OTL Extras logfile created on: 23-04-13 20:15:49 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Session\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.10.9200.16540) Locale: 0000080C | Country: Belgique | Language: FRB | Date Format: dd-MM-yy 3,89 Gb Total Physical Memory | 2,94 Gb Available Physical Memory | 75,51% Memory free 7,64 Gb Paging File | 6,45 Gb Available in Paging File | 84,47% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 186,30 Gb Total Space | 68,49 Gb Free Space | 36,76% Space Free | Partition Type: NTFS Drive D: | 258,45 Gb Total Space | 258,33 Gb Free Space | 99,95% Space Free | Partition Type: NTFS Computer Name: ADMIN | User Name: Session | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2840223088-220564917-695180253-1001\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = CE 37 E6 AF FF 6A CD 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{000D8142-A897-4448-A90E-A8883688F1A1}" = rport=445 | protocol=6 | dir=out | app=system | "{1A35DEAB-84C1-4DA5-A852-C8A39BCB14AC}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{1D6380B2-4640-4781-8452-15842C104FCA}" = lport=139 | protocol=6 | dir=in | app=system | "{218F2587-3A26-400C-A504-C9193672EED4}" = rport=139 | protocol=6 | dir=out | app=system | "{384541A9-5C39-4085-8737-1D4B33191334}" = lport=10243 | protocol=6 | dir=in | app=system | "{5F0216DC-7ECD-40E0-884B-5BB040A38BF5}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{6083B75F-A1E2-434C-8035-610E5C3B9A87}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{6A254099-B729-443E-8ED0-CB6CEA82438E}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{76C9D43D-D459-4842-883E-29B5F65D6A52}" = rport=10243 | protocol=6 | dir=out | app=system | "{7A5702C1-72BC-4496-8BB8-C7194E5B38F4}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{7FE8C6AE-98C2-4036-BAD6-5CC2715CE87E}" = lport=138 | protocol=17 | dir=in | app=system | "{94B6A855-99E8-491A-B0CF-1982B30ED0E2}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9FFDAC93-8997-4430-8EAE-3D4F4A99EFB2}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{B7F21238-E480-4932-8EA3-9BF97C12CEB1}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{BD448474-E2D4-4907-8014-012403304253}" = lport=445 | protocol=6 | dir=in | app=system | "{C0840530-9264-450B-A840-6CC42B62A2E2}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{C95034DA-B593-48EC-9CAE-D5E9C3619328}" = rport=137 | protocol=17 | dir=out | app=system | "{CE70D819-461A-4966-A5A9-C847EFC6FEC6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{CF3B11C6-E011-4E95-9237-243787E5E87C}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{E0085225-7EB3-4EBC-8A0B-656FCEF566A4}" = lport=137 | protocol=17 | dir=in | app=system | "{E0398C9B-63B6-4D0E-A6FB-853B716D3800}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{EACF3DFD-3966-4BA8-9C5D-44FE84F256CF}" = lport=2869 | protocol=6 | dir=in | app=system | "{FC467BE2-A1F7-4E7F-81D7-ADECD865C123}" = rport=138 | protocol=17 | dir=out | app=system | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{019D7AE6-EF0F-45F8-A3E1-01256814F3B2}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{02A069FC-768A-4795-88C6-8E7EA6043A3C}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{047D4B3C-174B-4096-943A-604D8161E0F4}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "{0516696D-A37F-4C91-8130-5A6B677DEE7F}" = dir=out | name=@{microsoft.bing_1.5.1.259_x64__8wekyb3d8bbwe?ms-resource://microsoft.bing/resources/app_name} | "{0574F937-12EE-4388-9C50-B6ABCB24938B}" = dir=out | name=@{microsoft.zunemusic_1.1.144.