Additional scan result of Farbar Recovery Scan Tool (x64) Version:08-06-2015 Ran by mwa at 2015-06-12 11:39:12 Running from C:\Users\mwa\Desktop Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-1117043893-707895680-1786022616-500 - Administrator - Disabled) Cheyenne (S-1-5-21-1117043893-707895680-1786022616-1005 - Limited - Enabled) => C:\Users\Cheyenne HomeGroupUser$ (S-1-5-21-1117043893-707895680-1786022616-1002 - Limited - Enabled) Invité (S-1-5-21-1117043893-707895680-1786022616-501 - Limited - Disabled) mwa (S-1-5-21-1117043893-707895680-1786022616-1000 - Administrator - Enabled) => C:\Users\mwa ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Actionaz 3.4.2 (32 bits) (HKLM-x32\...\{968D7F40-0B23-457D-AD67-0F7C0012EF1E}_is1) (Version: 3.4.2 - Actionaz.org) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 4.0.0.1390 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.0.0.400 - Adobe Systems Incorporated) Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.6 - Adobe Systems Incorporated) Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.188 - Adobe Systems Incorporated) Adobe Photoshop CS5 (HKLM-x32\...\{15FEDA5F-141C-4127-8D7E-B962D1742728}) (Version: 12.0 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.11.2111) (Version: 1.11.2111 - Aeria Games & Entertainment) Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.11.2111 - Aeria Games & Entertainment) Aeria Ignite (x32 Version: 1.11.2111 - Aeria Games & Entertainment) Hidden Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge) AMD Catalyst Install Manager (HKLM\...\{9AB0D5B6-4779-8C4F-CA91-A1FEDB56D7EC}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Arc (HKLM-x32\...\{CED8E25B-122A-4E80-B612-7F99B93284B3}) (Version: 1.0.0.5510 - Perfect World Entertainment) ATI Stream SDK v2 Developer (HKLM\...\{80C27FE9-C6C4-F5C8-EAD3-09E7E0102E78}) (Version: 2.2.0.0 - ATI Technologies Inc.) Audacity 2.0 (HKLM-x32\...\Audacity_is1) (Version: - Audacity Team) Avira (HKLM-x32\...\{0696cc37-db90-4000-be99-4a173ca7c8af}) (Version: 1.1.39.17987 - Avira Operations GmbH & Co. KG) Avira (x32 Version: 1.1.39.17987 - Avira Operations GmbH & Co. KG) Hidden Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.10.434 - Avira Operations GmbH & Co. KG) Avira Browser Safety (HKLM-x32\...\{9E10EA90-5E97-43B7-A246-FC7B4F5E9493}) (Version: 1.4.5.509 - Avira Operations GmbH & Co KG) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Big Rig Europe (x32 Version: 2.2.0.95 - WildTangent) Hidden Blasterball 3 (x32 Version: 2.2.0.95 - WildTangent) Hidden Bounce Symphony (x32 Version: 2.2.0.95 - WildTangent) Hidden Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden CameraHelperMsi (x32 Version: 13.50.854.0 - Logitech) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.16 - Piriform) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden CodeBlocks (HKU\S-1-5-21-1117043893-707895680-1786022616-1000\...\CodeBlocks) (Version: 10.05 - The Code::Blocks Team) CodeBlocks (HKU\S-1-5-21-1117043893-707895680-1786022616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\CodeBlocks) (Version: 10.05 - The Code::Blocks Team) Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Correctif pour Microsoft Visual C++ 2010 Express - Français (KB2635973) (HKLM-x32\...\{0F24FB28-F84E-395C-8BB1-95AE47994485}.KB2635973) (Version: 1 - Microsoft Corporation) Crazy Chicken Kart 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.2.0287 - DT Soft Ltd) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95 - WildTangent) Hidden Elevated Installer (x32 Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX218 Series Printer Uninstall (HKLM\...\EPSON SX218 Series) (Version: - SEIKO EPSON Corporation) erLT (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE (x32 Version: 2.2.0.95 - WildTangent) Hidden FILEminimizer Office (HKLM-x32\...\FILEminimizer Office_is1) (Version: - balesio AG) Fishdom (x32 Version: 2.2.0.95 - WildTangent) Hidden French App Name (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 - Adobe Systems Incorporated) French App Name (x32 Version: 1.8 - Adobe Systems Incorporated) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Gameforge Live 2.0.8 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.8 - Gameforge) Garmin Express (HKLM-x32\...