Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by Nabil at 2015-06-16 23:13:39 Running from C:\Users\Nabil\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-760375659-1894567757-1513169214-500 - Administrator - Disabled) HomeGroupUser$ (S-1-5-21-760375659-1894567757-1513169214-1004 - Limited - Enabled) Invité (S-1-5-21-760375659-1894567757-1513169214-501 - Limited - Disabled) Nabil (S-1-5-21-760375659-1894567757-1513169214-1002 - Administrator - Enabled) => C:\Users\Nabil ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AMD Catalyst Install Manager (HKLM\...\{C3E5B3AF-12F2-9E42-B493-9490DC745953}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Apple Application Support (32 bits) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Belgium e-ID middleware 4.0.7 (build 7466) (HKLM\...\{824563DE-75AD-4166-9DC0-B6482F207466}) (Version: 4.0.7466 - Belgian Government) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Build-a-lot (x32 Version: 2.2.0.98 - WildTangent) Hidden Building the Great Wall of China Collector's Edition (x32 Version: 3.0.2.48 - WildTangent) Hidden BuuyNsave (HKLM-x32\...\{842C4394-47F7-60DE-480B-C09116B63559}) (Version: - BuyNsave) <==== ATTENTION Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) ContradePragma (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{ea755f67}) (Version: - ContradePragma) <==== ATTENTION Crazy Chicken Soccer (x32 Version: 2.2.0.110 - WildTangent) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.6.3728 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.4.4824 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.6.3821 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.6.3906 - CyberLink Corp.) CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3709 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.3.3907 - CyberLink Corp.) DisableMSDefender (Version: 1.0.0 - Hewlett-Packard Company) Hidden Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company) Evernote v. 5.2 (HKLM-x32\...\{412F6426-A3C7-11E3-8A71-00163E98E7D6}) (Version: 5.2.0.2951 - Evernote Corp.) Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden GoSave (HKLM-x32\...\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}) (Version: 1.2.0.1404 - ) <==== ATTENTION Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden Hades (HKLM-x32\...\Hades) (Version: 2.06.10.0 - Hades) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP 3D DriveGuard (HKLM-x32\...\{F90A86C9-7779-47DD-AC06-8EE832C55F55}) (Version: 6.0.18.1 - Hewlett-Packard Company) HP CoolSense (HKLM-x32\...\{E2C8D0C2-1C97-4C05-939A-5B13A0FE655C}) (Version: 2.20.31 - Hewlett-Packard Company) HP Documentation (HKLM-x32\...\{082B1425-0F24-43FA-9B64-E8F617B0AD3B}) (Version: 1.1.0.0 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7493.4758 - Hewlett-Packard) HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.08 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{8C696B4B-6AB1-44BC-9416-96EAC474CABE}) (Version: 7.5.2.12 - Hewlett-Packard Company) HP System Event Utility (HKLM-x32\...\{E9FA2CA2-B7B2-43E6-8449-A1618B042EAE}) (Version: 1.1.3 - Hewlett-Packard Company) HP Utility Center (HKLM\...\{B7B82520-8ECE-4743-BFD7-93B16C64B277}) (Version: 2.4.2 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) Inst5675 (Version: 8.01.08 - Softex Inc.) Hidden Inst5676 (Version: 8.01.08 - Softex Inc.) Hidden iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden LibreOffice 4.3.7.2 (HKLM-x32\...\{8ED4A1FC-56CF-414C-A9AB-A37714AA9EA7}) (Version: 4.3.7.2 - The Document Foundation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) OEM Application Profile (HKLM-x32\...\{315F1A48-D883-B234-7C79-15873574ACC1}) (Version: 1.00.0000 - Uw bedrijfsnaam) Package de pilotes Windows - Fedict SmartCard (04/30/2014 4.0.7.5) (HKLM\...\C5357B4AD7C02B3F6EF45765A07E5B725E50BBF7) (Version: 04/30/2014 4.0.7.5 - Fedict) PCCpnApp (HKLM-x32\...\{44E4311D-BA06-FD43-505E-17DC53F4C22F}) (Version: - OptOn) PhotoFiltre 7 (HKU\S-1-5-21-760375659-1894567757-1513169214-1002\...