cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

ÿþOTL logfile created on: 18/10/2015 20:58:13 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = D:\Users\Bryan\Downloads
64bit- Professional (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17728)
Locale: 0000040C | Country: France | Language: FRA | Date Format: dd/MM/yyyy

3,89 Gb Total Physical Memory | 2,24 Gb Available Physical Memory | 57,63% Memory free
4,27 Gb Paging File | 2,25 Gb Available in Paging File | 52,70% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 95,00 Gb Total Space | 52,17 Gb Free Space | 54,92% Space Free | Partition Type: NTFS
Drive D: | 121,27 Gb Total Space | 114,01 Gb Free Space | 94,01% Space Free | Partition Type: NTFS

Computer Name: LEGUERN | User Name: Bryan | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

[color=#E56717]========== Processes (SafeList) ==========[/color]

PRC - [2015/10/18 20:03:04 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Users\Bryan\Downloads\OTL.exe
PRC - [2015/10/18 18:46:00 | 000,771,912 | ---- | M] (Kingsoft Corporation) -- c:\Program Files (x86)\cmcm\Clean Master\cmtray.exe
PRC - [2015/10/18 18:45:50 | 000,315,208 | ---- | M] (Kingsoft Corporation) -- c:\Program Files (x86)\cmcm\Clean Master\cmcore.exe
PRC - [2015/10/12 09:03:38 | 003,792,880 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\Av\avgidsagent.exe
PRC - [2015/10/12 08:59:54 | 003,812,264 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\Av\avgui.exe
PRC - [2015/10/12 08:59:50 | 001,568,848 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\Av\avgfws.exe
PRC - [2015/10/12 08:58:12 | 000,596,344 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe
PRC - [2015/10/09 02:53:06 | 000,811,848 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2015/10/06 02:33:34 | 004,746,696 | ---- | M] (Mega Limited) -- D:\Users\Bryan\AppData\Local\MEGAsync\MEGAsync.exe
PRC - [2015/10/05 09:48:46 | 001,135,416 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
PRC - [2015/10/05 09:48:44 | 001,513,784 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
PRC - [2015/10/05 09:48:34 | 009,832,760 | ---- | M] (Malwarebytes) -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
PRC - [2015/09/22 13:14:38 | 001,125,800 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
PRC - [2015/03/07 00:22:00 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2014/06/18 10:05:41 | 000,267,224 | ---- | M] (CyberLink Corp.) -- C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
PRC - [2013/12/04 08:44:00 | 005,545,448 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe


[color=#E56717]========== Modules (No Company Name) ==========[/color]

MOD - [2015/10/18 18:05:02 | 040,500,224 | ---- | M] () -- C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll
MOD - [2015/10/09 02:53:04 | 016,493,384 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\PepperFlash\pepflashplayer.dll
MOD - [2015/10/09 02:53:02 | 001,532,744 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libglesv2.dll
MOD - [2015/10/09 02:53:00 | 000,081,224 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.71\libegl.dll


[color=#E56717]========== Services (SafeList) ==========[/color]

