cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2015.11.12.166 By Nicolas Coolman (2015/11/12)
~ Run by LePetitBeurre (Administrator) (2015/11/12 20:00:37)
~ Web: http://www.nicolascoolman.fr
~ Facebook: https://www.facebook.com/nicolascoolman1
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\LePetitBeurre\Desktop\ZHPDiag.txt
~ Report: C:\Users\LePetitBeurre\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 10240)

---\\ Internet Browsers (3) - 0s
GCIE: Google Chrome v46.0.2490.80
MFIE: Mozilla Firefox 42.0 (x86 fr) v42.0
MSIE: Internet Explorer v11.0.10240.16590

---\\ Windows Product Information (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ System protection software (2) - 0s
Malwarebytes Anti-Malware version 2.2.0.1024
Windows Defender (Deactivate)

---\\ System optimization software (1) - 0s
CCleaner v5.05

---\\ Surveillance software (1) - 0s
Adobe Flash Player 17 NPAPI

---\\ Sharing software PeerToPeer (1) - 0s
qBittorrent 3.1.12 v3.1.12

---\\ Information on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 16703.424 MB (70% free)
System Restore: Activé (Enable)
System drive C: has 18 GB () free of 231 GB =>Alerte espace disque inférieur à 20 Go

---\\ Connection to the system mode (3) - 0s
~ Computer Name: BREQXUS
~ User Name: LePetitBeurre
~ Logged in as Administrator

---\\ Enumeration of the disk units (3) - 0s
~ Drive C: has 18 GB free of 231 GB (System)
~ Drive D: has 470 GB free of 721 GB
~ Drive H: has 0 GB free of 0 GB

---\\ State of the Windows Security Center (7) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (24) - 1s
[MD5.F1CBCB7FA6F3B309639AA2D4EF74469C] - 10/09/2015 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4532304] ©
[MD5.5DED2A3F11AE916C8F2724947E736261] - 10/07/2015 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [59392] ©
[MD5.7718A2A9B2BFB2C8E2BAEB03310CA3FD] - 10/09/2015 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [290312] ©
[MD5.E5D86250453B33900666D92ED1A92ABE] - 17/09/2015 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [2740224] ©
[MD5.A7C48B051A9C5D5054916DE5BEBBCA2D] - 05/11/2015 - (.Microsoft Corporation - Windows Logon Application.) -- C:\WINDOWS\System32\Winlogon.exe [579072] ©
[MD5.ECB1943967424DFB96E03F6A098434EF] - 10/09/2015 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [430592] ©
[MD5.C287D0E32771E3222A444DC527A29477] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [680256] ©
[MD5.BB5BBD0E4D04047585E4ED0F07AA51E7] - 10/07/2015 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [534064] ©
[MD5.A3D96563BF46FC8A0E5756B796127D14] - 05/11/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [577888] ©
[MD5.8921DF6060DB5C7700AA48CB12E9EA08] - 10/07/2015 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28512] ©
[MD5.F2829DC6D292DCAC5029893BB2E9FEE3] - 10/07/2015 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [92672] ©
[MD5.CA160E02F35A61C6F5C681FB4669C519] - 10/07/2015 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] ©
[MD5.25435407D97419627F4B10653433BF2B] - 10/07/2015 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] ©
[MD5.C277A49F8A8295840DEBC9240B75A282] - 10/07/2015 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [80896] ©
[MD5.D4CDEE4A62BDFFF6E8558A9552148EA7] - 10/07/2015 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [114688] ©
[MD5.5D3744E6FDEC1A6FB3FA9B1DD4AF0694] - 10/07/2015 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [143360] ©
[MD5.1DF2C5FD2710A13B07E663A12F0E0EEA] - 10/07/2015 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [415232] ©
[MD5.F0D791348AD254360CC3C3E501CCB745] - 10/07/2015 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [273408] ©
[MD5.466EC5659C02ED53DBD47DC1BC2B8086] - 10/09/2015 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2116448] ©
[MD5.38F1AE32339731F6E5A7281AE8042545] - 10/07/2015 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [96768] ©
[MD5.CA60F6C03611AF1710BC903ED9F566FB] - 10/07/2015 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [104960] ©
[MD5.A32AED8C644734B283A7C9D08D76064D] - 10/09/2015 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [176128] ©
[MD5.D42AC03ACF9CA67693D1D9BB4D2A0BC8] - 05/11/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [116064] ©
[MD5.823A237D871CD652C6BFD47BECB6810A] - 10/07/2015 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [378720] ©

---\\ Non Microsoft non disabled Windows Services (22) - 0s
O23 - Service: Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit - Advanced SystemCare Service.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe ©
O23 - Service: ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
O23 - Service: ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
O23 - Service: CyberGhost 5 Client Service (CGVPNCliService) . (.CyberGhost S.R.L - CyberGhost VPN Service.) - C:\Program Files\CyberGhost 5\Service.exe ©
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\System32\IProsetMonitor.exe ©
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
O23 - Service: LiveUpdate (LiveUpdateSvc) . (.IObit - Product Updater.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
O23 - Service: (MBAMService) . (.Malwarebytes Corporation - Malwarebytes Anti-Malware.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
O23 - Service: Norton PC Checkup Application Launcher (Norton PC Checkup Application Launcher) . (.Symantec Corporation - Norton PC Checkup Launcher Service.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe ©
O23 - Service: NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation - NVIDIA Network Service.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation - NVIDIA Streamer Service.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
O23 - Service: NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) - C:\Windows\System32\nvvsvc.exe ©
O23 - Service: Common Client Job Manager Service (PCCUJobMgr) . (.Symantec Corporation - Symantec Service Framework.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe ©
O23 - Service: Service KMSELDI (Service KMSELDI) . (.@ByELDI - Service_KMS.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico
O23 - Service: Skype Updater (SkypeUpdate) . (.Skype Technologies - Skype Updater Service.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation - Stereo Vision Control Panel API Server.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©
O23 - Service: Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender - Bitdefender Update Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe ©
O23 - Service: Bitdefender Virus Shield (vsserv) . (.Bitdefender - Bitdefender Security Service.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe ©

---\\ Task Planned Automatically (38) - 4s
[MD5.B04A4810C6CC205F9DC72DC22E4AB236] [APT] [Adobe Flash Player Updater] (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [268464] ©
[MD5.79391331D6F021AF2F1105785C15F648] [APT] [ASC8_PerformanceMonitor] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [3051296] ©
[MD5.C1906947E76FA87CB5EC2625752DE966] [APT] [ASC8_SkipUac_LePetitBeurre] (.IObit.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASC.exe [5442336] ©
[MD5.00000000000000000000000000000000] [APT] [AutoPico Daily Restart] (...) -- C:\Program Files\KMSpico\AutoPico.exe (.not file.) [0] =>HackTool.KMSpico
[MD5.BC14706D68E7F855735369CFEE4028C7] [APT] [Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8] (.Bitdefender.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdproductdata.exe [98208] ©
[MD5.00000000000000000000000000000000] [APT] [BWUZU1] (...) -- C:\ProgramData\FlashBeat\FlashBeat.exe (.not file.) [0] =>PUP.Optional.FlashBeat
[MD5.1F014EA12ECB13C909DA9395E9CD3D18] [APT] [CCleanerSkipUAC] (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [6278424] ©
[MD5.00000000000000000000000000000000] [APT] [EH71Vbm9aPmusN] (...) -- C:\Users\LePetitBeurre\AppData\Roaming\EH71Vbm9aPmusN.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineCore] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] ©
[MD5.E1B44A75947137F4143308D566889837] [APT] [GoogleUpdateTaskMachineUA] (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848] ©
[MD5.00000000000000000000000000000000] [APT] [hzjTE64DMyJJUgq0azwhschq] (...) -- C:\Users\LePetitBeurre\AppData\Roaming\hzjTE64DMyJJUgq0azwhschq.exe (.not file.) [0] =>PUP.Optional.CrossRider
[MD5.00000000000000000000000000000000] [APT] [SOIUYZWPNK] (...) -- C:\ProgramData\f68332f424604575b4e9ca42c0c35935\f68332f424604575b4e9ca42c0c35935.exe (.not file.) [0]
[MD5.0A6B46C7DF4CC23C106E7494321AE5F3] [APT] [Uninstaller_SkipUac_LePetitBeurre] (.IObit.) -- C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [8032544] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{3E28589B-DB4C-4DE5-A920-F462C5A2942E}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{783C1425-1C70-446F-8874-D97829860C10}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] [APT] [{FE620B3A-0DC4-454C-AC7E-D25F0697AA4F}] (.Google Inc..) -- c:\program files (x86)\Google\Chrome\application\chrome.exe [811848] ©
[MD5.3469A37F336AD1509C0F25FF2A87BE92] [APT] [ASUS\ASUS Product Register Service] (...) -- C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520]
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\Tasks\Adobe Flash Player Updater.job [830] ©
O39 - APT: ASC8_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\Tasks\ASC8_SkipUac_LePetitBeurre.job [274] ©
O39 - APT: BWUZU1 - (...) -- C:\WINDOWS\Tasks\BWUZU1.job [362] =>PUP.Optional.FlashBeat
O39 - APT: EH71Vbm9aPmusN - (...) -- C:\WINDOWS\Tasks\EH71Vbm9aPmusN.job [1048] =>PUP.Optional.CrossRider
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job [918] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job [922] ©
O39 - APT: hzjTE64DMyJJUgq0azwhschq - (...) -- C:\WINDOWS\Tasks\hzjTE64DMyJJUgq0azwhschq.job [1068] =>PUP.Optional.CrossRider
O39 - APT: Uninstaller_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\Tasks\Uninstaller_SkipUac_LePetitBeurre.job [310] ©
O39 - APT: Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater [3828] ©
O39 - APT: ASC8_PerformanceMonitor - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC8_PerformanceMonitor [3322] ©
O39 - APT: ASC8_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\System32\Tasks\ASC8_SkipUac_LePetitBeurre [2478] ©
O39 - APT: AutoPico Daily Restart - (...) -- C:\WINDOWS\System32\Tasks\AutoPico Daily Restart [3490] =>HackTool.KMSpico
O39 - APT: Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 - (.Bitdefender.) -- C:\WINDOWS\System32\Tasks\Bitdefender Update Product Data_A17FD818A96743FAB28AC221BEB4B2C8 [3628] ©
O39 - APT: BWUZU1 - (...) -- C:\WINDOWS\System32\Tasks\BWUZU1 [2986] =>PUP.Optional.FlashBeat
O39 - APT: CCleanerSkipUAC - (.Piriform Ltd.) -- C:\WINDOWS\System32\Tasks\CCleanerSkipUAC [2914] ©
O39 - APT: EH71Vbm9aPmusN - (...) -- C:\WINDOWS\System32\Tasks\EH71Vbm9aPmusN [4178] =>PUP.Optional.CrossRider
O39 - APT: GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3768] ©
O39 - APT: GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [4004] ©
O39 - APT: hzjTE64DMyJJUgq0azwhschq - (...) -- C:\WINDOWS\System32\Tasks\hzjTE64DMyJJUgq0azwhschq [4200] =>PUP.Optional.CrossRider
O39 - APT: SOIUYZWPNK - (...) -- C:\WINDOWS\System32\Tasks\SOIUYZWPNK [3698]
O39 - APT: Uninstaller_SkipUac_LePetitBeurre - (.IObit.) -- C:\WINDOWS\System32\Tasks\Uninstaller_SkipUac_LePetitBeurre [2528] ©

