Drive K: | 722,34 Gb Total Space | 721,25 Gb Free Space | 99,85% Space Free | Partition Type: NTFS

Computer Name: PC | User Name: Gerome | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]


[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\windows\SysNative\rundll32.exe (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-2058995928-2679868757-2535257372-1001\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = AC 1C AE C5 46 9F CE 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = [binary data]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found

[color=#E56717]========== Firewall Settings ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0

[color=#E56717]========== Authorized Applications List ==========[/color]


[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{13072C61-9FBD-4F75-83EA-072018AFA7C8}" = lport=2869 | protocol=6 | dir=in | app=system |
"{16A668BB-8E89-4596-872A-4D54FFA669DB}" = rport=137 | protocol=17 | dir=out | app=system |
"{18C29D7F-176D-4408-B32C-20A2BDC943EA}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{1AFB9374-72EB-4A36-8398-B36E4F16B8EA}" = lport=48113 | protocol=6 | dir=in | name=maconfig_tcp |
"{2874E764-9103-4C4E-B930-DCC774B4A6B8}" = lport=139 | protocol=6 | dir=in | app=system |
"{2B16BD29-D387-4676-BCC8-64D40CE05273}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{43A03EF3-417E-47D2-AD58-96A39390FF99}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{4EBAFE99-4211-423F-A3DB-FEF3EE48DECC}" = rport=139 | protocol=6 | dir=out | app=system |
"{5C79071C-E5CA-414F-B00A-2040F1266DE4}" = lport=138 | protocol=17 | dir=in | app=system |
"{654143CB-2D91-4AEC-A15D-388324E7CF9A}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{72F242F4-456E-466C-A944-E69BD22F1FC6}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{7AE4CAC8-F94C-4215-A68D-44B65D74CB25}" = lport=5357 | protocol=6 | dir=in | name=port tcp ws-eventing 5357 |
"{7E473C1C-2749-42F0-B525-FAA85F614057}" = lport=445 | protocol=6 | dir=in | app=system |
"{8660C9E4-AF38-48A2-8BDF-218AAB27B205}" = rport=138 | protocol=17 | dir=out | app=system |
"{8A2818D7-2EA2-4D25-A241-CA08438CFB3F}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{9D3D0A64-D465-48F3-9038-F9F30FDA8F4F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{B4E7596A-B015-477C-A0B3-D2E28CCE2A60}" = lport=10243 | protocol=6 | dir=in | app=system |
"{BE7CBC71-EBC9-4564-9900-36593C96E3FD}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C2456BB9-5BBE-4F3D-8C58-9F50A21AE791}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{C2AFDD34-216F-4DE4-A11A-FACB1CF47E82}" = lport=137 | protocol=17 | dir=in | app=system |
"{CA7A1D87-82C3-44C8-9783-8EA6F0539012}" = rport=10243 | protocol=6 | dir=out | app=system |
"{CC2E53FB-849B-45D6-B0B3-5C40A36BEAC7}" = lport=48114 | protocol=6 | dir=in | name=maconfig_tcptls |
"{DA5285F3-047F-425E-B94D-750A5DD9A97B}" = rport=445 | protocol=6 | dir=out | app=system |
"{EDA6FD6D-3A30-428D-A757-D5A0B155EBF0}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{03DE2F16-20E3-43B8-A829-167785D472D7}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} |
"{086E5E31-CA7C-4F54-9FC9-72636B4824CC}" = dir=out | name=hp registration |
"{0C205FCC-0A55-498C-841C-31183ABF18B2}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{0F035426-C269-4882-9332-13E81D142846}" = dir=out | name=@{microsoft.bingsports_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/brandedapptitle} |
"{12369593-62FA-4297-85AE-68AAB993246C}" = dir=out | name=@{microsoft.bingmaps_2.1.3230.2048_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} |
"{16E17AB6-4924-4003-85F9-6E21EA353CE6}" = dir=in | name=microsoft solitaire collection |
"{22B6A68C-CBC5-4354-9EBE-072B1D9613C5}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{24AB674E-56CA-42E2-BDFF-051C7BAB88D0}" = dir=in | name=accuweather for windows 8 |
"{299AA3E8-1BF5-4D14-845F-25E369B13658}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{2A75BE87-83E6-4EEF-9441-99BBD9EDB935}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\powerdvd12ml.exe |
"{33E260A5-8CA7-4F98-913E-0EF0EE41DB07}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{37D3BE9C-4FA1-4EA4-AC32-9040CBE19E85}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe |
"{3E49DE2B-5357-42E8-A61A-26D49C328B64}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{41DA07DA-B48E-4B90-B6FB-0AD961EACBD2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{42136ACE-D180-4C95-8995-C2320AB2A6E4}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} |
