OTL Extras logfile created on: 05/06/2018 16:39:37 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\firef\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.16299.0) Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy 3,86 Gb Total Physical Memory | 0,94 Gb Available Physical Memory | 24,28% Memory free 7,86 Gb Paging File | 4,22 Gb Available in Paging File | 53,74% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 465,21 Gb Total Space | 276,52 Gb Free Space | 59,44% Space Free | Partition Type: NTFS Computer Name: DESKTOP-65CAO8M | User Name: firef | Logged in as Administrator. Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 60 Days [color=#E56717]========== Extra Registry (SafeList) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\WINDOWS\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .cpl [@ = cplfile] -- C:\WINDOWS\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation) Directory [UpdateEncryptionSettings] -- Reg Error: Key error. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- Reg Error: Key error. htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [Powershell] -- powershell.exe -noexit -command Set-Location -literalPath '%V' (Microsoft Corporation) Directory [UpdateEncryptionSettings] -- Reg Error: Key error. Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. [color=#E56717]========== Security Center Settings ==========[/color] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 7E C9 DD 68 A6 DF D3 01 [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = [binary data] [b]64bit:[/b] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade] "UpgradeTime" = Reg Error: Unknown registry data type -- File not found [color=#E56717]========== Firewall Settings ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [color=#E56717]========== Authorized Applications List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) [color=#E56717]========== Vista Active Open Ports Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{05950469-35CA-439E-966E-F036C6AFF5FD}" = lport=48010 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe | "{3B3AA3EB-B5A7-45CF-8115-1E63C8DBF59A}" = lport=47998 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe | "{405505F8-03C8-4C21-ABB7-78A8067E2D4D}" = lport=5353 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe | "{859693B9-B88B-449F-B2D9-46C764E3327A}" = lport=47984 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvcontainer\nvcontainer.exe | "{CD161CED-0D39-473C-8A30-153A5749A486}" = lport=47995 | protocol=6 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | "{E1693FC2-F5F6-4831-A4F8-68DF95D6C09F}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | "{FF8807AD-6114-42AE-8FCA-C99B5A69DD27}" = lport=47995 | protocol=17 | dir=in | app=c:\program files\nvidia corporation\nvstreamsrv\nvstreamer.exe | [color=#E56717]========== Vista Active Application Exception List ==========[/color] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{0158288F-7F57-4EC6-9148-A17D5E23B814}" = protocol=17 | dir=in | app=c:\program files\ccleaner\ccupdate.exe | "{045F3EF3-7F96-461C-B03F-25F7896E7A55}" = dir=out | name=@{microsoft.people_10.3.3472.1000_x64__8wekyb3d8bbwe?ms-resource://microsoft.people/resources/appstorename} | "{088F4AA2-518A-455A-9456-3920B6B7FC40}" = dir=in | name=@{microsoft.windowsfeedbackhub_1.1712.1141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} | "{08CA55EF-1E7E-48CB-8584-0936D6F26C67}" = protocol=6 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "{1731201A-7C01-4E3B-B16C-EDE86BF1DD47}" = dir=out | name=@{microsoft.xboxidentityprovider_12.41.24002.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.xboxidentityprovider/resources/displayname} | "{1C5BB9B2-BFE0-463A-AC11-92E65A9C0C64}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe | "{1EC7F7DF-185E-479F-9917-75CB3519DCFA}" = dir=out | name=@{microsoft.microsoftofficehub_17.9328.1700.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{21C77698-3C13-4741-A105-575FD56CD5DB}" = dir=out | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{21E5DFAE-E547-43C5-AEA6-EBFF946B5AD5}" = dir=out | name=@{microsoft.windowscalculator_10.1804.911.