ÿþOTL Extras logfile created on: 16/09/2016 22:33:34 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = E:\ 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.10586.0) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 3,92 Gb Total Physical Memory | 2,01 Gb Available Physical Memory | 51,34% Memory free 7,92 Gb Paging File | 6,03 Gb Available in Paging File | 76,14% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 111,45 Gb Total Space | 49,14 Gb Free Space | 44,09% Space Free | Partition Type: NTFS Drive D: | 19,37 Mb Total Space | 0,00 Mb Free Space | 0,00% Space Free | Partition Type: CDFS Drive E: | 7,45 Gb Total Space | 4,02 Gb Free Space | 53,93% Space Free | Partition Type: FAT32 Computer Name: AUDREY-PC | User Name: Audrey | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = A2 E5 82 77 5E 46 D1 01 [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = 87 59 B7 77 5E 46 D1 01 [binary data] "DontEnumerateCommonFilesUpgradeExe" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{21AE5BDE-00E9-44BE-98A7-D657D6D86AAA}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{8CAE4BDB-1D4B-41F1-8675-CA0F2349CEA9}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | "{C7B36955-47C2-4ABE-850A-37D85D14E72C}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{F5873F30-D25B-4CD9-BCAB-78CC195CC3E6}" = lport=6004 | protocol=17 | dir=in | app=c:\program files (x86)\microsoft office\root\office16\outlook.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{035DA1F6-C866-46B1-BE23-C3DA425164B0}" = dir=out | name=@{microsoft.getstarted_4.0.12.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} | "{0B8B5829-986A-46A1-B318-CE380AEE0DDA}" = dir=out | name=@{microsoft.zunevideo_3.6.23941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{0D048618-1839-4A9E-878B-17F9D8AF9999}" = dir=out | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{1508F9E1-A8FD-4800-B1D4-FD07F0D6D083}" = dir=out | name=@{microsoft.bingweather_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{15D3E275-C624-403A-AE57-D58A1CD6F36A}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} | "{15D63007-B4A3-4C4A-8009-7774F55E5D15}" = dir=in | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{16F43783-DAEA-4066-9357-603475FDB560}" = dir=out | name=@{windows.purchasedialog_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.purchasedialog/resources/displayname} | "{1EA11792-8E39-43B3-A95B-0B0DC22CE40B}" = dir=out | name=@{microsoft.bingsports_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} | "{20D17133-60F5-4630-9E5A-995671C67C44}" = dir=out | name=@{microsoft.zunemusic_3.6.23981.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{24FADDAD-803E-476D-9C57-0B3935E94BDA}" = dir=in | name=sway | "{27B21A3D-4939-456D-908A-2AF7C63DFCDF}" = dir=out | name=windowsdvdplayer | "{281DB103-260F-477A-AB7B-05746A3F2883}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} | "{287D0250-104F-448F-AEC6-B8ABACD81740}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} | "{289F7D64-C0D3-4F20-9B55-82EB82EE22F0}" = dir=out | name=@{microsoft.windows.photos_16.722.10060.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{2FB3851A-BFDA-49AD-816E-BBE909D6BFAB}" = dir=out | name=@{microsoft.lockapp_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} | "{355C3881-4249-41C7-A263-1C2634AE9EA6}" = dir=out | name=twitter | "{39B7446B-B31F-4765-8DAF-0EE276A7FC04}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{39F406A6-7C9B-4352-92D2-1E42C9DA7EF2}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{3B592C38-8EA9-4762-BA8C-C113BBF1C57B}" = dir=in | name=@{microsoft.microsoftofficehub_17.7319.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{400B9960-DDA4-4F87-BCA3-E419374FC5A5}" = dir=in | name=@{microsoft.bingweather_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{4128FEAF-C23F-496B-BE1C-DC246CEFD4EE}" = dir=out | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} | "{43C78643-3445-498E-BE66-536814FA9DB0}" = dir=out | name=@{microsoft.bingnews_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} | "{444099BB-1D48-4EFA-A7EF-5D18C137EAA5}" = dir=out | name=sway | "{49066343-6534-4E7D-88E6-DF7F08887552}" = dir=in | name=@{microsoft.zunevideo_3.6.23941.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{4AE101BC-A4D8-4BD8-881D-DD8B6EBBDF6B}" = dir=out | name=xbox | "{4DFB8393-EF8A-4A07-B768-0E5B4C254195}" = dir=in | name=@{microsoft.messaging_2.15.20002.