"{4282FE99-8560-4BC7-9576-5F3ED84E263F}" = dir=in | name=checkpoint.vpn |
"{45462F97-5E6A-4BF4-A068-BB9B7DB8511F}" = dir=out | name=box |
"{4CA84476-8213-441D-8111-3E6C40EFF8D0}" = dir=out | name=@{ad2f1837.gettingstartedwithwindows8_1.6.0.0_neutral__v10z8vjag6ke6?ms-resource://ad2f1837.gettingstartedwithwindows8/resources/id_app_title} |
"{52440046-B921-4D41-9E09-1CA17102EF9B}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{548DCF8C-BFF2-4BA4-AA88-FBAF9AC8BCC6}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{560448D6-095C-4907-B046-AC7F710701A7}" = dir=in | name=sonicwall.mobileconnect |
"{597DFDD3-43A4-438B-A485-650C8E8363EB}" = dir=in | name=onenote |
"{5AF7A0EC-CC64-4D09-9A22-BBDA899D943F}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5B205315-EDB4-48F3-8E2F-BFA1995574C4}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{5F4632C0-D5B1-40C3-B0D9-E3A759C81B9E}" = dir=out | name=sonicwall.mobileconnect |
"{64C07398-0AA2-480E-A832-ED3915C54728}" = dir=in | name=@{ad2f1837.gettingstartedwithwindows8_1.6.0.0_neutral__v10z8vjag6ke6?ms-resource://ad2f1837.gettingstartedwithwindows8/resources/id_app_title} |
"{66F8A833-8F20-4B58-AE53-10F3882816E5}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{67B5EB70-F6C3-4521-A5CC-03805A6A5749}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{69AEA88E-E110-40C9-B7EB-F7EE82767E30}" = dir=in | name=snapfish |
"{6FBFD954-EF3A-4969-93EF-5E6ED79DA466}" = protocol=6 | dir=in | app=c:\program files (x86)\real\realplayer\rpds\bin\rpdsvc.exe |
"{771AC90E-EE44-4F12-AF3F-AA2F64FE50D9}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} |
"{7723497B-E083-4A87-9CD7-9464BE1C2230}" = dir=in | name=hp all-in-one printer remote |
"{7AA66154-29DD-4194-847E-9DC3ABB573EA}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{7BAC7C0C-9193-4C45-A49F-51F0690EC429}" = dir=out | name=skype |
"{7E33844B-D679-41D2-BEF9-A5E19F0C0BCB}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{7ED1A358-9D14-4031-85DD-E885BEF298E9}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{810C2E86-6507-4F9B-A32A-25A7956D20A0}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20856_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{843AF95D-A62E-412C-91B7-2102BFCA1853}" = dir=in | app=c:\program files\hp\hp deskjet 2540 series\bin\devicesetup.exe |
"{8C81DE9A-6478-4DC4-BA4E-C495D998888D}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{8E437E82-7169-4014-830A-1288E1145E90}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{95816252-916D-4BFE-AF88-CA6163A0484F}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9654.20540_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} |
"{9668BADE-3BA5-4498-96D9-9E0EDD77ED7A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{9803D2C8-F2D9-4AB2-9667-DAD21DE42859}" = dir=in | name=mcafee® central for hp |
"{9DF3BB2E-05F1-457E-9A0F-7BD31285CC4D}" = dir=in | app=c:\program files\hp\hp deskjet 2540 series\bin\hpnetworkcommunicatorcom.exe |
"{9E3D57FC-7C37-4424-9352-4831E97D029D}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} |
"{A218E46D-FA2D-4C17-819E-112B641FD435}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A2906499-F449-4A22-84FA-C5C1C9644C33}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20856_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} |
"{A611C1C9-F7EE-4789-92D7-2401B318A1EC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{A7FF9860-9006-4371-9AF6-828A84FBF489}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{AB7694DD-C9CE-4242-9605-6EF866B5D177}" = dir=out | name=onenote |
"{B17137B9-22A7-4472-98FA-07D2AA62C682}" = protocol=6 | dir=out | app=system |
"{B1DA0A27-E520-4B5D-BE99-40CC178DB5FF}" = dir=out | name=@{microsoft.bingnews_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/brandedapptitle} |
"{B8BA4A41-E386-4CA4-A672-8001FA9B9DD5}" = dir=out | name=hp all-in-one printer remote |
"{C02368BB-C147-4057-A806-2CB8CEC78CAE}" = dir=in | name=microsoft mahjong |
"{C8603173-9115-4666-8FFD-DE49B6D7B90E}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} |
"{C9D41A8A-2773-4605-A712-4E3F28FF01E1}" = dir=out | name=@{microsoft.zunemusic_2.6.672.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} |
