OTL Extras logfile created on: 23/08/2016 08:30:48 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\HP\Downloads 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16428) Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy 1,87 Gb Total Physical Memory | 0,76 Gb Available Physical Memory | 40,53% Memory free 3,74 Gb Paging File | 2,43 Gb Available in Paging File | 64,79% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 465,66 Gb Total Space | 425,98 Gb Free Space | 91,48% Space Free | Partition Type: NTFS Unable to calculate disk information. Drive E: | 931,48 Gb Total Space | 876,88 Gb Free Space | 94,14% Space Free | Partition Type: NTFS Computer Name: HP-PC | User Name: HP | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = ChromeHTML] -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) [HKEY_USERS\.DEFAULT\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-18\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [HKEY_USERS\S-1-5-21-4073411141-1456781647-4210825321-1000\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) https [open] -- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -- "%1" (Google Inc.) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{08C83639-6299-498D-8E83-1B19B24EBA7F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{C4ACB2F2-BB32-4AB7-A287-8CD602751D89}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office\office15\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{061762B2-5880-4637-9E3D-15DBF2CABE01}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | "{17E563CD-F769-40A6-8618-846FF98CC7BF}" = protocol=6 | dir=in | app=c:\program files (x86)\askpartnernetwork\toolbar\updater\tbnotifier.exe | "{209298D7-1649-4994-AB72-683F1FDBFFFE}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{5843203B-2AAA-49AC-B200-9EC3F0435974}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{69F40E55-3AA7-4D45-B178-3B13BBEBB7F2}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{78B79EC5-0C35-449A-B1FB-5EDB176A67B7}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{9D571E38-6F15-4BB6-8ED8-B979124B35A7}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | "{A5AC4070-ABC4-4C7A-9FBB-A6056D7ADAFD}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | "{C519630C-3A32-437A-A1B8-DD1E0163973E}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{CAAF30BB-A28E-45B1-A63A-E0303BF7FE1F}" = protocol=17 | dir=in | app=c:\program files\microsoft office\office15\lync.exe | "{CE19E8AE-C138-4F32-AA14-4C311857F2BF}" = protocol=6 | dir=in | app=c:\program files\microsoft office\office15\ucmapi.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}" = Microsoft .NET Framework 4 Client Profile FRA Language Pack "{90150000-0011-0000-1000-0000000FF1CE}" = Microsoft Office Professional Plus 2013 "{90150000-0015-040C-1000-0000000FF1CE}" = Microsoft Access MUI (French) 2013 "{90150000-0016-040C-1000-0000000FF1CE}" = Microsoft Excel MUI (French) 2013 "{90150000-0018-040C-1000-0000000FF1CE}" = Microsoft PowerPoint MUI (French) 2013 "{90150000-0019-040C-1000-0000000FF1CE}" = Microsoft Publisher MUI (French) 2013 "{90150000-001A-040C-1000-0000000FF1CE}" = Microsoft Outlook MUI (French) 2013 "{90150000-001B-040C-1000-0000000FF1CE}" = Microsoft Word MUI (French) 2013 "{90150000-001F-0401-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - اللغة العربية "{90150000-001F-0407-1000-0000000FF1CE}" = Microsoft Office Korrekturhilfen 2013 - Deutsch "{90150000-001F-0409-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - English "{90150000-001F-040C-1000-0000000FF1CE}" = Outils de vérification linguistique 2013 de Microsoft Office - Français "{90150000-001F-0413-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Nederlands "{90150000-001F-0C0A-1000-0000000FF1CE}" = Microsoft Office Proofing Tools 2013 - Español "{90150000-002C-040C-1000-0000000FF1CE}" = Microsoft Office Proofing (French) 2013 "{90150000-0044-040C-1000-0000000FF1CE}" = Microsoft InfoPath MUI (French) 2013 "{90150000-006E-040C-1000-0000000FF1CE}" = Microsoft Office Shared MUI (French) 2013 "{90150000-0090-040C-1000-0000000FF1CE}" = Microsoft DCF MUI (French) 2013 "{90150000-00A1-040C-1000-0000000FF1CE}" = Microsoft OneNote MUI (French) 2013 "{90150000-00BA-040C-1000-0000000FF1CE}" = Microsoft Groove MUI (French) 2013 "{90150000-00C1-0000-1000-0000000FF1CE}" = Microsoft Office 32-bit Components 2013 "{90150000-00C1-040C-1000-0000000FF1CE}" = Microsoft Office Shared 32-bit MUI (French) 2013 "{90150000-00E1-040C-1000-0000000FF1CE}" = Microsoft Office OSM MUI (French) 2013 "{90150000-00E2-040C-1000-0000000FF1CE}" = Microsoft Office OSM UX MUI (French) 2013 "{90150000-012B-040C-1000-0000000FF1CE}" = Microsoft Lync MUI (French) 2013 "{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "{D8CC254C-C671-4664-9A38-FA368D1E2C97}" = SES Driver "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "4CA7CFBB29889F25ACB3DF6E3A42BAE29EB43B20" = Windows Driver Package - Western Digital Technologies (WDC_SAM) WDC_SAM (01/19/2011 1.0.0009.0) "McAfee Security Scan" = McAfee Security Scan Plus "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Client Profile FRA "Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "Office15.PROPLUS" = Microsoft Office Professionnel Plus 2013 "VLC media player" = VLC media player [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{41545533-2D54-4D47-00A7-A758B70C2806}" = Teoma Media Search App "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1" = aTube Catcher version 3.8 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Graphics Media Accelerator Driver "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Adobe Flash Player NPAPI" = Adobe Flash Player 22 NPAPI "Avast" = Avast Antivirus Gratuit "GNU Prolog_is1" = GNU Prolog version 1.4.4 "Google Chrome" = Google Chrome "Mozilla Firefox 47.0.1 (x86 fr)" = Mozilla Firefox 47.0.1 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "SafeZone 1.51.2220.53" = SafeZone Stable 1.51.2220.53 [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 16/08/2016 03:50:09 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 17/08/2016 05:14:22 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 04:19:29 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 11:53:35 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 13:54:42 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 14:38:02 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 14:58:12 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 20/08/2016 15:27:48 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 21/08/2016 03:44:10 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = Error - 23/08/2016 02:57:19 | Computer Name = HP-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 15/08/2016 17:57:05 | Computer Name = HP-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20 Description = Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur 0x80070643 : Mise à jour pour Microsoft Office 2013 (KB3115255) Édition 64 bits. Error - 17/08/2016 04:11:50 | Computer Name = HP-PC | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service avast! Antivirus. Error - 17/08/2016 05:13:58 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 10:12:53 le ?17/?08/?2016 n’était pas prévu. Error - 20/08/2016 11:52:52 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 14:05:52 le ?20/?08/?2016 n’était pas prévu. Error - 20/08/2016 13:54:00 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 17:02:42 le ?20/?08/?2016 n’était pas prévu. Error - 20/08/2016 14:37:37 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 19:35:49 le ?20/?08/?2016 n’était pas prévu. Error - 20/08/2016 14:57:47 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 19:55:25 le ?20/?08/?2016 n’était pas prévu. Error - 20/08/2016 15:27:28 | Computer Name = HP-PC | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 20:25:37 le ?20/?08/?2016 n’était pas prévu. Error - 20/08/2016 17:45:47 | Computer Name = HP-PC | Source = DCOM | ID = 10010 Description = Error - 21/08/2016 03:44:47 | Computer Name = HP-PC | Source = DCOM | ID = 10010 Description = < End of report >