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscalculator/resources/appstorename} | "{2248BE98-2E64-471A-A770-5AD6AE027AB5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\freestyle2\launchersteam.exe | "{25C16A1F-8B5F-4E15-8217-D83ADD650FE1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\brawlhalla\brawlhalla.exe | "{25D87C6B-46E1-4B73-91BB-103A698E0BA0}" = dir=out | name=@{microsoft.xboxgamecallableui_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.xboxgamecallableui/resources/pkgdisplayname} | "{2607DD5E-9BBE-4DED-8A55-CC8D014580B9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe | "{26AD73DD-FD3B-419A-B29E-8A22616D8DF7}" = dir=in | name=microsoft sticky notes | "{27713A72-0648-46E1-A075-9FA5F75E0A0E}" = dir=out | name=@{microsoft.lockapp_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.lockapp/resources/appdisplayname} | "{28A62C63-50EB-480A-AAE8-F9C521F0483C}" = dir=out | name=@{microsoft.gethelp_10.1706.10952.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.gethelp/resources/appdisplayname} | "{292BFE27-3181-45E6-AFDF-0450B8E220B5}" = dir=out | name=@{microsoft.messaging_3.37.23004.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} | "{30033636-62B1-4B1C-B788-D18DEAD6FC2A}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{31F16578-CC9A-484F-8E6B-DEBF5DD03B70}" = dir=out | name=@{microsoft.windowscamera_2018.227.30.1000_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscamera/resources/appstorename} | "{321CAD7A-882F-481C-B889-0239086D04BC}" = dir=out | name=@{microsoft.windows.photos_2018.18041.15210.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{3374A908-F59C-49D5-A268-70EC725BDC19}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\payday 2\payday2_win32_release.exe | "{33B8BC62-F75F-41CA-9ADA-1DCA24C34B73}" = dir=out | name=microsoft sticky notes | "{363457FF-BC35-49FA-A9C0-E8338580C32C}" = dir=in | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} | "{3729FC62-FE6D-41D2-8252-36B606219DB0}" = dir=in | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} | "{3796CE35-4F58-4FFF-A6FF-E9052845566A}" = dir=out | name=@{microsoft.windowsmaps_5.1711.10477.1000_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsmaps/resources/appstorename} | "{38075967-B2B4-43BA-9A2C-5176B93C38CB}" = dir=out | name=@{microsoft.windowsstore_11804.1001.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{391B1200-943E-439D-A905-930A2C74C9F7}" = dir=in | name=onenote | "{391E3CF3-6BE0-4327-B383-5B5900CF19B4}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\cef\cef.win7\steamwebhelper.exe | "{3D4233A7-C415-43E3-97E6-9DDAAB8CC463}" = dir=out | name=shell input application | "{535D0F36-1F95-48BD-805C-9D0FF737EC87}" = dir=in | name=@{microsoft.desktopappinstaller_1.0.20921.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} | "{5366EB45-EB56-4154-A7A6-07C3C9F6FF93}" = dir=out | name=@{microsoft.windows.apprep.chxapp_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.apprep.chxapp/resources/displayname} | "{56B5BA89-94D8-48B0-91B2-9D06167ABD38}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\iron league\ironleague.exe | "{571F79C2-036E-4ED2-94CA-CAAFAE6736DC}" = dir=in | name=print 3d | "{5B60F49B-C32E-443B-A5F9-8BEE93BFA1CF}" = protocol=6 | dir=in | app=c:\program files\ccleaner\ccupdate.exe | "{6003B572-A8B5-48A0-B97B-E35D9D09ADBD}" = dir=out | name=onenote | "{63D323B1-800A-450C-840C-5E9676FC4571}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.16299.402_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} | "{667ABE78-FAC4-4561-9394-6815AA3BFE73}" = dir=out | name=@{microsoft.zunemusic_10.18041.14611.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{6756ADB7-4F4E-4F6A-A838-1A3218AF4767}" = dir=out | name=@{microsoft.zunevideo_10.18041.14611.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "{6AA83A1B-A6F8-4A5A-B867-C65EC5579A10}" = dir=in | name=@{microsoft.windows.photos_2018.18041.15210.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windows.photos/resources/appstorename} | "{6B5BFF3D-C6BD-45AD-8462-3516924CFC30}" = dir=in | name=@{microsoft.microsoftofficehub_17.9328.1700.