Additional scan result of Farbar Recovery Scan Tool (x64) Version:28-06-2015 01 Ran by Dada at 2015-07-03 19:18:59 Running from C:\Users\Dada\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\DD43FLLU Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-445491526-3905522313-2209786469-500 - Administrator - Disabled) Dada (S-1-5-21-445491526-3905522313-2209786469-1000 - Administrator - Enabled) => C:\Users\Dada Invité (S-1-5-21-445491526-3905522313-2209786469-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Norton Internet Security (Enabled - Up to date) {63DF5164-9100-186D-2187-8DC619EFD8BF} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Norton Internet Security (Enabled - Up to date) {D8BEB080-B73A-17E3-1B37-B6B462689202} FW: Norton Internet Security (Enabled) {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 77zip (HKLM-x32\...\77zip) (Version: - ) Amazon Kindle (HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\Amazon Kindle) (Version: - Amazon) AMD Catalyst Install Manager (HKLM\...\{455EF7A2-A655-6F77-6D6E-F2017F29C2AF}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) Ant.com IE add-on (HKLM-x32\...\{B905CAA1-D6FF-4D21-8858-F8C610491C0B}) (Version: 2.2.4.1076 - Ant.com) Ant.com YouTube Downloader (HKLM-x32\...\{43A0F37B-0441-4A3D-B66A-E04F3F73AA62}) (Version: 0.1.6.68 - Ant.com) AOL - Assistant de désinstallation (HKLM-x32\...\Programme de désinstallation AOL) (Version: - ) AOL Toolbar 5.0 (HKLM-x32\...\AOL Toolbar) (Version: 5.0.70.1 - AOL) AOL Uninstaller (Choose which Products to Remove) (HKLM-x32\...\AOL Uninstaller) (Version: - AOL Inc.) Apple Application Support (32 bits) (HKLM-x32\...\{AFA1153A-F547-409B-B837-3A0D6C5A3FEC}) (Version: 3.1.3 - Apple Inc.) Apple Application Support (64 bits) (HKLM\...\{D7B824DE-DA32-4772-9E5E-39C5158136A7}) (Version: 3.1.3 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Applian Director (HKLM-x32\...\Applian Director3.01) (Version: 3.01 - Applian Technologies Inc.) Audacity 2.0.3 (HKLM-x32\...\Audacity_is1) (Version: 2.0.3 - Audacity Team) Badoo Desktop (HKLM-x32\...\{D91D71FB-C52E-440D-8A78-5E5E05487DA0}) (Version: 1.6.58.1220 - Badoo) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Button Manager (HKLM-x32\...\{E8CEB57D-4A74-45A9-93B3-F04E99486CAE}) (Version: 5.3.0.2 - Hewlett-Packard) Cake Mania (x32 Version: 2.2.0.98 - WildTangent) Hidden Capturino version 2.32 (HKLM-x32\...\{0B8D7877-0178-4782-818A-0498F2E33BCC}_is1) (Version: 2.32 - Capturino Software - Jean-Paul Bellenger) Cartes & Données 6 (HKLM-x32\...\{D9A95D5D-7535-4309-8CA3-33BCC91806DD}) (Version: 6.1.2395 - Articque Software) Centre Souris et Claviers Microsoft (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation) Centre Souris et Claviers Microsoft (Version: 2.2.173.0 - Microsoft Corporation) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) ConvertHelper 2.2 (HKLM-x32\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF51}_is1) (Version: - DownloadHelper) CoolPad_USB_Drivers (HKLM-x32\...\InstallShield_{D60A0204-A53A-4724-99A8-C6606532D128}) (Version: 1.00.0000 - Yulong) CoolPad_USB_Drivers (x32 Version: 1.00.0000 - Yulong) Hidden Cradle of Rome 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DartViewer (HKLM-x32\...\{221EB25F-8ACE-48A7-8021-5CA138E4C610}) (Version: 2.02.0000 - Dartfish) DebugMode Wink (HKLM-x32\...\DebugMode Wink) (Version: - ) DirectX for Managed Code Update (Summer 2004) (x32 Version: 9.02.2904 - Microsoft) Hidden Download Updater (AOL Inc.) (HKLM-x32\...\SoftwareUpdUtility) (Version: - AOL Inc.) <==== ATTENTION Driver Restore (HKLM-x32\...\{273130E8-117C-4237-A0FA-83EBBF11E051}) (Version: 8.1 - Driver Restore) DriverTurbo (HKLM-x32\...\DriverTurbo) (Version: 3.2.0 - DeskToolsSoft) Dropbox (HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\Dropbox) (Version: 3.6.8 - Dropbox, Inc.) Ecran de veille AOL Photos (HKLM-x32\...\AOL YGP Screensaver) (Version: - ) eReg (x32 Version: 1.20.138.34 - Logitech, Inc.) Hidden EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - Lavalys, Inc.) Farm Frenzy (x32 Version: 2.2.0.98 - WildTangent) Hidden Farmscapes (x32 Version: 2.2.0.97 - WildTangent) Hidden FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden File1 Package Manager (HKLM-x32\...\{8A50D93C-79EE-425C-9464-3550978F4E56}) (Version: 0.1.2.75 - Helios Technologies) Final Drive Fury (x32 Version: 2.2.0.95 - WildTangent) Hidden Fishdom (TM) 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden FLV-Media Player 1.8 (HKLM-x32\...\FLV-Media Player) (Version: 1.8 - HYBRIDWEB) FlvPlayer (HKLM-x32\...\FlvPlayer) (Version: ${VERSION} - ) <==== ATTENTION FLVPlayer4Free Free FLV Player 4.6.0.0 (HKLM-x32\...\FLVPlayer4Free Free FLV Player_is1) (Version: - Sakysoft s.r.l. uninominale) <==== ATTENTION FromDocToPDF Internet Explorer Toolbar (HKLM-x32\...\FromDocToPDF_65bar Uninstall Internet Explorer) (Version: - Mindspark Interactive Network) <==== ATTENTION Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden globalupdate Helper (x32 Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION Google Chrome (HKLM-x32\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{79361740-EAE3-11E2-9911-B8AC6F98CCE3}) (Version: 7.1.1.1888 - Google) Google Update Helper (x32 Version: 1.3.27.5 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HiDef Media Player 1.1.12 (HKLM-x32\...\HiDef Media Player) (Version: 1.1.12 - HiDefMedia) HomeByMe (HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\SquareClock_Production_HBMV1) (Version: - 3DVIA Dassault Systemes) HP Calendar (HKLM-x32\...\{2B38E0FA-D8A5-4EBF-A018-E3C1C8E7A2E2}) (Version: 5.1.4245.23508 - Hewlett-Packard) HP Clock (HKLM-x32\...\{750E9D0F-B188-4A7E-ADD2-84B7ED7D32F6}) (Version: 5.1.4281.27332 - Hewlett-Packard) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent) HP Keyboard (HKLM-x32\...\{B40D7926-AE5F-41EA-8AC6-56C0E2F00E9D}) (Version: 1.5.0.4 - Hewlett-Packard) HP LinkUp (HKLM-x32\...\{7E750542-55BC-4300-8B7B-AC2A762FB435}) (Version: 2.01.029 - Hewlett-Packard) HP Magic Canvas (HKLM-x32\...\{DDFDC9D6-4220-41F8-BF9A-8E7512C4EF52}) (Version: 5.1.15.0 - Hewlett-Packard) HP Magic Canvas Tutorials (HKLM-x32\...\{858FCB65-7C6D-4BA4-AD80-A3CB3744CE09}_is1) (Version: 6.0.0.0 - Hewlett-Packard) HP Notes (HKLM-x32\...\{86BAB08A-5E66-4C53-82E3-C1E91673C7CA}) (Version: 5.1.4274.30382 - Hewlett-Packard) HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard) HP Photosmart A530 Series (HKLM\...\{01173D3F-7758-4827-9FFD-836A0D5C2529}) (Version: 130.0.389.000 - Ë) HP RSS (HKLM-x32\...\{452479C5-0118-48E9-AA69-0A7339F95FC8}) (Version: 5.1.4289.23799 - Hewlett-Packard) HP Setup (HKLM-x32\...