OTL Extras logfile created on: 14/02/2013 17:20:23 - Run 2 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\phil\Desktop Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 0000040c | Country: France | Language: FRA | Date Format: dd/MM/yyyy 2,75 Gb Total Physical Memory | 1,38 Gb Available Physical Memory | 50,06% Memory free 5,50 Gb Paging File | 3,96 Gb Available in Paging File | 72,11% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files Drive C: | 232,79 Gb Total Space | 216,46 Gb Free Space | 92,99% Space Free | Partition Type: NTFS Computer Name: PHIL-PC | User Name: phil | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days [color=#E56717]========== Extra Registry (All) ==========[/color] [color=#E56717]========== File Associations ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] .bat [@ = batfile] -- "%1" %* .chm [@ = chm.file] -- C:\Windows\hh.exe (Microsoft Corporation) .cmd [@ = cmdfile] -- "%1" %* .com [@ = comfile] -- "%1" %* .cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation) .exe [@ = exefile] -- "%1" %* .hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation) .hta [@ = htafile] -- C:\Windows\System32\mshta.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .inf [@ = inffile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .ini [@ = inifile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .url [@ = InternetShortcut] -- C:\Windows\System32\rundll32.exe (Microsoft Corporation) .js [@ = JSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .jse [@ = JSEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .pif [@ = piffile] -- "%1" %* .reg [@ = regfile] -- C:\Windows\regedit.exe (Microsoft Corporation) .scr [@ = scrfile] -- "%1" /S .txt [@ = txtfile] -- C:\Windows\System32\NOTEPAD.EXE (Microsoft Corporation) .vbe [@ = VBEFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .vbs [@ = VBSFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsf [@ = WSFFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) .wsh [@ = WSHFile] -- C:\Windows\System32\WScript.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\] .html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) [color=#E56717]========== Shell Spawning ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) batfile [open] -- "%1" %* batfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) chm.file [open] -- "%SystemRoot%\hh.exe" %1 (Microsoft Corporation) cmdfile [edit] -- %SystemRoot%\System32\NOTEPAD.EXE %1 (Microsoft Corporation) cmdfile [open] -- "%1" %* cmdfile [print] -- %SystemRoot%\System32\NOTEPAD.EXE /p %1 (Microsoft Corporation) comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation) htafile [open] -- C:\Windows\System32\mshta.exe "%1" %* (Microsoft Corporation) htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" -nohome (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) inffile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inffile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) inifile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) inifile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) jsfile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsfile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsfile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) jsefile [edit] -- C:\Windows\System32\Notepad.exe %1 (Microsoft Corporation) jsefile [open] -- C:\Windows\System32\WScript.exe "%1" %* (Microsoft Corporation) jsefile [print] -- C:\Windows\System32\Notepad.exe /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [edit] -- %SystemRoot%\system32\notepad.exe "%1" (Microsoft Corporation) regfile [open] -- regedit.exe "%1" (Microsoft Corporation) regfile [merge] -- Reg Error: Key error. regfile [print] -- %SystemRoot%\system32\notepad.exe /p "%1" (Microsoft Corporation) scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. txtfile [open] -- %SystemRoot%\system32\NOTEPAD.EXE %1 (Microsoft Corporation) txtfile [print] -- %SystemRoot%\system32\NOTEPAD.EXE /p %1 (Microsoft Corporation) txtfile [printto] -- %SystemRoot%\system32\notepad.exe /pt "%1" "%2" "%3" "%4" (Microsoft Corporation) vbefile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbefile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbefile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) vbsfile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) vbsfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) vbsfile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wsffile [edit] -- "%SystemRoot%\System32\Notepad.exe" %1 (Microsoft Corporation) wsffile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) wsffile [print] -- "%SystemRoot%\System32\Notepad.exe" /p %1 (Microsoft Corporation) wshfile [open] -- "%SystemRoot%\System32\WScript.exe" "%1" %* (Microsoft Corporation) Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [color=#E56717]========== Security Center Settings ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = Reg Error: Unknown registry data type -- File not found "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [color=#E56717]========== Firewall