"{CBB05270-CA92-4C44-9A05-7D1879EF6864}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D0F09023-F199-44F5-9AB9-6B76E83F2B15}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\powerdvd12.exe |
"{D2391197-90BE-45A3-9A08-77178AF4AFC2}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\kernel\dms\clmsserverpdvd12.exe |
"{D413BA0B-44E3-4AD6-A874-F22755227042}" = dir=out | name=windows_ie_ac_001 |
"{D43BE78F-D9CE-4323-9E6C-2456FFA20535}" = dir=out | name=snapfish |
"{D61393F0-FB2D-42BC-9593-C9ED528768A0}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"{D6980480-941A-4DF6-AB81-3734ECD3D779}" = dir=out | name=junipernetworks.junospulsevpn |
"{D82796D6-202A-4366-8CDB-A787B21D64B8}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd12\movie\powerdvd.exe |
"{D8706BBC-0853-4416-BE80-21FF1BC6A31E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{DB59588E-ED90-4C47-A7B5-7929DD0C0BD2}" = dir=out | name=checkpoint.vpn |
"{DC967976-72CC-4A4F-89D0-3C9039798325}" = dir=out | name=@{microsoft.zunevideo_2.6.441.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} |
"{DE4CC0A2-4579-4A5D-8E2B-ED9C9E81BC97}" = dir=out | name=microsoft solitaire collection |
"{E31EDF4C-4559-4147-9B10-C975DF433BEF}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{E7EA4840-ADEA-41C5-A680-6CE66686E632}" = dir=out | name=hp connected music |
"{E8712FE8-7FB0-4A2C-AC8C-D375B9EFE4DA}" = dir=out | name=- games app - |
"{EB2D387E-5AAF-4238-8868-EC51F3F40218}" = dir=out | name=@{microsoft.bingweather_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/brandedapptitle} |
"{EC799E33-72BA-42D7-9127-DEFE68F9799D}" = dir=in | name=junipernetworks.junospulsevpn |
"{EF9E4888-A14B-427C-90FD-B078463FA29B}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{EFA6D0E4-2A07-4D45-9C5B-4105B3B059B2}" = dir=in | name=skype |
"{F05E6EB3-9350-4C99-8012-C090FAE50422}" = dir=out | name=mcafee® central for hp |
"{F64300AD-D559-4000-BD45-0997BCC8E70A}" = dir=out | name=f5.vpn.client |
"{F77E5446-4378-4E99-8B7A-7061AAAEA193}" = dir=in | name=f5.vpn.client |
"{F8056E8B-ADDE-4457-BD3E-E5B4C9B5F835}" = dir=out | name=@{microsoft.bingtravel_3.0.4.322_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/brandedapptitle} |
"{F9329055-43BD-4D9C-9986-24089902445C}" = dir=out | name=accuweather for windows 8 |
"{FADEFEFA-E060-4FA1-8EA6-7602388ED770}" = dir=out | name=@{microsoft.bingfinance_3.0.4.323_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/brandedapptitle} |
"{FE008CD1-87E4-49B1-B371-650391FDE7E5}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{FFA12E1E-F4DB-44D7-A044-9A9C6A25F021}" = dir=out | name=microsoft mahjong |
"TCP Query User{EF0C4631-11D3-4BE2-ACB9-C7092640B35D}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |
"UDP Query User{05842591-55B0-451F-B803-E34F606FB7FA}C:\program files (x86)\mozilla firefox\firefox.exe" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{071c9b48-7c32-4621-a0ac-3f809523288f}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{1CEAC85D-2590-4760-800F-8DE5E91F3700}" = Intel(R) Management Engine Components
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{21E47F47-C9A7-4454-BA48-388327B0EA00}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{23170F69-40C1-2702-0922-000001000000}" = 7-Zip 9.22 (x64 edition)
"{243B5B47-6A9C-4D51-8CA4-8D9C0308D02F}" = Intel(R) Management Engine Components
"{27DEA29A-222C-45F8-B70D-0A7B303FC71B}" = Intel(R) Rapid Storage Technology
"{3330B490-86DE-4E57-AE3A-14AECC0ACC52}" = Logiciel de base du périphérique HP Deskjet 2540 series
"{3C28BFD4-90C7-3138-87EF-418DC16E9598}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106
"{409CB30E-E457-4008-9B1A-ED1B9EA21140}" = Intel(R) Rapid Storage Technology
"{5AF4E09F-5C9B-3AAF-B731-544D3DC821DD}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E14E6D6-3175-4E1A-B934-CAB5A86367CD}" = HP Postscript Converter
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}" = DisableMSDefender
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89AFB053-A343-46EF-97E4-D593AD7184E6}" = Intel® Trusted Connect Service Client
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{B01F43B5-AD90-417C-BDF8-4E5A96530476}" = Étude pour l'amélioration du produit HP Deskjet 2540 series
"{BB193400-CE40-4598-8391-FE63EC46BFF4}" = Intel(R) Management Engine Components
"{D1E8F2D7-7794-4245-B286-87ED86C1893C}" = HP Registration Service
"{F43C7651-A7CB-49EF-8AF4-40630849FF29}" = Intel(R) ME UninstallLegacy
"CCleaner" = CCleaner

