Additional scan result of Farbar Recovery Scan Tool (x64) Version:26-07-2015 Ran by aci at 2015-07-27 10:55:35 Running from C:\Users\aci\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= aci (S-1-5-21-971921180-2467287504-1259518312-1000 - Administrator - Enabled) => C:\Users\aci Administrateur (S-1-5-21-971921180-2467287504-1259518312-500 - Administrator - Disabled) HomeGroupUser$ (S-1-5-21-971921180-2467287504-1259518312-1003 - Limited - Enabled) Invité (S-1-5-21-971921180-2467287504-1259518312-501 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D} AS: Bitdefender Antispyware (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Activation Windows 7 1.0 (HKLM-x32\...\{734E573B-800D-415D-A6A2-DDB0A5AC50B1}_is1) (Version: - My Company, Inc.) Adobe Flash Player 18 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Apple Application Support (32 bits) (HKLM-x32\...\{7FE25256-B7C1-480D-B736-10A67A833AEA}) (Version: 3.2 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{B255D495-4734-4E9B-B4F5-96702FD4A7B9}) (Version: 3.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{5D61F006-168C-4B8B-B7FD-F113C10AE0E4}) (Version: 8.2.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASUS Manager - Ai Booting (HKLM-x32\...\{2DCE446C-D090-4458-8782-8F16DF94351E}) (Version: 2.01.14 - ASUSTeK Computer Inc.) ASUS Manager - Ai Charger II (HKLM-x32\...\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}) (Version: 2.00.13 - ASUSTeK Computer Inc.) ASUS Manager - Backup & Recovery (HKLM-x32\...\{34D67DE5-2ECF-4E6B-A243-2C16E2792787}) (Version: 2.01.11 - ASUSTeK Computer Inc.) ASUS Manager - Family Safety (HKLM-x32\...\{016AFF97-4E18-4560-B8E5-B684BB124E32}) (Version: 2.00.05 - ASUSTeK Computer Inc.) ASUS Manager - PC Cleanup (HKLM-x32\...\{E22A19AE-7DDB-4959-B1DB-A0996294352A}) (Version: 2.01.11 - ASUSTeK Computer Inc.) ASUS Manager - Power Manager (HKLM-x32\...\{DD248BEE-E925-4720-A775-9A42276BB6EA}) (Version: 2.02.03 - ASUSTeK Computer Inc.) ASUS Manager - Update (HKLM-x32\...\{675BBE8A-0ED3-4048-8723-BA51EAB8E1A8}) (Version: 2.02.06 - ASUSTeK Computer Inc.) ASUS Manager (HKLM-x32\...\{F5E5AD85-4A90-4604-A887-464D3818D8FD}) (Version: 2.08.04 - ASUSTeK Computer Inc.) Bel Atout 5.23 (HKLM-x32\...\BelAtoutFr_is1) (Version: - Vincent Brévart) Bitdefender Antivirus Plus 2015 (HKLM\...\Bitdefender) (Version: 18.22.0.1521 - Bitdefender) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.5.0.0 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: - ‪Canon Inc.‬) Canon MP230 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP230_series) (Version: 1.00 - Canon Inc.) Canon MP230 series On-screen Manual (HKLM-x32\...\Canon MP230 series On-screen Manual) (Version: 7.5.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 1.0.0 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 1.0.0 - Canon Inc.) Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.0.0 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.0.0 - Canon Inc.) Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.) Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.) Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.) Corel Graphics - Windows Shell Extension (HKLM-x32\...\_{B6BFCD02-BA0E-41A9-9C9C-6624C4BB475F}) (Version: 15.2.0.686 - Corel Corporation) Corel Graphics - Windows Shell Extension (x32 Version: 15.2.686 - Corel Corporation) Hidden Corel Graphics - Windows Shell Extension 64 Bit (Version: 15.2.686 - Corel Corporation) Hidden Corel PDF Fusion - Creator (Version: 4.0.0 - Corel Corporation) Hidden Corel PDF Fusion - ICA (x32 Version: 1.12 - Corel Corporation) Hidden Corel PDF Fusion - Program (x32 Version: 1.14.0000 - Corel Corporation) Hidden Corel PDF Fusion - Setup (x32 Version: 1.12 - Corel Corporation) Hidden Corel PDF Fusion (HKLM-x32\...\_{5D62567F-38BA-4713-B87E-CF06C465E33B}) (Version: 1.14 - Corel Corporation) Dazzle Video Capture DVC100 X64 Driver 1.07 (HKLM-x32\...\{631D71FD-237F-4D74-B090-88E66FBC5A10}) (Version: 1.07.0000 - Pinnacle) Device Pack (HKLM-x32\...\{D54D4A22-4382-4485-92DF-00C39F123E87}) (Version: 1.5.7 - D-Link) D-Link D-ViewCam (HKLM-x32\...