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.messaging/microsoft.apps.messaging.skype/skypemessaging.resources/skype_appstorename} | "{4E75D624-3907-408F-B02A-DA90E879844D}" = dir=in | name=@{microsoft.zunemusic_3.6.23981.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{52DBDD76-ABAC-479A-8A37-F4EBB045AB4F}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.7167.40721.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} | "{57952623-6E7B-46D0-882C-2C1964ACFF23}" = dir=out | name=@{microsoft.bingfinance_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} | "{5C57CE00-B71A-4597-8D7D-E30EA4B8326E}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{5D5506EF-D74F-48EC-AAB9-F06C94A45A7E}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\av\avgnsa.exe | "{5E3254CA-3288-40E7-843C-EC9426F68CFA}" = dir=out | name=@{microsoft.commsphone_2.17.27003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{5F84FE90-2C14-412E-8CC3-B7252E68E786}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\av\avgmfapx.exe | "{61667ED3-67BF-4050-97C6-43A8C7C099D3}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{63F4835C-E48A-4F4A-92F6-3AD31E91A60F}" = dir=in | name=@{microsoft.windowsstore_11602.1.26.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{68F3649E-BF94-4A71-9412-F151C8122E53}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | "{6F1CB711-1E3A-4A72-B001-B0051CA738FA}" = dir=out | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} | "{764F906C-1F62-445B-9079-80755EE5E862}" = dir=out | name=@{microsoft.windowsmaps_5.1608.2310.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} | "{798DE356-F413-4436-96F6-59E44D81972B}" = dir=out | name=@{microsoft.windowsfeedback_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windowsfeedback/feedbackapp.resources/appname/text} | "{7A6AEA04-3112-41F6-B634-68E558F6819D}" = dir=in | name=@{microsoft.bingfinance_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} | "{7BD6F3DC-FC6F-4FF5-8E54-A6F3BB75904D}" = dir=in | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{7CA6EA3D-F140-4808-9D33-2C525CBBACAA}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{7E6DB2B1-B9A0-46B6-9A62-AAE8F787DCE0}" = dir=out | name=@{microsoft.people_10.0.11902.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} | "{9237B84F-E139-4508-94F5-3F8A15C8067A}" = dir=out | name=windows_ie_ac_001 | "{97F5683C-017E-48B9-8BE5-476DCFD38CA9}" = dir=out | name=@{microsoft.accountscontrol_10.0.10586.0_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} | "{9CAE76D5-6AB4-4418-ADB6-E9269418B921}" = protocol=17 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{9CD12C47-5E81-410C-A25A-84AC58B1626B}" = dir=in | app=c:\program files\itunes\itunes.exe | "{9CE08775-928B-439D-A2C5-1CC15CD7FBAA}" = dir=in | name=microsoft solitaire collection | "{9EEFF120-6B9A-4F2A-9DC1-A1A3A552B959}" = dir=in | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} | "{9EFCE4D6-EA76-4B7F-8177-4C6B34A9EBF9}" = dir=in | name=@{microsoft.bingnews_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} | "{A84315AA-8A04-4AE2-B7D1-9F5B7DE11E2B}" = dir=out | name=@{microsoft.windowsphone_10.1608.2211.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} | "{ACD45194-9843-41E7-AC6F-D1170184E9AC}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{ADC8E076-E332-43BF-AEA4-E65D0C929954}" = dir=out | name=@{microsoft.microsoftedge_25.10586.0.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{AF970091-C294-4AC1-ABC0-5F433451BBB0}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.7167.40721.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxcommintl/appmanifest_outlookdesktop_displayname} | "{B62FAA60-6F37-44AF-894C-16C73C7D25B3}" = dir=out | name=@{microsoft.microsoftofficehub_17.7319.23511.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{B7259DF4-6C27-43E2-B438-CCC6C0C8B8E1}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} | "{BB1CF998-2587-4B0B-B97A-263084416A86}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\av\avgemca.exe | "{BE8C74C8-2740-4B69-83C6-E32DA8F8A9DC}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\av\avgdiagex.exe | "{C0F5A329-807D-43EB-9D1D-E796EA9C9BE7}" = dir=in | name=@{microsoft.windows.photos_16.722.10060.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{C1BCE606-98BE-43C3-98D4-59329CCCAC6F}" = dir=in | name=@{microsoft.bingsports_4.13.47.