Additional scan result of Farbar Recovery Scan Tool (x64) Version:09-08-2015 Ran by Gaëlle (2015-08-09 23:05:46) Running from C:\Users\Gaëlle\Downloads Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-473859184-546379200-1655659134-500 - Administrator - Disabled) Gaëlle (S-1-5-21-473859184-546379200-1655659134-1001 - Administrator - Enabled) => C:\Users\Gaëlle HomeGroupUser$ (S-1-5-21-473859184-546379200-1655659134-1004 - Limited - Enabled) Invité (S-1-5-21-473859184-546379200-1655659134-501 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) AC3Filter 2.5b (HKLM-x32\...\AC3Filter_is1) (Version: 2.5b - Alexander Vigovsky) Acrobat.com (HKLM-x32\...\{287ECFA4-719A-2143-A09B-D6A12DE54E40}) (Version: 1.6.65 - Adobe Systems Incorporated) Activer Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.1.20.0 - Symantec) Ad-Aware Antivirus (HKLM-x32\...\{2819e172-81d5-4113-88bd-4605b02344e0}) (Version: 10.4.49.4168 - Lavasoft) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.0.45.2 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.190 - Adobe Systems Incorporated) Adobe Flash Player 17 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 17.0.0.190 - Adobe Systems Incorporated) Adobe Reader XI (11.0.11) - Français (HKLM-x32\...\{AC76BA86-7AD7-1036-7B44-AB0000000001}) (Version: 11.0.11 - Adobe Systems Incorporated) Advanced SystemCare 8 (HKLM-x32\...\Advanced SystemCare 8_is1) (Version: 8.0.3 - IObit) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version: - ) Bengal - Game of Gods (remove only) (HKLM-x32\...\Bengal - Game of Gods) (Version: - ) BlackBerry Desktop Software 6.0.1 (x32 Version: 6.0.1.18 - Research In Motion Ltd.) Hidden BlackBerry Desktop Software 7.1 (HKLM-x32\...\BlackBerry_Desktop) (Version: 7.1.0.37 - Research In Motion Ltd.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform) CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.70.4.2009 - Georgy Berdyshev) Complément Messenger (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Configuration DivX (HKLM-x32\...\DivX Setup) (Version: 2.6.1.24 - DivX, LLC) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink DVD Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 6.0.3101 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 2.0.3115 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DDR - Pen Drive Recovery(Demo) 4.0.1.6 (HKLM-x32\...\DDR - Pen Drive Recovery(Demo)) (Version: 4.0.1.6 - ) Étude pour l'amélioration du produit HP Deskjet 2540 series (HKLM\...\{56A56F89-6A40-4990-9EFF-E7CEA8B8CD35}) (Version: 32.0.1180.44630 - Hewlett-Packard Co.) Excel Password Recovery Master 3.5 (HKLM-x32\...\Excel Password Recovery Master_is1) (Version: - ) Express Zip (HKLM-x32\...\ExpressZip) (Version: 2.18 - NCH Software) Feedback Tool (HKLM-x32\...\{13A5E785-5197-4EAD-8EE3-D660271E49BC}) (Version: 1.2.0 - Microsoft Corporation) Fences (HKLM-x32\...\Fences) (Version: - Stardock Corporation) Fences (Version: 1.0 - Stardock Corporation) Hidden ffdshow v1.2.4422 [2012-04-09] (HKLM-x32\...\ffdshow_is1) (Version: 1.2.4422.0 - FreeCodecPack) FormatFactory 2.40 (HKLM-x32\...\FormatFactory) (Version: 2.40 - Free Time) Free Easy Burner V 5.1 (HKLM-x32\...\Free Easy Burner_is1) (Version: 5.1.0.0 - Koyote soft) Free M4a to MP3 Converter 8.1 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com) Free Mp3 Wma Converter V 1.9 (HKLM-x32\...\Free Mp3 Wma Converter_is1) (Version: 1.9.0.1 - Koyote Soft) Freemake Video Converter version 4.0.4 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.0.4 - Ellora Assets Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 44.0.2403.107 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - FreeCodecPack) Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HiJackThis (HKLM-x32\...\{45A66726-69BC-466B-A7A4-12FCBA4883D7}) (Version: 1.0.0 - Trend Micro) HP Advisor (HKLM-x32\...\{40FB8D7C-6FF8-4AF2-BC8B-0B1DB32AF04B}) (Version: 3.3.12286.3436 - Hewlett-Packard) HP Deskjet 2540 series Aide (HKLM-x32\...\{2FAD0F16-4309-4D22-AE73-F4CCA737D013}) (Version: 30.0.0 - Hewlett Packard) HP DVD Play 3.7 (HKLM-x32\...\{45D707E9-F3C4-11D9-A373-0050BAE317E1}) (Version: 3.7.0.6623 - Hewlett-Packard) HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.0.71 - WildTangent) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP) HP Quick Launch Buttons (HKLM-x32\...\{34D2AB40-150D-475D-AE32-BD23FB5EE355}) (Version: 6.50.15.1 - Hewlett-Packard Company) HP Setup (HKLM-x32\...\{F3B912F5-EB57-45AA-B3D1-EB532BCF6EF8}) (Version: 1.2.3220.3079 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard) HP User Guides 0148 (HKLM-x32\...\{9D3318E1-5A9F-4A95-A7A1-7E045403AE34}) (Version: 1.01.0005 - Hewlett-Packard) HP Wireless Assistant (HKLM-x32\...\{4E432692-A736-4F77-AF77-F9078CF88D31}) (Version: 3.50.11.2 - Hewlett-Packard) iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.) IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6225.0 - IDT) IncludeInstance (HKLM-x32\...\{12DA0E6F-5543-440C-BAA2-28BF01070AFA}{c3f524c}) (Version: - Software Publisher) <==== ATTENTION Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Java(TM) 6 Update 14 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86416014FF}) (Version: 6.0.140 - Sun Microsystems, Inc.) Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1913 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.1913 - CyberLink Corp.) Hidden LightScribe System Software (HKLM-x32\...\{82EF29B1-9B60-4142-A155-0599216DD053}) (Version: 1.18.6.1 - LightScribe) LockHunter 3.1, 32/64 bit (HKLM\...\LockHunter_is1) (Version: - Crystal Rich Ltd) Logiciel de base du périphérique HP Deskjet 2540 series (HKLM\...\{A6B70741-D7EF-45ED-BF4E-AE40751780A0}) (Version: 32.0.1180.44630 - Hewlett-Packard Co.) Magic Desktop (HKLM-x32\...\EasyBits Magic Desktop) (Version: - EasyBits Software AS) Malwarebytes Anti-Malware version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (Français) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Default Manager (HKLM-x32\...\{1CAC7A41-583B-4483-9FA5-3E5465AFF8C2}) (Version: 2.2.114.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 2 (SP2) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}) (Version: - Microsoft) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6425.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office PowerPoint Viewer 2007 (French) (HKLM-x32\...\{95120000-00AF-040C-0000-0000000FF1CE}) (Version: 12.0.6425.1000 - Microsoft Corporation) Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft Office XP Media Content (HKLM-x32\...\{9030040C-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.2619.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{820B6609-4C97-3A2B-B644-573B06A0F0CC}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Works (HKLM-x32\...\{3B160861-7250-451E-B5EE-8B92BF30A710}) (Version: 9.7.0621 - Microsoft Corporation) Mise à jour Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-040C-0000-0000000FF1CE}_HOMESTUDENTR_{B761869A-B85C-40E2-994C-A1CE78AC8F2C}) (Version: - Microsoft) Mise à jour Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-040C-0000-0000000FF1CE}_HOMESTUDENTR_{C3DCA38E-005E-41BA-A52A-7C3429F351C3}) (Version: - Microsoft) Mise à jour Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-040C-0000-0000000FF1CE}_HOMESTUDENTR_{81536A04-DBFB-4DB3-978F-0F284590C223}) (Version: - Microsoft) Module de compatibilité pour Microsoft Office System 2007 (HKLM-x32\...\{90120000-0020-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA) (Version: 10.0.50903 - Microsoft Corporation) MotoHelper MergeModules (x32 Version: 1.0.0 - Motorola) Hidden Movavi Video Converter 12 (HKLM-x32\...\Movavi Video Converter 12) (Version: 12.3.0 - Movavi) Mozilla Firefox 39.0 (x86 fr) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 fr)) (Version: 39.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla) Mozilla Thunderbird 31.7.0 (x86 fr) (HKLM-x32\...\Mozilla Thunderbird 31.7.0 (x86 fr)) (Version: 31.7.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) muvee Reveal (HKLM-x32\...\{293F900D-3743-A8CC-46AD-5AFBFF8E29CF}) (Version: 7.0.40.10061 - muvee Technologies Pte Ltd) OpenOffice.org 3.3 (HKLM-x32\...\{05653DE1-6567-40C6-B930-39D399B64369}) (Version: 3.3.9567 - OpenOffice.org) Password Detective 2.01 (HKLM-x32\...\Password Detective_is1) (Version: - (c)2002 - Denis Dubois) PDF Architect 2 (HKLM-x32\...\PDF Architect 2) (Version: 2.0.51.17865 - pdfforge GmbH) PDF Architect 2 Create Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDF Architect 2 Edit Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDF Architect 2 View Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.2 - pdfforge) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.8 - Google, Inc.) Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.0.3101 - CyberLink Corp.) Power2Go (x32 Version: 6.0.3101 - CyberLink Corp.) Hidden PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 7.0.3101 - CyberLink Corp.) PowerDirector (x32 Version: 7.0.3101 - CyberLink Corp.) Hidden PowerRecover (x32 Version: 5.5.1923 - CyberLink Corp.) Hidden QLBCASL (x32 Version: 6.40.17.2 - Hewlett-Packard) Hidden QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek 8136 8168 8169 Ethernet Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0007 - Realtek) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7100.30094 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) Setup (HKLM-x32\...\{7ADF667E-E14D-4D2C-827C-B0108F0D93BC}) (Version: - ) SFR - Media Center (HKLM-x32\...\SFR_Media Center) (Version: 10.4.29.0 - SFR) SFR - Mediacenter Evolution (HKLM-x32\...\SFR_Mediacenter Evolution) (Version: 13.2.26.0 - SFR) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Software Update Helper (x32 Version: 1.3.25.0 - Google Inc.) Hidden <==== ATTENTION Studio-Scrap 3 - Version découverte (HKLM-x32\...\{E525C33E-008E-4814-BBB5-CBB9FD913EB9}_is1) (Version: 2010.3 - CDIP) Switch - Convertisseur de fichiers audio (HKLM-x32\...\Switch) (Version: 4.61 - NCH Software) Syberia (HKLM-x32\...\Syberia) (Version: 1.0 - Microids) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.29.0 - Synaptics Incorporated) The KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 3.7.0.109 - KMP Media co., Ltd) Unlocker 1.9.1-x64 (HKLM\...