\{6f60b921-2ae3-43fe-a6fb-ad849bd91451}) (Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Garmin Express (x32 Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden Garmin Express Tray (x32 Version: 2.3.16.0 - Garmin Ltd or its subsidiaries) Hidden Glyph (HKLM-x32\...\Glyph) (Version: - Trion Worlds, Inc.) Happy Cloud Client (HKU\S-1-5-21-1117043893-707895680-1786022616-1000\...\HappyCloud) (Version: 4.54 - Happy Cloud, Inc.) Happy Cloud Client (HKU\S-1-5-21-1117043893-707895680-1786022616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\HappyCloud) (Version: 4.54 - Happy Cloud, Inc.) Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.4 - WildTangent) HP LinkUp (HKLM-x32\...\{C1AD9241-3ADD-483F-914D-071F3E50855A}) (Version: 2.01.026 - Hewlett-Packard) HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard) HP Setup (HKLM-x32\...\{210A03F5-B2ED-4947-B27E-516F50CBB292}) (Version: 8.6.4530.3651 - Hewlett-Packard Company) HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13253.3682 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard) HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard) HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.5.0.0 - Hewlett-Packard) HydraVision (x32 Version: 4.2.180.0 - ATI Technologies Inc.) Hidden Insaniquarium fr (HKLM-x32\...\Insaniquarium_is1) (Version: fr - Boonty) Java 7 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217071FF}) (Version: 7.0.710 - Oracle) Java(TM) 7 Update 2 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417002FF}) (Version: 7.0.20 - Oracle) Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3609 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.3609 - CyberLink Corp.) Hidden LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Logitech Webcam Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.31 - Logitech Inc.) LWS VideoEffects (Version: 13.30.1379.0 - Logitech) Hidden Ma-Config.com (64 bits) (HKLM\...\{515F87E1-E29E-42EA-A78C-1A1C2F612723}) (Version: 7.1.6.3 - Cybelsoft) Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: 8.4 - Easybits) Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden Malwarebytes Anti-Malware version 2.1.6.1022 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.6.1022 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Office « Démarrer en un clic » 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office 2000 Standard (HKLM-x32\...\{0002040C-78E1-11D2-B60F-006097C998E7}) (Version: 9.00.2720 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-040C-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Professional Plus 2007 (HKLM-x32\...\PROPLUS) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Starter 2010 - Français (HKLM-x32\...\{90140011-0066-040C-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 FRA (HKLM-x32\...\{AF6919D0-5691-4F35-9D65-54F981013514}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 FRA (HKLM\...\{2906A05E-2D38-4B47-85A2-D3485E372C8F}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{887868A2-D6DE-3255-AA92-AA0B5A59B874}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 Express - Français (HKLM-x32\...\Microsoft Visual C++ 2010 Express - FRA) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Express Prerequisites x64 - FRA (HKLM\...\{F48F43AA-721D-335F-9CA2-01D910104560}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Service Pack 1 (HKLM-x32\...\Microsoft Visual Studio 2010 Service Pack 1) (Version: 10.0.40219 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{51EFB347-1F3D-4BAC-8B79-F056B904FE21}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Module linguistique de la visionneuse d'aide Microsoft 1.0 - FRA (HKLM\...\Microsoft Help Viewer 1.0 Language Pack - FRA) (Version: 1.0.30319 - Microsoft Corporation) MondialMt2 Version 3.1 (HKLM-x32\...\MondialMt2_is1) (Version: - By Raphy) Mozilla Firefox 38.0.5 (x86 fr) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 fr)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.1.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) Mumble 1.2.5 (HKLM-x32\...\{F818243E-51A8-418D-8A71-595D5121BECA}) (Version: 1.2.5 - Thorvald Natvig) MusicStation (HKLM-x32\...\MusicStationNetstaller) (Version: 1.0.1.5 - Hewlett-Packard) MySQL Server 5.5 (HKLM-x32\...