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} | "{C26D6FE2-E961-4154-9E65-DCD7576223E9}" = dir=out | name=@{microsoft.windows.cortana_1.6.1.52_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/displayname} | "{CA17DC62-0908-42BF-93F8-873BC2DF110B}" = protocol=17 | dir=in | app=c:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe | "{CACAB2F1-23D6-48B5-942F-15EEF906CE35}" = protocol=6 | dir=in | app=c:\program files (x86)\mozilla firefox\firefox.exe | "{CEBFBB9F-06F5-4621-B013-E1CC05F721D6}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\av\avgdiagex.exe | "{CFDACC0A-89D2-4B2A-890C-7007D1BBA3A7}" = dir=out | name=microsoft solitaire collection | "{D5A37EE4-1C25-4BF9-B6CA-6A26073A6EDE}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\av\avgnsa.exe | "{D621E646-0C8D-48DA-AA05-5B666F3749F5}" = dir=in | name=xbox | "{D8C6026B-BAF2-440D-B5AB-E85D16B5A1EC}" = dir=in | name=@{windows.contactsupport_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://windows.contactsupport/resources/appdisplayname} | "{DA70C2B7-30FD-42D2-AF91-C900EBBBD1D2}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\av\avgemca.exe | "{DC7409EC-3681-4B3D-B3B4-29C828C33D04}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\av\avgmfapx.exe | "{DF4BCBC4-13A5-483E-966A-70B4C9C60C5E}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.10586.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{E138EAA7-3016-43D6-92D1-D0E485D6A82A}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | "{E2DBF54B-8483-4ADE-B289-DDD00730A0AD}" = dir=in | name=onenote | "{E9441DCC-F0C2-4D7A-B777-C126ED79F472}" = dir=out | name=onenote | "{EAF0DC75-8FDE-4FC4-BB6C-8FD787F0A109}" = dir=out | name=@{microsoft.xboxidentityprovider_1000.10586.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxidentityprovider/resources/pkgdisplayname} | "{EBFEE270-E105-4751-8334-859ECF28C0EE}" = protocol=6 | dir=in | app=c:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe | "{EE822CF5-EBC3-4B01-A5AA-C1BD11E53406}" = dir=out | name=@{microsoft.3dbuilder_11.1.9.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.3dbuilder/resources/appstorename} | "TCP Query User{258C0CA7-1D45-48AF-9143-EB3FCE0F879A}C:\users\audrey\appdata\local\skypeplugin\pluginhost.exe" = protocol=6 | dir=in | app=c:\users\audrey\appdata\local\skypeplugin\pluginhost.exe | "TCP Query User{8F593439-E31F-4762-9A73-EBA18C92DA1E}C:\users\audrey\appdata\local\skypeplugin\pluginhost.exe" = protocol=6 | dir=in | app=c:\users\audrey\appdata\local\skypeplugin\pluginhost.exe | "TCP Query User{B5F513DA-CAF3-4868-B005-7C9A1E9EF91C}C:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{E7DE2E81-E33B-46B6-AEC1-D9BFF823B3D2}C:\users\audrey\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\audrey\appdata\roaming\spotify\spotify.exe | "TCP Query User{FF5CE32A-9686-4C4A-971D-4B4BB0D67078}C:\users\audrey\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\audrey\appdata\roaming\spotify\spotify.exe | "UDP Query User{4CCA074D-EB4A-48CF-B768-E467CF7861D9}C:\users\audrey\appdata\local\skypeplugin\pluginhost.exe" = protocol=17 | dir=in | app=c:\users\audrey\appdata\local\skypeplugin\pluginhost.exe | "UDP Query User{5F657B6E-60B7-4C70-9D09-141DAD305207}C:\users\audrey\appdata\local\skypeplugin\pluginhost.exe" = protocol=17 | dir=in | app=c:\users\audrey\appdata\local\skypeplugin\pluginhost.exe | "UDP Query User{68FEAEE1-3B4B-484C-9FAD-C2D41BB88C3E}C:\users\audrey\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\audrey\appdata\roaming\spotify\spotify.exe | "UDP Query User{A3DBB90E-D691-4691-AAF5-7107EDE5D93B}C:\users\audrey\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\audrey\appdata\roaming\spotify\spotify.exe | "UDP Query User{CB21E173-1A6F-4889-BE8D-4CD26FC60F0F}C:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\audrey\appdata\roaming\dropbox\bin\dropbox.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{09FF89AD-A8C5-358C-A807-B07F4A50DE9E}" = Microsoft .NET Framework 4.5.2 (FRA) "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{25E80DAA-FD87-DCE5-202C-CC02F6673002}" = Microsoft DVD App Installation for Microsoft.WindowsDVDPlayer_2019.6.13291.0_neutral_~_8wekyb3d8bbwe (x64) "{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2 "{2E4AF2A6-50EA-4260-9BA4-5E582D11879A}" = Apple Mobile Device Support "{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}" = Bonjour "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables "{8D0A0EC6-9A3C-354F-9BFC-A61E96BE1846}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA "{90160000-008F-0000-1000-0000000FF1CE}" = Office 