OTL Extras logfile created on: 16/09/2013 11:17:48 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\siemens\Downloads 64bit- Ultimate Edition (Version = 6.1.7600) - Type = NTWorkstation Internet Explorer (Version = 8.0.7600.16385) Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy 1,99 Gb Total Physical Memory | 0,88 Gb Available Physical Memory | 44,25% Memory free 3,98 Gb Paging File | 2,22 Gb Available in Paging File | 55,88% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 149,05 Gb Total Space | 4,42 Gb Free Space | 2,97% Space Free | Partition Type: NTFS Drive D: | 612,13 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Computer Name: SIEMENS-PC | User Name: siemens | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 180 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2163570604-2707203486-3766828702-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\siemens\AppData\Roaming\File Scout\filescout.exe" /open "%1" Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- "C:\Users\siemens\AppData\Roaming\File Scout\filescout.exe" /open "%1" Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0BA76EEF-CBA6-4E02-B219-F6EC60FC541A}" = lport=138 | protocol=17 | dir=in | app=system | "{146AEA5A-7644-4403-9D1C-BFF7A0D20982}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{170CFBFD-CC0B-44EE-888A-969E5C1C2244}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{1D865F1F-6F78-4F80-A6E5-E2846CE76E5C}" = rport=138 | protocol=17 | dir=out | app=system | "{2D9471EC-A570-49EC-8CD0-8044271DCA95}" = lport=67 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{32285191-67F9-44EE-9966-9EEE5B9A869B}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{32D60F01-F055-4A16-BD5E-832386A934A2}" = rport=2869 | protocol=6 | dir=out | app=system | "{3626E2CE-9ED8-4511-83A8-59FA2F2C151D}" = lport=2869 | protocol=6 | dir=in | app=system | "{37F341BB-2CF0-4A0B-9D93-C46102E2F975}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{4A75F2F3-8EFF-4A86-9B2C-AFC80EAA71C0}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{55BF344D-9316-4FD4-BCB7-455B79ECBEAC}" = rport=139 | protocol=6 | dir=out | app=system | "{649F5E58-923C-4FB1-9CD8-3725E5735BE3}" = lport=445 | protocol=6 | dir=in | app=system | "{65C7003E-A1E6-44D5-BF0A-C72695A15FAF}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{72BDCCF2-6160-450A-8E63-EC2EBB17C07F}" = lport=68 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{883172B1-FA36-43E7-B192-6E27A9773BA2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{B45DDA3B-EB0C-457F-BD59-5A4EB9817746}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | "{BF30A2FF-2B92-4A2A-8FA4-0C9C2EB777C2}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{BFC89E28-D610-49F9-9496-8F305A1218DF}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{C0101CB8-0ADE-4C9D-8305-1679ECBACC46}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C08AAEDF-4381-409B-9EF7-FF04FA528101}" = rport=445 | protocol=6 | dir=out | app=system | "{CAFBC970-34AF-44A4-9F2C-5E1DAEA6B34F}" = lport=547 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{CF0266AB-3D27-42BC-8B98-4C607DC88480}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{D21CA130-9356-4D65-85CC-FEC78444EC18}" = rport=137 | protocol=17 | dir=out | app=system | "{D227AFD7-77AD-4404-A5C5-D644D4CF8424}" = lport=53 | protocol=17 | dir=in | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{D334BF7E-9276-4408-9435-4FB5CF7253E3}" = lport=48113 | protocol=17 | dir=in | name=maconfig_udp | "{E0FD4934-DAFF-4483-81C0-BB7769D1400E}" = lport=137 | protocol=17 | dir=in | app=system | "{E2076EAA-03AA-43F8-BA0F-9A4E875C9EFF}" = lport=48113 | protocol=6 | dir=in | name=maconfig_tcp | "{E289B74A-7387-44E3-8233-53755B5D7705}" = lport=139 | protocol=6 | dir=in | app=system | "{E6ED84D0-3134-432F-AE02-73B6C34CBDCC}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | "{EEBFB1D0-641F-4D8C-B9A2-5DC560F292B3}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{03DF75BD-C5EA-426B-8ACA-A88B75BDDDD3}" = dir=in | app=c:\users\siemens\appdata\local\torch\plugins\hola\hola_plugin_x64.exe | "{16A12340-C057-474D-9D90-74032F7B8498}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{18F240DB-B9C8-48BC-9447-B047059772EB}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{2206F7F0-2CB7-400A-8FAF-AE609C61ECE0}" = dir=in | app=c:\users\siemens\appdata\local\torch\plugins\hola\hola_plugin.exe | "{226410E4-409B-42F5-91A3-DC5761FFDCBB}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{2C717AB3-FD71-4DC0-AD7C-BB6A380D16E2}" = protocol=17 | dir=in | app=c:\program files\ma-config.com\x64\maconfservice.exe | "{390FC10B-A1EB-4AAC-A1BC-B8FFBFF619E9}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{39D8BF64-8C24-46DC-AFBE-0AA50A9C33CA}" = protocol=58 | dir=in | name=@hnetcfg.dll,-148 | "{409C0CB4-491B-4988-8AB5-58BA8AC83740}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{4ECE6E6D-403F-4607-9045-4AF604E0EE16}" = protocol=17 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{5D18C951-A492-4326-8298-0EE3B8F6D4A3}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{6E7DF9D9-1D3E-4FDF-B441-1EF210BA72BC}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{71C740AF-F11E-41E0-9AFB-6DD886ACEAAD}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | "{83FD198B-245B-4F1B-8B5A-CC6749694686}" = dir=in | app=c:\users\siemens\appdata\local\torch\plugins\torrent\torchtorrent.exe | "{9307FF9F-706F-44E8-B9A0-7C817C9D54E0}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{96FE9D1E-B070-47B1-98B3-83CB452170E6}" = protocol=6 | dir=in | app=c:\program files (x86)\utorrent\utorrent.exe | "{B45918D0-BE7B-4208-8E98-641424342D9E}" = dir=out | svc=sharedaccess | app=%systemroot%\system32\svchost.exe | "{C8D479C9-5FD0-4FD6-9ADB-47A2E4E48B30}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{CE850839-9EB6-41E6-8AB5-7D6B874E500A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{D0E57FC3-5E66-4867-8F07-0B5CB5F2B945}" = protocol=6 | dir=in | app=c:\program files\ma-config.com\x64\maconfservice.exe | "{ECA9D7B0-42FB-4BBE-BFA1-184942C287B6}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | "TCP Query User{11A83E36-9EA9-4F5F-8ACB-F8F4C4D6C884}C:\program files (x86)\microsoft games\age of empires ii\empires2 (2).exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\empires2 (2).exe | "TCP Query User{2BB62222-F73B-4B8A-9AB8-C0A6B04CA87B}C:\program files (x86)\jdownloader\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\jdownloader\jre\bin\javaw.exe | "TCP Query User{47A4EED8-839A-4EA5-997C-867C8ADE8F41}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\empires2.exe | "TCP Query User{5D8B343E-C192-4843-B4CD-36CC72CFB10A}C:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe | "TCP Query User{7E36D8B1-2548-408D-B0C4-8DB83646DD8C}C:\program files (x86)\infogrames interactive\civilization iii\conquests\civ3conquests (2).exe" = protocol=6 | dir=in | app=c:\program files (x86)\infogrames interactive\civilization iii\conquests\civ3conquests (2).exe | "TCP Query User{806672E4-2C49-4276-96CC-5E844130F905}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1 (2).exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1 (2).exe | "TCP Query User{91778865-6D97-4438-9A40-85FFBB54370F}C:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe | "TCP Query User{A87DF8BD-5FF4-426F-BBE9-B5E204E435FD}C:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=6 | dir=in | app=c:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe | "TCP Query User{B63818F4-ED79-49DB-895F-70F01CC18AC3}C:\program