\{B727353D-02CB-4FA6-A2DC-A60A720AAD09}) (Version: 5.5.21 - Oracle Corporation) Mystery P.I. - The London Caper (x32 Version: 2.2.0.95 - WildTangent) Hidden Namco All-Stars PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden Notepad++ (HKLM-x32\...\Notepad++) (Version: 5.9.6.2 - ) NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.61.39 - NVIDIA Corporation) NVIDIA ForceWare Network Access Manager (HKLM-x32\...\{7CFA46E3-CC2F-4355-82AE-6012DC3633FD}) (Version: 1.00.7330.0 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{DEA314C4-0929-4250-BC92-98E4C105F28D}) (Version: 9.10.0129 - NVIDIA Corporation) Outil de téléchargement USB/DVD Windows 7 (HKLM-x32\...\{5F8683B5-5056-411C-B808-B289E29E9BBB}) (Version: 1.0.30 - Microsoft Corporation) PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.35 - PDF Complete, Inc) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Perfect World France (HKLM-x32\...\631BBC3E-3B27-4BAE-8321-0A28682CC388_is1) (Version: - PWFrance) PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden PlayClaw 5 (HKLM-x32\...\PlayClaw 5_is1) (Version: 5 - ) PlayClaw 5 fast codec (HKLM-x32\...\PlayClaw 5 fast codec_is1) (Version: 5 - ) PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Polar Bowler (x32 Version: 2.2.0.95 - WildTangent) Hidden Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.4817 - CyberLink Corp.) Power2Go (x32 Version: 6.1.4817 - CyberLink Corp.) Hidden PowerISO (HKLM-x32\...\PowerISO) (Version: 4.9 - Power Software Ltd) PressReader (HKLM-x32\...\{912CED74-88D3-4C5B-ACB0-132318649765}) (Version: 5.10.1217.0 - NewspaperDirect Inc.) PWFrance 1.4.4 (HKLM-x32\...\{631BBC3E-3B27-4BAE-8321-0A28682CC388}_is1) (Version: - PWFrance) Quick Zip 5.1 (HKLM-x32\...\{87AF4C0E-D953-424B-8108-3127CA217E6F}) (Version: 5.1.13 - Quick Zip Dev) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6251 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 5.5.3621 - CyberLink Corp.) Hidden Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard) RomStation (HKLM-x32\...\{223B62A8-F6FF-4BEB-BC17-230D12723CD0}_is1) (Version: - RomStation) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Speccy (HKLM\...\Speccy) (Version: 1.21 - Piriform) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Sweet Home 3D version 3.4 (HKLM-x32\...\Sweet Home 3D_is1) (Version: - eTeks) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TERA (HKLM-x32\...\{A2F166A0-F031-4E27-A057-C69733219434}_is1) (Version: 28 - Gameforge Productions GmbH) TERA (HKU\S-1-5-21-1117043893-707895680-1786022616-1000\...\teraenmasse) (Version: - ) TERA (HKU\S-1-5-21-1117043893-707895680-1786022616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\teraenmasse) (Version: - ) The Walking Dead: Season Two (HKLM-x32\...\The Walking Dead: Season Two) (Version: 1.0.0.0 - Telltale Games) Unity Web Player (HKU\S-1-5-21-1117043893-707895680-1786022616-1000\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Unity Web Player (HKU\S-1-5-21-1117043893-707895680-1786022616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden VLC media player 1.1.11 (HKLM-x32\...\VLC media player) (Version: 1.1.11 - VideoLAN) WampServer 2.0 (HKLM-x32\...\WampServer 2_is1) (Version: - Romain Bourdon (Roms)) War of the Immortals FR (HKLM-x32\...\{7EE9145D-C430-44E6-B5ED-61FF9C332102}_is1) (Version: - Perfect World Entertainment) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games App (HP Games) (x32 Version: 4.0.5.36 - WildTangent) Hidden Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 5.10 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) WinZip 16.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240CD}) (Version: 16.0.9715 - WinZip Computing, S.L. ) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) ZHPDiag 2015 (HKLM-x32\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman) Zinio Reader 4 (HKLM-x32\...