---\\ Process running (69) - 1s
[MD5.964C356C9AEEEE88B8B9B71D94042874] - (.Bitdefender - Bitdefender Security Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936] [PID.948] ©
[MD5.33D7E76F7DE0A73504742765105F178F] - (.IObit - Advanced SystemCare Service.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe [821024] [PID.1040] ©
[MD5.1CD8D5BF5E4058A2E12949D74A7E27FD] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [938616] [PID.1808] ©
[MD5.337FA50FFDED5E2BC94B36BF625AB681] - (.IObit - Product Updater.) -- C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472] [PID.2116] ©
[MD5.03CD3245E52C8A87E3B14832DC8A6A7D] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\System32\IProsetMonitor.exe [271632] [PID.2132] ©
[MD5.BBF8F831C7720DD5135D8C4C8325187A] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728] [PID.2172]
[MD5.37F7DD839A711B5706B1264F4D8D4BDC] - (...) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016] [PID.2196]
[MD5.3BEAC63EBF6E7CA7A8D4ED3C7A2060DC] - (.NVIDIA Corporation - NVIDIA GeForce ExperienceService.) -- C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156400] [PID.2220] ©
[MD5.BEB32691FCA0472FF38998DF92AC3B20] - (.NVIDIA Corporation - NVIDIA Network Service.) -- C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872688] [PID.2296] ©
[MD5.94965D3D5067A190E818161F2A8C093A] - (.NVIDIA Corporation - NVIDIA Streamer Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5915440] [PID.2392] ©
[MD5.2F86BE1818C2D7AC90478E3323EE7FCB] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392] [PID.2436] ©
[MD5.150C1970816E7B0668F7459109A2AE23] - (.@ByELDI - Service_KMS.) -- C:\Program Files\KMSpico\Service_KMS.exe [966336] [PID.2444] =>HackTool.KMSpico
[MD5.C1C2C9231EBD263DB9C4F34DBB080B32] - (.Bitdefender - Bitdefender Update Service.) -- C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320] [PID.2620] ©
[MD5.9A39E77C7CB2DFDE76A04A68382F0758] - (.CyberGhost S.R.L - CyberGhost VPN Service.) -- C:\Program Files\CyberGhost 5\Service.exe [63968] [PID.2936] ©
[MD5.D2E705BA801C4EC383135CB721D88D77] - (.NVIDIA Corporation - NVIDIA Network Stream Service.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8133424] [PID.3400] ©
[MD5.84BFE21E8F9230F391676843F08BCC10] - (.NVIDIA Corporation - NVIDIA User Experience Driver Component.) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe [1253168] [PID.3624] ©
[MD5.1CD8D5BF5E4058A2E12949D74A7E27FD] - (.NVIDIA Corporation - NVIDIA Driver Helper Service, Version 358.9.) -- C:\Windows\System32\nvvsvc.exe [938616] [PID.3632] ©
[MD5.14E3DB5ADA7E2187A404129F4E5CE336] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856] [PID.1800] ©
[MD5.026A347CE1CB21E426466114E86186F7] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008] [PID.3944] ©
[MD5.D18683083B0EDDAC749F5D2720B25C1E] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [411424] [PID.1996] ©
[MD5.0EF85BD11BD111A0F077707FF8D2AB35] - (.Symantec Corporation - Norton PC Checkup Launcher Service.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe [123320] [PID.2596] ©
[MD5.2F86BE1818C2D7AC90478E3323EE7FCB] - (.Symantec Corporation - Symantec Service Framework.) -- C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe [126392] [PID.3580] ©
[MD5.326DAA962878F4D3480A66FF7D78EC1B] - (.NVIDIA Corporation - NVIDIA Streamer User Agent.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe [22388016] [PID.688] ©
[MD5.79391331D6F021AF2F1105785C15F648] - (.IObit - Performance Monitor.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\Monitor.exe [3051296] [PID.1948] ©
[MD5.E8A2813CE559BB90B464D6C687E393BB] - (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2756912] [PID.4228] ©
[MD5.4DD065EA999BEE96321CD286AB29D313] - (.NVIDIA Corporation - NVIDIA Capture Server.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe [7551280] [PID.5608] ©
[MD5.182E915A3E9CBF5857B2E54D17AB1F09] - (.NVIDIA - GeForce Experience Share.) -- C:\Program Files (x86)\NVIDIA Corporation\OSC\nvosc.exe [981296] [PID.5696]
[MD5.97D53832299F479892BCD0A506990EA0] - (.NVIDIA Corporation - NVIDIA Settings.) -- C:\Program Files\NVIDIA Corporation\Display\nvtray.exe [2448176] [PID.5704] ©
[MD5.5F89D934514AFFDBD03097DE7801375D] - (.NVIDIA Corporation - NVIDIA GFE - Notification Bridge.) -- C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe [316168] [PID.5676] ©
[MD5.6AF0D2491282821C6A66AFFCDC938536] - (.NVIDIA Corporation - NVIDIA Streamer Server Component.) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe [6850864] [PID.3740] ©
[MD5.8D160919E4300FA945DF49005D71B8FD] - (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8495320] [PID.6728] ©
[MD5.51C494FEE2AB2EAEF3EE7D9329098950] - (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112] [PID.7056] ©
[MD5.44A9229022A519ED45294A1934C05EEC] - (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe [1017224] [PID.6192]
[MD5.9D0D72B696B8CDF9AE368E542FD042CE] - (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2030912] [PID.3736] ©
[MD5.C81F59B7D524FB462F73B27757084618] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [8204056] [PID.4420] ©
[MD5.422963B9386FD4052AA766A6575ED8DE] - (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe [2429728] [PID.6260] ©
[MD5.6E28D341B7691A45145C0AA27587D635] - (.Spotify Ltd - SpotifyCrashService.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyCrashService.exe [840512] [PID.5764] ©
[MD5.53A6B1ED8BE0F7208FB72EF2580F71EC] - (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880] [PID.7268] ©
[MD5.FCEC6F664FA7E5FE323165FBC9314470] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597040] [PID.7548] ©
[MD5.91DF13EC831BDCFA36A7A12CD13D66B9] - (.Disc Soft Ltd - Disc Soft Bus Service.) -- C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1268568] [PID.7580] ©
[MD5.FBA624E414909CCB8BFEE7183B0575A0] - (.Elias Fotinis - DeskPins application.) -- C:\Program Files (x86)\DeskPins\DeskPins.exe [62464] [PID.7720]
[MD5.8F9FC35D5BF32D39B26ECAE4052E3D62] - (.Intel Corporation - IAStorIcon.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472] [PID.6088] ©
[MD5.2B15967270AD018024286CBA9DA1E4E7] - (.IObit - .) -- C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe [188192] [PID.5576] ©
[MD5.50898AA1653E0701A7DA182414CD32DB] - (.Copyright Microsoft Corporation - Microsoft Photos.) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1026.13580.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [12800] [PID.4528] ©
[MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.8224] ©
[MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.2616] ©
[MD5.DC8DC7ED86A259614D3B2186B2F841EB] - (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe [7736128] [PID.7832] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4640] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.3672] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9052] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.6832] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.6228] ©
[MD5.5353A34090BABE3CD48B70569AF0DD12] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3011152] [PID.8064] ©
[MD5.D76CF8C1B21E7192D7F3CD68DCFA274C] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1939536] [PID.8524] ©
[MD5.D76CF8C1B21E7192D7F3CD68DCFA274C] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\steamwebhelper.exe [1939536] [PID.6204] ©
[MD5.A53E431775DF91EA016AF5817DF26B41] - (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre1.8.0_65\bin\javaw.exe [191584] [PID.6688] ©
[MD5.8213094EA736A9C575AB0E22AD09B0BA] - (.Intel Corporation - Intel(R) Security Assist.) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872] [PID.6592] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.5196] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9012] ©
[MD5.33B4D991772979F92BC87D4D86050731] - (.Copyright (C) 2013-2015 - Open Broadcaster Software.) -- C:\Program Files\OBS\OBS.exe [1425488] [PID.6180]
[MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.7532]
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9688] ©
[MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.9432]
[MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.10004]
[MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.8044]
[MD5.AA75789C7436ADEE2E0A5EF03DAC01AE] - (.Copyright © 2013 - CLRBrowserSourceClient.) -- C:\Program Files\OBS\plugins\CLRHostPlugin\CLRBrowserSourcePlugin\CLRBrowserSourceClient.exe [6144] [PID.5780]
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.9488] ©
[MD5.0BE64FAB577BFA54443C680343AEC85F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [811848] [PID.4428] ©
[MD5.E3ADC8AAF0DB131CB5E6B8A7F586D4B3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\LePetitBeurre\Desktop\ZHPDiag3.exe [1968128] [PID.10200] ©