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoftofficehub/officehubintl/appmanifest_getoffice_displayname} | "{6C561834-4F49-4D9E-871C-ABD13334C508}" = dir=out | name=@{microsoft.windowsfeedbackhub_1.1712.1141.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsfeedbackhub/resources/appstorename} | "{707A869A-A628-4D5A-B290-1C2933239856}" = protocol=17 | dir=in | app=c:\program files\mozilla firefox\firefox.exe | "{7217B3EA-5EDE-48DE-BF56-5571FC730027}" = dir=out | name=@{microsoft.mspaint_4.1805.15037.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.mspaint/resources/appname} | "{72FF1E6D-8D1D-4E8B-B643-8C25EE36D858}" = dir=out | name=@{microsoft.microsoft3dviewer_4.1804.19012.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.microsoft3dviewer/common.view.uwp/resources/storeappname} | "{7352F395-1808-4344-BDEA-EE4D3EB4C8EF}" = dir=out | name=@{microsoft.oneconnect_3.1710.3044.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.oneconnect/oneconnect/appstorename} | "{73921BA8-7336-40D0-AC4A-C6526C48B8C4}" = dir=out | name=@{microsoft.windows.oobenetworkcaptiveportal_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.oobenetworkcaptiveportal/resources/appdisplayname} | "{798BD74E-83A5-4310-BA7F-CDE50AAF4158}" = dir=out | name=microsoft pay | "{7CB363CF-C572-427C-8D9B-074778297A8A}" = dir=out | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{7D458DEC-46A3-4264-B275-0E94B1FFFDCE}" = dir=out | name=xbox tcui | "{8403F3E9-0522-44E8-A8EA-7B795BF4039D}" = dir=in | name=@{microsoft.windowsstore_11804.1001.10.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowsstore/resources/storetitle} | "{86A4D7D1-C527-4543-8765-6236FF2F7AD8}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\freestyle2\launchersteam.exe | "{88E85323-D69F-46B8-B15B-CD5343DBC22B}" = dir=out | name=@{microsoft.windows.contentdeliverymanager_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.contentdeliverymanager/resources/appdisplayname} | "{8928A533-4EA2-4CF0-8AC9-8F864A804379}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{8ACADF62-A86F-45B6-9225-E146AF975DA9}" = dir=out | name=@{microsoft.windows.cortana_1.9.6.16299_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cortana/resources/packagedisplayname} | "{8B0B4C2D-D7F6-4105-AAAD-3E09EDCE584D}" = dir=out | name=@{microsoft.desktopappinstaller_1.0.20921.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.desktopappinstaller/resources/appdisplayname} | "{8C38132E-AE8B-4D4E-9F96-BAE810CEFCF0}" = dir=in | name=@{microsoft.messaging_3.37.23004.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.messaging/resources/appstorename} | "{8D8255A1-007C-43B6-8B8F-58BDFEB383F9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{8F8A9BF9-F691-4270-A365-FA0426166B54}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.9330.20915.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} | "{8FCB5740-2B5B-4502-96CD-477AFC147310}" = dir=out | name=@{microsoft.windows.shellexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.shellexperiencehost/resources/pkgdisplayname} | "{92C01D10-9200-4A59-AD47-674CFE685E73}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{93C4CBB9-F29F-46FD-BC28-33E23BECBAE9}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{99897D94-525C-4872-9D36-26C562967F4D}" = dir=in | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{A064FB2B-C431-49C2-927A-692EB0FB6E5B}" = dir=in | name=@{microsoft.zunemusic_10.18041.14611.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | "{AD31D96F-A2F6-4C68-9E2C-BFC523BC08F6}" = dir=out | name=@{microsoft.accountscontrol_10.0.16299.15_neutral__cw5n1h2txyewy?ms-resource://microsoft.accountscontrol/resources/displayname} | "{AE44D2B0-1F63-4158-836F-C05ADF45E73B}" = dir=out | name=@{microsoft.getstarted_6.10.10872.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.getstarted/resources/appstorename} | "{AF3343BB-61B6-44B2-8C53-2BEB750896F3}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe | "{B03E3E5B-1096-4F9E-8C43-79FC0146BF99}" = dir=in | name=@{microsoft.skypeapp_12.1815.209.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} | "{B2806987-4FA1-460B-98D0-95D8D0B60A84}" = dir=out | name=microsoft solitaire collection | "{B6835EF7-1C55-483A-B4B0-ED2C24594573}" = dir=out | name=xbox | "{BC358D12-3DD8-4E31-BD89-AD65032F27C1}" = dir=in | name=@{microsoft.microsoftedge_41.16299.402.