files (x86)\jdownloader\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\jdownloader\jre\bin\javaw.exe | "TCP Query User{BE3FE639-E773-43FE-84FE-2ED4B782C873}C:\users\siemens\desktop\stronghold crusader\stronghold crusader.exe" = protocol=6 | dir=in | app=c:\users\siemens\desktop\stronghold crusader\stronghold crusader.exe | "TCP Query User{BF4DC675-90DE-431D-BBCE-C9F3C0A214B5}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | "TCP Query User{C098DA07-F98A-4760-A800-1E02CBDA2145}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "TCP Query User{C40AB937-0E98-4ECF-8E67-2362FBBF00B5}C:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe" = protocol=6 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe | "TCP Query User{EE1E80A5-BADA-4C2F-9818-2B4AF0E133EC}C:\windows\syswow64\dplaysvr.exe" = protocol=6 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{01ABD7BB-1C6F-4161-AFB0-FAD795D494C0}C:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe | "UDP Query User{0FF52903-4DC0-4C80-8DB6-49E65D2A821B}C:\program files (x86)\microsoft games\age of empires ii\empires2 (2).exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\empires2 (2).exe | "UDP Query User{1932630E-DCDD-4657-97CA-F7417BFA8731}C:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1 (2).exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1\age2_x1 (2).exe | "UDP Query User{258AF6CA-9F4B-4250-8104-1A0B27854408}C:\program files (x86)\jdownloader\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\jdownloader\jre\bin\javaw.exe | "UDP Query User{4A11BDC3-D4A7-4266-97DC-7683C851108F}C:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\age2_x1.exe | "UDP Query User{4E2DFCBE-1F2B-40FA-9BA8-F733783CD0D7}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{65077EA2-5002-4C74-AAD0-FC8654D9DA23}C:\program files (x86)\infogrames interactive\civilization iii\conquests\civ3conquests (2).exe" = protocol=17 | dir=in | app=c:\program files (x86)\infogrames interactive\civilization iii\conquests\civ3conquests (2).exe | "UDP Query User{6912CFDA-A8C4-43EB-BF28-2A74F0EF2974}C:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe | "UDP Query User{70020672-BDB2-4709-9EEB-AFC8660AB83D}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe | "UDP Query User{701F07A3-76C6-4BE5-8FD6-741FBCA87271}C:\windows\syswow64\dplaysvr.exe" = protocol=17 | dir=in | app=c:\windows\syswow64\dplaysvr.exe | "UDP Query User{C89457B2-FB3B-43ED-B209-80874BF20A68}C:\users\siemens\desktop\stronghold crusader\stronghold crusader.exe" = protocol=17 | dir=in | app=c:\users\siemens\desktop\stronghold crusader\stronghold crusader.exe | "UDP Query User{E0B0D1F1-A543-4B25-A0F5-71269DF57DDB}C:\program files (x86)\microsoft games\age of empires ii\empires2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\microsoft games\age of empires ii\empires2.exe | "UDP Query User{E21AA1B8-0153-4499-82F9-35701F86AF43}C:\program files (x86)\jdownloader\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\jdownloader\jre\bin\javaw.exe | "UDP Query User{FAA5658C-2257-48BA-AC6A-38B9BA761453}C:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe" = protocol=17 | dir=in | app=c:\users\siemens\appdata\roaming\gameranger\gameranger\gameranger.