\{440E9F90-0619-4E84-8226-65AD5073AD24}) (Version: 3.6.2 - D-Link) Dropbox (HKLM-x32\...\Dropbox) (Version: 3.6.9 - Dropbox, Inc.) Dropbox Update Helper (x32 Version: 1.3.27.33 - Dropbox, Inc.) Hidden eMule0.60 (HKLM-x32\...\eMule0.60) (Version: 1.0.0.4 - eMule.com) Enregistrement utilisateur de Canon MP230 series (HKLM-x32\...\Enregistrement utilisateur de Canon MP230 series) (Version: - Canon Inc.‎) Intel(R) Network Connections 18.5.54.0 (HKLM\...\PROSetDX) (Version: 18.5.54.0 - Intel) iolo technologies' System Mechanic Professional (HKLM-x32\...\{BBD3F66B-1180-4785-B679-3F91572CD3B4}_is1) (Version: 14.5.2 - iolo technologies, LLC) iTunes (HKLM\...\{6CF1A7E2-8001-4870-9F18-3C6CDD6FE9E3}) (Version: 12.2.1.16 - Apple Inc.) Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50709 - Microsoft Corporation) Microsoft Office Professionnel Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 - ENU (HKLM-x32\...\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Tools for Applications 2.0 Runtime (HKLM-x32\...\{299C0434-4F4E-341F-A916-4E07AEB35E79}) (Version: 9.0.30729 - Microsoft Corporation) Mises à jour NVIDIA 2.4.5.44 (Version: 2.4.5.44 - NVIDIA Corporation) Hidden Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NVIDIA GeForce Experience 2.4.5.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.4.5.44 - NVIDIA Corporation) NVIDIA Logiciel système PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation) NVIDIA Pilote 3D Vision 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 353.30 - NVIDIA Corporation) NVIDIA Pilote audio HD : 1.3.34.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.3 - NVIDIA Corporation) NVIDIA Pilote du contrôleur 3D Vision 352.65 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 352.65 - NVIDIA Corporation) NVIDIA Pilote graphique 353.30 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.30 - NVIDIA Corporation) Opera Stable 30.0.1835.125 (HKLM-x32\...\Opera 30.0.1835.125) (Version: 30.0.1835.125 - Opera Software) Outils de vérification linguistique 2013 de Microsoft Office - Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Panneau de configuration NVIDIA 353.30 (Version: 353.30 - NVIDIA Corporation) Hidden Pinnacle Studio 18 - Install Manager (HKLM\...\{39B53CC2-EE72-44E6-800D-C61A6465BF1A}) (Version: 18.0.234 - Corel Corporation) Pinnacle Studio 18 (HKLM\...\{11FB47FB-B341-4FD8-A505-E4C0CC0536C1}) (Version: 18.0.0.234 - Corel Corporation) PrintMaster 2012 Platinum (HKLM-x32\...\5354-7805-5584-7014) (Version: 4.0.0.230 - Encore Software Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7272 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}) (Version: 1.00.0247 - REALTEK Semiconductor Corp.) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden SHIELD Streaming (Version: 4.1.2000 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (Version: 2.4.5.44 - NVIDIA Corporation) Hidden System Checkup 3.5 (HKLM-x32\...\{4AC7B4E7-59B7-4E48-A60D-263C486FC33A}_is1) (Version: 3.5.4.2 - iolo technologies, LLC) System Mechanic 14 Professional (x32 Version: 14.5.2 - ) Hidden TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.43879 - TeamViewer) Update for Skype for Business 2015 (KB2889853) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{DD51BA84-F589-4939-B5FE-5538B3DCC12E}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Update for Skype for Business 2015 (KB3054791) 64-Bit Edition (HKLM\...\{90150000-012B-040C-1000-0000000FF1CE}_Office15.PROPLUS_{591150FB-47D4-495C-9E76-F8D354A2577D}) (Version: - Microsoft) Uplayer (HKLM-x32\...