\ZinioReader4.9310D8F796442B71068C511E15D70529A702D19D.1) (Version: 4.0.3184 - Zinio LLC) Zinio Reader 4 (x32 Version: 4.0.3184 - Zinio LLC) Hidden Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= 31-05-2015 19:00:22 Sauvegarde Windows 07-06-2015 19:00:20 Sauvegarde Windows 08-06-2015 10:45:25 Installed Ma-Config.com (64 bits) 08-06-2015 10:46:46 Installed Ma-Config.com (64 bits) 08-06-2015 10:47:56 Installed Ma-Config.com (64 bits) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {10D5D9A6-D0BA-466A-B8C9-9CEA18E4BC94} - System32\Tasks\HPCeeScheduleForMWA-HP$ => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard) Task: {12CCCF6A-5C30-4070-9AD5-D9B637B41798} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {16EE2DFA-A29C-4410-A6CB-D9C0D3BB57DB} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {1B4FC3F4-9412-4CB0-AB56-4DE3F58520A9} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-01-31] () Task: {21338421-9CF7-41F9-9258-388C5E0751A9} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2011-12-17] (Microsoft Corporation) Task: {25EB5128-8565-467F-A719-15B3111BB474} - System32\Tasks\Avira Browser Safety Updater Task => C:\Program Files (x86)\Avira\Browser Safety\AviraBrowserSafetyUpdater.exe [2015-03-11] (Avira Operations GmbH & Co. KG) Task: {2B69E8CE-E3B4-4AC1-9C4C-64DA8CCF300D} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [2010-11-21] (Microsoft Corporation) Task: {442FA54C-5817-4F3A-BA90-BBEBD9980E72} - System32\Tasks\{AD31BB45-24BA-4F9D-8B35-0383E5E0FD69} => C:\Program Files (x86)\Online Services\Skype\SkypeSetup.exe [2011-01-18] (Skype Technologies S.A.) Task: {46060AE2-CFD4-4316-A4A3-761C1BE1064C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-09] (Adobe Systems Incorporated) Task: {4890D0C6-E0E4-4010-81A6-A6888613DC99} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Warranty Opt-In(No) => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\Detection_PostWarrantyAlert.exe Task: {79054D9E-BC8F-4E10-90B2-38866D0634FA} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {8226F37D-8EC3-4BCB-8309-9A9A1F9AC014} - System32\Tasks\{EC50700D-BD0D-4784-B3BF-94C3DB9C4C0B} => Firefox.exe http://ui.skype.com/ui/0/6.3.0.107/fr/abandoninstall?page=tsProgressBar Task: {B56FA6C7-96EF-4E54-8F7F-EB36D9076841} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {D69A8BE0-1DE3-4E21-9AB2-B7FC9D0C3676} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-07] (Microsoft Corporation) Task: {E2DB171A-560A-4D50-B922-23B7718CC5BB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {EA7595CF-7EED-4E58-9724-F6B717CE7146} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Warranty Opt-In(Yes) => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\Detection_PostWarrantyAlert.exe Task: {EF517A6E-CD2F-43FE-8442-CD21FDAD2B00} - System32\Tasks\AdobeAAMUpdater-1.0-mwa-HP-mwa => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2010-03-06] (Adobe Systems Incorporated) Task: {F023A49F-F9C7-4260-8015-EBA98F219D53} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPSAObjUtilTask => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\UtilTask.exe Task: {F90A450E-F818-4128-B936-3CF378281F91} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-07] (Microsoft Corporation) Task: {FA374436-439F-4641-9CB9-5E98E736CC65} - System32\Tasks\HPCeeScheduleFormwa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\HPCeeScheduleForMWA-HP$.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\Windows\Tasks\HPCeeScheduleFormwa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (Whitelisted) ============== 2014-12-29 09:27 - 2014-12-29 09:27 - 00773192 _____ () C:\Windows\SysWOW64\ezUPBHook64.dll 2011-07-18 23:04 - 2011-07-18 23:04 - 00301568 _____ () C:\Program Files (x86)\Notepad++\NppShell_04.dll 2012-01-31 16:05 - 2012-01-31 16:05 - 08184320 _____ () C:\Program Files (x86)\MySQL\MySQL Server 5.5\bin\mysqld.exe 2011-11-02 22:44 - 2010-03-05 02:25 - 00496232 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe 2011-11-02 22:44 - 2010-03-05 02:24 - 00076392 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nv_common.dll 2011-11-02 22:44 - 2010-03-05 02:25 - 00731752 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\SpecialCase.dll 2011-11-02 22:44 - 2010-03-05 02:25 - 00209000 _____ () C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe 2010-11-23 19:02 - 2010-11-23 19:02 - 00098304 _____ () C:\Program Files (x86)\ATI Technologies\HydraVision\HydraFra.dll 2014-12-29 09:27 - 2014-12-29 09:27 - 00484936 _____ () C:\Windows\SysWOW64\ezUPBHook32.