OTL Extras logfile created on: 18/02/2016 15:22:41 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\nec\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.10586.0) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 2,44 Gb Total Physical Memory | 0,97 Gb Available Physical Memory | 39,87% Memory free 2,87 Gb Paging File | 1,38 Gb Available in Paging File | 47,99% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 36,83 Gb Total Space | 19,34 Gb Free Space | 52,51% Space Free | Partition Type: NTFS Drive D: | 37,26 Gb Total Space | 37,10 Gb Free Space | 99,57% Space Free | Partition Type: NTFS Computer Name: DESKTOP-PALGN97 | User Name: nec | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- Reg Error: Key error. File not found .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- Reg Error: Key error. File not found [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- Reg Error: Key error. htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- Reg Error: Key error. CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Key error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 11 0E CB 2A 14 50 D1 01 [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] "DontEnumerateCommonFilesUpgradeExe" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{D716445C-9713-42E9-86F1-E05CD7266C91}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{D9B30C6E-7769-4526-82D0-0F9709DBFFD8}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{002303CD-E2F7-41E6-BD1F-5C1CC518AF2E}" = dir=in | name=@{microsoft.bingsports_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} | "{072A8619-D9CC-424A-B69C-2D66BFAEBF01}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} | "{078267BD-427E-4DD5-A6E3-866C4FC3CBF4}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.6568.16901.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} | "{08C7D9EA-9453-4D28-829C-EF93801B86E2}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} | "{093E684B-201C-45C9-8034-5FC009DA2E4F}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} | "{0F987ECF-38BA-4DEC-BC24-B42EC8AD6EF4}" = dir=in | name=xbox | "{14F59176-F5B0-4CD2-AA12-79238EB0BB29}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{19CE85CB-C0B3-4598-87D4-7688DEBAE198}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.6568.16901.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} | "{19FFC32D-7611-4FE2-BD84-EB48F36A5A28}" = dir=out | name=windows_ie_ac_001 | "{1D9D0642-4051-4E25-B7C1-7DF2A6ADAC7F}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} | "{2F6C4496-D54A-4CC4-B393-EBA826325096}" = dir=in | name=canon inkjet print utility | "{30A8C82D-7B11-4CC1-8E1A-EF79E7F0D8EF}" = dir=in | name=xbox one smartglass | "{351DF033-438F-4E75-9F94-24E2C5A4C2AC}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} | "{361018B7-A527-4B0B-BC5F-12D42045C165}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{37CADE49-BAD0-479A-A43B-7A0F9F7D7EF3}" = dir=out | name=sway | "{39858286-EE38-443A-9882-0EF69CF9977C}" = dir=out | name=@{microsoft.bingfinance_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} | "{3AEBCF8D-598D-447A-94A9-07CA0A3019B0}" = dir=out | name=@{microsoft.bingnews_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} | "{3BF4CA93-B774-4492-9DA5-A930E853B539}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{3CC8F5F8-8D58-45E6-847A-565AB29D3271}" = dir=in | name=@{microsoft.bingweather_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{3F989081-F388-49A0-B65E-F1ED0F1ADB57}" = dir=out | name=@{microsoft.windows.photos_16.201.11370.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{43A36D11-3801-4833-BDE3-D9E837D85A8A}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{491763E2-CB07-463F-8F1B-BFA455E2EAF6}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{4CB96B54-5E7C-4603-B328-AE73EE7821EF}" = dir=in | name=@{microsoft.microsoftofficehub_17.6628.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{4CD9CE9B-E04F-4942-A544-671511D4FA74}" = dir=in | name=sway | "{4E0B854A-57EB-4F4F-990A-08FF283DAC8C}" = dir=in | name=@{microsoft.windows.photos_16.201.11370.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{507CCDDC-5A85-4283-8930-5428CA0CF955}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} | "{508098BF-416D-4A7E-9A77-CA4F581F6ABF}" = dir=in | name=@{microsoft.zunevideo_3.6.16941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{55BD2098-02A1-4D7E-A8D1-0AE53BA6B1A4}" = dir=out | name=xbox one smartglass | "{5896B04F-9A2A-4BB1-86D6-3229CD033592}" = dir=out | name=@{microsoft.microsoftofficehub_17.6628.