\{438363A8-F486-4C37-834C-4955773CB3D3}) (Version: 9.1.15430.4033 - Hewlett-Packard Company) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 11.00.0001 - Hewlett-Packard) HP Support Solutions Framework (HKLM-x32\...\{69FD2930-C361-47F6-822E-71B021526778}) (Version: 11.50.0015 - Hewlett-Packard Company) HP TouchSmart Background - Beats (HKLM-x32\...\{6A6F8D36-04BA-41E9-9004-1789BD545874}) (Version: 1.0.1.0 - Hewlett-Packard) HP Update (HKLM-x32\...\{2EFA4E4C-7B5F-48F7-A1C0-1AA882B7A9C3}) (Version: 5.003.001.001 - Hewlett-Packard) HP Webcam Software Suite (HKLM-x32\...\{D10FE2E3-B2DE-4B0E-ACBD-F87A566B9649}) (Version: - ArcSoft) iCloud (HKLM\...\{709A2D23-C25E-47B5-9268-CB6FEE648504}) (Version: 4.1.1.53 - Apple Inc.) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6395.0 - IDT) iLivid (HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\iLivid) (Version: 5.0.2.4762 - Bandoo Media Inc) <==== ATTENTION Inkscape 0.48.2 (HKLM-x32\...\Inkscape) (Version: 0.48.2 - ) InPixio Photo Clip (HKLM-x32\...\{385677FD-EA78-4945-9AA5-6816F3646529}) (Version: 1.0.23833 - Avanquest Software) InPixio Photo Clip Professional (HKLM-x32\...\{61CDE0F2-8BEC-475F-90E8-D700C2FAE1EF}) (Version: 5.01.24250 - Avanquest Software) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.15.1730 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.6.0.1033 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.6.245 - Intel Corporation) iTunes (HKLM\...\{93F2A022-6C37-48B8-B241-FFABD9F60C30}) (Version: 12.1.2.27 - Apple Inc.) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Jewel Quest II (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kinovea (HKLM-x32\...\Kinovea) (Version: 0.8.19 - Kinovea) K-Lite Mega Codec Pack 7.0.0 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 7.0.0 - ) LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.4507 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.4507 - CyberLink Corp.) Hidden Lagarith Lossless Codec (1.3.27) (HKLM-x32\...\{F59AC46C-10C3-4023-882C-4212A92283B3}_is1) (Version: - ) LAME v3.99.3 (for Windows) (HKLM-x32\...\LAME_is1) (Version: - ) Learn2 Player (Uninstall Only) (HKLM-x32\...\StreetPlugin) (Version: - ) Lecteur CANALPLAY 2.7 (HKLM-x32\...\{E9E37358-E3E1-47BA-9E21-375EF3616BC9}) (Version: 2.7.0.0 - Canal+ Distribution) LizardSales (HKLM-x32\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version: - LizardSales) <==== ATTENTION Logitech SetPoint 6.61 (HKLM\...\sp6) (Version: 6.61.15 - Logitech) Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: 3.0 - EasyBits Software AS) Mahjongg Artifacts (x32 Version: 2.2.0.95 - WildTangent) Hidden Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Messenger Companion (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Camera Codec Pack (HKLM\...\{11A68AA1-36E5-4EA0-A187-E80ADB54E404}) (Version: 6.3.9723.0 - Microsoft Corporation) Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation) Microsoft Office Famille et Étudiant 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Research AutoCollage 2008 version 1.1 (HKLM-x32\...\{423D8FBE-EC52-40FD-B2A0-8C9C8F973FD7}) (Version: 1.01.2008 - Microsoft Research) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) Movavi Video Converter 15 (HKLM-x32\...\Movavi Video Converter 15) (Version: 15.2.0 - Movavi) Movavi Video Suite 12 (HKLM-x32\...\Movavi Video Suite 12) (Version: 12.1.0 - Movavi) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden Norton Internet Security (HKLM-x32\...\NIS) (Version: 19.9.1.14 - Symantec Corporation) OpenOffice.org 3.4.1 (HKLM-x32\...\{7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}) (Version: 3.41.9593 - Apache Software Foundation) opensource (x32 Version: 1.0.14960.3876 - Your Company Name) Hidden OpenSource Flash Video Splitter 1.0.0.5 (HKLM-x32\...\OpenSource Flash Video Splitter) (Version: 1.0.0.5 - ) Package de pilotes Windows - VIA Telecom Inc (VIA_USB_ETS) USB (01/19/2012 6.0.9999.0) (HKLM\...\2CA7C60A5008090D2609B58286FAFFBA372C9D44) (Version: 01/19/2012 6.0.9999.0 - VIA Telecom Inc) Package de pilotes Windows - YuLong (androidusb) USB (01/19/2012 6.0.9999.0) (HKLM\...\C99B814523525F81605865C79C545AB10F824648) (Version: 01/19/2012 6.0.9999.0 - YuLong) Package de pilotes Windows - YuLong (YL_cdc_acm) Modem (11/11/2010 1.0.1.0) (HKLM\...\D69A139F682C9BE0BA1CB95FE4EABBF3CEB3807F) (Version: 11/11/2010 1.0.1.0 - YuLong) Package de pilotes Windows - YuLong (YL_cdc_acm) Ports (01/19/2012 6.0.9999.0) (HKLM\...\515695D483B2EDA07B4A78D59A1C23A728F880F3) (Version: 01/19/2012 6.0.9999.0 - YuLong) PDF Complete Corporate Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.95 - PDF Complete, Inc) Photo to Sketch 4.0 (HKLM-x32\...\{42CC40A6-332E-4F53-8FB8-BD6D77D764FB}_is1) (Version: - Thinker Software, Inc.) PhotoFiltre (HKLM-x32\...\PhotoFiltre) (Version: - ) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.6207 - CyberLink Corp.) Power2Go (x32 Version: 6.1.6207 - CyberLink Corp.) Hidden ProtectMe (HKLM-x32\...\ProtectMe) (Version: 0.0.0.1 - protectme) Qualcomm Atheros Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.1.0.21 - Qualcomm Atheros Inc.) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Ranch Rush 2 - Premium Edition (x32 Version: 2.2.0.98 - WildTangent) Hidden Recovery Manager (x32 Version: 5.5.0.5119 - CyberLink Corp.) Hidden Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard) Replay Video Capture 7 (HKLM-x32\...\Replay Video Capture7.4.1) (Version: 7.4.1 - Applian Technologies Inc.) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) SaisieFeuilleHand (HKLM-x32\...\{50037456-53f5-4d55-abf0-f822ea84e81c}_is1) (Version: 1.0.7.3 - Fédération Française de Handball) savernet (HKLM-x32\...\{614925F9-841A-53FE-A28F-DC30FA07239B}) (Version: - saverrnet) <==== ATTENTION Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) Sketch Drawer 1.4 (HKLM-x32\...\Sketch Drawer_is1) (Version: 1.4 - SoftOrbits) Skype™ 7.4 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.) Software Version Updater (HKLM-x32\...\{99C91FC5-DB5B-4AA0-BB70-5D89C5A4DF96}) (Version: 1.1.4.2 - ) StepOne (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{d6b52028}) (Version: - StepOne) <==== ATTENTION SupTab (HKLM-x32\...\SupTab) (Version: 1.1.1.0 - ) <==== ATTENTION Sweet Home 3D version 4.2 (HKLM-x32\...\Sweet Home 3D_is1) (Version: - eTeks) Torchlight (x32 Version: 2.2.0.98 - WildTangent) Hidden TrimModule (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{f0e9047b}) (Version: - Software Publisher) <==== ATTENTION TSHostedAppLauncher (x32 Version: 5.1.15.0 - Hewlett-Packard) Hidden Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden version 2 (HKLM-x32\...\Sublisoft_is1) (Version: - Christian H. Godefroy) Video Download Capture version 5.0.0 (HKLM-x32\...\{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1) (Version: 5.0.0 - APOWERSOFT LIMITED) Viewpoint Media Player (HKLM-x32\...