\Unlocker) (Version: 1.9.1 - Cedrick Collomb) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VLC media player 2.0.6 (HKLM-x32\...\VLC media player) (Version: 2.0.6 - VideoLAN) WalterShop (HKLM\...\WalterShop) (Version: - Durable.com) WavePad - Logiciel d'édition audio (HKLM-x32\...\WavePad) (Version: 5.72 - NCH Software) Windows Live (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live FolderShare (HKLM-x32\...\{2075CB0A-D26F-4DAA-B424-5079296B43BA}) (Version: 14.0.8089.726 - Microsoft Corporation) Windows Live Sync ActiveX Control for Remote Connections (HKLM-x32\...\{D65F8E34-C050-4E6C-86DB-D2B9075749A0}) (Version: 15.0.5403.6 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR archiver (HKLM-x32\...\WinRAR archiver) (Version: - ) Wuala (HKU\S-1-5-21-473859184-546379200-1655659134-1001\...\Wuala) (Version: 1.0.444.0 - LaCie) Wuala CBFS (HKLM-x32\...\Wuala CBFS) (Version: 3.2.107.0 - LaCie) Wuala OverlayIcons (HKLM-x32\...\Wuala OverlayIcons) (Version: 1.0.0.2 - LaCie) Xilisoft MP4 Convertisseur (HKLM-x32\...\Xilisoft MP4 Convertisseur) (Version: 7.8.6.20150130 - Xilisoft) Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org) Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.1) (Version: 1.3.2 - Xvid Team) ZHPFix 2015 (HKLM-x32\...\ZHPFix_is1) (Version: 2015 - Nicolas Coolman) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== Restore Points ========================= ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {06341631-3146-4F5A-B7B2-270B6DBDE790} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Opt-in For HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [2013-11-04] (Hewlett-Packard Company) Task: {09FCB1C1-71F3-4FED-AA7D-4EB3E4D17302} - System32\Tasks\Sluasdsodiw => C:\ProgramData\Sluasdsodiw\1.0.4.1\alomkeae.exe Task: {0D766169-0815-4B00-AF95-E94823CD5EC4} - \Plus-HD-3.5-firefoxinstaller -> No File <==== ATTENTION Task: {14C53878-C175-4116-99C5-B7E9C6EC3053} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {16EB11FB-1F14-47BF-91D8-453D1BC28736} - System32\Tasks\{CF35DC97-64F3-4007-A24A-4EEAF8E67F87} => pcalua.exe -a C:\Users\Gaëlle\AppData\Local\Temp\Messenger_Plus_Live_France.exe -d C:\Windows\SysWOW64 -c /s -silent -DefaultSearch=FALSE -StartPage=FALSE -SearchFromAdress=FALSE -showPersonalCompDialog=FALSE Task: {1749465E-29D8-4C27-919F-E898EB399976} - System32\Tasks\{E0D2051C-1C87-4C38-996A-1EEBC04B13CA} => pcalua.exe -a c:\users\gaëlle\appdata\local\lollipop\opxbab.bat Task: {186ADBAD-5736-4CC4-B3F4-99AFDE9DB861} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [2014-12-01] (Apple Inc.) Task: {18CD56C6-4F55-4BE9-B40E-266ED56F9CDC} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-11 -> No File <==== ATTENTION Task: {201D0DF3-139D-4BBC-96D5-1C4DC8761DE2} - \Plus-HD-3.5-chromeinstaller -> No File <==== ATTENTION Task: {203C9B70-C7B6-4B1F-96FB-66201D22E2F7} - \WordSurfer Auto Updater 1.10.0.19 Core -> No File <==== ATTENTION Task: {2104028B-6A0D-4E47-81F2-011885C26132} - System32\Tasks\Ad-Aware Antivirus Scheduled Scan => C:\PROGRA~2\Ad-Aware Antivirus\AdAwareLauncher.exe Task: {210DDAF9-C80C-43D6-9E17-3869BE0B81FB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated) Task: {21E54D43-059C-4AD5-878B-3A577F25747C} - System32\Tasks\ASC8_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [2014-12-10] (IObit) Task: {2469A750-0A82-45C5-8E3D-D6FAC2559643} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe Task: {2DB8B4B0-3336-4AB2-9C00-6B3BA7F484C2} - \Test TimeTrigger -> No File <==== ATTENTION Task: {31C2F689-137C-484F-8304-19910EB2402C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-07-07] (Hewlett-Packard) Task: {3329CEF0-3FA8-480D-A51E-5F9F50204FB8} - \LaunchPreSignup -> No File <==== ATTENTION Task: {349797CF-AD1A-408F-A783-92DA53DFDA87} - System32\Tasks\{54417579-B76F-4C64-BD42-F3FC4E47893E} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2011-11-11] (Microsoft Corporation) Task: {37B262AA-A02E-4C35-9EF7-CA53ED762A77} - System32\Tasks\Programme de mise à jour en ligne de Adobe => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-06-12] (Adobe Systems Incorporated) Task: {40668CD4-96C6-4A27-85E4-7AAB41C708CA} - System32\Tasks\Programme de mise à jour en ligne de Sun Microsystems => C:\Program Files\Java\jre6\bin\jusched.exe [2009-08-19] (Sun Microsystems, Inc.) Task: {427879A0-F0FD-4459-B1D9-F0F15B1B78D7} - System32\Tasks\{BAD83C5A-102C-47FF-B41F-D84F5F7639E9} => pcalua.exe -a C:\Users\Gaëlle\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=cmi Task: {49601255-E8E3-43B2-8EEA-E1E4DF3006AD} - System32\Tasks\{B3D87D2C-D162-4F6E-AEAA-838D94BE8332} => pcalua.exe -a C:\Users\Gaëlle\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=pcs Task: {49CC1C61-FE4E-42AF-811E-7E419B97C69F} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-7 -> No File <==== ATTENTION Task: {526CC6EA-B46C-4894-938B-50A41564F90A} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-1-7 -> No File <==== ATTENTION Task: {65C6B948-AFAF-4598-9504-214EDAE617E8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd) Task: {6D2B9BB6-EE69-43C3-9341-BBA193F126DE} - System32\Tasks\{6C4E94BB-94BE-4C32-A1AC-D65B637C27A2} => pcalua.exe -a C:\Users\Gaëlle\AppData\Roaming\vi-view\UninstallManager.exe -c -ptid=cor Task: {7160A21D-4D72-4758-A78D-CC11B9393DD1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {74161AAC-7C2C-4EE1-80E9-AD8D34FC5185} - System32\Tasks\{E0ADA170-45C5-48F6-9EF4-71BF688BD6AC} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2011-11-11] (Microsoft Corporation) Task: {75A6E335-1D21-410B-88DE-FB5263449B94} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-4 -> No File <==== ATTENTION Task: {7727B9BA-A57D-414F-A06F-B2DB64DF85FF} - \Inst_Rep -> No File <==== ATTENTION Task: {80A2AB2B-E5E0-414B-84E8-DD83D0C283FC} - System32\Tasks\HPCustParticipation HP Deskjet 2540 series => C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPCustPartic.exe [2013-08-13] (Hewlett-Packard Co.) Task: {8DA0A455-E01C-4CBA-9E6B-CF6DEF77FB3D} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-5 -> No File <==== ATTENTION Task: {940C0DE2-E56D-43A5-B5D7-61F2FC8DD25D} - \SmartWeb Upgrade Trigger Task -> No File <==== ATTENTION Task: {9DB4B81B-CFE1-42B9-A58D-35AA2A8DBD61} - System32\Tasks\{1E29C45F-ED0E-4FE7-8B34-BE2BA9231EF4} => pcalua.exe -a C:\Users\Gaëlle\Downloads\setup-adsltv.exe -d C:\Users\Gaëlle\Downloads Task: {9E304917-9A2E-4471-9CF7-BF3BC04991B3} - \Programme de mise à jour en ligne de HP. -> No File <==== ATTENTION Task: {9EE352F2-90A2-4276-BBA3-DA11EA838740} - System32\Tasks\sab3009 => C:\PROGRA~2\FastSearch\sab3009.exe Task: {9F17F46D-41E5-43FA-BA09-D34F1B3996B0} - System32\Tasks\{C3500DD0-2B3E-4ECB-BA72-CC1B4A8F8736} => C:\Program Files\Alwil Software\Avast5\AvastUI.exe Task: {9FA8CFF2-CCBB-4EE5-BE5F-FB50D48DA01A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {A41521A3-6807-4CA7-A42A-2382F4EAB98A} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-6 -> No File <==== ATTENTION Task: {A807891C-CA82-4C0E-8F33-44F6AC9BF4B5} - \Crossbrowse -> No File <==== ATTENTION Task: {C388413C-74F9-466B-9232-4AD280FB5695} - \Plus-HD-3.5-codedownloader -> No File <==== ATTENTION Task: {C5C5912D-B736-4032-9174-FA2A1A4FD1FF} - System32\Tasks\RsDelayLauncher_{8A34248E-7D35-4832-8378-7659E0B0A380} => C:\Program Files (x86)\Rising\RAV\rsdelaylauncher.exe Task: {CAC05D7F-1B93-45DD-847A-22FB4E1751A1} - System32\Tasks\ASC8_SkipUac_Gaëlle => C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [2014-12-10] (IObit) Task: {CC5166EB-5059-4619-94BC-63C0D89DE8FA} - System32\Tasks\{3457DD57-7C3C-490A-9054-24D36B4E0BAF} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2011-11-11] (Microsoft Corporation) Task: {CE581717-B018-4128-B9A4-48FFAAEA4D74} - System32\Tasks\{08294637-C354-4026-B6DF-A5F96A335A7E} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2011-11-11] (Microsoft Corporation) Task: {CF344B19-59D9-4527-8857-7355DB839674} - \WordSurfer Auto Updater 1.10.0.19 Pending Update -> No File <==== ATTENTION Task: {D0BA5F1D-C7F8-4C81-9BD4-0C76BFF316B7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {D52B2735-9471-4033-98BC-A6B8C2C60E57} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-3 -> No File <==== ATTENTION Task: {D70AFDC7-5ED0-4236-A77B-EFA760F53392} - System32\Tasks\NCH Software\ExpressZipDowngrade => C:\Program Files (x86)\NCH Software\ExpressZip\expresszip.exe [2013-08-10] (NCH Software) Task: {D8843B37-3691-494C-9355-477688144A2F} - \0a9f3e37-1e2d-4741-98d6-c77ab501a0cb-1-6 -> No File <==== ATTENTION Task: {DF020CB1-2719-483A-9E5F-2BF41395A04B} - \Optscan -> No File <==== ATTENTION Task: {EAD86C36-BE0A-4D5A-A1A2-F15D951E5560} - System32\Tasks\{55DC417B-3843-4CA5-A81E-3DFB3BED5B18} => pcalua.exe -a c:\users\gaëlle\appdata\local\lollipop\lollipop.bat Task: {EADC07FF-C15C-49E7-9A3C-3B0986F19719} - System32\Tasks\Programme de mise à jour en ligne de DivX => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-02-13] () Task: {EF1A2F8F-33E1-483C-9AFA-494DB9B5E746} - System32\Tasks\{4B5C44F1-3F01-4AC7-B362-222AB2967FC2} => pcalua.exe -a C:\Users\Gaëlle\AppData\Roaming\istartsurf\UninstallManager.exe -c -ptid=pcs Task: {F71369B2-1C08-47F3-B5B6-E37D2148C437} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-06-26] (Adobe Systems Incorporated) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\C64039E2-B731-447A-93A7-9EF8C322CE2.job => C:\Users\Gaëlle\AppData\Local\C64039E2-B731-447A-93A7-9EF8C322CE2\C64039E2-B731-447A-93A7-9EF8C322CE2.exe ==================== Loaded Modules (Whitelisted) ============== ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\ProgramData\Temp:D1B5B4F1 ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ad-Aware Service => ""="Ad-Aware Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MSIServer => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\QQPCRTP => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SBAMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ad-Aware Service => ""="Ad-Aware Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\QQPCRTP => ""="service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SBAMSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-473859184-546379200-1655659134-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Gaëlle\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) MSCONFIG\Services: Ad-Aware Service => 2 MSCONFIG\Services: AdobeARMservice => 2 MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3 MSCONFIG\Services: AdvancedSystemCareService8 => 2 MSCONFIG\Services: AESTFilters => 2 MSCONFIG\Services: Apple Mobile Device => 2 MSCONFIG\Services: Bonjour Service => 2 MSCONFIG\Services: bthserv => 3 MSCONFIG\Services: c2cautoupdatesvc => 2 MSCONFIG\Services: c2cpnrsvc => 2 MSCONFIG\Services: Fax => 3 MSCONFIG\Services: GameConsoleService => 3 MSCONFIG\Services: gupdate => 2 MSCONFIG\Services: HP Support Assistant Service => 2 MSCONFIG\Services: hpqwmiex => 3 MSCONFIG\Services: iPod Service => 3 MSCONFIG\Services: McComponentHostService => 3 MSCONFIG\Services: MozillaMaintenance => 3 MSCONFIG\Services: SBAMSvc => 2 MSCONFIG\Services: seclogon => 3 MSCONFIG\Services: SkypeUpdate => 2 MSCONFIG\Services: ST2012_Svc => 2 MSCONFIG\Services: WPCSvc => 3 MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk => C:\Windows\pss\McAfee Security Scan Plus.lnk.CommonStartup MSCONFIG\startupreg: Advanced SystemCare 8 => "C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto MSCONFIG\startupreg: AppleIEDAV => C:\Program Files (x86)\Common Files\Apple\Internet Services\AppleIEDAV.exe MSCONFIG\startupreg: ApplePhotoStreams => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: HP Software Update => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe MSCONFIG\startupreg: HPADVISOR => C:\Program Files (x86)\Hewlett-Packard\HP Advisor\HPAdvisor.exe view=DOCKVIEW MSCONFIG\startupreg: iCloudServices => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: LightScribe Control Panel => C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden MSCONFIG\startupreg: NortonOnlineBackupReminder => "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: QlbCtrl.exe => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start MSCONFIG\startupreg: QPService => "C:\Program Files (x86)\HP\QuickPlay\QPService.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: RSDTRAY => "C:\Program Files (x86)\Rising\RSD\popwndexe.exe" MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun MSCONFIG\startupreg: SpywareTerminatorUpdater => C:\Program Files (x86)\Spyware Terminator\SpywareTerminatorUpdate.exe MSCONFIG\startupreg: SynTPEnh => %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe MSCONFIG\startupreg: WirelessAssistant => C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{DB860501-7B84-4362-9EA4-79DF7E8391CE}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector\PDR.EXE FirewallRules: [{AA074CB1-5F08-43F2-AC40-4B0F3C9B2DD5}] => (Allow) C:\Program Files (x86)\HP\QuickPlay\QP.exe FirewallRules: [{F0B8D476-F6D0-463B-84C5-A5DE1BE39E25}] => (Allow) C:\Program Files (x86)\HP\QuickPlay\QPService.exe FirewallRules: [{332D63F5-8ACF-4AC0-92A2-23A01CD616DF}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe FirewallRules: [TCP Query User{42AA39F0-3A2F-44A8-B8D5-F251CAFCA096}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [UDP Query User{B00AB1F5-8C4D-4B46-ACA7-6E3DB419730E}C:\program files (x86)\internet explorer\iexplore.exe] => (Block) C:\program files (x86)\internet explorer\iexplore.exe FirewallRules: [{F1A7363B-7972-498C-95A5-79E8948FA1B0}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{394A5B02-0529-4D2A-98FB-62EF68D3B55E}] => (Allow) C:\Program Files (x86)\Opera\opera.exe FirewallRules: [{3121B509-9746-4457-9BB7-779C52EDD08E}] => (Allow) svchost.exe FirewallRules: [TCP Query User{2CEA6D7B-3EA1-4F74-BA2B-3890C6F02448}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe FirewallRules: [UDP Query User{263F8BF0-E0D2-4237-9C89-0358AF58D2CB}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe FirewallRules: [{1EDA60E6-3385-4873-8842-2A0A1E883CDE}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{33230B9C-B123-48B6-B8A5-6CC7DAB80C9C}] => (Allow) LPort=2869 FirewallRules: [{E316BA5D-FF45-4961-859D-538BA21A8EB0}] => (Allow) LPort=1900 FirewallRules: [{771E7DC9-51D8-47EE-9BAA-D05932B09329}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{2A8CA24D-BD3D-45E4-B428-90313997B48D}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{8FDD9176-2065-4F6E-83E0-C5CFA95A016A}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [{8E1BABEA-3E87-4EE1-AD28-2B789B7DCE94}] => (Allow) C:\Windows\SysWOW64\msiexec.exe FirewallRules: [TCP Query User{A46804FE-673E-4C1A-B2DA-BEBD6859E6D9}C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe] => (Block) C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe FirewallRules: [UDP Query User{DA3075C6-767A-4506-AAF7-17DA0A4C006C}C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe] => (Block) C:\program files (x86)\spyware terminator\spywareterminatorupdate.exe FirewallRules: [{0C9D90BC-2C81-48BB-A62B-1A805415EFFB}] => (Allow) C:\Program Files (x86)\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe FirewallRules: [{EFA1F8F2-3BB2-4AEA-AA5A-D1D79224DCA0}] => (Allow) C:\Program Files (x86)\Research In Motion\BlackBerry Desktop\Rim.Desktop.exe FirewallRules: [{29432099-567E-4E68-8CCC-CA30A7DD75AC}] => (Allow) LPort=4481 FirewallRules: [{839D5866-7E45-4640-BFDD-EE923F9FD700}] => (Allow) LPort=4481 