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/33273} | "{0632A184-8C11-4802-9667-4F8F267B4543}" = protocol=6 | dir=out | app=system | "{08D612D1-92D2-4670-A09F-FD9E05FBFC56}" = dir=in | name=@{microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{16CF5103-E5F4-4E91-8F79-9BA55F39498D}" = dir=in | name=evernote | "{183A960E-025C-495F-AA2A-9B8E851F27AA}" = dir=out | name=@{microsoft.zunevideo_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/33270} | "{18F28926-6DC8-45C2-A934-5A1AD491EC07}" = dir=out | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{197F015E-BA00-49BD-89F4-29EDFC1CC7C2}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{21ED895F-851A-4A72-9FB6-AB34EF7E2F4E}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{2204F8CF-3B7F-4088-99DD-11FF797047A1}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{22173D59-FCA1-4450-8C5C-5AFF5C32F618}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | "{26666C84-1E8D-49D3-BCEA-F0792EEF46A2}" = dir=in | name=music maker jam | "{27BAC64E-0738-4769-B5C7-6F159E63D13D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{28BD374E-07B3-4857-AD9F-DDFA0EDBAF97}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{3102EC69-F4C1-4757-937B-E8E19D019AAC}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd10.exe | "{3C380710-71CC-48DC-8BC1-312C700A402C}" = dir=in | name=hp printer control | "{3D3D859A-A885-452B-B5B9-9BCDE1396928}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{3FABD1D4-AE12-41E9-AD13-366596C2B1B7}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{4216360B-52F1-4194-AAA1-4E57746F5479}" = dir=out | name=@{microsoft.bingtravel_1.7.0.26_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | "{44FD97E2-6F20-488E-8E82-C4930744C5AA}" = dir=out | name=@{microsoft.bingmaps_1.5.1.240_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | "{454B954B-B69D-44FA-9384-5C3AB18687DC}" = dir=out | name=@{microsoft.microsoftskydrive_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftskydrive/resources/shortproductname} | "{4B8EE2C5-F1B6-4C70-9AB2-FEFC3B17519E}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{4BCBB1F1-7753-47AB-9F0A-C8457FA4673C}" = dir=out | name=evernote | "{4D3315CD-86EB-4689-ACDC-AC89CBE78C03}" = dir=out | name=@{microsoft.bingnews_1.7.0.38_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/news} | "{52F403D1-5AA9-4B9E-A089-50E9E406246D}" = protocol=6 | dir=in | app=c:\users\session\appdata\roaming\gamecenter\gcupdater.exe | "{57B10A65-0690-4F32-9B81-F76AF18FB3E3}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{57F997B5-05FA-4510-8BD8-7B630E519FD0}" = dir=out | name=taptiles | "{591059CC-796F-4023-8ED9-929C0CEE180D}" = dir=out | name=@{microsoft.windowscommunicationsapps_16.4.4406.1205_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | "{5D1E1160-586B-42DE-ADCF-86643F7F709D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{6611853F-6BB9-48CB-A61C-C2ABD74A6C6B}" = protocol=17 | dir=in | app=c:\program files (x86)\goforfiles\goforfilesdl.exe | "{6CB6E616-C180-4A64-87DE-65ACDD17EA7C}" = dir=out | name=@{microsoft.bingweather_1.7.0.26_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | "{755E5A5B-C5BC-40C0-8AF5-C9210FA5CB26}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{7C4FBF27-8C6D-431B-B0B6-A4768C103D69}" = dir=out | name=@{microsoft.bingsports_1.8.0.51_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | "{808F1451-4108-46FD-ADBB-F17324B5F0BD}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{84870FEA-156F-415F-A3D1-48E26B53E037}" = protocol=17 | dir=in | app=c:\users\session\appdata\roaming\gamecenter\gcupdater.exe | "{8589E37A-00EC-4FB1-AC3E-B362AFD8218C}" = protocol=6 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "{90D03F6F-B86B-41C8-B4EA-60E98871F39C}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{99B54E37-194B-4B24-B2E7-C9F6BEC38835}" = dir=in | name=jetpack joyride | "{9A15AD2E-3F7D-4DBF-8487-EABAED32DCBB}" = dir=in | app=c:\program files (x86)\cyberlink\powerdvd10\powerdvd cinema\powerdvdcinema10.exe | "{A0BEB4B6-6138-4E07-BE57-BFE0E95B8169}" = dir=out | name=windows_ie_ac_001 | "{A60C517B-B392-4EBC-ABF4-3BCFAB10AACD}" = protocol=6 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{A82F65B5-F876-40A5-8B65-10AFB2890DAB}" = dir=out | name=jetpack joyride | "{AD0272B7-1597-4308-8BF6-E9BDE56B7E01}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{AE119588-0181-4CD5-AFA3-C4A14305970F}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{AE542B57-DB9C-4367-AEE7-44F5263EB702}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{B2EC6A1E-4DB9-4B9D-A123-F7E07800D50D}" = dir=in | name=@{microsoft.skypeapp_1.3.0.112_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{B30D9437-A0C9-4144-8B8C-F7552CF1DCBB}" = protocol=6 | dir=in | app=c:\users\session\appdata\roaming\gamecenter\gamecenter.exe | "{B338BC5F-7AAA-47FE-9F1B-4DFF8D52311D}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{BA3636B3-2BCD-4DFD-88AE-9F9225751D84}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{BAD59CAC-FE45-4FE0-B6AE-055E9B9108B1}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{BC61C777-F616-410D-AB4A-5A147EFAD3AA}" = dir=out | name=adera | "{C076E5C7-4426-4B74-BFEF-313E6DEB0D8E}" = dir=out | name=@{microsoft.bingfinance_1.7.0.38_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | "{C0A039F3-AB29-4E52-BDCE-0D623E219FA1}" = dir=in | name=@{microsoft.windowsphotos_16.4.4388.928_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphotos/photo/residappname} | "{C16E532D-2AA2-4EE7-817F-838B0A9B519E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{C2B5B72E-A9FA-4381-86C8-0BFABE72D3F6}" = dir=out | name=@{microsoft.skypeapp_1.3.0.112_x86__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/manifest_display_name} | "{C33C78F3-7E7E-4587-8DF1-214C00315D6F}" = dir=out | name=music maker jam | "{C9523A51-C6CE-4A0A-BAA0-2147E7FA0678}" = dir=out | name=@{microsoft.xboxlivegames_1.1.134.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | "{CA07DE0F-1AF6-47D1-833C-3A59776FCB17}" = protocol=17 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "{CA3F5BAE-46AE-4724-AF88-DD72D4261747}" = dir=out | name=hp printer control | "{CDA997C3-5E43-4CEE-9D9A-80AC5809BB3A}" = dir=out | name=fresh paint | "{D05D7A67-E80C-4F05-AF02-439E4566BBC8}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{D6EC6DBE-5AD5-40B3-A16F-C120C25D5D1A}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{D7E89D3A-4AAD-4931-B64D-66A149FE6386}" = protocol=17 | dir=in | app=c:\program files\common files\mcafee\mcsvchost\mcsvhost.exe | "{DF8F4043-1E06-44BD-8DA3-9D1E756293F0}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{E60834A9-0448-4F04-8030-51A826628E6E}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{E7985E1D-C36F-4787-80A8-6350D07E9266}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | "{E83EA5E6-6AA7-41E8-8418-AFE8D8DFB8D2}" = dir=out | name=@{microsoft.reader_6.2.9200.20523_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{EB578212-D70B-44E7-AA0A-1FA3E1F18618}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{F267D647-E064-45D1-B478-5521F72D50FA}" = protocol=17 | dir=in | app=c:\users\session\appdata\roaming\gamecenter\gamecenter.exe | "{F57822A1-C62F-4968-B00C-D69089F42CAC}" = dir=out | name=microsoft solitaire collection | "{FB4A981D-335E-47A7-B717-78B8339CAD45}" = protocol=6 | dir=in | app=c:\program files (x86)\goforfiles\goforfilesdl.exe | "{FD52DF0E-B3D2-4BF9-81FF-DCDD27838241}" = dir=in | name=@{microsoft.reader_6.2.9200.20523_x64__8wekyb3d8bbwe?ms-resource://microsoft.reader/resources/shortdisplayname} | "{FDCF0B27-0C0D-410F-9211-492527A645B7}" = dir=out | name=wordament | "TCP Query User{0C8AFFDB-9161-49BB-A596-AE668BCE6BF5}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "TCP Query User{11D88C63-277B-4FD0-8A7B-FAA15DB71495}C:\users\session\appdata\roaming\cacaoweb\cacaoweb.exe" = protocol=6 | dir=in | app=c:\users\session\appdata\roaming\cacaoweb\cacaoweb.exe | "TCP Query User{5FAF3B8F-330E-4340-96B4-2566DC0AEB78}C:\users\session\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\session\appdata\roaming\spotify\spotify.exe | "TCP Query User{92FF0BA7-4F5A-4407-A9F3-70EB0C3C406D}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe" = protocol=6 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "TCP Query User{C03F7EE0-9A66-414C-82ED-F9A0C82D829C}C:\users\session\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\session\appdata\roaming\spotify\spotify.exe | "TCP Query User{F5A347EC-C0D9-4F13-AA46-401085D4E417}C:\program files (x86)\utorrent\utorrent.exe" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "UDP Query