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{BF1B44E1-E388-4D9A-ACFC-A4BE0827888F}" = dir=out | name=@{microsoft.windows.holographicfirstrun_10.0.16299.125_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.holographicfirstrun/resources/pkgdisplayname} | "{C1DCA2A4-DD71-4FBD-A416-C70824EF24F4}" = dir=in | name=xbox | "{CA470F1A-791A-4F01-B89C-FC4E3DA16662}" = dir=in | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{CB05878C-506E-45B7-B488-2B8166414C69}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{CC476BD9-64D2-4BD8-9E09-89FC020A2649}" = dir=out | name=@{microsoft.skypeapp_12.1815.209.0_x64__kzf8qxf38zg5c?ms-resource://microsoft.skypeapp/resources/skypevideo_productname} | "{CE2D5E26-0E4B-4A42-A895-1E17E4D5EA93}" = dir=out | name=@{microsoft.aad.brokerplugin_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.aad.brokerplugin/resources/packagedisplayname} | "{CE532AF5-67BD-4AC3-A8A4-860042A8EACB}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\iron league\ironleague.exe | "{D0FB531E-4A63-41CC-A069-13020BB5F15A}" = dir=out | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{D3E3284B-5318-4CEF-B712-CF5161D56CD2}" = dir=out | name=@{microsoft.windows.sechealthui_10.0.16299.402_neutral__cw5n1h2txyewy?ms-resource://microsoft.windows.sechealthui/resources/packagedisplayname} | "{D4580774-3887-4745-AB3D-29A12CADF2B5}" = dir=out | name=@{microsoft.storepurchaseapp_11804.1001.9.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.storepurchaseapp/resources/displaytitle} | "{D7BC3C25-8318-4A35-AEF9-F0C17FB337D8}" = dir=out | app=c:\program files\easeware\drivereasy\drivereasy.exe | "{DB43CC6B-8543-4C44-94EC-5079D60413D7}" = dir=out | name=@{microsoft.windows.peopleexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.peopleexperiencehost/resources/pkgdisplayname} | "{DC84642A-66B7-46A2-8FE4-9F438D110B3E}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.9330.20915.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/appmanifest_outlookdesktop_displayname} | "{E2DC94AA-EC4E-4C88-AAAA-2BF218A883CD}" = dir=out | name=xbox game bar | "{E4FFABA1-BDD9-489F-B95A-87279FF91D31}" = dir=in | name=@{microsoft.ppiprojection_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.ppiprojection/resources/productname} | "{EC0BA01B-1D87-4C03-9506-BE8B0DE933E5}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\brawlhalla\brawlhalla.exe | "{F4C487F7-AEE0-488B-903D-8F5E64F75084}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\counter-strike global offensive\csgo.exe | "{F508B41B-330E-4A00-ACA5-9E35C18A8C4D}" = dir=out | name=@{microsoft.windows.parentalcontrols_1000.16299.15.0_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.parentalcontrols/resources/displayname} | "{F57C7451-73FC-421B-A7EB-78C4ACBB0CBC}" = dir=out | name=@{microsoft.bingweather_4.24.11294.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/applicationtitlewithbranding} | "{F63F39B2-1F4F-4835-9DB3-E3369F180350}" = dir=out | name=print 3d | "{FAC178FC-CCF5-484F-9AD6-C0B8C22DB88F}" = dir=out | name=@{microsoft.microsoftedge_41.16299.402.0_neutral__8wekyb3d8bbwe?ms-resource://microsoft.microsoftedge/resources/appname} | "{FC986F1E-CB8E-4CD8-B01E-C61480483351}" = dir=out | name=candy crush saga | "{FE3493CF-C08A-4C06-BE83-4C38E211F8A3}" = dir=in | name=@{microsoft.windows.cloudexperiencehost_10.0.16299.15_neutral_neutral_cw5n1h2txyewy?ms-resource://microsoft.windows.cloudexperiencehost/resources/appdescription} | "{FF7798DC-8DDF-49DB-8C58-9BDC6966F3CB}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\garrysmod\hl2.exe | "{FFD2DD14-9D0F-49E0-9417-D0001FD6A9BD}" = dir=in | name=@{microsoft.zunevideo_10.18041.14611.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | "TCP Query User{103CEF4C-DBEF-45F0-9EBF-0E4D1180F284}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.138\deploy\leagueclient.