---\\ Google Chrome, Start,Search,Extensions (11) - 0s
G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com
G2 - GCE: Preference [User Data\Default] [afkccfnochoebimhhniekgcegeeiepmi]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [bepbmhgboaologfdajaanbcjmnhjmhfn]Google Voice Search Hotword (Beta)
G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb]__MSG_name__
G2 - GCE: Preference [User Data\Default] [coobgpohoikkiipiblmjeljniedjpjpf]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [fdpohaocaechififmbbbbbknoalclacl]Full Page Screen Capture
G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom]AdBlock
G2 - GCE: Preference [User Data\Default] [jmjbgcjbgmcfgbgikmbdioggjlhjegpp]Clipular! Research save & share screenshot
G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda]Google Chrome manifest =>.Google Inc.
G2 - GCE: Preference [User Data\Default] [opjonmehjfmkejjifhhknofdnacklmjk]__MSG_themeName__

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (8) - 1s
P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\betterstop@dagger2-addons.mozilla.org.xpi
P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\jid1-G80Ec8LLEbK5fQ@jetpack.xpi
P2 - EXT FILE: (...) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
P2 - EXT: (.Mozilla - Default.) -- C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ©
P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\ascsurfingprotection@iobit.com ©
P2 - EXT: (.IObit - Advanced SystemCare Surfing Protection.) -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla\Firefox\Profiles\t8il9odi.default\extensions\iobitascsurfingprotection@iobit.com ©
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll ©
P2 - FPN: [HKLM] [@baidu.com/BaidusdDetectNPPlugin] - (.Beijing baidu Netcom science and technology co.ltd.) -- C:\Program Files (x86)\Baidu\BaiduSd\3.0.0.4605\explugin\npBaiduSDDetectPlug.dll

---\\ Internet Explorer Extensions, Start, Search (17) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk
R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer
R4 - HKLM\SOFTWARE\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1
R4 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1

---\\ Internet Explorer, Proxy Management (4) - 0s
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1
R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) ©
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (24)

---\\ Browser Helper Object (BHO) (4) - 0s
O2 - BHO: ExplorerWnd Helper [64Bits] - {10921475-03CE-4E04-90CE-E2E7EF20C814} (Orphean)
O2 - BHO: Bitdefender Wallet [64Bits] - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} . (.Bitdefender - Bitdefender Password Manager Internet Explo.) -- C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll ©
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll ©
O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL ©

---\\ Auto loading programs from Registry and folders (32) - 0s
O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Realtek HD Audio Manager.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe ©
O4 - HKLM\..\Run: [XboxStat] . (.Microsoft Corporation - XBoxStat.exe.) -- C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe ©
O4 - HKLM\..\Run: [IAStorIcon] . (.Intel Corporation - Delayed launcher.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe ©
O4 - HKLM\..\Run: [NvBackend] . (.NVIDIA Corporation - NVIDIA Backend.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe ©
O4 - HKLM\..\Run: [ShadowPlay] . (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe ©
O4 - HKLM\..\Run: [Bdagent] . (.Bitdefender - Bitdefender Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe ©
O4 - HKCU\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe
O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe ©
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe ©
O4 - HKCU\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe ©
O4 - HKCU\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe ©
O4 - HKCU\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe ©
O4 - HKCU\..\Run: [EPSON BX610FW Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATIFJU.EXE ©
O4 - HKCU\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe ©
O4 - HKCU\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe ©
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe ©
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe ©
O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ©
O4 - HKLM\..\Wow6432Node\Run: [bdruninstaller] . (.Bitdefender - Bitdefender Setup Launcher.) -- C:\Program Files\Common Files\Bitdefender\SetupInformation\downloader\setuplauncher.exe ©
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [f.lux] . (.Flux Software LLC - f.lux.) -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware\Flux\flux.exe
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Spotify Web Helper] . (.Spotify Ltd - SpotifyWebHelper.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\SpotifyWebHelper.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Spotify] . (.Spotify Ltd - Spotify.) -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify\Spotify.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Advanced SystemCare 8] . (.IObit - Advanced SystemCare 8.) -- C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCTray.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [EPSON BX610FW Series] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\System32\spool\drivers\x64\3\E_IATIFJU.EXE ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [DAEMON Tools Lite Automount] . (.Disc Soft Ltd - DAEMON Tools Lite.) -- C:\Program Files\DAEMON Tools Lite\DTAgent.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\Run: [Bitdefender Wallet Agent] . (.Bitdefender - Bitdefender Wallet Agent.) -- C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe ©
O4 - HKUS\S-1-5-21-1896159949-1632505650-2993025519-1000\..\RunOnce: [Uninstall C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.5892.0626] . (.Microsoft Corporation - Windows Command Processor.) -- C:\Windows\System32\cmd.exe ©

---\\ Lop.com/Domain Hijackers (6) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 8.8.8.8,8.8.4.4 =>.Google Public DNS
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254

---\\ Extra protocols (25) - 0s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll ©
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\SysWOW64\urlmon.dll ©
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll ©
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL ©
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL ©
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL ©
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office 2016 component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL ©
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll ©
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\SysWOW64\MSVidCtl.dll ©
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\SysWOW64\mshtml.dll ©
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll ©