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1117043893-707895680-1786022616-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\mwa\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-1117043893-707895680-1786022616-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\mwa\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg HKU\S-1-5-21-1117043893-707895680-1786022616-1005-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Control Panel\Desktop\\Wallpaper -> C:\Users\Cheyenne\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: NOBU => 2 MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCS5ServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Aeria Ignite => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: Easybits Recovery => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe MSCONFIG\startupreg: GarminExpressTrayApp => "C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe" MSCONFIG\startupreg: Google Update => "C:\Users\mwa\AppData\Local\Google\Update\GoogleUpdate.exe" /c MSCONFIG\startupreg: LWS => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe MSCONFIG\startupreg: Overwolf => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent MSCONFIG\startupreg: PDF Complete => C:\Program Files (x86)\PDF Complete\pdfsty.exe MSCONFIG\startupreg: PWRISOVM.EXE => C:\Program Files (x86)\PowerISO\PWRISOVM.EXE -startup MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SwitchBoard => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe MSCONFIG\startupreg: uTorrent => "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{CA503436-3178-420A-911E-B1CA316AA68D}] => (Allow) C:\Windows\system32\ezSharedSvcHost.exe FirewallRules: [{2CED5B89-A324-44C4-A081-D76926E12A5E}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe FirewallRules: [{0CFB8617-BDD5-496E-97B4-8B541BCC25F3}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe FirewallRules: [{3A3FD750-E74D-4C7E-B8EF-542FA9D9990B}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe FirewallRules: [{BFB5B4D0-D4B7-4A38-BBF6-3C09701A9E1D}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe FirewallRules: [{EDD193FE-36B4-4344-99DF-2EE462F5C2F6}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe FirewallRules: [{C993094C-95D7-4BFD-8C0B-ADC50140EE01}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{C6D7C1D9-510E-4E8A-A31E-57931C65CFC0}] => (Allow) LPort=2869 FirewallRules: [{55959F7B-84A4-48AC-8E2A-1213DB24F675}] => (Allow) LPort=1900 FirewallRules: [{28CEF948-FC97-4391-9D93-B536651565E1}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [TCP Query User{17A14FC2-78B7-46EE-AC89-BF12697FA7EA}C:\program files (x86)\mondialmt2\mondialmt2.exe] => (Allow) C:\program files (x86)\mondialmt2\mondialmt2.exe FirewallRules: [UDP Query User{67B474B5-75C4-4491-8AEC-07C5D63E2898}C:\program files (x86)\mondialmt2\mondialmt2.exe] => (Allow) C:\program files (x86)\mondialmt2\mondialmt2.exe FirewallRules: [{714A36D3-4E0F-4244-84C7-53E0C9E69697}] => (Block) C:\program files (x86)\mondialmt2\mondialmt2.exe FirewallRules: [{744C46F2-61BC-4EEE-8AD5-92C49B2B0BB1}] => (Block) C:\program files (x86)\mondialmt2\mondialmt2.exe FirewallRules: [{4ADFF890-C87B-47E1-94C2-87830148BC04}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{48D44553-70FC-4057-A4CF-4A1876716BFB}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{693297F4-650F-45F5-8FAD-A8D5F6DB3BE2}] => (Allow) C:\Users\mwa\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{C7F43867-1C83-4E3B-AC5F-41C130C81A16}] => (Allow) C:\Users\mwa\AppData\Local\Akamai\netsession_win.exe FirewallRules: [{5D7FED2A-E620-4B14-ACEC-0674FF3972C0}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{9319B30C-5093-476B-9ED1-43A37C3637FA}C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe FirewallRules: [UDP Query User{65F1B2C3-9BE1-465A-B85D-C3161CA52002}C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe FirewallRules: [{6CBE1C26-F34D-4FC5-9669-27FA07472DDC}] => (Block) C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe FirewallRules: [{DB6CCED9-ACFD-4CF1-8125-53D406EBB23E}] => (Block) C:\wamp\bin\apache\apache2.2.11\bin\httpd.exe FirewallRules: [{9B964A5C-174C-44A7-90F5-45155271C406}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{2864D4D0-58F8-4F36-A2F1-0ADE2F351BA2}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{32BAC7E6-2499-41C6-AD84-7B772869526F}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{D8A3B0CE-7244-4C46-8E52-EB506A7479F5}] => (Allow) C:\Program Files (x86)\Opera\pluginwrapper\opera_plugin_wrapper.exe