ÿþOTL Extras logfile created on: 03/02/2018 10:07:16 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Alexandre\Desktop 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.16299.0) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 3,95 Gb Total Physical Memory | 2,56 Gb Available Physical Memory | 64,66% Memory free 9,81 Gb Paging File | 8,36 Gb Available in Paging File | 85,16% Paging File free Paging file location(s): c:\pagefile.sys 6000 8000 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 685,16 Gb Total Space | 627,66 Gb Free Space | 91,61% Space Free | Partition Type: NTFS Computer Name: DESKTOP-KRV0N4F | User Name: Alexandre | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\IEXPLORE.EXE (Microsoft Corporation) [HKEY_USERS\S-1-5-21-2542342282-3666978062-295169699-1002\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML-308046B0AF4A39CB] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\WINDOWS\system32\rundll32.exe" "C:\WINDOWS\system32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation) Directory [UpdateEncryptionSettings] -- Reg Error: Key error. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation) Directory [UpdateEncryptionSettings] -- Reg Error: Key error. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\IEXPLORE.EXE" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 90 27 57 A4 DB 86 D3 01 [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{072634A7-6A88-467F-ADBC-250B7C5D9868}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{076D4F39-092B-475B-9316-AF41DF88193C}" = dir=out | name=@{microsoft.storepurchaseapp_11801.1801.19001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} | "{0A3153FD-6315-41C8-8266-C46F52B1669F}" = dir=out | name=@{microsoft.microsoftofficehub_17.8830.7600.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{0F607DA6-BF2E-4BD8-9D32-435D3F442784}" = dir=out | name=windows_ie_ac_001 | "{106A2245-9F5A-4825-9447-C3E3C89F4C98}" = dir=in | name=@{a278ab0d.marchofempires_3.0.0.12_x86__h6adky7gbf63m?ms-resource://a278ab0d.marchofempires/resources/marchofempires} | "{10EDB956-9A82-4317-AEE2-470B2CCF692D}" = dir=out | name=@{microsoft.people_10.3.3472.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} | "{14C2BE6D-DCF4-43F3-B15B-CD987AB9882F}" = dir=in | name=@{microsoft.desktopappinstaller_1.0.12894.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} | "{14EFE037-49BB-403D-8189-196D6276A44C}" = dir=in | name=hp smart | "{1C4A4856-E902-479B-82FF-0D3824A43706}" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "{1FB813B9-920F-4C54-A329-DCE1FBD41161}" = dir=out | name=@{microsoft.bingfinance_4.22.3254.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/applicationtitlewithbranding} | "{20ED3AAF-80A3-44CE-AEB2-F9D3AE216B8C}" = dir=out | name=hp smart | "{2329CBE1-390A-45B1-BC15-A9E524F32165}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} | "{234C0D45-D2D9-4232-B81E-93C167112218}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{23807DEC-F13B-4EBD-831B-A9E85F4FC211}" = dir=out | name=plex | "{253CAA25-DED8-4ED8-8950-3F8FED345001}" = dir=in | name=print 3d | "{26A1FE7D-A32C-4E88-A094-4E06A14BE805}" = dir=in | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} | "{28176FA9-2D9A-45D1-991F-A6510880A0C1}" = dir=out | name=@{microsoft.zunemusic_10.18011.12711.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{28C01ED9-9FB0-47BD-9F40-3C4ABD0425F5}" = dir=out | name=@{microsoft.mspaint_4.1801.19027.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.mspaint/resources/appname} | "{2B5DE532-5571-4A3F-9A80-3FB47C624CDA}" = dir=out | name=@{microsoft.commsphone_3.34.12002.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{30CB3340-AB5C-471D-A572-2A431349590A}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{34599244-D0DD-41E5-AACE-C93FA0532B64}" = dir=in | name=@{microsoft.microsoftedge_41.16299.15.