---\\ Software installed (93) - 4s
O42 - Logiciel: Adobe Flash Player 17 NPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player NPAPI ©
O42 - Logiciel: Advanced SystemCare 8 - (.IObit.) [HKLM][64Bits] -- Advanced SystemCare 8_is1 ©
O42 - Logiciel: Arma 2 - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 33910 ©
O42 - Logiciel: Arma 3 - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 107410 ©
O42 - Logiciel: Arma: Cold War Assault - (.Bohemia Interactive.) [HKLM][64Bits] -- Steam App 65790 ©
O42 - Logiciel: Asmedia USB Host Controller Driver - (.Asmedia Technology.) [HKLM][64Bits] -- {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} ©
O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C0B16F2E-3980-44F8-8CF4-F84696541FF7} ©
O42 - Logiciel: ASUS Product Register Program - (.ASUSTek Computer Inc..) [HKLM][64Bits] -- {C87D79F6-F813-4812-B7A9-CCCAAB8B1188} ©
O42 - Logiciel: Asus Sonic Suite Plugins - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {3843fc8e-e352-4238-be32-74ca38dd57a0} ©
O42 - Logiciel: Bitdefender Total Security 2015 - (.Bitdefender.) [HKLM][64Bits] -- Bitdefender ©
O42 - Logiciel: Blender - (.Blender Foundation.) [HKLM][64Bits] -- Blender ©
O42 - Logiciel: CCGLauncher version 0.0.0.9 - (.Custom Combat Gaming.) [HKLM][64Bits] -- {78D51CE5-799C-4FCA-9635-6F61E19EA5E3}_is1
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner ©
O42 - Logiciel: Cheat Engine 6.4 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 6.4_is1 ©
O42 - Logiciel: CyberGhost 5 - (.CyberGhost S.R.L..) [HKLM][64Bits] -- CyberGhost 5_is1 ©
O42 - Logiciel: DAEMON Tools Lite - (.Disc Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Lite ©
O42 - Logiciel: Dead Island: Epidemic - (.Stunlock Studios.) [HKLM][64Bits] -- Steam App 222900 ©
O42 - Logiciel: DeskPins (remove only) - (...) [HKLM][64Bits] -- DeskPins
O42 - Logiciel: EasyAntiCheat eSports - (.EasyAntiCheat Ltd.) [HKLM][64Bits] -- Steam App 282660 ©
O42 - Logiciel: EPSON BX610FW Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON BX610FW Series ©
O42 - Logiciel: EPSON Scan - (...) [HKLM][64Bits] -- EPSON Scanner
O42 - Logiciel: f.lux - (...) [HKCU][64Bits] -- Flux
O42 - Logiciel: FFsplit version 0.7 - (.FFsplit Team.) [HKLM][64Bits] -- {82458834-6226-4A34-AE96-6907354F9F36}_is1
O42 - Logiciel: Gamma Control version 3 - (.DesktopNerds.) [HKLM][64Bits] -- {AB451963-CD15-4A27-866C-97B92268BE75}_is1
O42 - Logiciel: GIGABYTE OC_GURU II - (.GIGABYTE Technology Co.,Ltd..) [HKLM][64Bits] -- InstallShield_{5588D686-D23B-4C9D-BDFA-2A7875CD3722}
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} ©
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} ©
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {8C91A5EB-2C62-4A6D-8802-CC79FD2ED390} ©
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] -- {60c073df-e736-4210-9c3a-5fc2b651cef3} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {00118463-4535-4D78-A0CC-965724FE1830} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {18FA6D35-D25E-4039-980C-DCCE98B78BEA} ©
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} ©
O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] -- {00DAA585-CCB1-4486-91E4-2DEA855E877D} ©
O42 - Logiciel: Intel(R) Network Connections 20.2.3001.0 - (.Intel.) [HKLM][64Bits] -- {638A518B-0D2E-4143-ACF8-F3D83D822E85} ©
O42 - Logiciel: Intel(R) Network Connections 20.2.3001.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX ©
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {205AE40D-8AD7-4F29-A430-DD2168DA562D} ©
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} ©
O42 - Logiciel: Intel(R) USB 3.0 Host Controller Adaptation Driver - (.Intel Corporation.) [HKLM][64Bits] -- {9472AEE5-5D4D-4329-8BD8-B282FD33B8E0} ©
O42 - Logiciel: Intel(R) USB 3.0 Host Controller Adaptation Driver - (.Intel Corporation.) [HKLM][64Bits] -- {CF3726D0-BE20-4C47-8524-FFB69504C69D} ©
O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {4B230374-6475-4A73-BA6E-41015E9C5013} ©
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {7D84E343-A23D-451C-B123-0195B2D903A6} ©
O42 - Logiciel: Interstellar Marines - (.Zero Point Software.) [HKLM][64Bits] -- Steam App 236370
O42 - Logiciel: IObit Uninstaller - (.IObit.) [HKLM][64Bits] -- IObitUninstall ©
O42 - Logiciel: Java 8 Update 65 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83218065F0} ©
O42 - Logiciel: Just Cause 2 - (.Avalanche Studios.) [HKLM][64Bits] -- Steam App 8190 ©
O42 - Logiciel: Just Cause 2: Multiplayer Mod - (.Avalanche Studios.) [HKLM][64Bits] -- Steam App 259080 ©
O42 - Logiciel: KMSpico - (...) [HKLM][64Bits] -- {8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 =>HackTool.KMSpico
O42 - Logiciel: Malwarebytes Anti-Malware version 2.2.0.1024 - (.Malwarebytes.) [HKLM][64Bits] -- Malwarebytes Anti-Malware_is1 ©
O42 - Logiciel: Microsoft Xbox 360 Accessories 1.2 - (.Microsoft.) [HKLM][64Bits] -- {D9C50188-12D5-4D3E-8F00-682346C2AA5F} ©
O42 - Logiciel: Mozilla Firefox 42.0 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 42.0 (x86 fr) ©
O42 - Logiciel: MSVCRT Redists - (.Sony Creative Software Inc..) [HKLM][64Bits] -- {7DB991C0-CCC3-11E4-9D40-F04DA23A5C58} ©
O42 - Logiciel: Mutify - (...) [HKLM][64Bits] -- Mutify
O42 - Logiciel: Natural Selection 2 - (.Unknown Worlds Entertainment.) [HKLM][64Bits] -- Steam App 4920
O42 - Logiciel: Norton PC Checkup - (.Symantec Corporation.) [HKLM][64Bits] -- NortonPCCheckup ©
O42 - Logiciel: NVIDIA 3D Vision Controller Driver 352.65 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB ©
O42 - Logiciel: NVIDIA 3D Vision Driver 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision ©
O42 - Logiciel: NVIDIA GeForce Experience 2.7.3.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience ©
O42 - Logiciel: NVIDIA Graphics Driver 358.91 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver ©
O42 - Logiciel: NVIDIA HD Audio Driver 1.3.34.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver ©
O42 - Logiciel: NVIDIA PhysX System Software 9.15.0428 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX ©
O42 - Logiciel: NVIDIA Son virtuel Miracast 358.50 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Miracast.VirtualAudio ©
O42 - Logiciel: NVIDIA Stereoscopic 3D Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- NVIDIAStereo ©
O42 - Logiciel: OCCT 4.4.1 - (.Ocbase.com.) [HKLM][64Bits] -- OCCT ©
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} ©
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} ©
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} ©
O42 - Logiciel: Open Broadcaster Software - (...) [HKLM][64Bits] -- Open Broadcaster Software
O42 - Logiciel: Planetary Annihilation - (.Uber Entertainment.) [HKLM][64Bits] -- Steam App 233250 ©
O42 - Logiciel: Play withSIX Windows client - (.SIX Networks GmbH.) [HKCU][64Bits] -- PlaywithSIX
O42 - Logiciel: Project CARS - (...) [HKLM][64Bits] -- UHJvamVjdENBUlM=_is1
O42 - Logiciel: qBittorrent 3.1.12 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} ©
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} ©
O42 - Logiciel: Red Orchestra 2: Heroes of Stalingrad - Single Player - (...) [HKLM][64Bits] -- Steam App 236830
O42 - Logiciel: Resident Evil Revelations 2 Repack version 1.0 - (.KONAMI.) [HKLM][64Bits] -- Resident Evil Revelations 2 Repack_is1 ©
O42 - Logiciel: Rising Storm/Red Orchestra 2 Multiplayer - (.Tripwire Interactive.) [HKLM][64Bits] -- Steam App 35450 ©
O42 - Logiciel: Rust - (.Facepunch Studios.) [HKLM][64Bits] -- Steam App 252490 ©
O42 - Logiciel: Skype™ 7.12 - (.Skype Technologies S.A..) [HKLM][64Bits] -- {6A0549A9-1B96-498C-ACBC-3943001FEB19} ©
O42 - Logiciel: Snaz version 1.9.2.6 - (.JimsApps.) [HKLM][64Bits] -- {70A76031-FDC6-4F9B-BB5C-33776703F45A}_is1
O42 - Logiciel: Sonic Radar II - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {A70B8D38-273A-4D6A-B7D5-AEBEDEEE5D28} ©
O42 - Logiciel: Sonic Studio Plugin - (.ASUSTeKcomputer.Inc.) [HKLM][64Bits] -- {F55B1B94-3BFA-49D4-AE45-2ECE776BA815} ©
O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] -- Spotify ©
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam ©
O42 - Logiciel: Surfing Protection - (.IObit.) [HKLM][64Bits] -- IObit Surfing Protection_is1 ©
O42 - Logiciel: TAP-Windows 9.9.2 - (...) [HKLM][64Bits] -- TAP-Windows
O42 - Logiciel: Team Render Client / CINEMA 4D 15.008 - (.MAXON Computer GmbH.) [HKLM][64Bits] -- MAXONF706BC03 ©
O42 - Logiciel: TeamSpeak 3 Client - (.TeamSpeak Systems GmbH.) [HKLM][64Bits] -- TeamSpeak 3 Client ©
O42 - Logiciel: Vegas Pro 13.0 (64-bit) - (.Sony.) [HKLM][64Bits] -- {7847389E-CCC3-11E4-A1C2-F04DA23A5C58} ©
O42 - Logiciel: WinRAR 5.20 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver ©
O42 - Logiciel: XSplit Broadcaster - (.SplitmediaLabs.) [HKLM][64Bits] -- {7BC30FB1-9AA6-4B0C-8E5A-574EA5B6CB2F} ©
O42 - Logiciel: Yahoo Search Set - (.Yahoo Inc..) [HKLM][64Bits] -- Yahoo! SearchSet ©