FirewallRules: [{08B3FD70-3C80-4F49-8FF9-CCFCA026FA31}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{0AFC72F3-2D22-427D-96E8-548D4F964B52}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [TCP Query User{42BAA24D-5A5D-4597-8347-F762A87B5BDD}C:\windows\syswow64\rundll32.exe] => (Allow) C:\windows\syswow64\rundll32.exe FirewallRules: [UDP Query User{CA1EF1AD-FBA1-4DD2-BCDD-B198370435F5}C:\windows\syswow64\rundll32.exe] => (Allow) C:\windows\syswow64\rundll32.exe FirewallRules: [{1D17B4F4-7E35-4FD5-8371-009363159E2B}] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [{2B4CBDAD-9390-4F6D-BA4E-68D93A5E52AE}] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [TCP Query User{56215AAB-B0C8-45FA-AF04-3F26BE78F7B5}C:\program files (x86)\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [UDP Query User{E17CED41-A643-41B8-963A-5AB202E211D7}C:\program files (x86)\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [{32D186E3-EAAD-40FB-AC54-F91AA5F36215}] => (Block) C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [{DB61D6A7-6609-4CA1-B841-16BFF6570323}] => (Block) C:\program files (x86)\tera\tera-launcher.exe FirewallRules: [{025F53D1-4BF6-4CF1-A5C0-F35C4673DBF4}] => (Allow) LPort=48113 FirewallRules: [{EF4DC711-4A6F-4EAE-A3B2-A896E6D602FA}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [{FC0815CD-F0B4-494E-8020-190E23902958}] => (Allow) C:\Program Files\ma-config.com\MaConfigAgent.exe FirewallRules: [TCP Query User{89D407A5-B8E3-4ABF-A9AF-02A59C08597E}C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe FirewallRules: [UDP Query User{6022F126-7980-4489-9F87-BCDEF722233B}C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe FirewallRules: [{9F5C4329-1E27-412F-A752-82572D20B575}] => (Block) C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe FirewallRules: [{BB95C253-C9B5-44C0-AE98-AEEA3C02B81D}] => (Block) C:\users\mwa\desktop\doubletera\tera\tera-launcher.exe FirewallRules: [TCP Query User{3773D476-CB31-4BB0-B9ED-838F0B0B8D63}C:\users\mwa\desktop\tripletera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\tripletera\tera-launcher.exe FirewallRules: [UDP Query User{9402D436-4ADC-4C3A-BA1C-BBFF26AD378C}C:\users\mwa\desktop\tripletera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\tripletera\tera-launcher.exe FirewallRules: [{12A2A542-16C6-403A-A040-3D00C6523C1C}] => (Block) C:\users\mwa\desktop\tripletera\tera-launcher.exe FirewallRules: [{8B21ECF9-AAF5-4EF9-B68B-262273603803}] => (Block) C:\users\mwa\desktop\tripletera\tera-launcher.exe FirewallRules: [{740A991D-EE84-4927-92BF-FCA0C865C76C}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.exe FirewallRules: [{A07C6AE7-0721-4C3E-A5A1-6B1BB4D7DF8D}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.Messengers.exe FirewallRules: [TCP Query User{5F302BA2-A127-47AE-996E-F77DDBE195CF}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [UDP Query User{8736FD78-D593-44B9-8AF7-185A7806FD88}C:\program files\java\jre7\bin\javaw.exe] => (Allow) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{26B9F358-DD6F-47DA-9893-53A3FD82A5FD}] => (Block) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{88F7C10A-55CE-4357-80F4-5678EA7266D3}] => (Block) C:\program files\java\jre7\bin\javaw.exe FirewallRules: [{DF5189FC-CDAB-4E6B-977F-AEE506510028}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe FirewallRules: [{F463C45C-7380-4A51-9FF1-5EB1AA6F7ED9}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\TERA-Launcher.exe FirewallRules: [{FCCCA321-CEC0-4125-AFED-DA79E325DCB6}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe FirewallRules: [{AB0FE3BD-63A3-4FFF-9601-6BD4AFD70E20}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\TL.exe FirewallRules: [{2BCE6009-3613-4349-94A4-E7298FFC3A0C}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe FirewallRules: [{02E589D6-77C1-48F6-9A6A-8697A222B6A7}] => (Allow) C:\ProgramData\HappyCloud\Cache\TERA\Client\Binaries\TERA.exe FirewallRules: [TCP Query User{71820617-99B8-47B1-B7F2-BE0BA238B8AC}C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe FirewallRules: [UDP Query User{4A5C84F9-9006-4E9B-A139-871E214204C9}C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe FirewallRules: [{13F992A9-0A01-4B35-A5C8-0F8FF2616524}] => (Block) C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe FirewallRules: [{4EB7C6AE-7324-492A-9EAD-E705D2DC3947}] => (Block) C:\users\mwa\desktop\jeux\doubletera\tera\tera-launcher.exe FirewallRules: [TCP Query User{9E809033-9037-475A-A37F-B2CFC0BC61BE}C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe FirewallRules: [UDP Query User{BFC8BD7A-EC96-4916-8A8D-638CBBC8ADE1}C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe FirewallRules: [{CC261331-CAA1-4281-B01C-17A2283E4FE2}] => (Block) C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe FirewallRules: [{302C867F-3F60-41D4-94AE-B00D7152594B}] => (Block) C:\users\mwa\desktop\jeux\tripletera\tera-launcher.exe FirewallRules: [TCP Query User{1E3C0A7C-848F-48C0-AB34-580D81361F90}C:\users\mwa\desktop\jeux\akasha\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\akasha\doubletera\tera\tera-launcher.exe FirewallRules: [UDP Query User{87DCFD8B-4DA2-4167-AC88-58AE076BDB0A}C:\users\mwa\desktop\jeux\akasha\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\akasha\doubletera\tera\tera-launcher.exe FirewallRules: [TCP Query User{08010ACF-89C5-4C53-A202-B3B37A3F080E}C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe FirewallRules: [UDP Query User{B508BA45-7927-41C8-A73B-2B8A93AC1A37}C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe FirewallRules: [{969138BA-ADB8-45BA-8DA9-4A20D6C5F938}] => (Block) C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe FirewallRules: [{9D32C4EF-ECF2-4632-BBF9-F1D2AC115CD4}] => (Block) C:\program files (x86)\gameforgelive\games\fra_fra\aion\nclauncher.exe FirewallRules: [{A91B782C-3D2A-440F-B9B0-077F13B60E21}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3ED0742C-7BEF-41E2-8124-A945C1CBDC6C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{B5F2D6CB-0033-47A8-8CFB-61D3CEE5C523}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{4B290735-C5DD-4A1E-8672-0B8F8658F103}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{7293A6E1-06FB-4EB6-BFFB-D3377BE8DB5A}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [{04BE07B4-38A3-4EEF-BED6-2EFE40EC7858}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3689\Agent.exe FirewallRules: [TCP Query User{FB1F63E9-2471-411B-A9A6-4AD3C052988E}C:\users\mwa\desktop\jeux\retera\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\retera\doubletera\tera\tera-launcher.exe FirewallRules: [UDP Query User{A553CBB8-A2D7-48D9-AD1F-944495E8087F}C:\users\mwa\desktop\jeux\retera\doubletera\tera\tera-launcher.exe] => (Allow) C:\users\mwa\desktop\jeux\retera\doubletera\tera\tera-launcher.exe FirewallRules: [TCP Query User{0AF28CFA-4689-40A3-88EA-00D1DF43E862}C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe FirewallRules: [UDP Query User{9D9172B8-A2A2-4B3E-BE44-C3CA66714CC1}C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe] => (Allow) C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe FirewallRules: [{6FE9A78F-C8FF-47C2-8470-0878B5ABCB02}] => (Block) C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe FirewallRules: [{619B23BE-F50C-4391-A3A3-ECCA0F77A2AA}] => (Block) C:\program files (x86)\gameforgelive\games\fra_fra\tera\tera-launcher.exe FirewallRules: [{38774354-26A1-4D70-AD0B-DB57B1D602B1}] => (Allow) C:\Program Files (x86)\GameforgeLive\gfl_client.exe FirewallRules: [TCP Query User{87B88FBD-2B21-4538-976B-397115A42AED}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe FirewallRules: [UDP Query User{AA1B0792-F344-4B69-8C98-665D2FFA86A3}C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base35702\heroesofthestorm_x64.exe ==================== Faulty Device Manager Devices ============= Name: J:\ Description: Card Reader Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: Multiple Service: WUDFRd Problem: : Windows has stopped this device because it has reported problems. (Code 43) Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. ==================== Event log errors: ========================= Application errors: ================== Error: (06/11/2015 10:36:50 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x1308 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/11/2015 05:25:04 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x12ec Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/11/2015 01:44:11 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x4f4 