FirewallRules: [{02F17441-66FA-4170-8964-3C1B1C1D58C2}] => (Allow) LPort=4482 FirewallRules: [{21428F83-F68A-4B44-95D7-72879257909D}] => (Allow) LPort=4482 FirewallRules: [TCP Query User{E8FBCF5B-CF09-4D0D-A722-6D66152BBD40}C:\users\gaëlle\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\gaëlle\appdata\roaming\wuala\wuala.exe FirewallRules: [UDP Query User{29D2E6D9-32F5-4F80-9FF6-E64639A95B98}C:\users\gaëlle\appdata\roaming\wuala\wuala.exe] => (Allow) C:\users\gaëlle\appdata\roaming\wuala\wuala.exe FirewallRules: [TCP Query User{7F8CC51A-860F-4923-8352-0897E48F1EB5}C:\program files (x86)\sfr\mediacenter evolution\mediacenter.exe] => (Block) C:\program files (x86)\sfr\mediacenter evolution\mediacenter.exe FirewallRules: [UDP Query User{2A50792E-4220-4FC4-9B9F-47AF340686CC}C:\program files (x86)\sfr\mediacenter evolution\mediacenter.exe] => (Block) C:\program files (x86)\sfr\mediacenter evolution\mediacenter.exe FirewallRules: [{D8B4BC59-A95E-4AB6-9C1D-639AE28B100E}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\DeviceSetup.exe FirewallRules: [{2791E2C9-F0D5-4CBC-A6F8-BE3DA8F51805}] => (Allow) LPort=5357 FirewallRules: [{4ED3F891-576C-435A-92D8-F54864306B17}] => (Allow) C:\Program Files\HP\HP Deskjet 2540 series\Bin\HPNetworkCommunicatorCom.exe FirewallRules: [{82CB384A-F2E8-4202-8C5B-6D1B351D7911}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{314B4D8D-6301-426D-A084-E1EAFC2370B1}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{0DE14BFC-4661-4DB8-9C5A-8F197A12D8EC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{3B5DFA77-EA8D-401B-AC0F-4C80C42D7719}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{F724C3D0-A380-4122-969B-FBC9139BDBA5}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{76138D7D-79DD-4420-9060-17BCE1FF6264}] => (Allow) C:\Program Files (x86)\SFR\Mediacenter Evolution\MediaCenter.exe FirewallRules: [{A818753D-5B15-464E-8448-18B6714EE92E}] => (Allow) C:\Program Files (x86)\SFR\Mediacenter Evolution\MediaCenter.exe FirewallRules: [{F329AC42-DBB6-4B41-A25D-4BA7381A9303}] => (Allow) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe FirewallRules: [{5E85F54C-F87F-4A30-947A-CC1EF1B3B8D7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{D827BD0A-E851-4305-9770-E617FEE553B1}] => (Allow) C:\Program Files (x86)\Max Driver Updater\maxdu.exe FirewallRules: [{7F27B56A-607A-48B8-8E8E-3A1D5C3227CC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{8597F5CA-76AF-42FD-BD4E-C316EFB333DA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{17EE6EC7-0F49-4EFF-8C00-EBA63BFD9221}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe FirewallRules: [{F3D9867F-9DB9-45A6-BA4A-D572CF29B2D3}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer.exe FirewallRules: [{05578FA0-986B-4ADC-AAD1-C1106CFCFBC2}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe FirewallRules: [{34AA3E34-6A69-45BC-820F-FE86BA4DAA71}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe FirewallRules: [{EF438B9E-8A52-4452-B2D2-23A0EE7B3A67}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe FirewallRules: [{45E0DCD1-2E70-4A97-80A2-437D7E841C90}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe FirewallRules: [{B0C95F95-8FB4-4171-A8B2-CA504948264D}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe FirewallRules: [{E42A51A6-F30F-4F95-8CB2-7E5E15AE8E14}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCmgrInstallGuide.exe FirewallRules: [{41D271DD-8751-4DE8-BD2F-F7D123A0644F}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCTray.exe FirewallRules: [{F756619A-52B8-4C68-A35A-03A9F5DE7930}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCMgr.exe FirewallRules: [{703E1FE8-3C2D-4D03-98BE-0184254F2884}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCRTP.exe FirewallRules: [{61A50B17-2311-4CA4-8BDA-C784FFCE9B36}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QMDL.exe FirewallRules: [{6163A53D-7FCE-4EDB-8615-6639D35DD299}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\bugreport.exe FirewallRules: [{7CD78784-3834-4CA6-B5A4-78B21CDA9944}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCFileOpen.exe FirewallRules: [{B61CA8A6-5F6B-4D71-B2C6-75144B45B82A}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCLeakScan.exe FirewallRules: [{2C9BB5C6-15E9-4078-A298-0C9A3C5BA3D1}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPConfig.exe FirewallRules: [{0C15F79D-FF5F-4A7E-9C80-9167A6AC1CE6}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCSoftMgr.exe FirewallRules: [{C7E7D32A-BBB1-4AC4-BAF5-11627E795973}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\plugins\QMNetMon\QQPCNetFlow.exe FirewallRules: [{66908433-7E3F-4347-A79B-93F086461CD0}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCBTU.exe FirewallRules: [{9BEC97F0-23DF-4642-A7EC-10D1496283ED}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCClinic.exe FirewallRules: [{EA8E0955-60B3-4E50-B50B-636D17B377E0}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCLaunch.exe FirewallRules: [{34B73B87-2858-496E-A35F-213D2DCCD350}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QMUpdate\QQPCMgrUpdate.exe FirewallRules: [{48C49B00-1306-4819-BC7E-D8B9C65174F8}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCSoftGame.exe FirewallRules: [{2DA213CF-EBCB-4DD7-A557-97C7F4AA461F}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCSysOptimize.exe FirewallRules: [{8A8FD1C2-01ED-46ED-89F3-9CB3A9C5A2A2}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCUpdateAVLib.exe FirewallRules: [{78B77D59-F4FF-46D2-A0D7-CDEFA0CFAFAB}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQRepair.exe FirewallRules: [{5424668D-9C17-42D2-ACAF-53A9F0257D14}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\Uninst.exe FirewallRules: [{069784D3-3F1D-49D6-81AD-1A0F74A07277}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QQPCPatch.exe FirewallRules: [{955C47C2-1EED-4C7F-8A82-184B04995D47}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\TpkUpdate.exe FirewallRules: [{7FE0FDA2-EB57-4D53-80B2-2C01234569E1}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\tencentdl.exe FirewallRules: [{CA82BC21-06C1-4D41-A1E4-9107F72A9BEF}] => (Allow) C:\program files (x86)\common files\tencent\qqdownload\130\bugreport_xf.exe FirewallRules: [{4380103A-2A0E-432C-B020-3D57742553CF}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QMRouterMgr.exe FirewallRules: [{646EE81A-9A0D-4382-8B6C-43676A632FB4}] => (Allow) C:\Program Files (x86)\Tencent\QQPCMgr\10.7.16066.216\QMAccountProtection.exe FirewallRules: [{B4860A70-ACBD-4180-BB26-C1F1EB370491}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\LStyle\QyUpdate.exe FirewallRules: [{C74D263E-2B9D-43DF-8A06-C3CFEB38A660}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe FirewallRules: [{87B4F0A5-9F36-40EF-8951-BCB13DD40A61}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe FirewallRules: [{DD53FEAB-5CEF-4156-BDCD-84479FAEE8E0}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe FirewallRules: [{4EC7CD8B-D443-4A21-8F80-786C17E73331}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe FirewallRules: [{AA79938D-E8C4-4F45-8AB9-913DB52E4909}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\LStyle\GpUpdate.exe FirewallRules: [{10F7C5C4-C899-4212-9CA2-40F400C947D5}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe FirewallRules: [{631D314E-C594-464B-BEEA-DD8842D33689}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\GeePlayer\GpUpdate.exe FirewallRules: [{23E5750C-66BE-419B-8F7F-4E65DC114B58}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe FirewallRules: [{D150CEAD-A011-45FE-8F3D-506CDB32B7CB}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\GeePlayer\GpUpdate.exe FirewallRules: [{65D137C0-1786-474D-84B9-FF3229542721}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe FirewallRules: [{193F68EB-FD4F-4D53-B37E-707F78A023A5}] => (Allow) C:\Users\Gaëlle\AppData\Roaming\IQIYI Video\GeePlayer\GpUpdate.exe FirewallRules: [{E54E8384-6F87-4146-A85D-5629DB2B93B9}] => (Allow) C:\IQIYI Video\GeePlayer\GeePlayer\GeePlayer.exe FirewallRules: [{76531CA0-76CF-4CF2-925F-E5EE82130B03}] => (Allow) C:\IQIYI Video\LStyle\QyClient.exe FirewallRules: [{B77D6D38-CCDB-485F-9C60-E7BFE6802B25}] => (Allow) C:\IQIYI Video\LStyle\QyWebPlayer.exe FirewallRules: [{CD0698DE-72BA-4CA2-ADCC-4909EC677953}] => (Allow) C:\IQIYI Video\Common\QyKernel.exe FirewallRules: [{0A6597EE-EB12-46CE-BFAD-0DB6C6D48A62}] => (Allow) C:\IQIYI Video\LStyle\QyPlayer.exe FirewallRules: [{E849106C-E9DC-4815-9995-E441D493E3FD}] => (Allow) C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe FirewallRules: [{AFCAB336-3239-478C-B15A-165B01507C0F}] => (Allow) C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe FirewallRules: [{FF929DE5-E1E3-4877-865C-68561F1C695C}] => (Allow) C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe FirewallRules: [{2BFEA143-46C1-4EBA-8F2D-C5947B852D87}] => (Allow) C:\Program Files (x86)\SFR\Media Center\httpd\httpd.exe ==================== Faulty Device Manager Devices ============= Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Teredo Tunneling Pseudo-Interface Description: Microsoft Teredo Tunneling Adapter Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: tunnel Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/09/2015 09:21:48 PM) (Source: MsiInstaller) (EventID: 11706) (User: Gaëlle-PC) Description: Product: Ad-Aware Antivirus -- Error 1706. No valid source could be found for product Ad-Aware Antivirus. The Windows Installer cannot continue. Error: (08/09/2015 08:47:44 PM) (Source: MsiInstaller) (EventID: 11706) (User: Gaëlle-PC) Description: Product: Ad-Aware Antivirus -- Error 1706. No valid source could be found for product Ad-Aware Antivirus. The Windows Installer cannot continue. Error: (08/09/2015 07:52:18 PM) (Source: MsiInstaller) (EventID: 11706) (User: Gaëlle-PC) Description: Product: Ad-Aware Antivirus -- Error 1706. No valid source could be found for product Ad-Aware Antivirus. The Windows Installer cannot continue. Error: (08/09/2015 03:04:47 PM) (Source: MsiInstaller) (EventID: 11706) (User: Gaëlle-PC) Description: Product: Ad-Aware Antivirus -- Error 1706. No valid source could be found for product Ad-Aware Antivirus. The Windows Installer cannot continue. Error: (08/09/2015 03:03:21 