SRV:[b]64bit:[/b] - [2015/02/27 12:49:48 | 000,035,616 | ---- | M] (Microsoft) [Auto | Running] -- C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe -- (NovaPdfServer)
SRV:[b]64bit:[/b] - [2015/02/21 01:49:18 | 000,780,800 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:[b]64bit:[/b] - [2015/02/04 01:58:28 | 000,366,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:[b]64bit:[/b] - [2015/02/04 01:58:28 | 000,023,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:[b]64bit:[/b] - [2014/12/06 03:35:00 | 000,229,888 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:[b]64bit:[/b] - [2014/10/31 06:51:25 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:[b]64bit:[/b] - [2014/10/29 06:09:06 | 000,092,992 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\KeyboardFilterSvc.dll -- (MsKeyboardFilter)
SRV:[b]64bit:[/b] - [2014/10/29 05:59:51 | 003,460,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:[b]64bit:[/b] - [2014/10/29 05:50:12 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:[b]64bit:[/b] - [2014/10/29 04:42:19 | 000,026,112 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:[b]64bit:[/b] - [2014/10/29 04:42:03 | 000,041,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:[b]64bit:[/b] - [2014/10/29 04:34:51 | 000,067,584 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:[b]64bit:[/b] - [2014/10/29 04:33:55 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:[b]64bit:[/b] - [2014/10/29 04:30:35 | 000,187,904 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:[b]64bit:[/b] - [2014/10/29 04:29:22 | 000,121,856 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:57:05 | 000,324,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\BthHFSrv.dll -- (BthHFSrv)
SRV:[b]64bit:[/b] - [2014/10/29 03:48:20 | 000,166,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:[b]64bit:[/b] - [2014/10/29 03:43:27 | 000,524,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:[b]64bit:[/b] - [2014/10/29 03:27:21 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:[b]64bit:[/b] - [2014/10/29 03:26:21 | 000,838,656 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:[b]64bit:[/b] - [2014/10/29 03:26:02 | 000,294,912 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:[b]64bit:[/b] - [2014/10/29 03:24:37 | 000,131,072 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:[b]64bit:[/b] - [2014/10/29 03:22:40 | 000,062,464 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:[b]64bit:[/b] - [2014/10/29 03:20:03 | 000,262,656 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:[b]64bit:[/b] - [2014/10/29 03:19:20 | 000,550,912 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:[b]64bit:[/b] - [2014/10/29 03:16:17 | 000,154,112 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:[b]64bit:[/b] - [2014/10/29 03:13:24 | 000,374,784 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:13:02 | 000,260,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:12:36 | 000,407,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:[b]64bit:[/b] - [2014/10/29 03:12:22 | 000,270,336 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:[b]64bit:[/b] - [2014/10/29 03:11:10 | 001,639,424 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:09:48 | 000,521,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
SRV:[b]64bit:[/b] - [2014/10/29 03:05:09 | 000,206,848 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:[b]64bit:[/b] - [2014/10/29 02:57:18 | 000,074,752 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:[b]64bit:[/b] - [2014/10/29 02:48:52 | 000,562,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:[b]64bit:[/b] - [2014/10/29 02:46:48 | 001,348,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:[b]64bit:[/b] - [2014/10/29 02:35:51 | 001,668,096 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:[b]64bit:[/b] - [2014/07/02 10:08:33 | 000,076,800 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\inetsrv\w3logsvc.dll -- (w3logsvc)
SRV:[b]64bit:[/b] - [2014/01/09 06:12:48 | 000,290,520 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe -- (RtkAudioService)
SRV:[b]64bit:[/b] - [2013/12/04 08:44:08 | 000,200,168 | ---- | M] () [Auto | Running] -- C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe -- (ISCTAgent)
SRV:[b]64bit:[/b] - [2013/07/01 20:08:48 | 000,822,232 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe -- (Intel(R)
SRV:[b]64bit:[/b] - [2013/07/01 20:08:32 | 000,733,696 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe -- (Intel(R)
SRV - [2015/10/18 18:45:50 | 000,315,208 | ---- | M] (Kingsoft Corporation) [Auto | Running] -- c:\program files (x86)\cmcm\Clean Master\cmcore.exe -- (cmcore)
SRV - [2015/10/12 09:03:38 | 003,792,880 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\Av\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2015/10/12 08:59:50 | 001,568,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\Av\avgfws.exe -- (avgfws)
SRV - [2015/10/12 08:58:50 | 000,604,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [On_Demand | Stopped] -- C:\Program Files (x86)\AVG\Av\avgamps.exe -- (AvgAMPS)
SRV - [2015/10/12 08:58:12 | 000,596,344 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe -- (avgwd)
SRV - [2015/10/05 09:48:46 | 001,135,416 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2015/10/05 09:48:44 | 001,513,784 | ---- | M] (Malwarebytes) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2015/09/22 13:14:30 | 001,042,344 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe -- (avgsvc)
SRV - [2015/03/07 00:22:00 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2014/12/11 10:30:48 | 000,315,496 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014/10/29 05:50:12 | 002,987,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2014/10/29 03:51:55 | 000,017,920 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2014/10/29 03:04:45 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2014/10/29 02:53:11 | 000,367,104 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2014/07/02 10:10:55 | 000,066,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\inetsrv\w3logsvc.dll -- (w3logsvc)
SRV - [2014/07/01 11:56:02 | 000,475,648 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (WAS)
SRV - [2014/07/01 11:56:02 | 000,475,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\iisw3adm.dll -- (W3SVC)
SRV - [2014/07/01 11:56:02 | 000,062,464 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysWOW64\inetsrv\apphostsvc.dll -- (AppHostSvc)
SRV - [2014/01/10 02:54:26 | 000,279,024 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012/04/24 14:37:56 | 000,169,752 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe -- (ICCS)


[color=#E56717]========== Driver Services (SafeList) ==========[/color]