\{28B6BA37-247E-4F7C-8D60-3EC1C9A2EB2F}) (Version: 1.0.0.31 - D-LINK CORPORATION) VC_CRT_x64 (Version: 1.02.0000 - Intel Corporation) Hidden WinRAR 5.21 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0DCFE89C-CBF2-4A93-89A6-32C1630FCC3C} - System32\Tasks\iolo DelOnReboot => cmd.exe /c IF EXIST C:\ProgramData\iolo\ops\smrr.dll del /f C:\ProgramData\iolo\ops\smrr.dll Task: {10731D63-0E05-4567-8DDC-D96AD1AAE145} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: {1985A4D4-9304-4B7E-B2FD-079072D02BD4} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe [2015-07-15] (Adobe Systems Incorporated) Task: {277B1A59-759B-441F-BD4F-5B98578C3D41} - System32\Tasks\ASUS\Power_Manager_background => C:\Program Files (x86)\ASUS\ASUS Manager\Power Manager\Power Manager_background.exe [2014-02-20] (ASUSTeK) Task: {46ED52E9-536C-43A7-B0B6-FFB08145090E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {59B051EF-B843-48FA-A630-CF8F19895B5B} - System32\Tasks\ASUS\ASUS Update Checker => C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSUpdateChecker.exe [2014-03-18] () Task: {5A7C9B9B-F438-45E2-9B11-13534E953AA9} - System32\Tasks\ASUS\ASUS AiCharger_Desktop Execute => C:\Program Files (x86)\InstallShield Installation Information\{9AF45D7C-34F1-4BA0-B799-825C8C04494C}\AiChargerDT.exe [2013-04-02] (ASUSTek Computer Inc.) Task: {5FD352E5-B23B-4544-911D-60E3537841AA} - System32\Tasks\ASUS\ASUS Manager HotKey Service => C:\Program Files (x86)\ASUS\ASUS Manager\AsHKService.exe [2014-03-19] (ASUSTeK Computer Inc.) Task: {7B9C4C35-B79E-4767-8A4A-825458248E27} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-26] (Dropbox, Inc.) Task: {9212FF43-24D1-415D-935B-EDA6DB232471} - System32\Tasks\iolo System Checkup => C:\ProgramData\iolo\scustask.lnk [2015-07-07] () Task: {93318AF0-9E3D-4DD5-805F-CA89925DB0B5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {93936273-64E5-4175-AF71-6C32EC7F568E} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2015-06-26] (Dropbox, Inc.) Task: {A47D9196-B023-431E-9BC8-AFC7BD615500} - System32\Tasks\ASUS\ASUS Updater => C:\Program Files (x86)\ASUS\ASUS Manager\Application Update\ASUSFourceUpdater.exe [2014-03-20] () Task: {A512863C-055A-477D-ABD7-A4E34A76E45B} - System32\Tasks\iolo Process Governor => C:\Program Files (x86)\iolo\System Mechanic Professional\iologovernor64.exe [2015-04-28] (iolo technologies, LLC) Task: {AD1C9143-D3DC-47D7-B546-C24949088E33} - System32\Tasks\ASUS\ASUS Manager BackgroundWindow => C:\Program Files (x86)\ASUS\ASUS Manager\BackgroundWindow.exe [2013-08-23] () Task: {C159E312-8697-4B7B-937C-DF67BF93F5EE} - System32\Tasks\Opera scheduled Autoupdate 1434666350 => C:\Program Files (x86)\Opera\launcher.exe [2015-07-10] (Opera Software) Task: {CC75B42C-28CA-4050-A28D-335640E04848} - System32\Tasks\ASUS\ASUS AiCharger_II TrayIcon => C:\Program Files (x86)\ASUS\ASUS Manager\Ai Charger II\Ai_ChargerII_TrayIcon(ASUS_Manager).exe [2014-03-20] (ASUSTeK) Task: {D172FB75-E922-47E7-B2F9-83ADE6C381F3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {EFB0B847-0DF4-4F85-B8F0-6C742609E24B} - System32\Tasks\ASUS\ASUS Manager - PC Cleanup - SecureDeleteBackground => C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe [2014-06-03] () Task: {F109311B-7AA1-4116-820E-A978CB5F2EB7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-15] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_209_pepper.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2015-06-19 10:37 - 2014-08-27 16:31 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\txmlutil.dll 2015-06-19 10:37 - 2013-09-03 14:29 - 00101328 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\bdmetrics.dll 2015-06-19 10:37 - 2015-03-27 16:03 - 00003072 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\UI\accessl.ui 2015-07-21 18:31 - 2015-07-21 18:32 - 00876888 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00450_003\ashttpbr.mdl 2015-07-21 18:31 - 2015-07-21 18:32 - 00743000 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00450_003\ashttpdsp.mdl 2015-07-21 18:31 - 2015-07-21 18:32 - 02795272 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00450_003\ashttpph.mdl 2015-07-21 18:31 - 2015-07-21 18:32 - 01414048 _____ () C:\Program Files\Bitdefender\Bitdefender 2015\otengines_00450_003\ashttprbl.mdl 2015-06-19 10:14 - 2015-06-17 08:48 - 00116368 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-05-15 16:26 - 2015-05-15 16:26 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2015-06-19 09:04 - 2014-06-03 14:59 - 00930448 _____ () C:\Program Files (x86)\ASUS\ASUS Manager\PC