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Removed Microsoft Silverlight ; Erreur = 0x8007043c). Error: (08/09/2015 03:03:16 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Removed Microsoft Silverlight ; Erreur = 0x8007043c). Error: (08/09/2015 03:03:06 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Skype™ 7.6 supprimé ; Erreur = 0x8007043c). Error: (08/09/2015 03:03:05 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Removed Skype™ 7.6 ; Erreur = 0x8007043c). Error: (08/09/2015 03:02:02 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Removed Boxore Client ; Erreur = 0x8007043c). Error: (08/09/2015 03:02:00 PM) (Source: System Restore) (EventID: 8193) (User: ) Description: Échec de la création d’un point de restauration (Processus = C:\Windows\system32\msiexec.exe /V ; Description = Removed Boxore Client ; Erreur = 0x8007043c). System errors: ============= Error: (08/09/2015 11:04:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:04:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:04:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:04:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:04:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:04:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:02:51 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:02:51 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:02:51 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Error: (08/09/2015 11:02:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Le service Explorateur d’ordinateurs dépend du service Serveur qui n’a pas pu démarrer en raison de l’erreur : %%1068 Microsoft Office: ========================= Error: (01/16/2015 07:06:51 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 56 seconds with 0 seconds of active time. This session ended with a crash. Error: (01/16/2015 07:05:20 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 28 seconds with 0 seconds of active time. This session ended with a crash. Error: (01/16/2015 07:04:26 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 10 seconds with 0 seconds of active time. This session ended with a crash. Error: (12/23/2014 09:58:24 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 254 seconds with 0 seconds of active time. This session ended with a crash. Error: (11/02/2014 06:10:35 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 21 seconds with 0 seconds of active time. This session ended with a crash. Error: (08/18/2014 08:55:50 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 29 seconds with 0 seconds of active time. This session ended with a crash. Error: (08/16/2014 10:25:39 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 1778 seconds with 120 seconds of active time. This session ended with a crash. Error: (08/16/2014 09:55:42 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 1154 seconds with 120 seconds of active time. This session ended with a crash. Error: (08/11/2014 12:09:38 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 4909 seconds with 120 seconds of active time. This session ended with a crash. Error: (08/10/2014 07:11:42 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.6654.5003, Microsoft Office Version: 12.0.6612.1000. This session lasted 2478 seconds with 300 seconds of active time. This session ended with a crash. CodeIntegrity: =================================== Date: 2015-08-09 10:31:36.190 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:36.019 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:35.863 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:35.691 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:14.584 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:14.413 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:14.257 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:14.101 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:13.835 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. Date: 2015-08-09 10:31:13.664 Description: Windows ne peut pas vérifier l’intégrité d’image du fichier \Device\HarddiskVolume2\Users\GALLE~1\AppData\Local\Temp\catchme.sys, car le fichier à hacher est introuvable sur le système. Une modification matérielle ou logicielle récente a peut-être installé un fichier incorrectement signé ou endommagé ou il s’agit éventuellement d’un logiciel malveillant d’une source inconnue. ==================== Memory info =========================== Processor: Intel(R) Celeron(R) CPU 900 @ 2.20GHz Percentage of memory in use: 24% Total physical RAM: 3002.93 MB Available physical RAM: 2265.25 MB Total Virtual: 6004.07 MB Available Virtual: 5316.2 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:220.13 GB) (Free:38.09 GB) NTFS ==>[system with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:12.55 GB) (Free:2.1 GB) NTFS ==>[system with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 232.9 GB) (Disk ID: 7A4D8351) Partition 1: (Active) - (Size=199 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=220.1 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=12.6 GB) - (Type=07 NTFS) ==================== End of log ============================