DRV:[b]64bit:[/b] - [2015/10/18 20:35:56 | 000,192,216 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV:[b]64bit:[/b] - [2015/10/18 18:27:29 | 000,056,680 | ---- | M] (Kingsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ksapi64.sys -- (ksapi64)
DRV:[b]64bit:[/b] - [2015/10/05 09:50:22 | 000,064,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:[b]64bit:[/b] - [2015/10/05 09:50:06 | 000,025,816 | ---- | M] (Malwarebytes) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:[b]64bit:[/b] - [2015/09/11 15:59:08 | 000,312,752 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:[b]64bit:[/b] - [2015/09/09 03:23:42 | 000,023,152 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\avgboota.sys -- (Avgboota)
DRV:[b]64bit:[/b] - [2015/08/31 23:45:14 | 000,314,800 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgwfpa.sys -- (Avgwfpa)
DRV:[b]64bit:[/b] - [2015/08/29 15:31:02 | 000,097,208 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:[b]64bit:[/b] - [2015/08/20 13:58:04 | 000,298,416 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
DRV:[b]64bit:[/b] - [2015/08/14 14:24:40 | 000,398,256 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgloga.sys -- (Avgloga)
DRV:[b]64bit:[/b] - [2015/08/10 15:32:20 | 000,293,296 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:[b]64bit:[/b] - [2015/08/10 15:32:08 | 000,197,040 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgdiska.sys -- (Avgdiska)
DRV:[b]64bit:[/b] - [2015/08/10 15:31:58 | 000,251,312 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:[b]64bit:[/b] - [2015/08/10 15:25:40 | 000,042,416 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:[b]64bit:[/b] - [2015/06/17 17:04:24 | 000,054,784 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:[b]64bit:[/b] - [2015/04/30 00:01:06 | 000,023,200 | ---- | M] (Western Digital Technologies) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wdcsam64.sys -- (WDC_SAM)
DRV:[b]64bit:[/b] - [2015/03/20 03:56:10 | 000,080,384 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:[b]64bit:[/b] - [2015/03/17 19:26:06 | 000,467,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:[b]64bit:[/b] - [2015/03/13 06:03:31 | 000,239,424 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:[b]64bit:[/b] - [2015/03/09 04:02:51 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:[b]64bit:[/b] - [2015/03/04 12:25:11 | 000,377,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:[b]64bit:[/b] - [2015/02/04 01:58:33 | 000,264,000 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:[b]64bit:[/b] - [2015/02/04 01:58:33 | 000,114,496 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:[b]64bit:[/b] - [2015/02/04 01:58:04 | 000,044,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:[b]64bit:[/b] - [2014/11/10 20:06:59 | 000,136,512 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:[b]64bit:[/b] - [2014/11/04 21:33:40 | 000,058,176 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:[b]64bit:[/b] - [2014/10/29 05:59:47 | 000,415,040 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:[b]64bit:[/b] - [2014/10/29 05:57:42 | 000,054,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:[b]64bit:[/b] - [2014/10/29 05:56:04 | 000,027,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:[b]64bit:[/b] - [2014/10/29 04:46:43 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:[b]64bit:[/b] - [2014/10/29 04:46:09 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
DRV:[b]64bit:[/b] - [2014/10/29 04:45:54 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:[b]64bit:[/b] - [2014/10/29 04:45:39 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:[b]64bit:[/b] - [2014/10/29 04:45:16 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:[b]64bit:[/b] - [2014/10/17 06:56:23 | 000,039,744 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:[b]64bit:[/b] - [2014/10/17 05:35:04 | 000,086,336 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:[b]64bit:[/b] - [2014/10/15 10:32:36 | 000,921,920 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\windows\SysNative\drivers\refs.sys -- (ReFS)
DRV:[b]64bit:[/b] - [2014/10/07 08:54:45 | 000,324,928 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:[b]64bit:[/b] - [2014/10/07 08:54:45 | 000,189,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
DRV:[b]64bit:[/b] - [2014/10/07 08:44:39 | 000,069,952 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:[b]64bit:[/b] - [2014/08/15 02:36:55 | 000,146,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:[b]64bit:[/b] - [2014/07/01 12:33:10 | 000,022,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kbldfltr.sys -- (kbldfltr)
DRV:[b]64bit:[/b] - [2014/07/01 12:33:01 | 000,220,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Vid.sys -- (Vid)
DRV:[b]64bit:[/b] - [2014/07/01 12:33:01 | 000,129,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmbusr.sys -- (vmbusr)
DRV:[b]64bit:[/b] - [2014/07/01 12:33:01 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\storvsp.sys -- (storvsp)
DRV:[b]64bit:[/b] - [2014/07/01 12:33:01 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpcivsp.sys -- (vpcivsp)
DRV:[b]64bit:[/b] - [2014/03/18 11:54:51 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:[b]64bit:[/b] - [2014/03/18 11:54:39 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:[b]64bit:[/b] - [2014/03/18 11:54:39 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:[b]64bit:[/b] - [2014/03/18 11:54:38 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:[b]64bit:[/b] - [2014/03/18 11:54:38 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:[b]64bit:[/b] - [2014/03/18 11:37:54 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:[b]64bit:[/b] - [2014/03/13 14:35:24 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\windows\SysNative\drivers\wof.sys -- (Wof)
DRV:[b]64bit:[/b] - [2014/01/28 05:58:37 | 000,041,704 | ---- | M] (CyberLink Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\clwvd.sys -- (clwvd)
DRV:[b]64bit:[/b] - [2014/01/13 14:02:28 | 003,068,120 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\rtwlane.sys -- (RTWlanE)
DRV:[b]64bit:[/b] - [2014/01/07 04:43:42 | 000,542,448 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:[b]64bit:[/b] - [2014/01/07 04:43:40 | 000,031,472 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV:[b]64bit:[/b] - [2014/01/07 04:43:40 | 000,029,936 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Smb_driver_AMDASF.sys -- (SmbDrv)
DRV:[b]64bit:[/b] - [2013/11/27 17:37:14 | 000,449,496 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:[b]64bit:[/b] - [2013/11/27 17:30:48 | 004,209,152 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:[b]64bit:[/b] - [2013/11/12 01:54:30 | 000,067,584 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iaioi2ce.sys -- (iaioi2c)
DRV:[b]64bit:[/b] - [2013/11/12 01:54:30 | 000,031,232 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iaiogpioe.sys -- (GPIO)
DRV:[b]64bit:[/b] - [2013/11/09 07:02:40 | 000,445,656 | ---- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER)
DRV:[b]64bit:[/b] - [2013/10/29 03:08:35 | 000,039,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:[b]64bit:[/b] - [2013/10/29 03:08:35 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:[b]64bit:[/b] - [2013/10/11 15:44:38 | 000,029,464 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\MBI.sys -- (MBI)
DRV:[b]64bit:[/b] - [2013/10/05 01:57:16 | 000,032,024 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\VirtualButtons.sys -- (VirtualButtons)
DRV:[b]64bit:[/b] - [2013/08/22 15:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:[b]64bit:[/b] - [2013/08/22 15:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:[b]64bit:[/b] - [2013/08/22 14:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:[b]64bit:[/b] - [2013/08/22 14:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:[b]64bit:[/b] - [2013/08/22 14:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:[b]64bit:[/b] - [2013/08/22 14:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:[b]64bit:[/b] - [2013/08/22 14:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:[b]64bit:[/b] - [2013/08/22 13:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:[b]64bit:[/b] - [2013/08/22 13:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
DRV:[b]64bit:[/b] - [2013/08/22 13:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:[b]64bit:[/b] - [2013/08/22 13:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:[b]64bit:[/b] - [2013/08/22 13:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:[b]64bit:[/b] - [2013/08/22 13:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:[b]64bit:[/b] - [2013/08/22 13:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:[b]64bit:[/b] - [2013/08/22 13:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:[b]64bit:[/b] - [2013/08/22 13:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:[b]64bit:[/b] - [2013/08/22 10:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
DRV:[b]64bit:[/b] - [2013/08/16 06:28:42 | 000,830,680 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt630x64.sys -- (RTL8168)
DRV:[b]64bit:[/b] - [2013/08/13 16:02:12 | 000,046,568 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ISCTD64.sys -- (ISCT)
DRV:[b]64bit:[/b] - [2013/08/13 16:02:12 | 000,021,920 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\imsevent.sys -- (imsevent)
DRV:[b]64bit:[/b] - [2013/08/13 16:02:10 | 000,029,088 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\INETMON.sys -- (INETMON)
DRV:[b]64bit:[/b] - [2013/08/13 16:02:08 | 000,021,408 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ikbevent.sys -- (ikbevent)
DRV:[b]64bit:[/b] - [2013/08/13 01:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:[b]64bit:[/b] - [2013/08/10 02:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:[b]64bit:[/b] - [2013/07/30 20:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:[b]64bit:[/b] - [2013/07/25 21:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:[b]64bit:[/b] - [2013/07/24 07:28:56 | 000,043,320 | ---- | M] (Hewlett-Packard) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:[b]64bit:[/b] - [2013/07/24 07:28:56 | 000,030,520 | ---- | M] (Hewlett-Packard) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:[b]64bit:[/b] - [2013/07/08 20:37:41 | 003,344,352 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NETwew00.sys -- (NETwNe64)
DRV:[b]64bit:[/b] - [2013/07/01 20:10:20 | 000,087,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\TXEIx64.sys -- (TXEIx64)
DRV:[b]64bit:[/b] - [2012/08/03 14:07:30 | 000,020,288 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WirelessButtonDriver64.sys -- (WirelessButtonDriver)
DRV - [2013/09/12 03:17:00 | 002,945,240 | ---- | M] (Realtek Semiconductor Corporation ) [Kernel | On_Demand | Running] -- C:\Windows\SysWOW64\drivers\rtwlane.sys -- (RTWlanE)