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{382F74B6-B854-41A3-A275-32F7D47B2E1B}" = dir=out | name=print 3d | "{3FACDBAB-910B-4202-BF89-2E7EFF262E82}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} | "{443E9F38-89BA-4804-A7EC-4A5467A9E05D}" = dir=in | name=xbox | "{46CF1EE5-258E-4355-BF0E-9FF0F02B803B}" = dir=out | name=xbox | "{494D495E-4C5B-44CD-9759-432F65845739}" = dir=out | name=xbox game bar | "{4A204CBA-9CFB-4B41-B79E-C1519A54FEA7}" = dir=out | name=@{a278ab0d.marchofempires_3.0.0.12_x86__h6adky7gbf63m?ms-resource://a278ab0d.marchofempires/resources/marchofempires} | "{4B4D6A73-2DDF-412B-9074-A013A7EF93F3}" = dir=in | name=@{microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} | "{4F7852A3-1AE1-4D01-B4DD-B3F521543945}" = dir=out | name=onenote | "{52150F24-7FE0-4D4C-AF58-6776367312DC}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1711.3412.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} | "{539C0A33-7500-4005-B77C-F51D96885F29}" = dir=out | name=@{microsoft.appconnector_1.3.3.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.appconnector/resources/connectorstubtitle} | "{54CBE503-0176-47B1-BF26-91E9E5349727}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{55AA4DE1-BE5E-4348-9E93-61CCFE80E352}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{55EA87B5-7763-4197-AF3D-7D1EE9A037C2}" = dir=out | name=@{microsoft.windows.sechealthui_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} | "{5643B639-E01B-40C8-A16D-9E57E8BAF471}" = dir=in | name=autodesk sketchbook | "{59298F14-53F9-4390-A5BB-3E6D05CBDE2C}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.8827.21595.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} | "{59873404-608E-4F7D-92EC-B55C76DB4EFC}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{60D7C309-0CCF-4A78-AC9A-779CF424B4AE}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{6350434B-A298-4584-B1D9-C45DB350F8C7}" = dir=in | name=@{microsoft.zunevideo_10.17112.13411.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{65D3ECF1-E8EE-48A8-BF5F-0571FBA14C8A}" = dir=out | name=minecraft for windows 10 | "{673948CD-A09E-4178-B341-15417DE3EF56}" = dir=out | name=@{microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{6E38B930-ED2E-4F07-BD34-A9DBCCD0650D}" = dir=out | name=candy crush soda saga | "{6FB1F813-72E5-4015-960C-3032DBFDDE14}" = dir=in | name=keeper - password manager & secure file storage | "{70F29171-CE6F-43F3-8ECA-E0FA12A42E3E}" = dir=in | name=@{microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{74BB2975-6DCD-45DB-ABF0-B637169445EC}" = dir=out | name=shell input application | "{76F0E13A-04B2-4FE6-B50B-C3A5604FC073}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} | "{79550B42-8B92-4C64-83C8-62B483EDA321}" = dir=in | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} | "{7D8AE5B7-F998-4740-9AC7-F00CEAC8375A}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{83233535-8F2A-4E10-877B-4F1CD254BB67}" = dir=in | name=plex | "{8812D843-7DD9-4297-9EC7-9F527580D064}" = dir=out | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} | "{8B096B6E-7562-455F-9654-EA7D83213596}" = dir=out | name=@{microsoft.zunevideo_10.17112.13411.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{8CB6593E-273F-427A-85F8-51A29F06D951}" = dir=out | name=@{microsoft.accountscontrol_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} | "{8D1FAD9E-3014-486E-8FF4-6CDC3A1CBEA5}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} | "{94C97117-ABED-43B1-818D-5B7830FECE74}" = dir=out | name=microsoft pay | "{97625B65-09AB-449D-8279-BBE92CA24FA0}" = dir=in | name=minecraft for windows 10 | "{9AF04E83-F20D-4DC9-8AF5-D4B53DE10E77}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} | "{9B8A19F5-B3FB-4C78-BF3D-8FF170DCB7B4}" = dir=in | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{9BEE3FAD-9CE7-4427-84E8-5032C76E8E2A}" = dir=out | name=@{microsoft.messaging_3.37.23004.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} | "{9DDF9C18-E761-494C-AC6D-918C5A58938B}" = dir=out | name=@{microsoft.xboxidentityprovider_12.30.5001.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} | "{9E9254B3-088D-47CE-B238-20C88057E5F5}" = dir=out | name=@{microsoft.windows.peopleexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.peopleexperiencehost/resources/pkgdisplayname} | "{A29869A8-E3B1-42DB-9E90-92073E163843}" = dir=in | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{A63C47FD-73CA-4069-A8C5-32022486C82F}" = dir=out | name=@{microsoft.skypeapp_12.1803.279.