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.138\deploy\leagueclient.exe | "TCP Query User{53A8382B-0DCF-4B58-B3FB-91B23AE5975D}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe | "TCP Query User{5C928D08-E11D-49DA-A617-874E32992118}C:\program files (x86)\roccat\roccat swarm\roccat_swarm_monitor.exe" = protocol=6 | dir=in | app=c:\program files (x86)\roccat\roccat swarm\roccat_swarm_monitor.exe | "TCP Query User{5FB1D0CB-2279-45C0-B201-9BFC62B48CA7}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe | "TCP Query User{7E5E7C7F-B60E-465D-9C7C-9FAE6012EDA7}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" = protocol=6 | dir=in | app=c:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe | "TCP Query User{9AB5BC0A-50A7-4948-B302-76CE7ADBC3D1}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.140\deploy\leagueclient.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.140\deploy\leagueclient.exe | "TCP Query User{E29259B0-EEC6-4040-9F4E-CA13E8B28436}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" = protocol=6 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe | "TCP Query User{F1BC9A5E-608D-4FB8-A01E-4AA80D61BF46}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.149\deploy\leagueclient.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.149\deploy\leagueclient.exe | "TCP Query User{F48CD753-99D7-4395-9323-B49482F4574A}C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe | "TCP Query User{FDD1047E-0DB7-4CF7-865F-8DA5EDEF583C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.141\deploy\leagueclient.exe" = protocol=6 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.141\deploy\leagueclient.exe | "UDP Query User{024E5425-1863-41F9-9D2F-DC9600515B2E}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe | "UDP Query User{60C45BC9-2E56-4ABD-BFB2-CC2408CBBD8A}C:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\freestyle2\freestyle2.exe | "UDP Query User{64C04F9D-01DE-465E-BD9A-6503B9841427}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.141\deploy\leagueclient.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.141\deploy\leagueclient.exe | "UDP Query User{675DF7E7-F956-40A7-B225-D034CBDDCD51}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.144\deploy\leagueclient.exe | "UDP Query User{6842A5A5-581D-4423-AA88-295B8CFE167A}C:\program files (x86)\roccat\roccat swarm\roccat_swarm_monitor.exe" = protocol=17 | dir=in | app=c:\program files (x86)\roccat\roccat swarm\roccat_swarm_monitor.exe | "UDP Query User{868F250F-EEA8-4A85-8F02-14EF48AF6321}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" = protocol=17 | dir=in | app=c:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe | "UDP Query User{BF8EB0F6-EEFF-430C-A7C1-3A196D4B4813}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.138\deploy\leagueclient.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.138\deploy\leagueclient.exe | "UDP Query User{DCF79824-B402-46D0-B057-B8703494F3D3}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.149\deploy\leagueclient.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.149\deploy\leagueclient.exe | "UDP Query User{DDB99196-0A03-44BC-BBA5-2E10E9FF7E0B}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.140\deploy\leagueclient.exe" = protocol=17 | dir=in | app=c:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.140\deploy\leagueclient.exe | "UDP Query User{F7482B53-9B44-44DA-B021-AD4CC099855A}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" = protocol=17 | dir=in | app=c:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe | [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{11FFFAC7-95A4-4360-BF83-F12E25DCACCD}" = Oracle VM VirtualBox 5.2.10 "{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}" = Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 "{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 "{60A560F2-CB75-4C94-9C36-39AD2161DE73}_is1" = HMA! Pro VPN "{66C5838F-B854-4A55-89E6-A6138747A4DF}" = Epic Games Launcher Prerequisites (x64) "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel" = NVIDIA Ansel "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panneau de configuration NVIDIA 397.93 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Pilote graphique 397.93 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience" = NVIDIA GeForce Experience 3.14.0.139 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus Update 31.2.0.