[color=#E56717]========== Standard Registry (SafeList) ==========[/color]


[color=#E56717]========== Internet Explorer ==========[/color]

IE:[b]64bit:[/b] - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:[b]64bit:[/b] - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.com
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0



IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = Preserve
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://mysearch.avg.com/?cid={C52BA169-0D80-48FE-95D7-06422BE4AA48}&mid=c3072bceabb047cca12e8969f79924c9-210e76dcbd5df34ca6b5254298fc84554fc0d40e&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0615pit&pr=fr&d=2015-10-18 19:18:15&v=4.1.8.599&pid=wtu&sg=&sap=hp
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = http://www.msn.com/fr-fr/?ocid=iehp
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = fr-FR
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 8A 0E 96 20 0A 88 D0 01 [binary data]
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\..\SearchScopes,DefaultScope = {95B7759C-8C7F-4BF1-B163-73684A933233}
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local

[color=#E56717]========== FireFox ==========[/color]

FF - prefs.js..browser.search.countryCode: "FR"
FF - prefs.js..browser.search.defaultenginename: "Bing.com"
FF - prefs.js..browser.search.region: "FR"
FF - prefs.js..browser.startup.homepage: "https://mysearch.avg.com/?cid={C52BA169-0D80-48FE-95D7-06422BE4AA48}&mid=c3072bceabb047cca12e8969f79924c9-210e76dcbd5df34ca6b5254298fc84554fc0d40e&lang=fr&ds=AVG&coid=avgtbavg&cmpid=0615pit&pr=fr&d=2015-10-18 19:18:15&v=4.1.8.599&pid=wtu&sg=&sap=hp"
FF - prefs.js..extensions.enabledAddons: avg%40toolbar:4.1.8.599
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:38.0.1
FF - user.js - File not found

FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll File not found
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=11.45.2: C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=11.45.2: C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:[b]64bit:[/b] - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.2.1: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)


