ÿþOTL Extras logfile created on: 19/05/2017 14:02:47 - Run 1
OTL by OldTimer - Version Folder = C:\Users\WILFRIED\Downloads\Programs
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy

3,80 Gb Total Physical Memory | 1,42 Gb Available Physical Memory | 37,51% Memory free
7,59 Gb Paging File | 4,99 Gb Available in Paging File | 65,70% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 124,60 Gb Total Space | 13,09 Gb Free Space | 10,51% Space Free | Partition Type: NTFS
Drive D: | 105,93 Gb Total Space | 63,55 Gb Free Space | 59,99% Space Free | Partition Type: NTFS
Drive G: | 350,00 Mb Total Space | 83,84 Mb Free Space | 23,95% Space Free | Partition Type: NTFS
Drive J: | 1,99 Gb Total Space | 1,98 Gb Free Space | 99,39% Space Free | Partition Type: FAT32

Computer Name: WILFRIED-PC | User Name: WILFRIED | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Extra Registry (SafeList) ==========[/color]

[color=#E56717]========== File Associations ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)

.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)

.html [@ = ChromeHTML] -- Reg Error: Key error. File not found

[color=#E56717]========== Shell Spawning ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

[color=#E56717]========== Security Center Settings ==========[/color]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]

[color=#E56717]========== Firewall Settings ==========[/color]

"DisableNotifications" = 0
"EnableFirewall" = 1

"DisableNotifications" = 0
"EnableFirewall" = 1

"DisableNotifications" = 0
"EnableFirewall" = 1

[color=#E56717]========== Authorized Applications List ==========[/color]

[color=#E56717]========== Vista Active Open Ports Exception List ==========[/color]

"{00FE3B3A-A2BF-4C2A-9D19-DD188892077D}" = rport=137 | protocol=17 | dir=out | app=system |
"{0D72751F-047F-42C0-BACF-678BF52AAEDF}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{140B4BD0-39EF-4161-80ED-DDBEF71FCA28}" = rport=10243 | protocol=6 | dir=out | app=system |
"{3197007E-E630-448A-8E49-A593AC891CCB}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe |
"{3709B323-0446-47FC-9E27-1E849EF362D4}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{3EED1FA8-95C6-42C2-B950-CDC8FEA7BE95}" = lport=139 | protocol=6 | dir=in | app=system |
"{53A16BA6-6F20-47D5-BDC8-9859BCD1301E}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{61A81499-10E4-45DB-91E1-FF9792BB0569}" = lport=10243 | protocol=6 | dir=in | app=system |
"{6CE2B0D6-7156-4A62-AA99-FFE3148A37F5}" = rport=445 | protocol=6 | dir=out | app=system |
"{76AC2CE8-7105-4018-B585-9AFDB2A79BBF}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{7A2CD59D-2DE8-4456-8DEE-348EA6BACE40}" = lport=2869 | protocol=6 | dir=in | app=system |
"{7F11C286-2DF5-4EED-BBF1-2B3ED15FCE69}" = rport=138 | protocol=17 | dir=out | app=system |
"{82EDD52F-85B0-4658-976C-DBE3844B40AC}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{92CA58DD-5DCC-4ABE-A782-801D720DF24E}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{A19014A8-F16C-4E9D-ACE8-F403C6F099C9}" = lport=445 | protocol=6 | dir=in | app=system |
"{A20BB674-1163-4EE3-AF4B-CE32D76663E1}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{ABADE9B4-72B7-46FC-8446-3D350496C90A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{B0BF9E35-EEB9-4917-B92D-74D51321A28E}" = lport=138 | protocol=17 | dir=in | app=system |
"{B3A4EB0A-6D1B-4484-B320-9329434416B6}" = rport=139 | protocol=6 | dir=out | app=system |
"{B5D59E18-5752-4723-8676-BA61E79B5D7A}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{CB47F20D-BB29-4BAD-85D3-4179CAC4BC00}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{E6ABB15C-C4AD-4960-B206-345D5BF4880C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{EF696AB4-E644-458B-B413-DE976B30F5D2}" = lport=137 | protocol=17 | dir=in | app=system |
"{FA903B05-02C8-4B57-94BD-A2BBC47DD8BA}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |

[color=#E56717]========== Vista Active Application Exception List ==========[/color]

"{1BA40E47-E796-4024-81A8-397E56691B41}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{1E610D7F-A65B-44C8-B8A1-F142711F88A7}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{29952DDB-F61A-4CF7-8FAE-201E62ACD98A}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{4B3D39DA-5ADC-42D5-92A5-4BF5F94ACA3C}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{4BD52675-1A9C-490D-A0C9-3CFC2D22AFCA}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{558C7C47-F192-4060-B015-CC6C98B61964}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{611E6870-80FE-4D15-A881-25052500B6EC}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{67B41805-5A0C-4C2D-BCDC-C8782C36A618}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{734EA067-A7D9-40E2-B3F3-3F409FAA2433}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{7FAC0AB2-0027-4E31-B7A8-03B432E0556E}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{8B2592AA-BB0F-447C-A358-25E8CC04DE4E}" = protocol=6 | dir=out | app=system |
"{9385BD15-226E-4FFE-84AE-3BD127F49B92}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{9B34902F-05C8-422B-ABB6-9A67AAD52ED1}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{9C747883-13E8-48EB-A718-E5D42578AA44}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{B83CC185-3C64-45E2-AB4D-CE83FAB4258D}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{D2FBAD3F-F5CF-4AFD-AC7C-6C22A3A51471}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{D58FD688-3941-445C-872F-A1875EFE04E1}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"{D5ED83B4-450B-454D-BA6F-EA4926F9E33A}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{EDD52B20-3850-4290-B9B1-A16B9A0093BB}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |

[color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color]

64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
"{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030
"{4B5F58F7-C7D1-3CE3-9B37-B657F0852643}" = Microsoft .NET Framework 4 Client Profile FRA Language Pack
"{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215
"{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005
"{9B3F0A88-790D-3AD9-9F96-B19CF2746452}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729
"{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005
"{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030
"{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Client Profile FRA

"{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper
"{b3c7f59f-dc40-4be9-829c-77dd292978ea}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501
"{d992c12e-cab2-426f-bde3-fb8c53950b0d}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{f9b04b37-35d5-4a19-a51b-fcf4a8734851}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030
"Google Chrome" = Google Chrome
"Internet Download Manager" = Internet Download Manager
"PdaNet_is1" = PdaNet+ for Android 4.01

[color=#E56717]========== Last 20 Event Log Errors ==========[/color]

[ Application Events ]
Error - 19/05/2017 04:45:27 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Échec de l extraction de la liste racine tierce depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l erreur : Données non valides. .

Error - 19/05/2017 04:50:22 | Computer Name = WILFRIED-PC | Source = Application Error | ID = 1000
Description = Nom de l application défaillante mscorsvw.exe, version : 4.0.30319.1,
horodatage : 0x4ba1da21 Nom du module défaillant : unknown, version :, horodatage
: 0x00000000 Code d exception : 0xc0000005 Décalage d erreur : 0x74596cc4 ID du processus
défaillant : 0x1220 Heure de début de l application défaillante : 0x01d2d07602f72d91
d accès de l application défaillante : C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
d accès du module défaillant: unknown ID de rapport : 311518d0-3c70-11e7-b4d1-e02a82c7f2ae

Error - 19/05/2017 04:50:32 | Computer Name = WILFRIED-PC | Source = Google Update | ID = 1
Description =