---\\ HKCU & HKLM Software Keys (108) - 4s
HKLM\SOFTWARE\Wow6432Node\1043
HKLM\SOFTWARE\Wow6432Node\Activision
HKLM\SOFTWARE\Wow6432Node\Adobe
HKLM\SOFTWARE\Wow6432Node\AdwCleaner
HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies
HKLM\SOFTWARE\Wow6432Node\Albin
HKLM\SOFTWARE\Wow6432Node\AppDataLow
HKLM\SOFTWARE\Wow6432Node\Apple Computer, Inc.
HKLM\SOFTWARE\Wow6432Node\ASUS
HKLM\SOFTWARE\Wow6432Node\Bitdefender
HKLM\SOFTWARE\Wow6432Node\bohemia interactive
HKLM\SOFTWARE\Wow6432Node\CDDB
HKLM\SOFTWARE\Wow6432Node\CyberGhost
HKLM\SOFTWARE\Wow6432Node\Disc Soft
HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat
HKLM\SOFTWARE\Wow6432Node\Elias Fotinis
HKLM\SOFTWARE\Wow6432Node\EPSON
HKLM\SOFTWARE\Wow6432Node\Google
HKLM\SOFTWARE\Wow6432Node\IM Providers
HKLM\SOFTWARE\Wow6432Node\InstallShield
HKLM\SOFTWARE\Wow6432Node\Intel
HKLM\SOFTWARE\Wow6432Node\IObit
HKLM\SOFTWARE\Wow6432Node\JavaSoft
HKLM\SOFTWARE\Wow6432Node\JreMetrics
HKLM\SOFTWARE\Wow6432Node\Khronos
HKLM\SOFTWARE\Wow6432Node\Macromedia
HKLM\SOFTWARE\Wow6432Node\Malwarebytes' Anti-Malware
HKLM\SOFTWARE\Wow6432Node\Mozilla
HKLM\SOFTWARE\Wow6432Node\mozilla.org
HKLM\SOFTWARE\Wow6432Node\MozillaPlugins
HKLM\SOFTWARE\Wow6432Node\Norton
HKLM\SOFTWARE\Wow6432Node\Nuance
HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation
HKLM\SOFTWARE\Wow6432Node\ODBC
HKLM\SOFTWARE\Wow6432Node\Open Broadcaster Software
HKLM\SOFTWARE\Wow6432Node\qBittorrent
HKLM\SOFTWARE\Wow6432Node\Realtek
HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp.
HKLM\SOFTWARE\Wow6432Node\Skype
HKLM\SOFTWARE\Wow6432Node\Software
HKLM\SOFTWARE\Wow6432Node\Sony Creative Software
HKLM\SOFTWARE\Wow6432Node\SplitmediaLabs
HKLM\SOFTWARE\Wow6432Node\TeamSpeak 3 Client
HKLM\SOFTWARE\Wow6432Node\Valve
HKLM\SOFTWARE\Wow6432Node\WinRAR
HKLM\SOFTWARE\Wow6432Node\Yahoo
HKLM\SOFTWARE\Wow6432Node\RegisteredApplications
HKCU\SOFTWARE\Adobe
HKCU\SOFTWARE\AI_RecycleBin
HKCU\SOFTWARE\AppDataLow
HKCU\SOFTWARE\ASUS
HKCU\SOFTWARE\ASUSTeKcomputer.Inc
HKCU\SOFTWARE\Beam Team Games
HKCU\SOFTWARE\Bitdefender
HKCU\SOFTWARE\Bohemia Interactive
HKCU\SOFTWARE\BugSplat
HKCU\SOFTWARE\Cheat Engine
HKCU\SOFTWARE\CyberGhost
HKCU\SOFTWARE\Cygwin
HKCU\SOFTWARE\DirectShow
HKCU\SOFTWARE\Disc Soft
HKCU\SOFTWARE\EasyAntiCheat
HKCU\SOFTWARE\EH71Vbm9aPmusN =>PUP.Optional.CrossRider
HKCU\SOFTWARE\Elias Fotinis
HKCU\SOFTWARE\EPSON
HKCU\SOFTWARE\Facepunch Studios
HKCU\SOFTWARE\Facepunch Studios LTD
HKCU\SOFTWARE\FFSPLIT Overlay Filter
HKCU\SOFTWARE\Google
HKCU\SOFTWARE\HmelyoffLabs
HKCU\SOFTWARE\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider
HKCU\SOFTWARE\IM Providers
HKCU\SOFTWARE\Intel
HKCU\SOFTWARE\JavaSoft
HKCU\SOFTWARE\Macromedia
HKCU\SOFTWARE\Masekales
HKCU\SOFTWARE\MC4D
HKCU\SOFTWARE\Michael Herf
HKCU\SOFTWARE\Mozilla
HKCU\SOFTWARE\MozillaPlugins
HKCU\SOFTWARE\Netscape
HKCU\SOFTWARE\Norton
HKCU\SOFTWARE\NVIDIA Corporation
HKCU\SOFTWARE\OB
HKCU\SOFTWARE\ODBC
HKCU\SOFTWARE\Piriform
HKCU\SOFTWARE\QtProject
HKCU\SOFTWARE\Realtek
HKCU\SOFTWARE\RegisteredApplications
HKCU\SOFTWARE\SIX Networks
HKCU\SOFTWARE\Skype
HKCU\SOFTWARE\Software
HKCU\SOFTWARE\Sony Creative Software
HKCU\SOFTWARE\SplitMediaLabs
HKCU\SOFTWARE\Spotify
HKCU\SOFTWARE\Symantec
HKCU\SOFTWARE\SyncEngines
HKCU\SOFTWARE\TCP Optimizer
HKCU\SOFTWARE\Trolltech
HKCU\SOFTWARE\Unity
HKCU\SOFTWARE\Valve
HKCU\SOFTWARE\WebApp
HKCU\SOFTWARE\WinRAR
HKCU\SOFTWARE\WinRAR SFX
HKCU\SOFTWARE\Wow6432Node
HKCU\SOFTWARE\ZebHelpProcess Helper
HKCU\SOFTWARE\AppDataLow\Software
HKCU\SOFTWARE\AppDataLow\Software\JavaSoft