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{58B6B476-0E59-4D56-9B71-A704EB5507E2}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} | "{5907594D-08BB-42F3-9E5D-02054C64DF4A}" = dir=in | name=onenote | "{61CF3BA1-9AE4-422B-ACEF-D611F3D4F182}" = dir=out | name=@{microsoft.3dbuilder_10.10.38.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} | "{6A3A1D6B-C155-4F59-83C5-4CB0E21C2A11}" = dir=out | name=@{microsoft.zunevideo_3.6.16941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{6B460706-0F3B-4059-86F6-D55359331B6E}" = dir=in | name=@{microsoft.commsphone_2.12.14001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{77D99EEA-D748-49A2-A523-1CFE2BF65A7D}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{84294B01-F752-4632-97C0-5BAB4E11F025}" = dir=out | name=microsoft solitaire collection | "{8AE98836-8AC2-44A9-B73A-8BA4653E1C7D}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} | "{8D91C6CD-3146-47B4-9A37-F17631BF17D9}" = dir=in | name=microsoft solitaire collection | "{8F5FAB24-4730-4DC5-AA4E-D5EC2E41ABE4}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} | "{91990AE7-CFC9-407F-AB7C-DAD4B85F4CD2}" = dir=out | name=@{microsoft.zunemusic_3.6.15131.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{99509B13-8418-4964-9C73-27B974BC09B3}" = dir=out | name=@{microsoft.getstarted_2.6.12.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} | "{A27392A9-DD35-46FA-AD4E-D97AD35FC123}" = dir=out | name=@{microsoft.bingweather_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{A5ECB567-FAC4-4527-81DC-5D48FF9916CE}" = dir=out | name=@{microsoft.messaging_2.13.20000.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} | "{A6ACB9E1-E106-4D2B-8D98-FF9D7616D1B8}" = dir=out | name=@{microsoft.people_10.0.10220.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} | "{B24B6EE1-3131-4B89-9A0E-97790AFF5093}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} | "{B8C72595-D69F-468F-BCFF-C45C59131FFC}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{BB283EC1-D405-424C-BF13-3E54D2AC6B53}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | "{BC2D0E4F-8BCF-485C-9F47-E6CA53C92DA7}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{C39EEB2D-F1D9-4025-9827-E28A63990400}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} | "{C41CA145-B990-4CB9-914F-6D296C7708F6}" = dir=out | name=@{microsoft.windowsstore_2016.27.2.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{C772E573-0863-4DDD-AA2E-7F5A53DE39B9}" = dir=out | name=onenote | "{C7C21419-1D19-45EB-A30C-6D0E88268D91}" = protocol=58 | dir=in | app=system | "{D8409623-1FB5-4C02-9499-08B6C4CD6875}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} | "{DB9F91A6-E33E-4836-A422-1B57FE1E3A16}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{DDB3E211-A71B-4586-8B90-77CEF2EA3A91}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{E1FB9983-5654-46CE-84AF-3C31BED93DAB}" = dir=out | name=@{microsoft.commsphone_2.12.14001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{E3172CE8-ED23-4E29-9300-25233E2AEEDA}" = dir=out | name=canon inkjet print utility | "{E5929CB1-4BBB-457F-BBBF-54E5A875C655}" = dir=out | name=@{microsoft.windowsphone_10.1602.3010.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} | "{E9E5E848-A3B3-49EB-B4B9-D4E0A3049154}" = dir=in | name=@{microsoft.windowsstore_2016.27.2.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{EB1EE2DB-CBDE-4196-833A-F78EB43C551F}" = dir=in | name=@{microsoft.messaging_2.13.20000.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} | "{EB56B048-3693-4E0B-A78C-E095DB8F700C}" = dir=in | name=@{microsoft.bingnews_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} | "{EC0BA571-03D2-4C9D-A21A-E689D63814B6}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10240.16384_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{ED5EE428-0C45-4A44-BF7A-31EB42AB58BB}" = dir=out | name=@{microsoft.bingsports_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} | "{F044450C-3374-4038-9ED0-D039F44465C8}" = dir=out | name=@{microsoft.windowsmaps_4.1601.10150.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} | "{F6A698E6-7880-4056-B9FE-E56F9372F8DF}" = dir=in | name=@{microsoft.bingfinance_4.8.239.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} | "{F6BDAFDD-5164-4711-BEE4-ED4833B54FDD}" = dir=out | name=@{microsoft.connectivitystore_1.1511.2.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} | "{F9DD3E54-A43F-4995-AB67-8E7C708AF89D}" = dir=out | name=xbox | "TCP Query User{97455D0F-3DFE-46A8-A124-FEEBB2917EB5}C:\program files (x86)\outbreak\outbreak.exe" = protocol=6 | dir=in | app=c:\program files (x86)\outbreak\outbreak.exe | "UDP Query User{918F4E7B-1C44-4AE0-B2FE-079F1ABD784E}C:\program files (x86)\outbreak\outbreak.exe" = protocol=17 | dir=in | app=c:\program files (x86)\outbreak\outbreak.