OTL Extras logfile created on: 25/02/2014 19:16:25 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\windows\Desktop 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16518) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 3,60 Gb Total Physical Memory | 0,83 Gb Available Physical Memory | 23,10% Memory free 7,20 Gb Paging File | 3,39 Gb Available in Paging File | 47,12% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 275,73 Gb Total Space | 188,84 Gb Free Space | 68,49% Space Free | Partition Type: NTFS Drive D: | 22,07 Gb Total Space | 2,35 Gb Free Space | 10,65% Space Free | Partition Type: NTFS Drive E: | 99,00 Mb Total Space | 87,44 Mb Free Space | 88,33% Space Free | Partition Type: FAT32 Drive F: | 59,93 Gb Total Space | 59,29 Gb Free Space | 98,93% Space Free | Partition Type: FAT32 Computer Name: WINDOWS-HP | User Name: windows | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (All) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .chm[@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation) .cpl[@ = cplfile] -- C:\Windows\SysNative\control.exe (Microsoft Corporation) .hlp[@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .hta[@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation) .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .inf[@ = inffile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation) .ini[@ = inifile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) .js[@ = JSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) .jse[@ = JSEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) .reg [@ = regfile] -- regedit.exe "%1" .txt[@ = txtfile] -- C:\Windows\SysNative\NOTEPAD.EXE (Microsoft Corporation) .vbe[@ = VBEFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) .vbs[@ = VBSFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) .wsf[@ = WSFFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) .wsh[@ = WSHFile] -- C:\Windows\SysNative\WScript.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .bat [@ = batfile] -- "%1" %* .chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation) .cmd [@ = cmdfile] -- "%1" %* .com [@ = comfile] -- "%1" %* .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .exe [@ = exefile] -- "%1" %* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .hta [@ = htafile] -- C:\Windows\SysWOW64\mshta.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .inf [@ = inffile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation) .ini [@ = inifile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation) .url [@ = InternetShortcut] -- C:\Windows\SysWow64\rundll32.exe (Microsoft Corporation) .js [@ = JSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) .jse [@ = JSEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) .pif [@ = piffile] -- "%1" %* .reg [@ = regfile] -- regedit.exe "%1" .scr [@ = scrfile] -- "%1" /S .txt [@ = txtfile] -- C:\Windows\SysWow64\NOTEPAD.EXE (Microsoft Corporation) .vbe [@ = VBEFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) .vbs [@ = VBSFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) .wsf [@ = WSFFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) .wsh [@ = WSHFile] -- C:\Windows\SysWow64\WScript.exe (Microsoft Corporation) [HKEY_USERS\S-1-5-21-171416947-3469067135-3502206696-1000\SOFTWARE\Classes\] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation) regfile [open] -- regedit.exe "%1" regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\Windows\SysWOW64\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation) regfile [open] -- regedit.exe "%1" regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [Browse with FastStone] -- "C:\Program Files (x86)\FastStone Image Viewer\FSViewer.exe" "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{1B8C8781-E805-4B9D-975D-3E623AA25A0D}" = lport=2869 | protocol=6 | dir=in | app=system | "{22330208-5A14-4E57-B851-8660FEED1991}" = rport=137 | protocol=17 | dir=out | app=system | "{2D636049-8937-4B0E-A2FE-58D5EEA75D31}" = lport=138 | protocol=17 | dir=in | app=system | "{31990D65-15A4-4ECE-8904-7055B51182C1}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe | "{36DA0169-0C80-478D-AA05-45838EF024F6}" = lport=137 | protocol=17 | dir=in | app=system | "{47E65B4D-A2C1-4894-8730-E056FAD17DE2}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 | "{5B19CEF1-676C-4071-AE75-B67A79E24266}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | "{6567537F-1F3D-4408-80E3-56FDB1D8575F}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | "{6FAA488F-CD1F-447B-8914-BE9E8ED3E2A4}" = lport=139 | protocol=6 | dir=in | app=system | "{70E5F3FE-6E14-4A1F-969E-44C4ADEC22EA}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{7BE25360-83E9-4786-8E5B-A401B823BA57}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{83832866-4AB9-41A1-ABFA-52B8C6443EFF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8AE2183E-A1AE-4752-9248-D454B30E631B}" = lport=445 | protocol=6 | dir=in | app=system | "{94F5C10B-860C-47A9-AC2E-8F0DD17E7FEB}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | "{9521C7A8-8F13-4DD3-B2DA-453F8B4D3A72}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | "{970B425B-09CD-44FE-9609-6E9CEA145B80}" = rport=139 | protocol=6 | dir=out | app=system | "{9F7E2D36-78D1-43A7-A238-D03D9CE9B3AE}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{A4B1D64D-C62B-4B4B-BCD1-206711A620DB}" = rport=445 | protocol=6 | dir=out | app=system | "{A92B3D1D-4EF5-4E65-A018-3CA1731CFD44}" = rport=10243 | protocol=6 | dir=out | app=system | "{A9E64A9B-C42D-44D2-B69C-784D7C79A405}" = rport=138 | protocol=17 | dir=out | app=system | "{B886CCEE-FD49-4250-9CC2-28CBC53E28E0}" = lport=10243 | protocol=6 | dir=in | app=system | "{CED39760-15DA-477D-B8CA-7F5DC98D92B8}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | "{D8EC4330-F53E-4F9A-8BFF-5F1AEA6637B4}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{01FD934D-1A77-4428-94CA-7762841A4ABA}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{0763B338-C2B5-4F56-87F9-BAB82C781AAA}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | "{15678BE3-71EB-4B28-A284-577A86D7A3AC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 | "{186FC312-72B4-46A7-A3D1-883EF0C28C1C}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{3285FEBC-05F9-4805-8084-F5DE0E9ADB72}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{46BC46B3-E1AF-4969-949B-FACF24A98F49}" = protocol=6 | dir=in | app=c:\programdata\esafe\egdpsvc.exe | "{4CE87702-AB0C-40B7-A33E-2F5955A3D093}" = protocol=17 | dir=in | app=c:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe | "{573F1924-A910-4050-9D1D-BC0A4FF172C0}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "{575F1270-12CA-47B0-88E0-A400A47B1A4D}" = protocol=6 | dir=in | app=c:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe | "{64546D51-2862-4AF8-B4F1-66E2BF07E50F}" = protocol=6 | dir=out | app=system | "{6C0E20DC-F79A-4B86-9474-3FA379F38A2D}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{6E3F4978-51CE-4F3B-B872-45D43FD2DEEA}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 | "{723BF280-2FC4-493E-A449-E0D1E233E1FB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | "{77629287-0425-4F51-A4B3-D94CEF780559}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | "{7E98C985-E16B-4F90-A557-5F791B6A3C98}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{8771D0CB-F3B8-4323-B505-946FEC197882}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{8C9743B9-E813-428B-8898-D2153986ECB7}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | "{8EEF60CD-4089-466E-B3FC-2225207B4501}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 | "{932C4605-2D35-469F-BDC7-4B0BB3242057}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{96379398-C3A7-45E9-9C49-5474C1346DBB}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | "{96EE8284-DE2F-47E4-83B6-69EB914EB691}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | "{AD1906A7-BD92-4A6F-B4A3-73107FF4893A}" = dir=in | app=c:\users\windows\appdata\local\facebook\video\skype\facebookvideocalling.exe | "{B00C34B4-96AB-4145-95B7-25C96F0EAF56}" = dir=in | app=c:\windows\system32\ezsharedsvchost.exe | "{B9918834-DE1E-452E-AA4F-995EA08F5220}" = dir=in | app=c:\program files (x86)\easybits for kids\ezdesktop.exe | "{BECBAA9B-90AF-4539-A85F-FDF4072EB6FC}" = protocol=17 | dir=in | app=c:\users\windows\appdata\roaming\utorrent\utorrent.exe | "{CC87B0B9-672E-4327-8AD9-03E4DC332131}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 | "{CE385D72-DE41-4E84-BA5D-DA23D8218954}" = protocol=6 | dir=in | app=c:\users\windows\appdata\roaming\utorrent\utorrent.exe | "{CFDB2F4A-0809-42B5-A4D7-FAD212EEE914}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | "{D2951597-F5DE-4712-908E-A9F1884FFCA4}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | "{D75710D9-F9A4-4551-ADC6-0AB844350ACA}" = dir=in | app=c:\program files (x86)\hewlett-packard\hp support framework\resources\hpwarrantycheck\hpdevicedetection3.exe | "{E5F54B48-C305-489F-9C11-8D61734129E5}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | "{E68ED7D9-8C05-4F3F-A4CF-27260D6BEE2D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | "TCP Query User{7D83EEDA-91B4-466C-97D8-670F8A664D09}C:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{2BF6C8C1-2182-47BF-84F9-01E0AEF64816}C:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\windows\appdata\roaming\dropbox\bin\dropbox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector "{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{4FE1FF66-7BEE-89FC-9408-BE6E6A2BA458}" = AMD Media Foundation Decoders "{503F672D-6C84-448A-8F8F-4BC35AC83441}" = AMD APP SDK Runtime "{5A847522-375C-4D05-BD3D-88C450CC047F}" = HP Launch Box "{5E015E15-F7AD-3379-523F-AD63C0CB9E71}" = AMD Steady Video Plug-In "{5E2CD4FB-4538-4831-8176-05D653C3E6D4}" = Windows Live Remote Service Resources "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources "{72221993-43B4-5BF9-65B6-D80A0CDBFD1C}" = ccc-utility64 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources "{8E34682C-8118-31F1-BC4C-98CD9675E1C2}" = Microsoft .NET Framework 4 Extended "{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting "{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}" = Broadcom Bluetooth Software "{B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}" = Windows Live Remote Client Resources "{CC4D56B7-6F18-470B-8734-ABCD75BCF4F1}" = HP Auto "{D4A03B11-C75C-F93B-60A3-C70D076F585C}" = AMD Catalyst Install Manager "{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter "{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 "{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client "{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service "{ED6CD3AC-616B-4B20-BCF3-6E637B92A5AD}" = HP Security Assistant "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "{F9E399CB-046F-45FD-A67F-CF399E2128E4}" = HP 3D DriveGuard "{F9E64F70-9BE4-4ECD-9B83-09E74CF5B6C3}" = AuthenTec TrueAPI 64-bit "Broadcom 802.11 Wireless LAN Adapter" = Broadcom 802.11 Wireless LAN Adapter "HitmanPro37" = HitmanPro 3.7 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Extended" = Microsoft .NET Framework 4 Extended "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack "{07FA4960-B038-49EB-891B-9F95930AA544}" = HP Customer Experience Enhancements "{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer "{0E08BAC8-845B-4327-8CDB-4B0F8C9857A5}_is1" = FLV Media Player version 1.3 "{11839888-8147-4870-ADB4-969EC7ACE70B}" = HP Documentation "{12CB9B90-573B-796D-CB4C-81407DE7BBE4}" = CCC Help Hungarian "{196BB40D-1578-3D01-B289-BEFC77A11A1E}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 "{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker "{1E12382F-BF29-E112-8C54-5783FE0E5F5D}" = CCC Help Korean "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update "{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions "{267DF4DE-5920-9999-0337-6BB12642B94B}" = Catalyst Control Center Localization All "{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger "{2C1D0986-B55D-B176-90DC-C1AB19429B14}" = CCC Help Thai "{2DA69C5B-59EB-1FAD-4F6C-3718FAE35E66}" = CCC Help Japanese "{2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App" = Update Installer for WildTangent Games App "{31BF9CD1-A904-43B5-A236-53E5E908AD0E}" = Catalyst Control Center - Branding "{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery "{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live "{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery "{3574D47D-B186-2310-4B3F-4A8038D1FC8A}" = CCC Help Czech "{3677D4D8-E5E0-49FC-B86E-06541CF00BBE}" = opensource "{37466041-8AAD-59F7-A87B-2FC41303104F}" = Catalyst Control Center InstallProxy "{3B9A92DA-6374-4872-B646-253F18624D5F}" = Windows Live Writer "{416895EF-0C17-D4D6-30B1-0ADE78299D10}" = CCC Help Spanish "{438363A8-F486-4C37-834C-4955773CB3D3}" = HP Setup "{47F460DA-D1BE-4D85-8DF2-AA1F31D3445F}" = OpenOffice 4.0.1 "{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live "{4F34A145-8CF3-400C-B5DB-2B1BF604304D}" = ESU for Microsoft Windows 7 SP1 "{53B17A98-5BF0-40BC-AAFF-850A357975AC}" = HP Quick Launch "{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack "{59F8C5AA-91BD-423D-BF05-09A80F39898F}" = HP CoolSense "{5ADFC9D6-D83A-4D02-9C54-F82781CE84F6}" = CCC Help Swedish "{5B50359A-3295-5B57-95CC-952B8F9079F4}" = CCC Help English "{5D975A4D-CCE6-50D2-4E73-370BF8D80FC7}" = CCC Help French "{612C34C7-5E90-47D8-9B5C-0F717DD82726}" = swMSM "{62687B11-58B5-4A18-9BC3-9DF4CE03F194}" = Windows Live Writer Resources "{656F78AC-66AF-9001-99B7-6BA0D9297D3D}" = CCC Help Danish "{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE "{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker "{6F340107-F9AA-47C6-B54C-C3A19F11553F}" = Hewlett-Packard ACLM.NET v1.2.2.3 "{70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp" = WildTangent Games App (HP Games) "{72187E24-0E4A-C7B2-27C0-6E2DD7D100B3}" = CCC Help Chinese Traditional "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{77E2145D-C1F1-DCA8-00D3-2FE49CE48CC8}" = CCC Help Finnish "{7E799992-5DA0-4A1A-9443-B1836B063FEC}" = HP Power Manager "{7F38B348-57B6-D6BF-C8FB-C1C4A0912EDC}" = AMD VISION Engine Control Center "{7FFCE298-0F46-C7B8-06E0-8C4FB8DD5549}" = CCC Help Norwegian "{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform "{841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}" = Windows Live Mesh "{880B5A98-B242-4B53-BD6F-41EA17495EAD}" = HP SimplePass PE "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{8B7B9A81-2700-E18C-CC5B-6AB58E38EFB4}" = CCC Help German "{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime "{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT "{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}" = Facebook Video Calling 2.0.0.447 "{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker "{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010 "{967EF190-6D63-D79B-174B-B3EDCFFD1A53}" = CCC Help Greek "{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader "{98D5A5FA-1AA3-4CBE-B26C-A737E20F8A6D}" = HP Software Framework "{9A82F0F3-825D-715D-176F-1FC6C9B0302A}" = CCC Help Polish "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail "{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}" = Windows Live Mail "{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh "{A13E62E1-9DB9-DDCE-2F2E-8CA1B15EA1AC}" = CCC Help Chinese Standard "{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.6 "{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer "{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer "{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger "{AC76BA86-7AD7-FFFF-7B44-AA0000000001}" = Adobe Reader X (10.1.8) MUI "{B66B3693-1F65-D204-A70A-BFE5E1C4BE98}" = Catalyst Control Center Graphics Previews Common "{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail "{C73B8B3D-57DA-950F-A345-02A000905ED0}" = CCC Help Italian "{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common "{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform "{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64 "{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common "{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform "{DBCD5E64-7379-4648-9444-8A6558DCB614}" = HP Recovery Manager "{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources "{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh "{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10 "{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}" = HP Support Assistant "{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}" = IDT Audio "{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger "{E7358A46-1C88-8542-F509-8228BDFC8D6C}" = CCC Help Russian "{ED1BD69A-07E3-418C-91F1-D856582581BF}" = HP On Screen Display "{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU] "{F64A2DC9-0DE6-67EA-02D6-DC5E421DBA7F}" = CCC Help Turkish "{FBCFC0C6-DAEB-9982-D460-A9A365932F1E}" = CCC Help Portuguese "{FDC9A236-720A-7D32-1B7C-034D9B2A3531}" = CCC Help Dutch "{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials "Adobe Flash Player ActiveX" = Adobe Flash Player 12 ActiveX "Adobe Flash Player Plugin" = Adobe Flash Player 12 Plugin "Adobe Shockwave Player" = Adobe Shockwave Player 11.6 "Avast" = avast! Free Antivirus "EasyBits Magic Desktop" = Magic Desktop "FastStone Image Viewer" = FastStone Image Viewer 4.8 "FileZilla Client" = FileZilla Client 3.7.3 "Google Chrome" = Google Chrome "InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}" = CyberLink YouCam "Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.75.0.1300 "Mozilla Firefox 23.0 (x86 en-US)" = Mozilla Firefox 23.0 (x86 en-US) "MozillaMaintenanceService" = Mozilla Maintenance Service "Usbfix" = UsbFix "WildTangent hp Master Uninstall" = HP Games "WinLiveSuite" = Windows Live Essentials "WTA-017eedb5-ebc9-4d4e-b8dd-d9d5782d9122" = Mahjongg Artifacts "WTA-068f4f4c-bb8d-40f7-a9ac-e42082414cf1" = Zuma's Revenge "WTA-106c8bc6-e1d0-486b-b0ad-a71fe2760940" = Farm Frenzy "WTA-16ac9124-e738-4d6b-8ba5-80d236e7a692" = Jewel Quest Solitaire 2 "WTA-386cc67c-cf42-4be9-906d-aaebceffd44b" = Plants vs. Zombies - Game of the Year "WTA-3af59da0-a929-449d-8c16-bd6e1aefbb0f" = Final Drive Fury "WTA-3bf9728e-cd37-4d3a-bee5-b89041dbd96e" = Fishdom (TM) 2 "WTA-41363594-07f0-4edb-a7a5-ce71e711258a" = Farmscapes "WTA-5409aeb9-37ae-4266-bb31-314c0e7ee449" = Cake Mania "WTA-6068e84c-0455-4c07-b82f-b45cba7afe59" = Jewel Quest II "WTA-697154f0-8ebf-403b-9f36-5558c4b449db" = Torchlight "WTA-74700019-1374-4546-ae64-2b6192dd2e6a" = Mystery of Mortlake Mansion "WTA-9fc3b01f-08ba-452c-8048-7a7b4c3cb8d3" = Chuzzle Deluxe "WTA-b40043bd-ebfd-4c69-9d49-9fa0b7470388" = Wedding Dash "WTA-b5242984-9be1-4f6d-a8f7-54f827300064" = Cradle of Rome 2 "WTA-baacc0fd-78b4-4b81-8190-dc30ef5e5e14" = Polar Bowler "WTA-cacb8a46-d609-4db8-bf45-cfa848f17234" = Insaniquarium Deluxe "WTA-cd1b0823-2cbf-442e-8b5d-83e64b9e08a7" = Virtual Villagers 4 - The Tree of Life "WTA-dc553d30-65ea-4845-a5d5-fee7d91d4fbf" = Virtual Families "WTA-df39c617-9da6-4b27-b3bc-26491c0e4a5b" = Bejeweled 3 "WTA-f6f06898-a8cd-4ef8-850e-9879a21be6af" = Jewel Match 3 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-171416947-3469067135-3502206696-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "UpdaterEX" = Extended Update "uTorrent" = µTorrent [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 26/01/2014 17:45:28 | Computer Name = windows-HP | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante ezSharedSvcHost.exe, version : 5.0.0.101, horodatage : 0x2a425e19 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0x86c Heure de début de l’application défaillante : 0x01cf1a70173f12d4 Chemin d’accès de l’application défaillante : C:\Windows\SysWOW64\ezSharedSvcHost.exe Chemin d’accès du module défaillant: unknown ID de rapport : 2b683e90-86d3-11e3-8750-08edb98e8fbe Error - 28/01/2014 19:48:09 | Computer Name = windows-HP | Source = SideBySide | ID = 16842785 Description = La création du contexte d’activation a échoué pour « C:\Program