[2014/07/03 22:02:24 | 000,000,000 | ---D | M] (No name found) -- D:\Users\Bryan\AppData\Roaming\Mozilla\Extensions
[2015/10/18 19:18:39 | 000,000,000 | ---D | M] (No name found) -- D:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\x4clr3lq.default\extensions
[2015/10/18 19:18:39 | 000,000,000 | ---D | M] (AVG Web TuneUp) -- D:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\x4clr3lq.default\extensions\avg@toolbar
[2015/10/18 19:18:40 | 000,014,297 | ---- | M] () -- D:\Users\Bryan\AppData\Roaming\Mozilla\Firefox\Profiles\x4clr3lq.default\searchplugins\avg-secure-search.xml

[color=#E56717]========== Chrome ==========[/color]

CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek\0.9_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.9_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\14.0_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.8_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap\1.1_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi\1.0_1\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.2.0_0\
CHR - Extension: No name found = D:\Users\Bryan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\8.1_0\

O1 HOSTS File: ([2013/08/22 15:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll (Oracle Corporation)
O2:[b]64bit:[/b] - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll (Oracle Corporation)
O3:[b]64bit:[/b] - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:[b]64bit:[/b] - HKLM..\Run: [HotKeysCmds] C:\windows\SysNative\hkcmd.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [IgfxTray] C:\windows\SysNative\igfxtray.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [LoRdiStartOnce] C:\Windows\LoRdi\LoRdiAccueil\LoRdiStartOnce.bat ()
O4:[b]64bit:[/b] - HKLM..\Run: [Persistence] C:\windows\SysNative\igfxpers.exe (Intel Corporation)
O4:[b]64bit:[/b] - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\Av\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [AvgUi] C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [cmsc] c:\program files (x86)\cmcm\Clean Master\cmtray.exe (Kingsoft Corporation)
O4 - HKU\S-1-5-21-682487850-1341855315-2669799507-1002..\Run: [CCleaner Monitoring] C:\Program Files\CCleaner\CCleaner64.exe (Piriform Ltd)
O4 - Startup: D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk = D:\Users\Bryan\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\S-1-5-21-682487850-1341855315-2669799507-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O10:[b]64bit:[/b] - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000008 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13[b]64bit:[/b] - gopher Prefix: missing
O13 - gopher Prefix: missing
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} https://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab (Shockwave ActiveX Control)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0191D580-4F04-4AED-A21F-C56521648726}: DhcpNameServer = 212.27.40.240 212.27.40.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5E979B01-4BD9-4B69-84CD-93C91E0F00C7}: DhcpNameServer = 212.27.40.240 212.27.40.241
O20:[b]64bit:[/b] - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:[b]64bit:[/b] - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\windows\SysNative\igfxdev.dll (Intel Corporation)
O21:[b]64bit:[/b] - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2015/10/18 17:51:49 | 000,000,000 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck autochk *)
O35:[b]64bit:[/b] - HKLM\..comfile [open] -- "%1" %*
O35:[b]64bit:[/b] - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...com [@ = comfile] -- "%1" %*
O37:[b]64bit:[/b] - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

[color=#E56717]========== Files/Folders - Created Within 30 Days ==========[/color]