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{06600E94-1C34-40E2-AB09-D30AECF78172}" = HP Documentation
"{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements
"{121727D5-FDF3-4723-BA57-EB383440ED72}" = OpenOffice 4.1.1
"{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10
"{28C2DED6-325B-4CC7-983A-1777C8F7FBAB}" = RealUpgrade 1.1
"{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8
"{2FAD0F16-4309-4D22-AE73-F4CCA737D013}" = HP Deskjet 2540 series Aide
"{3E75652D-99B1-417E-B163-BEF33CAD3F16}" = League of Legends
"{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}" = Recovery Manager
"{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader
"{62796191-6F12-4ABE-BA8B-B4D4A266C997}" = Video Downloader
"{6C772996-BFF3-3C8C-860B-B3D48FF05D65}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
"{6e8f74e0-43bd-4dce-8477-6ff6828acc07}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106
"{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.2.3
"{6FCD4D5A-20B9-4D79-ABA5-4E7048944025}" = RealDownloader
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7770E71B-2D43-4800-9CB3-5B6CAAEBEBEA}" = RealNetworks - Microsoft Visual C++ 2008 Runtime
"{7F28165B-148D-4672-AA21-469D9E6E3CB6}" = Alcor Micro USB Card Reader Driver
"{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{8C696B4B-6AB1-44BC-9416-96EAC474CABE}" = HP Support Assistant
"{8e70e4e1-06d7-470b-9f74-a51bef21088e}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
"{912D30CF-F39E-4B31-AD9A-123C6B794EE2}" = HP Update
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{AAECF7BA-E83B-4A10-87EA-DE0B333F8734}" = RealNetworks - Microsoft Visual C++ 2010 Runtime
"{AC76BA86-0804-1033-1959-001824144531}" = Adobe Refresh Manager
"{AC76BA86-7AD7-1036-7B44-AB0000000001}" = Adobe Reader XI (11.0.11) - Français
"{B2B7B1C8-7C8B-476C-BE2C-049731C55992}" = HP Support Information
"{B46BEA36-0B71-4A4E-AE41-87241643FA0A}" = CyberLink PowerDVD 12
"{B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D}" = HPDiagnosticAlert
"{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005
"{DD43EA67-DAF3-4879-BFF7-E534675BDEA5}" = HP PC Hardware Diagnostics UEFI
"{E3AE96D6-E196-45B4-AF62-2B41998B9E37}" = UpdateService
"{e6171278-8759-449d-9e0b-c1825debc2ad}" = RealDownloader
"{E824E81C-80A4-3DFF-B5F9-4842A9FF5F7F}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005
"{FBEFDC9E-F8FB-4B66-A78B-09B7B380D59D}" = RealDownloader
"{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}" = Energy Star
"Adobe Flash Player NPAPI" = Adobe Flash Player 18 NPAPI
"AmUStor" = Alcor Micro USB Card Reader Driver
"Avast" = Avast Free Antivirus
"InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite 10
"InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}" = CyberLink Power2Go 8
"InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}" = CyberLink PowerDVD 12
"League of Legends 3.0.1" = League of Legends
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.1.6.1022
"Mozilla Firefox 38.0.5 (x86 fr)" = Mozilla Firefox 38.0.5 (x86 fr)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"RealPlayer 17.0" = RealPlayer Cloud
"VLC media player" = VLC media player
"ZHPDiag_is1" = ZHPDiag 2015