Settings ==========[/color] [color=#E56717]========== Authorized Applications List ==========[/color] [color=#E56717]========== HKEY_LOCAL_MACHINE Uninstall List ==========[/color] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0F5B4A82-9DAF-3D13-8CB8-AEB25E4A614E}" = Microsoft .NET Framework 4 Client Profile FRA Language Pack "{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile "{3D3E663D-4E7E-4577-A560-7ECDDD45548A}" = PVSonyDll "{43C0CACD-F9A8-4F17-A84C-0A203B2BAE6D}" = GeekBuddy "{A7DA4247-9F22-4d4a-974A-DD455CCF43B6}" = COMODO System Utilities "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = Panneau de configuration NVIDIA 310.90 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{BCC0552D-76C0-4130-BFBD-49BE49ACC594}" = COMODO Internet Security "{C2F8CA82-2BD9-4513-B2D1-08A47914C1DA}_is1" = DriverScanner "{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}" = TuneUp Utilities 2013 "{CCD96AE0-7A64-431F-ADEF-4AC02C82DBF2}" = TuneUp Utilities Language Pack (fr-FR) "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin "AIDA32_is1" = AIDA32 v3.93 "Browser Defender_is1" = Browser Guard 4.0 "CCleaner" = CCleaner "Comodo Dragon" = Comodo Dragon "EasyBCD" = EasyBCD 2.2 "ESET Online Scanner" = ESET Online Scanner v3 "Glary Utilities_is1" = Glary Utilities 2.53.0.1726 "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile FRA Language Pack" = Module linguistique Microsoft .NET Framework 4 Client Profile FRA "Mozilla Firefox 18.0.2 (x86 fr)" = Mozilla Firefox 18.0.2 (x86 fr) "NVIDIA Drivers" = NVIDIA Drivers "Spyware Doctor" = PC Tools Internet Security 9.1 "SynTPDeinstKey" = Synaptics Pointing Device Driver "TuneUp Utilities 2013" = TuneUp Utilities 2013 "UnHackMe_is1" = UnHackMe 5.99 release "Unlocker" = Unlocker 1.9.1 "Usbfix" = UsbFix By El Desaparecido "WinRAR archiver" = WinRAR 4.20 (32-bit) "ZHPDiag_is1" = ZHPDiag 1.3.5 "ZHPFix_is1" = ZHPFix 1.3 [color=#E56717]========== Last 20 Event Log Errors ==========[/color] [ Application Events ] Error - 14/02/2013 08:55:44 | Computer Name = phil-PC | Source = VSS | ID = 8193 Description = Error - 14/02/2013 08:57:21 | Computer Name = phil-PC | Source = WinMgmt | ID = 10 Description = Error - 14/02/2013 09:03:02 | Computer Name = phil-PC | Source = VSS | ID = 8193 Description = Error - 14/02/2013 09:04:32 | Computer Name = phil-PC | Source = WinMgmt | ID = 10 Description = Error - 14/02/2013 09:07:43 | Computer Name = phil-PC | Source = VSS | ID = 8193 Description = Error - 14/02/2013 09:09:13 | Computer Name = phil-PC | Source = WinMgmt | ID = 10 Description = Error - 14/02/2013 09:17:09 | Computer Name = phil-PC | Source = VSS | ID = 8193 Description = Error - 14/02/2013 09:17:56 | Computer Name = phil-PC | Source = WinMgmt | ID = 10 Description = Error - 14/02/2013 09:21:17 | Computer Name = phil-PC | Source = VSS | ID = 8193 Description = Error - 14/02/2013 09:22:54 | Computer Name = phil-PC | Source = WinMgmt | ID = 10 Description = [ System Events ] Error - 14/02/2013 08:55:46 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7024 Description = Le service Pare-feu Windows s’est arrêté avec l’erreur service particulière %%5. Error - 14/02/2013 09:03:04 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7024 Description = Le service Pare-feu Windows s’est arrêté avec l’erreur service particulière %%5. Error - 14/02/2013 09:07:45 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7024 Description = Le service Pare-feu Windows s’est arrêté avec l’erreur service particulière %%5. Error - 14/02/2013 09:07:45 | Computer Name = phil-PC | Source = Microsoft-Windows-WHEA-Logger | ID = 20 Description = Une erreur matérielle irrécupérable s’est produite. Composant : AMD Northbridge Source de l’erreur : 3 Type d’erreur : 11 ID du processeur : 0 Pour plus d’informations, consultez les détails de cette entrée. Error - 14/02/2013 09:15:17 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7034 Description = Le service COMODO LPS Launcher s’est terminé de façon inattendue pour la 1ème fois. Error - 14/02/2013 09:17:11 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7024 Description = Le service Pare-feu Windows s’est arrêté avec l’erreur service particulière %%5. Error - 14/02/2013 09:21:17 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7024 Description = Le service Pare-feu Windows s’est arrêté avec l’erreur service particulière %%5. Error - 14/02/2013 10:34:02 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7003 Description = Le service Fournisseur HomeGroup dépend du service suivant : fdphost. Ce dernier n’est peut-être pas installé. Error - 14/02/2013 12:14:14 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7011 Description = Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la réponse transactionnelle du service sdCoreService. Error - 14/02/2013 12:14:18 | Computer Name = phil-PC | Source = Service Control Manager | ID = 7003 Description = Le service Fournisseur HomeGroup dépend du service suivant : fdphost. Ce dernier n’est peut-être pas installé. < End of report >