[2015/10/18 20:05:10 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\ZHP
[2015/10/18 19:52:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2015/10/18 19:18:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\AVG Secure Search
[2015/10/18 19:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\AVG Web TuneUp
[2015/10/18 19:18:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG Web TuneUp
[2015/10/18 18:57:20 | 000,192,216 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/10/18 18:56:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
[2015/10/18 18:56:33 | 000,109,272 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2015/10/18 18:56:33 | 000,064,216 | ---- | C] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2015/10/18 18:56:33 | 000,025,816 | ---- | C] (Malwarebytes) -- C:\windows\SysNative\drivers\mbam.sys
[2015/10/18 18:56:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes Anti-Malware
[2015/10/18 18:56:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2015/10/18 18:27:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Kingsoft
[2015/10/18 18:27:30 | 000,000,000 | ---D | C] -- C:\ProgramData\cmcm
[2015/10/18 18:27:29 | 000,081,768 | ---- | C] (Kingsoft Corporation) -- C:\windows\SysNative\drivers\ksapi.sys
[2015/10/18 18:27:29 | 000,056,680 | ---- | C] (Kingsoft Corporation) -- C:\windows\SysNative\drivers\ksapi64.sys
[2015/10/18 18:27:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\cmcm
[2015/10/18 18:27:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clean Master
[2015/10/18 18:26:10 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\AVG
[2015/10/18 18:25:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AV
[2015/10/18 18:25:04 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\TuneUp Software
[2015/10/18 18:25:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2015/10/18 18:24:23 | 000,000,000 | -H-D | C] -- C:\$AVG
[2015/10/18 18:08:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Avg
[2015/10/18 18:08:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG
[2015/10/18 18:03:02 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\AvgSetupLog
[2015/10/18 18:02:39 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Avg
[2015/10/18 18:02:07 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2015/10/18 18:02:07 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\MFAData
[2015/10/18 18:02:07 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2015/10/18 18:02:07 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Avg2015
[2015/10/18 17:51:10 | 000,000,000 | ---D | C] -- D:\Users\Bryan\Start Menu
[2015/10/18 17:25:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2015/10/18 17:24:40 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2015/10/18 16:17:31 | 000,303,984 | ---- | C] (Boxore OU) -- C:\windows\SysWow64\BoxoreService.dll
[2015/10/18 16:11:36 | 000,000,000 | ---D | C] -- C:\windows\SysWow64\GroupPolicy
[2015/10/18 16:08:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\0401FB58-1445177305-E511-8B16-5820B17DCD3A
[2015/10/18 15:51:50 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Publish Providers
[2015/10/18 15:40:44 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Sony
[2015/10/18 15:21:40 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Diagnostics
[2015/10/18 14:48:20 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Sony
[2015/10/18 11:49:21 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Intel_Corporation
[2015/10/17 21:46:12 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\MAXON
[2015/10/17 21:37:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
[2015/10/17 21:37:57 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\WinZip
[2015/10/17 21:37:57 | 000,000,000 | ---D | C] -- C:\ProgramData\WinZip
[2015/10/17 21:37:37 | 000,000,000 | ---D | C] -- C:\Program Files\WinZip
[2015/10/17 21:31:33 | 000,000,000 | ---D | C] -- C:\ProgramData\UniqueId
[2015/10/17 20:13:40 | 000,000,000 | ---D | C] -- D:\Users\Bryan\Documents\MEGAsync Downloads
[2015/10/17 20:12:41 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Documents\MEGAsync
[2015/10/17 19:37:10 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Mega Limited
[2015/10/17 19:37:08 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
[2015/10/17 19:37:04 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\MEGAsync
[2015/10/17 15:17:24 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\pangu
[2015/10/17 15:01:24 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Apple Computer
[2015/10/17 15:01:24 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Apple Computer
[2015/10/17 15:01:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2015/10/17 15:00:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2015/10/17 15:00:42 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2015/10/17 15:00:40 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2015/10/17 15:00:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2015/10/17 14:59:56 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Apple
[2015/10/17 14:59:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2015/10/17 14:59:39 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2015/10/17 14:59:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2015/10/17 14:59:28 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2015/10/17 14:59:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2015/10/17 14:59:11 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2015/10/17 14:19:00 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Google
[2015/10/17 13:14:30 | 000,000,000 | ---D | C] -- D:\Users\Bryan\Documents\Youcam
[2015/10/17 13:13:48 | 000,000,000 | ---D | C] -- D:\Users\Bryan\LoRdi
[2015/10/17 13:13:20 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Identities
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Voisinage réseau
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Voisinage d'impression
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\Temporary Internet Files
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\SendTo
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Recent
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Modèles
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Documents\Mes vidéos
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Documents\Mes images
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Mes documents
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Menu Démarrer
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Documents\Ma musique
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Local Settings
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\Historique
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Cookies
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\Application Data
[2015/10/17 13:13:11 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\Application Data
[2015/10/17 13:13:05 | 000,000,000 | --SD | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Videos
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Searches
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Saved Games
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Pictures
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Music
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Links
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Favorites
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Downloads
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Documents
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Desktop
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\Contacts
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2015/10/17 13:13:05 | 000,000,000 | R--D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
[2015/10/17 13:13:05 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\EmieUserList
[2015/10/17 13:13:05 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\EmieSiteList
[2015/10/17 13:13:05 | 000,000,000 | -HSD | C] -- D:\Users\Bryan\AppData\Local\EmieBrowserModeList
[2015/10/17 13:13:05 | 000,000,000 | -H-D | C] -- D:\Users\Bryan\Application Data\Microsoft\Internet Explorer\Quick Launch\User Pinned
[2015/10/17 13:13:05 | 000,000,000 | -H-D | C] -- D:\Users\Bryan\AppData
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\vlc
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Temp
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Synaptics
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Softland
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Programs
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Packages
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Mozilla
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Mozilla
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Microsoft_Corporation
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Microsoft
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Macromedia
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Macromedia
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\LibreOffice
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\hpqLog
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Hewlett-Packard
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\ElevatedDiagnostics
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Deployment
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\CyberLink
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\CyberLink
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\CrashDumps
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Apps
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Roaming\Adobe
[2015/10/17 13:13:05 | 000,000,000 | ---D | C] -- D:\Users\Bryan\AppData\Local\Adobe
[2015/10/17 13:08:49 | 000,000,000 | ---D | C] -- C:\windows\CSC
[2015/10/17 13:07:55 | 000,000,000 | ---D | C] -- C:\windows\SoftwareDistribution

[color=#E56717]========== Files - Modified Within 30 Days ==========[/color]