---\\ Contents of the Common Files folders (249) - 3s
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\ASM104xUSB3
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\ASUS
O43 - CFD: 29/10/2015 - [] D -- C:\Program Files (x86)\Cheat Engine 6.4
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files
O43 - CFD: 14/10/2015 - [] D -- C:\Program Files (x86)\DeskPins
O43 - CFD: 24/10/2015 - [] D -- C:\Program Files (x86)\DesktopNerds
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\epson
O43 - CFD: 07/05/2015 - [] D -- C:\Program Files (x86)\FFsplit
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\GIGABYTE
O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Google
O43 - CFD: 04/05/2015 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Intel
O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Internet Explorer
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\IObit
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Java
O43 - CFD: 03/06/2015 - [] D -- C:\Program Files (x86)\JimsApps
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\Malwarebytes Anti-Malware
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\Microsoft Office
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Microsoft.NET
O43 - CFD: 07/11/2015 - [] D -- C:\Program Files (x86)\Mozilla Firefox
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\MSBuild
O43 - CFD: 27/05/2015 - [] D -- C:\Program Files (x86)\Mutify
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Norton PC Checkup
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\NortonInstaller
O43 - CFD: 05/11/2015 - [] D -- C:\Program Files (x86)\NVIDIA Corporation
O43 - CFD: 03/11/2015 - [] D -- C:\Program Files (x86)\OBS
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\OCCTPT
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\qBittorrent
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Realtek
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Reference Assemblies
O43 - CFD: 13/10/2015 - [] RD -- C:\Program Files (x86)\Skype
O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Software =>PUP.Optional.Boxore
O43 - CFD: 14/05/2015 - [] D -- C:\Program Files (x86)\Sony
O43 - CFD: 27/10/2015 - [] D -- C:\Program Files (x86)\SplitmediaLabs
O43 - CFD: 12/11/2015 - [] D -- C:\Program Files (x86)\Steam
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\TeamSpeak 3 Client
O43 - CFD: 13/10/2015 - [0] HD -- C:\Program Files (x86)\Temp
O43 - CFD: 10/09/2015 - [] D -- C:\Program Files (x86)\Windows Defender
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Mail
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Media Player
O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform
O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows NT
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer
O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices
O43 - CFD: 30/07/2015 - [] SHD -- C:\Program Files (x86)\Windows Sidebar
O43 - CFD: 30/07/2015 - [] SD -- C:\Program Files (x86)\WindowsPowerShell
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\WinRAR
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Yahoo!
O43 - CFD: 03/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 10/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 10/09/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2015
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blender Foundation
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCGLauncher
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberGhost 5
O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DeskPins
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DesktopNerds
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FFsplit
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIGABYTE
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
O43 - CFD: 01/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
O43 - CFD: 02/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAXON
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton PC Checkup
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OCCT
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
O43 - CFD: 06/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Snaz
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sonic Radar II
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
O43 - CFD: 01/11/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 30/07/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 10/09/2015 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\3c9fc34af925438d90c9a3b90321f01f
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Adobe
O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Application Data
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\BDLogging
O43 - CFD: 03/11/2015 - [] D -- C:\ProgramData\Bitdefender
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Bohemia Interactive
O43 - CFD: 29/10/2015 - [] D -- C:\ProgramData\boost_interprocess
O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\Comms
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Lite
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\DAEMON Tools Ultra
O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Desktop
O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Documents
O43 - CFD: 27/10/2015 - [] D -- C:\ProgramData\EPSON
O43 - CFD: 05/05/2015 - [0] D -- C:\ProgramData\f68332f424604575b4e9ca42c0c35935
O43 - CFD: 01/11/2015 - [0] SHD -- C:\ProgramData\Favorites
O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Intel
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\IObit
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Malwarebytes
O43 - CFD: 01/11/2015 - [] SD -- C:\ProgramData\Microsoft
O43 - CFD: 10/09/2015 - [] D -- C:\ProgramData\Microsoft OneDrive
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Mozilla
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\Norton
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\NortonInstaller
O43 - CFD: 11/11/2015 - [] D -- C:\ProgramData\NVIDIA
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\NVIDIA Corporation
O43 - CFD: 25/10/2015 - [] D -- C:\ProgramData\Oracle
O43 - CFD: 21/10/2015 - [] D -- C:\ProgramData\Package Cache
O43 - CFD: 10/11/2015 - [] D -- C:\ProgramData\ProductData =>PUP.Optional.Generic
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\regid.1986-12.com.adobe
O43 - CFD: 01/11/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft
O43 - CFD: 31/10/2015 - [] D -- C:\ProgramData\Riot Games
O43 - CFD: 13/10/2015 - [] D -- C:\ProgramData\Skype
O43 - CFD: 30/07/2015 - [0] D -- C:\ProgramData\SoftwareDistribution
O43 - CFD: 14/05/2015 - [] D -- C:\ProgramData\Sony
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\SplitMediaLabs
O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Start Menu
O43 - CFD: 08/05/2015 - [] D -- C:\ProgramData\Steam
O43 - CFD: 30/05/2015 - [] D -- C:\ProgramData\Sun
O43 - CFD: 30/07/2015 - [0] SHD -- C:\ProgramData\Templates
O43 - CFD: 05/05/2015 - [] D -- C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOPrivate
O43 - CFD: 30/07/2015 - [] D -- C:\ProgramData\USOShared
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller
O43 - CFD: 04/05/2015 - [0] D -- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
O43 - CFD: 04/05/2015 - [] D -- C:\ProgramData\{D76294E6-03B8-4971-AF2E-3F846161A690}
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Adobe
O43 - CFD: 11/11/2015 - [] D -- C:\Program Files (x86)\Common Files\BattlEye
O43 - CFD: 05/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Bitdefender
O43 - CFD: 31/10/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\IObit
O43 - CFD: 25/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Java
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared
O43 - CFD: 04/05/2015 - [] D -- C:\Program Files (x86)\Common Files\postureAgent
O43 - CFD: 30/07/2015 - [] D -- C:\Program Files (x86)\Common Files\Services
O43 - CFD: 13/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Skype
O43 - CFD: 15/10/2015 - [] D -- C:\Program Files (x86)\Common Files\Steam
O43 - CFD: 01/11/2015 - [] D -- C:\Program Files (x86)\Common Files\System
O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Adobe
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Apple Computer
O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Bitdefender
O43 - CFD: 20/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Blender Foundation
O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\DAEMON Tools Lite
O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\DAEMON Tools Ultra
O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\EPSON
O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Exanima
O43 - CFD: 07/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\FFsplit
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\InstallShield
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Intel Corporation
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\IObit
O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Macromedia
O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\MAXON
O43 - CFD: 01/11/2015 - [] SD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Mozilla
O43 - CFD: 29/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\OBS
O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\ProductData
O43 - CFD: 14/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Publish Providers
O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\qBittorrent
O43 - CFD: 05/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\QuickScan
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\SIX Networks
O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Skype
O43 - CFD: 14/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Sony
O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\SplitMediaLabs
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Spotify
O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Steam
O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Sun
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\TS3Client
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\WinRAR
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\ZHP
O43 - CFD: 11/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Adobe
O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\AltisAurore.fr
O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\Application Data
O43 - CFD: 08/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Arma 3
O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Arma 3 Launcher
O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\assembly
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Bohemia_Interactive
O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CAPCOM
O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CEF
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Comms
O43 - CFD: 28/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Custom_Combat_Gaming
O43 - CFD: 30/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\CyberGhost
O43 - CFD: 27/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Daybreak Game Company
O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Diagnostics
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Disc_Soft_Ltd
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\ElevatedDiagnostics
O43 - CFD: 17/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Eric_Zhang
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\FluxSoftware
O43 - CFD: 20/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Google
O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\History
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\IsolatedStorage
O43 - CFD: 03/06/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\JimsApps
O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Macromedia
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Microsoft
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Mozilla
O43 - CFD: 31/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\MSfree Inc
O43 - CFD: 05/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA
O43 - CFD: 05/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA Corporation
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\OCCT_-_Ocbase_-_Adrien_Me
O43 - CFD: 08/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Packages
O43 - CFD: 04/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Local\PackageStaging
O43 - CFD: 02/11/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Local\PeerDistRepub
O43 - CFD: 28/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\PlaywithSIX
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Programs
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Publishers
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\qBittorrent
O43 - CFD: 20/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SCE
O43 - CFD: 21/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SIX Networks
O43 - CFD: 07/06/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\skybn
O43 - CFD: 13/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Skype
O43 - CFD: 05/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Software =>PUP.Optional.Boxore
O43 - CFD: 14/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Sony
O43 - CFD: 08/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SplitMediaLabs
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Spotify
O43 - CFD: 04/05/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SquirrelTemp
O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\SR22.1.25
O43 - CFD: 02/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Steam
O43 - CFD: 12/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\Temp
O43 - CFD: 01/11/2015 - [0] SHD -- C:\Users\LePetitBeurre\AppData\Local\Temporary Internet Files
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\TileDataLayer
O43 - CFD: 30/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\VirtualStore
O43 - CFD: 13/10/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Local\YSearchUtil
O43 - CFD: 30/07/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
O43 - CFD: 01/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
O43 - CFD: 03/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps
O43 - CFD: 14/10/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DeskPins
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux
O43 - CFD: 30/07/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mutify
O43 - CFD: 04/05/2015 - [0] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OCCT
O43 - CFD: 06/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIX Networks
O43 - CFD: 03/11/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
O43 - CFD: 03/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
O43 - CFD: 30/07/2015 - [] RD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
O43 - CFD: 30/07/2015 - [] RSD -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
O43 - CFD: 01/11/2015 - [] D -- C:\Users\LePetitBeurre\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR

---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 0s
O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll ©
O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll ©
O106 - SIOI: SharedSyncingOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll ©
O106 - SIOI: UpToDateOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll ©
O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\LePetitBeurre\AppData\Local\Microsoft\OneDrive\17.3.6201.1019\FileSyncShell.dll ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL ©
O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL ©