Error - 19/05/2017 04:50:32 | Computer Name = WILFRIED-PC | Source = Application Error | ID = 1000
Description = Nom de l application défaillante GoogleUpdate.exe, version :,
horodatage : 0x5848c7b9 Nom du module défaillant : unknown, version :, horodatage
: 0x00000000 Code d exception : 0xc0000005 Décalage d erreur : 0x74596cc4 ID du processus
défaillant : 0xe04 Heure de début de l application défaillante : 0x01d2d07cf93f6e1c
d accès de l application défaillante : C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
d accès du module défaillant: unknown ID de rapport : 372c3e24-3c70-11e7-b4d1-e02a82c7f2ae

Error - 19/05/2017 04:56:06 | Computer Name = WILFRIED-PC | Source = Application Hang | ID = 1002
Description = Le programme gsetup.exe version 16.0.4266.1001 a cessé d interagir
avec Windows et a été fermé. Pour déterminer si des informations supplémentaires
sont disponibles, consultez l historique du problème dans le Centre de maintenance.

de processus : aac Heure de début : 01d2d07da2903344 Heure de fin : 0 Chemin d accès
de l application : C:\Office 2016\gsetup.exe ID de rapport : f47d333a-3c70-11e7-876b-e02a82c7f2ae

Error - 19/05/2017 06:41:21 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Échec de l extraction de la liste racine tierce depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l erreur : Données non valides. .

Error - 19/05/2017 06:41:21 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Échec de l extraction de la liste racine tierce depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l erreur : Données non valides. .

Error - 19/05/2017 06:41:27 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Échec de l extraction de la liste racine tierce depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l erreur : Données non valides. .

Error - 19/05/2017 06:41:27 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-CAPI2 | ID = 4107
Description = Échec de l extraction de la liste racine tierce depuis le fichier
CAB de mise à jour automatique à : <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab>
avec l erreur : Données non valides. .

Error - 19/05/2017 06:56:32 | Computer Name = WILFRIED-PC | Source = Application Hang | ID = 1002
Description = Le programme Explorer.EXE version 6.1.7601.17514 a cessé d interagir
avec Windows et a été fermé. Pour déterminer si des informations supplémentaires
sont disponibles, consultez l historique du problème dans le Centre de maintenance.

de processus : b4c Heure de début : 01d2d08e66fff8ce Heure de fin : 0 Chemin d accès
de l application : C:\Windows\Explorer.EXE ID de rapport : caabc3f2-3c81-11e7-876b-e02a82c7f2ae

[ System Events ]
Error - 19/05/2017 03:21:18 | Computer Name = WILFRIED-PC | Source = Service Control Manager | ID = 7003
Description = Le service Adaptateur d écouteur Net.Msmq dépend du service suivant :
msmq. Ce dernier n est peut-être pas installé.

Error - 19/05/2017 03:41:32 | Computer Name = WILFRIED-PC | Source = Service Control Manager | ID = 7023
Description = Le service Programme d installation pour les modules Windows s est
arrêté avec l erreur : %%16405

Error - 19/05/2017 03:55:14 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-Service Pack Installer | ID = 7
Description = Changes to an update(Mise à jour pour Microsoft Windows (KB976902))
failed during Service Pack installation. Identity: Package_for_KB976902~31bf3856ad364e35~amd64~~

Error Code: 0x80070bc9 Target State: 7

Error - 19/05/2017 03:55:14 | Computer Name = WILFRIED-PC | Source = Microsoft-Windows-Service Pack Installer | ID = 8
Description = Service Pack installation failed with error code 0x80070bc9.

Error - 19/05/2017 04:50:26 | Computer Name = WILFRIED-PC | Source = Service Control Manager | ID = 7031
Description = Le service Microsoft .NET Framework NGEN v4.0.30319_X86 s est terminé
de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante
va être effectuée dans 120000 millisecondes : Redémarrer le service.

Error - 19/05/2017 06:55:37 | Computer Name = WILFRIED-PC | Source = DCOM | ID = 10010
Description =

< End of report >