16 Click-to-Run Licensing Component "{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "{955524E7-79EB-4CA9-BA4D-FD2DF587651B}" = iTunes "{A6B0442B-E159-444B-B49D-6B9AC531EAE3}" = Apple Application Support (64 bits) "{D18996D6-F390-4040-9890-A6DC3E171A15}" = AVG 2015 "{D4815E16-D427-4BC0-8949-DA2EA0DB2D50}" = AVG 2015 "75BD84FDFF77342C2A347F729669CBD84CE11B04" = Package de pilotes Windows - OLYMPUS IMAGING CORP. (VNUSB) VNUSB (09/29/2009 2.0.0.0) "AirplaneModeHid" = Insyde Airplane Mode HID Mini-Driver "CCleaner" = CCleaner "Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) "Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - FRA" = Module linguistique Microsoft Visual Studio 2010 Tools pour Office Runtime (x64) - FRA "O365HomePremRetail - fr-fr" = Microsoft Office 365 - fr-fr "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{164714B6-46BC-4649-9A30-A6ED32F03B5A}" = Hotkey 6.0046 "{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype"! 7.4 "{56EC47AA-5813-4FF6-8E75-544026FBEA83}" = Apple Software Update "{5E5B067F-52A4-447E-A3F1-D6DD10565E73}" = Airplane Mode Hid Installer "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}" = Avira Launcher "{8CC8333A-AC85-4E68-88BB-4E3452CE4981}" = Avira Launcher "{90160000-008C-0000-0000-0000000FF1CE}" = Office 16 Click-to-Run Extensibility Component "{90160000-008C-040C-0000-0000000FF1CE}" = Office 16 Click-to-Run Localization Component "{9395F41D-0F80-432E-9A59-B8E477E7E163}" = OpenOffice 4.1.1 "{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-0804-1033-1959-000182420219}" = Adobe Refresh Manager "{AC76BA86-7AD7-1036-7B44-AC0F074E4100}" = Adobe Acrobat Reader DC - Français "{D4B07658-F443-4445-A261-E643996E139D}" = Apple Application Support (32 bits) "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{FB91E774-867B-4567-ACE7-8144EF036068}" = Olympus Digital Wave Player "Adobe Flash Player NPAPI" = Adobe Flash Player 23 NPAPI "Avira AntiVir Desktop" = Avira Free Antivirus "Google Chrome" = Google Chrome "InstallShield_{164714B6-46BC-4649-9A30-A6ED32F03B5A}" = Hotkey 6.0046 "InstallShield_{5E5B067F-52A4-447E-A3F1-D6DD10565E73}" = Airplane Mode Hid Installer "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware version 2.2.1.1043 "Mozilla Firefox 47.0.1 (x86 fr)" = Mozilla Firefox 47.0.1 (x86 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "VLC media player" = VLC media player "WinRAR archiver" = WinRAR 5.31 (32-bit) [color=#E56717]========== HKEY_CURRENT_USER Uninstall List ==========[/color] [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "Spotify" = Spotify [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 14/07/2016 06:41:29 | Computer Name = Audrey-PC | Source = .NET Runtime | ID = 1026 Description = Error - 14/07/2016 06:41:30 | Computer Name = Audrey-PC | Source = Application Error | ID = 1000 Description = Nom de l application défaillante Avira.OE.Systray.exe, version : 1.1.25.25617, horodatage : 0x5447ad92 Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.494, horodatage : 0x5775e78b Code d exception : 0xe0434352 Décalage d erreur : 0x000bdae8 ID du processus défaillant : 0x1c28 Heure de début de l application défaillante : 0x01d1ddbc4739e61d Chemin d accès de l application défaillante : C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe Chemin d accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 2b19a2ff-ae2e-4e48-897b-b1f7ef9babf0 Nom complet du package défaillant : ID de l application relative au package défaillant : Error - 14/07/2016 07:04:26 | Computer Name = Audrey-PC | Source = .NET Runtime | ID = 1026 Description = Error - 14/07/2016 07:04:27 | Computer Name = Audrey-PC | Source = Application Error | ID = 1000 Description = Nom de l application défaillante Avira.OE.ServiceHost.exe, version : 1.1.25.25607, horodatage : 0x5447ad7e Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.494, horodatage : 0x5775e78b Code d exception : 0xe0434352 Décalage d erreur : 0x000bdae8 ID du processus défaillant : 0x8a4 Heure de début de l application défaillante : 0x01d1ddbf799c3b4c Chemin d accès de l application défaillante : C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe Chemin d accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 9f024235-616b-4bb1-b9ef-b18e85569870 Nom complet du package défaillant : ID de l application relative au package défaillant : Error - 14/07/2016 07:04:37 | Computer Name = Audrey-PC | Source = .NET Runtime | ID = 1026 Description = Error - 14/07/2016 07:04:38 | Computer Name = Audrey-PC | Source = Application Error | ID = 1000 Description = Nom de l application défaillante Avira.OE.ServiceHost.exe, version : 1.1.25.25607, horodatage : 0x5447ad7e Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.494, horodatage : 0x5775e78b Code d exception : 0xe0434352 Décalage d erreur : 0x000bdae8 ID du processus défaillant : 0x17d0 Heure de début de l application défaillante : 0x01d1ddbf82d05e42 Chemin d accès de l application défaillante : C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe Chemin d accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : bc7282ed-d3fa-4638-b570-67d894beb8c9 Nom complet du package défaillant : ID de l application relative au package défaillant : Error - 14/07/2016 07:04:48 | Computer Name = Audrey-PC | Source = .NET Runtime | ID = 1026 Description = Error - 14/07/2016 07:04:48 | Computer Name = Audrey-PC | Source = Application Error | ID = 1000 Description = Nom de l application défaillante Avira.OE.ServiceHost.exe, version : 1.1.25.25607, horodatage : 0x5447ad7e Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.494, horodatage : 0x5775e78b Code d exception : 0xe0434352 Décalage d erreur : 0x000bdae8 ID du processus défaillant : 0x1bd8 Heure de début de l application défaillante : 0x01d1ddbf89487e08 Chemin d accès de l application défaillante : C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe Chemin d accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : 47ae85a5-04b8-4860-9f8e-fe5571c2bc52 Nom complet du package défaillant : ID de l application relative au package défaillant : Error - 14/07/2016 07:04:57 | Computer Name = Audrey-PC | Source = .NET Runtime | ID = 1026 Description = Error - 14/07/2016 07:04:57 | Computer Name = Audrey-PC | Source = Application Error | ID = 1000 Description = Nom de l application défaillante Avira.OE.Systray.exe, version : 1.1.25.25617, horodatage : 0x5447ad92 Nom du module défaillant : KERNELBASE.dll, version : 10.0.10586.494, horodatage : 0x5775e78b Code d exception : 0xe0434352 Décalage d erreur : 0x000bdae8 ID du processus défaillant : 0x13e4 Heure de début de l application défaillante : 0x01d1ddbf8ebe2c45 Chemin d accès de l application défaillante : C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe Chemin d accès du module défaillant: C:\WINDOWS\SYSTEM32\KERNELBASE.dll ID de rapport : ab4e2510-eb49-4203-a00e-3d3c968263a2 Nom complet du package défaillant : ID de l application relative au package défaillant : [ System Events ] Error - 16/09/2016 15:35:26 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Stockage des données utilisateur_69cbb46 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 15:35:26 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Accès aux données utilisateur_69cbb46 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 15:42:42 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7001 Description = Le service NetTcpActivator dépend du service NetTcpPortSharing qui n a pas pu démarrer en raison de l erreur : %%1058 Error - 16/09/2016 15:45:01 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l attente de la réponse transactionnelle du service avgsvc. Error - 16/09/2016 16:14:19 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Hôte de synchronisation_132cc0 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 16:14:19 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Données de contacts_132cc0 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 16:14:19 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Stockage des données utilisateur_132cc0 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 16:14:19 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7031 Description = Le service Accès aux données utilisateur_132cc0 s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 10000 millisecondes : Redémarrer le service. Error - 16/09/2016 16:22:12 | Computer Name = Audrey-PC | Source = Service Control Manager | ID = 7001 Description = Le service NetTcpActivator dépend du service NetTcpPortSharing qui n a pas pu démarrer en raison de l erreur : %%1058 Error - 16/09/2016 16:31:44 | Computer Name = Audrey-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20 Description = Échec de l installation : l installation de la mise à jour suivante a échoue avec l erreur 0x8024200d : Mise à jour de fonctionnalité vers Windows 10, version 1607. < End of report >