---\\ System Drivers List (69) - 4s
O58 - SDL:2015/07/10 06:09:24 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107360] ©
O58 - SDL:2015/07/10 06:03:12 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135456] ©
O58 - SDL:2015/07/10 06:05:17 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83296] ©
O58 - SDL:2015/07/10 06:03:16 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] ©
O58 - SDL:2015/07/10 06:05:17 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26976] ©
O58 - SDL:2015/07/10 06:03:12 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131936] ©
O58 - SDL:2015/05/05 04:51:32 A . (.BitDefender - Active Virus Control filter driver.) -- C:\WINDOWS\System32\drivers\avc3.sys [1306464] ©
O58 - SDL:2015/11/03 20:44:20 A . (.BitDefender - BitDefender AntiVirus Active Virus Control.) -- C:\WINDOWS\System32\drivers\avchv.sys [262544] ©
O58 - SDL:2015/05/05 04:51:25 A . (.BitDefender - Active Virus Control Kernel Filtering drive.) -- C:\WINDOWS\System32\drivers\avckf.sys [677104] ©
O58 - SDL:2015/06/18 02:04:00 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] ©
O58 - SDL:2013/09/08 20:04:56 A . (.Bitdefender - Bitdefender Early Launch Anti-Malware Drive.) -- C:\WINDOWS\System32\drivers\bdelam.sys [23568] ©
O58 - SDL:2014/12/16 02:04:17 A . (.BitDefender LLC - BitDefender Firewall NDIS6 Filter Driver.) -- C:\WINDOWS\System32\drivers\bdfndisf6.sys [98768] ©
O58 - SDL:2015/01/09 11:59:25 A . (.BitDefender SRL - BitDefender SandBox Filter Driver.) -- C:\WINDOWS\System32\drivers\bdsandbox.sys [82824]
O58 - SDL:2015/11/03 20:44:19 A . (.BitDefender - FileVault Disk Driver.) -- C:\WINDOWS\System32\drivers\bdvedisk.sys [79192] ©
O58 - SDL:2015/07/10 05:55:09 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] ©
O58 - SDL:2015/11/01 19:25:58 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] ©
O58 - SDL:2015/05/08 21:13:43 A . (.Disc Soft Ltd - DAEMON Tools Ultra Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30352] ©
O58 - SDL:2015/05/19 08:34:29 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1d64x64.sys [493024] ©
O58 - SDL:2015/11/12 19:42:37 A . (...) -- C:\WINDOWS\System32\drivers\EasyAntiCheat.sys [267000]
O58 - SDL:2015/07/10 05:55:06 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3436896] ©
O58 - SDL:2015/02/25 01:52:40 A . (.BitDefender LLC - BitDefender Gonzales FileSystem Driver.) -- C:\WINDOWS\System32\drivers\gzflt.sys [160544] ©
O58 - SDL:2012/07/18 02:12:08 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [62784] ©
O58 - SDL:2015/07/10 06:07:32 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] ©
O58 - SDL:2015/06/18 02:03:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] ©
O58 - SDL:2015/06/18 02:04:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [122608] ©
O58 - SDL:2015/02/20 18:26:55 A . (.Intel Corporation - NDIS 6.30 Advanced Networking Services..) -- C:\WINDOWS\System32\drivers\iANSW60e.sys [155192] ©
O58 - SDL:2012/02/02 01:16:40 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStor.sys [568600] ©
O58 - SDL:2015/06/23 14:58:58 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [1455552] ©
O58 - SDL:2015/07/10 06:06:06 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [673120] ©
O58 - SDL:2015/07/10 06:06:06 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] ©
O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [424800] ©
O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\intelaud.sys [38296] ©
O58 - SDL:2012/10/26 23:21:12 A . (.ASUSTeK Computer Inc. - ASUS Kernel Mode Driver for NT.) -- C:\WINDOWS\System32\drivers\IOMap64.sys [23680] ©
O58 - SDL:2015/05/07 14:00:20 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [37832] ©
O58 - SDL:2014/08/01 21:18:33 A . (.Intel Corporation - Intel® WiDi Solution.) -- C:\WINDOWS\System32\drivers\iwdbus.sys [27032] ©
O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108896] ©
O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [104800] ©
O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [99168] ©
O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] ©
O58 - SDL:2015/10/05 09:50:06 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\mbam.sys [25816] ©
O58 - SDL:2015/10/05 09:50:10 A . (.Malwarebytes - Malwarebytes Chameleon Protection Driver.) -- C:\WINDOWS\System32\drivers\mbamchameleon.sys [109272] ©
O58 - SDL:2015/11/03 19:15:57 A . (.Malwarebytes - Malwarebytes Anti-Malware.) -- C:\WINDOWS\System32\drivers\MBAMSwissArmy.sys [192216] ©
O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59744] ©
O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] ©
O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [705376] ©
O58 - SDL:2015/07/10 06:03:10 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] ©
O58 - SDL:2015/10/05 09:50:22 A . (.Malwarebytes Corporation - Malwarebytes Web Access Control.) -- C:\WINDOWS\System32\drivers\mwac.sys [64216] ©
O58 - SDL:2015/07/10 05:54:53 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [76128] ©
O58 - SDL:2015/11/02 23:49:25 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [205456] ©
O58 - SDL:2015/11/07 04:19:04 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [11227280] ©
O58 - SDL:2015/07/10 06:07:35 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] ©
O58 - SDL:2015/07/10 06:07:35 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166240] ©
O58 - SDL:2015/08/11 05:52:30 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [50472] ©
O58 - SDL:2015/07/10 06:09:24 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58208] ©
O58 - SDL:2015/07/10 06:09:24 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [58720] ©
O58 - SDL:2015/04/28 10:14:26 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\WINDOWS\System32\drivers\Rt64win7.sys [977624] ©
O58 - SDL:2015/06/23 12:26:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4500184] ©
O58 - SDL:2015/07/10 06:03:13 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] ©
O58 - SDL:2015/07/10 06:03:13 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] ©
O58 - SDL:2015/07/10 06:03:16 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] ©
O58 - SDL:2013/08/22 13:40:24 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [40664] ©
O58 - SDL:2015/05/08 22:26:24 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [178976] ©
O58 - SDL:2014/10/16 01:14:12 A . (.BitDefender S.R.L. - Trufos Kernel Module.) -- C:\WINDOWS\System32\drivers\trufos.sys [452040] ©
O58 - SDL:2015/07/10 04:21:44 A . (...) -- C:\WINDOWS\System32\drivers\Udecx.sys [44032]
O58 - SDL:2015/07/10 06:07:40 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166752] ©
O58 - SDL:2015/07/10 06:07:40 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] ©
O58 - SDL:2015/07/10 05:54:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [26976] ©
O58 - SDL:2015/07/10 05:54:53 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [59232] ©
O58 - SDL:2014/07/02 19:49:08 A . (.SplitmediaLabs Limited - XSplit Stream Audio.) -- C:\WINDOWS\System32\drivers\xspltspk.sys [26200]

---\\ Last modified or created user files (10) - 5s
O61 - LFC: 2015/11/08 01:18:27 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\cb5a8777e289a14fcde53702c95a4089\69f3824d6cc11b2b\dec84da8cd2fd12b.bin [34755]
O61 - LFC: 2015/11/11 12:42:43 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\62ff778e2c1501b68e22410795fcbdf9\69f3824d6cc11b2b\2ad2147cf33d62a7.bin [60620]
O61 - LFC: 2015/11/11 12:40:31 A . (..) -- C:\Users\LePetitBeurre\AppData\Roaming\NVIDIA\GLCache\62ff778e2c1501b68e22410795fcbdf9\69f3824d6cc11b2b\f325a1b2bc51eece.bin [4183]
O61 - LFC: 2015/11/11 20:28:14 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\Packages\Microsoft.Windows.Cortana_cw5n1h2txyewy\LocalState\speech_onecorereg.bin [8192]
O61 - LFC: 2015/11/12 18:27:58 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\Packages\000082a7\DAO.20162679.exe [6826208]
O61 - LFC: 2015/11/11 18:26:54 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\Packages\00008245\DRS update.20141141.exe [354416]
O61 - LFC: 2015/11/05 23:34:04 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\NVIDIA\NvBackend\drs\update.bin [1311428]
O61 - LFC: 2015/11/12 17:47:13 A . (..) -- C:\Users\LePetitBeurre\AppData\Local\Google\Chrome\User Data\ev_hashes_whitelist.bin [674082]
O61 - LFC: 2015/11/06 20:47:39 A . (.Copyright David Reschke © 2013.) -- C:\Users\LePetitBeurre\AppData\Local\assembly\dl3\HXTQCHP5.6HG\HEXL9DBX.D19\bd8d93c6\9bcfa028_55e8ce01\CountdownPlugin.DLL [35328]
O61 - LFC: 2015/11/06 20:47:39 A . (.Copyright David Reschke © 2013.) -- C:\Users\LePetitBeurre\AppData\Local\assembly\dl3\HXTQCHP5.6HG\HEXL9DBX.D19\9bbf172c\c3ea6272_58e8ce01\DateTimePlugin.DLL [29696]

---\\ File Associations Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe ©
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe ©
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %*
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe ©
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe ©
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S

---\\ Start Menu Internet (12) - 0s
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - 'Firefox' Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ©
O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe ©

---\\ Search Browser Infection (5) - 1s
O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.desc", "this is my first firefox searchEngine"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.ptid", "fsf"); =>PUP.Optional.SearchEngine
O69 - SBI: prefs.js [LePetitBeurre - t8il9odi.default] user_pref("browser.search.searchengine.uid", "ST1000DM003-1CH162_S1DD9DY2XXXXS1DD9DY2"); =>PUP.Optional.SearchEngine
O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/
O69 - SBI: SearchScopes [HKCU] {C0043A22-EAF4-4723-9E36-DD3504C65D40} - (Yahoo Search) - http://fr.search.yahoo.com/

---\\ Search Svchost Services (42) - 1s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\WINDOWS\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [192000] ©
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [283136] ©
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1335296] ©
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [954368] ©
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [954880] ©
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [31232] ©
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [93696] ©
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [151040] ©
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [106496] ©
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [1008640] ©
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [226304] ©
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [133120] ©
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [324608] ©
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [371200] ©
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [95744] ©
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [2093056] ©
O83 - Search Svchost Services: DcpSvc (DcpSvc) . (.Microsoft Corporation - dcpsvc Task.) -- C:\Windows\System32\dcpsvc.dll [196096] ©
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\Windows\System32\NcaSvc.dll [167424] ©
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\Windows\System32\NetSetupSvc.dll [187392] ©
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [106496] ©
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [679936] ©
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [497152] ©
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [72192] ©
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [452608] ©
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [311808] ©
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2236416] ©
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1168896] ©
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [593920] ©
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [63488] ©
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1149440] ©
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1019392] ©
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [343040] ©
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [713216] ©
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [27136] ©
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [267776] ©
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [918016] ©
O83 - Search Svchost Services: RetailDemo (RetailDemo) . (.Microsoft Corporation - RDXService.) -- C:\Windows\System32\RDXService.dll [1015808] ©
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [359936] ©
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [237568] ©
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [58368] ©
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [200192] ©