\ViewpointMediaPlayer) (Version: - ) Virtual Families (x32 Version: 2.2.0.98 - WildTangent) Hidden Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden WildTangent Games App (HP Games) (x32 Version: 4.0.10.5 - WildTangent) Hidden Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Winmail Opener 1.5 (HKLM-x32\...\Winmail Opener) (Version: 1.5 - Eolsoft) WinZip 17.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240D7}) (Version: 17.0.10283 - WinZip Computing, S.L. ) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.3 - Xvid Team) Zuma's Revenge (x32 Version: 2.2.0.98 - WildTangent) Hidden ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-445491526-3905522313-2209786469-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dada\AppData\Roaming\Dropbox\bin\DropboxExt64.26.dll (Dropbox, Inc.) ==================== Restore Points ========================= 27-06-2015 02:23:52 Supprimé Microsoft Expression Encoder 4 Screen Capture Codec 27-06-2015 02:29:37 Removed Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 27-06-2015 02:30:20 Removed Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 27-06-2015 02:31:58 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 27-06-2015 02:32:44 Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 27-06-2015 23:34:55 Installé Lecteur CANALPLAY 2.7 27-06-2015 23:40:49 Supprimé Lecteur CANALPLAY 2.7 27-06-2015 23:47:56 Installé Lecteur CANALPLAY 2.7 28-06-2015 01:32:28 Supprimé Lecteur CANALPLAY 2.7 28-06-2015 11:19:05 Installé Lecteur CANALPLAY 2.7 ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-12-21 22:12 - 00000871 ____N C:\windows\system32\Drivers\etc\hosts 54.204.28.26 alnbbbmmheedjelgjiljibhlicildiae ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {01992416-5853-4C80-9C1D-8263047979A6} - System32\Tasks\4543 => Wscript.exe C:\Users\Dada\AppData\Local\Temp\launchie.vbs //B <==== ATTENTION Task: {04E9E522-B9DC-4B83-8670-05311781E954} - System32\Tasks\0 => Iexplore.exe <==== ATTENTION Task: {07ADF902-0100-469B-89FB-24451174B854} - System32\Tasks\{320260E9-5B2B-4BE2-8116-ECCFCAB922B6} => Firefox.exe Task: {09F0C5CE-FBF6-4C6F-A023-7222420A3F70} - System32\Tasks\PC Cleaner Pro Update Job => C:\ProgramData\PC Cleaners\PCCleaners.exe <==== ATTENTION Task: {0A3BC8E5-73BD-4B28-8BC2-C6FF3D9B58B1} - System32\Tasks\{BBE05973-4EA8-42D1-B662-F8150A4B1282} => pcalua.exe -a "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\ExecuteWithUAC.exe" -d "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive" Task: {0D3602B4-641E-4581-B4A1-178A7164F383} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {0DD7FFC7-86CF-4DFB-BD67-3BE707F332B2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-06-08] (Hewlett-Packard) Task: {126A3551-7446-454B-A5C8-1B472625FA95} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {18855FC3-543A-41B9-B37D-73D847D70F14} - System32\Tasks\BoxSoftwareUpdate => C:\ProgramData\BoxUpdChk\updchk.exe <==== ATTENTION Task: {18EF6368-8B14-46F2-BD1F-E9074750E0EC} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {21648A2B-1788-4A51-A67E-5C98EBC894AB} - System32\Tasks\HPCeeScheduleForDada => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard) Task: {22814036-0C94-4F44-99B5-95BCC475A854} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-445491526-3905522313-2209786469-1000Core => C:\Users\Dada\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {2EB346E7-AADC-454F-AAC9-D2359B40324F} - System32\Tasks\{91EC75A0-BA6A-4FF9-A729-1CB413E0F5F1} => C:\Program Files (x86)\Opera\launcher.exe Task: {32869D91-3A00-4587-80C4-77ADFCB23178} - System32\Tasks\{15E59B50-3409-4E42-BB54-7080042299D2} => pcalua.exe -a C:\Users\Dada\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cmi Task: {350414BB-3550-4DDF-AC2C-CD00AE3E3F81} - System32\Tasks\HPOSIAPP64 => C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\ModLEDKey.exe [2009-02-28] () Task: {360605C0-25CE-4296-AB4A-6B83041D9F0F} - System32\Tasks\PC Health Advisor => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe Task: {3AEAB40B-FF91-4EB2-87A8-58D49F2A03E5} - System32\Tasks\wp_update => C:\Users\Dada\AppData\Roaming\~xswwcba.exe <==== ATTENTION Task: {3B743390-D2C5-4E26-AC9E-4D2A4114D0C6} - System32\Tasks\upfs7235 => C:\PROGRA~2\Flwsrf\upfs7235.exe Task: {3E2D11D2-F96C-46EC-96AB-429779C0C312} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-30] (Google Inc.) Task: {40366B86-09D4-4F5A-9084-71105A82FD16} - System32\Tasks\{E98B52F9-4B46-4ADA-9101-630CA8898083} => pcalua.exe -a C:\ProgramData\HealthAlert\uninstall.exe -c /kb=y /ic=1 Task: {42366042-883C-4C02-8CDA-F5B62D32F0C6} - System32\Tasks\{BB685F2B-D846-47A1-8D79-25943BFF3E88} => pcalua.exe -a C:\Users\Dada\Downloads\ie6setupOe.exe -d C:\Users\Dada\Downloads Task: {42713035-BE07-4872-A043-210CC98B2927} - System32\Tasks\{905964B2-0C24-41C7-A898-6DA55CD011B6} => pcalua.exe -a C:\Users\Dada\Downloads\wink20.exe -d C:\Users\Dada\Downloads Task: {45903F62-F0F1-4BA7-A7EA-D9390457FCA2} - System32\Tasks\amiupdaterExi => C:\Users\Dada\AppData\Local\Temp\amiupdater196.exe <==== ATTENTION Task: {491BA881-81B4-4F96-9949-3E8662905481} - System32\Tasks\{30602AFF-9CDC-44D6-BAA5-820B08038678} => pcalua.exe -a C:\Users\Dada\Downloads\adobe-after-effects.exe -d C:\Users\Dada\Desktop Task: {491E8447-B3D4-4F1B-A139-6961A1B02BF8} - System32\Tasks\APSnotifierPP3 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: {49E6A9CC-608C-432F-A444-CFE4D963316A} - System32\Tasks\SmartWeb Upgrade Trigger Task => C:\Users\Dada\AppData\Local\SmartWeb\SmartWebHelper.exe <==== ATTENTION Task: {4CF39500-3C63-4FBC-957F-D215A410C9ED} - \Driver Detective-RTMScan No Task File <==== ATTENTION Task: {4F2AEC90-7AA2-4E54-9B2A-12FE8046884A} - System32\Tasks\{5787B641-D655-435F-B2F9-DACFF3AB2993} => Firefox.exe Task: {509E5BE5-7BB1-422E-8726-F0050328583A} - System32\Tasks\{C304AA4E-7309-49FA-8178-22955C5B3E50} => pcalua.exe -a "C:\Users\Dada\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\K40KUNGC\AOLDNLD.exe" -d C:\Users\Dada\Desktop Task: {56357F22-9A45-4985-A517-48D4549C7A54} - System32\Tasks\PC Cleaner Pro Optimization => C:\ProgramData\PC Cleaners\PCCleaners.exe <==== ATTENTION Task: {57AAD52A-08A6-4245-9730-6A4E59A29864} - System32\Tasks\Opera scheduled Autoupdate 1432829348 => C:\Program Files (x86)\Opera\launcher.exe Task: {57B9B3B2-F896-4645-823D-6E28F7FDD16B} - System32\Tasks\Driver Restore-RTMScanRunOnce => C:\Program Files (x86)\Driver Restore\Driver Restore\DriverRestore.exe [2013-09-19] (PC Drivers Headquarters) Task: {582342C5-478D-4F44-A5AF-2EB479C78924} - System32\Tasks\arg3002 => C:\PROGRA~2\TabNav\arg3002.exe Task: {59A7E83D-2A78-46F6-BE62-5E6BA87C1BA9} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation) Task: {5EEE0BA3-794E-433E-A292-6E7F847AFB49} - System32\Tasks\Norton WSC Integration => C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\WSCStub.exe [2013-02-02] (Symantec Corporation) Task: {61ED2D93-AAE6-47B2-BACB-F6A2A0380FC7} - System32\Tasks\WNMUAYHW => C:\ProgramData\c3b8494194b94df190645286340d47f4\c3b8494194b94df190645286340d47f4.exe <==== ATTENTION Task: {62DEACF9-33B3-4229-8921-BC45D9BE35B3} - System32\Tasks\{87839D15-97E1-4A77-903E-FEC6FC25D00C} => Firefox.exe Task: {63E9620E-366A-4D93-9A25-6BCB05C354B3} - System32\Tasks\{94AF4F23-EBC0-44AF-9BA6-E4E781D1C90E} => Firefox.exe Task: {652E829C-109F-4823-B772-6440AAEFD1FC} - System32\Tasks\PCHelpers1st => C:\Program Files (x86)\Optimizer Elite Max\Optimizer Elite Max.exe <==== ATTENTION Task: {6638D67F-3930-44CC-BBF0-0A58144EFCBD} - System32\Tasks\{97574F03-18A7-4B49-82F7-A16AD8E66DA2} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {7509045F-2B6B-4377-8999-339C4954C271} - System32\Tasks\APSnotifierPP1 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: {76731684-EE0D-4612-BB16-B92C2BE85983} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Warranty Opt-In(Yes) => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\Detection_PostWarrantyAlert.exe [2014-01-14] (Hewlett-Packard) Task: {77882585-A372-489B-9B37-7BC4B5F574A5} - System32\Tasks\amiupdaterExd => cmd.exe /c start /min bitsadmin /transfer amijob /download /priority high http://cds.g8s7f3b7.hwcdn.net/run/Updater.exe "C:\Users\Dada\AppData\Local\Temp\amiupdater196.exe" Task: {7886E15B-23B9-4DC7-A9C7-8FC692C7BBFF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\NetworkCheck => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\Detection_NetworkCheck.exe [2014-04-22] (Hewlett-Packard) Task: {7A26F23F-77FB-4061-8E39-6B7B0549E022} - System32\Tasks\Norton Internet Security\Norton Error Processor => C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\SymErr.exe [2012-02-04] (Symantec Corporation) Task: {7F3B31C1-1331-490B-B85B-A188EA1C33B8} - System32\Tasks\Driver Restore-RTMRules => C:\Program Files (x86)\Driver Restore\Driver Restore\DriverRestore.exe [2013-09-19] (PC Drivers Headquarters) Task: {8223706E-0795-47F9-A007-E6041B799602} - System32\Tasks\Driver Restore-RTMUpdater => C:\Program Files (x86)\Driver Restore\Driver Restore\DriverRestore.exe [2013-09-19] (PC Drivers Headquarters) Task: {86F1A6A3-770A-40D6-A187-21CCE114FF40} - System32\Tasks\{891E3BAB-FD9A-4070-B45E-DE402E7479D1} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {8ECE8BF3-2385-42E1-96B4-B939B9DD9B73} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {8F12B4D1-48D0-484F-8093-B13AA084DE9A} - System32\Tasks\{499B1A36-B8F9-49B1-A6B4-86CB40EAACEA} => Firefox.exe Task: {91930CBF-231D-4544-B6FD-BEF06AD2E3D8} - System32\Tasks\{6A22298A-3E8F-46FC-86BE-E235ABB09EBB} => pcalua.exe -a E:\setup.exe -d E:\ Task: {92E75264-0956-46AE-BF9D-8E96704CB5D6} - System32\Tasks\{A22B5C78-C007-4797-9A57-DC7BA0D34507} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {937C920F-4376-421A-8AC4-2F4E21F5C9DE} - System32\Tasks\DIPGWBY1 => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION Task: {A6D1C7B8-87C0-413A-811C-A617A7BFEF7B} - System32\Tasks\{F0D91183-D8F6-47C8-8CFC-1106DE64EBA2} => pcalua.exe -a C:\Users\Dada\AppData\Roaming\oursurfing\UninstallManager.exe -c -ptid=cmi Task: {A8B31C99-377A-4B07-9B71-F4A0D70D6111} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-445491526-3905522313-2209786469-1000UA => C:\Users\Dada\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-16] (Dropbox, Inc.) Task: {AA4259FC-26FA-42E0-AFEF-2F087B6368B8} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft) Task: {AA7C2D40-DDB8-4F2D-A4D0-F9E6AC84BD41} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-06-08] (Hewlett-Packard) Task: {AB0B4909-114B-43E5-9596-618E54F4DA22} - System32\Tasks\{AC304B84-0DD9-4BF9-8CA2-8514A6BAE6E5} => pcalua.exe -a E:\Setup.exe -d E:\ Task: {B67A8511-8D59-468C-8540-E3BA6A68067F} - System32\Tasks\PCHelpers_period => C:\Program Files (x86)\Optimizer Elite Max\Optimizer Elite Max.exe <==== ATTENTION Task: {C6378AF1-1DAE-41E6-8716-7017C163DD98} - System32\Tasks\{4F96B9B4-AA63-445B-9DC7-69270192EE14} => pcalua.exe -a C:\Users\Dada\AppData\Local\Temp\wz6f9f\wink20.exe -d C:\Users\Dada\AppData\Local\Temp\wz4fb0 Task: {C63AFB51-7096-48E0-9214-B8E01145CC6F} - System32\Tasks\Opera scheduled Autoupdate 1431366706 => C:\Program Files (x86)\Opera\launcher.exe Task: {C744F1F2-C9D9-4868-9CFC-52559AD9853D} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\SymErr.exe [2012-02-04] (Symantec Corporation) Task: {CF231C41-6245-40E0-A733-FA970A31F5EE} - System32\Tasks\{7B1E9327-2D98-4495-A589-6E2F6049DDCF} => pcalua.exe -a "E:\Microsoft Publisher\Setup\INSTALL.EXE" -d "E:\Microsoft Publisher\Setup" Task: {D3C00BCA-98ED-4179-8C57-61EC61D03164} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {D54AF5EE-65D1-4D8F-BD2D-0223324BAD78} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {DCBE19DA-9020-4E44-8082-51C36D87B642} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-12-30] (Google Inc.) Task: {E1DCABAF-E278-49D6-B3E1-16E0BBBE0469} - System32\Tasks\AmiUpdXp => C:\Users\Dada\AppData\Local\22023\Updater.exe [2015-06-30] () <==== ATTENTION Task: {E222437D-E91E-42E2-AD5B-E26BCEE34B73} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation) Task: {E2B8349B-C629-4029-B588-91701E6D2E05} - System32\Tasks\{F5B9C8A2-B583-40C1-A65B-B42EAD9DA6DF} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {E474C83F-AEB1-4493-99AC-D51FFE1A9FCD} - System32\Tasks\{5352E47E-1BE5-413B-BE96-01E3B92E993C} => C:\Program Files (x86)\Opera\launcher.exe Task: {E67574D8-9050-4781-B4B7-75CFA4C47128} - System32\Tasks\trik3004 => C:\PROGRA~2\TabNav\trik3004.exe Task: {E697157B-D946-4C14-A524-72DD3CB2DF62} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {EB90310B-D109-4BD7-A51F-40899351BD8B} - System32\Tasks\{69400C6A-DE37-4E23-A700-EA0CDA043F37} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {F1106099-280F-47AF-BD1A-2855F151E6CA} - System32\Tasks\{45E42647-4448-44EC-B068-5439D7FE3378} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {F1357370-45D3-4DF2-9891-31048FAE93B0} - System32\Tasks\{36FDCF3C-B3AB-45AC-8B92-DA8E94A8695B} => Firefox.exe Task: {F142C9AD-691F-4C8B-9EA6-A936BF3BD516} - System32\Tasks\Driver Restore-RTMScan => C:\Program Files (x86)\Driver Restore\Driver Restore\DriverRestore.exe [2013-09-19] (PC Drivers Headquarters) Task: {F3CD0AA9-1901-4431-BF3F-4A7B17EA4693} - System32\Tasks\bho_update => C:\Program Files (x86)\Internet Explorer\Updater.exe Task: {F43F1C4B-755F-471F-9179-A1EB58B99692} - System32\Tasks\Digital Sites => C:\Users\Dada\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {F4A36FCF-F65A-4492-8907-9163AA730EAF} - System32\Tasks\{D7BB9871-C443-49B7-8A44-43DEEC0D9032} => C:\Program Files (x86)\Hewlett-Packard\TouchSmart\SmartCenter\SmartCenter.exe [2011-09-30] (Hewlett-Packard) Task: {F7475BB2-D550-4FBD-A4D8-58051B7B318E} - System32\Tasks\APSnotifierPP2 => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: {F94422ED-4CC0-41C8-9594-E20FDE9D3569} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Warranty Opt-In(No) => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\Detection_PostWarrantyAlert.exe [2014-01-14] (Hewlett-Packard) Task: {FA7F2C01-FD0A-48C1-8646-FB453B9F7429} - System32\Tasks\Opera scheduled Autoupdate 1419355989 => C:\Program Files (x86)\Opera\launcher.exe Task: {FBC6BD11-3F07-4F2E-A39E-E1A3EEE8BDB7} - System32\Tasks\33E8355-9358-4103-AF32-555F6572B916 => C:\Users\Dada\AppData\Local\33E8355-9358-4103-AF32-555F6572B916\33E8355-9358-4103-AF32-555F6572B916.exe [2015-07-03] () <==== ATTENTION Task: {FD77144E-716E-4856-8DF0-36DACF0DF4B3} - System32\Tasks\{AE43C714-11D9-4A98-BF5B-2023612A2C62} => pcalua.exe -a "C:\Users\Dada\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\GCB0ZVXA\EAH.exe" -d C:\Users\Dada\Desktop Task: {FF40A68A-2B86-4418-8860-D7B8C1299426} - System32\Tasks\PC Health Advisor Defrag => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe Task: {FF83D5EF-9D50-4D20-AF4F-F760C4B6A857} - System32\Tasks\{4745DE72-0063-4908-AD7E-E631758AEB8D} => Firefox.exe Task: C:\windows\Tasks\3b34f773-74a5-485c-a3e9-51cacd7c7a5d.job => C:\Program Files (x86)\Free Video Grabber 6.6\3b34f773-74a5-485c-a3e9-51cacd7c7a5d.exe/agentregpath='Free Video Grabber 6.6' /appid=61754 /srcid='001527' /subid='0' /zdata='0' /bic=3A29A8941BA0464D948029833C36633CIE /verifier=11696dfc6bc110f7bef9d1e3972a99d4 /installerversion=1_34_08_12 /installationtime=1407931914 /statsdomain=http:/stats.inputdatacloud.com /errorsdomain=http:/errors.inputdatacloud.com /extensionname='Information' /torpedoiesleeps=1000 /torpedoieplugins=93-0,102-0,104-0,178-288,179-288,180-288,223-288,263-24 /monetizationdomain=http:/logs.inputdatacloud.com <==== ATTENTION Task: C:\windows\Tasks\AmiUpdXp.job => C:\Users\Dada\AppData\Local\22023\Updater.exe <==== ATTENTION Task: C:\windows\Tasks\APSnotifierPP1.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\windows\Tasks\APSnotifierPP2.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\windows\Tasks\APSnotifierPP3.job => C:\Program Files (x86)\AnyProtectEx\AnyProtect.exe <==== ATTENTION Task: C:\windows\Tasks\d9458094-1007-44a3-9f32-b2caedf4b401.job => C:\Program Files (x86)\Free Video Grabber 6.6\d9458094-1007-44a3-9f32-b2caedf4b401.exe <==== ATTENTION Task: C:\windows\Tasks\Digital Sites.job => C:\Users\Dada\AppData\Roaming\DIGITA~1\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\windows\Tasks\DIPGWBY1.job => C:\ProgramData\FlashBeat\FlashBeat.exe <==== ATTENTION Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-445491526-3905522313-2209786469-1000Core.job => C:\Users\Dada\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\windows\Tasks\DropboxUpdateTaskUserS-1-5-21-445491526-3905522313-2209786469-1000UA.job => C:\Users\Dada\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\HPCeeScheduleForDada.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\windows\Tasks\PC Health Advisor Defrag.job => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe Task: C:\windows\Tasks\PC Health Advisor.job => C:\Program Files (x86)\ParetoLogic\PCHA\PCHA.exe Task: C:\windows\Tasks\PCHelpers1st.job => C:\Program Files (x86)\Optimizer Elite Max\Optimizer Elite Max.exe <==== ATTENTION Task: C:\windows\Tasks\PCHelpers_period.job => C:\Program Files (x86)\Optimizer Elite Max\Optimizer Elite Max.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2015-06-24 20:43 - 2015-06-24 20:43 - 08016725 _____ () C:\Program Files (x86)\Cheeky Control\Cheeky Control.exe 2015-07-03 17:11 - 2015-07-03 17:11 - 00141824 _____ () C:\Users\Dada\AppData\Roaming\B61EFAA0-1435938076-11E1-A298-E840F2A75281\knsh51E0.tmpfs 2015-05-15 13:38 - 2015-05-15 13:38 - 00408576 _____ () c:\windows\mvuo.exe 2015-07-03 17:41 - 2015-07-03 17:41 - 00165376 _____ () C:\Users\Dada\AppData\Roaming\B61EFAA0-1435938076-11E1-A298-E840F2A75281\hnsr8C0A.tmp 2015-05-15 13:38 - 2015-05-15 13:38 - 00417792 _____ () c:\windows\vuo.exe 2015-07-03 17:41 - 2015-07-03 17:41 - 00199168 _____ () C:\Users\Dada\AppData\Roaming\B61EFAA0-1435938076-11E1-A298-E840F2A75281\jnsb70DA.tmp 2012-06-30 17:24 - 2009-02-28 04:13 - 00053248 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\ModLEDKey.exe 2015-02-13 05:20 - 2015-02-13 05:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-02-13 05:20 - 2015-02-13 05:20 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2014-03-09 01:34 - 2013-09-17 12:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-02-13 05:20 - 2015-02-13 05:20 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-06-30 17:24 - 2009-02-20 02:22 - 00028672 _____ () C:\Program Files (x86)\Hewlett-Packard\HP Keyboard\WMINPUT.DLL 2015-07-03 11:54 - 2015-07-03 11:54 - 00145656 _____ () C:\Program Files (x86)\On Stage\Extensions\9771c444-42b0-4e23-a7fb-ff707123ab30.dll 2012-10-15 18:45 - 2012-10-15 18:45 - 00048640 _____ () C:\Program Files (x86)\AOL Desktop 9.7\zlib.dll 2012-10-15 18:45 - 2012-10-15 18:45 - 00094208 _____ () C:\Program Files (x86)\AOL Desktop 9.7\Components\Tier2Svc.dll 2012-10-15 18:45 - 2012-10-15 18:45 - 00060928 _____ () C:\Program Files (x86)\AOL Desktop 9.7\Components\DataSvcs.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:D346F792 ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) IE trusted site: HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\canalplay.com -> canalplay.com IE trusted site: HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\canalplusactive.com -> canalplusactive.com IE trusted site: HKU\S-1-5-21-445491526-3905522313-2209786469-1000\...\facebook.com -> hxxps://www.facebook.com ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-445491526-3905522313-2209786469-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Dada\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: CanalPlayer => "C:\Program Files (x86)\Lecteur CANALPLAY\CanalPlayer.exe" MSCONFIG\startupreg: HostManager => C:\Program Files (x86)\Common Files\AOL\1350222239\ee\AOLSoftware.