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA Logiciel système PhysX 9.17.0524 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = Mises à jour NVIDIA 31.2.0.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer" = DisplayDriverAnalyzer "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv" = NVIDIA SHIELD Streaming "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend" = NVIDIA Backend "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer" = NVIDIA Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper" = NVIDIA TelemetryApi helper for NvContainer "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem" = NVIDIA LocalSystem Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus" = NVIDIA Message Bus for NvContainer "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService" = NVIDIA NetworkService Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session" = NVIDIA Session Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User" = NVIDIA User Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer" = NVIDIA Display Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS" = NVIDIA Display Container LS "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog" = NVIDIA Display Watchdog Plugin "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer" = NVIDIA Display Session Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs" = NVIDIA NodeJS "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog" = NVIDIA Watchdog Plugin for NvContainer "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry" = NVIDIA Telemetry Client "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer" = NVIDIA Telemetry Container "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci" = NVIDIA Virtual Host Controller "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC" = Nvidia Share "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay" = NVIDIA ShadowPlay 3.14.0.139 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController" = NVIDIA SHIELD Wireless Controller Driver "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core" = NVIDIA Update Core "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver" = NVIDIA Virtual Audio 4.06.0 "{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}" = Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 "CCleaner" = CCleaner "Mozilla Firefox 60.0.1 (x64 fr)" = Mozilla Firefox 60.0.1 (x64 fr) "MozillaMaintenanceService" = Mozilla Maintenance Service "Sandboxie" = Sandboxie 5.24 (64-bit) "Steam App 218620" = PAYDAY 2 "Steam App 291550" = Brawlhalla "Steam App 339610" = FreeStyle 2: Street Basketball "Steam App 4000" = Garry's Mod "Steam App 730" = Counter-Strike: Global Offensive "Steam App 771060" = Iron League [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{052FD2FB-034D-4CDD-864E-798DE45C742A}" = Python 3.6.5 Tcl/Tk Support (32-bit) "{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}" = Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 "{155C4F2E-7381-4B80-B258-FD0600C9C46B}" = OpenOffice 4.1.5 "{21FD2EE0-8D55-49DC-A1B0-771696DDEE98}" = Python 3.6.5 Development Libraries (32-bit) "{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1" = Lightshot-5.4.0.35 "{32C24F2E-923F-49C1-8E60-2B3DC5482255}" = ROCCAT Swarm "{4ee216f4-eac7-4e33-b511-35446f3c427a}" = osu! "{58E1C809-82C5-4EDF-B69B-188A6C81F21F}" = Python 3.6.5 Core Interpreter (32-bit) "{5C0C82E9-B580-4EE4-894A-4451A23B0E2C}" = Python 3.6.5 Utility Scripts (32-bit) "{5C613D87-0AED-48A9-A216-3A3783463D6C}" = Python 3.6.5 Documentation (32-bit) "{5D26BF7B-BEF6-477D-8FC1-0C1C159B6364}_is1" = Quicksys RegDefrag 2.9 "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{69BCE4AC-9572-3271-A2FB-9423BDA36A43}" = Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 "{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{86533809-919A-4858-AFC4-4226B86C5291}" = Python 3.6.5 Test Suite (32-bit) "{8A66FEC2-E443-4219-B9AC-F9B10607B57C}" = Python Launcher "{8C2E8A7D-95CC-491C-AB9C-DE785A137D00}" = Python 3.6.5 Standard Library (32-bit) "{9107CF1A-A09C-4035-B29E-E79B4098AB8C}" = Python 3.6.5 Executables (32-bit) "{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 "{A2AE9709-283B-4B48-AA34-729C070A62FB}" = NETGEAR WNA1100 wireless USB 2.0 driver "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy "{B5B58F8A-1984-4F3E-B400-235A6E005002}" = Win10Pcap "{BBF2AC74-720C-3CB3-8291-5E34039232FA}" = Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 "{C024F06C-0E37-4529-945F-7920A9CFFD78}" = Python 3.6.5 pip Bootstrap (32-bit) "{c6c5a357-c7ca-4a5f-9789-3bb1af579253}" = Launcher Prerequisites (x64) "{CC65E120-E089-4438-815A-E20004182608}" = Epic Games Launcher "{ce085a78-074e-4823-8dc1-8a721b94b76d}" = Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 "{d992c12e-cab2-426f-bde3-fb8c53950b0d}" = Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 "{e2803110-78b3-4664-a479-3611a381656a}" = Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 "{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}" = Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 "Adobe Flash Player PPAPI" = Adobe Flash Player 29 PPAPI "Google Chrome" = Google Chrome "InstallShield_{32C24F2E-923F-49C1-8E60-2B3DC5482255}" = ROCCAT Swarm "League of Legends 1.0" = League of Legends "ParkControl" = ParkControl "Steam" = Steam "WinRAR archiver" = WinRAR 5.50 (32-bit) [color=#E56717]========== HKEY_USERS Uninstall List ==========[/color] [HKEY_USERS\S-1-5-21-3661491001-3977891655-3078464167-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{3346977b-49da-4095-8f4d-f56f103e52e9}" = Python 3.6.5 (32-bit) "2744A393-554C-4E35-A24F-DEF0392B4484-2" = Dofus "Discord" = Discord "Flux" = f.lux "OneDriveSetup.exe" = Microsoft OneDrive [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 01/06/2018 12:35:42 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante FreeStyle2.exe, version : 0.10.640.64, horodatage : 0x5af14fe8 Nom du module défaillant : GameApp.dll, version : 0.0.0.0, horodatage : 0x5af14fe3 Code d’exception : 0xc0000409 Décalage d’erreur : 0x00529ef1 ID du processus défaillant : 0x1aa0 Heure de début de l’application défaillante : 0x01d3f9c4163b0d3a Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\FreeStyle2.exe Chemin d’accès du module défaillant: C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\GameApp.dll ID de rapport : 75fa067c-bd56-425f-927e-2743c98172ce Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 02/06/2018 05:30:51 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante FreeStyle2.exe, version : 0.10.640.64, horodatage : 0x5af14fe8 Nom du module défaillant : ntdll.dll, version : 10.0.16299.402, horodatage : 0xb257a0c2 Code d’exception : 0xc0000374 Décalage d’erreur : 0x000da8c9 ID du processus défaillant : 0x2344 Heure de début de l’application défaillante : 0x01d3fa51a4a79a47 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\FreeStyle2.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : b4372ef0-df5f-4563-b77e-fbb6b0825092 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 03/06/2018 10:16:44 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante FreeStyle2.exe, version : 0.10.640.64, horodatage : 0x5af14fe8 Nom du module défaillant : ntdll.dll, version : 10.0.16299.402, horodatage : 0xb257a0c2 Code d’exception : 0xc0000374 Décalage d’erreur : 0x000da8c9 ID du processus défaillant : 0x914 Heure de début de l’application défaillante : 0x01d3fb45007f4a28 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\FreeStyle2.exe Chemin d’accès du module défaillant: C:\WINDOWS\SYSTEM32\ntdll.dll ID de rapport : 97a747f9-4f9d-431e-a1c9-4a52dcb97f38 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 03/06/2018 10:20:15 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante FreeStyle2.exe, version : 0.10.640.64, horodatage : 0x5af14fe8 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000409 Décalage d’erreur : 0x13aef54d ID du processus défaillant : 0xcbc Heure de début de l’application défaillante : 0x01d3fb45a1cb1133 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\FreeStyle2.exe Chemin d’accès du module défaillant: unknown ID de rapport : b68f03e5-e4b2-47e2-b8e4-2a9f45e537cb Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 03/06/2018 10:20:29 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante FreeStyle2.exe, version : 0.10.640.64, horodatage : 0x5af14fe8 Nom du module défaillant : unknown, version : 0.0.0.0, horodatage : 0x00000000 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000 