\PhotoFiltre 7) (Version: - ) Plants vs. Zombies - Game of the Year (x32 Version: 3.0.2.51 - WildTangent) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Ranch Rush 2 - Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.6 - REALTEK Semiconductor Corp.) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29075 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.24.1218.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7195 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.13.1216 - REALTEK Semiconductor Corp.) Red AdBlocker (HKLM-x32\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version: - Red AdBlocker) <==== ATTENTION SalePLuis (HKLM-x32\...\{B696F285-F54E-2524-58B1-E06A70ABE6BE}) (Version: - ) <==== ATTENTION Salus (HKLM-x32\...\Salus) (Version: 2.04.12.0 - Salus) <==== ATTENTION! SW-Booster (HKLM-x32\...\S-792098896) (Version: 3.3.0.1380 - SW-Booster) <==== ATTENTION swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden SW-Sustainer 1.80 (HKLM-x32\...\{5F189DF5-2D05-472B-9091-84D9848AE48B}{d0e87c27}) (Version: - Genuine P Software) <==== ATTENTION Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.1.7.8 - Synaptics Incorporated) Trinklit Supreme (x32 Version: 2.2.0.98 - WildTangent) Hidden unniesalles (HKLM-x32\...\{4CEE92A3-9F0C-51AB-ADC0-34EC24AD7B7E}) (Version: - ) <==== ATTENTION Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Vacation Quest™ - Australia (x32 Version: 3.0.2.32 - WildTangent) Hidden Virtual Families (x32 Version: 2.2.0.98 - WildTangent) Hidden Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent) WildTangent Games App pour HP (x32 Version: 4.0.11.2 - WildTangent) Hidden Youda Jewel Shop (x32 Version: 3.0.2.51 - WildTangent) Hidden YoutubeAdBlocke (HKLM-x32\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: 2.0.0.1647 - ) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-760375659-1894567757-1513169214-1002_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Nabil\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay No File ==================== Restore Points ========================= 23-05-2015 20:35:46 Programme d’installation pour les modules Windows 31-05-2015 23:24:26 Point de contrôle planifié 09-06-2015 17:01:09 Point de contrôle planifié 16-06-2015 21:47:35 Removed Google Chrome ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {04574594-D61A-47B9-A8D4-D01E7C39701E} - System32\Tasks\LaunchApp => C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe <==== ATTENTION Task: {067B0548-B782-48A4-86BB-50CC3F6254E1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2012-11-29] (Hewlett-Packard Company) Task: {0DD07948-6B79-4898-8291-DE3CCE0CF37C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-12-18] (Hewlett-Packard) Task: {29FB8EED-3BB5-4CB7-8880-11450E6A20D5} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\Logon => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {2F290CAA-2A31-4450-AF8C-AC6783F893FE} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.) Task: {31C053E1-C3FB-4C07-8187-77775BB2A276} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2013-12-18] (Hewlett-Packard) Task: {31E2A977-8481-4DD9-A458-1043A12EB14D} - System32\Tasks\{9C09F329-56CB-4139-BA9F-9F1CB6267719} => pcalua.exe -a C:\Users\Nabil\AppData\Roaming\sweet-page\UninstallManager.exe -c -ptid=cor Task: {484F1510-7A98-4AAF-B2FF-81219BAFD54B} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-6 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-6.exe [2014-10-21] (esc) <==== ATTENTION Task: {4BFD252F-BE41-48FF-AAFF-18CDDDE09CCE} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => schtasks Task: {51D90B3A-15EB-4CBA-9099-5079B27A4385} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-2 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-2.exe <==== ATTENTION Task: {5517C04D-5014-4CCF-A0D6-609F07C5CF86} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-7 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-7.exe <==== ATTENTION Task: {656B4403-A308-42AC-BC5F-69670E3DAE70} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-06-10] (Microsoft Corporation) Task: {6BE854A3-1A00-48E3-B1BD-F11DED74B33C} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5_user => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5.exe <==== ATTENTION Task: {72A44DD7-CC25-44B9-890A-73EEEA1B555F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {78BB8BAD-25D6-4CD4-B51A-B07D5693E2D2} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-05-06] (Microsoft Corporation) Task: {7B6752DC-961F-4683-B034-D3BCB557A8C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-01-13] (Hewlett-Packard Company) Task: {81F5504A-88B4-4D4A-984B-2F54918CDC62} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-4 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-4.exe <==== ATTENTION Task: {9CBD2A56-CC93-4391-BFBC-8B2556B5E237} - System32\Tasks\YourFileDownloader Installer Starter => C:\Users\Nabil\AppData\Local\Temp\YourFileDownloaderzeSmWkcnHv.exe [2014-10-30] (http://yourfile-downloader.com) <==== ATTENTION Task: {A8244A75-AF02-4CDF-AD4D-9374DD781EAA} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattel\DiagTrackRunner.exe [2015-03-16] (Microsoft Corporation) Task: {A9948B0A-56C2-493F-92CC-16C0907EA613} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {A9B64FC2-410E-4A86-A7E3-BE39F2DA9A53} - System32\Tasks\ASP => C:\Program Files (x86)\RCP\systweakasp.exe Task: {AD383887-85AE-4D89-9E79-23B24A2B6125} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-3 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-3.exe <==== ATTENTION Task: {BAF904D5-0F28-4617-B93F-CB4E1F3DE1FE} - System32\Tasks\LuckyTab => C:\Program Files (x86)\LuckyTab\LuckyTab.exe [2014-10-30] (http://lucky-tab.com/) <==== ATTENTION Task: {BF82AA99-DAAA-4C71-BAB4-A296E4179882} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-11 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-11.exe <==== ATTENTION Task: {C269532F-7C3D-46E2-88E0-371EDAFE1AA5} - System32\Tasks\GenericSettingsHandler\Windows-Credentials\RetrySyncTask_for_S-1-5-21-760375659-1894567757-1513169214-1002 Task: {C37774B4-CBB4-458A-8C60-4B9D43712E08} - System32\Tasks\SW-Booster-S-792098896 => c:\programdata\trusted publisher\sw-booster\SW-Booster.exe [2014-10-27] () <==== ATTENTION Task: {C388121D-B90B-47A9-841F-989FA7A16092} - System32\Tasks\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {DFDA72A2-6C8E-433B-BDAA-703CF5D9B8DE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2014-01-13] (Hewlett-Packard Company) Task: {EC6A23B6-5261-4F1E-A1FF-D2347BA54145} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [2014-03-07] (CyberLink Corp.) Task: {F1E64EF2-C3DB-4FB8-91AC-3CF383E8F5E9} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-1 => C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe <==== ATTENTION Task: {F82A5415-F85C-47AF-885D-2276E49842D4} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-05-06] (Microsoft Corporation) Task: {FA63D99F-1029-40D7-84E5-63D7E379F78F} - System32\Tasks\LaunchSignup => C:\Program Files (x86)\MyPC Backup\Signup Wizard.exe <==== ATTENTION Task: {FD7253DA-4B40-4E71-8774-F3389CEAAE9D} - System32\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5 => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5.exe <==== ATTENTION Task: {FED902B0-DB18-40B2-A759-DF87054DCE10} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2013-11-01] (Hewlett-Packard Development Company, L.P.) Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-1.job => C:\Program Files (x86)\TheTorntv V10\TheTorntv V10-codedownloader.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-11.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-11.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-2.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-2.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-3.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-3.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-4.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-4.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5_user.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-5.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-6.