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/11/2015 00:09:29 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x1930 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/09/2015 10:48:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x11e4 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/09/2015 05:53:11 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (06/09/2015 05:52:33 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante HPAuto.exe, version : 1.0.12935.3667, horodatage : 0x4d5cc461 Nom du module défaillant : HPAuto.exe, version : 1.0.12935.3667, horodatage : 0x4d5cc461 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000007be2 ID du processus défaillant : 0xe28 Heure de début de l’application défaillante : 0xHPAuto.exe0 Chemin d’accès de l’application défaillante : HPAuto.exe1 Chemin d’accès du module défaillant: HPAuto.exe2 ID de rapport : HPAuto.exe3 Error: (06/09/2015 05:49:08 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme mbam.exe version 1.0.2.929 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 18bc Heure de début : 01d0a2cb0cef1bd0 Heure de fin : 15 Chemin d’accès de l’application : C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe ID de rapport : 0552d0a1-0ebf-11e5-8a06-001fc69fa42f Error: (06/09/2015 02:58:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0xa58 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 Error: (06/08/2015 11:23:07 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Nom du module défaillant : TERA.exe, version : 2.0.1.1, horodatage : 0x554c9127 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00d57f5c ID du processus défaillant : 0x1820 Heure de début de l’application défaillante : 0xTERA.exe0 Chemin d’accès de l’application défaillante : TERA.exe1 Chemin d’accès du module défaillant: TERA.exe2 ID de rapport : TERA.exe3 System errors: ============= Error: (06/09/2015 11:27:50 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service UMVPFSrv. Error: (06/09/2015 05:54:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service HP Support Assistant Service n’a pas pu démarrer en raison de l’erreur : %%2 Error: (06/09/2015 05:52:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service HP Auto s’est terminé de façon inattendue pour la 1ème fois. Error: (06/09/2015 00:51:48 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service Garmin Core Update Service. Error: (06/08/2015 02:09:10 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service lmhosts. Error: (06/07/2015 01:01:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service HP Support Assistant Service n’a pas pu démarrer en raison de l’erreur : %%2 Error: (06/07/2015 00:59:39 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service HP Auto s’est terminé de façon inattendue pour la 1ème fois. Error: (06/07/2015 01:08:26 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service UMVPFSrv. Error: (06/06/2015 00:07:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service HP Support Assistant Service n’a pas pu démarrer en raison de l’erreur : %%2 Error: (06/06/2015 00:05:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service HP Auto s’est terminé de façon inattendue pour la 1ème fois. Microsoft Office: ========================= Error: (12/23/2011 11:39:26 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 3, Application Name: Microsoft Office PowerPoint, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 48523 seconds with 1500 seconds of active time. This session ended with a crash. ==================== Memory info =========================== Processor: AMD Athlon(tm) II X2 260 Processor Percentage of memory in use: 24% Total physical RAM: 4095.3 MB Available physical RAM: 3084.35 MB Total Pagefile: 8188.82 MB Available Pagefile: 6257.45 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:1385.03 GB) (Free:908.85 GB) NTFS Drive d: (HP_RECOVERY) (Fixed) (Total:12.14 GB) (Free:1.47 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (TWD2) (CDROM) (Total:3.97 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 1397.3 GB) (Disk ID: F49043D9) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1385 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=12.1 GB) - (Type=07 NTFS) ==================== End of log ============================