ID du processus défaillant : 0xcbc Heure de début de l’application défaillante : 0x01d3fb45a1cb1133 Chemin d’accès de l’application défaillante : C:\Program Files (x86)\Steam\steamapps\common\FreeStyle2\FreeStyle2.exe Chemin d’accès du module défaillant: unknown ID de rapport : 80e598bb-a419-4170-b892-a682aea96f54 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 03/06/2018 15:13:18 | Computer Name = DESKTOP-65CAO8M | Source = Application Hang | ID = 1002 Description = Le programme SDScan.exe version 2.7.64.191 a cessé d'interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l'historique du problème dans le panneau de configuration Sécurité et maintenance. ID de processus : 1294 Heure de début : 01d3fb615cc081a4 Heure de fin : 69 Chemin d'accès de l'application : C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe ID de rapport : 9e301e7e-9a3c-4368-9c02-841d9b15bb97 Nom complet du package défaillant : ? ID de l'application relative au package défaillant : ? Error - 04/06/2018 09:23:38 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante Explorer.EXE, version : 10.0.16299.402, horodatage : 0x67b5448f Nom du module défaillant : SHELL32.dll, version : 10.0.16299.431, horodatage : 0x7ac2f9fa Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000006fb1c ID du processus défaillant : 0x17dc Heure de début de l’application défaillante : 0x01d3fa7e9b7e0864 Chemin d’accès de l’application défaillante : C:\WINDOWS\Explorer.EXE Chemin d’accès du module défaillant: C:\WINDOWS\System32\SHELL32.dll ID de rapport : 5000cf06-9fb9-4326-b1bc-c73066452bb1 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 04/06/2018 13:24:46 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante mbamservice.exe, version : 3.1.0.667, horodatage : 0x5ad8e0a1 Nom du module défaillant : CleanControllerImpl.dll_unloaded, version : 3.1.0.409, horodatage : 0x5ad8fd97 Code d’exception : 0xc0000005 Décalage d’erreur : 0x00000000000d2f90 ID du processus défaillant : 0x10d8 Heure de début de l’application défaillante : 0x01d3fc22ff6e4a4c Chemin d’accès de l’application défaillante : C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe Chemin d’accès du module défaillant: CleanControllerImpl.dll ID de rapport : 3581a42b-dbf6-4d2d-8dbd-983c53038570 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 04/06/2018 13:32:03 | Computer Name = DESKTOP-65CAO8M | Source = Application Error | ID = 1000 Description = Nom de l’application défaillante Explorer.EXE, version : 10.0.16299.402, horodatage : 0x67b5448f Nom du module défaillant : SHELL32.dll, version : 10.0.16299.431, horodatage : 0x7ac2f9fa Code d’exception : 0xc0000005 Décalage d’erreur : 0x000000000006fb1c ID du processus défaillant : 0x1988 Heure de début de l’application défaillante : 0x01d3fc2332657925 Chemin d’accès de l’application défaillante : C:\WINDOWS\Explorer.EXE Chemin d’accès du module défaillant: C:\WINDOWS\System32\SHELL32.dll ID de rapport : 3e7ced27-147f-4b80-b1fe-5eb64d182c58 Nom complet du package défaillant : ? ID de l’application relative au package défaillant : ? Error - 05/06/2018 04:35:35 | Computer Name = DESKTOP-65CAO8M | Source = Microsoft-Windows-Immersive-Shell | ID = 2484 Description = Le package Microsoft.Windows.Photos_2018.18041.15210.0_x64__8wekyb3d8bbwe+App a été interrompu, car sa suspension a été trop longue. [ System Events ] Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:24:34 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = Error - 05/06/2018 10:25:12 | Computer Name = DESKTOP-65CAO8M | Source = Service Control Manager | ID = 7031 Description = Le service Spybot-S&D 2 Scanner Service s’est terminé de manière inattendue. Ceci s’est produit 2 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 05/06/2018 10:25:15 | Computer Name = DESKTOP-65CAO8M | Source = Service Control Manager | ID = 7031 Description = Le service Spybot-S&D 2 Security Center Service s’est terminé de manière inattendue. Ceci s’est produit 1 fois. L’action corrective suivante va être effectuée dans 60000 millisecondes : Redémarrer le service. Error - 05/06/2018 10:33:43 | Computer Name = DESKTOP-65CAO8M | Source = DCOM | ID = 10016 Description = < End of report >