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{53D46E14-770E-462C-B9CE-EFDD6882662E}] => (Allow) C:\windows\system32\ezSharedSvcHost.exe FirewallRules: [{0A1125BA-286C-432D-AC8A-B68AC0AD30F8}] => (Allow) C:\Program Files (x86)\EasyBits For Kids\ezDesktop.exe FirewallRules: [{9DA7ED21-35F8-42A2-A880-BEF2C1608E8E}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe FirewallRules: [{F8EAE947-BA91-47BF-ACFC-2388071BB72F}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\Remote Graphics Receiver\rgreceiver.exe FirewallRules: [{5AF87DAC-0A4E-43F6-8411-EE5B52378385}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe FirewallRules: [{308EF4C8-4D76-4F27-A935-0190995F280F}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP LinkUp\HP LinkUp Viewer.exe FirewallRules: [{82C9BF99-3AF8-4226-8486-15053B233580}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{52F0EC0F-C042-44AB-A776-ADAB33351AE9}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{6F84DC50-1BF3-448A-9B38-0E1334E8964A}] => (Allow) LPort=2869 FirewallRules: [{0270A606-8560-4A51-A87C-5CC83F4958C3}] => (Allow) LPort=1900 FirewallRules: [{E42BB7AE-8D9B-4E60-9C04-066A2703580B}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{ABB9FF34-FB29-46E0-9B64-EC02991ADB9B}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{D3F45A57-9ED4-4AFB-814C-D582EFD392FA}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLDial.exe FirewallRules: [{9AF9527C-C279-45A6-A715-E5BDFEE4B7C1}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLDial.exe FirewallRules: [{6CFCE77E-0689-46BF-B149-C057440710A6}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLacsd.exe FirewallRules: [{588E1738-0FF8-4E00-A33C-E86ADC5EA4DE}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLacsd.exe FirewallRules: [{9452A9A1-CCD2-4FFC-896C-4892C6224082}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLacsd.exe FirewallRules: [{C4E9C364-D344-4B03-A504-DAB2A62AE7E0}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLDial.exe FirewallRules: [{39806FB5-5352-4D8A-BBC6-4D4663180781}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLacsd.exe FirewallRules: [{3844AA6D-D4F0-4D0D-B35E-3FA3441E249E}] => (Allow) C:\Program Files (x86)\Common Files\AOL\ACS\AOLDial.exe FirewallRules: [{C6E98C32-77B4-4E63-A1C2-AD3C2B5F0788}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLDial.exe FirewallRules: [{A71E960E-5C26-4F17-A4B4-7FFA4E96E617}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLDial.exe FirewallRules: [{FD38FB6E-79F2-4751-8D89-AEA6204BC263}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLacsd.exe FirewallRules: [{225CDBB0-3E16-462C-8D49-30F2B5AA9CD5}] => (Allow) C:\Program Files (x86)\Common Files\AOL\acs\AOLacsd.exe FirewallRules: [{328217F6-90EB-4F63-8754-FF6BECDB6CC5}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1350222239\ee\aolsoftware.exe FirewallRules: [{32B585DA-110D-4E39-A09B-EB897B928FE4}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1350222239\ee\aolsoftware.exe FirewallRules: [{C57CD8F4-FA55-4918-8E0F-9DF46C960DD6}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.6\waol.exe FirewallRules: [{E52CC2C8-5503-43FB-8C49-9AC18F75BB80}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.6\waol.exe FirewallRules: [{11516978-36B4-4F02-A36E-EFCB6461B029}] => (Allow) C:\Program Files (x86)\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe FirewallRules: [{10739C8C-EC74-4917-B0C6-6F6B1BA01796}] => (Allow) C:\Program Files (x86)\Common Files\AOL\TopSpeed\3.0\aoltpsd3.exe FirewallRules: [{A8F9026F-B49C-47DD-B2B4-584010854662}] => (Allow) C:\Program Files (x86)\Common Files\AOL\Loader\aolload.exe FirewallRules: [{55DBC152-9644-417F-BB57-25C6BA7184B5}] => (Allow) C:\Program Files (x86)\Common Files\AOL\Loader\aolload.exe FirewallRules: [{3C96D904-B7C4-4C2A-97DE-8C2FDA7E1A62}] => (Allow) C:\Program Files (x86)\Common Files\AOL\System Information\sinf.exe FirewallRules: [{C6C8DB4D-819E-451C-BA0D-3F580E6B047D}] => (Allow) C:\Program Files (x86)\Common Files\AOL\System Information\sinf.exe FirewallRules: [{C9F0B097-E3FB-4DE4-AB69-9EB199FF4A96}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.6\AOLBrowser\aolbrowser.exe FirewallRules: [{A44E9FFA-9F40-4743-A3C3-4C2539FC4E75}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.6\AOLBrowser\aolbrowser.exe FirewallRules: [{6BC8FAB4-A5DF-4DE8-A08E-7094FB4714EC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{4F77FF7A-5173-40F2-8528-CF2F4BBC43A4}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{EC2C7432-C8B2-4CB7-B85C-19F1C455DE57}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{614762C0-6740-4B8F-9A76-C3277E0627FE}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{820D2530-28C0-4834-99F3-EBDA93CB402D}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{67C5C283-F7EA-4A36-A459-69B0A4843667}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{3D1F56CD-033A-4587-AB79-AE985407F4E5}] => (Allow) C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [{37BE3699-B385-4CCA-AE0F-70309E59AE01}] => (Allow) C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe FirewallRules: [{1C880248-A88A-4BF9-A07A-73AE2883F0AD}] => (Allow) C:\Users\Dada\AppData\Local\Temp\incredibar_installer.exe FirewallRules: [{9BDFD79B-1345-4F2A-8476-7804BC90A6FE}] => (Allow) C:\Users\Dada\AppData\Local\Temp\incredibar_installer.exe FirewallRules: [{4E2A8E5E-984C-413F-ADAF-5D22D88F65EB}] => (Allow) C:\Windows\System32\dmwu.exe FirewallRules: [{352B911D-089C-4D30-AEAE-0E5DD306BE84}] => (Allow) C:\Windows\System32\dmwu.exe FirewallRules: [{ECADFB52-DD96-459D-9CE2-B3A36D7A34C7}] => (Allow) C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [{8DB82147-0706-42D5-8C09-70170520F896}] => (Allow) C:\Windows\System32\ARFC\wrtc.exe FirewallRules: [{7AC633E1-7406-460E-B6E8-433C69EB1DC1}] => (Allow) C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [{3FEDC57B-27B1-42E2-A31E-A20BAC0CCE16}] => (Allow) C:\Windows\SysWOW64\ARFC\wrtc.exe FirewallRules: [{DDC600A9-92E0-42A7-8545-6D4EB7D2FAEF}] => (Allow) C:\Users\Dada\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N0Q4E4RK\JavaRuntimeEnvironment8BuildB44DeveloperPreview7Update5_SoftangoDownloader.exe FirewallRules: [{ADB46113-AC41-4334-8B2B-EE2DE5F5867E}] => (Allow) C:\Users\Dada\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\N0Q4E4RK\JavaRuntimeEnvironment8BuildB44DeveloperPreview7Update5_SoftangoDownloader.exe FirewallRules: [{432A0440-C481-4219-81CD-C0F3B8EB08C5}] => (Allow) C:\Users\Dada\AppData\Local\Temp\Softango Downloader213706.exe FirewallRules: [{0D550294-CF49-4438-8F51-5D883490B4F3}] => (Allow) C:\Users\Dada\AppData\Local\Temp\Softango Downloader213706.exe FirewallRules: [{F3ECFBD4-9CC5-439F-9055-FFF6F95E0952}] => (Allow) C:\ProgramData\eSafe\eGdpSvc.exe FirewallRules: [{2C2DFF93-969E-440C-9CCA-9E6CD5371D6E}] => (Allow) C:\Users\Dada\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{8281721B-922C-4B1A-9644-69E883D42F05}] => (Allow) C:\Users\Dada\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{BE853D38-9871-4753-9DE0-B0D061DC3A9E}] => (Allow) C:\Users\Dada\AppData\Local\Beamrise\Application\29.3.0.7376\services\windows-x86-skypekit.exe FirewallRules: [{4150F31A-1DF5-4014-A13B-9E096411D707}] => (Allow) C:\Users\Dada\AppData\Local\Beamrise\Application\29.3.0.7376\services\windows-x86-skypekit.exe FirewallRules: [{23CC7BF6-497A-43B3-9BD1-4AB209938465}] => (Allow) C:\Users\Dada\AppData\Local\Beamrise\Application\29.3.0.7376\windows-x86-skypekit.exe FirewallRules: [{56390CFF-2597-4655-82A1-6A514AFEFD3B}] => (Allow) C:\Users\Dada\AppData\Local\Beamrise\Application\29.3.0.7376\windows-x86-skypekit.exe FirewallRules: [{303A719C-6A4A-46BF-93E2-9C7760A33718}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe FirewallRules: [{C84D6073-48DA-4928-9E90-DDCC972B66A9}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe FirewallRules: [{99E17230-EA96-4575-AA01-A56CB34DF22F}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\Maxthon.exe FirewallRules: [{D4907302-DD91-428F-8654-B23B25D78274}] => (Allow) C:\Program Files (x86)\Maxthon\Bin\MxUp.exe FirewallRules: [{E31BC801-ABE6-475A-B3D7-5812A07D1F3B}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.7\waol.exe FirewallRules: [{D32D3462-D241-4C4C-A294-C15075E8076E}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.7\waol.exe FirewallRules: [{063D898B-2F75-4E41-A7D5-6E9EDE5FF904}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.7\AOLBrowser\aolbrowser.exe FirewallRules: [{8C11407D-915C-41DB-9736-2DD3A3D8D7FA}] => (Allow) C:\Program Files (x86)\AOL Desktop 9.7\AOLBrowser\aolbrowser.exe FirewallRules: [{D875BC0C-D510-41CB-83A6-A3EE0E6D0632}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1350222239\ee\AOLDesktop.exe FirewallRules: [{EEEDEFA8-5BC5-44C1-8E12-63626724B334}] => (Allow) C:\Program Files (x86)\Common Files\AOL\1350222239\ee\AOLDesktop.exe FirewallRules: [{840909CE-015F-4331-943B-E8CEB411E851}] => (Allow) C:\Users\Dada\AppData\Local\iLivid\iLivid.exe FirewallRules: [{F203EE0B-C430-42BA-BFF7-68F546309CC2}] => (Allow) C:\Users\Dada\AppData\Local\iLivid\iLivid.exe FirewallRules: [{B4B5CEF0-4C9A-4685-9121-D38F475F06F8}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{0D44737C-6199-4604-BFFF-245EFB4AA03D}] => (Allow) C:\Program Files\iTunes\iTunes.exe FirewallRules: [WCF-NetTcpActivator-In-TCP-64bit] => (Allow) %systemroot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe FirewallRules: [{6F479863-C356-4369-85E0-21DFE7AF9B8A}] => (Allow) C:\Program Files (x86)\Online Video Recorder\OnlineVideoRecorder.exe FirewallRules: [{24F467FA-BDEB-47EA-AED7-6B1802033BEA}] => (Allow) C:\Program Files (x86)\Online Video Recorder\OnlineVideoRecorder.exe FirewallRules: [{4484C435-69E5-4ED1-A070-FF159A407D59}] => (Allow) C:\Program Files (x86)\Online Video Recorder\HTTPDownloaderApp.exe FirewallRules: [{7D567AC4-75E6-44FD-A13E-67501C3AE058}] => (Allow) C:\Program Files (x86)\Online Video Recorder\HTTPDownloaderApp.exe FirewallRules: [{89FC6477-E908-4739-9822-9C02C185FDDB}] => (Allow) C:\Program Files (x86)\Online Video Recorder\RTMPDownloaderApp.exe FirewallRules: [{2D63B530-E2F6-40AD-A485-C673DAEA66FE}] => (Allow) C:\Program Files (x86)\Online Video Recorder\RTMPDownloaderApp.exe FirewallRules: [{6239456D-838A-4BBE-9F0D-9CC652474ED4}] => (Allow) C:\Program Files (x86)\Online Video Recorder\VideoDownloadApp_RTMP.exe FirewallRules: [{546AF83B-25E9-4A47-AD67-A9C5E01C3CFD}] => (Allow) C:\Program Files (x86)\Online Video Recorder\VideoDownloadApp_RTMP.exe FirewallRules: [{BB37D53F-6848-4997-BCDD-C503AB0F0C04}] => (Allow) C:\Program Files (x86)\Online Video Recorder\MMSDownloaderApp.exe FirewallRules: [{7DDC33A7-C6DC-46C9-AFA9-599AEC3A28B6}] => (Allow) C:\Program Files (x86)\Online Video Recorder\MMSDownloaderApp.exe FirewallRules: [{69783211-37DD-4172-903F-99D0EBE35358}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe FirewallRules: [{17A8BFB3-5723-4F48-9BCA-9108AF847852}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe FirewallRules: [{0177C579-14EA-4F82-B0E4-D8B501671097}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll FirewallRules: [{C6704ACB-B291-4919-8F79-A8F32D191E20}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll FirewallRules: [{69C389FB-EBBB-4513-956C-252C046BE39B}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll FirewallRules: [{E792FA80-C259-4F2F-8067-11C70FDC8457}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll FirewallRules: [{7735BE4A-8EB9-4641-B9E2-54F6BC604ECE}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll FirewallRules: [{F07D24FA-7124-4B41-9E17-BCB332729E9E}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll FirewallRules: [{2ED27730-6477-4A48-8B1B-7111A232732D}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll FirewallRules: [{42C36943-B331-4F96-AF77-DB6AE9926C0B}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll FirewallRules: [{AD567D9E-8D84-4AF8-8F54-EEE8353E33B0}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll FirewallRules: [{EE166C15-E527-4358-BB33-6C840A40464D}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll FirewallRules: [{56D77DF2-BF2C-4531-AEB8-9DF461D87427}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll FirewallRules: [{732000B1-DE1D-490F-B371-2E256CF80B73}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll FirewallRules: [{1285ADDC-307A-43FA-AC91-8B7BAB9D4BAA}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Symantec Iron Driver Description: Symantec Iron Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SymIRON Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: BHDrvx64 Description: BHDrvx64 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: BHDrvx64 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Norton Internet Security Settings Manager Description: Norton Internet Security Settings Manager Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ccSet_NIS Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: USB Camera Description: USB Camera Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Carte Microsoft 6to4 Description: Carte Microsoft 6to4 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: innfd_1_10_0_14 Description: innfd_1_10_0_14 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: innfd_1_10_0_14 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Carte Microsoft ISATAP #2 Description: Carte Microsoft ISATAP Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Carte Microsoft ISATAP Description: Carte Microsoft ISATAP Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. Name: Microsoft Teredo Tunneling Adapter Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (07/03/2015 06:26:34 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail (4612) WindowsMail0: La sauvegarde a été arrêtée car elle a été interrompue par le client ou la connexion avec le client a échoué. Error: (07/03/2015 03:24:05 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Windows ne peut pas vous ouvrir une