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support "{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour "{704C0303-D20C-45AF-BD2B-556EAF31BE09}" = iCloud "{7FCDABCC-1A1E-4D61-909D-BA9495172774}" = iTunes "{E4306BC6-3807-4239-8A5B-822AEFE2F7EB}" = Ma-Config.com (64 bits) "HDMI" = Intel(R) Graphics Media Accelerator Driver "SiS163u" = Fujitsu Siemens Computers WLAN 802.11b/g (SiS163u) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0AD84416-63A4-4CF3-BDDF-8FA866711FB0}" = Civilization III "{1EAC1D02-C6AC-4FA6-9A44-96258C37C812EU}_is1" = World of Tanks "{2F90A789-DD1E-41CE-BFCA-BD78213BABC7}" = OpenOffice.org 3.4 "{31E2413D-8AA1-43EC-8B8D-77B65ADA4611}" = Civilization III v1.29f "{4C2BF3B9-7E8A-49DE-B662-3656FE60BB01}" = Civ3 Conquests v1.22 Full "{50C78780-1A54-4A5C-B3A7-FF828C62C5C2}" = Steinberg Cubase LE 5 "{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}" = Apple Application Support "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{AC76BA86-7AD7-1036-7B44-AA1000000001}" = Adobe Reader X (10.1.4) - Français "{B5E66589-11D4-4DE5-90F3-1AD5E98ABD3E}" = Civilization III - Play the World v1.27F "{C04D5974-F528-4347-A494-EAF56124CC1A}" = Steinberg HALionOne Essential Set "{D0846526-66DD-4DC9-A02C-98F9A2806812}" = Launch Manager V1.4.9 "{E70E7159-93B1-470D-9FBD-D8E9EF34B538}" = Steinberg HALionOne "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F31BC49F-AB7B-4A53-A399-EB7331B585BC}" = Civilization III: Conquests "5513-1208-7298-9440" = JDownloader 0.9 "Adobe Acrobat 5.0" = Adobe Acrobat 5.0 "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "Age of Empires 2.0" = Microsoft Age of Empires II "Age of Empires II: The Conquerors Expansion 1.0" = Microsoft Age of Empires II: The Conquerors Expansion "Avira AntiVir Desktop" = Avira Free Antivirus "DAEMON Tools Lite" = DAEMON Tools Lite "eLicenser Control" = eLicenser Control "Google Chrome" = Google Chrome "Prodipe Virtual Expander" = Prodipe Virtual Expander "uTorrent" = µTorrent "VLC media player" = VLC media player 2.0.4 "WinRAR archiver" = WinRAR 4.20 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2163570604-2707203486-3766828702-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "GameRanger" = GameRanger "Torch" = Torch [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 14/09/2013 13:12:38 | Computer Name = siemens-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 9126 Error - 14/09/2013 13:12:39 | Computer Name = siemens-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: Continuously busy for more than a second Error - 14/09/2013 13:12:39 | Computer Name = siemens-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledEvent 10265 Error - 14/09/2013 13:12:39 | Computer Name = siemens-PC | Source = Bonjour Service | ID = 100 Description = Task Scheduling Error: m->NextScheduledSPRetry 10265 Error - 14/09/2013 13:13:15 | Computer Name = siemens-PC | Source = Application Hang | ID = 1002 Description = Le programme javaw.exe version 7.0.70.10 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1600 Heure de début : 01ceb1662cd93542 Heure de fin : 37 Chemin d’accès de l’application : C:\Program Files (x86)\JDownloader\jre\bin\javaw.exe ID de rapport : Error - 14/09/2013 14:34:20 | Computer Name = siemens-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante age2_x1.exe, version : 0.7.26.809, horodatage : 0x3b7433ec Nom du module défaillant : ntdll.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdb3b Code d’exception : 0xc0000005 Décalage d’erreur : 0x0003c699 ID du processus défaillant : 0x1314 Heure de début de l’application défaillante : 0x01ceb178e19a7569 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Microsoft Games\Age of Empires II\age2_x1.exe Chemin d’accès du module défaillant: C:\Windows\SysWOW64\ntdll.dll ID de rapport : 4487e4a6-1d6c-11e3-8789-00225f03d209 Error - 15/09/2013 05:01:03 | Computer Name = siemens-PC | Source = Application Hang | ID = 1002 Description = Le programme Cubase LE 5.exe version 5.1.1.120 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : f20 Heure de début : 01ceb1e826cf0d11 Heure de fin : 17992 Chemin d’accès de l’application : C:\Program Files (x86)\Steinberg\Cubase LE 5\Cubase LE 5.exe ID de rapport : 0cae3a60-1de5-11e3-8789-00225f03d209 Error - 15/09/2013 10:37:44 | Computer Name = siemens-PC | Source = Application Hang | ID = 1002 Description = Le programme Explorer.EXE version 6.1.7600.16385 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 544 Heure de début : 01ceafd4256a84ea Heure de fin : 10078 Chemin d’accès de l’application : C:\Windows\Explorer.EXE ID de rapport : Error - 15/09/2013 11:55:33 | Computer Name = siemens-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante age2_x1.exe, version : 0.7.26.809, horodatage : 0x3b7433ec Nom du module défaillant : ntdll.dll, version : 6.1.7600.16385, horodatage : 0x4a5bdb3b Code d’exception : 0xc0000005 Décalage d’erreur : 0x0003c699 ID du processus défaillant : 0x152c Heure de début de l’application défaillante : 0x01ceb22bf633f18a Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Microsoft Games\Age of Empires II\age2_x1.exe Chemin d’accès du module défaillant: C:\Windows\SysWOW64\ntdll.dll ID de rapport : 4051b246-1e1f-11e3-8789-00225f03d209 Error - 15/09/2013 13:55:18 | Computer Name = siemens-PC | Source = Application Hang | ID = 1002 Description = Le programme Cubase LE 5.exe version 5.1.1.120 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 32c Heure de début : 01ceb234fef053c4 Heure de fin : 131 Chemin d’accès de l’application : C:\Program Files (x86)\Steinberg\Cubase LE 5\Cubase LE 5.exe ID de rapport : f4c6dac8-1e2f-11e3-8789-00225f03d209 Error - 15/09/2013 20:56:45 | Computer Name = siemens-PC | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante BitGuard.exe, version : 2.6.1673.238, horodatage : 0x523328e1 Nom du module défaillant : BitGuard.exe, version : 2.6.1673.238, horodatage : 0x523328e1 Code d’exception : 0x40000015 Décalage d’erreur : 0x000f3e20 ID du processus défaillant : 0x1690 Heure de début de l’application défaillante : 0x01ceb2779d175d57 Chemin d’accès de l’application défaillante : C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe Chemin d’accès du module défaillant: C:\ProgramData\BitGuard\2.6.1673.238\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BitGuard.exe ID de rapport : daec5f9c-1e6a-11e3-8789-00225f03d209 [ System Events ] Error - 14/08/2013 18:47:31 | Computer Name = siemens-PC | Source = volsnap | ID = 393251 Description = Les clichés instantanés du volume C: ont été annulés car le cliché instantané du volume n’a pas pu s’agrandir. Error - 15/08/2013 09:06:12 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = Error - 15/08/2013 15:18:18 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = Error - 15/08/2013 15:18:33 | Computer Name = siemens-PC | Source = Server | ID = 2505 Description = Le serveur n’a pas pu se lier au transport \Device\NetBT_Tcpip_{6ECA926B-75AE-4A69-915D-382D8D7B1597} car un autre ordinateur du réseau porte le même nom. Le serveur n’a pas pu démarrer. Error - 15/08/2013 15:18:33 | Computer Name = siemens-PC | Source = NetBT | ID = 4321 Description = Le nom "SIEMENS-PC :20" n’a pas pu être enregistré sur l’interface avec l’adresse IP 192.168.0.24. L’ordinateur avec l’adresse IP 169.254.238.153 n’a pas permis que le nom soit réclamé par cet ordinateur. Error - 15/08/2013 15:18:34 | Computer Name = siemens-PC | Source = NetBT | ID = 4321 Description = Le nom "SIEMENS-PC :0" n’a pas pu être enregistré sur l’interface avec l’adresse IP 192.168.0.24. L’ordinateur avec l’adresse IP 169.254.238.153 n’a pas permis que le nom soit réclamé par cet ordinateur. Error - 16/08/2013 12:04:52 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = Error - 16/08/2013 12:04:55 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = Error - 16/08/2013 12:05:06 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = Error - 16/08/2013 12:32:00 | Computer Name = siemens-PC | Source = ipnathlp | ID = 31004 Description = < End of report >