[color=#E56717]========== HKEY_USERS Uninstall List ==========[/color]

[HKEY_USERS\S-1-5-21-2058995928-2679868757-2535257372-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 20/06/2015 18:42:21 | Computer Name = PC | Source = Application Error | ID = 1000
Description = Nom de l application défaillante LolClient.exe, version : 0.0.0.0,
horodatage : 0x515663e0 Nom du module défaillant : WebKit.dll, version : 6531.9.0.0,
horodatage : 0x51566370 Code d exception : 0xc0000005 Décalage d erreur : 0x000a9965
ID
du processus défaillant : 0x27c4 Heure de début de l application défaillante : 0x01d0ab9d12ab8f43
Chemin
d accès de l application défaillante : C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.148\deploy\LolClient.exe
Chemin
d accès du module défaillant: C:\Riot Games\League of Legends\RADS\projects\lol_air_client\releases\0.0.1.148\deploy\Adobe
AIR\Versions\1.0\Resources\WebKit.dll ID de rapport : 9c123a30-179d-11e5-827b-54bef76a9757
Nom
complet du package défaillant : ID de l application relative au package défaillant :


Error - 20/06/2015 21:12:22 | Computer Name = PC | Source = Perflib | ID = 1008
Description =

Error - 21/06/2015 15:00:49 | Computer Name = PC | Source = Microsoft-Windows-Immersive-Shell | ID = 5973
Description = Échec de l activation de l application microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1
avec l erreur : -2144927141 Pour plus d informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel.

Error - 21/06/2015 15:01:08 | Computer Name = PC | Source = Windows Search Service | ID = 3006
Description =

Error - 21/06/2015 15:01:08 | Computer Name = PC | Source = Windows Search Service | ID = 3007
Description =

Error - 21/06/2015 15:01:08 | Computer Name = PC | Source = Windows Search Service | ID = 10021
Description =

Error - 21/06/2015 15:02:39 | Computer Name = PC | Source = Windows Search Service | ID = 3006
Description =

Error - 21/06/2015 15:02:39 | Computer Name = PC | Source = Windows Search Service | ID = 3007
Description =

Error - 21/06/2015 15:02:39 | Computer Name = PC | Source = Windows Search Service | ID = 10021
Description =

Error - 22/06/2015 02:42:41 | Computer Name = PC | Source = Perflib | ID = 1008
Description =

[ System Events ]
Error - 25/06/2015 14:35:47 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 25/06/2015 14:35:47 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 25/06/2015 14:35:47 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 25/06/2015 14:35:48 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 25/06/2015 14:35:48 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 26/06/2015 03:52:15 | Computer Name = PC | Source = EventLog | ID = 6008
Description = L arrêt système précédant à 05:15:20 le ?26/?06/?2015 n était pas
prévu.

Error - 29/06/2015 18:34:38 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 29/06/2015 18:34:39 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 29/06/2015 18:34:39 | Computer Name = PC | Source = DCOM | ID = 10016
Description =

Error - 01/07/2015 08:22:23 | Computer Name = PC | Source = EventLog | ID = 6008
Description = L arrêt système précédant à 04:44:07 le ?01/?07/?2015 n était pas
prévu.


< End of report >

Publicité


Signaler le contenu de ce document

Publicité