Files\ATI\CIM\Bin64\SetACL64.exe ». Assembly dépendant Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 04/02/2014 08:11:51 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = Error - 09/02/2014 13:08:34 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = Error - 13/02/2014 10:20:28 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = Error - 13/02/2014 22:48:56 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = Error - 18/02/2014 10:51:56 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = Error - 18/02/2014 11:12:09 | Computer Name = windows-HP | Source = SideBySide | ID = 16842785 Description = La création du contexte d’activation a échoué pour « C:\Program Files\ATI\CIM\Bin64\SetACL64.exe ». Assembly dépendant Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 22/02/2014 14:10:49 | Computer Name = windows-HP | Source = SideBySide | ID = 16842785 Description = La création du contexte d’activation a échoué pour « C:\Program Files\ATI\CIM\Bin64\SetACL64.exe ». Assembly dépendant Microsoft.VC80.MFC,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 25/02/2014 12:57:10 | Computer Name = windows-HP | Source = WinMgmt | ID = 10 Description = [ Hewlett-Packard Events ] Error - 07/11/2013 12:07:39 | Computer Name = windows-HP | Source = hpsa_service.exe | ID = 2000 Description = HP Error ID: -2146233088 à HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String category) à HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore() à HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan, Boolean localScan) Message: Failed to perform update. StackTrace: à HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateDetail(String category) à HP.ActiveCheckLocalMode.SessionManager.ActiveCheckManager.UpdateAndDetectCore() à HP.SupportAssistant.Service.ACLM.ActiveCheck.LaunchActiveCheck(Boolean singleScan, Boolean localScan) Source: HP.ActiveCheckLocalMode.SessionManager InnerException.Message: L'objet '/3e4909d7_0f7e_472a_add9_2e51fdf4ec09/kfaqj4suoas9ba6gj+ga7y8b_5.rem' a été déconnecté ou n'existe pas sur le serveur. Name: hpsa_service.exe Version: 06.00.01.01 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe Format: fr-FR RAM: 3689 Ram Utilization: 40 TargetSite: Void UpdateDetail(System.String) Error - 11/11/2013 12:49:40 | Computer Name = windows-HP | Source = HPSFMsgr.exe | ID = 2000 Description = HP Error ID: -2147467261 à HPSA_Messenger.MessengerManager.CommonMessengerStatusTask.SetWMISysInformation() Message: La référence d'objet n'est pas définie à une instance d'un objet. StackTrace: à HPSA_Messenger.MessengerManager.CommonMessengerStatusTask.SetWMISysInformation() Source: HPSFMsgr Name: HPSFMsgr.exe Version: 01.00.00.00 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe Format: fr-FR RAM: 3689 Ram Utilization: 30 TargetSite: Void SetWMISysInformation() Error - 11/11/2013 12:49:40 | Computer Name = windows-HP | Source = HPSFMsgr.exe | ID = 2000 Description = HP Error ID: -2147467261HPSFMsgr.exe à HPSA_Messenger.MessengerManager.CommonMessengerStatusTask.SetWMISysInformation() Message: La référence d'objet n'est pas définie à une instance d'un objet. StackTrace: à HPSA_Messenger.MessengerManager.CommonMessengerStatusTask.SetWMISysInformation() Source: HPSFMsgr Name: HPSFMsgr.exe Version: 01.00.00.00 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe Format: fr-FR RAM: 3689 Ram Utilization: 30 TargetSite: Void SetWMISysInformation() Error - 11/11/2013 12:49:41 | Computer Name = windows-HP | Source = HPSFMsgr.exe | ID = 4000 Description = HP Error ID: -2147023174HPSFMsgr.exe à System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle& ctor, Boolean& bNeedSecurityCheck) à System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean fillCache) à System.RuntimeType.CreateInstanceImpl(Boolean publicOnly, Boolean skipVisibilityChecks, Boolean fillCache) à System.Activator.CreateInstance(Type type, Boolean nonPublic) à HPSA_Messenger.MessengerCom.TrayDeskBand.isTaskbarDisplayed() StackTrace: à