[2015/10/18 20:46:26 | 000,001,082 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/10/18 20:39:54 | 002,046,738 | ---- | M] () -- C:\windows\SysNative\PerfStringBackup.INI
[2015/10/18 20:39:54 | 000,879,918 | ---- | M] () -- C:\windows\SysNative\perfh00C.dat
[2015/10/18 20:39:54 | 000,815,188 | ---- | M] () -- C:\windows\SysNative\perfh009.dat
[2015/10/18 20:39:54 | 000,184,592 | ---- | M] () -- C:\windows\SysNative\perfc00C.dat
[2015/10/18 20:39:54 | 000,168,752 | ---- | M] () -- C:\windows\SysNative\perfc009.dat
[2015/10/18 20:37:40 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2015/10/18 20:36:38 | 000,002,148 | ---- | M] () -- D:\Users\Bryan\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/10/18 20:36:01 | 000,001,078 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/10/18 20:35:56 | 000,192,216 | ---- | M] (Malwarebytes) -- C:\windows\SysNative\drivers\MBAMSwissArmy.sys
[2015/10/18 20:35:39 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2015/10/18 20:35:38 | 3342,241,792 | -HS- | M] () -- C:\hiberfil.sys
[2015/10/18 20:19:05 | 000,000,885 | ---- | M] () -- D:\Users\Bryan\Desktop\ZHPCleaner.lnk
[2015/10/18 20:13:21 | 000,000,873 | ---- | M] () -- D:\Users\Bryan\Desktop\ZHPDiag.lnk
[2015/10/18 20:08:47 | 003,912,704 | ---- | M] () -- D:\Users\Bryan\ZHPDiag3.exe
[2015/10/18 19:52:47 | 000,002,280 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2015/10/18 19:15:06 | 000,400,848 | ---- | M] () -- C:\windows\SysNative\FNTCACHE.DAT
[2015/10/18 18:56:39 | 000,001,121 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/10/18 18:29:43 | 000,007,660 | ---- | M] () -- C:\windows\SysNative\--traceoff
[2015/10/18 18:27:32 | 000,001,089 | ---- | M] () -- C:\Users\Public\Desktop\Clean Master.lnk
[2015/10/18 18:27:29 | 000,081,768 | ---- | M] (Kingsoft Corporation) -- C:\windows\SysNative\drivers\ksapi.sys
[2015/10/18 18:27:29 | 000,056,680 | ---- | M] (Kingsoft Corporation) -- C:\windows\SysNative\drivers\ksapi64.sys
[2015/10/18 18:25:04 | 000,000,959 | ---- | M] () -- C:\Users\Public\Desktop\AVG Protection.lnk
[2015/10/18 17:51:49 | 000,000,000 | ---- | M] () -- C:\autoexec.bat
[2015/10/18 17:25:02 | 000,000,841 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/10/18 17:05:41 | 000,000,004 | ---- | M] () -- C:\windows\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/10/18 16:52:32 | 000,000,855 | ---- | M] () -- C:\windows\SysWow64\${LOGFILE}
[2015/10/18 16:27:45 | 000,001,064 | RHS- | M] () -- C:\ProgramData\ntuser.pol
[2015/10/18 16:13:23 | 000,000,186 | ---- | M] () -- C:\windows\SysWow64\L
[2015/10/18 16:11:39 | 000,000,008 | RHS- | M] () -- D:\Users\Bryan\ntuser.pol
[2015/10/18 16:11:38 | 000,828,416 | ---- | M] () -- C:\windows\SysWow64\SearchProtectService.exe
[2015/10/18 16:08:52 | 000,000,008 | ---- | M] () -- C:\END
[2015/10/18 15:41:18 | 000,000,000 | ---- | M] () -- C:\windows\SysNative\--debugoff
[2015/10/17 21:37:59 | 000,002,328 | ---- | M] () -- C:\Users\Public\Desktop\WinZip.lnk
[2015/10/17 21:37:59 | 000,002,078 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FAH.lnk
[2015/10/17 21:37:59 | 000,001,987 | ---- | M] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Préchargeur.lnk
[2015/10/17 20:12:59 | 000,001,073 | ---- | M] () -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk
[2015/10/17 15:30:23 | 000,000,000 | -H-- | M] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
[2015/10/05 09:50:22 | 000,064,216 | ---- | M] (Malwarebytes Corporation) -- C:\windows\SysNative\drivers\mwac.sys
[2015/10/05 09:50:10 | 000,109,272 | ---- | M] (Malwarebytes) -- C:\windows\SysNative\drivers\mbamchameleon.sys
[2015/10/05 09:50:06 | 000,025,816 | ---- | M] (Malwarebytes) -- C:\windows\SysNative\drivers\mbam.sys
[2015/09/22 15:40:52 | 000,303,984 | ---- | M] (Boxore OU) -- C:\windows\SysWow64\BoxoreService.dll

[color=#E56717]========== Files Created - No Company Name ==========[/color]