Cleanup\SecureDeleteBackground.exe 2015-06-28 23:04 - 2009-05-12 14:08 - 00241152 _____ () C:\Program Files (x86)\Activation Windows 7\Activation Windows 7.exe 2015-06-19 08:50 - 2013-11-06 18:58 - 00920736 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2015-06-19 10:37 - 2015-06-03 23:06 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll 2015-07-27 09:20 - 2015-07-27 09:20 - 00043008 _____ () c:\users\aci\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpvwdf_c.dll 2015-06-26 22:02 - 2015-03-19 09:15 - 00750080 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll 2015-06-26 22:02 - 2015-03-19 09:15 - 00047616 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll 2015-06-26 22:02 - 2015-03-19 09:15 - 00865280 _____ () C:\Program Files (x86)\Dropbox\Client\plugins\platforms\qwindows.dll 2015-06-26 22:02 - 2015-03-19 09:15 - 00200704 _____ () C:\Program Files (x86)\Dropbox\Client\plugins\imageformats\qjpeg.dll 2015-07-09 16:33 - 2015-03-19 09:15 - 00010240 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick.2\qtquick2plugin.dll 2015-06-26 22:02 - 2015-03-19 09:15 - 00726016 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-07-09 16:33 - 2015-03-19 09:15 - 00010240 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Window.2\windowplugin.dll 2015-06-19 08:50 - 2015-07-27 09:22 - 00027648 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2015-06-19 08:50 - 2010-06-29 10:58 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2015-07-15 19:44 - 2015-07-15 19:43 - 01649272 _____ () C:\Program Files (x86)\Opera\30.0.1835.125\libglesv2.dll 2015-07-15 19:44 - 2015-07-15 19:43 - 00081016 _____ () C:\Program Files (x86)\Opera\30.0.1835.125\libegl.dll 2015-07-15 19:46 - 2015-07-15 19:46 - 16307888 _____ () C:\Windows\SysWOW64\Macromed\Flash\pepflashplayer32_18_0_0_209.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Windows\SysWOW64\FlashPlayerInstaller.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner-4-207-multi-win (1).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner-4-207-multi-win (2).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner-4-207-multi-win.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner_4.208 (1).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner_4.208 (2).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner_4.208 (3).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner_4.208 (4).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\adwcleaner_4.208.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\belatout523.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Firefox Setup Stub 38.0.5 (1).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Firefox Setup Stub 38.0.5 (2).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Firefox Setup Stub 38.0.5 (3).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Firefox Setup Stub 38.0.5.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\FRST64.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\iTunesSetup.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\mbam-setup-2.1.8.1057.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\ParetoLogic PC Health Advisor_fr.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Setup_WinThruster_2015 (2).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Setup_WinThruster_2015 (3).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\Setup_WinThruster_2015.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\smpro_dm (1).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\smpro_dm.