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-6.exe <==== ATTENTION Task: C:\Windows\Tasks\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-7.job => C:\Program Files (x86)\TheTorntv V10\0c5f06fb-414e-467b-aff8-1b5c5f8e3012-7.exe <==== ATTENTION Task: C:\Windows\Tasks\SW-Booster-S-792098896.job => c:\programdata\trusted publisher\sw-booster\SW-Booster.exeO/schedule /profile c:\programdata\trusted publisher\sw-booster\792098896.ini <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2014-03-01 18:38 - 2014-03-01 18:38 - 02110464 _____ () C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll 2014-03-01 18:34 - 2014-03-01 18:34 - 00021504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll 2014-03-01 18:34 - 2014-03-01 18:34 - 00035328 _____ () C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll 2014-03-01 18:34 - 2014-03-01 18:34 - 00055296 _____ () C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll 2014-03-01 18:52 - 2014-03-01 18:52 - 00367504 _____ () C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll 2014-03-01 18:52 - 2014-03-01 18:52 - 00712592 _____ () C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll 2014-03-15 02:21 - 2014-03-15 02:21 - 00140288 _____ () C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe 2014-03-15 02:20 - 2014-03-15 02:20 - 00127488 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-02-13 04:20 - 2015-02-13 04:20 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-06-16 06:58 - 2014-03-05 18:09 - 00088064 _____ () C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe 2014-10-30 16:06 - 2014-10-29 00:01 - 04959744 _____ () C:\Windows\rcore.exe 2014-10-13 16:18 - 2014-10-13 16:18 - 00623064 _____ () C:\Program Files (x86)\Universal Updater\UpdaterService.exe 2014-10-27 18:57 - 2014-10-27 18:57 - 00773632 _____ () c:\programdata\trusted publisher\sw-booster\SW-Booster.exe 2014-03-01 18:41 - 2014-03-01 18:41 - 00065024 _____ () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe 2015-06-10 06:05 - 2015-06-10 06:05 - 02422784 _____ () C:\Program Files (x86)\Smwyyntm1ndi1zdz\zwjlm2f2m3m5bgj.exe 2015-04-14 11:28 - 2015-04-14 11:29 - 01655808 _____ () c:\Program Files (x86)\IncludeMonitor\IncludeMonitor.dll 2015-06-14 17:50 - 2015-06-14 17:50 - 00011264 _____ () C:\Windows\TEMP\nscB028.tmp\System.dll 2015-06-14 17:50 - 2015-06-14 17:51 - 00091136 _____ () C:\Windows\TEMP\nscB028.tmp\base64.dll 2015-06-14 17:51 - 2015-06-14 17:51 - 00004096 _____ () C:\Windows\TEMP\nscB028.tmp\ThreadTimer.dll 2015-06-14 17:51 - 2015-06-14 17:51 - 00020992 _____ () C:\Windows\TEMP\nscB028.tmp\inetc.dll 2015-06-14 19:29 - 2015-06-14 19:29 - 00011264 _____ () C:\Windows\TEMP\nsk9F99.tmp\System.dll 2015-06-14 19:36 - 2015-06-14 19:36 - 00020992 _____ () C:\Windows\TEMP\nsk9F99.tmp\inetc.dll 2015-06-14 19:59 - 2015-06-14 19:59 - 00004096 _____ () C:\Windows\TEMP\nsk9F99.tmp\ThreadTimer.dll 2015-06-14 19:59 - 2015-06-14 19:59 - 00011264 _____ () C:\Windows\TEMP\nsb5B65.tmp\System.dll 2015-06-14 20:06 - 2015-06-14 20:06 - 00020992 _____ () C:\Windows\TEMP\nsb5B65.tmp\inetc.dll 2015-06-14 20:29 - 2015-06-14 20:29 - 00004096 _____ () C:\Windows\TEMP\nsb5B65.tmp\ThreadTimer.dll 2015-06-15 13:48 - 2015-06-15 13:48 - 00011264 _____ () C:\Windows\TEMP\nsgFCD1.tmp\System.dll 2015-06-15 15:07 - 2015-06-15 15:07 - 00020992 _____ () C:\Windows\TEMP\nsgFCD1.tmp\inetc.dll 2015-06-15 15:32 - 2015-06-15 15:32 - 00004096 _____ () C:\Windows\TEMP\nsgFCD1.tmp\ThreadTimer.dll 2015-06-15 15:32 - 2015-06-15 15:32 - 00011264 _____ () C:\Windows\TEMP\nsl8B97.tmp\System.dll 2015-06-15 18:15 - 2015-06-15 18:15 - 00020992 _____ () C:\Windows\TEMP\nsl8B97.tmp\inetc.dll 2015-06-15 18:30 - 2015-06-15 18:30 - 00004096 _____ () C:\Windows\TEMP\nsl8B97.tmp\ThreadTimer.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\Nabil\OneDrive:ms-properties ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""="" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-760375659-1894567757-1513169214-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\Run32: => "Salus CrashMon" HKLM\...\StartupApproved\Run32: => "CrashMon" HKLM\...\StartupApproved\Run32: => "SuddenlyMusic AppIntegrator 32-bit" HKLM\...