---\\ Firewall Active Exception List (14) - 1s
O87 - FAEL: "{82FD800B-4D10-4555-8F61-261181AC9C5D}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe
O87 - FAEL: "{7512D9D3-FA03-4618-843B-7128FE362D38}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\GarrysMod\hl2.exe
O87 - FAEL: "{A7383278-3A55-49A7-A4BC-43A0026C2547}" [In-None-P17-TRUE] .(.Daybreak Game Company - Daybreak Game Company LaunchPad.) -- D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe
O87 - FAEL: "{F914CE34-4F6E-4F9E-9C9D-3EDAD3DB1BB2}" [In-None-P6-TRUE] .(.Daybreak Game Company - Daybreak Game Company LaunchPad.) -- D:\SteamLibrary\steamapps\common\H1Z1\LaunchPad.exe
O87 - FAEL: "{A59341D3-C78D-4B11-A4ED-34AA6A4E39C1}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{72AAF75F-EDAC-4DFB-AB02-9238D2D1C4CB}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe
O87 - FAEL: "{C4B3B055-3E37-4A30-8C06-AE03805822B6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe
O87 - FAEL: "{F8DC59AB-5683-4BFA-88CE-70F0D72326F7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\qBittorrent\qbittorrent.exe
O87 - FAEL: "{1E7B3F2E-C217-4114-9C41-BC8ED2068650}" [In-None-P6-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Natural Selection 2\ns2.exe
O87 - FAEL: "{F7A2841A-03CC-43D3-8F38-D9193576B360}" [In-None-P17-TRUE] .(...) -- D:\SteamLibrary\steamapps\common\Natural Selection 2\ns2.exe
O87 - FAEL: "{88C63711-28E3-4C00-94FE-B5A1BCD07232}" [In-None-P6-TRUE] .(.Copyright © BIS 1996-2002 - Cold War Assault.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssault.exe
O87 - FAEL: "{4824F306-427B-42FA-A6A9-A68A14E766BB}" [In-None-P17-TRUE] .(.Copyright © BIS 1996-2002 - Cold War Assault.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssault.exe
O87 - FAEL: "{5E21152D-011D-4EBA-A8AB-1B4D89527E8B}" [In-None-P6-TRUE] .(.Copyright © 1999 - Operation Flashpoint preferences.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssaultPreferences.exe
O87 - FAEL: "{29F1265E-DF47-474E-89BB-3B738D3D4181}" [In-None-P17-TRUE] .(.Copyright © 1999 - Operation Flashpoint preferences.) -- D:\SteamLibrary\steamapps\common\ARMA Cold War Assault\ColdWarAssaultPreferences.exe

---\\ Services not Microsoft (SR=Run, SS=Stop) (35) - 11s

SS - Demand [04/05/2015] [ 268464] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ©
SR - Auto [05/08/2015] [ 821024] Advanced SystemCare Service 8 (AdvancedSystemCareService8) . (.IObit.) - C:\Program Files (x86)\IObit\Advanced SystemCare 8\ASCService.exe ©
SR - Auto [23/07/2014] [ 936728] ASUS Com Service (asComSvc) . (...) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
SR - Auto [23/07/2014] [ 1360016] ASUS System Control Service (AsSysCtrlService) . (...) - C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
SS - Demand [09/12/2014] [ 78144] Bitdefender Desktop Parental Control (BdDesktopParental) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe ©
SS - Demand [13/10/2015] [ 1225216] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
SR - Auto [10/06/2015] [ 63968] CyberGhost 5 Client Service (CGVPNCliService) . (.CyberGhost S.R.L.) - C:\Program Files\CyberGhost 5\Service.exe ©
SR - Demand [18/06/2015] [ 1268568] Disc Soft Lite Bus Service (Disc Soft Lite Bus Service) . (.Disc Soft Ltd.) - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe ©
SR - Auto [22/10/2015] [ 1156400] NVIDIA GeForce Experience Service (GfExperienceService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe ©
SS - Demand [05/05/2015] [ 107848] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SS - Demand [05/05/2015] [ 107848] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ©
SR - Auto [23/06/2015] [ 18856] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe ©
SS - Demand [14/11/2005] [ 69632] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe ©
SS - Demand [22/05/2015] [ 881152] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe ©
SR - Auto [07/05/2015] [ 271632] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\System32\IProsetMonitor.exe ©
SR - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe ©
SS - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
SR - Auto [02/06/2015] [ 223008] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe ©
SR - Auto [29/07/2015] [ 2909472] LiveUpdate (LiveUpdateSvc) . (.IObit.) - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe ©
SR - Auto [02/06/2015] [ 411424] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe ©
SS - Auto [28/10/2015] [ 1080120] (MBAMService) . (.Malwarebytes Corporation.) - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe ©
SR - Auto [13/08/2012] [ 123320] Norton PC Checkup Application Launcher (Norton PC Checkup Application Launcher) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\SymcPCCULaunchSvc.exe ©
SR - Auto [22/10/2015] [ 1872688] NVIDIA Network Service (NvNetworkService) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe ©
SR - Demand [22/10/2015] [ 8133424] NVIDIA Streamer Network Service (NvStreamNetworkSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe ©
SR - Auto [22/10/2015] [ 5915440] NVIDIA Streamer Service (NvStreamSvc) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe ©
SR - Auto [05/11/2015] [ 938616] NVIDIA Display Driver Service (nvsvc) . (.NVIDIA Corporation.) - C:\Windows\System32\nvvsvc.exe ©
SR - Auto [13/08/2012] [ 126392] Common Client Job Manager Service (PCCUJobMgr) . (.Symantec Corporation.) - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.18.16\ccSvcHst.exe ©
SS - Disabled [08/07/2013] [ 94624] SafeBox (SafeBox) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe ©
SR - Auto [04/12/2014] [ 966336] Service KMSELDI (Service KMSELDI) . (.@ByELDI.) - C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico
SS - Auto [09/07/2015] [ 327296] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe ©
SS - Demand [14/10/2015] [ 838224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe ©
SS - Auto [05/11/2015] [ 417400] NVIDIA Stereoscopic 3D Driver Service (Stereo Service) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe ©
SR - Auto [27/10/2014] [ 67320] Bitdefender Desktop Update Service (UPDATESRV) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe ©
SR - Auto [16/03/2015] [ 1547936] Bitdefender Virus Shield (vsserv) . (.Bitdefender.) - C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe ©

---\\ Additional Scan (O88) (19) - 0s
HKLM\SYSTEM\CurrentControlSet\Services\Service KMSELDI =>HackTool.KMSpico
C:\Program Files\KMSpico\Service_KMS.exe =>HackTool.KMSpico
HKCU\SOFTWARE\EH71Vbm9aPmusN =>PUP.Optional.CrossRider
HKCU\SOFTWARE\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\BWUZU1.job =>PUP.Optional.FlashBeat
C:\WINDOWS\Tasks\EH71Vbm9aPmusN.job =>PUP.Optional.CrossRider
C:\WINDOWS\Tasks\hzjTE64DMyJJUgq0azwhschq.job =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\AutoPico Daily Restart =>HackTool.KMSpico
C:\WINDOWS\System32\Tasks\BWUZU1 =>PUP.Optional.FlashBeat
C:\WINDOWS\System32\Tasks\EH71Vbm9aPmusN =>PUP.Optional.CrossRider
C:\WINDOWS\System32\Tasks\hzjTE64DMyJJUgq0azwhschq =>PUP.Optional.CrossRider
HKLM64\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1 =>HackTool.KMSpico
C:\Program Files (x86)\Software =>PUP.Optional.Boxore
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico =>HackTool.KMSpico
C:\ProgramData\ProductData =>PUP.Optional.Generic
C:\ProgramData\Tencent =>PUP.Optional.TencentAddressBar
C:\ProgramData\{ACBCD40A-42A8-4FF9-BD42-ABCD14998CBA} =>PUP.Optional.BundleInstaller
C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} =>PUP.Optional.Generic
C:\Users\LePetitBeurre\AppData\Local\Software =>PUP.Optional.Boxore

---\\ Summary of the elements found (8) - 0s
http://www.nicolascoolman.fr/pup-kmspico/ =>HackTool.KMSpico
http://www.nicolascoolman.fr/blog =>PUP.Optional.FlashBeat
http://www.nicolascoolman.fr/pup-crossrider/ =>PUP.Optional.CrossRider
http://www.nicolascoolman.fr/adware-boxore/ =>PUP.Optional.Boxore
http://www.nicolascoolman.fr/blog =>PUP.Optional.Generic
http://www.nicolascoolman.fr/adware-tencentaddressbar/ =>PUP.Optional.TencentAddressBar
http://www.nicolascoolman.fr/blog =>PUP.Optional.BundleInstaller
http://www.nicolascoolman.fr/blog =>PUP.Optional.SearchEngine

~ End of the scan, 22371 items in 90 seconds (1014)(0)

Publicité


Signaler le contenu de ce document

Publicité