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} | "{A6E82665-9F49-4FB9-B77D-DC5A7B668996}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.15063.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} | "{A9822B2C-C0A9-44FD-8E48-A842E9F159F2}" = dir=out | name=@{microsoft.bingsports_4.22.3254.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/applicationtitlewithbranding} | "{AE80B640-223D-47B6-B718-A15B5101E91D}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1711.3412.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} | "{B1EB5002-3FF1-4F9F-8967-3D7068812F9F}" = dir=out | name=@{microsoft.windowsstore_11801.1001.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{B23006C6-CEEC-4ED7-A64A-4510843D737F}" = dir=out | name=@{microsoft.xboxidentityprovider_11.29.23003.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} | "{B26228B3-3020-4C75-9950-27A30A603249}" = dir=out | name=@{microsoft.windowsphone_10.1609.2561.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsphone/resources/appstorename} | "{B9C97A7C-69F7-463E-992B-5FB4D0244FFD}" = dir=out | name=@{microsoft.windowsmaps_5.1708.2764.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} | "{BB4DE156-029B-4E62-882A-27EEBCE422D7}" = dir=in | name=onenote | "{BBA40B0E-A245-43CE-BD47-0A7F986687CA}" = dir=out | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} | "{BE3AEAAB-1AEE-4692-8DCE-78F84A206662}" = dir=out | name=@{microsoft.lockapp_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} | "{C1C123E8-2E37-483B-9B5F-7A600EB560CF}" = dir=out | name=@{microsoft.bingweather_4.22.3254.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{C4CDE9B4-D503-4771-A1A7-EAE6A7DDDEFF}" = dir=out | name=@{microsoft.desktopappinstaller_1.0.12894.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} | "{C83E6817-1687-4B70-840B-1DD3A4993CB2}" = dir=out | name=@{microsoft.microsoft3dviewer_2.1801.4012.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoft3dviewer/common.view.uwp/resources/storeappname} | "{C8BA908B-270A-4696-9C4F-057A0A94AC5E}" = dir=out | name=microsoft sticky notes | "{CAAB4E57-56E1-4859-86C4-3D19D4ABC90F}" = dir=in | name=@{microsoft.windows.photos_2017.39101.16720.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{CB0D75DD-3021-412F-B0CF-4D3B95374C97}" = dir=out | name=3d builder | "{CB98B8FA-B1AD-48AA-8133-1E1B5A8B04D0}" = dir=in | name=@{microsoft.microsoftofficehub_17.8830.7600.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{D656FF49-9CC7-4443-9DF8-4FA78DC6CC63}" = dir=out | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{D783B807-401B-4B4C-B59D-03AABE570D50}" = dir=in | name=@{microsoft.commsphone_3.34.12002.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.commsphone/resources/appstorename} | "{D97A5D9F-CB24-478D-BD68-2B1982C9CA5F}" = dir=out | name=microsoft solitaire collection | "{DAABDA43-F2AA-4712-8B9E-A30EA737BB33}" = dir=out | name=autodesk sketchbook | "{DD133F43-6369-4118-A40D-8AB001D5D07D}" = dir=out | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{DDBAB380-E938-4B61-BC27-204172EBA00D}" = dir=in | name=microsoft sticky notes | "{DFFA1457-3B92-4311-8F4C-25907E68CDC2}" = dir=in | name=@{microsoft.messaging_3.37.23004.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} | "{E3FBE083-496C-41D2-99EE-0DA05E76AE6C}" = dir=in | name=@{microsoft.zunemusic_10.18011.12711.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{E44565E8-4E7F-4C65-A024-EAF526A870D6}" = dir=out | name=@{microsoft.getstarted_6.7.3462.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} | "{E5F6CE19-1AEB-4E5A-98A1-B6CD83CDE890}" = dir=out | name=@{microsoft.microsoftedge_41.16299.15.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{EA9F0A94-C89D-44E6-8896-7CF4FC074C52}" = dir=out | name=keeper - password manager & secure file storage | "{EBAE0418-08C0-42A1-B34D-26E5388C385F}" = dir=out | name=@{microsoft.bingnews_4.22.3254.