\StartupApproved\Run32: => "SuddenlyMusic AppIntegrator 64-bit" HKU\S-1-5-21-760375659-1894567757-1513169214-1002\...\StartupApproved\StartupFolder: => "TornTvDownloader.lnk" HKU\S-1-5-21-760375659-1894567757-1513169214-1002\...\StartupApproved\Run: => "Price-Horse" HKU\S-1-5-21-760375659-1894567757-1513169214-1002\...\StartupApproved\Run: => "Only-search" ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{3A2B03D1-92A3-4733-97CE-BBF0533484CF}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{18DDFA63-D4B8-47F5-83B2-09189DF32634}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{81768068-C849-4433-932F-8588B5CDAC95}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{388005E0-5A55-4679-89AE-0BE1547078E5}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{4E674EC8-DEF6-4A9B-926F-D0007E0CFA43}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe FirewallRules: [{74B2FF0C-D78D-4956-99C7-0D96E3FCCD1C}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe FirewallRules: [{CEABF66F-DDC4-4A85-8662-6675A2D2D21A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe FirewallRules: [{6A6788FE-D1F4-4447-9132-66A8E6747D3A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe FirewallRules: [{0243BC2B-57EA-496E-98D3-EB1F400D0B48}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe FirewallRules: [{5FD6FDFF-7B01-4281-ABB4-90BF432DD83A}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe FirewallRules: [{7AA126DD-C3C3-4867-B739-76FF87813369}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{FDB4194C-BB24-4858-B68C-58F4168010D0}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe FirewallRules: [{24DEFC80-2F7F-4C0E-B684-4618CD97AFF6}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE FirewallRules: [{50E619DB-6A73-4D09-B538-61A03DD2BA66}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe FirewallRules: [{7844AF17-4DB0-40CB-B0C5-0A5E8853AB3E}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe FirewallRules: [{7EB714E8-8731-4F43-B58E-A21D1DDCE0F2}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{B516AD3A-7F42-4C57-982A-3A4FA5B07C36}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{B35CD501-31C5-485A-993C-2935D9B8F72F}] => (Allow) C:\Users\Nabil\Downloads\Baby_Bob_Marley_downloader.exe FirewallRules: [{B7659096-297A-4B0D-8278-1F92EF2DFC69}] => (Allow) C:\Users\Nabil\Downloads\Baby_Bob_Marley_downloader.exe FirewallRules: [{17C69576-74C5-41F4-8BCF-ADC44ECC3F00}] => (Allow) C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe FirewallRules: [{E5098513-B357-4E5C-9E47-3AE5EC196DDF}] => (Allow) C:\Program Files (x86)\SimpleFiles\SimpleFiles.exe FirewallRules: [{B746BAC3-7DD8-4523-ADAA-31EEC0AE863B}] => (Allow) C:\Program Files (x86)\SimpleFiles\downloader.exe FirewallRules: [{6353EC82-5295-4C44-92CC-E7374EBA7FBE}] => (Allow) C:\Program Files (x86)\SimpleFiles\downloader.exe FirewallRules: [{B0C612C0-CBB5-402C-850E-76FBA6D99798}] => (Allow) C:\Users\Nabil\AppData\Local\WinnerDM\wdm.bin FirewallRules: [TCP Query User{8DDACBAC-990F-4846-AA52-F8127873B438}C:\program files (x86)\prompt downloader\promptdownloader.exe] => (Allow) C:\program files (x86)\prompt downloader\promptdownloader.exe FirewallRules: [UDP Query User{C0743762-5FCA-4C11-9B98-71EB9CB70CC9}C:\program files (x86)\prompt downloader\promptdownloader.exe] => (Allow) C:\program files (x86)\prompt downloader\promptdownloader.exe FirewallRules: [TCP Query User{78996DBB-61D4-4963-BB6A-900A2DA7D8EE}C:\users\nabil\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\nabil\appdata\roaming\utorrent\utorrent.exe FirewallRules: [UDP Query User{F5E093C3-8DA4-4114-B5A7-FCFAA462FCB7}C:\users\nabil\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\nabil\appdata\roaming\utorrent\utorrent.exe FirewallRules: [TCP Query User{CD78BAB4-21B9-4FAA-BC6F-E6F5E5822BDA}C:\users\nabil\appdata\roaming\torntv.com\torntv downloader.exe] => (Block) C:\users\nabil\appdata\roaming\torntv.com\torntv downloader.exe FirewallRules: [UDP Query User{E23B36FA-9F43-4A7D-AFF0-0D06B49A6158}C:\users\nabil\appdata\roaming\torntv.com\torntv downloader.exe] => (Block) C:\users\nabil\appdata\roaming\torntv.com\torntv