System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle& ctor, Boolean& bNeedSecurityCheck) à System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean fillCache) à System.RuntimeType.CreateInstanceImpl(Boolean publicOnly, Boolean skipVisibilityChecks, Boolean fillCache) à System.Activator.CreateInstance(Type type, Boolean nonPublic) à HPSA_Messenger.MessengerCom.TrayDeskBand.isTaskbarDisplayed() Source: mscorlib Name: HPSFMsgr.exe Version: 01.00.00.00 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe Format: fr-FR RAM: 3689 Ram Utilization: 30 TargetSite: System.Object CreateInstance(System.RuntimeType, Boolean, Boolean, Boolean ByRef, System.RuntimeMethodHandle ByRef, Boolean ByRef) Error - 11/11/2013 12:49:41 | Computer Name = windows-HP | Source = HPSFMsgr.exe | ID = 4000 Description = HP Error ID: -2147023174HPSFMsgr.exe à System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle& ctor, Boolean& bNeedSecurityCheck) à System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean fillCache) à System.RuntimeType.CreateInstanceImpl(Boolean publicOnly, Boolean skipVisibilityChecks, Boolean fillCache) à System.Activator.CreateInstance(Type type, Boolean nonPublic) à HPSA_Messenger.MessengerCom.TrayDeskBand.ShowTaskBar() StackTrace: à System.RuntimeTypeHandle.CreateInstance(RuntimeType type, Boolean publicOnly, Boolean noCheck, Boolean& canBeCached, RuntimeMethodHandle& ctor, Boolean& bNeedSecurityCheck) à System.RuntimeType.CreateInstanceSlow(Boolean publicOnly, Boolean fillCache) à System.RuntimeType.CreateInstanceImpl(Boolean publicOnly, Boolean skipVisibilityChecks, Boolean fillCache) à System.Activator.CreateInstance(Type type, Boolean nonPublic) à HPSA_Messenger.MessengerCom.TrayDeskBand.ShowTaskBar() Source: mscorlib Name: HPSFMsgr.exe Version: 01.00.00.00 Path: C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe Format: fr-FR RAM: 3689 Ram Utilization: 30 TargetSite: System.Object CreateInstance(System.RuntimeType, Boolean, Boolean, Boolean ByRef, System.RuntimeMethodHandle ByRef, Boolean ByRef) Error - 21/11/2013 11:48:54 | Computer Name = windows-HP | Source = HPSF.exe | ID = 4000 Description = Error - 16/01/2014 12:30:01 | Computer Name = windows-HP | Source = HPSF.exe | ID = 4000 Description = Error - 16/01/2014 12:30:02 | Computer Name = windows-HP | Source = HPSF.exe | ID = 4000 Description = Error - 16/01/2014 12:30:02 | Computer Name = windows-HP | Source = HPSF.exe | ID = 4000 Description = Error - 16/01/2014 12:30:02 | Computer Name = windows-HP | Source = HPSF.exe | ID = 4000 Description = [ System Events ] Error - 03/01/2014 07:00:15 | Computer Name = windows-HP | Source = Disk | ID = 262155 Description = Le pilote a détecté une erreur du contrôleur sur \Device\Harddisk1\DR16. Error - 03/01/2014 07:00:15 | Computer Name = windows-HP | Source = Disk | ID = 262155 Description = Le pilote a détecté une erreur du contrôleur sur \Device\Harddisk1\DR16. Error - 03/01/2014 07:00:16 | Computer Name = windows-HP | Source = Disk | ID = 262155 Description = Le pilote a détecté une erreur du contrôleur sur \Device\Harddisk1\DR16. Error - 04/01/2014 04:49:03 | Computer Name = windows-HP | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service upnphost. Error - 05/01/2014 12:15:56 | Computer Name = windows-HP | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service Netman. Error - 05/01/2014 19:43:48 | Computer Name = windows-HP | Source = DCOM | ID = 10010 Description = Error - 05/01/2014 19:46:49 | Computer Name = windows-HP | Source = Service Control Manager | ID = 7026 Description = Le pilote de démarrage système ou d’amorçage suivant n’a pas pu se charger : aswKbd Error - 06/01/2014 04:11:27 | Computer Name = windows-HP | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service hpqwmiex. Error - 07/01/2014 13:26:34 | Computer Name = windows-HP | Source = DCOM | ID = 10010 Description = Error - 07/01/2014 13:27:01 | Computer Name = windows-HP | Source = DCOM | ID = 10010 Description = < End of report >