[2015/10/18 20:19:05 | 000,000,885 | ---- | C] () -- D:\Users\Bryan\Desktop\ZHPCleaner.lnk
[2015/10/18 20:08:40 | 003,912,704 | ---- | C] () -- D:\Users\Bryan\ZHPDiag3.exe
[2015/10/18 20:05:18 | 000,000,873 | ---- | C] () -- D:\Users\Bryan\Desktop\ZHPDiag.lnk
[2015/10/18 19:52:47 | 000,002,280 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2015/10/18 19:52:47 | 000,002,148 | ---- | C] () -- D:\Users\Bryan\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2015/10/18 19:41:35 | 000,001,082 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2015/10/18 19:41:35 | 000,001,078 | ---- | C] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2015/10/18 19:15:01 | 000,400,848 | ---- | C] () -- C:\windows\SysNative\FNTCACHE.DAT
[2015/10/18 18:56:39 | 000,001,121 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2015/10/18 18:27:32 | 000,001,089 | ---- | C] () -- C:\Users\Public\Desktop\Clean Master.lnk
[2015/10/18 18:25:04 | 000,000,959 | ---- | C] () -- C:\Users\Public\Desktop\AVG Protection.lnk
[2015/10/18 17:51:49 | 000,000,000 | ---- | C] () -- C:\autoexec.bat
[2015/10/18 17:25:02 | 000,000,841 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2015/10/18 16:52:23 | 000,000,855 | ---- | C] () -- C:\windows\SysWow64\${LOGFILE}
[2015/10/18 16:18:58 | 000,000,004 | ---- | C] () -- C:\windows\SysWow64\029B560A371F4E00AB32838EBC01B9E7
[2015/10/18 16:13:13 | 000,000,186 | ---- | C] () -- C:\windows\SysWow64\L
[2015/10/18 16:11:39 | 000,828,416 | ---- | C] () -- C:\windows\SysWow64\SearchProtectService.exe
[2015/10/18 16:11:39 | 000,000,008 | RHS- | C] () -- D:\Users\Bryan\ntuser.pol
[2015/10/18 16:10:23 | 000,001,064 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2015/10/18 16:08:52 | 000,000,008 | ---- | C] () -- C:\END
[2015/10/18 15:41:18 | 000,007,660 | ---- | C] () -- C:\windows\SysNative\--traceoff
[2015/10/18 15:41:18 | 000,000,000 | ---- | C] () -- C:\windows\SysNative\--debugoff
[2015/10/17 21:37:59 | 000,002,328 | ---- | C] () -- C:\Users\Public\Desktop\WinZip.lnk
[2015/10/17 21:37:59 | 000,002,078 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FAH.lnk
[2015/10/17 21:37:59 | 000,001,987 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Préchargeur.lnk
[2015/10/17 20:12:59 | 000,001,073 | ---- | C] () -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk
[2015/10/17 15:30:23 | 000,000,000 | -H-- | C] () -- C:\windows\SysNative\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
[2015/10/17 14:59:56 | 000,002,535 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2015/10/17 13:13:06 | 000,000,352 | ---- | C] () -- D:\Users\Bryan\Application Data\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk
[2015/10/17 13:13:06 | 000,000,334 | ---- | C] () -- D:\Users\Bryan\Application Data\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk
[2015/10/17 13:13:05 | 000,000,369 | ---- | C] () -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
[2015/10/17 13:13:05 | 000,000,369 | ---- | C] () -- D:\Users\Bryan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
[2015/10/17 13:05:52 | 3342,241,792 | -HS- | C] () -- C:\hiberfil.sys
[2015/10/17 13:04:21 | 268,435,456 | -HS- | C] () -- C:\swapfile.sys
[2015/04/28 09:20:18 | 000,107,008 | ---- | C] () -- C:\windows\SysWow64\OEMLicense.dll
[2015/04/28 09:19:36 | 000,046,080 | ---- | C] () -- C:\windows\SysWow64\BWContextHandler.dll
[2015/04/28 00:58:48 | 000,451,072 | ---- | C] () -- C:\windows\SysWow64\ISSRemoveSP.exe
[2014/07/01 11:56:21 | 000,931,872 | ---- | C] () -- C:\windows\SysWow64\PerfStringBackup.INI
[2014/03/18 11:55:05 | 000,002,255 | ---- | C] () -- C:\windows\SysWow64\WimBootCompress.ini
[2013/11/27 17:30:34 | 000,280,064 | ---- | C] () -- C:\windows\SysWow64\igdmd32.dll
[2013/11/27 17:30:28 | 000,182,272 | ---- | C] () -- C:\windows\SysWow64\igdde32.dll
[2013/11/27 17:30:24 | 000,142,848 | ---- | C] () -- C:\windows\SysWow64\igdail32.dll

[color=#E56717]========== ZeroAccess Check ==========[/color]

[2015/05/06 17:53:09 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2015/02/12 19:40:58 | 022,291,584 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2015/02/12 19:34:06 | 019,731,824 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2014/10/29 03:19:43 | 001,013,760 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2014/10/29 02:59:23 | 000,786,944 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2014/10/29 03:16:01 | 000,512,512 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

[color=#E56717]========== LOP Check ==========[/color]

[2015/05/11 10:46:37 | 000,000,000 | ---D | M] -- D:\Users\Administrateur\AppData\Roaming\LibreOffice
[2015/05/11 10:46:39 | 000,000,000 | ---D | M] -- D:\Users\Administrateur\AppData\Roaming\Softland
[2015/05/11 10:46:39 | 000,000,000 | ---D | M] -- D:\Users\Administrateur\AppData\Roaming\Synaptics
[2015/10/18 18:26:10 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\AVG
[2015/05/11 10:46:37 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\LibreOffice
[2015/10/18 16:18:58 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\MAXON
[2015/10/18 15:51:50 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\Publish Providers
[2015/05/11 10:46:39 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\Softland
[2015/10/18 18:27:50 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\Sony
[2015/05/11 10:46:39 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\Synaptics
[2015/10/18 18:25:04 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\TuneUp Software
[2015/10/18 20:34:35 | 000,000,000 | ---D | M] -- D:\Users\Bryan\AppData\Roaming\ZHP

[color=#E56717]========== Purity Check ==========[/color]



< End of report >

Publicité


Signaler le contenu de ce document

Publicité