User{053AAC1C-4EA6-478F-B66A-23C724FA72A1}C:\users\session\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\session\appdata\roaming\spotify\spotify.exe | "UDP Query User{2B286664-1609-4BF9-8955-882DBB16A379}C:\users\session\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\session\appdata\roaming\spotify\spotify.exe | "UDP Query User{43106BBC-9FD1-46BC-A8BF-70DD5EC204E4}C:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe" = protocol=17 | dir=in | app=c:\users\public\sony online entertainment\installed games\planetside 2 psg\planetside2.exe | "UDP Query User{70C4D6D3-C056-4D61-B699-0A8864A74D9B}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "UDP Query User{91826CD5-96FF-46CD-B8F0-ED53234770A8}C:\program files (x86)\utorrent\utorrent.exe" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "UDP Query User{943EA4D0-8E46-493C-9C56-D18C8AF61B97}C:\users\session\appdata\roaming\cacaoweb\cacaoweb.exe" = protocol=17 | dir=in | app=c:\users\session\appdata\roaming\cacaoweb\cacaoweb.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0225AD21-F3E2-4916-BFF3-65D3F9052582}" = iTunes "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{26A24AE4-039D-4CA4-87B4-2F86417010FF}" = Java 7 Update 10 (64-bit) "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid "{E9FA781F-3E80-4399-825A-AD3E11C28C77}" = MSVCRT110_amd64 "{EF79C448-6946-4D71-8134-03407888C054}" = Shared C Run-time for x64 "{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}" = Intel® Trusted Connect Service Client "BitDefender Gonzales" = Bitdefender Antivirus Essential "GIMP-2_is1" = GIMP 2.8.2 "WinRAR archiver" = WinRAR 4.20 (64-bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0454BB9A-2A7A-4214-BDFF-937F7A711A44}" = Windows Live Communications Platform "{0969AF05-4FF6-4C00-9406-43599238DE0D}" = ASUS Splendid Video Enhancement Technology "{0ABBF310-94E4-4AE8-A6BD-10345A3F6439}" = Google Drive "{1798D459-6B8B-474B-868D-1229EADA3B95}" = Adobe AIR "{1845470B-EB14-4ABC-835B-E36C693DC07D}" = Skype™ 6.0 "{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3 "{24554447-718C-4EE5-A376-0000014A88D8}" = QuickShare "{26A24AE4-039D-4CA4-87B4-2F83217013FF}" = Java 7 Update 13 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros Client Installation Program "{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}" = Apple Application Support "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{4CCBD1F4-CEEC-452A-9CB8-46564B501315}" = Windows Live UX Platform "{58172D66-2F69-4215-9AEC-ED8196023736}" = ASUS Tutor "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}" = Windows Live PIMT Platform "{6B966A40-8DF1-11E1-931A-F04DA23A5C58}" = Vegas Pro 11.0 "{6F545E5E-4595-11E2-93B6-B8AC6F97B88E}" = Google Earth "{70CB6C40-8DF1-11E1-BDCF-F04DA23A5C58}" = MSVCRT Redists "{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{7DA1C06F-C913-46C7-8A0F-DA2CBA17EA1D}" = OpenOffice.org 3.4.1 "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}" = ASUS Instant Connect "{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}" = Windows Live SOXE Definitions "{8AAEB5A5-A397-46B6-8AF3-B6DC790C4E48}" = Windows Live Messenger "{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}" = Windows Live "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}" = MSVCRT110 "{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash "{907B4640-266B-4A21-92FB-CD1A86CD0F63}" = RollerCoaster Tycoon® 3 "{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}" = Windows Live UX Platform Language Pack "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}" = ASUS USB Charger Plus "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package "{AC76BA86-7AD7-1036-7B44-AB0000000001}" = Adobe Reader XI (11.0.02) - Français "{AF0CE7C0-A3E4-4D73-988B-B29187EC6E9A}" = QuickTime "{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader "{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}" = Windows Live Installer "{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}" = Windows Live Photo Common "{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = ASUSDVD "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F2235E5E-7881-4293-9B6F-04B2609FBFF0}" = Windows