downloader.exe FirewallRules: [TCP Query User{6BC67812-D87E-4B10-AF49-8E00B568AC13}C:\program files (x86)\media crawler\mediacrawler.exe] => (Block) C:\program files (x86)\media crawler\mediacrawler.exe FirewallRules: [UDP Query User{4254349F-09AE-4A3B-9803-37D919510C2C}C:\program files (x86)\media crawler\mediacrawler.exe] => (Block) C:\program files (x86)\media crawler\mediacrawler.exe FirewallRules: [{1450F25B-6040-436D-86C6-3E53BFD0A7DA}] => (Allow) C:\Users\Nabil\Downloads\Insanity_-_Fast_and_Furious_downloader.exe FirewallRules: [{820EB428-2796-424E-98E1-1565B026B3F5}] => (Allow) C:\Users\Nabil\Downloads\Insanity_-_Fast_and_Furious_downloader.exe FirewallRules: [TCP Query User{DEA822D2-3EF3-46E0-BE26-18D6F77A1543}C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe] => (Allow) C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe FirewallRules: [UDP Query User{ADB60B36-8AEE-4983-9928-147BEA370B71}C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe] => (Allow) C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe FirewallRules: [TCP Query User{B79A72CC-08C4-4E86-A514-3343436C582E}C:\users\nabil\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\nabil\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{90ACC2FD-D124-4784-AF44-BB42838262FA}C:\users\nabil\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\nabil\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [TCP Query User{B50FDD18-7B2B-4A4D-A2AE-14828A0C04C7}C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe FirewallRules: [UDP Query User{9B94780D-8104-45F4-869A-626D050F4CF1}C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe] => (Block) C:\users\nabil\appdata\roaming\bittorrent\bittorrent.exe FirewallRules: [{3A0359E4-D168-460E-8785-79262D625831}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe FirewallRules: [{E8525071-3FEB-4504-87FE-C8559A17BC67}] => (Allow) C:\Program Files (x86)\YourFileDownloader\YourFileDownloader.exe FirewallRules: [{55FEB81D-B34A-4402-AFC9-D81040B89B67}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{16CE1FBF-957A-4E66-8E75-679795AE1D8D}] => (Allow) C:\Program Files (x86)\YourFileDownloader\Downloader.exe FirewallRules: [{C7AFA299-7FB1-470B-AAB3-0ED536B180B6}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Phone Manager\Apowersoft Phone Manager.exe FirewallRules: [{338898EB-8B7D-48F7-B390-5C1F62DDE766}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Phone Manager\Apowersoft Phone Manager.exe FirewallRules: [{5DC07100-DD40-4DAB-9C6A-CFCE174684B7}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Phone Manager\ApowersoftAndroidDaemon.exe FirewallRules: [{5C4B6C96-9F33-42E1-9448-8603C142A8F7}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Phone Manager\ApowersoftAndroidDaemon.exe FirewallRules: [{41446013-4FDC-4391-9C5E-079A2C12E745}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{79E7F6BA-221B-4B2A-B979-B7C6BFF52E20}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{97CAF072-87D6-46BA-B838-3974E44CFAE0}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/16/2015 10:03:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante opbhobroker.exe, version : 8.0.1.8, horodatage : 0x53127f55 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000000000 ID du processus défaillant : 0x3834 Heure de début de l’application défaillante : 0xopbhobroker.exe0 Chemin d’accès de l’application défaillante : opbhobroker.exe1 Chemin d’accès du module défaillant: opbhobroker.exe2 ID de rapport : opbhobroker.exe3 Nom complet du package défaillant : opbhobroker.exe4 ID de l’application relative au package défaillant : opbhobroker.exe5 Error: (06/16/2015 09:24:33 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 10922 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 10922 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 31265 Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 31265 Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/15/2015 11:31:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 10435671 Error: (06/15/2015 11:31:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 