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX430_series" = Canon MX430 series MP Drivers "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "WinRAR archiver" = WinRAR 5.21 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adibou et l'Ombre Verte V.1.00 on C" = Adibou et l'Ombre Verte V.1.00 on C "Adobe Flash Player NPAPI" = Adobe Flash Player 20 NPAPI "Glary Utilities 5" = Glary Utilities PRO 5.42 "Mozilla Firefox 44.0.2 (x86 fr)" = Mozilla Firefox 44.0.2 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 17/02/2016 11:40:41 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 17/02/2016 11:43:35 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Windows.CloudExperienceHost_cw5n1h2txyewy!App avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 17/02/2016 11:45:14 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Messaging_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1 avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 17/02/2016 21:36:29 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy!App avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 17/02/2016 23:16:28 | Computer Name = DESKTOP-PALGN97 | Source = Perflib | ID = 1008 Description = Error - 18/02/2016 08:01:34 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 2484 Description = Le package Microsoft.Windows.Cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy+CortanaUI a été interrompu, car sa suspension a été trop longue. Error - 18/02/2016 08:02:33 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 18/02/2016 08:02:33 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927142 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. Error - 18/02/2016 08:19:46 | Computer Name = DESKTOP-PALGN97 | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante SkypeHost.exe, version : 10.1.2123.10, horodatage : 0x569054dc Nom du module défaillant : SkyWrap.dll, version : 10.1.2123.10, horodatage : 0x569054c9 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00ac6197 ID du processus défaillant : 0xc1c Heure de début de l’application défaillante : 0x01d16a42f9200d8d Chemin d’accès de l’application défaillante : C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe Chemin d’accès du module défaillant: C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll ID de rapport : 0ba0b9ad-906b-4cc6-99fe-c1ae4de0ed3f Nom complet du package défaillant : Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe ID de l’application relative au package défaillant : ppleae38af2e007f4358a809ac99a64a67c1 Error - 18/02/2016 09:51:31 | Computer Name = DESKTOP-PALGN97 | Source = Microsoft-Windows-Immersive-Shell | ID = 5973 Description = Échec de l’activation de l’application Microsoft.Windows.Cortana_cw5n1h2txyewy!CortanaUI avec l’erreur : -2144927141 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. [ System Events ] Error - 17/02/2016 12:22:42 | Computer Name = DESKTOP-PALGN97 | Source = Service Control Manager | ID = 7009 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service Stockage des données utilisateur_4d26c. Error - 17/02/2016 21:36:29 | Computer Name = DESKTOP-PALGN97 | Source = DCOM | ID = 10010 Description = Error - 17/02/2016 23:53:57 | Computer Name = DESKTOP-PALGN97 | Source = DCOM | ID = 10016 Description = Error - 17/02/2016 23:53:57 | Computer Name = DESKTOP-PALGN97 | Source = Service Control Manager | ID = 7031 Description = Le service Hôte de synchronisation_14d5f9 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 17/02/2016 23:53:57 | Computer Name = DESKTOP-PALGN97 | Source = Service Control Manager | ID = 7031 Description = Le service Données de contacts_14d5f9 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 17/02/2016 23:53:57 | Computer Name = DESKTOP-PALGN97 | Source = Service Control Manager | ID = 7031 Description = Le service Stockage des données utilisateur_14d5f9 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 17/02/2016 23:53:57 | Computer Name = DESKTOP-PALGN97 | Source = Service Control Manager | ID = 7031 Description = Le service Accès aux données utilisateur_14d5f9 s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 18/02/2016 08:02:17 | Computer Name = DESKTOP-PALGN97 | Source = DCOM | ID = 10010 Description = Error - 18/02/2016 08:02:33 | Computer Name = DESKTOP-PALGN97 | Source = DCOM | ID = 10010 Description = Error - 18/02/2016 09:51:30 | Computer Name = DESKTOP-PALGN97 | Source = DCOM | ID = 10010 Description = < End of report >