Live Messenger "{F54030F3-14B6-432D-9361-78DCB1473920}" = Photo Common "{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) SDK for OpenCL - CPU Only Runtime Package "{FE7C0B3D-50B9-4951-BE78-A321CBF86552}" = Windows Live SOXE "Adobe AIR" = Adobe AIR "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "ASIO4ALL" = ASIO4ALL "Asus Vibe2.0" = AsusVibe2.0 "ASUS WebStorage" = ASUS WebStorage Sync Agent "DAEMON Tools Lite" = DAEMON Tools Lite "FL Studio 10" = FL Studio 10 "Google Chrome" = Google Chrome "IL Download Manager" = IL Download Manager "InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}" = ASUSDVD "pcsx2-r5350" = PCSX2 - Playstation 2 Emulator "Picasa 3" = Picasa 3 "uTorrent" = µTorrent "VLC media player" = VLC media player 2.0.5 "WinLiveSuite" = Windows Live "ZHPDiag_is1" = ZHPDiag 2013 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2840223088-220564917-695180253-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "CopyTrans Suite" = CopyTrans Suite désinstallation uniquement "GameCenter" = GameCenter "GoforFiles" = GoforFiles "PhotoFiltre 7" = PhotoFiltre 7 "SOE-C:/Users/Public/Sony Online Entertainment/Installed Games/PlanetSide 2 PSG" = gamelauncher-ps2-psg "SOE-C:/Users/Session/AppData/Local/Sony Online Entertainment/ApplicationUpdater" = applicationupdater "soe-PlanetSide 2 PSG" = PlanetSide 2 "soe-PlanetSide 2 Test" = PlanetSide 2 Test "Spotify" = Spotify [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 22-04-13 09:09:42 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 58416203 Error - 22-04-13 09:09:43 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 22-04-13 09:09:43 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 58417718 Error - 22-04-13 09:09:43 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 58417718 Error - 22-04-13 09:09:45 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 22-04-13 09:09:45 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 58419187 Error - 22-04-13 09:09:45 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 58419187 Error - 22-04-13 09:09:46 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 22-04-13 09:09:46 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 58420234 Error - 22-04-13 09:09:46 | Computer Name = Admin | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 58420234 [ System Events ] Error - 21-03-13 18:00:39 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 18:58:53 le ?21/?03/?2013 n’était pas prévu. Error - 23-03-13 12:48:20 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 17:40:37 le ?23/?03/?2013 n’était pas prévu. Error - 23-03-13 13:46:23 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 17:49:47 le ?23/?03/?2013 n’était pas prévu. Error - 24-03-13 14:51:51 | Computer Name = Admin | Source = Service Control Manager | ID = 7031 Description = Le service Apple Mobile Device s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 24-03-13 14:52:07 | Computer Name = Admin | Source = Service Control Manager | ID = 7031 Description = Le service Apple Mobile Device s’est terminé de manière inattendue. Ceci s’est produit 2 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 24-03-13 14:53:07 | Computer Name = Admin | Source = Service Control Manager | ID = 7032 Description = Le Gestionnaire de services de contrôle a essayé d’entreprendre une action corrective (Redémarrer le service) après la fin inattendue du service Apple Mobile Device, mais cette action a échoué en raison de l’erreur suivante : %%1056 Error - 31-03-13 16:07:39 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 22:00:17 le ?31/?03/?2013 n’était pas prévu. Error - 02-04-13 07:51:08 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 01:31:40 le ?02/?04/?2013 n’était pas prévu. Error - 02-04-13 09:18:06 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 15:06:34 le ?02/?04/?2013 n’était pas prévu. Error - 10-04-13 05:53:27 | Computer Name = Admin | Source = EventLog | ID = 6008 Description = L’arrêt système précédant à 11:41:24 le ?10/?04/?2013 n’était pas prévu. < End of report >