Additional scan result of Farbar Recovery Scan Tool (x64) Version:13-06-2015 Ran by aurelie at 2015-06-18 10:50:56 Running from C:\Users\aurelie\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-1404278198-582061052-276021380-500 - Administrator - Disabled) aurelie (S-1-5-21-1404278198-582061052-276021380-1000 - Administrator - Enabled) => C:\Users\aurelie Invité (S-1-5-21-1404278198-582061052-276021380-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Protection antivirus et antispyware McAfee (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AS: Protection antivirus et antispyware McAfee (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Pare-feu McAfee (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acer Instant Update Service (HKLM\...\{16463660-2EC6-4A26-A2B4-BD6A5FAB38BA}) (Version: 1.00.3004 - Acer Incorporated) Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.4.0.126 - Atheros) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform) DealSpaaCe (HKLM-x32\...\{C5CA91B2-6518-8029-1AC2-E73D213FE1B5}) (Version: - ) Facebook Video Calling 3.1.0.521 (HKLM-x32\...\{2091F234-EB58-4B80-8C96-8EB78C808CF7}) (Version: 3.1.521 - Skype Limited) Google Chrome (HKU\S-1-5-21-1404278198-582061052-276021380-1000\...\Google Chrome) (Version: 43.0.2357.124 - Google Inc.) GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games) Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) MarketLuck (HKLM-x32\...\MarketLuck) (Version: 1.0.12343 - PM Technologies) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.3 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.3.101 - Skype Technologies S.A.) Tropico Reloaded (HKLM-x32\...\{87336872-0C58-4FA5-8126-296A790CBFD6}_is1) (Version: - Kalypso Media) Unity Web Player (HKU\S-1-5-21-1404278198-582061052-276021380-1000\...\UnityWebPlayer) (Version: 4.5.4f1 - Unity Technologies ApS) Viralheat Social Sentiment (HKLM-x32\...\{E9AD2F38-EF9C-B9DA-048A-A92FBC17701E}) (Version: - ) ZHPDiag 2015 (HKLM-x32\...\ZHPDiag_is1) (Version: 2015 - Nicolas Coolman) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{0F22A205-CFB0-4679-8499-A6F44A80A208}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.25.5\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{1423F872-3F7F-4E57-B621-8B1A9D49B448}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{C3BC25C0-FCD3-4F01-AFDD-41373F017C9A}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.26.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{D0336C0B-7919-4C04-8CCE-2EBAE2ECE8C9}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.25.11\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.27.5\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-1404278198-582061052-276021380-1000_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\aurelie\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= 26-05-2015 19:27:19 Windows Update 02-06-2015 13:09:00 Windows Update 04-06-2015 00:25:02 Windows Defender Checkpoint 05-06-2015 15:19:54 Windows Update 09-06-2015 13:03:12 Windows Update 11-06-2015 03:00:19 Windows Update 16-06-2015 12:51:01 Windows Update 17-06-2015 22:23:59 Windows Defender Checkpoint ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2014-03-03 18:43 - 2010-12-23 20:08 - 00000780 _RASH C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ::1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0C52A26A-B522-4B44-86C7-62B9BCB5A84D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000UA => C:\Users\aurelie\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-04] (Facebook Inc.) Task: {0F8F6C0E-EC5F-4F07-89E7-5DE38CE46291} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000UA => C:\Users\aurelie\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-17] (Google Inc.) Task: {169AC936-FFF2-4DA7-A3CF-AE901F1357C0} - System32\Tasks\{8DFBE376-4DAC-45FF-973B-513D007FBA71} => Chrome.exe Task: {1C80AB48-FF3F-4581-A217-AE367F12B4F1} - System32\Tasks\{39407230-844B-4D82-84F1-7B7BBD38BB95} => Chrome.exe Task: {28F51850-9FE3-482D-9C61-2DE74FF3DBFC} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {2E0806BC-DCAE-4680-904F-C6C4B381E429} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd) Task: {2E6ED64F-7EBE-4884-AA08-EBA68FC12B14} - System32\Tasks\{E0BFCC65-8019-4C40-ADA6-0841FA560361} => Chrome.exe Task: {2F0280F3-BE45-4485-802E-0B240B0D7FE9} - System32\Tasks\{32F97E56-607B-4F3A-966A-45E71FC23D9E} => Chrome.exe Task: {3610846A-C200-40B1-9958-2CF8F17ED18C} - System32\Tasks\{5B35EB94-75DF-45FE-AA56-A2AA86CAAA95} => Chrome.exe Task: {38AF2C28-DD43-4E0F-8D37-155E01C66DAC} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-28] (Egis Technology Inc.) Task: {396362E3-F52E-474D-8DEE-C362B3DC21F7} - System32\Tasks\{70C14877-2464-4306-90CE-4CDEB9FF1AF6} => Chrome.exe Task: {3FE14C03-E71E-46C2-8842-9A912F57DC68} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\Cyberlink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2011-05-20] (CyberLink) Task: {5113A60C-8782-40F7-A645-D09F15DC436D} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {5FDEB7DF-5F8F-4253-913A-277E1B804CBA} - System32\Tasks\{640F3FE5-B4AC-46F4-88B0-6F45C1F3016C} => Chrome.exe Task: {620EAF68-0A0B-4151-B3B9-5D950D7A9B5F} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2012-10-13] (Microsoft Corporation) Task: {81DA73AA-2831-407A-8896-0F3D8CB8D0DD} - System32\Tasks\{29B666AF-CD38-4B50-BB76-055527575467} => Chrome.exe Task: {83D1365A-8558-4E14-8704-57FCC0FB07D5} - System32\Tasks\FileInspect => c:\programdata\{b7fc8d55-19b4-1d16-b7fc-c8d5519b3554}\3764.exe <==== ATTENTION Task: {86C97ED2-DCF4-4C47-B131-EFDB96D26C55} - System32\Tasks\{A6082BB9-B2E8-4520-BCF1-9D261E824627} => Chrome.exe Task: {8B31F300-E3FE-44B0-8122-B3513FDCDC2B} - System32\Tasks\{3B2B81AB-6108-410A-BEDA-3478AC6D06EC} => Chrome.exe Task: {9D2B0133-F401-4B7B-B43D-29A956F7E283} - System32\Tasks\{F632EF30-6CD7-46C0-B220-83A37E91C5C7} => Chrome.exe Task: {A4EAF9DE-6A73-403D-9E24-E1201BC370E4} - System32\Tasks\{EF6BAA75-7114-479F-B1AC-70DEDD9CB00B} => Chrome.exe Task: {AFF6FA22-7996-4C74-8BAB-E581190DB966} - System32\Tasks\{E7C19B40-B536-473E-B49D-71BD52D3047E} => Chrome.exe Task: {B804AE54-1C12-4EE7-97C3-BB7C8921A1D1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {C1B115C9-F1B4-4E8C-86AC-931A5AA76FF7} - System32\Tasks\{CC375F82-977A-43D6-8530-11CF183FECE1} => Chrome.exe Task: {C46AADF5-9607-49D3-BA3E-CC61D70C263B} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000Core => C:\Users\aurelie\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-10-04] (Facebook Inc.) Task: {CDA93D50-538D-4C1D-99FF-446C8DF71A43} - System32\Tasks\{E6A6CDBE-3BBE-412A-BC6B-46DFFF750881} => Chrome.exe Task: {D6760745-C0F3-407A-A231-8753317EF566} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000Core => C:\Users\aurelie\AppData\Local\Google\Update\GoogleUpdate.exe [2013-10-17] (Google Inc.) Task: {DE7DD91C-D42F-455E-AD78-5DD80F4347F9} - System32\Tasks\{3B9D5DAD-46FA-48AC-A657-AEBA1C3210BB} => Chrome.exe Task: {DF2DB033-8A7F-4589-93B1-CEF050BEAA1C} - System32\Tasks\QuasarPorter => c:\programdata\{536c7ccb-8472-566d-536c-c7ccb847f32e}\5293272204709627549b.exe <==== ATTENTION Task: {E508106B-4095-4D26-A39C-B2859BAC8552} - System32\Tasks\{BE73A120-95BE-4C70-9376-3286BF5CAE42} => Chrome.exe Task: {E9B1EBF1-2BF9-4A98-A2AB-29C6022829A5} - System32\Tasks\{1EB42DE3-CE5F-46BE-A77E-18C10AB7A9C9} => Chrome.exe Task: {F62BEA09-6D4B-468E-823D-E0B3D630AC19} - System32\Tasks\{D10512EC-D93F-4068-B3A6-A32CFCFC753C} => Chrome.exe Task: {F89E2A57-738B-4031-90E0-0277DAA5364B} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-28] (Egis Technology Inc.) Task: {FEDC90DC-CFEC-42F5-A6CB-B5E79F6FB7D6} - System32\Tasks\UALU notificatin => C:\Program Files\Acer\Acer Updater\UALU.exe [2012-02-07] (Acer Incorporated) Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000Core.job => C:\Users\aurelie\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000UA.job => C:\Users\aurelie\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FileInspect.job => c:\programdata\{b7fc8d55-19b4-1d16-b7fc-c8d5519b3554}\3764.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000Core.job => C:\Users\aurelie\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1404278198-582061052-276021380-1000UA.job => C:\Users\aurelie\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\QuasarPorter.job => c:\programdata\{536c7ccb-8472-566d-536c-c7ccb847f32e}\5293272204709627549b.exe <==== ATTENTION ==================== Loaded Modules (Whitelisted) ============== 2012-06-17 15:13 - 2012-03-16 13:48 - 00127320 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 2012-06-18 00:30 - 2012-03-27 03:33 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-04-06 20:29 - 2012-04-06 20:29 - 00040552 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe 2012-04-06 20:29 - 2012-04-06 20:29 - 00022120 _____ () C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe 2012-01-05 23:22 - 2012-01-05 23:22 - 00465344 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2012-01-05 23:22 - 2012-01-05 23:22 - 01081368 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2012-01-05 23:22 - 2012-01-05 23:22 - 00125464 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2012-06-17 15:13 - 2012-03-07 16:27 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1404278198-582061052-276021380-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\aurelie\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 - 8.8.8.8 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{EAA11006-2FEF-458F-BB4C-FB63EC599A66}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{2EC17F93-FB8A-413A-9F9B-E17B9DD8519B}] => (Allow) LPort=2869 FirewallRules: [{68E2F72A-C961-4C23-83BF-98B68884EC50}] => (Allow) LPort=1900 FirewallRules: [{4197D7EC-84AC-49B5-8B92-CD20B6CEC7CA}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{FA062C64-B7C3-4133-9014-68B76E0FB233}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{6FDFA1FC-99BB-4756-A5B7-10D482F14456}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{D8A0A7A5-4746-4918-A076-6FEC7FF1E2B7}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{A1BC9588-06D9-4195-8643-2CAB8760CE1D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe FirewallRules: [{1ACA599B-B389-428C-83BE-28E4BE702E7A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{6B01CF08-4D2B-4F73-BFCC-9816785DA1C0}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe FirewallRules: [{8B527AD4-5409-4FF3-94FF-8C516E8ACE90}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{BDB6B7BC-DA56-4FBA-A8AB-7080ADB20FA2}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe FirewallRules: [{A1FA4EB7-27D6-4554-82A2-408C9AA9EEC0}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{F92185C4-9FF0-417E-AAD3-3E333C0DF08A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe FirewallRules: [{760AB6FA-D0AB-4A40-8D8F-FED0ADC32549}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK20\Movie\PlayMovie.exe FirewallRules: [{86205378-6CDC-4BEA-8C61-A16B325C6998}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK20\MVP\VideoPlayer.exe FirewallRules: [{0480AFBD-EAF9-4BF8-9FD0-33EC7219F9AB}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK20\MVP\MusicPlayer.exe FirewallRules: [{E3FEA56E-61A6-4241-BF8D-59FFEC5DE57E}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{B2A8E605-FF5F-4673-8DAF-51D2212A378C}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{CC30BA43-4A47-41FC-BD59-2D66C0389D4C}] => (Allow) C:\Users\aurelie\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{5EB6177E-286F-44A6-A128-6B9AC4B94F41}] => (Allow) C:\Users\aurelie\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (06/17/2015 10:23:57 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = 0x80070005, Accès refusé. . Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {760906be-8294-4899-95cf-30dca3158cd7} Error: (06/17/2015 10:04:31 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80040880. Http status code 200. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072efd. Http status code 0. trying WinHTTP. Send request returned 0x80072efd. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http Error: (06/10/2015 09:54:59 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme chrome.exe version 43.0.2357.124 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : f78 Heure de début : 01d0a3b7224e7f4d Heure de fin : 37530 Chemin d’accès de l’application : C:\Users\aurelie\AppData\Local\Google\Chrome\Application\chrome.exe ID de rapport : 7b10030c-0faa-11e5-bf49-206a8a877859 Error: (06/10/2015 09:53:29 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Le programme chrome.exe version 43.0.2357.124 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 1a48 Heure de début : 01d0a3b6f158c1da Heure de fin : 17326 Chemin d’accès de l’application : C:\Users\aurelie\AppData\Local\Google\Chrome\Application\chrome.exe ID de rapport : 4d447df6-0faa-11e5-bf49-206a8a877859 Error: (06/10/2015 08:11:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante McSvHost.exe, version : 2.6.259.0, horodatage : 0x5040f1f9 Nom du module défaillant : mfefwctl.dll, version : 15.1.0.595, horodatage : 0x50f59ea2 Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000000f90e ID du processus défaillant : 0xbe8 Heure de début de l’application défaillante : 0xMcSvHost.exe0 Chemin d’accès de l’application défaillante : McSvHost.exe1 Chemin d’accès du module défaillant: McSvHost.exe2 ID de rapport : McSvHost.exe3 Error: (06/09/2015 11:44:58 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/07/2015 11:14:42 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee2. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee2 Error: (06/07/2015 06:13:46 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/07/2015 10:09:59 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/05/2015 03:11:17 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s System errors: ============= Error: (06/18/2015 07:58:27 AM) (Source: NetBT) (EventID: 4321) (User: ) Description: Le nom "WORKGROUP :1d" n’a pas pu être enregistré sur l’interface avec l’adresse IP 192.168.1.13. L’ordinateur avec l’adresse IP 192.168.1.1 n’a pas permis que le nom soit réclamé par cet ordinateur. Error: (06/18/2015 07:58:18 AM) (Source: BTHUSB) (EventID: 17) (User: ) Description: La carte locale Bluetooth a échoué d'une manière indéterminée et ne sera pas utilisée. Le pilote a été déchargée. Error: (06/17/2015 10:15:24 PM) (Source: DCOM) (EventID: 10016) (User: AUTORITE NT) Description: spécifiques à l’applicationLocalExécution{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}AUTORITE NTSystèmeS-1-5-18LocalHost (utilisation de LRPC) Error: (06/17/2015 10:13:36 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\athihvs.dll Error: (06/17/2015 10:13:36 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\athihvs.dll Error: (06/17/2015 10:12:59 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: AUTORITE NT) Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\Windows\system32\athihvs.dll Error: (06/17/2015 10:12:51 PM) (Source: Service Control Manager) (EventID: 7032) (User: ) Description: Le Gestionnaire de services de contrôle a essayé d’entreprendre une action corrective (Redémarrer le service) après la fin inattendue du service Windows Search, mais cette action a échoué en raison de l’erreur suivante : %%1056 Error: (06/17/2015 10:12:21 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Windows Search s’est terminé de manière inattendue. Ceci s’est produit 2 fois. L’action corrective suivante va être effectuée dans 30000 millisecondes : Redémarrer le service. Error: (06/17/2015 10:12:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Dritek WMI Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 3000 millisecondes : Redémarrer le service. Error: (06/17/2015 10:12:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Le service Intel(R) Capability Licensing Service Interface s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 0 millisecondes : Redémarrer le service. Microsoft Office: ========================= Error: (06/17/2015 10:23:57 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Accès refusé. Opération : Données du rédacteur en cours de collecte Contexte : ID de classe du rédacteur: {e8132975-6f93-4464-a53e-1050253ae220} Nom du rédacteur: System Writer ID d’instance du rédacteur: {760906be-8294-4899-95cf-30dca3158cd7} Error: (06/17/2015 10:04:31 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80040880. Http status code 200. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072efd. Http status code 0. trying WinHTTP. Send request returned 0x80072efd. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http Error: (06/10/2015 09:54:59 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: chrome.exe43.0.2357.124f7801d0a3b7224e7f4d37530C:\Users\aurelie\AppData\Local\Google\Chrome\Application\chrome.exe7b10030c-0faa-11e5-bf49-206a8a877859 Error: (06/10/2015 09:53:29 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: chrome.exe43.0.2357.1241a4801d0a3b6f158c1da17326C:\Users\aurelie\AppData\Local\Google\Chrome\Application\chrome.exe4d447df6-0faa-11e5-bf49-206a8a877859 Error: (06/10/2015 08:11:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: McSvHost.exe2.6.259.05040f1f9mfefwctl.dll15.1.0.59550f59ea2c0000005000000000000f90ebe801d09fb8ecd93292C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exeC:\Program Files\Common Files\McAfee\SystemCore\mfefwctl.dll2e8980b8-0f9c-11e5-bf49-206a8a877859 Error: (06/09/2015 11:44:58 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/07/2015 11:14:42 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee2. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying WinHTTP. Send request returned 0x80072ee2. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee2 Error: (06/07/2015 06:13:46 PM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/07/2015 10:09:59 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s Error: (06/05/2015 03:11:17 AM) (Source: Google Update) (EventID: 20) (User: aurelie-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http s ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU 967 @ 1.30GHz Percentage of memory in use: 28% Total physical RAM: 3889.6 MB Available physical RAM: 2789.62 MB Total Pagefile: 7777.39 MB Available Pagefile: 6067.6 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (ACER) (Fixed) (Total:449.55 GB) (Free:376.24 GB) NTFS Drive d: (Marwan) (CDROM) (Total:0.02 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 271F961D) Partition 1: (Not Active) - (Size=16.1 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449.5 GB) - (Type=07 NTFS) ==================== End of log ============================