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/applicationtitlewithbranding} | "{F1422A2A-5B7B-4030-9566-641D624EEC5C}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.8827.21595.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} | "{F1AF3685-7638-441D-8BF9-71C47C9C0075}" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "{F49FEBA6-2514-414E-BD9A-E145CDD5C9E4}" = dir=out | name=@{microsoft.windowscalculator_10.1712.3351.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscalculator/resources/appstorename} | "{F5F2BACB-2508-4365-A6ED-9814AB8805A6}" = dir=out | name=sway | "{F8F6D0AB-B23C-4BF2-B44C-6BF17A37E93C}" = dir=out | name=@{microsoft.gethelp_10.1706.3471.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.gethelp/resources/appdisplayname} | "{FC1FD1FA-CA64-4B16-8B03-4B6DBAED5954}" = dir=out | name=@{microsoft.windows.holographicfirstrun_10.0.16299.125_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.holographicfirstrun/resources/pkgdisplayname} | "{FD63942F-8F10-4316-9583-A5332580486F}" = dir=out | name=@{microsoft.connectivitystore_1.1604.4.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.connectivitystore/mswifiresources/appstorename} | "{FECF5CEE-E453-42C0-8539-BAA5C5745B92}" = dir=out | name=xbox tcui | "TCP Query User{69B9DAB1-27F6-4C1F-A35D-691C78996E0F}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" = protocol=6 | dir=in | app=c:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe | "TCP Query User{726EFA23-00FE-49AA-96C2-F79C8BBE94C9}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe | "TCP Query User{D2AAD062-96F7-4E08-8F6C-BD0A6D8EEA0B}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe | "UDP Query User{09E4D5A6-C9CC-4F22-933B-9FB87C582C19}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe | "UDP Query User{2768317F-F8F1-44C3-B15E-D3FE46D44380}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe | "UDP Query User{F09A77D1-EA02-4000-B734-4370A234A7AE}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" = protocol=17 | dir=in | app=c:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0002D2D1-8500-BAC8-7F3A-04CE867BD513}" = Catalyst Control Center Next Localization HU "{0FB9F8FC-BB47-D106-8DF7-E3887480D5C8}" = Catalyst Control Center Next Localization IT "{177B9551-E5F5-0419-5E9D-97C933FF405A}" = Catalyst Control Center Next Localization FR "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{34BEC0C2-5028-141A-B25A-B54DDD61303E}" = AMD Install Manager "{37543334-6866-2A03-19D3-E4788FF89C4B}" = Catalyst Control Center Next Localization BR "{37B8F9C7-03FB-3253-8781-2517C99D7C00}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 "{3DEA233C-A964-194F-E0CF-7E46458CFB32}" = AMD Settings "{401D6B06-994F-EBDB-1599-7B5B469A1E7C}" = Catalyst Control Center Next Localization CHS "{46C1932B-3A92-DBCF-6DF7-73A93CC5809B}" = Catalyst Control Center Next Localization DA "{4BF3EDF7-D8E8-81F7-51A2-49714F633CD0}" = Catalyst Control Center Next Localization TR "{527BF3CC-ADC7-EE7A-DC18-37A289B02148}" = Catalyst Control Center Next Localization TH "{58C1E12C-2B27-92B6-A5FF-CABBB4F3B4F7}" = Catalyst Control Center Next Localization DE "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{623699A3-CA01-758A-29FD-57D9632E2A60}" = Catalyst Control Center Next Localization NL "{66C5838F-B854-4A55-89E6-A6138747A4DF}" = Epic Games Launcher Prerequisites (x64) "{7314174C-890C-436C-BD2D-61F284755FD0}" = AMD Settings - Branding "{74B1D016-334C-436B-AAD0-941A20911897}" = 3DMark "{77EA3F89-E462-0F98-537B-BA40AA5AE026}" = Catalyst Control Center Next Localization PL "{8BA5A15B-2661-7536-CC2B-C30722EE9491}" = Catalyst Control Center Next Localization RU "{8D02CC6B-A933-EC0F-5C85-8AA3BBDF982D}" = Catalyst Control Center Next Localization NO "{8EFF6CC3-7B09-292B-A22D-79FDD422E1DA}" = Catalyst Control Center Next Localization CHT "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{B546DB62-8A8C-9A81-BE2C-6CEF62C26A02}" = AMD Problem Report Wizard "{C1FCF1BB-6AE6-397D-D9D1-72522764DA47}" = Catalyst Control Center Next Localization SV "{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 "{D7382955-C927-8D7F-3A59-59447D415CA3}" = Catalyst Control Center Next Localization CS "{E241AC68-F315-12B4-0FB3-4BC91F66B28D}" = Catalyst Control Center Next Localization ES "{E2977E28-1910-2595-EABC-F3C38D019B57}" = Catalyst Control Center Next Localization FI "{E2C28FCF-0F62-F87A-1D4E-974214F0E38D}" = Catalyst Control Center Next Localization KO "{EAEC5CA1-0CFA-77A1-8C0E-F78D2C11D083}" = Catalyst Control Center Next Localization JA "{F8968CDE-C1A4-BDAD-4619-F716CB38DBBC}" = Catalyst Control Center Next Localization EL "AMD Catalyst Install Manager" = AMD Install Manager "CCleaner" = CCleaner "Mozilla Firefox 57.0.2 (x64 fr)" = Mozilla Firefox 57.0.2 (x64 fr) "SynTPDeinstKey" = Synaptics Pointing Device Driver [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{050d4fc8-5d48-4b8f-8972-47c82c46020f}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{210AFD22-5ABF-48FD-AB9F-91B36E102CD8}" = Epic Games Launcher "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{53862C8D-D41F-47A1-A331-664EB405BECA}" = LibreOffice 5.4.4.2 "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{B919ECBF-C57E-DA3C-882E-8971B8CBA9A1}" = AMD Settings "{c6c5a357-c7ca-4a5f-9789-3bb1af579253}" = Launcher Prerequisites (x64) "{D7D20EB4-BD89-05C0-05C6-33E5B762989E}" = Catalyst Control Center InstallProxy "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{f9b04b37-35d5-4a19-a51b-fcf4a8734851}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "IObitUninstall" = IObit Uninstaller "MEGAsync" = MEGAsync "WinRAR archiver" = WinRAR 5.50 (32-bit) "Wise Registry Cleaner_is1" = Wise Registry Cleaner 9.03 [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-2542342282-3666978062-295169699-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Google Chrome" = Google Chrome [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 14/01/2018 09:04:15 | Computer Name = DESKTOP-KRV0N4F | Source = Application Hang | ID = 1002 Description = Le programme wordpad.exe version 10.0.16299.15 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 914 Heure de début : 01d38d37d3fed821 Heure de fin : 13 Chemin d'accès de l'application : C:\Program Files\windows nt\accessories\wordpad.exe ID de rapport : 9255f7de-3f40-4079-9815-b9c7950db66f Nom complet du package défaillant : ? ID de l'application relative au package défaillant : ? Error - 17/01/2018 10:05:00 | Computer Name = DESKTOP-KRV0N4F | Source = Application Error | ID = 1000 Description = Nom de l application défaillante speedcat.setup.tmp, version : 51.1052.0.0, horodatage : 0x5682c3f7 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d exception : 0x00000000 Décalage d erreur : 0x00000000 ID du processus défaillant : 0x724 Heure de début de l application défaillante : 0x01d38f9c1052bc1f Chemin d accès de l application défaillante : C:\Users\Alexandre\AppData\Local\Temp\is-AM2PJ.tmp\speedcat.setup.tmp Chemin d accès du module défaillant: unknown ID de rapport : 21b1a75d-32b8-4425-9e57-70da26238f13 Nom complet du package défaillant : ? ID de l application relative au package défaillant : ? Error - 24/01/2018 10:20:43 | Computer Name = DESKTOP-KRV0N4F | Source = .NET Runtime | ID = 1026 Description = Error - 24/01/2018 10:20:46 | Computer Name = DESKTOP-KRV0N4F | Source = Application Error | ID = 1000 Description = Nom de l application défaillante NoDefender.exe, version : 1.0.0.0, horodatage : 0x556ccf0a Nom du module défaillant : KERNELBASE.dll, version : 10.0.16299.15, horodatage : 0x2cd1ce3d Code d exception : 0xe0434352 Décalage d erreur : 0x001008b2 ID du processus défaillant : 0x2528 Heure de début de l application défaillante : 0x01d3951e7d1a7d72 Chemin d accès de l application défaillante : C:\Users\Alexandre\Desktop\NoDefender.exe Chemin d accès du module défaillant: C:\WINDOWS\System32\KERNELBASE.dll ID de rapport : 46f77510-30ec-4900-a73f-d0f5ccc44461 Nom complet du package défaillant : ? ID de l application relative au package défaillant : ? Error - 27/01/2018 04:26:54 | Computer Name = DESKTOP-KRV0N4F | Source = SideBySide | ID = 16842785 