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\TeamViewer_Setup_fr.exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\xara-3d_7_fr_227460 (1).exe:BDU AlternateDataStreams: C:\Users\aci\Downloads\xara-3d_7_fr_227460.exe:BDU ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ioloSystemService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ioloSystemService => ""="Service" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-971921180-2467287504-1259518312-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\aci\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.254 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{744FDC26-52CC-4574-91DE-80EC7ACD6F13}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{15050BD8-6956-47D9-B2C4-4354D95EE070}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe FirewallRules: [{F5E4EAD9-B3B2-473C-AB4A-DE61583937D0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{54208542-91C9-4CC6-968F-265EA7F7EF1C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe FirewallRules: [{C3101088-6AD6-4AB1-9DA9-AE6B00C67678}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{0810A544-C0BB-4165-9312-909FE432287F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [TCP Query User{BC9F9A85-2076-4897-889D-50A505A9D8F0}C:\program files (x86)\emule0.60\emule0.60.exe] => (Allow) C:\program files (x86)\emule0.60\emule0.60.exe FirewallRules: [UDP Query User{9C8D2386-47BF-43E1-8EF5-14C729765CA1}C:\program files (x86)\emule0.60\emule0.60.exe] => (Allow) C:\program files (x86)\emule0.60\emule0.60.exe FirewallRules: [TCP Query User{AB0FC2EB-D996-4AB6-96AC-D8E9840E4969}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [UDP Query User{6A12D43B-48D1-4391-AE57-53279C9C43E7}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe FirewallRules: [{A519766A-BDF3-492B-A776-F0E80D23D3D4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{A15E1D9F-A556-4949-AED4-CDB26BFCA1FB}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe FirewallRules: [{DE4BE2CD-B910-4059-90E1-36C67E64D4FE}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{B146E84F-8BEE-4964-8DB1-3647DDBCE195}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe FirewallRules: [{2AAD1DD2-BA33-4DBB-B2C2-FD563D436C52}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{A5799D25-BBEA-4C5C-9532-A23EBB678185}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe FirewallRules: [{7776F274-B184-471B-BA4E-ED1DBC99BA0A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [{21728E9B-A7C6-4859-BAA3-BEDF1DB00A24}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe FirewallRules: [TCP Query User{BD24BE5C-5D66-4705-AE4F-A87D660B0A99}C:\program files (x86)\emuletorrent\emuletorrent.exe] => (Allow) C:\program files (x86)\emuletorrent\emuletorrent.exe FirewallRules: [UDP Query User{81A0AECB-FD3F-4C48-8DE7-984A5F36543B}C:\program files (x86)\emuletorrent\emuletorrent.exe] => (Allow) C:\program files (x86)\emuletorrent\emuletorrent.exe FirewallRules: [{F3247297-5A87-4B47-9E19-58CABBB6054C}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe FirewallRules: [{513FA9C1-3E80-44BE-80E4-284D5FFEA3CF}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\RM.exe FirewallRules: [{771F7DBB-B95C-4CF3-AE56-A64EAFB0EEB4}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe FirewallRules: [{8FDDD856-52DC-4AB0-9D5E-FAC16C0A5310}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\NGStudio.exe FirewallRules: [{505F49AC-284B-4FD7-A128-B47CD7FCE6A9}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe FirewallRules: [{887F9E1F-EE06-4920-B086-4B7C26F597BA}] => (Allow) C:\Program Files\Pinnacle\Studio 18\programs\UMI.exe FirewallRules: [{69CD7A68-7E4E-4FA0-8354-37DBE4230ED5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C8A241E4-A1B9-4FB6-878E-5890F6AB193A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{C11F9387-B3F8-48F2-9183-2F4DCDD59BD9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{A57E7C5F-443B-479E-A97E-9D569439DE4B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{0BB1DD80-7ADC-4A6D-9AF1-5C2395B21DBF}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [{86FA07CB-E063-4E02-A454-E83BC386D6BE}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/27/2015 10:05:03 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Le planificateur d’activation des licences (sppuinotify.dll) a échoué avec le code d’erreur suivant : 0x80070005 Error: (07/27/2015 09:20:05 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/27/2015 09:19:27 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Échec de l’activation de la licence Windows. Erreur 0x80070005. Error: (07/27/2015 05:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Le planificateur d’activation des licences (sppuinotify.dll) a échoué avec le code d’erreur suivant : 0x80070005 Error: (07/27/2015 04:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Le planificateur d’activation des licences (sppuinotify.dll) a échoué avec le code d’erreur suivant : 0x80070005 Error: (07/27/2015 03:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Le planificateur d’activation des licences (sppuinotify.dll) a échoué avec le code d’erreur suivant : 0x80070005 Error: (07/27/2015 02:36:09 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (07/27/2015 02:27:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/27/2015 02:26:08 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: Échec de l’activation de la licence Windows. Erreur 0x80070005. Error: (07/27/2015 01:48:25 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: Le planificateur d’activation des licences (sppuinotify.dll) a échoué avec le code d’erreur suivant : 0x80070005 System errors: ============= Error: (07/27/2015 10:05:03 AM) (Source: DCOM) (EventID: 10001) (User: ) Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} Error: (07/27/2015 03:11:42 AM) (Source: DCOM) (EventID: 10001) (User: ) Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} Error: (07/27/2015 02:25:59 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x0000004a (0x0000000076d5dc2a, 0x0000000000000002, 0x0000000000000000, 0xfffff8800b2cfb60)C:\Windows\MEMORY.DMP072715-14601-01 Error: (07/27/2015 02:25:58 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 02:23:13 le ‎27/‎07/‎2015 n’était pas prévu. Error: (07/27/2015 12:48:26 AM) (Source: DCOM) (EventID: 10001) (User: ) Description: C:\Windows\System32\slui.exe -Embedding5{F87B28F1-DA9A-4F35-8EC0-800EFCF26B83} Error: (07/27/2015 12:01:46 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\Rtlihvs.dll Error: (07/27/2015 12:01:46 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\Rtlihvs.dll Error: (07/27/2015 12:01:44 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\Rtlihvs.dll Error: (07/27/2015 12:01:37 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Programme d’installation pour les modules Windows s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 120000 millisecondes : Redémarrer le service. Error: (07/27/2015 12:01:37 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Le service Office Software Protection Platform s’est terminé de façon inattendue pour la 1ème fois. Microsoft Office: ========================= Error: (07/27/2015 10:05:03 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: 0x80070005 Error: (07/27/2015 09:20:05 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/27/2015 09:19:27 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (07/27/2015 05:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: 0x80070005 Error: (07/27/2015 04:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: 0x80070005 Error: (07/27/2015 03:11:42 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: 0x80070005 Error: (07/27/2015 02:36:09 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: ) Description: Subscription licensing service failed: -1073418154 Error: (07/27/2015 02:27:03 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/27/2015 02:26:08 AM) (Source: Winlogon) (EventID: 4103) (User: ) Description: 0x800700050x00000000 Error: (07/27/2015 01:48:25 AM) (Source: Software Protection Platform Service) (EventID: 8193) (User: ) Description: 0x80070005 ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-4460S CPU @ 2.90GHz Percentage of memory in use: 33% Total physical RAM: 8131.19 MB Available physical RAM: 5385.11 MB Total Virtual: 16260.58 MB Available Virtual: 12776.08 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:931.41 GB) (Free:653 GB) NTFS Drive f: (Réservé au système) (Fixed) (Total:0.1 GB) (Free:0.04 GB) NTFS ==>[system with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 0EDC6DB7) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS) ==================== End of log ============================