10435671 System errors: ============= Error: (06/16/2015 11:06:08 PM) (Source: Schannel) (EventID: 4120) (User: AUTORITE NT) Description: Une alerte irrécupérable a été générée et envoyée au point de terminaison distant. Ceci peut entraîner l’arrêt de la connexion. Le code d’erreur irrécupérable défini par le protocole TLS est 40. L’état d’erreur de Windows SChannel est 252. Error: (06/16/2015 11:06:08 PM) (Source: Schannel) (EventID: 4120) (User: AUTORITE NT) Description: Une alerte irrécupérable a été générée et envoyée au point de terminaison distant. Ceci peut entraîner l’arrêt de la connexion. Le code d’erreur irrécupérable défini par le protocole TLS est 40. L’état d’erreur de Windows SChannel est 252. Error: (06/16/2015 11:06:08 PM) (Source: Schannel) (EventID: 4120) (User: AUTORITE NT) Description: Une alerte irrécupérable a été générée et envoyée au point de terminaison distant. Ceci peut entraîner l’arrêt de la connexion. Le code d’erreur irrécupérable défini par le protocole TLS est 40. L’état d’erreur de Windows SChannel est 252. Error: (06/16/2015 07:27:38 AM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (06/16/2015 07:27:38 AM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (06/16/2015 07:26:15 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service GamesAppIntegrationService s’est terminé de façon inattendue pour la 1ème fois. Error: (06/15/2015 08:37:50 PM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (06/15/2015 08:37:50 PM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (06/15/2015 08:37:50 PM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (06/15/2015 08:37:50 PM) (Source: DCOM) (EventID: 10010) (User: KHARBOUCHE) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Microsoft Office: ========================= Error: (06/16/2015 10:03:05 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: opbhobroker.exe8.0.1.853127f55unknown0.0.0.000000000c00000050000000000000000383401d0a86c0aa70934C:\Program Files\Hewlett-Packard\SimplePass\opbhobroker.exeunknownb29a6b58-1462-11e5-82c9-b010416a6404 Error: (06/16/2015 09:24:33 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 10922 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 10922 Error: (06/16/2015 07:27:52 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 31265 Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 31265 Error: (06/15/2015 11:34:21 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (06/15/2015 11:31:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 10435671 Error: (06/15/2015 11:31:53 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 10435671 CodeIntegrity Errors: =================================== Date: 2015-06-06 16:43:03.372 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-06-06 16:43:02.965 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-30 20:37:44.120 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-30 20:37:43.791 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-29 22:33:40.582 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-29 22:33:40.223 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-22 22:18:18.488 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-22 22:18:18.082 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-16 20:58:36.204 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. Date: 2015-05-16 20:58:35.798 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements. ==================== Memory info =========================== Processor: AMD A8-6410 APU with AMD Radeon R5 Graphics Percentage of memory in use: 79% Total physical RAM: 3519.68 MB Available physical RAM: 724.69 MB Total Pagefile: 7103.68 MB Available Pagefile: 3543.61 MB Total Virtual: 131072 MB Available Virtual: 131071.78 MB ==================== Drives ================================ Drive c: (Windows) (Fixed) (Total:444.35 GB) (Free:385.7 GB) NTFS Drive d: (RECOVERY) (Fixed) (Total:20.39 GB) (Free:2.06 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 0DE25F8E) Partition: GPT Partition Type. ==================== End of log ============================