Description = La création du contexte d activation a échoué pour « C:\Program Files\AVAST Software\Avast\setup\iplugins\IStats.dll ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 27/01/2018 13:32:53 | Computer Name = DESKTOP-KRV0N4F | Source = Application Error | ID = 1000 Description = Nom de l application défaillante dwm.exe, version : 10.0.16299.15, horodatage : 0x7f22d77c Nom du module défaillant : dwmcore.dll, version : 10.0.16299.192, horodatage : 0xa96f7b91 Code d exception : 0x8898008d Décalage d erreur : 0x00000000001ae866 ID du processus défaillant : 0x1548 Heure de début de l application défaillante : 0x01d3975dc91b224a Chemin d accès de l application défaillante : C:\WINDOWS\System32\dwm.exe Chemin d accès du module défaillant: C:\WINDOWS\System32\dwmcore.dll ID de rapport : bbc93f1d-d2ac-4f60-870f-e161c1394a8b Nom complet du package défaillant : ? ID de l application relative au package défaillant : ? Error - 02/02/2018 17:29:02 | Computer Name = DESKTOP-KRV0N4F | Source = SideBySide | ID = 16842785 Description = La création du contexte d activation a échoué pour « C:\Program Files (x86)\AVG\Antivirus\setup\iplugins\IStats.dll ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 02/02/2018 17:29:04 | Computer Name = DESKTOP-KRV0N4F | Source = SideBySide | ID = 16842785 Description = La création du contexte d activation a échoué pour « C:\Program Files (x86)\AVG\Antivirus\setup\iplugins\IStats.dll ». Assembly dépendant Avast.VC110.CRT,processorArchitecture="x86",publicKeyToken="2036b14a11e83e4a",type="win32",version="11.0.60610.1" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error - 02/02/2018 18:04:41 | Computer Name = DESKTOP-KRV0N4F | Source = Application Hang | ID = 1002 Description = Le programme OTL.exe version 3.2.69.0 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 176c Heure de début : 01d39c6edca2733d Heure de fin : 5 Chemin d'accès de l'application : C:\Users\Alexandre\Desktop\OTL.exe ID de rapport : 0a76312b-a416-44e6-9419-77dd64123f5e Nom complet du package défaillant : ? ID de l'application relative au package défaillant : ? Error - 02/02/2018 18:20:09 | Computer Name = DESKTOP-KRV0N4F | Source = Application Hang | ID = 1002 Description = Le programme OTL.exe version 3.2.69.0 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 760 Heure de début : 01d39c71df24c027 Heure de fin : 4294967295 Chemin d'accès de l'application : C:\Users\Alexandre\Desktop\OTL.exe ID de rapport : 80ab1115-180a-4d49-a3f2-d4a16f3ec5b9 Nom complet du package défaillant : ? ID de l'application relative au package défaillant : ? [ System Events ] Error - 03/02/2018 05:04:06 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10001 Description = Error - 03/02/2018 05:04:08 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10001 Description = Error - 03/02/2018 05:04:10 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10001 Description = Error - 03/02/2018 05:04:12 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10001 Description = Error - 03/02/2018 05:05:44 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10016 Description = Error - 03/02/2018 05:07:02 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10016 Description = Error - 03/02/2018 05:07:37 | Computer Name = DESKTOP-KRV0N4F | Source = Service Control Manager | ID = 7031 Description = Le service Superfetch s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 03/02/2018 05:07:57 | Computer Name = DESKTOP-KRV0N4F | Source = Service Control Manager | ID = 7031 Description = Le service Service de stratégie de diagnostic s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 120000 millisecondes : Redémarrer le service. Error - 03/02/2018 05:08:20 | Computer Name = DESKTOP-KRV0N4F | Source = Service Control Manager | ID = 7031 Description = Le service Journal d événements Windows s est terminé de manière inattendue. Ceci s est produit 1 fois. L action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 03/02/2018 05:19:00 | Computer Name = DESKTOP-KRV0N4F | Source = DCOM | ID = 10016 Description = < End of report >