session car votre profil ne peut pas être chargé. Vérifiez que vous êtes connecté au réseau et que le réseau fonctionne correctement. DÉTAIL - Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:23:48 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Windows ne peut pas trouver le profil local et tente de vous connecter avec un profil temporaire. Les modifications effectuées à ce profil seront perdues lorsque vous vous déconnecterez. Error: (07/03/2015 03:23:34 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Windows ne peut pas vous ouvrir une session car votre profil ne peut pas être chargé. Vérifiez que vous êtes connecté au réseau et que le réseau fonctionne correctement. DÉTAIL - Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:23:34 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: AUTORITE NT) Description: Windows ne peut pas supprimer le répertoire de profils C:\Users\TEMP.IIS APPPOOL.002. Ce problème peut être causé par des fichiers situés dans ce répertoire qui sont utilisés par un autre programme. DÉTAIL - Le répertoire n’est pas vide. Error: (07/03/2015 03:23:23 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Windows ne peut pas trouver le profil local et tente de vous connecter avec un profil temporaire. Les modifications effectuées à ce profil seront perdues lorsque vous vous déconnecterez. Error: (07/03/2015 03:23:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Windows ne peut pas vous ouvrir une session car votre profil ne peut pas être chargé. Vérifiez que vous êtes connecté au réseau et que le réseau fonctionne correctement. DÉTAIL - Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:22:57 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Windows ne peut pas trouver le profil local et tente de vous connecter avec un profil temporaire. Les modifications effectuées à ce profil seront perdues lorsque vous vous déconnecterez. Error: (07/03/2015 03:22:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Windows ne peut pas vous ouvrir une session car votre profil ne peut pas être chargé. Vérifiez que vous êtes connecté au réseau et que le réseau fonctionne correctement. DÉTAIL - Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:22:33 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Windows ne peut pas trouver le profil local et tente de vous connecter avec un profil temporaire. Les modifications effectuées à ce profil seront perdues lorsque vous vous déconnecterez. System errors: ============= Error: (07/03/2015 07:12:51 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service tTromUE s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error: (07/03/2015 06:38:23 PM) (Source: Schannel) (EventID: 4120) (User: AUTORITE NT) Description: L’alerte fatale suivante a été générée : 40. L’état d’erreur interne est 252. Error: (07/03/2015 06:38:23 PM) (Source: Schannel) (EventID: 4120) (User: AUTORITE NT) Description: L’alerte fatale suivante a été générée : 40. L’état d’erreur interne est 252. Error: (07/03/2015 06:33:42 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service tTromUE s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error: (07/03/2015 06:19:13 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Le dépassement de délai (60000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service wlidsvc. Error: (07/03/2015 06:16:06 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger : BHDrvx64 ccSet_NIS innfd_1_10_0_14 SRTSP SymIRON Error: (07/03/2015 06:15:36 PM) (Source: SRTSP) (EventID: 5) (User: ) Description: Error loading Symantec real time Anti-Virus driver. Error: (07/03/2015 06:15:36 PM) (Source: SRTSP) (EventID: 4) (User: ) Description: Error loading virus definitions. Error: (07/03/2015 06:15:59 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: L’arrêt système précédant à 18:14:53 le ‎03/‎07/‎2015 n’était pas prévu. Error: (07/03/2015 06:14:34 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF} Microsoft Office: ========================= Error: (07/03/2015 06:26:34 PM) (Source: ESENT) (EventID: 215) (User: ) Description: WinMail4612WindowsMail0: Error: (07/03/2015 03:24:05 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:23:48 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Error: (07/03/2015 03:23:34 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:23:34 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1533) (User: AUTORITE NT) Description: C:\Users\TEMP.IIS APPPOOL.002Le répertoire n’est pas vide. Error: (07/03/2015 03:23:23 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Error: (07/03/2015 03:23:12 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:22:57 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: Error: (07/03/2015 03:22:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1500) (User: IIS APPPOOL) Description: Seule une partie d’une requête ReadProcessMemory ou WriteProcessMemory a été effectuée. Error: (07/03/2015 03:22:33 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1511) (User: IIS APPPOOL) Description: CodeIntegrity Errors: =================================== Date: 2015-06-28 22:41:48.104 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\FromDocToPDF_65\bar\1.bin\AppIntegratorStub64.dll car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-26 17:11:41.915 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-26 17:11:28.206 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-26 12:45:46.444 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-26 12:44:33.834 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-25 21:34:13.426 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-20 11:27:39.576 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-17 23:03:31.122 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-17 23:03:15.186 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. Date: 2015-06-17 22:36:37.435 Description: Le module d’intégrité du code ne peut pas vérifier l’intégrité image du fichier \Device\HarddiskVolume3\Program Files (x86)\Web Protect\pcwtc64f.sys car le jeu de hachages d’images par page n’a pas été trouvé sur le système. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-3770 CPU @ 3.40GHz Percentage of memory in use: 26% Total physical RAM: 12245.41 MB Available physical RAM: 8971.66 MB Total Pagefile: 24489.03 MB Available Pagefile: 20918.14 MB Total Virtual: 8192 MB Available Virtual: 8191.76 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:914.52 GB) (Free:766.25 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (HP_RECOVERY) (Fixed) (Total:16.77 GB) (Free:2.05 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: E414E33A) Partition: GPT Partition Type. ==================== End of log ============================